No more typing reviews! Try our Samantha, our new voice AI agent.

CrowdStrike Falcon Sandbox vs SentinelOne Singularity Endpoint comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Apr 9, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
4.1
Users have mixed feelings about CrowdStrike Falcon Sandbox ROI, but it effectively reduces incident response and detection downtime.
Sentiment score
6.5
SentinelOne Singularity Endpoint automates threat detection, saving time and costs, enhancing cybersecurity, and integrating seamlessly with existing systems.
SentinelOne Singularity Complete has helped reduce my organization's mean time to detect by fifty percent.
Director, Infrastructure & Security at Dreamscape Companies
If I engage five engineers for this project and implement SentinelOne, then only one resource is needed to manage the dashboard and criticality alerts.
Business Head at Ivalue Infosolution
SentinelOne Singularity Endpoint has freed up my staff for other projects and tasks, reducing their workload by about 40 to 60% due to its main detection and investigation capabilities.
Soc Analyst at ISECURION
 

Customer Service

Sentiment score
5.7
CrowdStrike Falcon Sandbox support is praised for fast, responsive service, resolving issues quickly, despite some remote support difficulties.
Sentiment score
7.3
SentinelOne support is praised for responsiveness and resolution but faces challenges with delays and contacting specific personnel.
They respond within two hours after I raise a support ticket.
Security Senior Engineer at a consultancy with 51-200 employees
If I would rate support on a scale of 0 to 10, with 10 being the best, I would give them nine points.
Presales Consultant at Cyber Knight Technologies FZ LLC
We repeatedly ask them to collect logs and analyze them before providing a solution via email.
IT Manager at Gigabit Technologies Pvt Ltd
If we get stuck at midnight, any other TAC team will be in GMT or Europe or America, and they will assign our support engineer and suddenly schedule a call for us and resolve the issue.
Soc Analyst at Softcell Technologies Limited
For the support team of SentinelOne Singularity Endpoint, I would rate them nine out of ten because there is a human voice there, so they are listening and responsive.
Mdr Analyst at Softcell Technologies
We are using the automated email process for support, and they respond within an hour or two hours sometimes.
Computer Technician at VILLE DE POINTE-CLAIRE
 

Scalability Issues

Sentiment score
6.7
CrowdStrike Falcon Sandbox is scalable and adaptable, praised for supporting diverse business sizes with effective, flexible performance.
Sentiment score
7.9
SentinelOne Singularity Endpoint offers scalable, cloud-native management adaptable for any organization size, ensuring efficient performance and easy deployment.
I would rate the scalability of the solution as very scalable, as it can support medium businesses, small businesses, and large enterprise businesses as well.
Presales Consultant at Cyber Knight Technologies FZ LLC
The platform is designed to handle thousands of endpoints without significant performance degradation.
Network Security Engineer at Arrow PC Network Pvt Ltd
The system can scale any number of times, and only the license for each endpoint is needed.
Mdr Analyst at Softcell Technologies
It's all auto-scale and auto-categorized, configuring automatically.
AGM IT Security at Page Industries Ltd
 

Stability Issues

Sentiment score
7.6
CrowdStrike Falcon Sandbox is widely regarded as stable, with most users rating its performance confidence as eight out of ten.
Sentiment score
7.9
SentinelOne Singularity Endpoint is highly stable, with minimal downtime, reliable updates, and effective resource management, despite minor compatibility issues.
If I have to rate the stability level of Singularity Platform from one to ten, I would say it would be a strong nine.
Information Security Officer at a tech vendor with 51-200 employees
The automation helps a lot, and once implemented, we face no further issues regarding stability or scalability; everything works absolutely fine.
Associate Vice President at Novac Technology Solutions
Even if the agent disconnects from our console, it will still protect the desktop or laptop.
Soc Analyst at Softcell Technologies Limited
 

Room For Improvement

CrowdStrike Falcon Sandbox needs interface improvements, enhanced detection and integration, faster processing, and better incident presentation.
SentinelOne should enhance dashboard usability, policy flexibility, third-party integration, threat insights, and Linux compatibility, addressing user concerns.
While CrowdStrike is a powerful tool, the user interface is cluttered with many features, making it challenging to navigate.
Security Senior Engineer at a consultancy with 51-200 employees
When we push the agent from CrowdStrike Falcon Sandbox for mass deployment, the agent is not properly installed on the user end, leading to communication issues and agent corruption.
IT Manager at Gigabit Technologies Pvt Ltd
For larger files measured in MB, it takes a considerable amount of time to process, so it should be faster because it is very slow currently.
Soc Analyst at ISECURION
The only thing that prevented the attack from succeeding was a free version of Malwarebytes.
Director, Information Technology at Premier Realty Group
When I find a log suspicious, if it automatically points out that a particular point in the log at a specific timing or frame is looking malicious, it would be easier for me.
Cyber Security Mentor and trainee at DataSpace Academy
SentinelOne Singularity Complete doesn't have data security solutions such as Forcepoint DLP or 48 layer; SentinelOne Singularity Complete doesn't have that DLP solution.
Soc Analyst at Softcell Technologies Limited
 

Setup Cost

CrowdStrike Falcon Sandbox pricing is usage-based, perceived as above mid-range, with varying opinions on its affordability.
SentinelOne Singularity is competitively priced per device, valued for enterprise features, but seen as costly for smaller businesses.
Pricing is based on the number of endpoints and the features I need, operating on a usage-based cost structure.
Security Senior Engineer at a consultancy with 51-200 employees
I think it can be expensive, but it depends on the products.
IT- Manager at Orient Craft Ltd.
If you want protection, you have to pay the price.
Information Security Principal at a venture capital & private equity firm with 1,001-5,000 employees
There are other products that are less expensive, but I tell my clients that in security, they cannot cut corners or look for the cheapest solution.
President at a tech services company with 1-10 employees
Reputation and quality are important, but especially in today’s economy, price is a significant factor.
Security and Compliance at a outsourcing company with 1,001-5,000 employees
 

Valuable Features

CrowdStrike Falcon Sandbox provides efficient threat detection, robust analysis, and seamless integration, ensuring comprehensive security and minimal impact on performance.
SentinelOne Singularity Endpoint offers real-time threat detection, AI-driven insights, and efficient management with low resource impact.
One of the key features is its policy-based notifications, which alert us to unauthorized actions.
Security Senior Engineer at a consultancy with 51-200 employees
This product is powerful in detection, which is the most important part because any customer wants a solution that detects what's happening.
Presales Consultant at Cyber Knight Technologies FZ LLC
CrowdStrike Falcon Sandbox has positively impacted my organization by improving our ability to analyze suspicious files and reducing the risk of false decisions and false detections.
Soc Analyst at ISECURION
I have an advanced app providing visibility of all my endpoints, which was not the case before.
AGM IT Security at Page Industries Ltd
SentinelOne has a feature to decommission automatically, which has been fantastic.
Computer Technician at VILLE DE POINTE-CLAIRE
There's also automation that gives my team free time, preventing them from having to look for every alert.
Network & Security Section Head/Digital Transformation at a government with 201-500 employees
 

Categories and Ranking

CrowdStrike Falcon Sandbox
Ranking in Anti-Malware Tools
10th
Average Rating
8.2
Reviews Sentiment
6.5
Number of Reviews
10
Ranking in other categories
No ranking in other categories
SentinelOne Singularity End...
Ranking in Anti-Malware Tools
2nd
Average Rating
8.8
Reviews Sentiment
7.1
Number of Reviews
233
Ranking in other categories
Security Information and Event Management (SIEM) (6th), Endpoint Protection Platform (EPP) (3rd), Endpoint Detection and Response (EDR) (2nd), Extended Detection and Response (XDR) (2nd), AI-Powered Cybersecurity Platforms (4th), AI Observability (4th)
 

Mindshare comparison

As of April 2026, in the Anti-Malware Tools category, the mindshare of CrowdStrike Falcon Sandbox is 1.6%, up from 1.2% compared to the previous year. The mindshare of SentinelOne Singularity Endpoint is 2.5%, down from 4.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Anti-Malware Tools Mindshare Distribution
ProductMindshare (%)
SentinelOne Singularity Complete2.5%
CrowdStrike Falcon Sandbox1.6%
Other95.9%
Anti-Malware Tools
 

Featured Reviews

PankajKumar24 - PeerSpot reviewer
IT Manager at Gigabit Technologies Pvt Ltd
Praises the user-friendly interface but experiences frequent deployment challenges
The advantages of CrowdStrike Falcon Sandbox are if Falcon does not detect, it automatically sandboxes unknown detections and provides us with signatures to mitigate those detections.Behavioral monitoring detects when a user works on the same Excel and PDF files; if the solution finds unbehavioral detections in those files or temp files, it gets blocked.This is a cloud solution, and because of that, it's not our responsibility for maintenance since the CrowdStrike Falcon team automatically upgrades the solutions.There are no slowness issues from CrowdStrike Falcon Sandbox. This is a SaaS solution.
Vaibhav Mahendra Kolhe - PeerSpot reviewer
Soc Analyst at Softcell Technologies Limited
Automation has reduced alerts and freed the soc team to focus on faster incident response
Regarding mean time to respond, the improvements I see with SentinelOne Singularity Complete are that genuine files also get alerts. We are getting false positives, but we are also getting genuine true positive alerts. The improvement will be deep visibility because as I am using Splunk as a SIEM, I compare deep visibility with Splunk, but deep visibility has limited access with only a 14-day policy to retain logs. The improvement will be in overall policy management. The third point will be the complexity of policies. If we want some endpoints to use only USB or if we need to block USB on some points, the policy management is very complex. The fourth point will be that Mac OS and Linux don't have the rollback policy; that policy is only for Windows. These four points are improvements if SentinelOne Singularity Complete can address them. Data privacy and security when utilizing Purple AI is crucial for SentinelOne Singularity Complete, and SentinelOne Singularity Complete lacks in data security. Data security is very important in this world. In my organization, if we deploy SentinelOne Singularity Complete and we have integrated all the firewalls, all devices, and AWS devices to SentinelOne Singularity Complete, logs will be forwarded to SentinelOne Singularity Complete through SentinelOne Singularity Complete. However, SentinelOne Singularity Complete doesn't have data security solutions such as Forcepoint DLP or 48 layer; SentinelOne Singularity Complete doesn't have that DLP solution. From the data security point of view, SentinelOne Singularity Complete is not good.
report
Use our free recommendation engine to learn which Anti-Malware Tools solutions are best for your needs.
890,124 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
15%
Manufacturing Company
12%
Comms Service Provider
12%
Construction Company
8%
Computer Software Company
11%
Manufacturing Company
8%
Financial Services Firm
8%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise1
Large Enterprise3
By reviewers
Company SizeCount
Small Business107
Midsize Enterprise57
Large Enterprise79
 

Questions from the Community

What is your experience regarding pricing and costs for CrowdStrike Falcon Sandbox?
I am not sure if there is a financial benefit; maybe, maybe not, as we did not evaluate that aspect. I think it can be expensive, but it depends on the products.
What needs improvement with CrowdStrike Falcon Sandbox?
As for room for improvement, we can mention that maybe some additional integrations will be beneficial to cover the whole use cases.
What is your primary use case for CrowdStrike Falcon Sandbox?
The major use case for CrowdStrike Falcon Sandbox is that we are using it with customers who need to check and validate the data the users are uploading to them, to check all the files and all the ...
Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. The ability to reverse damage caused by ransomware with minimal interruptions to...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
 

Also Known As

No data available
Sentinel Labs, SentinelOne Singularity, Singularity Platform
 

Overview

 

Sample Customers

Information Not Available
Havas, Flex, Estee Lauder, McKesson, Norfolk Southern, JetBlue, Norwegian airlines, TGI Friday, AVX, Fim Bank
Find out what your peers are saying about CrowdStrike Falcon Sandbox vs. SentinelOne Singularity Endpoint and other solutions. Updated: April 2026.
890,124 professionals have used our research since 2012.