Microsoft Security Copilot and Charlotte AI compete in the AI-driven security domain. Charlotte AI is favored for its advanced features, offering superior perceived value.
Features: Microsoft Security Copilot offers robust threat detection, integration with existing Microsoft tools, and automated incident response. Charlotte AI provides intuitive AI-driven analytics, cross-platform support, and enhanced predictive capabilities, delivering a more comprehensive security solution.
Ease of Deployment and Customer Service: Microsoft Security Copilot integrates seamlessly within Microsoft environments, easing deployment for enterprises using Microsoft tools. Charlotte AI provides a flexible deployment model suited for various platforms. In customer service, Charlotte AI is noted for personalized support, unlike Microsoft's broader service framework.
Pricing and ROI: Microsoft Security Copilot offers competitive pricing for organizations within the Microsoft infrastructure. Charlotte AI, with higher setup costs, delivers strong ROI due to its advanced features, justifying the premium price.
Since we started working with Torq, I am handling much fewer alerts. It is becoming really easy for me to handle an alert.
We have seen a return on investment, targeting a $600,000 ROI for the year.
I have seen a return on investment with Torq, as the automation reduces the number of employees needed and significantly saves both time and resources.
I have seen a return on investment with Charlotte AI, especially when we have a limited team.
The data points and examples I can share indicate that the environment is more secure.
I have seen a return on investment with Charlotte AI.
Threat hunting and incident summarization workflows became significantly faster during large-scale phishing or ransomware investigations, helping the team manage more incidents without increasing SOC headcount proportionally.
The summary capability saves me fifty percent of the processing time on emails.
The biggest return on investment that I've seen when using Microsoft Security Copilot is the ability to scale.
My impression of their technical support during the initial setup was that they were helpful, responded within a reasonable timeframe, and provided exactly what we needed.
The speed and quality of their answers have been pretty good, as I usually get a response within 24 hours, and they follow up well.
We can always get an answer, and the support team are experts in their own system.
What makes customer service and technical support great is that they always respond to me when I have questions.
We have Falcon Complete, so we just call them, and they help us out, which makes it easy to do what we need to do.
When we have issues, we ask Charlotte AI for help in finding and minimizing the issue, and then we draft the tickets correctly to support so they can assist us further.
On a scale from one to ten, I would rate customer service and technical support for Microsoft Security Copilot as a nine.
They tend to be quite rigid with documentation and often redirect me to look at documents instead of directly assisting me, which can cause delays.
Based on our customers' experiences, I would rate their support a seven out of ten.
Its scalability is good because it has a cloud-native architecture and it expands dynamically to handle thousands of alerts at the same time.
Our case management is super scalable.
In terms of scalability, you can do as long as you can build it, and they can support it.
So, this thing is basically able to analyze, learn, and predict what is normal.
Charlotte AI becomes a starting point whenever there is an issue.
Charlotte AI scales very well with the growing needs of my organization.
We don't have any concerns whatsoever with scalability.
Scalability is the name of the game, involving understanding exactly where focus and money need to be placed and ensuring that where focus and money are placed can scale with the size, speed, and capabilities of organizations as they adopt AI in the workplace.
I think Microsoft Security Copilot scales well with the growing needs of our organization.
We have been using Torq for one and a half years, but we have experienced no downtime.
Most of the time, the system is stable as long as the components that they integrate with are stable.
I have never faced any downtime or issues.
I have not experienced any downtime, crashes, or performance issues.
I assess the stability and reliability of Charlotte AI as very reliable.
I have experienced downtime, crashes, or performance issues with Charlotte AI, but I have also seen those get better and the frequency with which it happens has decreased over time.
When talking about confidentiality, integrity, and availability, availability is the critical concern.
There are circumstances where we expected certain things to surface through our prompting with Microsoft Security Copilot, but they did not come up.
They have not had any incidents so far despite having everything on Microsoft Security Copilot.
Torq should offer default templates that can directly scan firewall data and automate actions.
The AI value depends on maturity. Real value depends heavily on telemetry, integration depth, and workflow design, all of which rely on how mature customers are in their SOC department.
It was able to capture data but was unable to differentiate between the agent hostname we are using and the hostname that resides on the back end of the Internet.
I would like it to be formatted into an executive-level review or initial review, so we don't have to spend additional time formatting it.
I would like to see the false positive rate decrease.
Charlotte AI can be improved by being more precise when questions are asked.
Microsoft needs to give at least some kind of à la carte option between E3 and E5, maybe an E4, to cherry-pick from E5.
If a way could be found to make it more cost-effective and streamline the licensing mechanism, they have the technology to succeed in the marketplace.
Even though Microsoft is a major technology company with insurance coverage, customers worry about potential data leaks, especially in sensitive industries such as banking and semiconductor manufacturing.
When they bring more and more value into the platform, it makes more sense to pay that price, but still, it is expensive.
Before deciding to implement Torq, I considered that compared to our old case management platform, Torq was a much better price and had a lot better value for what you get out of the platform, which was a key consideration for the company.
It is an expensive solution, not an inexpensive solution, but we get through the flexibility.
Most of my customers are already within Microsoft stack, and the pricing is mostly well accepted.
We wanted something under one umbrella, which is something Microsoft is able to give.
Its pricing scares our customers the most.
Torq's unified platform approach to AI SOC automation and case management has significantly benefited us by integrating the case management platform with the automation, which saves time compared to managing multiple point solutions across our security stack.
The fact that I can build whatever I want within my own imagination and skills without relying on code is the best thing about Torq.
You can copy and paste a cURL command. If you have documentation or APIs, you usually have an example on the side. You basically have all the information on how the API call should be. You can just copy that and paste it into a step, and it will just build the step for you.
I have 100% confidence in the responses and recommendations that Charlotte AI provides.
Charlotte AI has changed the way my security team investigates and responds to threats by providing valuable insights in quick succession, allowing us to verify what it has found and then move forward to determine whether something was malicious or benign.
Charlotte AI has changed the way my security team investigates and responds to threats by shortening the time of investigation and helping me find information very quickly.
The integration of Microsoft Security Copilot with other Microsoft solutions has had a positive impact on my company's security posture because it's integrated into the operating system.
One of the major use cases that we have seen is the reduced time spent on integrating and understanding Purview's output versus Sentinel's output, because the two speak to each other through Microsoft Security Copilot.
Microsoft Security Copilot has helped us and our clients reduce the mean time to resolution significantly.
| Product | Mindshare (%) |
|---|---|
| Charlotte AI | 2.3% |
| Dropzone AI | 10.6% |
| Prophet Security | 9.3% |
| Other | 77.8% |
| Product | Mindshare (%) |
|---|---|
| Microsoft Security Copilot | 5.5% |
| Prompt Security | 6.5% |
| Lakera | 5.4% |
| Other | 82.6% |

| Company Size | Count |
|---|---|
| Small Business | 6 |
| Midsize Enterprise | 5 |
| Large Enterprise | 11 |
| Company Size | Count |
|---|---|
| Small Business | 6 |
| Midsize Enterprise | 5 |
| Large Enterprise | 13 |
Torq is the enterprise AI SOC solution that effectively combines adaptive insights and automation to handle critical threats efficiently. It manages threat lifecycles, swiftly moving from triage to response, ensuring effective risk management.
Torq is designed to streamline security operations by aggregating telemetry across your security stack. It investigates significant risks and manages threats from triage to containment and remediation. This AI-driven tool enhances the capabilities of your SecOps team, allowing them to achieve more impactful results without introducing complicated processes.
What are the key features of Torq?
Why consider Torq based on reviews?
In industries like finance and healthcare, Torq shows effectiveness by adapting to specific risk scenarios often encountered in these fields. Its integration with existing infrastructures makes it a valuable asset for maintaining stringent security standards, essential for protecting critical data and operations in diverse high-stakes environments.
CrowdStrike Charlotte AI is a generative AI-powered cybersecurity capability built into the Falcon platform. It helps security teams investigate threats, automate repetitive tasks and make faster, more informed decisions by combining AI with CrowdStrike’s security telemetry, threat intelligence and expertise.
What features make Charlotte AI stand out?
What benefits and ROI can users expect?
Across industries, Charlotte AI helps organizations streamline security operations, improve analyst productivity and respond to threats with greater speed and confidence.
Microsoft Security Copilot offers innovative AI-driven security features tailored for efficient data management and protection, particularly in education and healthcare, ensuring streamlined operations and enhanced data security.
Microsoft Security Copilot enhances organizational security through its advanced features, including data sensitivity labeling and AI-driven insights, crucial for educational and healthcare sectors. Its auditing capabilities allow for efficient monitoring, while self-service analytics support active decision-making processes. With seamless integration with Microsoft platforms, it provides a synchronized ecosystem for effective data management. Improvements aim at extending capabilities across multiple systems and enhancing natural language processing to minimize prompt dependency.
What are the key features of Microsoft Security Copilot?
What benefits should organizations expect?
In the educational sector, Microsoft Security Copilot secures teacher and student data, manages incidents, and controls information access. Healthcare organizations utilize it to protect patient data, manage security incidents, and refine communication across hospitals and pharmacies. The platform's capabilities expand continually, aiding in tasks like summarizing discussions and rephrasing emails, while users explore further functions for increasing industry's operational efficiency.
We monitor all AI-SOC reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.