SentinelOne AI Vendor Risk Profile

Autonomous cybersecurity platform combining proprietary behavioral AI models with Purple AI, a generative assistant for threat hunting and SOC analysts. Publicly traded.

Visit SentinelOne website

HQ: United States · Hybrid

Risk overview

Risk score: 23/100

Risk tier: Moderate

Safety rating: 77/100 (higher is better)

Lower risk scores indicate lower assessed risk.

Last verified: Apr 19, 2026 (106 days ago) Aging · 7 cited sources

Risk dimensions

DimensionRisk score
Data Handling28/100
IP Exposure16/100
Jurisdiction13/100
Security30/100
Regulatory Compliance25/100
Transparency35/100
Business Stability15/100
Dependency Chain23/100
Agent GovernanceNot assessed

Analyst summary

Rating: Recommended

SentinelOne (NYSE: S) is an AI-native endpoint and cloud security platform with SOC 2 Type II, ISO 27001/27701, FedRAMP Moderate, HIPAA BAA, and growing federal footprint. Strong alternative to CrowdStrike for AI-driven cybersecurity.

Bottom line: Recommended for AI-native cybersecurity; strong alternative to incumbent EDR vendors.

Strengths

Concerns

Best for

Avoid if

Citations

  1. Data Handling — Hipaa Baa Available (primary · high confidence)
    https://www.sentinelone.com/legal/trust/
    Verified 2026-04-19
    SentinelOne offers HIPAA Business Associate Agreements for Singularity platform customers processing PHI.
  2. Data Handling — Trains On User Data (primary · high confidence)
    https://www.sentinelone.com/legal/trust/
    Verified 2026-04-19
    SentinelOne uses aggregated, de-identified telemetry to improve threat detection models; customer endpoint data is processed under strict privacy controls with opt-out available.
  3. Governance — Financial Stability (primary · high confidence)
    https://investors.sentinelone.com/
    Verified 2026-04-19
    SentinelOne reported $821 million in fiscal 2024 revenue with improving operating margins and a clear path to positive free cash flow.
  4. Governance — Government Contracts (primary · high confidence)
    https://www.sentinelone.com/federal/
    Verified 2026-04-19
    SentinelOne is an approved DoD CVR (Commercial Virtual Remote) and federal-sector cybersecurity provider with IL4-authorized deployment options.
  5. Jurisdiction Profiles — Incorporation Country (primary · high confidence)
    https://www.sentinelone.com/company/
    Verified 2026-04-19
    SentinelOne, Inc. is a Delaware corporation headquartered in Mountain View, California, publicly traded on NYSE under ticker S.
  6. Security Compliance — Fedramp Authorized (primary · high confidence)
    https://marketplace.fedramp.gov/products/F1712193519
    Verified 2026-04-19
    SentinelOne's Singularity Cloud and Vigilance MDR are FedRAMP Moderate authorized for US federal agency use.
  7. Security Compliance — Soc2 Type2 (primary · high confidence)
    https://www.sentinelone.com/legal/trust/
    Verified 2026-04-19
    SentinelOne maintains SOC 2 Type II, ISO 27001, and ISO 27701 certifications across the Singularity platform.