From countless partner engagements and customer transitions, we see the same mistakes repeated by MSSPs delivering managed security using Microsoft Sentinel. These missteps leave organisations exposed, locked out of their own data, or paying far more than they should for log ingestion. They are a major reason customers move to Chorus Cyber for a more mature, transparent, and high-performing service.
Microsoft Sentinel is a logical choice for organisations already invested in the Microsoft ecosystem. It is a cloud-native SIEM and SOAR platform built on Azure, designed to sit within your own Azure tenant rather than in an MSSP’s datacentre. But the way Sentinel is deployed and operated varies wildly between providers, and in recent months we have seen a number of delivery models that should not be in place.