List of Microsoft Sentinel Customers
Redmond, 98052-6399, WA,
United States
Since 2010, our global team of researchers has been studying Microsoft Sentinel customers around the world, aggregating massive amounts of data points that form the basis of our forecast assumptions and perhaps the rise and fall of certain vendors and their products on a quarterly basis.
Each quarter our research team identifies companies that have purchased Microsoft Sentinel for Endpoint Detection and Response (EDR) from public (Press Releases, Customer References, Testimonials, Case Studies and Success Stories) and proprietary sources, including the customer size, industry, location, implementation status, partner involvement, LOB Key Stakeholders and related IT decision-makers contact details.
Companies using Microsoft Sentinel for Endpoint Detection and Response (EDR) include: HSBC, a United Kingdom based Banking and Financial Services organisation with 212409 employees and revenues of $67.40 billion, Kao, a Japan based Manufacturing organisation with 32566 employees and revenues of $11.31 billion, Peraton, a United States based Aerospace and Defense organisation with 21000 employees and revenues of $8.00 billion, UBS USA, a United States based Banking and Financial Services organisation with 22000 employees and revenues of $5.00 billion, New Zealand Department of Internal Affairs, a New Zealand based Government organisation with 2381 employees and revenues of $780.0 million and many others.
Contact us if you need a completed and verified list of companies using Microsoft Sentinel, including the breakdown by industry (21 Verticals), Geography (Region, Country, State, City), Company Size (Revenue, Employees, Asset) and related IT Decision Makers, Key Stakeholders, business and technology executives responsible for the software purchases.
The Microsoft Sentinel customer wins are being incorporated in our Enterprise Applications Buyer Insight and Technographics Customer Database which has over 100 data fields that detail company usage of software systems and their digital transformation initiatives. Apps Run The World wants to become your No. 1 technographic data source!
Apply Filters For Customers
| Logo | Customer | Industry | Empl. | Revenue | Country | Vendor | Application | Category | When | SI | Insight |
|---|---|---|---|---|---|---|---|---|---|---|---|
|
|
De Heus Vietam | Consumer Packaged Goods | 400 | $50M | Vietnam | Microsoft | Microsoft Sentinel | Endpoint Detection and Response (EDR) | 2024 | Yokogawa Votiva Solutions |
In 2024, De Heus Vietnam deployed Microsoft Sentinel as part of a broader Microsoft Azure security and operations program. Microsoft Sentinel is implemented as the Endpoint Detection and Response (EDR) capability in the stack, positioned to ingest security telemetry and drive centralized threat detection and incident response across the Vietnam operations.
The Microsoft Sentinel deployment was provisioned on Microsoft Azure and configured to use core Sentinel capabilities including analytics rules for detection, incident management, hunting queries, and automation with playbooks. The implementation architecture was aligned with existing Azure services used by De Heus Vietnam, with explicit ingestion of signals from Azure Defender and Microsoft 365, workload telemetry from Azure Kubernetes Service, and application and data pipeline logs from Azure Data Factory and Azure Databricks.
Yokogawa Votiva Solutions served as the implementation partner for the Microsoft Sentinel rollout, coordinating connection points to Dynamics 365 Finance and Operations and integrating Sentinel alert streams into the company security operations workflow. The deployment followed De Heus global template principles, using standardized configurations and partner role definitions to ensure consistency with the companys broader Azure, Dynamics 365, and Microsoft 365 platform footprint.
Governance for the Sentinel implementation emphasized a data first architecture and operational alignment between IT security, factory operations, and application teams. De Heus positioned Microsoft Sentinel and Azure Defender as complementary elements of a cohesive security architecture to achieve more security and less effort, while planning further consolidation of telemetry and standardized incident-handling processes across sites.
|
|
|
Eam Energie | Utilities | 48 | $105M | Germany | Microsoft | Microsoft Sentinel | Endpoint Detection and Response (EDR) | 2020 | Accenture |
In 2020, EAM Energie implemented Microsoft Sentinel as part of a broader Endpoint Detection and Response (EDR) deployment hosted on Microsoft Azure. The rollout was executed alongside a companywide migration that moved roughly 80 applications to Azure between February and November 2020, with a one week cutover in October to migrate the four largest SAP systems used by approximately 1,000 employees, and weekly waves of ten to twelve systems during the migration wave.
Microsoft Sentinel was configured as the central security monitoring and incident management layer, operating with typical Endpoint Detection and Response (EDR) capabilities such as continuous endpoint telemetry ingestion, automated alerting, incident correlation, threat hunting, and playbook-driven response automation. The Sentinel deployment was implemented together with Microsoft Defender, Azure Active Directory, and Azure Advisor, all surfaced through Azure Security Center to provide consolidated detection, investigation, and remediation workflows across cloud and endpoint estate.
Operational integration emphasized cloud-native connectivity, with Microsoft Sentinel ingesting signals from Azure platform services and the migrated business application landscape, including the SAP environment and the administrative and technical systems used across the organization. Accenture acted as the implementation partner and worked with Microsoft teams during the assessment and execution phases, forming a joint delivery model that aligned security configuration with the broader application migration schedule and cross-department cutover plans.
Governance changes included establishment of a cloud competence center to validate departmental queries, a company training program for cloud certification, and coordinated change management and communications such as intranet blogs and how-to content to drive adoption. By October 2020 approximately 95 percent of services were operating in Azure, all data was retained in Azure in line with data residency requirements, and the project reported no major malfunctions, business interruptions, or loss of performance during the migration and Sentinel onboarding.
|
|
|
Guardian Childcare & Education | Education | 6000 | $552M | Australia | Microsoft | Microsoft Sentinel | Endpoint Detection and Response (EDR) | 2020 | n/a |
In 2020, Guardian Childcare & Education deployed Microsoft Sentinel as part of a consolidated security monitoring program, positioning Microsoft Sentinel within the Endpoint Detection and Response (EDR) category to centralize event visibility across its cloud estate. The deployment was situated in the organisation's Azure tenant following a full migration of on premises servers to Microsoft Azure Cloud hosting, aligning security telemetry collection with the cloud migration timeline.
Microsoft Sentinel SIEM was configured to capture and normalize security events from Azure and Microsoft 365, with plans to ingest Meraki network device telemetry to extend detection across campus network segments. Parallel endpoint controls were implemented, including device registration using Azure Endpoint Intune and a Zero trust strategy for Azure user IDs, while code signing for IT scripts and automation preserved integrity of operational tooling.
The security implementation was part of a broader control plane that included Microsoft Purview for data classification and labelling, MAC address filtering for Guardian devices on centre networks, and an internally developed AI chatbot using Microsoft OpenAI and ChatGPT to support childcare centre staff. These components were orchestrated alongside operational tooling changes such as the rollout of a new helpdesk platform, Freshservice, which introduced KPIs and OLAs for cross departmental support and incident escalation.
Governance and operational restructuring accompanied the technical rollout, with IT ownership focused on improving service delivery and Level 2 and Level 3 support capability. Explicit outcomes recorded by the organisation include a CEO survey result showing 92 percent of 134 childcare centre managers rated IT performance as well or very well, and managing organisational growth from 112 to 170 childcare centres while maintaining the same core IT team through automation and process improvements.
|
|
|
|
Banking and Financial Services | 212409 | $67.4B | United Kingdom | Microsoft | Microsoft Sentinel | Endpoint Detection and Response (EDR) | 2021 | n/a |
|
|
|
|
Manufacturing | 32566 | $11.3B | Japan | Microsoft | Microsoft Sentinel | Endpoint Detection and Response (EDR) | 2023 | n/a |
|
|
|
|
Government | 2381 | $780M | New Zealand | Microsoft | Microsoft Sentinel | Endpoint Detection and Response (EDR) | 2021 | Unify Solutions |
|
|
|
|
Aerospace and Defense | 21000 | $8.0B | United States | Microsoft | Microsoft Sentinel | Endpoint Detection and Response (EDR) | 2021 | n/a |
|
|
|
|
Banking and Financial Services | 22000 | $5.0B | United States | Microsoft | Microsoft Sentinel | Endpoint Detection and Response (EDR) | 2021 | n/a |
|
Buyer Intent: Companies Evaluating Microsoft Sentinel
- TeKnowledge US, a United States based Professional Services organization with 350 Employees
- Progress, a United States based Professional Services company with 10 Employees
- Yaskawa America, a United States based Manufacturing organization with 1000 Employees
Discover Software Buyers actively Evaluating Enterprise Applications
| Logo | Company | Industry | Employees | Revenue | Country | Evaluated | ||
|---|---|---|---|---|---|---|---|---|
| No data found | ||||||||