SIEM / DOCUMENTATION PROFILE
Microsoft Sentinel
Microsoft documents Sentinel as a cloud security analytics platform with ingestion, detection, investigation, and response capabilities.
UnassessedOpen research notes ↗
✳ Landscape / Evidence before conclusions
Documentation-based profiles across SIEM, endpoint security, and workforce identity. Read the scope, identify what still needs testing, and build a useful evaluation.
Pilot selection: two publicly documented offerings per segment, chosen to exercise the methodology. This is a small editorial sample, not exhaustive market coverage. All six are unassessed; none has a Security Fit Map placement.
SIEM / DOCUMENTATION PROFILE
Microsoft documents Sentinel as a cloud security analytics platform with ingestion, detection, investigation, and response capabilities.
UnassessedSIEM / DOCUMENTATION PROFILE
Elastic documents security analytics on Elasticsearch and Kibana, with detection and investigation across connected sources.
UnassessedEDR / DOCUMENTATION PROFILE
Microsoft publishes an endpoint security capability matrix showing that available functions vary by platform and plan.
UnassessedEDR / DOCUMENTATION PROFILE
Elastic documents Defend as an endpoint protection integration running through Elastic Agent, with policies managed through Fleet and Elastic Security.
UnassessedIAM / DOCUMENTATION PROFILE
Microsoft describes Entra ID as a cloud identity and access service for authentication and policy enforcement.
UnassessedIAM / DOCUMENTATION PROFILE
Okta describes its workforce platform as a set of identity capabilities including single sign-on, multifactor authentication, and lifecycle management.
Unassessed