Try our new research platform with insights from 80,000+ expert users

Expel vs SentinelOne Vigilance comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Expel
Ranking in Managed Detection and Response (MDR)
20th
Average Rating
9.0
Reviews Sentiment
7.6
Number of Reviews
1
Ranking in other categories
SOC as a Service (5th)
SentinelOne Vigilance
Ranking in Managed Detection and Response (MDR)
6th
Average Rating
8.6
Reviews Sentiment
7.4
Number of Reviews
21
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2025, in the Managed Detection and Response (MDR) category, the mindshare of Expel is 1.9%, up from 1.8% compared to the previous year. The mindshare of SentinelOne Vigilance is 6.2%, down from 7.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Managed Detection and Response (MDR)
 

Featured Reviews

reviewer2578461 - PeerSpot reviewer
Rapid threat management and diverse technology integration for effective monitoring
Expel has made it easier for companies to monitor and manage various log sources. With its vast integration portfolio, customers can efficiently monitor diverse environments. Time to value is quick, as Expel can turn their service up very rapidly. They have both automated active responses and human processes that quicken threat resolution.
Rahul Kate - PeerSpot reviewer
Improved efficiency with automated pricing and streamlined console
We are based in India, and we need to have these resources. We use it with smaller teams on security, leveraging expertise from SentinelOne The most valuable functions are automated pricing and ensuring the console is clean.  Additionally, it helps complete RC tasks and get the right information…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Their threat hunting protocol and process with AI and machine learning are strong, allowing for active and rapid responses."
"SentinelOne Vigilance has very good detection."
"In our company, we use SentinelOne Vigilance for security purposes. We not only use it to detect viruses but also to monitor any activities on the endpoints so that we can take appropriate measures to mitigate any potential threats."
"I would rate SentinelOne's customer service and support a five out of five."
"The best feature of this solution is the third-party management aspect. An external company oversees the tool's management and monitors the data it generates. If the EDR detects suspicious activity, it will react accordingly and take necessary actions, such as blocking a device."
"SentinelOne has a rollback feature that has helped them gain popularity in the market. No other competitors of the solution including Cisco, Fortinet, or Cortex XDR have this feature. SentinelOne is a kernel-independent solution. We don’t need to check the kernel dependency on the Linux platform. They also commit to a 100 percent recovery from ransomware attacks. The solution has rollback features for ransomware on Windows."
"SentinelOne is a comprehensive solution for protecting SOAP-based web services and AWS-based cloud infrastructure."
"I have seen benefits from using it, and I can assure that it is 100% protected against many threats, and it is always in the actual state."
"SentinelOne Vigilance is an endpoint security tool with quarantining, dashboards showing us information, and many capabilities like manual and automatic quarantine of environmental issues."
 

Cons

"The one area where Expel may not measure up is if a customer requires a managed SIEM as part of their overall solution. There's a gap there, and solutions might require third-party assistance for management."
"When upgrades are required on the server, you need to almost remove SentinelOne Vigilance completely off the system. We put SentinelOne Vigilance on silence for the monitor mode, but we were having trouble upgrading the server. I had to remove SentinelOne Vigilance completely from the server, but that meant that all the previous logs of attacks I wanted to look at on the server were gone. This is one thing they need to improve, they need better compatibility with the Microsoft Windows service. I should not have to remove the agent completely to upgrade the service."
"Occasionally during an update, customers may temporarily be without protection until the upgrade is complete."
"I suspect that the areas for improvement may not necessarily lie within the tool itself but rather in our organization's lack of knowledge and understanding of cybersecurity. Cybersecurity is a complex area, and our organization has a skill set deficit. Therefore, we rely on our cybersecurity support company to help us manage the tool and handle incidents. Our limited expertise sometimes prevents us from fully utilizing them or identifying potential gaps."
"SentinelOne Vigilance doesn't actively monitor incoming emails or offer an email plugin for Outlook."
"The solution's memory forensics capabilities and hard disk capacities are quite basic."
"The support response time is not the issue, however, sometimes, the answers provided are not fully satisfactory due to the nature of the technology and issue complexity."
"The only thing I'm not sure about is I haven't deployed it on any mobile devices."
"My only complaint is that the knowledge base is not accessible to the customer."
 

Pricing and Cost Advice

Information not available
"SentinelOne Vigilance is priced in a normal range."
"The solution’s pricing is very reasonable."
"The licensing cost depends on the number of connected devices and whether you purchase additional services."
"The tool's pricing is slightly cheaper than other alternatives. It's not just about licensing costs; because we already have it implemented, we can save money on deployment and initial setup. Additionally, SentinelOne Vigilance is slightly cheaper in licensing, maybe around 10-15 percent cheaper."
"I give the cost a three out of ten."
"I rate the product's pricing an eight out of ten since it is really expensive, but it is well worth what my company gets."
"On a scale from one to ten, where one is cheap, and ten is expensive, I rate the solution's pricing an eight out of ten."
"I rate the solution's pricing a five out of ten since it is a very highly-priced solution."
report
Use our free recommendation engine to learn which Managed Detection and Response (MDR) solutions are best for your needs.
864,155 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Financial Services Firm
13%
Retailer
8%
Manufacturing Company
7%
Computer Software Company
18%
Manufacturing Company
9%
Government
6%
Educational Organization
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for Expel?
Expel's pricing has adapted as the market evolved and has become competitive over the past twelve months.
What needs improvement with Expel?
The one area where Expel may not measure up is if a customer requires a managed SIEM as part of their overall solution. There's a gap there, and solutions might require third-party assistance for m...
What is your primary use case for Expel?
I have experience reselling Expel. Customers often come to me wanting to evaluate multiple providers to make a choice based on their specific use cases, requirements, technology investments, and so...
What do you like most about SentinelOne Vigilance?
The best feature of this solution is the third-party management aspect. An external company oversees the tool's management and monitors the data it generates. If the EDR detects suspicious activity...
What is your experience regarding pricing and costs for SentinelOne Vigilance?
The pricing, licensing, and setup costs in general are quite affordable.
What needs improvement with SentinelOne Vigilance?
Regarding disadvantages of SentinelOne Vigilance, there is no local hub server that I can use to download the updates and signatures only once. The solution is fully scalable, although the only poi...
 

Also Known As

Workbench, Expel SOC-as-a-Service
No data available
 

Overview

 

Sample Customers

Amanda Fennell CSO
Norwegian Airlines, TGI Fridays, AVX, FIMBank
Find out what your peers are saying about CrowdStrike, Huntress, Field Effect and others in Managed Detection and Response (MDR). Updated: June 2025.
864,155 professionals have used our research since 2012.