SentinelOne is one of the few XDR vendors that publishes a per-endpoint list price. Singularity Complete lists at $179.99 per endpoint per year and Singularity Commercial at $229.99, both quoted for 5 to 100 workstations; Singularity Enterprise is call-for-pricing. The figures below are SentinelOne’s own published rates. Two things change how you read them: extended detection and response starts at Complete, so pricing a lower endpoint-only package as if it were XDR understates the real cost, and every purchase runs through an authorised partner whose pricing controls where it differs from list.
The Singularity packages
| Package | Per endpoint / year | What it is |
|---|---|---|
| Complete | $179.99 | The XDR floor: endpoint and cloud workload protection, extended detection and response, AI Security Assistant, 14-day retention. |
| Commercial | $229.99 | Everything in Complete plus identity threat detection and response, 90-day retention, managed threat hunting. |
| Enterprise | Call for pricing | Everything in Commercial plus the Agentic AI SOC Analyst, full visibility and forensics, guided onboarding and training. |
Source: SentinelOne published platform pricing, checked September 2026. Prices are in US dollars and are quoted by SentinelOne for 5 to 100 workstations. SentinelOne sells through authorised partners and states that partner pricing controls where it differs from the published rate. Extended retention via Singularity Data Lake is a separate line. See /sources.
Four worked cost scenarios
Both columns apply SentinelOne’s published list rates straight through: Singularity Complete at $179.99 per endpoint per year and Singularity Commercial at $229.99. They exclude extended Data Lake retention and onboarding. SentinelOne quotes those rates for 5 to 100 workstations and transacts through partners, so the larger rows are a list-price ceiling rather than a forecast of what you will sign.
| Environment | Endpoints | Complete / year | Commercial / year |
|---|---|---|---|
| Small business | 250 | $44,998 | $57,498 |
| Mid-market | 1,500 | $269,985 | $344,985 |
| Lower enterprise | 5,000 | $899,950 | $1,149,950 |
| Enterprise | 25,000 | $4,499,750 | $5,749,750 |
Arithmetic on the published SentinelOne list rates, checked September 2026. At this scale you buy through a partner, so use these as the number to bid against.
Five optimisations that genuinely cut the SentinelOne bill
- Treat the published rate as the ceiling, not the price. SentinelOne quotes $179.99 and $229.99 for 5 to 100 workstations and states that authorised-partner pricing controls. Anything materially larger should be bid through partners against the list, not accepted at it.
- Check whether you need Commercial or just Complete. The $50 per endpoint per year step to Commercial buys identity threat detection and response, 90-day retention, and managed threat hunting. If you already run an identity-threat tool or your own hunting function, Complete is the honest tier.
- Price the retention window before the endpoint count. Complete packages 14 days of retention and Commercial 90. Where a compliance window is the binding constraint, compare the package step against a Singularity Data Lake extension rather than assuming the add-on is cheaper.
- Bring a live CrowdStrike Falcon bid. Falcon Enterprise publishes at $184.99 per device per year against Complete at $179.99, so the two are close enough at list that the competitive process decides the outcome. Put both quotes on the table.
- Question the identity and cloud modules. Singularity Identity and Cloud add real cost; only add them if you are actually retiring a separate identity-threat or CNAPP tool, otherwise you pay twice.
- You want autonomous, low-tuning endpoint response and strong rollback.
- You have a mixed OS estate including significant Linux and macOS.
- You want to grow into identity and cloud modules on one platform later.
- You are price-shopping against CrowdStrike and want negotiation leverage.
- You only need EDR; a cheaper endpoint-only product beats paying the Complete rate.
- You are deeply Microsoft-stack with Defender XDR already funded via E5.
- You need long compliance retention and cannot absorb the Data Lake line.
- You want bundled managed response in the licence rather than a separate MDR.