McAfee ePolicy Orchestrator vs Symantec Data Loss Prevention comparison

Cancel
You must select at least 2 products to compare!
Microsoft Logo
17,715 views|9,994 comparisons
92% willing to recommend
McAfee Logo
2,026 views|377 comparisons
80% willing to recommend
Broadcom Logo
5,587 views|3,562 comparisons
88% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between McAfee ePolicy Orchestrator and Symantec Data Loss Prevention based on real PeerSpot user reviews.

Find out in this report how the two Security Orchestration Automation and Response (SOAR) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed McAfee ePolicy Orchestrator vs. Symantec Data Loss Prevention Report (Updated: March 2020).
772,649 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"The Log analytics are useful.""The product can integrate with any device.""The automation feature is valuable.""I like the ability to run custom KQL queries. I don't know if that feature is specific to Sentinel. As far as I know, they are using technology built into Azure's Log Analytics app. Sentinel integrates with that, and we use this functionality heavily.""There are a lot of things you can explore as a user. You can even go and actively hunt for threats. You can go on the offensive rather than on the defensive.""I like the KQL query. It simplifies getting data from the table and seeing the logs. All you need to know are the table names. It's quite easy to build use cases by using KQL.""It has basic out-of-the-box integrations with multiple log sources.""The most valuable feature is the alert notifications, which are categorized by severity levels: informational, low, medium, and high."

More Microsoft Sentinel Pros →

"It is a scalable solution...I rate its scalability a nine out of ten.""The feature that I have found most valuable is its general purpose of protecting our endpoints from infections, malicious files, and all those kinds of things. The fact that there are organized policies and policy inheritance. The general management.""McAfee ePolicy Orchestrator has a built-in advanced pattern, which is very useful because it can detect any pattern.""Technical support is very helpful.""The policy auditing, policy management, and device auditing are all valuable features. Our customers appreciated the ability to get alerts to system-wide events from a single view.""Their support is really good. I would rate it a nine out of ten. I have never any issues with their support. They always reply and follow our queries on time.""The initial setup is very easy.""The valuable feature of the McAfee ePolicy Orchestrator is the management of the policies."

More McAfee ePolicy Orchestrator Pros →

"Symantec Data Loss Prevention is the number one product in its field. It does its job well and it has all the necessary features. It is definitely better than any other solution on the market.""The most valuable feature is file-level DLP.""There's only one policy needed to implement for all channels.""The product is very robust.""The initial setup is easy.""The most valuable feature of this solution is endpoint security.""It can prevent copying and encoding of HTTP data to various sites like Google, and Webex.""The dashboard, management section, and reporting are good."

More Symantec Data Loss Prevention Pros →

Cons
"They only classify alerts into three categories: high, medium, and low. So, from the user's point of view, having another critical category would be awesome.""Only one thing is missing: NDR is not available out-of-the-box. The competitive cloud-native SIEM providers have the NDR component. Currently, Sentinel needs NDR to be powered from either Corelight or some other NDR provider.""The performance could be improved. If I create 15 to 20 lines for a single-use case in KQL, sometimes it takes more time to execute. If I create use cases within a certain timeline, the result will show in .01 seconds. A complex query takes more time to get results.""We're satisfied with the comprehensiveness of the security protection. That said, we do have issues sometimes where there have been global outages and we need to raise a ticket with Microsoft.""I can't think of anything other than just getting the name out there. I think a lot of customers don't fully understand the full capabilities of Azure Sentinel yet. It is kind of like when they're first starting to use Azure, it might not be something they first think about. So, they should just kind of get to the point where it is more widely used.""The on-prem log sources still require a lot of development.""Sentinel's reporting is complex and can be more user-friendly.""The troubleshooting has room for improvement."

More Microsoft Sentinel Cons →

"McAfee ePolicy Orchestrator needs to upgrade its technology since the solution's EDR function is not good compared to other vendors in the market.""The impact of the agent on the endpoint's performance - the resources it takes. Additionally, the difficulties we experience with inheriting and breaking inheritance on the organization's structure breakdown for policy inheritance and then for rules inheritance. We are actually struggling with this.""The detection aspect should be improved so that signatures are updated more quickly.""I would like to see McAfee reduce the amount of manual work required.""As for improvements, I think that putting everything on a cloud and one console would be a great idea and would be useful for customers.""McAfee ePolicy Orchestrator needs to upgrade the technology; it's like their area function is not quite as good as compared to other market vendors.""The solution is difficult to tune to avoid false positives.""There are some issues we are having with updating our Windows server. So we need to contact support or access our support portal."

More McAfee ePolicy Orchestrator Cons →

"Where things could be improved is that product engineering takes time to respond when we make a request. They get on a call for troubleshooting, but fixing the issue takes time.""Sometimes setting up the solution can get a little tricky because it would depend on your internal infrastructure. For example, you have to connect the Symantec Data Loss Prevention platform and you need to integrate it, so that could make the process somewhat difficult.""The product's pricing and support services need improvement.""Their support program needs a lot of improvement. If you are stuck somewhere, getting their support can be difficult.""Different departments should manage administration, reporting, normalization and incident management.""The upgrade process is convoluted. The server and database software must run in line with third-party providers like the Oracle database. If an Oracle database reaches the end of its life, then servers must be decommissioned, and you need to bring new servers online. When the maintenance packages are deployed to the management server, they don't get pushed to the detection servers. Each detection server must be manually installed rather than automatically made from a single server. If it's a large enterprise, you need to manually install it or use a GPO or some other technology, which I never use.""In the object capture recognition, which we implemented recently, there are a lot of false positives that have been happening.""Symantec Data Loss Prevention's AI technology has certain shortcomings where improvements can be made."

More Symantec Data Loss Prevention Cons →

Pricing and Cost Advice
  • "It comes with a Microsoft subscription which the customer has, so they don't have to invest somewhere else."
  • "It is a consumption-based license model. bands at 100, 200, 400 GB per day etc. Azure Sentinel Pricing | Microsoft Azure"
  • "Good monthly operational cost model for the detection and response outcomes delivered, M365 logs don't count toward the limits which is a good benefit."
  • "I have had mixed feedback. At one point, I heard a client say that it sometimes seems more expensive. Most of the clients are on Office 365 or M365, and they are forced to take Azure SIEM because of the integration."
  • "It is kind of like a sliding scale. There are different tiers of pricing that go from $100 per day up to $3,500 per day. So, it just kind of depends on how much data is being stored. There can be additional costs to the standard license other than the additional data. It just kind of depends on what other services you're spinning up in Azure, or if you're using something like Azure log analytics."
  • "I am just paying for the log space with Azure Sentinel. It costs us about $2,000 a month. Most of the logs are free. We are only paying money for Azure Firewall logs because email logs or Azure AD logs are free to use for us."
  • "Sentinel is a bit expensive. If you can figure a way of configuring it to meet your needs, then you can find a way around the cost."
  • "Azure Sentinel is very costly, or at least it appears to be very costly. The costs vary based on your ingestion and your retention charges."
  • More Microsoft Sentinel Pricing and Cost Advice →

  • "Compared to other Antivirus products, the cost of this solution is a bit high."
  • "McAfee tries to package different things into different products, then sell them as different products with different licenses. They just split everything up into multiple things. That's just their sales pitch and how they do it."
  • "This solution is priced in the mid-range."
  • "For large enterprise companies, the price should be alright, but for small businesses, the uptake might be slow because, for these clients, the price doesn't look very attractive."
  • "It is attractively priced. It is a fraction of what we're going to pay for CrowdStrike or SentinelOne, but it only has a fraction of the capabilities as well."
  • "There is a license required to use this solution. If we use the additional components, such as DLP encryption, there is an additional cost. However, it is similar to a separate product altogether. If you want to use that or not, it is optional, but when you use it, it will cost you additional pricing."
  • "McAfee ePolicy Orchestrator is not an expensive solution."
  • "$The price of McAfee ePolicy Orchestrator is expensive, it is approximately $6,000 to $9,000 per license annually."
  • More McAfee ePolicy Orchestrator Pricing and Cost Advice →

  • "If you are a small firm with less than 150 users, Symantec can be too pricey."
  • "From what I know the pricing is good, it's not too expensive. If you negotiate you can get a good price."
  • "The pricing and licensing are based on per user endpoints."
  • "The pricing is competitive and not pricey. We also receive corporate discounts."
  • "We are happy with the pricing and licencing."
  • "In terms of pricing, Symantec DLP works with Oracle Database. Oracle Database licensing is much more expensive than other databases. That might be a drawback for customers. The pricing is on a yearly subscription basis."
  • "Pricing is reasonable."
  • "The pricing is reasonable."
  • More Symantec Data Loss Prevention Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Security Orchestration Automation and Response (SOAR) solutions are best for your needs.
    772,649 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:Yes, Azure Sentinel is a SIEM on the Cloud. Multiple data sources can be uploaded and analyzed with Azure Sentinel and… more »
    Top Answer:It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for… more »
    Top Answer:We like that Azure Sentinel does not require as much maintenance as legacy SIEMs that are on-premises. Azure Sentinel is… more »
    Top Answer:Our organization ran comparison tests to determine whether Mcafee's MVision ePO or ePolicy Orchestrator network security… more »
    Top Answer:I like the solution's feasibility. McAfee ePolicy Orchestrator is also better and easier to use than other ePOs.
    Top Answer:I do not have exact pricing details, however, I would rate the price at a four out of ten overall. There may be some… more »
    Top Answer:It can prevent copying and encoding of HTTP data to various sites like Google, and Webex.
    Top Answer:The product is expensive. I rate the product’s pricing a 3 out of 10, where 1 is expensive and 10 is cheap.
    Comparisons
    Also Known As
    Azure Sentinel
    McAfee ePO, ePolicy Orchestrator, Intel Security ePolicy Orchestrator, McAfee MVISION ePO
    Symantec DLP
    Learn More
    Overview

    Microsoft Sentinel is a scalable, cloud-native, security information event management (SIEM) and security orchestration automated response (SOAR) solution that lets you see and stop threats before they cause harm. Microsoft Sentinel delivers intelligent security analytics and threat intelligence across the enterprise, providing a single solution for alert detection, threat visibility, proactive hunting, and threat response. Eliminate security infrastructure setup and maintenance, and elastically scale to meet your security needs—while reducing IT costs. With Microsoft Sentinel, you can:

    - Collect data at cloud scale—across all users, devices, applications, and infrastructure, both on-premises and in multiple clouds

    - Detect previously uncovered threats and minimize false positives using analytics and unparalleled threat intelligence from Microsoft

    - Investigate threats with AI and hunt suspicious activities at scale, tapping into decades of cybersecurity work at Microsoft

    - Respond to incidents rapidly with built-in orchestration and automation of common tasks

    To learn more about our solution, ask questions, and share feedback, join our Microsoft Security, Compliance and Identity Community.

    McAfee ePolicy Orchestrator (McAfee ePO) is the most advanced, extensible, and scalable centralized security management software in the industry. Unifying security management through an open platform, McAfee ePO makes risk and compliance management simpler and more successful for organizations of all sizes.

    Keeping sensitive corporate information safe and compliant has never been easy. But today, you’re faced with a totally new set of data protection challenges. Sensitive information is leaving the safety of your corporate network as more employees share files over consumer cloud storage services and access those files on their own mobile devices. The number of targeted cyber attacks continues to grow, as cybercriminals develop effective new methods for defeating traditional security measures and stealing corporate information. And as all of these factors converge, it becomes increasingly difficult to manage corporate information and protect it against loss and theft. 

    Symantec Data Loss Prevention (DLP) provides a comprehensive approach to information protection that embraces today’s cloud- and mobile-centered realities. With DLP, you can:

    • Discover where data is stored across all of your cloud, mobile, network, endpoint, and storage systems

    • Monitor how data is being used, whether your employees are on or off the network

    • Protect data from being leaked or stolen—no matter where it’s stored or how it’s used

    Sample Customers
    Microsoft Sentinel is trusted by companies of all sizes including ABM, ASOS, Uniper, First West Credit Union, Avanade, and more.
    Brelje & Race, Cognizant, Sutherland Global Services, Eagle Rock Energy, Arab National Bank, Bank Central Asia, Kleberg Bank, Leading Mexican Bank, SF Police Credit Union, Macquarie Telecom, Seagate Technology, Blackburn & Darwen Council, California Department of Corrections & Rehabilitation, IRCEP, Major U.S. State Government, State of Alaska, State of Colorado, Cemex, Deutsche Edelstahlwerke
    Hadassah University Hospital, Her Majestys Government (HMG), United Kingdom, Hitachi Consulting Software Services India Pvt Ltd., Hua Nan Bank, Hyundai Department Store Group,JW Marriott Hotel Seoul, Lake Health, McCann Erickson Israel, Molina Healthcare Inc., PGi, Quilvest Switzerland Limited, State of Nevada Public Employees Benefits Program, Symantec Corporation (Enterprise Security), The Royal Liverpool and Broadgreen University Hospitals NHS Trust, The Royal Liverpool and Broadgreen University Hospitals NHS Trust (DLP), The Saudi Industrial Property Authority, TSO cloud, Visa, Yunnan Power Grid Company
    Top Industries
    REVIEWERS
    Financial Services Firm22%
    Computer Software Company11%
    Manufacturing Company8%
    Comms Service Provider8%
    VISITORS READING REVIEWS
    Computer Software Company16%
    Financial Services Firm10%
    Government9%
    Manufacturing Company7%
    REVIEWERS
    Manufacturing Company14%
    Comms Service Provider14%
    Financial Services Firm14%
    Computer Software Company9%
    VISITORS READING REVIEWS
    Computer Software Company14%
    Government12%
    Financial Services Firm10%
    Manufacturing Company9%
    REVIEWERS
    Financial Services Firm25%
    Computer Software Company14%
    Comms Service Provider14%
    Insurance Company11%
    VISITORS READING REVIEWS
    Financial Services Firm23%
    Computer Software Company13%
    Manufacturing Company7%
    Comms Service Provider5%
    Company Size
    REVIEWERS
    Small Business33%
    Midsize Enterprise21%
    Large Enterprise47%
    VISITORS READING REVIEWS
    Small Business25%
    Midsize Enterprise16%
    Large Enterprise59%
    REVIEWERS
    Small Business30%
    Midsize Enterprise25%
    Large Enterprise45%
    VISITORS READING REVIEWS
    Small Business20%
    Midsize Enterprise10%
    Large Enterprise70%
    REVIEWERS
    Small Business39%
    Midsize Enterprise20%
    Large Enterprise41%
    VISITORS READING REVIEWS
    Small Business19%
    Midsize Enterprise14%
    Large Enterprise67%
    Buyer's Guide
    McAfee ePolicy Orchestrator vs. Symantec Data Loss Prevention
    March 2020
    Find out what your peers are saying about McAfee ePolicy Orchestrator vs. Symantec Data Loss Prevention and other solutions. Updated: March 2020.
    772,649 professionals have used our research since 2012.

    McAfee ePolicy Orchestrator is ranked 9th in Security Orchestration Automation and Response (SOAR) with 39 reviews while Symantec Data Loss Prevention is ranked 3rd in Data Loss Prevention (DLP) with 53 reviews. McAfee ePolicy Orchestrator is rated 8.0, while Symantec Data Loss Prevention is rated 8.0. The top reviewer of McAfee ePolicy Orchestrator writes "Useful agent communication, reliable, but lacking support for microservices". On the other hand, the top reviewer of Symantec Data Loss Prevention writes "Consitent, accurate, and simple". McAfee ePolicy Orchestrator is most compared with Splunk SOAR, Zscaler DLP, Elastic Security, Trend Micro Integrated Data Loss Prevention and Forcepoint Data Loss Prevention, whereas Symantec Data Loss Prevention is most compared with Microsoft Purview Data Loss Prevention, Forcepoint Data Loss Prevention, Digital Guardian, Zscaler DLP and Code42 Incydr. See our McAfee ePolicy Orchestrator vs. Symantec Data Loss Prevention report.

    We monitor all Security Orchestration Automation and Response (SOAR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.