SentinelOne, the AI-native cybersecurity leader, and Cloudflare, the leading connectivity cloud company, are expanding their partnership to give joint customers AI-driven insights in an intuitive, unified experience. The combination of Cloudflare's global infrastructure network and SentinelOne's Singularity™ AI SIEM will strengthen real-time threat detection and response for enterprises of all sizes through a new integration that automatically applies AI-driven correlation from Cloudflare Logpush telemetry and SentinelOne's native signals across endpoint, cloud, identity, and AI.
SentinelOne and Cloudflare are expanding their partnership to integrate Cloudflare Logpush telemetry with SentinelOne's Singularity AI SIEM.
The integration brings Cloudflare's Zero Trust and edge network telemetry data—including Gateway, Access, and WAF logs—directly into SentinelOne's platform.
Customers can configure Singularity Platform in a few clicks as the native Logpush destination within the Cloudflare Dashboard.
The unified approach enables security teams to automate correlation and response across edge and enterprise environments.
SentinelOne's AI SIEM applies intelligence directly to streaming telemetry, identifying and filtering risk earlier in the attack lifecycle.
The expanded partnership aims to reduce manual effort and help analysts focus on the threats that matter most.
Security data is exploding and attack surfaces are expanding. To keep up, organizations are fundamentally rethinking autonomous threat detection. Security teams are moving beyond disjointed point products and siloed signals toward integrated platforms that correlate data across edge, endpoint, cloud, identity, and more. This unified approach reduces complexity and improves outcomes, freeing security analysts to focus on the threats that actually matter.
"Our expanded partnership with Cloudflare shows what's possible when two innovators come together with a common purpose," said Melissa K. Smith, SVP, Global Strategic Partnerships & Initiatives, SentinelOne. "By unifying Cloudflare's global network telemetry and AI-driven insights with the intelligence of our AI SIEM, we are enabling security teams to automate correlation and response across edge and enterprise, reducing manual effort and helping analysts focus on the threats that matter most. Together, we are delivering protection that is stronger, easier to operate and designed to scale with the needs of modern security teams."
The new integration brings Cloudflare's Zero Trust and edge network telemetry data—including Gateway, Access, and WAF logs—directly into SentinelOne's Singularity Platform. For joint customers, this creates a single, unified command center for better visibility, context, threat investigation, and response for modern threats and sophisticated adversarial techniques. Customers can configure Singularity Platform in just a few clicks to become the native Logpush destination within the Cloudflare Dashboard, delivering immediate time-to-value.
"Expanding our partnership with key technology alliance partners like SentinelOne is core to how we are further interconnecting our global infrastructure network to secure even more customers," said Tom Evans, Chief Partner Officer at Cloudflare. "Organizations worldwide are facing a growing number of threat signals, and now with Cloudflare and SentinelOne's intelligence, they can automate that action and analysis from a single platform. We want to make sure that organizations can clearly see the AI-driven correlations and enforce proper protections to improve their security posture."
SentinelOne's Singularity AI SIEM provides security teams with the essential technology that drives the vision for an Autonomous SOC, built to operate on live data, not static logs. With a built-in data pipeline, AI SIEM applies intelligence directly to streaming telemetry, identifying and filtering risk earlier in the attack lifecycle to reduce noise and enable faster, more efficient detection.
By fusing real-time telemetry with Agentic AI and Hyperautomation, Singularity AI SIEM automates investigation and remediation end-to-end, removing manual steps between detection and action. The result is a SOC that moves from reactive alert handling to proactive automated response, enabling analysts of any skill level to investigate and neutralize threats with speed and confidence.
About SentinelOne
SentinelOne is a leading AI-powered cybersecurity platform. Built on the first unified Data Lake, SentinelOne empowers the world to run securely by creating intelligent, data-driven systems that think for themselves, stay ahead of complexity and risk, and evolve on their own. Leading organizations—including Fortune 500 and Global 2000 companies, as well as prominent governments— trust SentinelOne to Secure Tomorrow™.