Listing Thumbnail

    SentinelOne Singularity Platform

     Info
    Sold by: SentinelOne 
    Deployed on AWS
    Vendor Insights
    The First Security AI Platform to Protect the Entire Enterprise. Break Down Security Silos. Gain Enterprise-Wide Visibility and Control. Action Your Data In Real-time with AI. One intelligent platform. Unprecedented speed. Infinite scale. Singularity™ enables unfettered visibility, industry-leading detection, and autonomous response. Discover the power of AI-powered, enterprise-wide cybersecurity. Enterprise security across endpoints, cloud, and identity, backed by a unified data lake, and with the power of Purple AI.

    Overview

    Play video

    Addressing threats across different attack surfaces is a huge challenge for organizations. The existence of data silos and disconnected tools result in analysts conducting manual investigations without complete visibility and context. To better safeguard organizations, security teams need comprehensive protection across the entire enterprise.

    The SentinelOne Singularity Platform is the first AI security platform to provide enterprise-wide visibility and protection, bringing all enterprise data together in a unified data lake to reduce risk and help protect businesses.

    Solutions and capabilities include: -Purple AI, an autonomous, AI-powered SOC analyst -AI-powered Cloud Native Application Protection Platform (CNAPP) with agentless and agent based approach, including an Offensive Security Engine -Extended Detection and Response (XDR) -Endpoint Prevention, Detection, Response and Remediation (EPP, EDR) -Identity Threat Detection and Response (ITDR) -Unified security data lake -Threat Intelligence and Vulnerability Management

    and more.

    Highlights

    • MITRE Enginuity Leader with record breaking ATTACK evaluation, Gartner Peer Insights Leader with 96% recommendation, PeerSpot category Leader
    • Streamline security operation workflows with industry-leading AI security, including Purple AI, an AI powered SOC assistant.
    • Consolidate vendors and agents into one single platform and a single data lake, with multiple integrations including with AWS native services such as Amazon Security Lake.

    Details

    Delivery method

    Deployed on AWS

    Unlock automation with AI agent solutions

    Fast-track AI initiatives with agents, tools, and solutions from AWS Partners.
    AI Agents

    Features and programs

    Trust Center

    Trust Center
    Access real-time vendor security and compliance information through their Trust Center powered by Drata. Review certifications and security standards before purchase.

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Vendor Insights

     Info
    Skip the manual risk assessment. Get verified and regularly updated security info on this product with Vendor Insights.
    Security credentials achieved
    (1)

    Pricing

    SentinelOne Singularity Platform

     Info
    Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    1-month contract (1)

     Info
    Dimension
    Description
    Cost/month
    Custom Pricing and Packaging
    Contact SentinelOne for custom pricing and packaging including Private Offers
    $10,000.00

    Vendor refund policy

    Refunds available as required by law.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Support

    Vendor support

    Multiple support options available. Email support available: support@sentinelone.com 

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    10
    In Generative AI, Security Observability
    Top
    25
    In Security

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    0 reviews
    Insufficient data
    Insufficient data
    Insufficient data
    Insufficient data
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Artificial Intelligence Security
    Advanced AI-powered security platform with autonomous threat detection and response capabilities
    Cloud Native Application Protection
    Comprehensive CNAPP solution with agentless and agent-based protection, including an Offensive Security Engine
    Extended Detection and Response
    Cross-platform XDR capabilities providing unified threat detection and response across multiple security domains
    Endpoint Security
    Integrated Endpoint Prevention, Detection, Response and Remediation (EPP, EDR) with comprehensive protection mechanisms
    Identity Threat Management
    Advanced Identity Threat Detection and Response (ITDR) with real-time monitoring and protection capabilities
    Threat Intelligence Integration
    Comprehensive threat intelligence platform analyzing over 3,000 threat campaigns with advanced correlation capabilities
    Cross-Platform Event Ingestion
    Ability to ingest event and incident data across multiple products and over 1,000 third-party services with 13 AWS integrations
    AI-Powered Investigation
    Deep AI-guided investigations with advanced threat modeling and intelligent response capabilities
    Security Operations Automation
    Advanced AI models for operationalizing threat intelligence through control posture updates and automated response mechanisms
    Adaptive Threat Detection
    AI-driven threat landscape analysis enabling proactive and dynamic security threat identification and mitigation
    Threat Intelligence
    Advanced global and local threat intelligence capturing individual threat components and APT data to analyze malware detections and vulnerabilities across attack stages
    Attack Surface Management
    Continuous attack surface discovery, asset risk assessment, and automated risk mitigation for known, unknown, internal, and internet-facing assets
    Extended Detection and Response
    Native sensor coverage for endpoint, identity, email, network, and cloud workload with comprehensive cross-layer protection and next-generation XDR technology
    Security Automation
    Orchestration and automation of risk mitigation, threat response, and zero trust access control from a centralized management console
    Multi-Environment Protection
    Integrated cybersecurity platform supporting diverse hybrid IT environments with comprehensive protection across email, endpoint, network, cloud, OT, and secure access domains

    Security credentials

     Info
    Validated by AWS Marketplace
    FedRAMP
    GDPR
    HIPAA
    ISO/IEC 27001
    PCI DSS
    SOC 2 Type 2
    -
    -
    -
    -
    -
    No security profile
    -
    -

    Contract

     Info
    Standard contract
    No
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    4.2
    5 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    20%
    60%
    20%
    0%
    0%
    5 AWS reviews
    |
    298 external reviews
    Star ratings include only reviews from verified AWS customers. External reviews can also include a star rating, but star ratings from external reviews are not averaged in with the AWS customer star ratings.
    Daniel Giacomelli

    Strengthens cross-platform threat response while supporting audit compliance and log integration

    Reviewed on Sep 12, 2025
    Review from a verified AWS customer

    What is most valuable?

    I have extensive experience with SentinelOne products and am particularly impressed with SentinelOne Singularity Complete. The solution integrates effectively with third parties.

    I find it extremely reliable. For instance, I report monthly for compliance and other security metrics across our multi-cloud platforms. Primarily, we rely on Microsoft, especially with Entra ID and MFA. While Microsoft provides decent reporting tools, they can make it difficult to get high-level summaries. In contrast, Singularity allows me to pull insights across various platforms, not just Microsoft and Azure. Whether I’m using it within AWS, with single sign-on, or with one of our partners, I can see all the relevant data.

    It has improved significantly with its upgrades, especially in threat hunting and analysis. Now, when it identifies a threat, it efficiently kills the process and attempts to quarantine the affected items. If it cannot, the system continues its automated threat hunting. This feature is fantastic because it remediates issues while maintaining a clear audit trail, which is great for compliance. However, a drawback is that although it handles threats effectively, I sometimes cannot access the necessary data quickly enough to address recurring problems and prevent them from escalating. The good news is that the platform is robust and supports our security needs. While it's not perfect, it certainly has its strengths.

    What needs improvement?

    The analytics and reporting can be a bit overwhelming. I love the dashboards, but I find that I need to better understand PowerQuery—specifically when to turn it on and off and its limitations. It's similar to SharePoint in that regard. As a former SharePoint instructor, I know it like the back of my hand. The best thing about SharePoint is that it can do whatever you want; the worst part is also that it can do whatever you want. You really need to know what you want before diving in. Most people usually have a good idea of what they need. SharePoint offers a lot out of the box, but you can customize it further if you wish. However, customization often requires hiring someone, which can be risky since you never know if it will work as intended. On the other hand, PowerQuery can help bridge some of those gaps within Singularity. The challenge arises when you want to incorporate what you've done into dashboards and charts, as there are limitations. For instance, I want more clickable drill-down options that allow me to filter on specific sections of the data, but that's currently not possible. It’s not to say that improvements won’t come in the future; it's just that it feels a bit early at this stage.

    Additionally, I find some navigation features frustrating, like the back button in certain contexts. For example, if you open PowerQuery from a chart, it doesn't open in a new window or tab. Clicking the back button takes you all the way back to the previous state, causing you to lose whatever progress you made. However, I'm actively providing this feedback to my partner, Pro Circular, through whom we access SentinelOne. They take our input seriously, and I've been sharing my observations. They have their own views but are addressing the issues I raise. It's good to see that suggestions occasionally lead to updates and improvements.

    For how long have I used the solution?

    I have been using SentinelOne for approximately three and a half to four years, with particularly intensive use in the last two and a half years.

    How was the initial setup?

    Though I wasn't present for the implementation, the success of SentinelOne Singularity Complete migration heavily depends on having a quality partner. Prior to the purchase and recent changes, experiences with SentinelOne's support and product were not positive.

    What's my experience with pricing, setup cost, and licensing?

    I obviously want it to be more affordable, and I believe we should be able to achieve that. However, my main concern is partner pricing; that's where they really need to focus. While we can manage it ourselves, if we're going back to the traditional service management model with trusted service providers, I depend heavily on ProCircular as our SOC partner. They offer a few different solutions, but SentinelOne Singularity appears to be the preferred choice.

    Similarly, SHI can provide various options as well, but according to my account representative, SentinelOne is gaining momentum and improving significantly. However, it’s important to note that we're only talking about a timeframe of around six months. I'm happy to share this feedback because insights like these can impact future purchasing decisions for other tech leaders like myself who have decision-making authority.

    As for pricing, it’s essential to address that. Reputation and quality are important, but especially in today’s economy, price is a significant factor. Unfortunately, many organizations are prioritizing price right now. My hope is that SentinelOne and Singularity can recognize the importance of partner pricing and economies of scale.

    What other advice do I have?

    Right now, I'm focusing on the basics of cloud integration. I have established a standard that I need to recreate, particularly with SentinelOne. It serves two main purposes: it is our primary antivirus solution for both Windows and Linux. There are various ways to forward logs from other systems where SentinelOne cannot be installed, such as firewalls and databases. However, they all provide similar functionality. There are two types of integrations available: you can use a plug-in, or you can utilize the standard Singularity integration. For AWS specifically, I've standardized the ingestion of AWS CloudTrail data across all platforms. Azure has a similar capability, so now I can view all my cloud reports in one place instead of having to switch between different dashboards, like SentinelOne's or AWS's Security Hub and GuardDuty. I can consolidate everything into one platform, which is very convenient. The integrations are robust, and from a plug-in perspective, I realize that I might not even need to use them. Some older systems, such as Cisco, can forward logs to a log management system, and SentinelOne Singularity Complete handles those logs seamlessly, which is fantastic. There's still a lot more I want to accomplish, but I'm pleased with the progress so far.

    It has evolved significantly. Prior to SentinelOne Singularity's acquisition of DataSet, there were numerous issues and negative feedback. Previously, common complaints involved having to implement exclusions due to lack of thorough investigation. However, these complaints have ceased since the changes were implemented.

    They offer a lot of options, especially when it comes to integration. With the recent upgrades they've made to their platform, it truly appears cohesive, almost like a single pane of glass. There is a lot of consistency, which makes navigation easier. However, the challenge lies in the distinction between EDR and XDR. SentinelOne is still part of the product, but it’s important to recognize that SentinelOne and Singularity operate separately. This situation is both a positive and a negative. The positive aspect is the uniformity of the interface, which you would expect to make it more intuitive and user-friendly. I know they’re working toward that, but the systems are fundamentally different. Your EDR, XDR, and other tools need to be considered separately; one involves installation and monitoring logs, while the other focuses on ingestion. They do an impressive job of bringing together commonalities among EDR, XDR, and the managed extended detection response, but if you choose one path over the other, you need to understand that the approach may vary. It’s a bit of a blessing and a curse at the same time.

    I would rate it an eight out of ten. For ten, it has got to be rock solid all over the place.

    Rafal S.

    Almost perfect

    Reviewed on Aug 01, 2025
    Review provided by G2
    What do you like best about the product?
    The reliability and certainty of protection while being simple to install and manage.
    The imprementation was extremaly fast easy. The support is top class in comparison to other brands I have experience wth.
    What do you dislike about the product?
    There is no such thing. Maybe one - it happens that I have to login to the console a few times before I am granted in. I am not sure where is the issue
    What problems is the product solving and how is that benefiting you?
    It is an important element of our security stack. Moving to SentinelOne from other platform was a perfect choice in terms of: detection relaibility, low fasle positives ratio, easy SIEM integration, easy managment even in huge environment, low consumption of the endpoint resource by the agent.
    reviewer1964085

    prevention of ransomware attacks shows reliability and effectiveness in business environments

    Reviewed on Jul 31, 2025
    Review provided by PeerSpot

    What is our primary use case?

    I typically deploy it into typical business environments such as law offices, doctors' offices, and marketing companies. I have clients of all walks of life, including accountants, attorneys, doctors, and veterinarians. I work in a very simple environment and am not dealing with high security, such as CIA-level security. For example, I use it in a doctor's office where it does a good job staying HIPAA compliant.

    How has it helped my organization?

    The best aspects of SentinelOne Singularity Complete  for these clients are its ability to detect malicious activity. While there are sometimes false positives, they are minimal, making it quite effective. It recently stopped a ransomware attack at one of my clients, proving its reliability. The clients do not see immediate efficiency gains or significant time savings.

    What needs improvement?

    I haven't done any integrations, as I'm just in the beginning stage of ramping up the product implementation and mastering the product. I don't qualify myself as a master in the use of SentinelOne Singularity Complete , so I cannot offer great insight on this.

    For how long have I used the solution?

    I have dealt with SentinelOne Singularity Complete for less than a year.

    What do I think about the stability of the solution?

    The stability of SentinelOne Singularity Complete is demonstrated through its ability to detect malicious activity. While there are sometimes false positives, they are minimal. It recently stopped a ransomware attack at one of my clients, proving its reliability.

    What do I think about the scalability of the solution?

    My clients are mostly small, and my largest client has about thirty computers. I do the deployment myself, and it's not a huge effort. It's not comparable to dealing with a company that has three thousand computers.

    Which solution did I use previously and why did I switch?

    In the past, I used another product that malfunctioned and caused high processor activity which required stopping and reinstalling it. However, this hasn't happened with SentinelOne Singularity Complete. I used to have many false positives with other products that would block good programs, but I haven't experienced that with SentinelOne Singularity Complete, making it more quiet and efficient.

    How was the initial setup?

    The initial setup was very simple; deployment is straightforward. Fine-tuning it is a bit more involved, but overall, it's a very simple product to get started with.

    What about the implementation team?

    I was a part of the setup and deployment process.

    What was our ROI?

    The return on investment for my clients isn't visible until there is an incident or an attack that gets stopped. Then they realize the value of prevention. The challenge with security products is that ROI isn't apparent until an incident demonstrates the potential for loss. Clients often think they are immune, especially small ones, believing they're too small to be attacked. They don't realize that the cost of an attack could be a hundred thousand dollars, while they perceive the likelihood as very low.

    What's my experience with pricing, setup cost, and licensing?

    The pricing for SentinelOne Singularity Complete is good. There are other products that are less expensive, but I tell my clients that in security, they cannot cut corners or look for the cheapest solution. If they want security, looking for the cheapest solution means they have the wrong approach, because good products are not cheap.

    What other advice do I have?

    I don't have hands-on experience with CrowdStrike, Cisco, or Palo Alto products, but I know the companies. I do not have experience with AI features or AI analytics yet. I don't think there is real-time threat intelligence within SentinelOne Singularity Complete, and if there is, I'm not using it. I'm just getting to learn the product, so I cannot offer any deep insightful opinion. On a scale of one to ten, I would rate it a nine or a ten, as I'm very happy with it currently.

    rohit y.

    Review For SentinelOne

    Reviewed on Jun 25, 2025
    Review provided by G2
    What do you like best about the product?
    What I like best about SentinelOne Singularity is its autonomous threat detection and response capabilities. It provides excellent visibility across endpoints with minimal manual effort. The rollback feature is especially valuable for ransomware recovery. The platform is fast, lightweight, and easy to manage through a clean interface.
    What do you dislike about the product?
    One drawback of SentinelOne Singularity is that its advanced features can be overwhelming for new users. The alert classification could be more granular to reduce noise. Reporting customization options are somewhat limited. Occasionally, support response times can be slower than expected
    What problems is the product solving and how is that benefiting you?
    SentinelOne Singularity is solving the problem of advanced threat detection and rapid incident response. It automatically identifies and mitigates malware, ransomware, and zero-day threats. The platform’s autonomous response reduces the need for constant manual intervention. This has improved our security posture and saved valuable analyst time.
    Telecommunications

    Sentinel One Singularity

    Reviewed on Jun 24, 2025
    Review provided by G2
    What do you like best about the product?
    Installer file is small, Threat detection and Automation is very good. Purple AI is really good feature to have for SOC.
    What do you dislike about the product?
    Should have capability to uninstall existing AV while time of installation.
    What problems is the product solving and how is that benefiting you?
    Threat detection, Administrator work gets reduced, Purple AI is automating many task. Remoteops and hyper automation is very useful.
    View all reviews