I have worked on two use cases for this product regarding its major purposes. One is that end-users want to check posts in their multi-cloud environment, where they have AWS, Azure, and Google Cloud. They were asking for multiple security checks based on compliances across each platform, as AWS has its own compliance checks and Azure has its own compliance checks, but they needed to verify if configurations comply with standards such as NIST or MITRE. That was the major concern for the team. They have many compliances because they were operating projects around the world, so they had to comply with GDPR, HIPAA, and CERT-In, and in Australia they also have some projects with additional compliance requirements. For that reason, they looked for this product, and I was able to analyze all their environments. I was able to integrate their AWS accounts, Azure accounts, and Google accounts to SentinelOne Singularity Cloud Security. I was able to showcase how it provides security ratings of each instance or each container. I was also able to showcase misconfigurations, such as instances where a particular configuration was given on a temporary basis but was not removed afterward. I was able to identify these issues and make them aware of them. I was also able to provide fixes and references to fixes using SentinelOne Singularity Cloud Security.
External reviews
External reviews are not included in the AWS star rating for the product.
Cloud security has improved as I gain unified visibility and detect misconfigurations across platforms
What is our primary use case?
What is most valuable?
The biggest benefit of SentinelOne Singularity Cloud Security is that it has a good AI-based analytics engine that helps with the detection part by providing full visibility. I was able to see all the configurations that were made, all the permissions that were being given on IAM roles, user role-based access, and everything in SentinelOne Singularity Cloud Security on a granular basis and across multiple cloud environments.
From the customer and end-user point of view, they were able to have visibility throughout their cloud infrastructures, whether on AWS, Azure, or GCP. They were able to get complete visibility and identify the loopholes present in their cloud infrastructure solutions.
What needs improvement?
Regarding built-in integrations in the product, the integration part can be improved by having more third-party vendors because SentinelOne Singularity Cloud Security is much more focused on premium vendors and premium OEMs. Most customers will be using common platform vendors, but some will be using customized solutions or SMB-level customers may be utilizing custom or new vendors. If possible, they can improve their API integrations with all other platforms. To provide a small example, in the South or APEX region, SonicWall is one of the key players in providing network security, but SentinelOne Singularity Cloud Security does not have any integrations for SonicWall. Also, with Zoho, there is not much of an integration part that the end-user would expect.
The main improvement needed is the integration part with other third-party vendors. Also, they can support multiple platforms and provide support for multiple platforms in terms of features.
Response time can be improved because not all things are perfect in every product, whether CrowdStrike or Trend Micro. In some cases, I have felt that the response time could have been better. Regarding response to an attack or incident, in most cases, SentinelOne Singularity Cloud Security has helped me and has also provided a good reactive approach. Even if the endpoint gets compromised, there is rollback functionality. If it provides rollback, it would be able to provide the rollback functionality based on other platforms, such as Linux and Mac platforms. This would allow me to achieve something that no other competitive product is giving. Regarding response time, it can be improved.
For how long have I used the solution?
I have been working with SentinelOne Singularity Cloud Security for the past one and a half years.
How are customer service and support?
I would say support is excellent. I would give them a rating of 9.5 to 10 because they are providing prompt support, and in my experience, I have never encountered a junior person or someone without knowledge coming into support from SentinelOne. In the support part, they are doing a great job.
How was the initial setup?
It needs some time to install. For the complexity, I would give around six or seven on a scale of ten, where ten is more complex and zero is simple.
Which other solutions did I evaluate?
In some cases, SentinelOne Singularity Cloud Security is better than Trend Micro. In detection and visibility control, it is much better than both Trend Micro and Fortinet. Fortinet is just now evolving and has entered the market, but I do not see many references for this particular CNAPP solution.
What other advice do I have?
From the customer and end-user point of view, they were able to have visibility throughout their cloud infrastructures, whether on AWS, Azure, or GCP. They were able to get complete visibility and identify the loopholes present in their cloud infrastructure solutions. My overall rating for this product is eight out of ten.
Effortless to Use and Highly Intuitive
Comprehensive Cloud Security with Strong Visibility and Automation
Cloud risk visibility has improved security operations but onboarding still needs refinement
What is our primary use case?
SentinelOne Singularity Cloud Security was implemented across our multi-cloud infrastructure, with all of these infrastructures integrated into the platform. The solution pulled all accounts and subscriptions from AWS and Azure, providing a consolidated view of our entire infrastructure. Within those infrastructures, it ran agentless scanning and could identify any vulnerabilities, malware, or risks associated with our infrastructure resources.
SentinelOne Singularity Cloud Security was user-friendly and not difficult to understand in terms of how the application works. The integration process was pretty straightforward. We integrated with AWS, Azure, and Google, though integration with Google required significant workarounds involving Terraform. Once the integration was completed, the process became straightforward. The onboarding process for accounts was somewhat tedious, but apart from that aspect, everything was straightforward.
What is most valuable?
From a security operations perspective, SentinelOne Singularity Cloud Security played an important role. I work with the infrastructure team and closely work with the Infosec team, which is the primary security team. They relied on all the risks and alerts from the platform and worked on how to remediate them and determine whether patching was required. All remediation decisions were based on the initial visibility of any infrastructure risk provided by this application.
The secret scanning feature in SentinelOne Singularity Cloud Security is very important. When we create new accounts or onboard new accounts for any business unit, we gain visibility into what exactly that team is doing and what risks are associated with their activities. As a platform engineer, I work with multiple business units who want to work on Kubernetes or Docker solutions in test environments or sandboxes. When we create an account for a business unit without segmentation around what connects to what, SentinelOne Singularity Cloud Security runs scanning and provides visibility. For example, if a developer creates a vulnerable Jenkins instance, the SOC team and I get a better view of the risks associated with instances that the developer team is working on, even though the developers themselves may not be aware of those risks.
What needs improvement?
Drift detection with respect to infrastructure code is important. When somebody makes changes to infrastructure code, it creates a drift and lets you know what changes have been made at the infrastructure level.
The first downside of SentinelOne Singularity Cloud Security was the onboarding process, which was very challenging and took a lot of time. We faced many challenges around onboarding accounts. However, once we got past that initial phase, everything became pretty straightforward and we did not have any issues.
For how long have I used the solution?
What do I think about the stability of the solution?
What do I think about the scalability of the solution?
How are customer service and support?
The speed of opening a ticket with SentinelOne Singularity Cloud Security support is good. However, there were some cases where getting a support agent on a call was a little difficult.
Which solution did I use previously and why did I switch?
The company went with Prisma because within multiple operating companies, there is a significant footprint of Palo Alto devices for firewalls and endpoint firewalls on-premise. Since Prisma is also a Palo Alto product, it integrates natively with their existing applications. SentinelOne Singularity Cloud Security operated through the cloud, while Prisma also provides risk assessment for on-premise devices, which is an additional capability. This is the reason why Prisma is preferred currently.
How was the initial setup?
What other advice do I have?
Effortless Threat Detection and Unified Security with Excellent Support
2.It provides real-time visibility into workloads and containers, automatically isolates threats, and remediates issues without manual intervention.
3.Singularity Cloud Security offers unified visibility across endpoints, workloads, and containers from a single console.
4. Management handling is very easy.
5. Easy to implement the agent on the endoints.
6. Customer support is excellent.
2.Alert tuning and policy fine-tuning take some time to get right.
3.ometimes the agent deployment in cloud-native environments requires additional manual steps, especially across Kubernetes clusters.
Powerful Cloud Security with a Steep Learning Curve
It finds real security risks (keys leak) not just alerts by analyzing how attackers could exploit systems.
It supports multi-cloud environments like AWS, Azure, and GCP in one dashboard.
It also scans CI/CD pipelines and IaC to catch issues early before deployment.
It may show some false alerts that need tuning. The platform can feel heavy and expensive for smaller teams. The dashboard and UI could be more user friendly in some areas.
Improves risk posture and reduces response time by proactively identifying misconfigurations and vulnerabilities
What is our primary use case?
My use case for SentinelOne Singularity Cloud Security was mostly for cloud security, to identify vulnerabilities in the environment and to secure important sensitive data. These were the two primary use cases.
How has it helped my organization?
SentinelOne Singularity Cloud Security improved our risk posture significantly. There was a very great improvement that I can definitely confirm.
SentinelOne Singularity Cloud Security helped reduce our mean time to detect and mean time to remediate.
The inclusion of proof of exploitability in SentinelOne Singularity Cloud Security's evidence-based reporting is quite important to me, as they were quite useful.
Regarding its evidence-based reporting for helping prioritize and solve the most important cloud security issues, it mostly relates to our VMs running on GCP, which was the most important use case for us. I assess this agentless vulnerability scanning for vulnerability discovery across my cloud infrastructure as good; they frequently provide us with existing vulnerabilities, so overall, it was great to work with.
SentinelOne Singularity Cloud Security helped to reduce the number of false positives. I was using automated malware scanning for S3 buckets in SentinelOne, and we were able to resolve quite a good number of use cases with that, so it was pretty helpful.
SentinelOne Singularity Cloud Security improved collaboration among our cloud security teams, application developers, and AppSec teams. We were able to collaborate with different teams, sharing information about vulnerabilities related to development, explaining the actual problems, how they could be resolved, and how they could be verified first. This collaboration helped save engineering time, approximately three to four hours.
What is most valuable?
I appreciate its ability to scan the entire environment and fetch all items that are not configured properly, which is one of the best capabilities. It also suggests what the actual configuration should be, notifies instantly about any information that is leaked, and regularly gives updates about vulnerabilities that are present in the market.
SentinelOne Singularity Cloud Security is quite easy to use; there is not much complexity. The UI is quite user-friendly, making it very easy to use.
What needs improvement?
One area that could be improved in SentinelOne Singularity Cloud Security is their policies; the way they have configured the policies could be enhanced. There could be a better way to configure custom policies, which is one aspect that I feel can be improved further.
For how long have I used the solution?
I used this solution for two years.
What do I think about the stability of the solution?
In my opinion, it is stable.
What do I think about the scalability of the solution?
It is a scalable solution.
How are customer service and support?
I would rate my experience with the technical support of SentinelOne Singularity Cloud Security as eight out of ten.
Which solution did I use previously and why did I switch?
I did not use a different SentinelOne solution or solutions from other vendors.
How was the initial setup?
I was not involved in the deployment of the solution or the initial setup of SentinelOne Singularity Cloud Security.
What was our ROI?
We saw a return on investment with SentinelOne Singularity Cloud Security. The aspects where I have seen ROI were mainly in time-saving, as it saved considerable time in identifying vulnerabilities, testing vulnerabilities, and it helped in preventing quite a few incidents that could have led to major issues.
What's my experience with pricing, setup cost, and licensing?
I think the pricing of SentinelOne Singularity Cloud Security is a bit high.
What other advice do I have?
I would rate SentinelOne Singularity Cloud Security an eight out of ten.
SentenalOne has given my team a great Security Platform
Enables us to prioritize and effectively address critical security issues
What is our primary use case?
As an engineer, I'm using the solution for managing infrastructure and security posture management.
It's primarily for cloud infrastructure, data center infrastructure, and security posture management, but it also provides other capabilities such as infrastructure-as-code scanning and detects hardcoded secrets in the source code, including for EKS, DevOps tools, etc.
How has it helped my organization?
Evidence-based reporting helps us to prioritize and solve critical security issues. The new visualization feature demonstrates how an attacker can enter the system, highlighting the potential path that can be exploited and outlining all the steps the attacker could take. With that visibility, we can ensure the perimeter is strong and attackers cannot enter, thus reducing the risk. It has helped us prioritize issues.
The visibility into how an attack could happen is valuable. For example, it highlights the system vulnerability and outlines where an attack could propagate. The visualization helps me to prioritize remediation, and if I don't know where to start, I can check to see the score that enables me to prioritize issues.
I am using infrastructure-as-code scanning, and it's one of the useful features. In pre-production, it identifies embedded secrets and misconfigurations, including issues with Kubernetes or some privileged containers. This feature allows us to pass the audit and secure IaC code so that it isn't easily exploitable by attackers. We can more proactively work to identify and resolve vulnerabilities by using the dashboard and the alerting system that SentinelOne provides.
It helps us with audits and compliance. We can show the compliance in percentage. We can confidently say that our company or infrastructure is very secure. It has improved our security posture by 30% to 35%.
It has reduced our false positives by 30%.
It has helped teams collaborate better. The security team manages SentinelOne Singularity Cloud Security, and when it flags vulnerabilities, they are forwarded to DevOps for remediation. Previously, we needed to identify and report the issues, but there would be lapses in communication. Now, there is a centralized dashboard that anyone can look at and see the open issues and work on them.
What is most valuable?
I go to the dashboard on a daily basis. The UI and the widgets are what I personally appreciate. I find it easy to use. If anyone is a beginner or new to this industry, they'll be able to understand how to use it for their use cases.
What needs improvement?
There is scope for more application security posture management features. Additionally, the runtime protection needs attention.
For how long have I used the solution?
I've been using the solution for around 1.2 years.
What do I think about the stability of the solution?
It is stable. I would rate it a nine out of ten for stability.
What do I think about the scalability of the solution?
The scalability of SentinelOne Singularity Cloud Security is more than Prisma Cloud, and I would rate its scalability a nine out of ten.
We have 17 users working with this solution.
How are customer service and support?
I would rate their technical support a nine out of ten.
Which solution did I use previously and why did I switch?
Prisma Cloud is more expensive. The stability and scalability of SentinelOne Singularity Cloud Security are better than Prisma Cloud.
How was the initial setup?
It is deployed on the cloud and also in a data center. My cloud is on Azure, and the data center is running in a different location. It's easy to deploy SentinelOne Singularity Cloud Security; it took me around two to three days to deploy it, and some members of the customer support service helped us to deploy this on both locations.
It does require maintenance, but it's not done by my team. There's a different team called InfoSec that handles this maintenance part.
What was our ROI?
It helped us to secure our infrastructure and applications on the cloud side.
We get notified of any issues immediately, reducing our mean time to detect and remediate by 30%. It saves money and time.
What's my experience with pricing, setup cost, and licensing?
I don't handle the price part, but it isn't more expensive than Palo Alto Prisma Cloud. It's not cheap, but it is worth the price.
What other advice do I have?
I would definitely recommend this product to other members, vendors, or users, as it covers security posture management, auditing, documentation, and compliance management.
I would rate SentinelOne Singularity Cloud Security a nine out of ten.
Audit and compliance monitoring strengthen security posture
What is our primary use case?
The primary use of SentinelOne Singularity Cloud Security involves cloud security, posture management, networking, and EKS. I am trying to solve Security Posture Management with this solution.
What is most valuable?
The best features are audit and compliance monitoring, along with vulnerability assessment, security, and the UI.
I have improved my ability to protect workloads such as containers, serverless, and Kubernetes through serverless functions.
SentinelOne Singularity Cloud Security has helped protect the serverless environment more effectively. There was an incident where my developer mistakenly made my repository public, and SentinelOne Singularity Cloud Security gave me an alert within 25-30 seconds, which helped me address the issue in a minimum time period.
My mean time to detect has been reduced by 30%.
SentinelOne Singularity Cloud Security's automated malware scanning for S3 buckets has reduced my security response time by 10 to 20%.
The solution has had a positive effect on the collaboration between cloud security application developers and AppSec teams. When EKS application teams use the infrastructure, the cloud team can identify vulnerable points and collaborate through Jira, which they follow up on.
The solution saves 40% of my time.
What needs improvement?
The improvements I have seen are mainly in the dashboard and everything related to EKS. From the Kubernetes perspective, the alerts are more detailed. I would add real-time protection as a feature.
For how long have I used the solution?
I have been using this solution for almost one year.
What do I think about the stability of the solution?
I would rate the stability of the solution as nine out of ten.
What do I think about the scalability of the solution?
I would rate the scalability as nine out of ten.
How are customer service and support?
I would rate the technical support as nine out of ten.
Which solution did I use previously and why did I switch?
I did not use any other product before using SentinelOne Singularity Cloud Security.
What about the implementation team?
The deployment process was carried out by our existing team and customer support teams, with two members from the customer support team helping us deploy the solution on the cloud.
What other advice do I have?
The solution is easy to use.
The training, onboarding, and learning curve are smooth. When I joined my organization, SentinelOne Singularity Cloud Security played a very important role because there was no security-related software deployed on our infrastructures.
My environment consists of 13 people working with SentinelOne Singularity Cloud Security.
The solution requires maintenance, but it does not fall under my team's responsibilities.
I do not currently use Artificial Intelligence with SentinelOne Singularity Cloud Security.
I would recommend SentinelOne Singularity Cloud Security to other users for security and management purposes, as it would help organizations in various ways.
Overall, I would rate the solution as nine out of ten.