No more typing reviews! Try our Samantha, our new voice AI agent.

OpenText EnCase eDiscovery vs SentinelOne Singularity Endpoint comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

OpenText EnCase eDiscovery
Average Rating
7.8
Reviews Sentiment
7.7
Number of Reviews
8
Ranking in other categories
eDiscovery (8th)
SentinelOne Singularity End...
Average Rating
8.8
Reviews Sentiment
7.1
Number of Reviews
275
Ranking in other categories
Endpoint Protection Platform (EPP) (2nd), Anti-Malware Tools (2nd), Endpoint Detection and Response (EDR) (1st), Extended Detection and Response (XDR) (1st), AI-Powered Cybersecurity Platforms (2nd), AI Observability (2nd)
 

Mindshare comparison

OpenText EnCase eDiscovery and SentinelOne Singularity Endpoint aren’t in the same category and serve different purposes. OpenText EnCase eDiscovery is designed for eDiscovery and holds a mindshare of 3.8%, up 3.1% compared to last year.
SentinelOne Singularity Endpoint, on the other hand, focuses on Endpoint Detection and Response (EDR), holds 5.3% mindshare, down 5.6% since last year.
eDiscovery Mindshare Distribution
ProductMindshare (%)
OpenText EnCase eDiscovery3.8%
kCura Relativity5.5%
Commvault Cloud4.7%
Other86.0%
eDiscovery
Endpoint Detection and Response (EDR) Mindshare Distribution
ProductMindshare (%)
SentinelOne Singularity Endpoint5.3%
CrowdStrike Falcon7.2%
Microsoft Defender for Endpoint5.6%
Other81.9%
Endpoint Detection and Response (EDR)
 

Featured Reviews

Alejandro Stromer - PeerSpot reviewer
Director Consulting SAP OpenText en Entelgy at DCL Consultores EIM SL
A stable and scalable hybrid solution with easy setup
The solution is scalable. It has three levels. You have the presentation area that can be escalated to the balance sheet. You have the back-end area that can be escalated using higher viability to configure more application servers. Also, the area of storage can be increased. We usually cater to enterprise solutions but have small- and medium-sized customers. It starts with 25 users and goes up to 100s and 1000s.
Vaibhav Mahendra Kolhe - PeerSpot reviewer
Soc Analyst at Softcell Technologies Limited
Automation has reduced alerts and freed the soc team to focus on faster incident response
Regarding mean time to respond, the improvements I see with SentinelOne Singularity Complete are that genuine files also get alerts. We are getting false positives, but we are also getting genuine true positive alerts. The improvement will be deep visibility because as I am using Splunk as a SIEM, I compare deep visibility with Splunk, but deep visibility has limited access with only a 14-day policy to retain logs. The improvement will be in overall policy management. The third point will be the complexity of policies. If we want some endpoints to use only USB or if we need to block USB on some points, the policy management is very complex. The fourth point will be that Mac OS and Linux don't have the rollback policy; that policy is only for Windows. These four points are improvements if SentinelOne Singularity Complete can address them. Data privacy and security when utilizing Purple AI is crucial for SentinelOne Singularity Complete, and SentinelOne Singularity Complete lacks in data security. Data security is very important in this world. In my organization, if we deploy SentinelOne Singularity Complete and we have integrated all the firewalls, all devices, and AWS devices to SentinelOne Singularity Complete, logs will be forwarded to SentinelOne Singularity Complete through SentinelOne Singularity Complete. However, SentinelOne Singularity Complete doesn't have data security solutions such as Forcepoint DLP or 48 layer; SentinelOne Singularity Complete doesn't have that DLP solution. From the data security point of view, SentinelOne Singularity Complete is not good.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution is very stable."
"The most important feature we've found is the Enscripts. That is one powerful feature that I, personally, love to use."
"The technical support is excellent."
"The solution has been quite good, and, overall, the features we need are available to us."
"Image creation and image analysis in one program, basically for ease of use."
"Data Recovery: Its ability to repair damaged partitions and uncover hidden partitions from within the tool, and allow further analysis."
"Using Encase we are able to implement security and also Forensics."
"It speeds up the process, so I can meet my deadlines."
"The process visualization, automated response, and snapshotting are valuable. The integration and automation possibilities are also valuable."
"This is a very good solution because we can easily correlate the logs from the gateway and SentinelOne Singularity Endpoint, easily find out and get visibility on where the attack happened, how the virus came in, whether it is from mail or firewall or anything else, and easily monitor everything in SentinelOne Singularity Endpoint."
"The visibility feature is crucial for effective detection analysis."
"SentinelOne technical support is awesome."
"The most valuable features of SentinelOne are the lateral movement and the use of the Active Directory."
"SentinelOne Singularity Endpoint has impacted our organization positively, mainly through cost savings compared to other endpoints."
"The strength of SentinelOne is that it has an automated, active EDR. It does that first level of what a SOC analyst would do, automatically, using artificial intelligence, so we can focus on other things. Active EDR not only notifies you, but it actually fixes that first level. That is unheard of. Very few, if any, companies do that."
"SentinelOne Singularity Complete has positively impacted my organization by helping with trust amongst the organization, and with USB exclusions and other features, it has helped with data loss prevention and allowed me to measure DLP attacks."
 

Cons

"This is not the program I would suggest for a newbie using to learn. It is just too expensive for the full experience, and the student versions, while very good, are just for that, students."
"Ease of use and learning curve need improvement."
"I would like to see a capability to ingest and absorb more data. That would be really good. It currently is lacking this function."
"We have come across problems with the end-case. We could not find an email discovery type of module and there was not flexibility with the email."
"There were minor UI bugs."
"From a customer service standpoint, this is unacceptable."
"In the past, incident response time for tech support was slow."
"The reporting is a bit unreliable. It needs to be better."
"A weakness seen with one large customer was that the detections were too intrusive, blocking many applications that should have been working, which led to many false positives."
"In my opinion, the real-time monitoring capabilities in Singularity Platform sometimes work and sometimes they don't, because there are a lot of false positives and people use unsigned applications which get deleted or quarantined by the product."
"The role-based access is in dire need of improvement. We actually discussed this on a roadmap call and were informed that it was coming, but then it was delayed. It limits the roles that you can have in the platform, and we require several custom roles. We work with a lot of third-parties whom we rely on for some of our IT services. Part of those are an external SOC function where they are over-provisioned in the solution because there isn't anything relevant for the level of work that they do."
"Improvements for SentinelOne's Singularity Complete could include adjusting pricing for specific markets, ensuring affordability, and better alignment with customer expectations in those regions."
"Generally, the stability is good, but I would like to see better stability from the solution. The stability issue is partially a con of a behavioral-based product, but being behavioral-based, it also has a lot of pros."
"What I dislike about SentinelOne Singularity Complete is the high number of false positive alerts we get because our client sends us mail within one week stating that the CPU is highly utilized and resource consumption is high."
"One of the areas which would benefit from being improved is the policies. There are still software programs where we need to manually program in the policies to tell the system, "This program is legitimate." Some level of AI-based automation in creating those policies would go a long way in improving the amount of time it takes to deploy the system."
"The previous vendor had a lot more features and capabilities under the license. For example, I lost DLP as Sentinel One does not have DLP."
 

Pricing and Cost Advice

"We have a license. And, we found the cost high. We contacted them and talked to them about the ratio of the US dollar versus the Indian rupee and then we came to a solution."
"​The product is affordable and user-friendly.​"
"We have a license. And, we found the cost high. We contacted them and talked to them about the ratio of the US dollar versus the Indian rupee and then we came to a solution."
"EnCase is an affordable solution."
"The pricing is reasonable."
"The one I use is $6 a month per device. Some are $4 and there are some that are more than that."
"SentinelOne Singularity Complete's price point is excessive compared to the functionality it provides."
"When it came to the price compared to other solutions we tested, SentinelOne Singularity gave us the price of our expectations whereas CrowdStrike could not."
"The cost of endpoint protection is fairly reasonable."
"SentinelOne Singularity Complete is fairly priced."
"The solution's price/performance ratio is reasonable."
"For our use case, the solution is affordable. There are not any hidden fees."
report
Use our free recommendation engine to learn which eDiscovery solutions are best for your needs.
908,877 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
10%
Performing Arts
9%
Outsourcing Company
9%
Financial Services Firm
7%
Outsourcing Company
9%
Manufacturing Company
9%
Computer Software Company
9%
Financial Services Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise2
Large Enterprise3
By reviewers
Company SizeCount
Small Business131
Midsize Enterprise70
Large Enterprise92
 

Questions from the Community

Ask a question
Earn 20 points
Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. The ability to reverse damage caused by ransomware with minimal interruptions to...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What is your experience regarding pricing and costs for SentinelOne Singularity?
It is neither too costly, but definitely, it is one of the advantages that SentinelOne is quite adapted towards the pricing.
 

Also Known As

EnCase eDiscovery
Sentinel Labs, SentinelOne Singularity, Singularity Platform
 

Overview

 

Sample Customers

Ontario Ministry of Government, Aerospace Company, Chesterfield Police Department
Havas, Flex, Estee Lauder, McKesson, Norfolk Southern, JetBlue, Norwegian airlines, TGI Friday, AVX, Fim Bank
Find out what your peers are saying about Microsoft, Commvault, Google and others in eDiscovery. Updated: August 2026.
908,877 professionals have used our research since 2012.