No more typing reviews! Try our Samantha, our new voice AI agent.
Magdy Ali - PeerSpot reviewer
Network & Security Section Head/Digital Transformation at a government with 201-500 employees
Real User
Top 5Leaderboard
Feb 24, 2026
Centralized security monitoring has improved visibility and unified cloud threat detection
Pros and Cons
  • "The unified platform experience is good for us, and the GUI for the application is easy and not complex."

    What is our primary use case?

    I use it myself, as I have not recommended it or implemented it to my customers.

    We usually use it as an EDR, and the main function for SentinelOne Singularity Cloud Security is the logs, which is the main function for us.

    We did not use it as an investigation tool, but SentinelOne Singularity Cloud Security is useful for investigations and to collect the logs, making it easy. I can say it is an easy dashboard for the logs.

    Currently, 600 people are using it in my company.

    We need three administrators to manage it.

    I did not use the Purple AI for threat investigation.

    I did not use the Offensive Security Engine, OSE feature.

    I did not use any AI SPM, Security Posture Management for AI workloads.

    I did not check for the advanced CIEM capabilities in SentinelOne Singularity Cloud Security.

    I do not integrate it with third-party solutions.

    How has it helped my organization?

    SentinelOne Singularity Cloud Security has reduced confusion and silos within my organization.

    What is most valuable?

    The features I find most valuable in SentinelOne Singularity Cloud Security are the XDR and the integrations with other vendors.

    From using it, I get more visibility for what happens on the end-user side.

    The role of SentinelOne Singularity Cloud Security's secret scanning feature is important as it is used for normal scans based on the behavior of the user.

    It is significant for my team to have built-in integrations that unify various aspects of cloud security, as it is easy and gives us more visibility.

    The detection for the agent is great, which allows us to identify unexpected process behavior.

    Measurement of time savings in terms of SecOps operations with SentinelOne Singularity Cloud Security is based on cloud management.

    What needs improvement?

    I do not see room for improvement in SentinelOne Singularity Cloud Security.

    In the future, I would like to see the identity feature with two-factor authentication.

    It would be good if they could add AI agents to support in analysis and management.

    Buyer's Guide
    SentinelOne Singularity Cloud Security
    July 2026
    Learn what your peers think about SentinelOne Singularity Cloud Security. Get advice and tips from experienced pros sharing their opinions. Updated: July 2026.
    909,563 professionals have used our research since 2012.

    For how long have I used the solution?

    I have been working with it for three and a half years.

    What do I think about the scalability of the solution?

    SentinelOne Singularity Cloud Security is stable and scalable.

    How are customer service and support?

    I would rate the technical support by SentinelOne as good, as when I create a ticket, it takes the normal process and I get the answer before the SLA, so there is no delay.

    I would give their technical support nine out of ten.

    Which solution did I use previously and why did I switch?

    Before choosing SentinelOne Singularity Cloud Security, I evaluated CrowdStrike.

    Before SentinelOne Singularity Cloud Security, I did not use anything similar as an EDR solution.

    What was our ROI?

    For the ROI, we are paying as a subscription, and we see the benefits from the security tools; it is useful for us.

    What other advice do I have?

    I might plan to increase usage in the future.

    I find the price reasonable.

    The unified platform experience is good for us, and the GUI for the application is easy and not complex.

    SentinelOne Singularity Cloud Security's runtime protection operates 24/7.

    It helps me deal with new and unknown threats through the behaviors.

    There is nothing in play regarding SentinelOne Singularity Cloud Security integration with other security tools affecting my team's workflow.

    In the future, I would like to see the identity feature with two-factor authentication.

    I do not know about the product's popularity in my region, and I do not think they should promote it more.

    I would give this product an overall rating of 8 out of 10.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    Last updated: Feb 24, 2026
    Flag as inappropriate
    PeerSpot user
    Ayman Said - PeerSpot reviewer
    Infrastructure System's Manager at ICAPP (Americana Group)
    Real User
    Top 5Leaderboard
    Jul 16, 2026
    Behavioral protection has strengthened our cloud workloads and streamlines unified security operations
    Pros and Cons
    • "The unified platform experience with SentinelOne Singularity Cloud Security has helped us streamline our security operations."
    • "The only aspect of SentinelOne Singularity Cloud Security that requires improvement is the response time of the support team."

    What is our primary use case?

    We have been working with SentinelOne Singularity Cloud Security for four years.

    What is most valuable?

    The runtime protection of SentinelOne Singularity Cloud Security compares favorably to other solutions I have used in the past. The concept is not signature-based antivirus. Most traditional antiviruses work with a signature base, having a database of viruses or threats updated daily. However, next-generation solutions such as SentinelOne Singularity Cloud Security and Sophos use a non-signature-based approach that is dependent on AI and behavior analysis. It is a behavioral EDR or MDR that supports XDR technology. XDR's concept is to exchange data between other components through the network, and it is excellent because SentinelOne Singularity Cloud Security and Sophos are leaders in this area according to Gartner.

    The unified platform experience with SentinelOne Singularity Cloud Security has helped us streamline our security operations. We have implemented multiple layers of security as part of our security journey over the past five years.

    What needs improvement?

    The only aspect of SentinelOne Singularity Cloud Security that requires improvement is the response time of the support team. The support response is not optimal.

    For how long have I used the solution?

    We have been working with SentinelOne Singularity Cloud Security for four years.

    How are customer service and support?

    The response time of the support team is not the best. Based on my experience, I rate the support as a six or seven.

    Which solution did I use previously and why did I switch?

    We also evaluated Trend Micro products and were working with ESET before migrating to SentinelOne Singularity Cloud Security four years ago. Before ESET, our group was working with different EDRs or antivirus solutions. The concept of EDR was not common five or six years ago, so we migrated from traditional antivirus to next-generation EDR.

    How was the initial setup?

    During the implementation of SentinelOne Singularity Cloud Security, I faced challenges. We were evaluating SentinelOne Singularity Cloud Security, Sophos, Kaspersky, and another Japanese brand for our EDR and MDR evaluation.

    What other advice do I have?

    SentinelOne Singularity Cloud Security is a cloud-based solution, not on-premises. Currently, we are working with our workload on Azure, but it is a SaaS technology hosted on SentinelOne Singularity Cloud Security's cloud infrastructure, not on Azure or AWS.

    SentinelOne Singularity Cloud Security integrates well with other third-party tools. The antivirus is integrated with SOC solutions, and we are working with IBM QRadar. It works well because once a detection happens, any virus or threat directly shares the incident with the SOC and sends emails or opens tickets through ServiceNow or the ticketing system.

    The impact of Drift Detection on our organization's ability to detect unexpected processes is direct. Any threat or incident directly integrates with QRadar and is sent to the SOC team. The SOC team then sends emails to the concerned people in any area, application, infrastructure, or networking to manage or solve the problem and close the ticket.

    I have utilized the Advanced SIEM capabilities of SentinelOne Singularity Cloud Security, and it is easy to manage. We are subscribed with an MDR team that manages all of that and sends information directly to us to solve any problem or incident. I rate this product an 8 overall.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Microsoft Azure
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    Last updated: Jul 16, 2026
    Flag as inappropriate
    PeerSpot user
    Buyer's Guide
    SentinelOne Singularity Cloud Security
    July 2026
    Learn what your peers think about SentinelOne Singularity Cloud Security. Get advice and tips from experienced pros sharing their opinions. Updated: July 2026.
    909,563 professionals have used our research since 2012.
    Senior Vice President IT at AS IT Consulting Pvt. Ltd.
    Reseller
    Top 5Leaderboard
    Jul 1, 2026
    Cloud security has delivered strong detection, fast investigations, and user-friendly management
    Pros and Cons
    • "The detection ratio of SentinelOne Singularity Cloud Security is way ahead of any other solution available in the market."
    • "In India, the team is very much used to getting immediate online support. SentinelOne is the only vendor that does not offer support and always avoids giving support."

    What is our primary use case?

    My use case for SentinelOne Singularity Cloud Security involves servers on the cloud, and I needed something secured with a warranty kind of scenario. The agent is the same as an endpoint agent, but it was a better option.

    What is most valuable?

    When talking about Windows in relation to SentinelOne Singularity Cloud Security, the Rollback feature is definitely the most valuable.

    SentinelOne Singularity Cloud Security is quite good, and the scan engine and the technology behind it gives us better output and detection as well as prevention, which I have observed other security tools fail to provide.

    SentinelOne Singularity Cloud Security definitely reduces MTTR for cloud incident investigations because I have all the data available on the cloud itself.

    The unified platform experience of SentinelOne Singularity Cloud Security definitely helps to streamline security operations.

    What needs improvement?

    Regarding points for improvement for SentinelOne Singularity Cloud Security, they are offering raw data only for two weeks. That should be increased to 365 days.

    Usually, if there is some kind of web control also over and above, or a DLP built into SentinelOne Singularity Cloud Security, that will be a good advantage. Then I can always say it is a Singularity product and I would not need to go for a third-party product.

    For how long have I used the solution?

    I have been working with SentinelOne Singularity Cloud Security for almost four to five years.

    How are customer service and support?

    My mark for vendor support regarding SentinelOne Singularity Cloud Security is one.

    In India, the team is very much used to getting immediate online support. SentinelOne is the only vendor that does not offer support and always avoids giving support. They will come on call and ask what the version is, tell me to change the version, and ask for logs. That is all they will do. They will never come online with me and resolve the issue in real-time. Even if it is a very critical issue, it takes months to resolve for SentinelOne because they never come on-site, meaning they do not provide remote support.

    How was the initial setup?

    The setup process for SentinelOne Singularity Cloud Security is simple.

    What other advice do I have?

    I rate the price for SentinelOne Singularity Cloud Security at five.

    I always try to keep SentinelOne Singularity Cloud Security as number one in comparison, but competitors are there and can compete on pricing and cost. Otherwise, regarding technology, they do not have anything compared to what SentinelOne has.

    SentinelOne Singularity Cloud Security is number one in functionality when compared with competitors.

    The management console of SentinelOne Singularity Cloud Security is very user-friendly.

    The purchase process for SentinelOne Singularity Cloud Security is B2B. SentinelOne cannot directly sell in India, so it has to come through a distributor.

    I have to take SentinelOne Singularity Cloud Security from the distributor and then provide it to the customer. There is no direct selling.

    I rate the scalability for SentinelOne Singularity Cloud Security a ten.

    The detection ratio of SentinelOne Singularity Cloud Security is way ahead of any other solution available in the market.

    SentinelOne Singularity Cloud Security is integrated well with other security tools.

    I would rate this review a ten overall.

    Which deployment model are you using for this solution?

    Hybrid Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Disclosure: My company has a business relationship with this vendor other than being a customer. reseller
    Last updated: Jul 1, 2026
    Flag as inappropriate
    PeerSpot user
    Andrew W - PeerSpot reviewer
    VP - Information Technology at a financial services firm with 201-500 employees
    Real User
    Top 20
    Sep 9, 2024
    Tells us about vulnerabilities as well as their impact and helps to focus on real issues
    Pros and Cons
    • "You not only get to know about vulnerabilities and misconfigurations but also some of the actual"
    • "It is not a criticism of the tool per se, but anything to help non-development resources understand some of the complexities of the cloud is always appreciated. Any additional educational resources are always helpful for security teams, especially those without a development background."

    What is our primary use case?

    We use it for a couple of use cases. The biggest one we use it for is to protect our AWS environment, and it does a couple of functions for us and our whole development. It scans all the code in our GitLab or our code repository and looks for any hard-coded passwords or keys or any insecurities. It checks if we have any old deprecated components within our software and points that out.

    There are a couple of gates that we can set up. When we are pushing the code out of the repos into AWS, it finds any high-severity vulnerability. This is configurable, but we have critical, high, and medium severities. If it finds any, it blocks the push and puts some notes in for the developers to go in to remediate the issue before they can push the code into AWS. Let us assume the code is good in GitLab and gets over to AWS. It then does a couple of things on the AWS side. It looks at the overall infrastructure and how things are configured. There may be things in AWS that are misconfigured or old components that were manually built or deployed without going to GitLab. It points them out.

    How has it helped my organization?

    I have been very happy with the evidence-based reporting. It is not just theoretical. It scans the code or looks at the AWS environment and pulls back the details that tell us that this is a vulnerability. We have a good understanding of why it is a highly-rated vulnerability. It makes it much easier to prioritize and then go through and remediate the issue.

    Agentless vulnerability scanning has been very good. It pulls back quite a bit of information that is actionable by our team.

    Singularity Cloud Security includes proof of exploitability in its evidence-based reporting. That is critically important because especially in large environments, when you run scans or use the vulnerability scanning tool, you might be inundated with results. It takes a long time for analysts to go back through and validate whether it is a true positive or a false positive. Singularity Cloud Security can eliminate a lot of false positives or almost all of them, and we can focus on something that is a true issue, as opposed to wasting our time and resources.

    The Offensive Security Engine is doing the attack path management. That is one of the most critical features to us because it tells us that we have this misconfiguration here, or we may have a secret or some vulnerability here. It tells us about the impact and how an attacker could exploit that to gain persistence in our environment and install data. We have a true impact of why this is important and why we need to fix it. With scanners like Rapid, Qualys, and others, we get the credentials and we get a scan, but then we spend an inordinate amount of time looking through reports and trying to figure out:

    • Where do we spend our time?
    • What do we prioritize?
    • What is remediated?
    • What is it that we can remediate?
    • What is it that we can take action on and make an improvement in the environment?

    It is very frustrating when you are spending hours only to run down something and realize it is a false positive, and there is nothing you can do to make a positive impact. Eliminating all those false positives really helps us.

    We have had very good luck with the IaC. For us, it is hugely valuable because we can catch things very early in the process before they get promoted into production. In case something flips through or escapes, it still helps you to find it.

    We started seeing its benefits literally the day after deployment. The only reason I say the day after is because we ended up working on it kind of late in the afternoon. We got things set up, and it took a few hours for results to start populating, but its benefits were very apparent when we started looking through the reports and dashboards.

    Singularity Cloud Security significantly helped reduce the number of false positives we deal with. The biggest aspect for us is allowing the security and development teams and DevOps to be much more efficient. As opposed to spending 80 hours going through some big reports, we are able to cut that down to a fraction of the time and make a positive impact on the environment. We are not chasing a bunch of dead ends.

    It has made a great impact on the risk posture. We are also able to look at the trends over time in terms of where we started and what we remediated. You can see the environment getting more secure as we keep knocking down vulnerabilities.

    Our mean time to detect is much faster. It is a much lower number there. There has been a significant change in the number of vulnerabilities remediated or per hour of investment from the engineering and security teams. By implementing this tool, we are able to do a lot more with the same team size and remediate things much faster than before.

    It has made it much easier for these disparate teams to have the conversation in terms of what needs to be prioritized and fixed, and then it has given a lot more information. It eliminates some of the he said, she said, or some of the frustration that can happen between different teams because one team is looking at a tool they are familiar with and the other team has a different tool. Historically, there were some disagreements in terms of what issues exist in the environment and where we should spend our time in terms of trying to make improvements and remediate.

    What is most valuable?

    Our favorite feature is attack path management. If you have an S3 bucket that is configured to be publicly accessible, it will look and inform you that it is publicly accessible. If someone gets in this bucket, they could ultimately traverse, get into this RDS, and do something negative or detrimental to the environment there. You not only get to know about vulnerabilities and misconfigurations but also some of the actual impacts of having these vulnerabilities. It is not just a raw data dump.

    So far, it has been very easy to use. It gives very rich information or a lot of details about the findings. It has a lot of links to go back into GitLab or into AWS to validate the CDF configuration, and then it gives a lot of guidance for remediation.

    Standing it up was pretty straightforward. We did get assistance from SentinelOne SE at the time of the trial to ensure that everything was configured and working correctly.

    What needs improvement?

    Looking at all the different pieces, it has got everything we need. Some of the pieces we do not even use. For example, we do not have Kubernetes Security. We are not running any K8 clusters, so it is good for us.

    Overall, we find the solution to be fantastic. There can be additional education components. This may not be truly fair to them because of what the product is going for, but it would be great to see additional education for compliance. It is not a criticism of the tool per se, but anything to help non-development resources understand some of the complexities of the cloud is always appreciated. Any additional educational resources are always helpful for security teams, especially those without a development background.

    For how long have I used the solution?

    I have been using this solution for six months.

    What do I think about the stability of the solution?

    We have not had any issues with stability. It has been solid on that front.

    What do I think about the scalability of the solution?

    We are not huge, so we have not run into any sort of scalability problems at all. We are running only six or seven subscriptions in AWS. Our bill in AWS is less than 20K a month, so it is not huge.

    How are customer service and support?

    I have talked to SentinelOne support multiple times, but not on the cloud-native security front. I cannot add anything on that side.

    Which solution did I use previously and why did I switch?

    I have not used any other tool at this company. In the past, I have used some different tools.

    How was the initial setup?

    It was very easy for us with one exception. We had a mono repo, and we worked it out with the SentinelOne security engineering team. We got some direction for them in terms of how to do some of the code-blocking configuration, but it was a pretty straightforward and quick setup.

    It took us three weeks maybe, but it was not like we spent three weeks heavily. We did it slowly. We did most of the deployment in a couple of hours, and then we had some check-in meetings over the next few weeks to go through and just check on it, become familiarized with the system, and then ask questions. The initial deployment took less than a day and then learning, discovering, and getting familiar with it took us a few weeks.

    It does not require any maintenance from our side. We may have some sort of maintenance to do. For example, we are planning to acquire assets from another institution. They are on-prem, so we will have to build up their AWS environment. Once we build out that environment, we may need to make some changes in SentinelOne so that it picks up those new environments. That is a guess. We have not done it yet.

    What about the implementation team?

    We literally did it with SentinelOne SE. They provided all the setup work for us. We did not pull in a third party.

    What's my experience with pricing, setup cost, and licensing?

    We found it to be fine for us. Its price was competitive. It was something we were happy with. We are not a Fortune 500 company, so I do not know how pricing scales at the top end, but for our cloud environment, it works very well.

    Which other solutions did I evaluate?

    We did look at Wiz, Orca Security, and Palo Alto's Prisma. We also looked at Lacework and ultimately settled on SentinelOne for a couple of reasons.

    We did like the functionality provided by Palo Alto, but the way their licensing worked was frustrating, to say the least, and the cost was fairly high. We found it unaffordable. 

    Lacework was still at an early stage. We did not feel that they provided all the functionality we needed, so we did not feel the confidence there. 

    Wiz is a dominant player in the market. I have a lot of respect for them, but it did not provide all the reporting and data we needed. Especially for the price point, it was affordable for us. 

    In the case of Orca Security, in the previous organization, we saw some pretty glaring false positives, which turned us off on that platform.

    What other advice do I have?

    To new users, I would say that like any tool, you need to sit down and learn what the tool can do. Understand your objectives and then work through to make sure the tool meets your needs. It is straightforward and easy to use.

    I would rate Singularity Cloud Security a ten out of ten at this point.

    Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
    PeerSpot user
    Information Security Engineer at DataVigilant Infotech
    Real User
    Top 10
    May 17, 2025
    Enables us to prioritize and effectively address critical security issues
    Pros and Cons
    • "The UI and the widgets are what I personally appreciate. I find it easy to use."
    • "I would definitely recommend this product to other members, vendors, or users, as it covers security posture management, auditing, documentation, and compliance management."
    • "There is scope for more application security posture management features. Additionally, the runtime protection needs attention."

    What is our primary use case?

    As an engineer, I'm using the solution for managing infrastructure and security posture management. 

    It's primarily for cloud infrastructure, data center infrastructure, and security posture management, but it also provides other capabilities such as infrastructure-as-code scanning and detects hardcoded secrets in the source code, including for EKS, DevOps tools, etc. 

    How has it helped my organization?

    Evidence-based reporting helps us to prioritize and solve critical security issues. The new visualization feature demonstrates how an attacker can enter the system, highlighting the potential path that can be exploited and outlining all the steps the attacker could take. With that visibility, we can ensure the perimeter is strong and attackers cannot enter, thus reducing the risk. It has helped us prioritize issues.

    The visibility into how an attack could happen is valuable. For example, it highlights the system vulnerability and outlines where an attack could propagate. The visualization helps me to prioritize remediation, and if I don't know where to start, I can check to see the score that enables me to prioritize issues.

    I am using infrastructure-as-code scanning, and it's one of the useful features. In pre-production, it identifies embedded secrets and misconfigurations, including issues with Kubernetes or some privileged containers. This feature allows us to pass the audit and secure IaC code so that it isn't easily exploitable by attackers. We can more proactively work to identify and resolve vulnerabilities by using the dashboard and the alerting system that SentinelOne provides.

    It helps us with audits and compliance. We can show the compliance in percentage. We can confidently say that our company or infrastructure is very secure. It has improved our security posture by 30% to 35%.

    It has reduced our false positives by 30%.

    It has helped teams collaborate better. The security team manages SentinelOne Singularity Cloud Security, and when it flags vulnerabilities, they are forwarded to DevOps for remediation. Previously, we needed to identify and report the issues, but there would be lapses in communication. Now, there is a centralized dashboard that anyone can look at and see the open issues and work on them. 

    What is most valuable?

    I go to the dashboard on a daily basis. The UI and the widgets are what I personally appreciate. I find it easy to use. If anyone is a beginner or new to this industry, they'll be able to understand how to use it for their use cases.

    What needs improvement?

    There is scope for more application security posture management features. Additionally, the runtime protection needs attention.

    For how long have I used the solution?

    I've been using the solution for around 1.2 years.

    What do I think about the stability of the solution?

    It is stable. I would rate it a nine out of ten for stability.

    What do I think about the scalability of the solution?

    The scalability of SentinelOne Singularity Cloud Security is more than Prisma Cloud, and I would rate its scalability a nine out of ten.

    We have 17 users working with this solution.

    How are customer service and support?

    I would rate their technical support a nine out of ten.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    Prisma Cloud is more expensive. The stability and scalability of SentinelOne Singularity Cloud Security are better than Prisma Cloud. 

    How was the initial setup?

    It is deployed on the cloud and also in a data center. My cloud is on Azure, and the data center is running in a different location. It's easy to deploy SentinelOne Singularity Cloud Security; it took me around two to three days to deploy it, and some members of the customer support service helped us to deploy this on both locations.

    It does require maintenance, but it's not done by my team. There's a different team called InfoSec that handles this maintenance part.

    What was our ROI?

    It helped us to secure our infrastructure and applications on the cloud side.

    We get notified of any issues immediately, reducing our mean time to detect and remediate by 30%. It saves money and time. 

    What's my experience with pricing, setup cost, and licensing?

    I don't handle the price part, but it isn't more expensive than Palo Alto Prisma Cloud. It's not cheap, but it is worth the price.

    What other advice do I have?

    I would definitely recommend this product to other members, vendors, or users, as it covers security posture management, auditing, documentation, and compliance management. 

    I would rate SentinelOne Singularity Cloud Security a nine out of ten.

    Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
    PeerSpot user
    reviewer2869185 - PeerSpot reviewer
    Cyber Security Engineer at a outsourcing company with 51-200 employees
    Real User
    Top 5
    Jul 26, 2026
    Unified cloud security has strengthened posture and now prioritizes critical misconfigurations
    Pros and Cons
    • "SentinelOne Singularity Cloud Security has improved our organization's cloud security by giving us centralized visibility across cloud assets, workloads, identities, and configurations."
    • "SentinelOne Singularity Cloud Security is a strong platform, but there are a few areas where it could improve."

    What is our primary use case?

    SentinelOne Singularity Cloud Security primary use cases are centered on protecting cloud-native infrastructure, applications, workloads, and data. It combines multiple cloud security capabilities into a unified cloud-native application platform. Multiple use cases include Cloud Security Posture Management, Cloud Workload Protection, Containers and Kubernetes security, Cloud Infrastructure Entitlement Management, Data Security Posture Management, and Cloud Threat Detection and Response.

    In my day-to-day work, I use SentinelOne Singularity Cloud Security primarily to monitor cloud posture and workload security. A recent example was when it identified a high-risk IAM misconfiguration in our cloud environment. I investigated the findings and remediated the exposure. I also remediated the permission before it could be misused. The platform's unified visibility and prioritized risk scoring helped me resolve the issue quickly and strengthen our cloud security posture.

    What is most valuable?

    Standout features include Cloud Security Posture Management, Cloud Workload Protections, Attack Path Analysis, Cloud Security, Data Security, and AI-powered investigation in which I use Purple AI to automate investigation, correlate cloud, endpoint, and identity telemetry, summarize incidents, and reduce alerts. It also has a unified security platform that brings together cloud, endpoint, and identity security in a single console with a shared data model. This simplifies operations and enables faster incident response.

    The feature that has made the biggest difference is Cloud Security Posture Management. In my day-to-day work, it continuously monitors our cloud environment for security misconfigurations, such as overly permissive IAM roles, publicly exposed storage buckets, or missing security controls. Instead of manually reviewing cloud configurations, I receive prioritized alerts that highlight the most critical risks in the management console, and this helps me focus on remediating issues that could have the greatest security impact. I reduce manual effort and improve our overall cloud security posture.

    SentinelOne Singularity Cloud Security has improved our organization's cloud security by giving us centralized visibility across cloud assets, workloads, identities, and configurations. It helps us detect misconfigurations, prioritize critical risks, and monitor threats in real time. As a result, I have reduced manual security reviews, fixed threats faster, and strengthened our overall cloud security posture. The unified platform also simplifies security operations by consolidating multiple cloud security capabilities into a single console, improving both efficiency and compliance.

    What needs improvement?

    SentinelOne Singularity Cloud Security is a strong platform, but there are a few areas where it could improve. I would like to see more customizable dashboards and reporting so different teams can focus on the metrics most relevant to them. The initial setup and policy tuning could also be simplified, especially for organizations with complex multi-cloud environments. Additionally, expanding integrations with third-party security and DevOps tools would make it even easier to fit into existing workflows.

    A few additional improvements would further enhance the platform. The user interface could be made more intuitive, especially for first-time users, by simplifying navigation and making key findings easier to locate. The documentation is comprehensive, but more step-by-step implementation guides, best practices, and real-world deployment examples would help administrators get up to speed more quickly. From a support perspective, faster response times for complex issues and a larger library of troubleshooting articles and knowledge base content would improve the overall customer experience.

    For how long have I used the solution?

    I have been working in my current field for the last six years.

    What do I think about the stability of the solution?

    I have not experienced stability issues.

    What do I think about the scalability of the solution?

    I have not experienced scalability issues.

    How are customer service and support?

    I have not experienced issues with customer service.

    How was the initial setup?

    The initial setup and policy tuning could be simplified, especially for organizations with complex multi-cloud environments.

    What other advice do I have?

    I would start with a clear understanding of your cloud environments and security goals before deployment. Make sure cloud accounts are properly integrated, and spend time tuning policies and risk thresholds during the initial rollout to reduce unnecessary alerts. It is important to involve both your cloud and security teams, so remediation workflows are well-defined. I rate this product an 8 out of 10.

    Which deployment model are you using for this solution?

    Hybrid Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
    Last updated: Jul 26, 2026
    Flag as inappropriate
    PeerSpot user
    reviewer2835498 - PeerSpot reviewer
    Cybersecurity Postsales Engineer at a outsourcing company with 51-200 employees
    Real User
    Top 5Leaderboard
    Jul 22, 2026
    Improved cloud threat detection and response has strengthened our security posture
    Pros and Cons
    • "SentinelOne Singularity Cloud Security has improved our organization's security visibility and response capability by giving our team better insights into cloud risk and suspicious activity."
    • "SentinelOne Singularity Cloud Security is a strong platform, but there are areas where it could be improved."

    What is our primary use case?

    The main use cases for SentinelOne Singularity Cloud Security are protecting workloads and applications by improving threat detection, visibility, and response. We rely on it most for the monitoring of cloud environments, identifying security risks, detecting suspicious activity, and helping our security team respond quickly to potential threats.

    What is most valuable?

    The best features of SentinelOne Singularity Cloud Security are its threat detection capabilities, real-time visibility across cloud environments, and automated response features. The ability to identify suspicious activity, quickly provide context around risk, and help security teams to investigate and remediate threats efficiently stand out the most. The centralized visibility and integrations with the broader security operations also make it easier to manage cloud security from a single platform.

    The integration with our broader security operations helped to streamline workflows by bringing cloud security insights into our existing security tools and processes. This integration reduces the need to manually correlate data from multiple sources, speeds up investigations, and gives our team better context when responding to alerts. This saves time during incident triage and helps security analysts prioritize and address threats more efficiently.

    SentinelOne Singularity Cloud Security has improved our organization's security visibility and response capability by giving our team better insights into cloud risk and suspicious activity. A major benefit has been faster threat investigations and response. Our security teams can quickly understand the context of alerts and take action. It has also helped reduce manual efforts, improve consistency in security operations, and strengthen our overall cloud security posture.

    Since using SentinelOne Singularity Cloud Security, we have seen improvements in how quickly our team can identify, investigate, and respond to potential threats. Better visibility and automated security insights have helped reduce manual investigation time and improve the efficiency of our response process. While we do not have specific metrics to share, the overall impact has been faster triage, better prioritization of risk, and a more proactive approach to cloud security.

    Its AI capability provides valuable support for governance and security by helping teams to identify risk, prioritize threats, and make faster security decisions. The AI-driven insights improve visibility across cloud environments and help to reduce the manual efforts required for monitoring and investigations.

    Overall, the AI capability is accurate and reliable. The AI-generated insights generally help to prioritize real risks, reduce alert fatigue, and provide useful context for investigations.

    What needs improvement?

    SentinelOne Singularity Cloud Security is a strong platform, but there are areas where it could be improved. Adding more flexible customization options for alerts, more advanced reporting and dashboards, and deeper integration with a wider range of cloud and security tools would make the platform even more valuable.

    While there is room for improvement in areas such as customization, reporting, and integration, it has been a reliable solution that has positively impacted our cloud security.

    For how long have I used the solution?

    I have been working for the last five years.

    What other advice do I have?

    My advice would be to clearly understand your cloud security requirements and take the time to plan the deployment and integration with your existing security tools. Make use of the platform's automation, threat detection, and visibility features to get the most value. I rate this solution an eight out of ten.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
    Last updated: Jul 22, 2026
    Flag as inappropriate
    PeerSpot user
    Cybersecurity Analyst at a non-profit with 501-1,000 employees
    Real User
    Top 20
    Jan 26, 2026
    Centralized threat insight has improved frontline detection but support still needs faster, clearer help
    Pros and Cons
    • "SentinelOne Singularity Cloud Security's unified platform experience has helped streamline our security operations, as it has definitely allowed us to get more accurate information faster."
    • "I find the platform somewhat clunky at times, and SentinelOne Singularity Cloud Security does not always give me accurate data, which could also be due to fine tuning on our end."

    What is our primary use case?

    As a cyber security analyst, my main use case for SentinelOne Singularity Cloud Security is front line support. I use SentinelOne Singularity Cloud Security in my daily work for detection through our endpoints for any ingress on our clients.

    What is most valuable?

    The best features SentinelOne Singularity Cloud Security offers include the data lake where I can ingest data from all other applications that I use into one central location, making managing alerts much easier and more responsive.

    SentinelOne Singularity Cloud Security has positively impacted our organization as it allows us to be more proactive on the alerts that we get and any threats that we receive. The data lake feature helps me day-to-day by ingesting all the information from Darktrace and Defender into one single point of reference, which makes it easier to locate information.

    Being able to get information from one central source helps to streamline processes and security in my daily workflow.

    What needs improvement?

    I find the platform somewhat clunky at times, and SentinelOne Singularity Cloud Security does not always give me accurate data, which could also be due to fine tuning on our end.

    SentinelOne Singularity Cloud Security needs to be more reliable for the information it is pulling, as I am not always confident that the data coming through is accurate and immediate. We have had a few issues with the configuration setup at our location, which will be resolved; however, some of the configurations have taken a long time to resolve, and the back and forth with support has been frustrating.

    Regarding needed improvements, support can be more proactive, faster in responsiveness, and come back with workable solutions rather than just steering me back to online knowledge bases all the time.

    For how long have I used the solution?

    I have been using SentinelOne Singularity Cloud Security for about 18 months.

    What do I think about the stability of the solution?

    SentinelOne Singularity Cloud Security appears to be stable at the moment.

    What do I think about the scalability of the solution?

    I am not really sure how the scalability of SentinelOne Singularity Cloud Security plays out in our current position.

    How are customer service and support?

    The customer support for SentinelOne Singularity Cloud Security is about a 5 out of 10, and I think they need to be more interactive with their clients rather than just steering clients back to knowledge bases.

    SentinelOne Singularity Cloud Security's unified platform experience has helped streamline our security operations, as it has definitely allowed us to get more accurate information faster.

    How would you rate customer service and support?

    Positive

    What other advice do I have?

    For others looking into using SentinelOne Singularity Cloud Security, I would definitely recommend it as worth a look for your current environment to see whether it would have a place, and also compare it against other products out there.

    My only other thought about SentinelOne Singularity Cloud Security is that support needs to be enhanced with their clients, requiring more interaction with their customer base rather than online pushing clients to knowledge bases all the time.

    I gave this review a rating of 6 out of 10.

    Which deployment model are you using for this solution?

    Private Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    Last updated: Jan 26, 2026
    Flag as inappropriate
    PeerSpot user
    Chetan Yelve - PeerSpot reviewer
    Software Engineer at Cateina Technologies
    Real User
    Top 5
    Apr 5, 2025
    Enhancing workflow with automation and comprehensive security monitoring
    Pros and Cons
    • "The best features we value in SentinelOne Singularity Cloud Security include compliance monitoring features, as we are a frequently audited company. They provide reports with compliance scores, showing how well we meet certain regulatory standards, such as HIPAA, and we can show our compliance as a percentage."
    • "It saves us time based on savings on manual activities."
    • "I would prefer to see SentinelOne Singularity Cloud Security develop into a single pane of glass for ASPM and CSPM."
    • "SentinelOne Singularity Cloud Security is an excellent CSSPM tool, but the CSC CWPP features need improvement."

    What is our primary use case?

    As an API developer, my use case is to use SentinelOne Singularity Cloud Security for security purposes. It alerts me if there are vulnerabilities, attacks, or security breaches.

    We primarily use SentinelOne Singularity Cloud Security for cloud security posture management. This solution also provides other capabilities such as infrastructure as code scanning, identifying hardcoded secrets in the source code, and covering Kubernetes security, utilized by about 25 members of the security and DevOps team.

    How has it helped my organization?

    SentinelOne Singularity Cloud Security is easy to use, and even beginner-level people can use it conveniently without any difficulty. The dashboard is innovative and sorted, providing numerous metrics for reporting and everything. 

    It has reduced my mean time to detect by 20%. My mean time to remediate has also reduced by 20%. 

    It helps save us time by automating manual activities. We have automated everything in SentinelOne Singularity Cloud Security itself and integrated APIs, reducing our time by 30% to 40%. 

    We have seen a return on investment of saving about 20% to 25% in manpower.

    What is most valuable?

    The best features we value in SentinelOne Singularity Cloud Security include compliance monitoring features, as we are a frequently audited company. They provide reports with compliance scores, showing how well we meet certain regulatory standards, such as HIPAA, and we can show our compliance as a percentage. 

    It's also a way to show that we are serious about security. In addition to reporting, I appreciate the manual monitoring, dashboard, and UI—all excellent features. 

    It's easy to use. Beginner-level people can use it very conveniently.

    For evidence-based reporting, if there is something new to the infrastructure, SentinelOne Singularity Cloud Security itself provides documentation to address any errors causing issues with the system. It provides a wide amount of metrics.

    Proof of exploitability is important since we have integrated all the SentinelOne Singularity Cloud Security CWPP and CSPM applications within a containerization feature, scanning into Jira. It acts more as a vulnerability management tool for us, identifying all issues and following them to Jira, where we have several dashboards providing an overview of open security issues. 

    We primarily use features for cloud security posture management. The solution also provides other capabilities like infrastructure as code scanning. It identifies hard coded secrets and the source code and covers Kubernetes security. About 25 members of the security and DevOps team use the solution.

    It's positively affected our risk posture. It clarifies and helps us organize so we are more aligned across security. We get good notifications. 

    It saves us time based on savings on manual activities. We've automated everything and integrated APIs. It's reduced time needed to manage by 30%% to 40%.

    What needs improvement?

    Since I have been using it, I have seen many improvements. SentinelOne Singularity Cloud Security is an excellent CSSPM tool, but the CSC CWPP features need improvement. 

    There is scope for more application security posture management features and other than that, there are not many ASPM solutions on the market, and existing ones are more costly. 

    I would prefer to see SentinelOne Singularity Cloud Security develop into a single pane of glass for ASPM and CSPM, and I would also appreciate runtime protection highlighted immediately if I'm changing anything in my environment. 

    The dashboard needs more widgets added so that customers or users can see everything on the dashboard itself without needing to go too deep.

    For how long have I used the solution?

    I have been using this solution for around two years.

    What do I think about the stability of the solution?

    For stability, it rates nine out of ten. It's a highly stable product, and we haven't had any issues with reliability.

    What do I think about the scalability of the solution?

    For scalability, I rate it nine out of ten. Our company is growing, and we don't see any performance slowdown from onboarding multiple projects, with no changes to the functionality of visibility it provides.

    We have 60 to 70 users on the product currently.

    How are customer service and support?

    I rate SentinelOne Singularity Cloud Security support nine out of ten.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    I personally did not use any different product, however, there was something before - maybe Prisma. SentinelOne Singularity Cloud Security is not very expensive compared to Prisma. It isn't very cheap either. However, its features make sense to us as a company, and it's fairly priced.

    How was the initial setup?

    The deployment is easy. It took one and a half days to implement.

    From my application point of view, the integration between SentinelOne Singularity Cloud Security and applications has been more satisfactory and clear, providing a good overall experience. The PingSafe team handles the maintenance part, which occurs on a quarterly basis.

    We have the solution across multiple departments. 

    What about the implementation team?

    Three people were involved in the deployment.

    What was our ROI?

    We have seen a return on investment of saving about 20% to 25% in terms of costs related to manpower.

    What other advice do I have?

    We don't use the agentless vulnerability scanning. We don't use the Offensive Security Engine.

    We are trying to solve security problems since we are using IBM products, which did not give any security alerts. That's why we are using SentinelOne Singularity Cloud Security. Before SentinelOne Singularity Cloud Security was deployed, nothing was monitored along this risk posture. After deployment, it has been more clarified and organized, with everything aligned on a security posture. We also use on the cloud for overall protection and notifications of everything happening in our infrastructure. 

    I would recommend SentinelOne Singularity Cloud Security based on a security point of view. Considering the scalability, given the company's growth, it is needed. 

    I rate this solution nine out of 10.

    Which deployment model are you using for this solution?

    On-premises

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    IBM
    Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
    PeerSpot user
    Cloud engineer at a construction company with 5,001-10,000 employees
    Real User
    Top 20
    Dec 17, 2024
    Provides real-time inspection and supports multiple cloud engines
    Pros and Cons
    • "Singularity Cloud Security's most valuable features are its ease of scalability and comprehensive security measures."
    • "While SentinelOne offers robust security features, its higher cost may present a challenge for budget-conscious organizations."

    What is our primary use case?

    We use SentinelOne Singularity Cloud Security for real-time alerts, enabling us to address potential threats proactively.

    SentinelOne Singularity Cloud Security was implemented to enforce best practices, monitor runtime activity, and expedite troubleshooting.

    How has it helped my organization?

    SentinelOne Singularity Cloud Security provides easy-to-follow documentation on the steps required to resolve issues.

    It offers a user-friendly experience with a centralized console for managing assets and delivering devices.

    Singularity Cloud Security provides a real-time inspection for organizational growth, which makes it suitable for both small and large enterprises. It is interactive and easy to navigate, simplifying self-service.

    What is most valuable?

    Singularity Cloud Security's most valuable features are its ease of scalability and comprehensive security measures.

    Singularity Cloud Security has a centralized console for managing assets and delivering devices.

    Singularity Cloud security supports various cloud engines, such as Azure and AWS.

    Once fine-tuned, Singularity Cloud Security reduces false positives by 80 percent.

    Singularity Cloud security improves our risk posture. We have not had any security issues.

    It has reduced our mean time to detect by up to 20 percent.

    Our mean time to resolve has significantly improved with the implementation of Singularity Cloud security. Previously, our MTTR ranged from 15 to 20 minutes, but now it has been reduced to 5 to 7 minutes.

    Singularity Cloud security has been a valuable asset to our application developers and AppSec team. Its support for various cloud platforms and user-friendly interface have greatly improved our security posture.

    What needs improvement?

    While SentinelOne offers robust security features, its higher cost may present a challenge for budget-conscious organizations. Additionally, some users have reported experiencing delays in issue resolution due to slower response times from the support team.

    For how long have I used the solution?

    I have been using SentinelOne Singularity Cloud Security for around two years.

    What do I think about the stability of the solution?

    I would rate the stability of Singularity Cloud Security nine out of ten.

    What do I think about the scalability of the solution?

    I would rate the scalability of Singularity Cloud Security ten out of ten.

    How are customer service and support?

    Sometimes, the response time of the support team is lagging.

    How would you rate customer service and support?

    Neutral

    Which solution did I use previously and why did I switch?


    How was the initial setup?

    The initial deployment was straightforward and took three days to complete.

    What about the implementation team?

    Their customer service support team was on the call with us. Our team leads and technical people were there, and they jointly deployed Singularity Cloud Security on the data center as well as on the cloud.

    What was our ROI?

    Before SentinelOne, I used to take around 15 to 20 minutes to resolve an issue. After implementing SentinelOne, it takes about five to seven minutes.

    What's my experience with pricing, setup cost, and licensing?

    SentinelOne is more expensive compared to other security solutions.

    I would rate the cost a seven out of ten with ten being the most costly.

    What other advice do I have?

    I rate SentinelOne Singularity Cloud Security a nine out of ten.

    Singularity Cloud Security is deployed across our infrastructure, and we currently have 13 users.

    I would recommend SentinelOne Singularity Cloud Security to other users for security purposes.

    Which deployment model are you using for this solution?

    Hybrid Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Other
    Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
    PeerSpot user
    Buyer's Guide
    Download our free SentinelOne Singularity Cloud Security Report and get advice and tips from experienced pros sharing their opinions.
    Updated: July 2026
    Buyer's Guide
    Download our free SentinelOne Singularity Cloud Security Report and get advice and tips from experienced pros sharing their opinions.