SentinelOne and Cloudflare Expand Partnership to Deliver Real-Time Threat Detection and Automated Response for Enterprises

SentinelOne’s Singularity AI SIEM integrates Cloudflare Logpush telemetry to strengthen enterprise security posture

Dubai, United Arab Emirates — March 17, 2026 — SentinelOne, the AI-native cybersecurity leader, and Cloudflare Inc., the connectivity cloud company, have expanded their partnership to provide joint customers with AI-driven insights through a unified security experience. By combining Cloudflare’s global infrastructure network with SentinelOne’s Singularity AI SIEM, the collaboration aims to enhance real-time threat detection and automated response capabilities for enterprises of all sizes.

Through the new integration, joint customers can automatically apply AI-driven correlation using Cloudflare Logpush telemetry together with SentinelOne’s native signals across endpoint, cloud, identity and AI environments. This allows security teams to automate threat detection, investigation and response as threats move from the internet edge into enterprise environments.

Security data volumes continue to rise while attack surfaces expand, prompting organisations to rethink how they approach autonomous threat detection. Many security teams are shifting away from isolated tools and fragmented signals, instead adopting integrated platforms that correlate data across edge networks, endpoints, cloud infrastructure and identity systems. This unified approach reduces operational complexity, improves detection outcomes and enables analysts to focus on the threats that matter most.

The new integration brings Cloudflare’s Zero Trust and edge network telemetry data—including Gateway, Access and WAF logs—directly into SentinelOne’s Singularity Platform. For joint customers, this creates a unified command centre that enhances visibility, context, threat investigation and response to sophisticated adversarial techniques. Customers can configure the Singularity Platform in just a few clicks to serve as the native Logpush destination within the Cloudflare Dashboard, enabling rapid deployment and immediate operational value.

Melissa K. Smith, SVP of Global Strategic Partnerships and Initiatives at SentinelOne, said the expanded collaboration demonstrates the potential of combining complementary security technologies. She noted that integrating Cloudflare’s global network telemetry and AI-driven insights with SentinelOne’s AI SIEM enables security teams to automate correlation and response across edge and enterprise environments while reducing manual effort.

Tom Evans, Chief Partner Officer at Cloudflare, said partnerships with technology alliance partners such as SentinelOne are central to connecting Cloudflare’s global infrastructure network to protect more organisations. He noted that organisations face a growing volume of threat signals, and combining the intelligence of Cloudflare and SentinelOne enables automated analysis and response from a single platform, helping improve overall security posture.

SentinelOne’s Singularity AI SIEM is designed to support the development of an Autonomous Security Operations Center (SOC). The platform operates on live streaming data rather than static logs, applying intelligence directly to telemetry pipelines to identify risks earlier in the attack lifecycle and reduce alert noise.

By combining real-time telemetry with agentic AI and hyperautomation capabilities, the platform automates investigation and remediation processes end-to-end. This approach reduces manual intervention between detection and response, enabling SOC teams to move from reactive alert management toward proactive automated threat response. As a result, security analysts of varying experience levels can investigate and neutralise threats more quickly and effectively.

About SentinelOne

SentinelOne is an AI-powered cybersecurity platform designed to help organisations operate securely through intelligent, data-driven systems. Built on a unified data lake architecture, the platform enables automated security operations that adapt to evolving threats and operational complexity. SentinelOne is trusted by Fortune 500 and Global 2000 companies, as well as governments worldwide, to strengthen cybersecurity resilience. Learn more at sentinelone.com.