

Rapid7 InsightIDR and SentinelOne Singularity Identity compete in the identity protection category, focusing on threat detection and response. SentinelOne Singularity Identity holds a competitive edge in features, while Rapid7 InsightIDR is favored for cost-effectiveness and support.
Features: Rapid7 InsightIDR offers centralized incident detection, automated threat intelligence, advanced analytics, asset tagging, and user behavior analytics. SentinelOne Singularity Identity provides autonomous endpoint protection, lateral movement detection, AI-driven analysis, comprehensive identity-based threat detection, and zero-trust security.
Room for Improvement: Rapid7 InsightIDR may improve by enhancing integration capabilities, expanding endpoint visibility features, and refining its AI analysis. SentinelOne Singularity Identity could benefit from simplifying deployment processes, reducing false positives, and enhancing feature richness without increasing complexity.
Ease of Deployment and Customer Service: Rapid7 InsightIDR is known for straightforward deployment and responsive support, making it user-friendly. SentinelOne Singularity Identity, while having a more complex setup, offers extensive customer support and training resources, appealing to businesses needing detailed support for complex operations.
Pricing and ROI: Rapid7 InsightIDR is competitively priced with lower initial setup costs, providing good ROI through effective incident response capabilities. SentinelOne Singularity Identity requires a higher investment but offers considerable value with its advanced features and potential for substantial long-term ROI.
| Product | Market Share (%) |
|---|---|
| SentinelOne Singularity Identity | 6.4% |
| Rapid7 InsightIDR | 10.0% |
| Other | 83.6% |


| Company Size | Count |
|---|---|
| Small Business | 20 |
| Midsize Enterprise | 5 |
| Large Enterprise | 6 |
| Company Size | Count |
|---|---|
| Small Business | 4 |
| Midsize Enterprise | 5 |
| Large Enterprise | 13 |
Parsing hundreds of trivial alerts. Managing a mountain of data. Manually forwarding info from your endpoints. Forget that. InsightIDR instantly arms you with the insight you need to make better decisions across the incident detection and response lifecycle, faster.
Singularity Identity, a component of the Singularity platform, provides threat detection & response (ITDR) capabilities to defend Active Directory and domain-joined endpoints in real-time from adversaries aiming to gain persistent, elevated privilege and move covertly. Singularity Identity provides actionable, high-fidelity insight as attacks emerge from managed and unmanaged devices. It detects identity misuse and reconnaissance activity happening within endpoint processes targeting critical domain servers, service accounts, local credentials, local data, network data, and cloud data. On-agent cloaking and deception techniques slow the adversary down while providing situational awareness and halting adversarial attempts at lateral movement. Singularity Identity helps you detect and respond to identity-based attacks, providing early warning while misdirecting them away from production assets.
Singularity Identity’s primary use case is to protect credential data and disrupt identity-based attacks. The most valuable function of Singularity Identity is its ability to misdirect attackers by providing deceptive data to identity-based recon attacks. Additionally, it can hide and deny access to locally stored credentials or identity data on Active Directory domain controllers.
Singularity Identity also provides rapid detection and respond to identity attacks, capturing attack activity and feeding it directly to the Singularity platform’s Security DataLake for enterprise-wide analysis and response.
By implementing Singularity Identity, organizations benefit from enhanced security, reduced credential-related risks, and improved user productivity. It detects and responds to identity-based attacks, ensuring only authorized individuals can access critical identity data. With its cloaking capabilities to hide identity stored locally on endpoints or in the identity infrastructure and it’s ability to provide decoy results to identity-based attacks, organizations can effectively secure their sensitive or privileged identities, resulting in improved overall identity security.
We monitor all Threat Deception Platforms reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.