Sentinel One

SentinelOne - Wikidata


What is Sentinel One

This is not an antivirus in the traditional sense; it’s a next-generation endpoint

security platform that goes beyond traditional antivirus capabilities. It focuses on

providing advanced threat detection, prevention, and response for endpoints,

servers, and other devices. Here are some key points about SentinelOne:

Key points about SentinelOne:

Behavioural AI Detection:

SentinelOne uses behavioural artificial intelligence (AI) and machine learning to detect and block both known and unknown threats. It analyses the behaviour of files and processes in real time to identify malicious activities

Endpoint Protection:
The platform offers comprehensive endpoint protection against a wide range of threats, including malware, ransomware, fileless attacks, and more.

Autonomous Threat Hunting:
The platform actively hunts for threats and anomalies on endpoints, automating the process of threat detection and response.

Machine Learning:
The platform employs machine learning models to predict and prevent future attacks based on evolving threat trends.

Multi Platform Support:
The Platform supports various operating systems, including Windows, macOS, Linux, and virtual environments.

Automation:
The platform automates many security processes, reducing manual effort and enabling faster response times.

Automatic Quarantine and Containment:

SentinelOne can take automated actions to quarantine the affected endpoint. This prevents the ransomware from spreading to other systems.

Threat Hunting and Analysis:
The platform’s AI-driven threat hunting capabilities analyse the attack’s behaviour, providing detailed insights into how the ransomware entered, spread, and attempted to execute.

File Restoration:
The platform focuses on behavioural detection rather than relying solely on signatures, it can identify ransomware variants even if they have not been seen before.

Isolation:
In more severe cases, where the threat cannot be immediately contained, SentinelOne can isolate the compromised endpoint from the network to prevent further lateral movement and data exfiltration.

Incident Response:
Provides comprehensive information about the ransomware attack, allowing security teams to respond effectively. This includes information about the initial infection vector, the files affected, the encryption process, and any attempts to communicate with external servers.

Automated Remediation:
Once the threat is contained and analysed, SentinelOne can automatically remediate the infected system.

 Forensics and Reporting:
SentinelOne’s detailed reporting and forensics capabilities help security teams understand the scope of the attack and how it evolved over time.

SentinalOne’s approach goes beyond traditional signature-based antivirus solutions by leveraging advanced technologies to protect against a wider range of threats. It’s important to note that SentinelOne’s response to ransomware attacks is just one part of its comprehensive security approach. The Platform aims to provide proactive, real-time protection against a wide range of threats beyond ransomware, enhancing an organization’s overall security posture.

 

SentinelOne Core
R1400
Annually
  • Role-Based Access Control
  • Multi-Tenant Management
  • Endpoint Protection Platform (EPP)
SentinelOne Control
R1600
Annually
  • Role-Based Access Control
  • Multi-Tenant Management
  • Endpoint Protection Platform (EPP)
  • Advanced EPP Controls (Device and Firewall Control, Remote Shell)
  • Cloud Workload Protection Platform
  • Autonomous Prevention, Detection, and Response
  • Extended Detection and Response
SentinelOne Complete
R3500
Annually
  • Role-Based Access Control
  • Multi-Tenant Management
  • Endpoint Protection Platform (EPP)
  • Advanced EPP Controls (Device and Firewall Control, Remote Shell)
  • Cloud Workload Protection Platform
  • Autonomous Prevention, Detection, and Response
  • Extended Detection and Response
  • AI Security Assistant (New) – Add On
  • Data Retention (14 Days)
SentinelOne Commercial
R4500
Annually
  • 1 Website
  • 20GB Disk Space
  • SSD Included FREE
  • E-Commerce Ready
  • Unlimited Bandwidth
SentinelOne Enterprise
RFQ
  • 1 Website
  • 20GB Disk Space
  • SSD Included FREE
  • E-Commerce Ready
  • Unlimited Bandwidth