FedRAMP Authorized — Moderate Impact

SentinelOne Singularity Government by SentinelOne. 6 compliance features verified.

Security

SentinelOne Singularity Government

by SentinelOne

Moderate ImpactAuthorized

Impact Level

Moderate

Status

Authorized

Pricing

mid market

Authorization Date: September 20, 2022 | Sponsoring Agency: GSA

Overview

SentinelOne Singularity Government provides FedRAMP Moderate authorized AI-powered endpoint protection, detection, and response. It offers autonomous threat prevention with real-time remediation capabilities. The platform combines EPP, EDR, and XDR in a single agent with minimal performance impact.

Key Features

FedRAMP Moderate baseline controls
Autonomous AI threat prevention
Storyline attack visualization
Automated remediation and rollback
Ranger network discovery
Identity threat detection

Certifications & Authorizations

FedRAMP Moderate (3PAO assessed and ATO granted)DoD SRG IL2 approved for CUI processingDoD SRG IL4 approved for controlled unclassified informationSOC 2 Type II (Security, Availability, Confidentiality)ISO 27001:2013 Information Security ManagementFIPS 140-2 Level 1 validated cryptographic modulesCommon Criteria EAL2+ for endpoint protection productsNIST Cybersecurity Framework v1.1 compliant

Deployment Options

AWS GovCloud (US-West) — IL2/IL4 dedicated tenant environment
AWS GovCloud (US-East) — IL2/IL4 dedicated tenant environment
Microsoft Azure Government — IL2/IL4 with dedicated compute instances
SentinelOne Government Cloud — FedRAMP Moderate boundary on AWS GovCloud
Hybrid deployment — Government cloud management console with on-premises data retention
Air-gapped deployment — Disconnected operation for classified environments up to IL5

NIST 800-171 Compliance Coverage

88% of controls covered

How to Procure SentinelOne Singularity Government for Defense Contracts

SentinelOne Singularity Government is available through GSA MAS Contract 47QSWA19D0006 and SEWP V under GWAC vehicles. Government pricing includes volume discounts starting at 25% off commercial rates for orders exceeding 1,000 endpoints. The authorization boundary encompasses the SentinelOne management console, threat intelligence feeds, and endpoint agents within the government tenant. Contracting officers must approve the System Security Plan (SSP) addendum detailing the government-specific configuration, data handling procedures, and personnel security clearance requirements for SentinelOne support staff. The procurement timeline typically spans 90-120 days including technical evaluation, security assessment review, and ATO approval from your authorizing official. For CMMC assessments, include all endpoints running SentinelOne agents within your assessment boundary and document how the solution addresses AC (Access Control), AU (Audit and Accountability), and SC (System and Communications Protection) control families. Ensure your CMMC scope includes the data flows between endpoints and the government cloud console. Request the FedRAMP authorization letter and continuous monitoring reports as part of your technical proposal evaluation. Government customers receive dedicated support channels with cleared personnel and guaranteed response times of 2 hours for critical security incidents.

Compliance Cross-References

SentinelOne Singularity Government directly supports DFARS 252.204-7012 compliance through automated CUI identification, marking, and protection on endpoints processing controlled information. For DFARS 252.239-7010 cloud computing requirements, the FedRAMP Moderate authorization provides the required security controls and government oversight of cloud service providers. The solution maps to critical NIST 800-171 control families including AC.3.001-020 (access control enforcement), SC.3.177-191 (system and communications protection with encryption), and AU.3.046-059 (comprehensive audit logging and monitoring). For CMMC Level 2 compliance, SentinelOne addresses the Access Control (AC), Audit and Accountability (AU), Incident Response (IR), and System and Communications Protection (SC) domains through real-time endpoint monitoring, automated threat response, and detailed forensic capabilities. The DoD Cloud Computing SRG IL2 and IL4 authorizations ensure the platform meets requirements for processing CUI in cloud environments, including data encryption at rest and in transit, multi-factor authentication, and continuous monitoring capabilities required under the DoD's cloud security model.

Defense Contractor Use Case

Defense contractors deploy SentinelOne Government for endpoint protection when they need AI-powered autonomous threat response and want an alternative to traditional antivirus with FedRAMP authorization.

Frequently Asked Questions

What is the FedRAMP authorization level for SentinelOne Singularity Government?

SentinelOne Singularity Government is authorized at the FedRAMP Moderate impact level, with authorization granted on 2022-09-20 sponsored by GSA. The FedRAMP Moderate baseline includes approximately 325 security controls covering confidentiality, integrity, and availability.

Can defense contractors use SentinelOne Singularity Government for CUI?

SentinelOne Singularity Government is authorized at the FedRAMP Moderate baseline. While FedRAMP Moderate covers a broad range of government data, defense contractors handling CUI should carefully evaluate whether Moderate controls meet their specific DFARS 252.204-7012 and NIST 800-171 requirements. Some CUI categories may require FedRAMP High authorization depending on the sensitivity of the data and contract requirements.

How does SentinelOne Singularity Government pricing compare to commercial?

SentinelOne Singularity Government government pricing is generally competitive with commercial pricing, though the government edition may carry a premium of 10-20% to cover FedRAMP compliance and dedicated infrastructure costs. Mid-market organizations can often access government pricing through GSA Schedule contracts or reseller partners. Contact SentinelOne for a quote tailored to your organization size and requirements.

Browse All FedRAMP Authorized Tools

Search and filter 80+ FedRAMP authorized products for your defense contracting needs.

Open FedRAMP Finder

Get a defensible CUI architecture

This SentinelOne Singularity Government FedRAMP profile flags the gaps. The next step is a compliance architecture review where we map your data flows to FedRAMP-authorized alternatives and CMMC-aligned controls.

Schedule architecture review

Related: how much CMMC certification costs — DoD’s own priced figures