L
Lead IT & and Cloud Infrastructure
"User-Friendly Dashboard with Clear Cloud Visibility and Helpful Alerts"
What I like most is its easy-to-use dashboard and clear visibility into cloud resources. It helps identify security risks quickly and makes monitoring and managing the cloud environment easier. Setup is straightforward, and alerts are useful without being overwhelming. The UI can feel a bit complex for new users, and it takes time to understand all the features. Sometimes, finding specific settings or information requires a few extra clicks. Apart from that, I haven't encountered any major issues. This helps us identify security risks and misconfigurations across our cloud environment, provides better visibility into our cloud assets, helps us respond to issues faster, and improves our overall security posture while reducing manual effort.
S
Senior Information Security Analyst
"Faster Misconfiguration Detection with Simple Purple AI Integration"
As a cloud workload protection platform, it performs well and helps our team detect misconfigurations and risks more quickly. The Purple AI integration makes the tool easier to use. However, pricing is an issue—the tool is not cheap and is a bit pricey for startups. Since it's a third-party tool, integration with cloud-native environments and payment is a big challenge for our clients. Most of our cloud-native clients prefer using cloud-native CWPP like Config with consolidated billing. Security misconfigurations are the biggest challenge, especially for one client running a multi-cloud environment. SentinelOne Singularity Cloud Security saves the day, especially where cloud-native CWPP or CNAPP can't reach their multi-cloud environment.
"Clear Cloud Visibility Making Security Easier"
I like that it provides a clear view of what's happening across cloud environments and helps identify risks or misconfigurations before they become bigger issues. It makes cloud security easier to stay on top of. It can be a bit confusing initially—there's a lot going on, and it takes time to get used to where everything is and how to tune alerts properly. It helps catch cloud security risks, misconfigurations, and potential threats before they escalate. It saves time because everything is easier to see in one place, and it gives us more confidence that our cloud environment is secure.
P
Privacy, Compliance, Governance, Risk and Security MGR
"AI-Driven Cloud Threat Detection Providing Real-Time Protection"
SentinelOne Singularity Cloud Security is a leading cybersecurity solution for organizations seeking comprehensive protection across their cloud environments. One of its most impressive features is its AI-driven threat detection, which enables real-time identification of malicious activities and reduces false positives. This proactive approach helps organizations respond swiftly to emerging threats, minimizing potential damage. Some users find the initial deployment and configuration process complex and time-consuming, especially for organizations new to advanced security platforms. It enhances security posture with proactive threat detection and response, allows faster incident resolution, reducing potential damage, simplifies management of complex cloud environments, and increases confidence in security measures, allowing focus on core business activities.
"Unified Multi-Cloud Security with AI-Driven Automation and Real-Time Threat Detection"
What I like most about the Singularity Cloud Security platform from SentinelOne is its ability to provide unified cloud security across multi-cloud environments through a single platform. The combination of Cloud Security Posture Management (CSPM), Cloud Workload Protection (CWP), and real-time threat detection helps security teams gain comprehensive visibility and respond quickly to risks. I also appreciate its AI-driven automation and agentless capabilities, which simplify security operations while reducing manual effort and improving efficiency. One area for improvement is the initial learning curve. Because the platform offers a wide range of advanced features, new users may need time and training to fully utilize all its functionalities. Additionally, some organizations may find that customization and reporting options could be expanded to better meet specific operational and compliance requirements. It solves the problem of fragmented cloud security by giving a single view of risks across environments, helping me save time, respond faster to threats, and reduce the complexity of managing security across multiple cloud platforms.
A
Associate Security Engineer
"Unified Cloud Security Visibility Across Workloads, Containers, and Infrastructure"
The best feature of SentinelOne Singularity Cloud Security is the unified visibility it offers across cloud workloads, containers, and Kubernetes environments from a single console. Managing cloud security across multiple environments can become fragmented when relying solely on native cloud provider tools, and Singularity Cloud Security effectively bridges that gap. Real-time threat detection across cloud runtime environments is a standout feature. It doesn't just do point-in-time scans for misconfigurations; it actively monitors running workloads and container behavior, which is crucial for catching threats that appear during deployment but manifest at runtime. The CSPM capabilities are also genuinely useful, providing actionable insights into misconfigurations, overly permissive IAM policies, and compliance gaps, saving significant manual audit time and helping maintain a strong posture without needing a separate tool. For an admin managing a hybrid environment, having endpoint and cloud security telemetry feeding into the same Singularity platform means correlated detections and a much cleaner investigation workflow. That cross-environment visibility in a single pane of glass is a real operational advantage that's hard to replicate with a patchwork of standalone tools. However, there are areas for improvement from an administrator's perspective. Initial setup and integration with existing cloud environments, especially multi-cloud setups spanning AWS, Azure, and GCP simultaneously, can be complex and time-consuming. Getting all connectors configured correctly and ensuring full coverage across accounts and regions requires careful planning and isn't always straightforward out of the box. During early deployment, alert noise can be overwhelming; until policies and suppressions are tuned to your environment, the volume of findings, especially from CSPM misconfigurations, can lead to alert fatigue, which defeats the purpose of an automated security platform. Reporting and dashboard customization options are somewhat limited compared to the depth of data collected. Pulling specific compliance reports or building custom views for stakeholders requires workarounds that shouldn't be necessary at this price point. Pricing and licensing are also worth mentioning; Singularity Cloud Security is at the higher end of the market, which can be a tough conversation for smaller teams or when considering native cloud provider alternatives, even when the capability gap is clear. SentinelOne Singularity Cloud Security addresses one of the most pressing challenges in modern IT environments: the lack of unified, real-time visibility and protection across cloud workloads, containers, and infrastructure. As organizations move more workloads to the cloud, the attack surface expands rapidly, and traditional endpoint security tools aren't built to cover cloud-native environments. Singularity fills that gap directly. It solves the misconfiguration problem that plagues most cloud environments. Misconfigurations in IAM policies, storage buckets, and network security groups are among the leading causes of cloud breaches, and having a CSPM layer that continuously monitors and flags these issues means we catch risks before they become incidents. Runtime threat detection solves another critical problem: visibility into what's happening inside running containers and workloads. Static scans at build time are useful but insufficient alone. Behavioral monitoring at runtime means threats that activate after deployment are still caught and contained, significantly improving security posture. From a team efficiency standpoint, consolidating cloud security telemetry into the same Singularity platform used for endpoint protection has reduced the number of consoles we juggle daily. Correlated detections across endpoints and cloud workloads mean faster investigation, less context switching, and a more complete picture during incident response. Overall, it has meaningfully strengthened our cloud security coverage while keeping operational overhead manageable.
M
Mid-Market (51-1000 emp.)
"Centralized Cloud Visibility and Real-Time Threat Detection with SentinelOne Singularity"
What I find most valuable about SentinelOne Singularity Cloud Security is its centralized visibility across cloud workloads and continuous monitoring for misconfigurations, vulnerabilities, and suspicious activity in real time. The platform prioritizes risks based on impact, making it easier to focus on critical issues first. I also like how it combines cloud security posture management with runtime threat detection, providing better context for investigations and enabling faster response to cloud threats. I'd like to see more native integrations with third-party cloud and security tools to streamline workflows and reduce configuration needs in complex environments. This platform solves the challenge of maintaining visibility and security across cloud environments by identifying misconfigurations, vulnerabilities, and suspicious activity from one place. As a SOC Analyst, I can detect cloud threats earlier, prioritize critical risks, and investigate incidents with more context. This reduces manual effort, improves response times, and strengthens our overall cloud security posture.
"SentinelOne Eases Cloud Security with Real-Time Monitoring and Clear Dashboards"
When you have a cloud environment and need to identify misconfigurations, vulnerabilities, or threats, you'd typically rely on a human engineer. SentinelOne does this automatically. It offers real-time monitoring, risk prioritization, and a clear dashboard. You can integrate it with existing cloud workflows to improve your team's security efforts. However, with its many features, pricing can be a hurdle for small businesses, and better pricing would be appreciated. Also, onboarding can be tough since the dashboard may initially feel overwhelming. More customization options would enhance usability. Additionally, it could be more intelligent with further product improvements. I want my cloud environment secured and free from misconfigurations or vulnerabilities, and SentinelOne helps achieve that. Previously, this required multiple engineers; now their efficiency has improved, freeing up time for other critical tasks. The alerting dashboards are also very helpful for daily operations.
"Easy Cloud Visibility with SentinelOne Singularity"
The aspect I appreciate most about SentinelOne Singularity Cloud Security is how simple it is to gain a clear understanding of our cloud environment. Its intelligence features provide valuable insights that speed up and simplify investigations. Navigating through alerts and insights in the user interface is straightforward and uncomplicated. It also helps consolidate parts of our security operations and integrates smoothly with our existing security tools. The main drawback is that it can take time to fully grasp for beginners or those new to it. However, the platform enhances our operational efficiency and streamlines onboarding new customers. Overall, it strengthens our security service delivery while reducing the time and effort required to manage multiple environments.
S
Senior Network & Systems Infrastructure Analytics Engineer
"Singularity Cloud Security: The Core of the Singularity Platform"
Combining unified cloud protection with Smart Threat Prevention has given us a far more coherent view—no more scattered data, but an AI-driven, integrated security approach. Operations are running smoothly, and we now have significantly better visibility across AWS, Azure, GCP, and NAS. The days of manually filtering through alerts are over, allowing our security and engineering teams to address vulnerabilities promptly. Detection of cloud security events is much quicker, and automated remediation boosts analyst efficiency and aims for zero business disruption. This is more than a buzzword; it's genuinely AI-driven. Static and behavioral AI can identify threats and respond autonomously at machine speed. Additionally, Purple AI acts as an agentic analyst. Connecting it to our system is incredibly easy, and its integration with other platforms like Splunk, SOAR tools, and NinjaOne is impressive. It goes beyond threat detection, working well with ServiceNow, Zscaler, GitLab, and Snyk to enhance our development and operations. You can ask it questions in natural language, and it performs threat hunting, generates brief event summaries, and creates investigation notebooks. It's like having an analyst who never tires. AI-SPM also assists in monitoring our own AI pipelines and models.