No more typing reviews! Try our Samantha, our new voice AI agent.

SentinelOne Singularity Endpoint vs Symantec Protection Engine comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

SentinelOne Singularity End...
Ranking in Anti-Malware Tools
2nd
Average Rating
8.8
Reviews Sentiment
7.0
Number of Reviews
289
Ranking in other categories
Endpoint Protection Platform (EPP) (2nd), Endpoint Detection and Response (EDR) (1st), Extended Detection and Response (XDR) (1st), AI-Powered Cybersecurity Platforms (2nd), AI Observability (2nd)
Symantec Protection Engine
Ranking in Anti-Malware Tools
19th
Average Rating
7.6
Reviews Sentiment
6.1
Number of Reviews
8
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the Anti-Malware Tools category, the mindshare of SentinelOne Singularity Endpoint is 3.1%, down from 3.7% compared to the previous year. The mindshare of Symantec Protection Engine is 0.6%, up from 0.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Anti-Malware Tools Mindshare Distribution
ProductMindshare (%)
SentinelOne Singularity Endpoint3.1%
Symantec Protection Engine0.6%
Other96.3%
Anti-Malware Tools
 

Featured Reviews

Vaibhav Mahendra Kolhe - PeerSpot reviewer
Soc Analyst at Softcell Technologies Limited
Automation has reduced alerts and freed the soc team to focus on faster incident response
Regarding mean time to respond, the improvements I see with SentinelOne Singularity Complete are that genuine files also get alerts. We are getting false positives, but we are also getting genuine true positive alerts. The improvement will be deep visibility because as I am using Splunk as a SIEM, I compare deep visibility with Splunk, but deep visibility has limited access with only a 14-day policy to retain logs. The improvement will be in overall policy management. The third point will be the complexity of policies. If we want some endpoints to use only USB or if we need to block USB on some points, the policy management is very complex. The fourth point will be that Mac OS and Linux don't have the rollback policy; that policy is only for Windows. These four points are improvements if SentinelOne Singularity Complete can address them. Data privacy and security when utilizing Purple AI is crucial for SentinelOne Singularity Complete, and SentinelOne Singularity Complete lacks in data security. Data security is very important in this world. In my organization, if we deploy SentinelOne Singularity Complete and we have integrated all the firewalls, all devices, and AWS devices to SentinelOne Singularity Complete, logs will be forwarded to SentinelOne Singularity Complete through SentinelOne Singularity Complete. However, SentinelOne Singularity Complete doesn't have data security solutions such as Forcepoint DLP or 48 layer; SentinelOne Singularity Complete doesn't have that DLP solution. From the data security point of view, SentinelOne Singularity Complete is not good.
Abhimanyu Das - PeerSpot reviewer
Senior Cybersecurity Engineer at Kyndryl
Real-time file security has reduced incident tickets and improves threat detection accuracy
The best features of Symantec Protection Engine include machine learning, file reputation, and real-time scanning. It efficiently handles heavy loads through ICAP and cloud-based processing, reducing the burden on endpoints compared to Trend Micro and other endpoint security solutions. Its centralized control is also noteworthy. Through machine learning, it detects both known and unknown malware and malicious URLs, in addition to performing signature-based scans that assist SOC teams in analysis. The solution is highly effective in leveraging both machine learning and file reputation. Regarding centralized control, it offers a unified management console for policy deployment and provides real-time visibility through dashboards, helping save significant administrative time. Symantec Protection Engine has had a positive impact on our organization by enhancing our overall security posture. It effectively blocks a high volume of file-based threats across more than 200 servers, saves SOC analysts time in endpoint remediation, and streamlines compliance processes. It further strengthens security through real-time scanning and machine learning-based quarantine, blocking phishing payloads in SharePoint uploads before they reach endpoints, thereby reducing incidents by 30–40% compared to signature-only tools.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It has saved us from a couple of ransomware attacks already."
"For now, I think this is the best ADR in my opinion, so I am happy to use SentinelOne Singularity Endpoint every day in my job."
"We saw a return of investment within the first month."
"The most valuable feature varies from client to client but having absolute clarity of what happened and the autonomous actions of SentinelOne are what most people find the most assuring."
"The anti-ransomware capability to analyze the threats and user-friendliness are the most valuable features."
"The GUI is really easy to use."
"During the time of attacks, if there is any data loss, we were able to easily roll back those attacks and retrieve that data for the client with a single click."
"The management dashboard is the most valuable feature."
"The biggest advantage of Symantec Protection Engine is that one tool protects all, and it is centrally managed."
"Symantec Protection Engine provides me with the option of both cloud and on-premise solutions, which stands out for both me and my clients."
"Symantec Protection Engine has improved my security posture by helping me identify potentially malicious files before they reach users or critical systems, and the automated scanning process has also reduced manual efforts for my team, allowing us to focus on other security tasks and respond to threats more efficiently."
"The best features that I like the most include the threat intelligence network, which is effective in protecting against evolving threats."
"The operational efficiency with the high-performance scanning of Symantec Protection Engine is very good."
"What I appreciate in Symantec Protection Engine is the Virtual Policy Manager (VPM) and the Application Name feature, which are really effective."
"Symantec Protection Engine is a cheaper and rock-solid product where basic anti-spam features and threat intelligence are needed."
"Symantec Protection Engine's been a game-changer for us at Kantar—blocks like 80-85% of file-based threats right at the gateway before they hit our 200 servers, cutting down endpoint incidents big time."
 

Cons

"From the data security point of view, SentinelOne Singularity Complete is not good."
"We have had some stability issues with SentinelOne due to Windows 10 feature updates; it should be more stable."
"There is not much flexibility in terms of policy fine-tuning. We can turn it off or turn it on, but, there's nothing much else to do. Everything is predefined. It's good in a way, but you don't get much flexibility if you want to do something particular."
"The solution needs better reporting on new threats and malware. The reporting is present, but I can't find the information easily."
"One area for improvement is automated deployment. I use it through a group policy. I put in the PC name, and when the user logs in, if the PC is in that group, it attempts an MSI install through Active Directory via GPO. That seems to play a little havoc and can conflict with manual installs, causing issues where it wants to delete and reinstall the client."
"Writing the parsers for data ingestion can be a bit annoying in SentinelOne Singularity Complete."
"Regarding SentinelOne Singularity Endpoint's AI capabilities, I find its accuracy and reliability of output to be dependable, though I believe it could improve by opening up the access to more than summarizing or creating queries."
"Using the filters takes a little bit of time to get to used to."
"I would like to see improvements in reporting and troubleshooting capabilities for Symantec Protection Engine, as more detailed insights and simplified diagnostics would make day-to-day administration easier."
"While I have mentioned many advantages of Symantec Protection Engine, there are areas for improvement, particularly the dashboard features."
"We have scenarios in which Symantec Protection Engine misses some threats, spam, and targeted attacks that Proofpoint can catch with AI security features."
"For the improvement of Symantec Protection Engine, the engine did not work with their basic engine when I was working, which was almost three or four years before."
"Price is a significant area for improvement. The pricing is quite expensive, and it is particularly high for regular customers."
"As for pricing, I would say it is a little expensive compared to competitors, and I think the vendor could achieve more market growth if the pricing were more reasonable."
"To improve Symantec Protection Engine, I suggest simplifying its integration with other tools, as it is more complex compared to Trend Micro and CrowdStrike."
"I have concerns about scalability."
 

Pricing and Cost Advice

"SentinelOne Singularity Complete is reasonably priced."
"The pricing appears to be pretty affordable."
"USD$6 per end point which decreases as end points increase."
"I can pay, for my environment, between $30,000 and $40,000 a year, and that's a pretty good deal."
"SentinelOne is significantly less expensive than CrowdStrike. I recently did a price comparison between CrowdStrike and SentinelOne to determine where we are going for the next three years. CrowdStrike is 200% to 300% the cost."
"The pricing is on the higher end, making it less suitable for small or medium-sized businesses and perhaps not the ideal fit for the public sector where budget constraints may be more pronounced."
"The pricing is very reasonable."
"The price is fair for what we are getting."
Information not available
report
Use our free recommendation engine to learn which Anti-Malware Tools solutions are best for your needs.
913,683 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
11%
Manufacturing Company
9%
Computer Software Company
8%
Financial Services Firm
7%
Outsourcing Company
17%
Healthcare Company
13%
Construction Company
12%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business140
Midsize Enterprise73
Large Enterprise98
By reviewers
Company SizeCount
Small Business3
Large Enterprise4
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. The ability to reverse damage caused by ransomware with minimal interruptions to...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What is your experience regarding pricing and costs for SentinelOne Singularity?
It is neither too costly, but definitely, it is one of the advantages that SentinelOne is quite adapted towards the pricing.
What needs improvement with Symantec Protection Engine?
Symantec Protection Engine works well overall, but troubleshooting can sometimes take extra time when detailed logs need to be reviewed; other than that, my experience has been positive. I would li...
What is your primary use case for Symantec Protection Engine?
I mainly use Symantec Protection Engine for scanning files for malware, protecting emails, and web filtering URL protections. I use Symantec Protection Engine to scan files uploaded by users and sh...
 

Also Known As

Sentinel Labs, SentinelOne Singularity, Singularity Platform
No data available
 

Overview

 

Sample Customers

Havas, Flex, Estee Lauder, McKesson, Norfolk Southern, JetBlue, Norwegian airlines, TGI Friday, AVX, Fim Bank
Information Not Available
Find out what your peers are saying about SentinelOne Singularity Endpoint vs. Symantec Protection Engine and other solutions. Updated: September 2026.
913,683 professionals have used our research since 2012.