We performed a comparison between ArcSight Intelligence and Collibra Governance based on real PeerSpot user reviews.
Find out what your peers are saying about Microsoft, Splunk, Wazuh and others in Security Information and Event Management (SIEM)."Sentinel is a SIEM and SOAR tool, so its automation is the best feature; we can reduce human interaction, freeing up our human resources."
"The UI-based analytics are excellent."
"The log query feature has been the most valuable because it's very good. You can put your data on the cloud and run queues from Sentinel. It will do it all very fast. I love that I don't have to upload it to an Excel file and then manually look for a piece of information. Sentinel is much faster and is good for big databases."
"It is easy to implement (turn on) - does need a skilled analyst to develop queries and playbooks."
"Microsoft Sentinel enables you to ingest data from the entire ecosystem and that connection of data helps you to monitor critical resources and to know what's happening in the environment."
"The in-built SOAR of Sentinel is valuable. Kusto Query Language is also valuable for the ease of writing queries and ease of getting insights from the logs. Schedule-based queries within Sentinel are also valuable. I found these three features most useful for my projects."
"I like the ability to run custom KQL queries. I don't know if that feature is specific to Sentinel. As far as I know, they are using technology built into Azure's Log Analytics app. Sentinel integrates with that, and we use this functionality heavily."
"Sentinel uses Azure Logic Apps for automation, which is really powerful. This allows us to easily automate responses to incidents."
"The most valuable feature of ArcSight Intelligence is a single console where the entire dashboard gives all the connected details in a single place."
"We found the correlation engine to be very good. It takes logs from different types of devices and does the correlation in a good way."
"The ability to tailor an environment to suit our specific use cases is a major advantage of ArcSight compared to other logging servers such as Splunk."
"The product has a valuable interface."
"We use the solution's Data Stewardship part."
"It's incredibly easy to use."
"I like the lineage feature the most because I don't think there's any other tool that actually depicts the data flow from multiple sources and the connectivities between every data element inside those sources."
"I like Collibra's flexibility. I like to be able to modify things for our own use. For example, we've chosen to use Collibra also as a knowledge management tool, even though it is not designed to be a knowledge management tool. That's the beauty of it. It can serve as a knowledge management tool by creating some custom assets specifically for knowledge management."
"Collibra Governance comes with a lot of features, and we have used it in one of our projects for metadata management and data lineage."
"There is a good community setup around the solution that can provide insights."
"The end-to-end solution itself is great. The most valuable is the workload feature that Collibra offers. There is a vast amount of flexibility in terms of how much we can customize. It gives us a lot of options to implement for a lot of purposes."
"The solution has good workflows and is based on AIML."
"At the network level, there is a limitation in integrating some of the switches or routers with Microsoft Sentinel. Currently, SPAN traffic monitoring is not available in Microsoft Sentinel. I have heard that it is available in Defender for Identity, which is a different product. It would be good if LAN traffic monitoring or SPAN traffic monitoring is available in Microsoft Sentinel. It would add a lot of value. It is available in some of the competitor products in the market."
"I think the number one area of improvement for Sentinel would be the cost."
"If their UI was a bit more streamlined and easy to find when I need it, then that would be a great improvement."
"Sentinel's reporting is complex and can be more user-friendly."
"The AI capabilities must be improved."
"We'd like to see more connectors."
"While I appreciate the UI itself and the vast amount of information available on the platform, I'm finding the overall user experience to be frustrating due to frequent disconnections and the requirement to repeatedly re-authenticate."
"The data connectors for third-party tools could be improved, as some aren't available in Sentinel. They need to be available in the data connector panel."
"ArcSight Intelligence's pricing needs improvement."
"ArcSight Intelligence is a bit slower, and its speed should be improved."
"The frequency of the updates that we are getting can be improved because the number and types of incidents that are happening at the global level are far more than what we are receiving. The frequency of updates feeds related to our rules should be increased. There should be more frequent information about the new rules that are coming and the global threats that are happening. There should be better options for dashboard creation. At present, the dashboards are good, but there is scope to make them better."
"The dashboard is not user-friendly and is in black and white."
"If someone changes the metadata, we can't see who changed it."
"We would like to have out-of-the-box automation."
"When we are doing discovery for unstructured data sources, I would suggest a quality report of the data that would indicate what was unable to process."
"I would like to see a feature using the runtime dashboard."
"We are not able to ingest all the data in Collibra, and that's why we cannot do element-to-element level data tracking."
"The connectors for metadata ingestion need to be improved."
"Sometimes, if a client needs a specific customization, we cannot do it directly. The client needs to reach out to Collibra and request the customization."
"Every time you change or publish a new questionnaire for certification, you have to basically go into the code and update the new version of the questionnaire."
ArcSight Intelligence is ranked 31st in Security Information and Event Management (SIEM) with 4 reviews while Collibra Governance is ranked 2nd in Data Governance with 41 reviews. ArcSight Intelligence is rated 8.6, while Collibra Governance is rated 7.6. The top reviewer of ArcSight Intelligence writes "A user-friendly solution that can be used to integrate the logs properly with different connectors". On the other hand, the top reviewer of Collibra Governance writes "Transformed our cross-functional business teams into one enterprise-facing view". ArcSight Intelligence is most compared with ArcSight Enterprise Security Manager (ESM), Exabeam Fusion SIEM and Splunk User Behavior Analytics, whereas Collibra Governance is most compared with Microsoft Purview, Alation Data Catalog, Informatica Axon, BigID and Ataccama ONE Platform.
We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.