No more typing reviews! Try our Samantha, our new voice AI agent.

CrowdStrike Falcon Sandbox vs SentinelOne Singularity Endpoint comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
4.1
Users have mixed feelings about CrowdStrike Falcon Sandbox ROI, but it effectively reduces incident response and detection downtime.
Sentiment score
6.2
SentinelOne Singularity Endpoint boosts ROI by cutting response times, manpower needs, and providing efficient, integrated security solutions.
SentinelOne Singularity Complete has helped reduce my organization's mean time to detect by fifty percent.
Director, Infrastructure & Security at Dreamscape Companies
If I engage five engineers for this project and implement SentinelOne, then only one resource is needed to manage the dashboard and criticality alerts.
Business Head at Ivalue Infosolution
In comparison, other EDRs such as Microsoft Defender are quite resource-hungry, and employees often complain about laptop speed, but we do not face those issues.
Cybersecurity Product Manager at a tech services company with 51-200 employees
 

Customer Service

Sentiment score
5.7
CrowdStrike Falcon Sandbox support is praised for fast, responsive service, resolving issues quickly, despite some remote support difficulties.
Sentiment score
7.3
SentinelOne Singularity Endpoint support is effective and responsive, though some users experience delays; ratings vary from 6 to 10.
They respond within two hours after I raise a support ticket.
Security Senior Engineer at a consultancy with 51-200 employees
If I would rate support on a scale of 0 to 10, with 10 being the best, I would give them nine points.
Presales Consultant at Cyber Knight Technologies FZ LLC
We repeatedly ask them to collect logs and analyze them before providing a solution via email.
IT Manager at Gigabit Technologies Pvt Ltd
If we get stuck at midnight, any other TAC team will be in GMT or Europe or America, and they will assign our support engineer and suddenly schedule a call for us and resolve the issue.
Soc Analyst at Softcell Technologies Limited
For the support team of SentinelOne Singularity Endpoint, I would rate them nine out of ten because there is a human voice there, so they are listening and responsive.
Mdr Analyst at Softcell Technologies
Most of the time, we are not aware of how to resolve those questions, and SentinelOne Singularity Endpoint's customer support helps us significantly with a prompt response.
SOC Analyst at Softcell Technologies
 

Scalability Issues

Sentiment score
6.7
CrowdStrike Falcon Sandbox is scalable and adaptable, praised for supporting diverse business sizes with effective, flexible performance.
Sentiment score
7.8
SentinelOne Singularity Endpoint is praised for excellent scalability, seamless expansion, and robust performance across diverse organizational sizes.
I would rate the scalability of the solution as very scalable, as it can support medium businesses, small businesses, and large enterprise businesses as well.
Presales Consultant at Cyber Knight Technologies FZ LLC
The system can scale any number of times, and only the license for each endpoint is needed.
Mdr Analyst at Softcell Technologies
It's all auto-scale and auto-categorized, configuring automatically.
AGM IT Security at Page Industries Ltd
SentinelOne Singularity Complete is very scalable.
DGM. Technical Security at a tech services company with 10,001+ employees
 

Stability Issues

Sentiment score
7.6
CrowdStrike Falcon Sandbox is widely regarded as stable, with most users rating its performance confidence as eight out of ten.
Sentiment score
7.9
SentinelOne Singularity Endpoint is praised for its stability, continuous protection, and reliable performance, scoring 8-10 for dependability.
If I have to rate the stability level of Singularity Platform from one to ten, I would say it would be a strong nine.
Information Security Officer at a tech vendor with 51-200 employees
The automation helps a lot, and once implemented, we face no further issues regarding stability or scalability; everything works absolutely fine.
Associate Vice President at Novac Technology Solutions
Even if the agent disconnects from our console, it will still protect the desktop or laptop.
Soc Analyst at Softcell Technologies Limited
 

Room For Improvement

CrowdStrike Falcon Sandbox needs interface improvements, enhanced detection and integration, faster processing, and better incident presentation.
Users face dashboard complexity, system integration challenges, and resource demands, affecting performance, policy control, and pricing transparency.
While CrowdStrike is a powerful tool, the user interface is cluttered with many features, making it challenging to navigate.
Security Senior Engineer at a consultancy with 51-200 employees
When we push the agent from CrowdStrike Falcon Sandbox for mass deployment, the agent is not properly installed on the user end, leading to communication issues and agent corruption.
IT Manager at Gigabit Technologies Pvt Ltd
Additional integrations will be beneficial to cover the whole use cases.
Presales Consultant at Cyber Knight Technologies FZ LLC
The only thing that prevented the attack from succeeding was a free version of Malwarebytes.
Director, Information Technology at Premier Realty Group
When I find a log suspicious, if it automatically points out that a particular point in the log at a specific timing or frame is looking malicious, it would be easier for me.
Cyber Security Trainee at DataSpace Academy
SentinelOne Singularity Complete doesn't have data security solutions such as Forcepoint DLP or 48 layer; SentinelOne Singularity Complete doesn't have that DLP solution.
Soc Analyst at Softcell Technologies Limited
 

Setup Cost

CrowdStrike Falcon Sandbox pricing is usage-based, perceived as above mid-range, with varying opinions on its affordability.
SentinelOne Singularity Endpoint offers competitive pricing, robust features, and flexibility, appealing for enterprises despite some management limitations.
Pricing is based on the number of endpoints and the features I need, operating on a usage-based cost structure.
Security Senior Engineer at a consultancy with 51-200 employees
I think it can be expensive, but it depends on the products.
IT- Manager at Orient Craft Ltd.
If you want protection, you have to pay the price.
Information Security Principal at a venture capital & private equity firm with 1,001-5,000 employees
There are other products that are less expensive, but I tell my clients that in security, they cannot cut corners or look for the cheapest solution.
President at a tech services company with 1-10 employees
Reputation and quality are important, but especially in today’s economy, price is a significant factor.
Security and Compliance at a outsourcing company with 1,001-5,000 employees
 

Valuable Features

CrowdStrike Falcon Sandbox provides efficient threat detection, robust analysis, and seamless integration, ensuring comprehensive security and minimal impact on performance.
SentinelOne Singularity Endpoint excels in AI-driven threat detection, autonomous response, and seamless integration for enhanced security management.
One of the key features is its policy-based notifications, which alert us to unauthorized actions.
Security Senior Engineer at a consultancy with 51-200 employees
This product is powerful in detection, which is the most important part because any customer wants a solution that detects what's happening.
Presales Consultant at Cyber Knight Technologies FZ LLC
I find the notifications and alerts received from CrowdStrike server to be invaluable.
Senior Consultant at Ernst & Young
I have an advanced app providing visibility of all my endpoints, which was not the case before.
AGM IT Security at Page Industries Ltd
SentinelOne has a feature to decommission automatically, which has been fantastic.
Computer Technician at VILLE DE POINTE-CLAIRE
There's also automation that gives my team free time, preventing them from having to look for every alert.
Network & Security Section Head/Digital Transformation at a government with 201-500 employees
 

Categories and Ranking

CrowdStrike Falcon Sandbox
Ranking in Anti-Malware Tools
12th
Average Rating
8.2
Reviews Sentiment
6.5
Number of Reviews
9
Ranking in other categories
No ranking in other categories
SentinelOne Singularity End...
Ranking in Anti-Malware Tools
2nd
Average Rating
8.8
Reviews Sentiment
7.1
Number of Reviews
253
Ranking in other categories
Endpoint Protection Platform (EPP) (3rd), Endpoint Detection and Response (EDR) (2nd), Extended Detection and Response (XDR) (2nd), AI-Powered Cybersecurity Platforms (3rd), AI Observability (2nd)
 

Mindshare comparison

As of June 2026, in the Anti-Malware Tools category, the mindshare of CrowdStrike Falcon Sandbox is 1.5%, up from 1.2% compared to the previous year. The mindshare of SentinelOne Singularity Endpoint is 2.9%, down from 4.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Anti-Malware Tools Mindshare Distribution
ProductMindshare (%)
SentinelOne Singularity Endpoint2.9%
CrowdStrike Falcon Sandbox1.5%
Other95.6%
Anti-Malware Tools
 

Featured Reviews

AS
IT- Manager at Orient Craft Ltd.
Cloud deployment offers flexibility with performance and stability
The impact of CrowdStrike Falcon Sandbox on automated features is maintained by the partner. Customizable reports partly help me with my team's investigations. We are not using any other security tools; we are only using the Falcon. In my organization, approximately 50 users are using CrowdStrike Falcon Sandbox. There is nothing that requires maintenance; the partner handles it. I rate CrowdStrike Falcon Sandbox eight out of ten.
Vaibhav Mahendra Kolhe - PeerSpot reviewer
Soc Analyst at Softcell Technologies Limited
Automation has reduced alerts and freed the soc team to focus on faster incident response
Regarding mean time to respond, the improvements I see with SentinelOne Singularity Complete are that genuine files also get alerts. We are getting false positives, but we are also getting genuine true positive alerts. The improvement will be deep visibility because as I am using Splunk as a SIEM, I compare deep visibility with Splunk, but deep visibility has limited access with only a 14-day policy to retain logs. The improvement will be in overall policy management. The third point will be the complexity of policies. If we want some endpoints to use only USB or if we need to block USB on some points, the policy management is very complex. The fourth point will be that Mac OS and Linux don't have the rollback policy; that policy is only for Windows. These four points are improvements if SentinelOne Singularity Complete can address them. Data privacy and security when utilizing Purple AI is crucial for SentinelOne Singularity Complete, and SentinelOne Singularity Complete lacks in data security. Data security is very important in this world. In my organization, if we deploy SentinelOne Singularity Complete and we have integrated all the firewalls, all devices, and AWS devices to SentinelOne Singularity Complete, logs will be forwarded to SentinelOne Singularity Complete through SentinelOne Singularity Complete. However, SentinelOne Singularity Complete doesn't have data security solutions such as Forcepoint DLP or 48 layer; SentinelOne Singularity Complete doesn't have that DLP solution. From the data security point of view, SentinelOne Singularity Complete is not good.
report
Use our free recommendation engine to learn which Anti-Malware Tools solutions are best for your needs.
899,324 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
15%
Manufacturing Company
13%
Comms Service Provider
11%
Construction Company
11%
Computer Software Company
10%
Manufacturing Company
9%
Financial Services Firm
8%
Comms Service Provider
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business5
Midsize Enterprise1
Large Enterprise3
By reviewers
Company SizeCount
Small Business118
Midsize Enterprise62
Large Enterprise86
 

Questions from the Community

What is your experience regarding pricing and costs for CrowdStrike Falcon Sandbox?
I am not sure if there is a financial benefit; maybe, maybe not, as we did not evaluate that aspect. I think it can be expensive, but it depends on the products.
What needs improvement with CrowdStrike Falcon Sandbox?
As for room for improvement, we can mention that maybe some additional integrations will be beneficial to cover the whole use cases.
What is your primary use case for CrowdStrike Falcon Sandbox?
The major use case for CrowdStrike Falcon Sandbox is that we are using it with customers who need to check and validate the data the users are uploading to them, to check all the files and all the ...
Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. The ability to reverse damage caused by ransomware with minimal interruptions to...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What is your experience regarding pricing and costs for SentinelOne Singularity?
It is neither too costly, but definitely, it is one of the advantages that SentinelOne is quite adapted towards the pricing.
 

Also Known As

No data available
Sentinel Labs, SentinelOne Singularity, Singularity Platform
 

Overview

 

Sample Customers

Information Not Available
Havas, Flex, Estee Lauder, McKesson, Norfolk Southern, JetBlue, Norwegian airlines, TGI Friday, AVX, Fim Bank
Find out what your peers are saying about CrowdStrike Falcon Sandbox vs. SentinelOne Singularity Endpoint and other solutions. Updated: April 2026.
899,324 professionals have used our research since 2012.