

Find out in this report how the two Security Information and Event Management (SIEM) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
The impact of a ransomware attack typically encrypts all critical data and stops production.
Large enterprises that can afford it often choose SentinelOne for its ease of management compared to other platforms.
If I estimate how much time it has saved me, I would say it has saved almost 30 to 40 percent of time compared to other tools.
Local tech support is available, however, for more critical or technical issues, we depend on the OEM directly, especially when it comes to on-prem solutions.
There is a knowledgeable, though small, team of support engineers around the world.
They take some time to respond because they need logs and investigations, which delays the response time.
A lot of people have to reach out to one sole person who has basically developed the system, creating a bottleneck for responses.
On a scale of one to ten, the technical support of SentinelOne would be rated as an 8.5.
I would evaluate their customer service and technical support as very good, five stars.
At any point in time, when network devices increase or there is a change in the infrastructure, we can add more workers and collectors to expand our infrastructure setup.
Fortinet FortiSIEM is highly scalable.
Fortinet FortiSIEM is easy to scale.
I have not run into any issues regarding how scalable Singularity Platform is, so I do not see any limitations for scalability.
Scalability is not an issue for Singularity Platform because it is delivered as a SaaS service, so scalability is taken care of by SentinelOne.
I believe that the system is scalable but it all goes back to personnel behind the scenes and the availability of those people, plus the knowledge they hold in terms of being able to bring larger clients onboard.
It stabilizes itself in an appropriate time, so its uptime is good.
These issues may cause unusual errors and user interface issues.
Some stability issues occur, but Fortinet's technical support team provides assistance.
If I have to rate the stability level of Singularity Platform from one to ten, I would say it would be a strong nine.
The automation helps a lot, and once implemented, we face no further issues regarding stability or scalability; everything works absolutely fine.
The product is pretty stable, and even if the agent is offline, it will handle the threats.
Recently, they revised it to a subscription-based, all-inclusive license.
The built-in APIs in Fortinet FortiSIEM are somewhat lacking and could be improved for better integration with external ITSM products.
Fortinet FortiSIEM should broaden its remediation part to include more features for incident management.
When I find a log suspicious, if it automatically points out that a particular point in the log at a specific timing or frame is looking malicious, it would be easier for me.
Correlation in general is done very well with the storyline because it is the platform's own field for correlating data.
If you are asking if this is fully customizable, I would say it is partially customizable, not fully customizable.
Setting it up for oneself as an enterprise-licensed product can be quite expensive.
Windows agent licenses cost around 3,000 Rupees per device per year.
The revised model is subscription-based and more flexible.
My philosophy is you pay for what you get, so if you decide to cheapen out on the cost of your platform, you are not going to get what you want.
As a SIEM tool, if it were priced less, many more people could explore it.
While it offers very good features at the enterprise level, it comes at a premium price.
It provides extensive logging and record-keeping for internal networks, cloud applications, and services as well as perimeter physical network security.
I find the real-time monitoring and correlation capabilities effective for security alerts.
Real-time monitoring is very much available in Singularity Platform because once the agent is up to date, it protects critical assets across our network against malicious attacks.
Singularity Platform's functionality for ransomware rollback is quite useful because if you have a ransomware attack, most EDR solutions do not have the feature to do a rollback and bring the system to its earlier state, but that is one of the unique features that Singularity Platform has which can be a game changer for customers.
This allows executives to determine if they have to liquefy any of their assets at a certain point in time, providing a great view in terms of risk management and current available cash balances while also considering the strategic direction in the next year or two where they plan on going with their cash balances.
| Product | Mindshare (%) |
|---|---|
| Fortinet FortiSIEM | 2.7% |
| Singularity Platform | 0.4% |
| Other | 96.9% |

| Company Size | Count |
|---|---|
| Small Business | 34 |
| Midsize Enterprise | 22 |
| Large Enterprise | 24 |
| Company Size | Count |
|---|---|
| Small Business | 8 |
| Midsize Enterprise | 2 |
| Large Enterprise | 1 |
FortiSIEM (formerly AccelOps 4) provides an actionable security intelligence platform to monitor security, performance and compliance through a single pane of glass.
Companies around the world use FortiSIEM for the following use cases:
One intelligent platform. Unprecedented speed. Infinite scale. Singularity™ enables unfettered visibility, industry-leading detection, and autonomous response. Discover the power of AI-powered, enterprise-wide cybersecurity.
The world’s leading enterprises use the Singularity platform to prevent, detect, and respond to cyber attacks at machine-speed, greater scale, and higher accuracy across endpoint, cloud, and identity.
Maximize visibility across the entire enterprise. Defend your enterprise with unrivaled speed, coverage, and efficiency. Leverage AI to respond across the entire connected security ecosystem.
We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.