No more typing reviews! Try our Samantha, our new voice AI agent.

Elastic Security vs SentinelOne Singularity AI SIEM comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Mar 29, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.0
Elastic Security provides satisfactory ROI and cost savings, though users experience varied support levels and payback periods.
Sentiment score
5.6
SentinelOne Singularity AI SIEM improves efficiency and productivity with automation, reducing response times and minimizing false positives.
It does not require hefty security budgets and can be deployed for enterprise security effectively.
Assistant Director at PTA
If the data gets encrypted, it automatically rolls back.
Senior Technical Engineer at Safezone Secure Solutions Private Limited
Before using SentinelOne Singularity AI SIEM, investigating a moderately complex alert took around thirty to sixty minutes because analysts had to collect logs from multiple security tools.
Desktop Support Engineer at a outsourcing company with 51-200 employees
SentinelOne Singularity AI SIEM has reduced our response time to true positive alerts by approximately forty percent through automation.
IT Security Analyst at a tech consulting company with 11-50 employees
 

Customer Service

Sentiment score
6.4
Elastic Security support is inconsistent; users favor community and documentation, while premium users seek more responsive and personalized help.
Sentiment score
6.7
SentinelOne's AI SIEM earns high ratings for support but faces criticism for agent transfers and additional service costs.
Support is prompt and helpful.
Senior Cyber Security Manager at a tech services company with 11-50 employees
Most of the time when my team encounters issues, they receive responses within 24 hours.
Assistant Director at PTA
I have not faced any difficulties with Elastic Security, as we have a pretty good support service from them.
Chief Product Officer at ClusterPower
SentinelOne Singularity AI SIEM has AI-based technical support available.
IT Security Analyst at a tech consulting company with 11-50 employees
Based on my experience with the technical support of SentinelOne Singularity AI SIEM, I would rate them a ten.
Vice President Cyber Security Practice Head at orbit techsol w pvt.ltd
In rating the technical support for SentinelOne, it depends on whether we are discussing EDR or SentinelOne Singularity AI SIEM.
Managing Director at iMark Consult
 

Scalability Issues

Sentiment score
7.3
Elastic Security offers scalable solutions adaptable to various environments, praised for flexibility and requiring careful planning for integration.
Sentiment score
6.1
SentinelOne Singularity AI SIEM is scalable and effective for complex, hybrid environments, requiring skilled implementation and detailed planning.
It allows us to think about specific use cases, such as gathering malicious IPs in a single view and analyzing threats based on geolocation.
Assistant Director at PTA
Elastic Security is quite scalable.
Chief Product Officer at ClusterPower
It is designed to handle growing log volumes and supports environments that include on-premises infrastructure, cloud services, endpoints, identity platforms, and network devices.
Desktop Support Engineer at a outsourcing company with 51-200 employees
With any AI adoption, the end goal should be more governance and data security and safety.
Associate Vice President at Novac Technology Solutions
The performance depends on the configuration.
IT Security Analyst at a tech consulting company with 11-50 employees
 

Stability Issues

Sentiment score
7.7
Elastic Security is generally stable and reliable but can face challenges with big data and requires careful configuration.
Sentiment score
8.1
SentinelOne Singularity AI SIEM is praised for stability and AI, but some find it inefficient and less user-friendly.
In terms of stability, I would rate Elastic a solid eight out of ten.
Senior Cyber Security Manager at a tech services company with 11-50 employees
I have worked with it, and it is very handy, easy to manage, and excellent with its AI-driven capabilities.
Cybersecurity Engineer at Gigabit Technologies Pvt Ltd
When it comes to stability, I would give SentinelOne Singularity AI SIEM a nine.
IT Security Consultant at Systemhaus for you GmbH
In terms of performance stability, I have never had any crashes, downtimes, or performance issues.
Cyber Security Engineer at a retailer with 201-500 employees
 

Room For Improvement

Elastic Security needs improvements in authentication, usability, automation, scalability, integration, and pricing, with user-friendly dashboards and documentation.
SentinelOne Singularity AI SIEM requires improvements in performance, customization, integrations, automation, pricing, and clearer AI insights.
CrowdStrike and Defender have more established threat intelligence integration due to having a larger client base.
Senior Cyber Security Manager at a tech services company with 11-50 employees
My security testing team continuously reports vulnerabilities, and we have to fix and update the versions frequently.
Assistant Director at PTA
Machine learning algorithms become better with time; as they ingest a huge volume of data, they become better.
Chief Product Officer at ClusterPower
The adoption rate will be less compared to other products, as this can be a time-taken process because all my data needs to be offloaded and the system needs to understand my existing alerts, logs, and other things.
Associate Vice President at Novac Technology Solutions
The interface flickers frequently, and sometimes it does not load properly.
IT Security Analyst at a tech consulting company with 11-50 employees
Whenever OT security comes into the picture, the customers do not allow us to integrate their OT devices on a cloud. It should be available on-premises because the OT SIEM market, in the India market for instance, is something around a four to eight billion dollar market.
Vice President Cyber Security Practice Head at orbit techsol w pvt.ltd
 

Setup Cost

Elastic Security provides a free open-source option, competitive pricing, and subscription plans, appealing to cost-conscious enterprises.
SentinelOne Singularity AI SIEM offers a value-driven package with bundled services; its advanced capabilities justify slightly higher costs.
The pricing is reasonable, especially for Small Medium Enterprises (SMEs), making it a viable option for businesses building their security infrastructure.
Senior Cyber Security Manager at a tech services company with 11-50 employees
This is beneficial for SMEs as they do not need extensive budgets for security solutions.
Assistant Director at PTA
Elastic Security is considered cost-effective, especially at lower EPS levels.
Performance Practice Specialist at a local government with 10,001+ employees
I find SentinelOne's pricing to be reasonable and competitive.
Information Security Principal at a venture capital & private equity firm with 1,001-5,000 employees
Features such as centralized log management, AI-driven analytics, automated workflow, and integrated security options can reduce operational overhead and improve SOC efficiency, which helps justify the investment.
Desktop Support Engineer at a outsourcing company with 51-200 employees
Compared to another SIEM tool's pricing, the pricing is the best, from my side.
Technical Support Executive at Softcell Technologies Limited
 

Valuable Features

Elastic Security provides scalable, customizable threat response with fast search, real-time analysis, and strong community support for actionable insights.
SentinelOne Singularity AI SIEM enhances security with automation, AI analytics, third-party integration, and improved SOC efficiency.
Elastic Security offers good insight regarding alerts, reports, and cases.
Senior Cyber Security Manager at a tech services company with 11-50 employees
Elastic Security offers advanced features such as machine learning and integration with ChatGPT.
Performance Practice Specialist at a local government with 10,001+ employees
We require rapid processing speed for alerts and event data, and Elastic Security is very efficient at handling this level of data.
Assistant Director at PTA
We finally have visibility into things that were never visible before.
IT Security Consultant at Systemhaus for you GmbH
It employs a combination of AI and ML to check for viruses or any other malicious processes, including fileless attacks.
Cyber Security Engineer at a retailer with 201-500 employees
The AI-driven threat detection capabilities improve our overall security posture.
Associate Vice President at Novac Technology Solutions
 

Categories and Ranking

Elastic Security
Ranking in Security Information and Event Management (SIEM)
7th
Average Rating
7.8
Reviews Sentiment
6.8
Number of Reviews
66
Ranking in other categories
Log Management (11th), Endpoint Detection and Response (EDR) (15th), Security Orchestration Automation and Response (SOAR) (11th), Extended Detection and Response (XDR) (12th)
SentinelOne Singularity AI ...
Ranking in Security Information and Event Management (SIEM)
8th
Average Rating
8.6
Reviews Sentiment
6.4
Number of Reviews
15
Ranking in other categories
AI Observability (6th)
 

Mindshare comparison

As of August 2026, in the Security Information and Event Management (SIEM) category, the mindshare of Elastic Security is 3.5%, down from 5.3% compared to the previous year. The mindshare of SentinelOne Singularity AI SIEM is 1.3%, up from 0.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Information and Event Management (SIEM) Mindshare Distribution
ProductMindshare (%)
Elastic Security3.5%
SentinelOne Singularity AI SIEM1.3%
Other95.2%
Security Information and Event Management (SIEM)
 

Featured Reviews

Laurentiu Popescu - PeerSpot reviewer
Chief Product Officer at ClusterPower
Has improved threat detection with deep log analysis and streamlined investigation workflows
The most useful features I find in Elastic Security are the forensic ones that allow us to carry deeper analysis into the logs for in-depth investigations, and the dashboards, with the reporting dashboard being quite user-friendly. Elastic Security is quite good at identifying threats, as it is part of the deep investigation tool that I mentioned before. Unless we need to look further into a certain log, we can carry out a deeper analysis and forensics on those particular logs. I can assess the impact of Elastic Security's real-time data analysis on our threat response efficiency as working pretty good. We are looking for real-time analysis because we have a continuous inflow of logs from different sources: from our cloud, from Active Directory, from our network. So it works pretty well.
Dev Reshwal - PeerSpot reviewer
Technical Support Executive at Softcell Technologies Limited
Automation has reduced workload and real-time monitoring provides faster incident response
SentinelOne Singularity AI SIEM is the best, but sometimes the dashboards are a little simple compared to other tools. The custom dashboard is not available in their features. Therefore, I would suggest adding the custom dashboard for any of our requirements. The AI-driven analytics from SentinelOne Singularity AI SIEM has not affected our ability to reduce false positives. SentinelOne Singularity AI SIEM has affected my SOC's efficiency in investigating alerts and responding to incidents. If we receive any alerts, we can observe what activity is being done. We can see if it is malicious or something suspicious, or a true positive. We can analyze the path, the hash, and whether the signature is verified or not. We can see if it is an alert triggered by any engine. We can see the source of this. We will do that type of analysis and raise it to the client side. Also, if I identify anything suspicious or malicious in the alert, I will forcefully kill and quarantine it immediately.
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
908,834 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
9%
Financial Services Firm
8%
Government
8%
Manufacturing Company
8%
Outsourcing Company
22%
Construction Company
7%
Manufacturing Company
6%
Media Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business40
Midsize Enterprise12
Large Enterprise15
By reviewers
Company SizeCount
Small Business12
Midsize Enterprise5
Large Enterprise4
 

Questions from the Community

Datadog vs ELK: which one is good in terms of performance, cost and efficiency?
With Datadog, we have near-live visibility across our entire platform. We have seen APM metrics impacted several times lately using the dashboards we have created with Datadog; they are very good c...
What is your experience regarding pricing and costs for Elastic Security?
I am satisfied with the pricing, setup cost, and licensing cost. It is a pure 10.
What needs improvement with Elastic Security?
I do not have any specific recommendations for improvements in Elastic Security, but I feel that the AI module should get more mature. These machine learning algorithms become better with time; as ...
What needs improvement with SentinelOne Singularity AI SIEM?
They could expand more integrations for other third-party products that are not currently available. Those are areas they can improve or have yet to improve. For example, we have firewall integrati...
What is your primary use case for SentinelOne Singularity AI SIEM?
Clients can use SentinelOne Singularity AI SIEM for endpoint security solutions, and apart from that, we currently have something called prompt security where it is helping us to enhance control ov...
What advice do you have for others considering SentinelOne Singularity AI SIEM?
The automated workflow feature impacts my security tasks and manual efforts significantly. Downtime is not necessarily required in scenarios where a particular system has to be isolated. Whether it...
 

Also Known As

Elastic SIEM, ELK Logstash
No data available
 

Overview

 

Sample Customers

Texas A&M, U.S. Air Force, NuScale Power, Martin's Point Health Care
Information Not Available
Find out what your peers are saying about Elastic Security vs. SentinelOne Singularity AI SIEM and other solutions. Updated: June 2026.
908,834 professionals have used our research since 2012.