SentinelOne Unveils Future of Autonomous Security

Tomer Weingarten, CEO, SentinelOne

At RSA 2024, SentinelOne introduced new features in its Singularity Platform to democratize advanced cybersecurity operations. These capabilities aim to make top-tier Security Operations Centers (SOC) accessible to companies of all sizes.

“Imagine a future where security solutions not only help enterprises respond to threats, but anticipate and mitigate them before they lead to a security incident. This is the future we are creating at SentinelOne,” said Tomer Weingarten, CEO of SentinelOne.”

 

SentinelOne is democratizing cybersecurity through AI and automation, enabling every enterprise to operate at the same scale, speed and sophistication, regardless of budgets and resources. When combined with the visibility of the Singularity Platform and the breadth and scale of the Singularity Data Lake, Purple AI provides an always-on, expert analyst to augment the skills of any security team and supercharge their capabilities.

“It’s no secret that security teams are overwhelmed with data, alerts and labor-intensive triage,” said Ric Smith, Chief Product and Technology Officer, SentinelOne. “Purple AI doesn’t just do what you ask it to, it does what you need it to.”

Ric Smith, Chief Product and Technology Officer, SentinelOne

Beyond a chatbot or virtual assistant, Purple AI is an advanced AI security solution that not only creates complex data queries from natural language, but anticipates what security analysts need to do and recommends next steps. Key features demonstrated and in use today include:

  • AI-powered anomaly detection: Purple AI surfaces correlated risks from integrated log sources.
  • Automated alert triage: The technology analyzes trillions of anonymized data signals at a global scale to evaluate how security analysts assess and respond to similar alerts and provides automated verdicts and recommended actions.
  • AI-powered response recommendations and hyper automation rules:  Using global similarity analyses, Purple AI provides intelligent response recommendations based on how others have responded to similar alerts and smart recommendations to turn those actions into hyper automation rules to put response actions in autonomous mode.
  • 24/7 Auto-investigations: Through zero-touch auto-investigation capabilities, Purple AI eliminates the need for human-driven investigations and empowers security teams to focus on validating and mitigating threats at scale.

All current and future Purple AI capabilities are deeply embedded across the Singularity Platform and accessible via a new unified security console, the Singularity Operations Center.

Now generally available, the Operations Center consolidates security management with unified alerts, inventory management, correlation engine, and a contextualized Singularity Graph to accelerate detection, triage, and investigation.