No more typing reviews! Try our Samantha, our new voice AI agent.

SentinelOne Singularity AI SIEM vs SentinelOne Singularity Endpoint comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
5.6
SentinelOne Singularity AI SIEM improves efficiency and productivity with automation, reducing response times and minimizing false positives.
Sentiment score
5.9
Organizations using SentinelOne Singularity Endpoint experience enhanced security, efficiency, faster response, and cost savings with automated threat management.
If the data gets encrypted, it automatically rolls back.
Senior Technical Engineer at Safezone Secure Solutions Private Limited
Before using SentinelOne Singularity AI SIEM, investigating a moderately complex alert took around thirty to sixty minutes because analysts had to collect logs from multiple security tools.
Desktop Support Engineer at a outsourcing company with 51-200 employees
SentinelOne Singularity AI SIEM has reduced our response time to true positive alerts by approximately forty percent through automation.
IT Security Analyst at a tech consulting company with 11-50 employees
SentinelOne Singularity Complete has helped reduce my organization's mean time to detect by fifty percent.
Director, Infrastructure & Security at Dreamscape Companies
If I engage five engineers for this project and implement SentinelOne, then only one resource is needed to manage the dashboard and criticality alerts.
Business Head at Ivalue Infosolution
In comparison, other EDRs such as Microsoft Defender are quite resource-hungry, and employees often complain about laptop speed, but we do not face those issues.
Cybersecurity Product Manager at a tech services company with 51-200 employees
 

Customer Service

Sentiment score
6.7
SentinelOne's AI SIEM earns high ratings for support but faces criticism for agent transfers and additional service costs.
Sentiment score
7.3
SentinelOne Singularity Endpoint's support is praised for quick, knowledgeable service, despite occasional response speed inconsistencies and escalation concerns.
SentinelOne Singularity AI SIEM has AI-based technical support available.
IT Security Analyst at a tech consulting company with 11-50 employees
Based on my experience with the technical support of SentinelOne Singularity AI SIEM, I would rate them a ten.
Vice President Cyber Security Practice Head at orbit techsol w pvt.ltd
In rating the technical support for SentinelOne, it depends on whether we are discussing EDR or SentinelOne Singularity AI SIEM.
Managing Director at iMark Consult
If we get stuck at midnight, any other TAC team will be in GMT or Europe or America, and they will assign our support engineer and suddenly schedule a call for us and resolve the issue.
Soc Analyst at Softcell Technologies Limited
For the support team of SentinelOne Singularity Endpoint, I would rate them nine out of ten because there is a human voice there, so they are listening and responsive.
Mdr Analyst at Softcell Technologies
Most of the time, we are not aware of how to resolve those questions, and SentinelOne Singularity Endpoint's customer support helps us significantly with a prompt response.
SOC Analyst at Softcell Technologies
 

Scalability Issues

Sentiment score
6.1
SentinelOne Singularity AI SIEM is scalable and effective for complex, hybrid environments, requiring skilled implementation and detailed planning.
Sentiment score
7.7
SentinelOne Singularity Endpoint is scalable, efficiently manages growth, and offers flexible licensing despite high initial costs.
It is designed to handle growing log volumes and supports environments that include on-premises infrastructure, cloud services, endpoints, identity platforms, and network devices.
Desktop Support Engineer at a outsourcing company with 51-200 employees
With any AI adoption, the end goal should be more governance and data security and safety.
Associate Vice President at Novac Technology Solutions
The performance depends on the configuration.
IT Security Analyst at a tech consulting company with 11-50 employees
The system can scale any number of times, and only the license for each endpoint is needed.
Mdr Analyst at Softcell Technologies
I would say ten out of ten for the scalability of SentinelOne Singularity Endpoint because we can scale up and scale down as per requirement.
Security Analyst at a media company with 501-1,000 employees
The cloud-based management model makes it easier to onboard, manage, and monitor large numbers of endpoints without needing additional backend infrastructure.
Cybersecurity Engineer at Gigabit Technologies Pvt Ltd
 

Stability Issues

Sentiment score
8.1
SentinelOne Singularity AI SIEM is praised for stability and AI, but some find it inefficient and less user-friendly.
Sentiment score
8.0
SentinelOne Singularity Endpoint is praised for stability, reliable threat detection, minimal crashes, and improved performance with consistent updates.
I have worked with it, and it is very handy, easy to manage, and excellent with its AI-driven capabilities.
Cybersecurity Engineer at Gigabit Technologies Pvt Ltd
When it comes to stability, I would give SentinelOne Singularity AI SIEM a nine.
IT Security Consultant at Systemhaus for you GmbH
In terms of performance stability, I have never had any crashes, downtimes, or performance issues.
Cyber Security Engineer at a retailer with 201-500 employees
If I have to rate the stability level of Singularity Platform from one to ten, I would say it would be a strong nine.
Information Security Officer at a tech vendor with 51-200 employees
The automation helps a lot, and once implemented, we face no further issues regarding stability or scalability; everything works absolutely fine.
Associate Vice President at Novac Technology Solutions
Even if the agent disconnects from our console, it will still protect the desktop or laptop.
Soc Analyst at Softcell Technologies Limited
 

Room For Improvement

SentinelOne Singularity AI SIEM requires improvements in performance, customization, integrations, automation, pricing, and clearer AI insights.
SentinelOne Singularity Endpoint needs dashboard customization, support responsiveness, UI navigation improvements, and better third-party integration with reduced resource consumption.
The adoption rate will be less compared to other products, as this can be a time-taken process because all my data needs to be offloaded and the system needs to understand my existing alerts, logs, and other things.
Associate Vice President at Novac Technology Solutions
The interface flickers frequently, and sometimes it does not load properly.
IT Security Analyst at a tech consulting company with 11-50 employees
Whenever OT security comes into the picture, the customers do not allow us to integrate their OT devices on a cloud. It should be available on-premises because the OT SIEM market, in the India market for instance, is something around a four to eight billion dollar market.
Vice President Cyber Security Practice Head at orbit techsol w pvt.ltd
The only thing that prevented the attack from succeeding was a free version of Malwarebytes.
Director, Information Technology at Premier Realty Group
When I find a log suspicious, if it automatically points out that a particular point in the log at a specific timing or frame is looking malicious, it would be easier for me.
Cyber Security Trainee at DataSpace Academy
SentinelOne Singularity Complete doesn't have data security solutions such as Forcepoint DLP or 48 layer; SentinelOne Singularity Complete doesn't have that DLP solution.
Soc Analyst at Softcell Technologies Limited
 

Setup Cost

SentinelOne Singularity AI SIEM offers a value-driven package with bundled services; its advanced capabilities justify slightly higher costs.
SentinelOne's pricing is competitive at $6-$10 per device monthly, offering value for features, cheaper than CrowdStrike.
I find SentinelOne's pricing to be reasonable and competitive.
Information Security Principal at a venture capital & private equity firm with 1,001-5,000 employees
Features such as centralized log management, AI-driven analytics, automated workflow, and integrated security options can reduce operational overhead and improve SOC efficiency, which helps justify the investment.
Desktop Support Engineer at a outsourcing company with 51-200 employees
Compared to another SIEM tool's pricing, the pricing is the best, from my side.
Technical Support Executive at Softcell Technologies Limited
If you want protection, you have to pay the price.
Information Security Principal at a venture capital & private equity firm with 1,001-5,000 employees
There are other products that are less expensive, but I tell my clients that in security, they cannot cut corners or look for the cheapest solution.
President at a tech services company with 1-10 employees
Reputation and quality are important, but especially in today’s economy, price is a significant factor.
Security and Compliance at a outsourcing company with 1,001-5,000 employees
 

Valuable Features

SentinelOne Singularity AI SIEM enhances security with automation, AI analytics, third-party integration, and improved SOC efficiency.
SentinelOne enhances security with real-time threat detection, AI-driven insights, and automation, streamlining integration and central management.
We finally have visibility into things that were never visible before.
IT Security Consultant at Systemhaus for you GmbH
It employs a combination of AI and ML to check for viruses or any other malicious processes, including fileless attacks.
Cyber Security Engineer at a retailer with 201-500 employees
The AI-driven threat detection capabilities improve our overall security posture.
Associate Vice President at Novac Technology Solutions
I have an advanced app providing visibility of all my endpoints, which was not the case before.
AGM IT Security at Page Industries Ltd
SentinelOne has a feature to decommission automatically, which has been fantastic.
Computer Technician at VILLE DE POINTE-CLAIRE
There's also automation that gives my team free time, preventing them from having to look for every alert.
Network & Security Section Head/Digital Transformation at a government with 201-500 employees
 

Categories and Ranking

SentinelOne Singularity AI ...
Ranking in AI Observability
6th
Average Rating
8.6
Reviews Sentiment
6.4
Number of Reviews
15
Ranking in other categories
Security Information and Event Management (SIEM) (8th)
SentinelOne Singularity End...
Ranking in AI Observability
2nd
Average Rating
8.8
Reviews Sentiment
7.0
Number of Reviews
286
Ranking in other categories
Endpoint Protection Platform (EPP) (2nd), Anti-Malware Tools (2nd), Endpoint Detection and Response (EDR) (1st), Extended Detection and Response (XDR) (1st), AI-Powered Cybersecurity Platforms (2nd)
 

Mindshare comparison

As of August 2026, in the AI Observability category, the mindshare of SentinelOne Singularity AI SIEM is 1.1%, up from 0.2% compared to the previous year. The mindshare of SentinelOne Singularity Endpoint is 1.6%, down from 6.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
AI Observability Mindshare Distribution
ProductMindshare (%)
SentinelOne Singularity Endpoint1.6%
SentinelOne Singularity AI SIEM1.1%
Other97.3%
AI Observability
 

Featured Reviews

Dev Reshwal - PeerSpot reviewer
Technical Support Executive at Softcell Technologies Limited
Automation has reduced workload and real-time monitoring provides faster incident response
SentinelOne Singularity AI SIEM is the best, but sometimes the dashboards are a little simple compared to other tools. The custom dashboard is not available in their features. Therefore, I would suggest adding the custom dashboard for any of our requirements. The AI-driven analytics from SentinelOne Singularity AI SIEM has not affected our ability to reduce false positives. SentinelOne Singularity AI SIEM has affected my SOC's efficiency in investigating alerts and responding to incidents. If we receive any alerts, we can observe what activity is being done. We can see if it is malicious or something suspicious, or a true positive. We can analyze the path, the hash, and whether the signature is verified or not. We can see if it is an alert triggered by any engine. We can see the source of this. We will do that type of analysis and raise it to the client side. Also, if I identify anything suspicious or malicious in the alert, I will forcefully kill and quarantine it immediately.
Vaibhav Mahendra Kolhe - PeerSpot reviewer
Soc Analyst at Softcell Technologies Limited
Automation has reduced alerts and freed the soc team to focus on faster incident response
Regarding mean time to respond, the improvements I see with SentinelOne Singularity Complete are that genuine files also get alerts. We are getting false positives, but we are also getting genuine true positive alerts. The improvement will be deep visibility because as I am using Splunk as a SIEM, I compare deep visibility with Splunk, but deep visibility has limited access with only a 14-day policy to retain logs. The improvement will be in overall policy management. The third point will be the complexity of policies. If we want some endpoints to use only USB or if we need to block USB on some points, the policy management is very complex. The fourth point will be that Mac OS and Linux don't have the rollback policy; that policy is only for Windows. These four points are improvements if SentinelOne Singularity Complete can address them. Data privacy and security when utilizing Purple AI is crucial for SentinelOne Singularity Complete, and SentinelOne Singularity Complete lacks in data security. Data security is very important in this world. In my organization, if we deploy SentinelOne Singularity Complete and we have integrated all the firewalls, all devices, and AWS devices to SentinelOne Singularity Complete, logs will be forwarded to SentinelOne Singularity Complete through SentinelOne Singularity Complete. However, SentinelOne Singularity Complete doesn't have data security solutions such as Forcepoint DLP or 48 layer; SentinelOne Singularity Complete doesn't have that DLP solution. From the data security point of view, SentinelOne Singularity Complete is not good.
report
Use our free recommendation engine to learn which AI Observability solutions are best for your needs.
911,493 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
22%
Construction Company
7%
Comms Service Provider
6%
Manufacturing Company
6%
Outsourcing Company
10%
Manufacturing Company
9%
Computer Software Company
8%
Financial Services Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business12
Midsize Enterprise5
Large Enterprise4
By reviewers
Company SizeCount
Small Business140
Midsize Enterprise73
Large Enterprise98
 

Questions from the Community

What needs improvement with SentinelOne Singularity AI SIEM?
They could expand more integrations for other third-party products that are not currently available. Those are areas they can improve or have yet to improve. For example, we have firewall integrati...
What is your primary use case for SentinelOne Singularity AI SIEM?
Clients can use SentinelOne Singularity AI SIEM for endpoint security solutions, and apart from that, we currently have something called prompt security where it is helping us to enhance control ov...
What advice do you have for others considering SentinelOne Singularity AI SIEM?
The automated workflow feature impacts my security tasks and manual efforts significantly. Downtime is not necessarily required in scenarios where a particular system has to be isolated. Whether it...
Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. The ability to reverse damage caused by ransomware with minimal interruptions to...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What is your experience regarding pricing and costs for SentinelOne Singularity?
It is neither too costly, but definitely, it is one of the advantages that SentinelOne is quite adapted towards the pricing.
 

Also Known As

No data available
Sentinel Labs, SentinelOne Singularity, Singularity Platform
 

Overview

 

Sample Customers

Information Not Available
Havas, Flex, Estee Lauder, McKesson, Norfolk Southern, JetBlue, Norwegian airlines, TGI Friday, AVX, Fim Bank
Find out what your peers are saying about SentinelOne Singularity AI SIEM vs. SentinelOne Singularity Endpoint and other solutions. Updated: August 2026.
911,493 professionals have used our research since 2012.