SentinelOne Singularity solution is really doing its' job as expected .
What do you like best about the product?
One of most important and helpful feature that SentinelOne has it a threat detection which work based on AI . And with this component you are able to reduce risks against any type of attack .
What do you dislike about the product?
During my work with SentinelOne I had not seen any cons based on which I can provide any expreience which I had in previous .
What problems is the product solving and how is that benefiting you?
For me it is solving problem with hidden attacks . When no any EDR is not able to detect it . Solution also saving my time as IR specialist .
Great roll-back feature, helps save time and integrates well with other security solutions
What is our primary use case?
We utilize SentinelOne Singularity Complete to manage the endpoints, including workstations on both Windows and Mac platforms. This enables us to detect any anomalous behavior and threats on these workstations. Essentially, it empowers us to safeguard our enterprise, effectively replacing our conventional antivirus solution.
We aimed to bolster our security and achieve more comprehensive coverage, which is why we adopted SentinelOne Singularity Complete.
How has it helped my organization?
Singularity Complete's interoperability with third-party tools is good. The integration with the Singularity XDR platform enables us to collect logs from various other platforms and consolidate them into a single console. This greatly facilitates swift issue diagnosis and identification, making it an advantageous perspective.
We have recently begun using the ingestion and correlation functionalities of Singularity Complete. Currently, we are in the process of integrating it with our existing networking equipment, namely Palo Alto and Fortinet. Our objective is to ingest specific data from these sources and derive meaningful insights from the collected information. The integration processes are quite straightforward and user-friendly. It seems that any challenges we are facing might be attributed to configuration issues on our side, which we need to improve upon.
Singularity Complete has assisted us in consolidating our security solutions. With Singularity Complete, we now have a centralized platform for monitoring alarms. We are gradually phasing out the other solutions we had in place.
It has enabled us to gain more confidence and autonomy. The solution is comprehensive as it effectively manages both workstations and threats. Consequently, it significantly reduces the burden of dealing with operational issues and reacting to problems. This approach eliminates the need for excessive proactivity, as we trust the platform to handle these tasks on our behalf. Thus, we no longer need to spend time searching for threats, as the platform efficiently performs this task for us.
It helped reduce false positives. We fine-tuned the solution by creating some exclusions that have reduced the number of alerts.
Singularity Complete has freed up two to three hours per week of our staff's time to work on other projects and tasks.
Singularity Complete has reduced our MTTD by around five hours and has reduced our MTTR by around three hours on average.
It has indirectly helped save costs because we spend less time having to deal with configuration and proactively configuring alarms and alerts.
Singularity Complete has reduced our organizational risk by around 40 percent.
What is most valuable?
The most valuable aspect, in any scenario, was the rollback feature. There were instances when some workstations detected infections, and having the rollback feature proved to be incredibly valuable.
What needs improvement?
Native integration with the mobile console is an area that can be improved.
I'd like to see more operations with the XDR platform.
For how long have I used the solution?
I have been using SentinelOne Singularity Complete for one year.
What do I think about the stability of the solution?
I would rate the stability of Singularity Complete a ten out of ten.
What do I think about the scalability of the solution?
I would rate the scalability of Singularity Complete a nine out of ten.
How are customer service and support?
The technical support is of high quality, strong, and responsive.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
We previously used ESET but we were often missing threats and not finding out until after the fact.
How was the initial setup?
The initial setup is straightforward. We collected several samples for each department, and subsequently, we distributed them to ensure their functionality among the users in different departments. After conducting the necessary tests, we proceeded to implement the final version.
Two individuals were engaged in the deployment: a Cyber Hunter and an administrator.
What about the implementation team?
The implementation was completed in-house.
What was our ROI?
We have observed a return on investment through the time saved managing our workstations and addressing threats. This has provided us with additional time to dedicate to operational projects.
What's my experience with pricing, setup cost, and licensing?
The pricing was very similar in terms of its competitors, but I believe SentinelOne's capability and willingness to attract new business allowed us to save some extra money. I think the pricing aligns well with the market. They encountered competition, so their pricing was slightly more adaptable. That's where we gained an advantage from it.
Which other solutions did I evaluate?
We evaluated CrowdStrike and Defender. We didn't find Defender to be a strong enough technology. CrowdStrike was more expensive, while SentinelOne offered a combination of good technology and affordability.
What other advice do I have?
I would rate SentinelOne Singularity Complete ten out of ten.
SentinelOne is ahead of the curve. They are certainly leading the way. When we consider the kinds of integrations being developed and the AI integrated into the platform, it's evident that they are the latest entrants to the market. This current position enables them to be more innovative in their approach.
SentinelOne Singularity Complete is extremely mature at this level.
We have 50 end users based out of multiple locations. A lot of our users work from home. Singularity Complete is deployed on laptops, workstations, and our servers.
The maintenance is minimal and is overseen by one person.
We're very satisfied with SentinelOne as a strategic partner. They've given us what we need, and we see a long-term future relationship with them.
Planning the rollout is crucial because we need to effectively manage the changes with the users. Therefore, meticulous planning of the rollout, organized by department, ensures a seamless transition and allows us to anticipate any potential issues. Adopting a staggered approach, rolling it out per department, is likely the most effective strategy for deploying Singularity Complete.
Great Single Point of glass for real time alerting and investigation
What do you like best about the product?
I love the timeline feature when performing an investigation
What do you dislike about the product?
In our Azure Virutal Desktop, the Extenion needs to be re-installed when the VMs are updated.
What problems is the product solving and how is that benefiting you?
Helps to give us real time alerts, so we can remediate and resolve an issue immediately. Also gives us amazing visbilty into our cloud enviorment where we have the most growth.
Provides immediate MTTD, and automatic remediation, but the support needs a lot of work
What is our primary use case?
We use SentinelOne Singularity Complete for our endpoint security.
How has it helped my organization?
The visibility that SentinelOne Singularity Complete provides throughout our organization is good.
SentinelOne Singularity Complete's capability to intake and correlate across our security solutions is great. As long as we have configured everything correctly and are monitoring the logs to respond to potential threats, we have the assurance that the threats are being identified and thwarted. A year ago, we faced a malicious attack that was detected and halted by SentinelOne EDR, which played a pivotal role in saving me.
SentinelOne Singularity Complete has certainly helped reduce the number of alerts we were receiving. Previously, I was using McAfee, and I had numerous threats and malware present in my environment that were only detected by SentinelOne Singularity Complete. This assistance facilitated the remediation of those threats and subsequently led to a decrease in security alerts.
SentinelOne Singularity Complete has saved us time by identifying the threats in real-time saving us long investigation times.
SentinelOne Singularity Complete's MTTD is immediate.
The MTTR is good.
What is most valuable?
The most valuable feature is the automatic remediation.
What needs improvement?
The reporting dashboards require improvement. Currently, they lack customization options, preventing me from generating a summarized executive report for management.
SentinelOne's customer support is sluggish and frequently fails to deliver sufficient assistance. The quality of after-sales support is also subpar and requires enhancement. The support is not meeting the expected standards, and as a result, I am feeling dissatisfied.
For how long have I used the solution?
I have been using SentinelOne Singularity Complete for one and a half years.
What do I think about the stability of the solution?
SentinelOne Singularity Complete is stable.
How are customer service and support?
The customer service and support are unsatisfactory. I have been attempting to initiate the MDR services and have reached out to my account representative at SentinelOne for three months now, with no results. I am disappointed that I am unable to integrate any details into my environment, which would allow me to present information on a monthly and quarterly basis. I require this information to assess the performance with my MDR representative, but these matters are not progressing. I feel deceived.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
I previously used McAfee but it was not able to detect some of the malware threats that SentinelOne Singularity Complete does.
How was the initial setup?
The initial setup is straightforward as long as we are not dealing with legacy systems. In the manufacturing industry, many systems utilize older operating systems like Windows 2000, which run traditional applications that cannot be removed. Deploying on Unix is also challenging, whereas Windows Ten is straightforward.
We deploy in large manufacturing environments and there were around 80 people involved in the deployments.
What about the implementation team?
The implementation was completed by the SentinelOne team.
What's my experience with pricing, setup cost, and licensing?
SentinelOne Singularity Complete can be expensive for the SMB market but is suitable for enterprise-level organizations. The service provided by SentinelOne is not up to par with the cost we are paying.
Which other solutions did I evaluate?
I carried out a Proof of Concept with several Endpoint Detection and Response solutions, including CrowdStrike, Trend Micro, and VMware. However, none of them were able to meet my requirements in the same way that SentinelOne Singularity Complete does.
What other advice do I have?
I would rate SentinelOne Singularity Complete a six out of ten.
Currently, I have not yet completed the integration with third-party tools. However, I am utilizing the Sentinel logs as inputs for my Security Operations Center services, and I am gaining comprehensive visibility from this approach.
Best XDR solution I've used
What do you like best about the product?
I've been using SentinelOne Singularity XDR solution for the past 4 months, and I can already see the difference between this and our previous XDR solution. SentinelOne is much more robust and has been gathering and reporting us a lot of alerts on the endpoints. Extremely satisfied.
What do you dislike about the product?
Considering the fact that it alerts a lot more considerably, there is a requirement of fine tuning a lot of it. One can't just install this and let it do the work on its own. Also, it can be a little pricey for some organizations.
What problems is the product solving and how is that benefiting you?
A lot of it is based on the amount of endpoints that we have in our organization. We have about 10,000 employees all over the world, at in order to manage a large organization like this, SentineOne XDR has helped me and my team to maintain the security posture and work on the areas that require attention.
SentinelOne is the best anti-malware out there
What do you like best about the product?
The ease of use is what I like a lot. The platform it self gives very little false postitive incident alerts and I have full cofidence that it's protecting the endpoints that we have it installed on.
What do you dislike about the product?
The network firewall took a while to set up and doesn't work how I would except it to. We blocked all network traffic when a rule was deleted, there was no warrning that it was going to happen.
What problems is the product solving and how is that benefiting you?
Protecting the endpoints is the biggest. There is little worry that our devices that have it installed will be compromised. We are confident that it will protect our devices.
Simple and Solid
What do you like best about the product?
It's simplicity quickly identies issues and has always been reliable. Never impacting production and light enough to never be noticed!
What do you dislike about the product?
I haven't found anything to dislike yet!!! Been using it for over 5 years
What problems is the product solving and how is that benefiting you?
Early detection which equates to more time for Administrators
Sentinel One Singularity
What do you like best about the product?
Great product - for our organization the prevention and detection mechanisms have enabled greated efficiencies in response and managing the attacks across endpoints.
What do you dislike about the product?
There nothing i dislike about Sentinel One platform.
What problems is the product solving and how is that benefiting you?
Prevention and Detection far outweigh response for obvious reasons - it has allowed us to focus on those areas.
Very powerful end point protection feature sets including file roll back, threat hunting, etc...
What do you like best about the product?
We especially like this end-point protection that comes with the feature that we can roll back files even in case of a ransomware attack. This can be a lifesaver to get back files during a ransomware attack in case not covered by backup software. In addition, S1 has been a lightweight software with powerful protection against anything it scanned. The cloud portal also has a lot of info for reports, thread hunting, etc...
What do you dislike about the product?
There were quite a bit troubles with the VSS occupying 100% space instead of the default 10% on a few agent versions. Some of our VMs went out of space due to this issue and we had to apply manual fixes for each affected server. It took a while for this issue to be fixed. There was an agent software claim that would fix the issue, but in fact, it didn't. The VSS space issue was completely resolved after two or three software releases since the problematic one.
What problems is the product solving and how is that benefiting you?
SentineOne is a strong end-point protection that can provide day-to-day protections for end-user workstations and servers.
SentineOne provided us extra protection against ransomware attacks where some up-to-date data may be without backup.
SentineOne provided us a centralized management portal where we can find everything we need from managing end-points to visibility of threats, reports, etc...
SentinelOne
What do you like best about the product?
It is super easy to implment and rollout to the company. We where able to immedietly start seeing remediations and improve security from day one. We also like the one one-click remediation.
What do you dislike about the product?
The reporting section feels to be lacking. I would like to see more options to custmoize dashboards and make it easier to share with others in and out of the company. Sometimes it's hard to manage users but we got use to it.
What problems is the product solving and how is that benefiting you?
We use Sentinelone for end point detection and remediation. It has saved our company many times from multiple threats. One so many that we ended up removed admin access from that user because we kept catching threats.