Try our new research platform with insights from 80,000+ expert users

SentinelOne Singularity AI SIEM vs USM Anywhere comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 28, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

SentinelOne Singularity AI ...
Ranking in Security Information and Event Management (SIEM)
23rd
Average Rating
8.6
Reviews Sentiment
5.7
Number of Reviews
5
Ranking in other categories
AI Observability (22nd)
USM Anywhere
Ranking in Security Information and Event Management (SIEM)
30th
Average Rating
8.4
Reviews Sentiment
7.0
Number of Reviews
115
Ranking in other categories
Log Management (37th), Endpoint Detection and Response (EDR) (44th), Compliance Management (13th)
 

Mindshare comparison

As of March 2026, in the Security Information and Event Management (SIEM) category, the mindshare of SentinelOne Singularity AI SIEM is 1.6%, up from 0.2% compared to the previous year. The mindshare of USM Anywhere is 1.0%, up from 1.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Information and Event Management (SIEM) Mindshare Distribution
ProductMindshare (%)
SentinelOne Singularity AI SIEM1.6%
USM Anywhere1.0%
Other97.4%
Security Information and Event Management (SIEM)
 

Featured Reviews

Mohan Janarthanan - PeerSpot reviewer
Associate Vice President at Novac Technology Solutions
AI-driven monitoring has improved real-time threat detection but still needs better automation
I could see some workflows, but I am unable to do automated workflows. For example, some repetitive jobs or repetitive tasks I am doing, but I am trying to have less manual intervention on the front. I am raising some issues that should be resolvable. The SentinelOne team has told me that this can be resolved within a couple of months, but they are saying that it is in future for enhancement and it may take some time. So far, the numbers are great. Regarding disadvantages or areas for improvement, I could say that 35 percent of my manual effort can be detected since I implemented it very recently. I could be able to say my current data talks about only 35 percent, and it may improve further, as I am expecting. But I can only comment based on my alerts and events. The adoption rate will be less compared to other products, as this can be a time-taken process because all my data needs to be offloaded and the system needs to understand my existing alerts, logs, and other things. This will take some more time, probably another month. Another area for improvement is that the product is somewhat expensive. Pricing could be improved as well.
Kris Nawani - PeerSpot reviewer
Co-Founder/Director at Bangkok MSP Company Limited
Offers complete coverage without the need to install additional software
USM Anywhere is used for threat detection and investigation. It provides a solution with built-in threat intelligence and various other investigation tools The solution offers complete coverage without the need to install additional software, as it is maintained by the vendor. It helps in saving…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"When they face attacks such as ransomware and are dissatisfied with their existing solutions, they switch to SentinelOne Singularity AI SIEM, which is quite good in detecting unknown threats, cleaning the system, and handling ransomware."
"AI-driven capabilities will give me real-time detection and will protect my autonomous AI interruption."
"After using SentinelOne Singularity AI SIEM, it has reduced our incident response time by forty to fifty percent compared to other tools."
"Overall, I would assess the overall security posture after implementing SentinelOne Singularity AI SIEM as significantly better."
"AlienVault USM Anywhere is easy to deploy with their cloud-based model, and deploying the required agents on-prem (or in the cloud) is quick and easy."
"It is my "security person" looking at irregularities and letting me know when something has occurred."
"The all-in-one source for the needs of compliance has put everything into one location without the need of other applications and tools to accomplish the tasks."
"AlienVault provides a checklist answer when using SIEM."
"The IDS and the threat intelligence are very useful. They are very intuitive and data-rich."
"Every activity on the firewall is recorded, and notifications are sent with this solution."
"The product is now stable and it is a Swiss army knife packed with lot of tools."
"Implementation took few days and it's easy to complete the task within the given project time line."
 

Cons

"SentinelOne Singularity AI SIEM has some performance and reliability issues that need improvement."
"In AI SIEM, the areas that have room for improvement are the parsers for third-party integrated data or for third-party data sources that are not native integrations, which could be made a bit easier."
"Another area for improvement is that the product is somewhat expensive. Pricing could be improved as well."
"It is quite good, but the only downside is that it is costly."
"Their threat intelligence platform needs to be broadened. They should integrate it with more threat intelligence platforms. For the threat feed that they get from open intelligence, I would like them to add a few premium threat intelligence platforms. They can provide a bundle in which AlienVault has the threat intelligence background of other premium products."
"More information about what the alerts mean and how they are derived would be useful when determining their significance."
"This solution could be easier to use."
"they seem to have bugs from time to time that go unfixed for a while and that is frustrating. I'm not saying the product needs to be bug-free, but they need to be responsive to bugs."
"The solution is a bit complicated. It could be simplified quite a bit."
"The search capabilities are not optimal and are going to be optimized in the next versions."
"They should improve the reporting capabilities. Different functions to customize reports should be added."
"The way it identifies systems can use some improvement. It has a hard time differentiating between versions of Windows."
 

Pricing and Cost Advice

Information not available
"They charge a license based on the storage. ATT AlienVault USM is a less expensive solution than IBM QRadar."
"Use an MSSP instead. It is much cheaper."
"The price for this solution is very good, but since the features do not work the price is expensive."
"It allows you to do a lot with a small price tag... The pricing is the best on the market."
"Pricing is very competitive with other products and you get much more functionality from AlienVault."
"It's saved security costs."
"The licensing fees are dependent on usage."
"The pricing is a good value. The key thing is that for the new product, the licensing of it, is subscription-based and it's based on data. Clients need to be really careful when thinking about that, because odds are they're going to need to put a lot more data into it than what they initially estimate, which is going to drive their subscription costs up."
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
884,976 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Healthcare Company
10%
Comms Service Provider
9%
Transportation Company
6%
Government
6%
Computer Software Company
12%
Comms Service Provider
10%
Performing Arts
7%
Financial Services Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business64
Midsize Enterprise29
Large Enterprise25
 

Questions from the Community

What needs improvement with SentinelOne Singularity AI SIEM?
In AI SIEM, the areas that have room for improvement are the parsers for third-party integrated data or for third-party data sources that are not native integrations, which could be made a bit easi...
What is your primary use case for SentinelOne Singularity AI SIEM?
Our use case with SentinelOne Singularity AI SIEM is primarily AI observability for a large part. We are using it for SIEM purposes as well. Prior to the inclusion of Purple AI, it was exclusively ...
What advice do you have for others considering SentinelOne Singularity AI SIEM?
My impression of the AI-driven threat detection capabilities of SentinelOne Singularity AI SIEM is great. I am really looking forward to the upcoming feature with agentic incident investigation. If...
What needs improvement with AT&T AlienVault USM?
There are scalability issues due to a 60 TB limit, which restricts its use for large customers like banks. It is also limited when used with bigger products and has complex password requirements.
What is your primary use case for AT&T AlienVault USM?
USM Anywhere is used for threat detection and investigation. It provides a solution with built-in threat intelligence and various other investigation tools.
 

Also Known As

No data available
AT&T AlienVault USM, AlienVault, AlienVault USM, Alienvault Cybersecurity
 

Overview

 

Sample Customers

Information Not Available
Abel & Cole, Bank of Ireland, Bluegrass Cellular, CareerBuilder, Claire's, Hays Medical Center, Hope International, McCurrach, McKinsey & Company, Party Delights, Pepco Holdings, Richland School District, Ricoh, SaveMart, Shake Shack, Steelcase, TaxAct, Taylor Morrison, Vonage and Zoom
Find out what your peers are saying about SentinelOne Singularity AI SIEM vs. USM Anywhere and other solutions. Updated: March 2026.
884,976 professionals have used our research since 2012.