No more typing reviews! Try our Samantha, our new voice AI agent.

Devo vs Sentinel comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 18, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.6
Devo enhances efficiency, reduces costs, and provides faster insights with seamless integration, boosting ROI and scalability without extra expenses.
Sentiment score
5.5
Sentinel boosts ROI by tracking user behavior and reducing security costs, with returns often seen within three years.
Devo gives value to the end user and is saving compared to other products in the same category.
Principal Consultant at Syntx Sdn Bhd
 

Customer Service

Sentiment score
6.6
Devo excels in customer service with rapid responses and collaborative support, though some users seek improved escalation processes.
Sentiment score
5.8
Sentinel's customer service is highly rated for quick, effective support, though low-priority and backend support may vary.
I rate the customer support a nine out of ten because of their timely technical guidance and responsiveness during the deployment and troubleshooting periods.
Cyber Security Engineer Ii (Vulnerability & Threat Management) at FICO
Both response time and support quality need attention.
Team Lead Soc at a tech services company with 51-200 employees
Technical support from Devo is helpful.
Principal Consultant at Syntx Sdn Bhd
The customer support for Sentinel is very good; any tickets logged will be answered immediately within the given timeframe.
Senior Specialist at a tech vendor with 10,001+ employees
 

Scalability Issues

Sentiment score
7.0
Devo offers scalable data handling and integration with AWS, supporting diverse team needs with flexible, growth-ready architecture.
Sentiment score
7.8
Sentinel is highly scalable, integrating with devices and servers easily, though setup challenges exist due to skill gaps.
Devo is a unified SIEM solution designed to handle growing log volumes and enterprise-scale monitoring requirements.
Cyber Security Engineer Ii (Vulnerability & Threat Management) at FICO
 

Stability Issues

Sentiment score
7.4
Devo offers reliable service with minimal downtime, quick issue resolution, and high user satisfaction despite infrequent minor outages.
Sentiment score
8.2
Sentinel is rated highly for stability, though Java RAM issues and network sensitivity sometimes affect its seamless 5,000 events/second performance.
It is stable and reliable for our security operations.
Cyber Security Engineer Ii (Vulnerability & Threat Management) at FICO
 

Room For Improvement

Devo's Activeboards need more customization, better integrations, improved performance, enhanced usability, and comprehensive documentation for new users.
Sentinel's unclear security, complex interfaces, and integration issues hinder user experience and compliance, demanding improved customization and dashboards.
This is particularly evident when dealing with failed login attempts and determining true versus false positives.
Strategic Account Executive at a computer software company with 51-200 employees
The only option for us to run the playbook is to schedule the job for it. However, if I want to manually run the playbook, there is no option for doing so.
Team Lead Soc at a tech services company with 51-200 employees
UI improvements, a simplified dashboard, or an easier reporting workflow could further improve analyst productivity.
Cyber Security Engineer Ii (Vulnerability & Threat Management) at FICO
Price is always a consideration, so the price would be nice if it were lower.
Manager, Customer Success at Coltek Business Soltuions
 

Setup Cost

Devo's pricing is straightforward with data-based costs, appealing cloud model, but concerns exist over metadata charges.
Sentinel offers flexible subscription pricing with discounts, yet costs align with competitors, suitable for enterprises but pricey for small businesses.
The pricing of the product is reasonable if we compare it with other Gartner leading products like Splunk, LogRhythm, Microsoft Sentinel, Google SecOps.
Team Lead Soc at a tech services company with 51-200 employees
They nearly always bill it in dollars, so if it can be billed in our currency, that would be helpful and fixed in our currency.
Manager, Customer Success at Coltek Business Soltuions
My experience with pricing, setup cost, and licensing shows that while it is a little on the higher side, since it is part of a package for all Microsoft products, I feel it is a better choice comparatively than other SIEMs in the market.
Senior Specialist at a tech vendor with 10,001+ employees
 

Valuable Features

Devo offers real-time analytics, customizable integration, powerful visualization, secure architecture, and advanced querying for effective threat detection and analysis.
Sentinel provides comprehensive threat detection and analysis with seamless Microsoft integration, offering real-time insights and scalable security solutions.
It utilizes 400 days of hot data, allowing queries to run very fast and yield results quicker than other tools in terms of security and SIEM capability.
Senior Cloud Engineer at a tech services company with 201-500 employees
When the analyst uses queries to search, it pulls the data quickly, in a second, which aids us greatly with the investigation.
Cyber Security Engineer Ii (Vulnerability & Threat Management) at FICO
When they see a spike in a line chart for a failed login, which could be a true or false attempt, they can click that spike, and a table widget on the same active board instantly populates with raw logs of data for those specific failed logins.
Strategic Account Executive at a computer software company with 51-200 employees
In terms of metrics showing how Sentinel has helped, as part of log filtering, we have reduced around thirty to thirty-five percent of false-positive incident creation.
Senior Specialist at a tech vendor with 10,001+ employees
Sentinel's best features include that it's a very easy product to use.
Manager, Customer Success at Coltek Business Soltuions
 

Categories and Ranking

Devo
Ranking in Security Information and Event Management (SIEM)
17th
Average Rating
8.4
Reviews Sentiment
6.6
Number of Reviews
27
Ranking in other categories
Log Management (17th), IT Operations Analytics (7th), AIOps (16th)
Sentinel
Ranking in Security Information and Event Management (SIEM)
15th
Average Rating
7.6
Reviews Sentiment
6.8
Number of Reviews
18
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the Security Information and Event Management (SIEM) category, the mindshare of Devo is 1.2%, up from 1.2% compared to the previous year. The mindshare of Sentinel is 2.7%, down from 4.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Information and Event Management (SIEM) Mindshare Distribution
ProductMindshare (%)
Sentinel2.7%
Devo1.2%
Other96.1%
Security Information and Event Management (SIEM)
 

Featured Reviews

Usama Khan - PeerSpot reviewer
Team Lead Soc at a tech services company with 51-200 employees
Advanced threat hunting has improved SOC visibility and now supports faster incident response
Devo can improve in how its connectors enhance integration with third-party tools. Devo's architecture works by having you deploy a relay server in the data center of the client side and Devo SIEM is basically on the AWS cloud. There are specific ports which are enabled on the relay server, which are 514 and 13000, 13151, 152. However, when we talk about databases and custom integrations, there are not default ports in the relay server. No default ports are defined. For JDBC drivers, the port number is 1433, but it is not in the relay server. You have to add it manually. For Oracle RDBMS, the port is 1521, and it is also not there by default. I would appreciate more third-party integrations including Fortinet and others. Machine learning models can also be improved. Playbooks in the SOAR can also be improved. Regarding playbooks for automation, we utilize playbooks for automation in SOAR for automated IOC blocking on a firewall, on a web application firewall, on DNS security, etc. The only option for us to run the playbook is to schedule the job for it. However, if I want to manually run the playbook, there is no option for doing so. This needs improvement.
PT
Senior Specialist at a tech vendor with 10,001+ employees
Improved incident monitoring has reduced false positives and supports audit-ready reporting
The best features Sentinel offers, in my experience, include the filtering features and the ability to run KQL queries so that I can understand what table has what and when the last log has been monitored and reported. Sentinel has positively impacted my organization by improving monitoring significantly. As a pay-as-you-go service, we are ingesting logs as needed. When the pay-as-you-go service is enabled, we can either ingest whenever there is a spike in the logs, and when there are fewer logs, we can reduce the ingestion. This approach is helpful for both the organization and me. In terms of metrics showing how Sentinel has helped, as part of log filtering, we have reduced around thirty to thirty-five percent of false-positive incident creation. We have also cleared some audits by enabling log retention in Sentinel, allowing us to pull out data for audits when necessary using both hot retention and cold retention. This has helped the organization as a whole.
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
913,683 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
13%
Outsourcing Company
11%
Construction Company
10%
Manufacturing Company
9%
Outsourcing Company
10%
Financial Services Firm
9%
Manufacturing Company
8%
Comms Service Provider
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise6
Large Enterprise12
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise3
Large Enterprise8
 

Questions from the Community

What needs improvement with Devo?
Perhaps Devo could add some features in the future on the network part. Specifically, I think they could improve network traffic analysis capabilities.
What is your primary use case for Devo?
I have been using Devo as a partner and system integrator for three years. For log monitoring, the clients' use cases can utilize Devo perfectly. Compliance and security operation monitoring are th...
What is your experience regarding pricing and costs for NetIQ Sentinel?
My experience with pricing, setup cost, and licensing shows that while it is a little on the higher side, since it is part of a package for all Microsoft products, I feel it is a better choice comp...
What needs improvement with NetIQ Sentinel?
Sentinel needs minimal improvement, though improvements are ongoing. Everything seems to be functioning perfectly, and I don't have any specific inputs for improvements I would like to see in Senti...
What is your primary use case for NetIQ Sentinel?
My main use case for Sentinel is that I'm a subject matter expert for Sentinel, specifically for security incident event and event management. I head the SME for SIEM in LTIMindtree for this curren...
 

Comparisons

 

Also Known As

No data available
NetIQ Sentinel, Novell SIEM
 

Overview

 

Sample Customers

United States Air Force, Rubrik, SentinelOne, Critical Start, NHL, Panda Security, Telefonica, CaixaBank, OpenText, IGT, OneMain Financial, SurveyMonkey, FanDuel, H&R Block, Ulta Beauty, Manulife, Moneylion, Chime Bank, Magna International, American Express Global Business Travel
Faysal Bank, GaVI, Handelsbanken, ISC Mªnster, Lambeth Council, Swisscard, The Municipality of Siena, Tukes, University of Dayton, University of the Sunshine Coast
Find out what your peers are saying about Devo vs. Sentinel and other solutions. Updated: September 2026.
913,683 professionals have used our research since 2012.