
SentinelOne Singularity Identity Detection & Response
Deception technology software
Identity threat detection and response (ITDR) software
System security software
User threat prevention software
Zero trust platforms
- Features
- Ease of use
- Ease of management
- Quality of support
- Affordability
- Market presence
Take the quiz to check if SentinelOne Singularity Identity Detection & Response and its alternatives fit your requirements.
$229.99 per endpoint per year
Small
Medium
Large
- Transportation and logistics
- Banking and insurance
- Healthcare and life sciences
What is SentinelOne Singularity Identity Detection & Response
SentinelOne Singularity Identity Detection & Response is an identity security product focused on detecting and responding to threats that abuse identities and directory services such as Active Directory. It is used by security operations and identity/security teams to identify suspicious authentication activity, privilege escalation, and lateral movement paths tied to user and service accounts. The product emphasizes identity-focused telemetry and analytics and is positioned to integrate with broader security operations workflows within the Singularity platform.
Identity-focused threat analytics
The product centers on identity and directory attack behaviors, which helps teams prioritize account compromise, privilege abuse, and lateral movement risks. It is designed to surface identity-related indicators that may be missed by endpoint-only controls. This focus aligns well with organizations that rely heavily on Active Directory and hybrid identity infrastructure.
Operational response workflows
It supports investigation and response use cases oriented around identity incidents, helping SOC teams move from detection to containment actions. This can reduce manual correlation across separate identity and security tools. It fits environments that want identity detections to feed existing incident handling processes.
Platform alignment with SentinelOne
As part of the Singularity portfolio, it is intended to work alongside other SentinelOne security capabilities for broader visibility and coordinated operations. This can simplify vendor management and reduce integration effort compared with assembling multiple point tools. It is particularly relevant for organizations already standardizing on SentinelOne for security operations.
Best fit in SentinelOne stack
Organizations not using the broader Singularity platform may realize less value and may need additional integration work to connect identity detections to their existing tooling. Some capabilities and workflows may assume SentinelOne platform components are present. This can affect total cost and implementation complexity for heterogeneous toolsets.
Deception coverage may be limited
While it addresses identity threats, it is not primarily a dedicated deception technology product, which can matter for teams seeking extensive decoy/credential baiting and deception orchestration. Organizations with strong deception requirements may need complementary tooling. This is a consideration when comparing against products built first for deception use cases.
Requires identity data readiness
Effective detection and response depends on access to high-quality identity and directory telemetry and appropriate configuration. Environments with complex forests, legacy domain configurations, or incomplete logging may face longer tuning cycles. Teams should plan for validation, baselining, and ongoing rule/alert tuning to reduce noise.
Plan & Pricing
| Plan | Price | Key features & notes |
|---|---|---|
| Core | $69.99 per endpoint (annual) | Cloud-native NGAV; baseline endpoint protection (listed as "Core"). |
| Control | $79.99 per endpoint (annual) | Security + suite features; includes Purple AI. |
| Complete | $179.99 per endpoint (annual) | AI-powered first line of defense; real-time detection & response; 14-day data retention; AI Security Assistant. |
| Commercial | $229.99 per endpoint (annual) | "Foundational AI Security" — includes everything in Complete plus Identity Detection & Response (Singularity Identity), 90-day data retention, and Managed Threat Hunting. This is the minimum listed paid tier that explicitly includes Identity Detection & Response. |
| Enterprise | Contact Sales / Call for Pricing | Comprehensive AI Security; includes everything in Commercial plus Agentic AI SOC Analyst, Full Visibility & Forensics, and 24/7 managed services; price is not published on the vendor site. |
Notes: The vendor’s Singularity Identity product page (Singularity Identity / Identity Detection & Response) does not publish standalone pricing and directs users to contact a product expert or sales. The site also promotes partner/authorization purchase and occasional promotional trials/offers for other Singularity packages (e.g., a 30-day SMB trial for Singularity Control was announced in a SentinelOne press release), but no permanent free tier or explicit free trial was found for Singularity Identity itself on the official site.
Seller details
SentinelOne, Inc.
Mountain View, CA, USA
2013
Public
https://www.sentinelone.com/
https://x.com/SentinelOne
https://www.linkedin.com/company/sentinelone/