No more typing reviews! Try our Samantha, our new voice AI agent.

NetWitness Platform vs SentinelOne Singularity AI SIEM comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

NetWitness Platform
Ranking in Security Information and Event Management (SIEM)
35th
Average Rating
7.4
Reviews Sentiment
7.4
Number of Reviews
36
Ranking in other categories
Log Management (36th)
SentinelOne Singularity AI ...
Ranking in Security Information and Event Management (SIEM)
6th
Average Rating
8.6
Reviews Sentiment
6.3
Number of Reviews
16
Ranking in other categories
AI Observability (6th)
 

Mindshare comparison

As of October 2026, in the Security Information and Event Management (SIEM) category, the mindshare of NetWitness Platform is 1.2%, up from 0.7% compared to the previous year. The mindshare of SentinelOne Singularity AI SIEM is 1.3%, up from 1.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Information and Event Management (SIEM) Mindshare Distribution
ProductMindshare (%)
SentinelOne Singularity AI SIEM1.3%
NetWitness Platform1.2%
Other97.5%
Security Information and Event Management (SIEM)
 

Featured Reviews

reviewer1130436 - PeerSpot reviewer
Information Technology Security and Infrastructure Expert at a government with 201-500 employees
Helps to deal with potential attacks and is available at a reasonable price
My company has had many benefits from the use of the product in the last eight years. The tool has streamlined our company's incident response process since it serves as a log repository, which allows us to correlate events and access different technology stacks. In our company, we were able to actually find some potential attacks, so it has been very helpful. The tool's integration capability isn't so great. In my company, we managed to integrate it with our Microsoft Azure Subscription, after which we managed to integrate it with other tools. You will face a lot of difficulties if you want to integrate it with your database monitoring tool, PAM solutions, or IAM products. The product has done well overall for my company's teams to deal with their workflow efficiency. I would not recommend the product to others. I rate the tool a seven out of ten.
Dev Reshwal - PeerSpot reviewer
Technical Support Executive at Softcell Technologies Limited
Automation has reduced workload and real-time monitoring provides faster incident response
SentinelOne Singularity AI SIEM is the best, but sometimes the dashboards are a little simple compared to other tools. The custom dashboard is not available in their features. Therefore, I would suggest adding the custom dashboard for any of our requirements. The AI-driven analytics from SentinelOne Singularity AI SIEM has not affected our ability to reduce false positives. SentinelOne Singularity AI SIEM has affected my SOC's efficiency in investigating alerts and responding to incidents. If we receive any alerts, we can observe what activity is being done. We can see if it is malicious or something suspicious, or a true positive. We can analyze the path, the hash, and whether the signature is verified or not. We can see if it is an alert triggered by any engine. We can see the source of this. We will do that type of analysis and raise it to the client side. Also, if I identify anything suspicious or malicious in the alert, I will forcefully kill and quarantine it immediately.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Prior to implementing the solution, the customers had no visibility of their assets, however, after adopting the solution, they have gained complete visibility over all their assets, including a comprehensive understanding of the network and attack symptoms."
"This solution has a very good dashboard with a separate tab for incidents and alerts."
"The most valuable features are the integration and ease of use."
"The solution is really scalable for the high-end power, enterprise customer."
"Performance and reporting are very good."
"Since the solution has been under way we have seen a large decrease of threats and proactive reactions to incidents."
"Technically speaking, this is a good product."
"The newer 11.5 version that my team is using has found it to have good mapping."
"Overall, I would assess the overall security posture after implementing SentinelOne Singularity AI SIEM as significantly better."
"The beauty of the integration is that it integrates very smoothly with third-party tools, so we do not need to think about the parsers, coding, depending on the codes, or the software developers."
"Overall, this affects my security posture positively because it improves it since it helps us in real-time monitoring, and it gives us automated investigation and also the auto-investigate tab, so it is pretty good."
"I have experienced no issues with SentinelOne Singularity AI SIEM; it is the best product I have ever used, very stable, handy, easy to manage, and excellent with its AI-driven capabilities."
"I assess the overall security posture of our organization after implementing SentinelOne Singularity AI SIEM as significantly improved."
"SentinelOne Singularity AI SIEM's AI-powered analytics does affect our SOC's ability to reduce false positives; that is one of the biggest advantages because the manpower that I have is limited."
"SentinelOne Singularity AI SIEM has positively impacted my organization by improving visibility, reducing investigation time, and helping the security team respond to incidents faster."
"With the help of this tool, the response time to sophisticated threats has improved significantly, and it recently cuts the MTTR time using Purple AI by 40%."
 

Cons

"Nowadays, their support is a little subpar compared to other solutions. I rate RSA support six out of 10."
"The documentation is not as structured as I would like, personally, and I think that it can be improved and made much more user-friendly."
"The tool's integration capability isn't so great."
"The solution should have more integration capabilities with different platforms."
"It is not so easy to customize this product."
"It should have a monitoring feature. It would help us analyze the current state of attacks faster from a single platform."
"But the 11.3 version is a complete disaster. You cannot analyze anything."
"Its technical support could be better."
"Customer support could be better because it is frequently transferred to various agents."
"In AI SIEM, the areas that have room for improvement are the parsers for third-party integrated data or for third-party data sources that are not native integrations, which could be made a bit easier."
"Another area for improvement is that the product is somewhat expensive. Pricing could be improved as well."
"There is room for improvement when it comes to the technical support quality and expertise of SentinelOne. Sometimes, the technical support team does not know how to resolve certain issues and takes time to respond, often requiring follow-up interactions within 24 hours."
"Unfortunately, I was not happy with SentinelOne Singularity AI SIEM because it is not mature yet."
"What I dislike is that the dashboard is very old, so they do not have much capability to be honest."
"I would want the false positive ratio to be lower and would want to improve that aspect so the true will be more, and the false will be lesser."
"The AI-generated investigations can occasionally require manual validation for complex incidents."
 

Pricing and Cost Advice

"We are on an annual license for the use of the solution."
"It’s cheaper to run virtual machines in a VMware environment."
"Compared to the competition, the is price is not that high."
"The product price was reasonable for my region and the market."
"We have a perpetual license, so the total cost of ownership is not very expensive. It's a good investment."
"The tool is very expensive, so I rate the pricing a ten out of ten. The solution has an annual subscription."
"Our license is for one year."
"The licenses are good but the cost is very expensive."
Information not available
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
915,341 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Construction Company
12%
Financial Services Firm
11%
Comms Service Provider
10%
Outsourcing Company
10%
Outsourcing Company
23%
Manufacturing Company
7%
Comms Service Provider
6%
Media Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise7
Large Enterprise20
By reviewers
Company SizeCount
Small Business12
Midsize Enterprise6
Large Enterprise4
 

Questions from the Community

What is your experience regarding pricing and costs for NetWitness Platform?
The pricing is comparable to others, and I consider the cost to be intermediate. Specific cost details are unknown to me.
What needs improvement with NetWitness Platform?
There is currently no need for improvement in the SIEM ( /categories/security-information-and-event-management-siem ), though there could be potential enhancements by integrating with AI.
What is your primary use case for NetWitness Platform?
I use NetWitness Platform ( /products/netwitness-platform-reviews ) in the financial industry as a good product with excellent capabilities and integration with various devices.
What needs improvement with SentinelOne Singularity AI SIEM?
My impression of the AI-driven threat detection capabilities is that it helps a little bit, but they need to tune it a bit because we are seeing too many false positives recently. Since we are a pa...
What is your primary use case for SentinelOne Singularity AI SIEM?
SentinelOne Singularity AI SIEM is a tool that we use to support our clients. Our organization is a service-based organization, so we use SIEM to provide services to software-based clients. We are ...
What advice do you have for others considering SentinelOne Singularity AI SIEM?
In my organization, approximately eighty people work with SentinelOne Singularity AI SIEM. Our clients vary in size; we have small businesses, medium enterprises, and large enterprises as well. Sen...
 

Also Known As

RSA Security Analytics
No data available
 

Overview

 

Sample Customers

Los Angeles World Airports, Reply
Information Not Available
Find out what your peers are saying about NetWitness Platform vs. SentinelOne Singularity AI SIEM and other solutions. Updated: September 2026.
915,341 professionals have used our research since 2012.