No more typing reviews! Try our Samantha, our new voice AI agent.

Binary Defense MDR vs Darktrace comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Binary Defense MDR
Average Rating
9.2
Reviews Sentiment
7.7
Number of Reviews
16
Ranking in other categories
Managed Detection and Response (MDR) (17th)
Darktrace
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
85
Ranking in other categories
Email Security (11th), Intrusion Detection and Prevention Software (IDPS) (2nd), Network Traffic Analysis (NTA) (1st), Network Detection and Response (NDR) (1st), Extended Detection and Response (XDR) (6th), Cloud Security Posture Management (CSPM) (10th), Cloud-Native Application Protection Platforms (CNAPP) (10th), Attack Surface Management (ASM) (4th), AI-Powered Cybersecurity Platforms (4th), AI Observability (7th)
 

Mindshare comparison

Binary Defense MDR and Darktrace aren’t in the same category and serve different purposes. Binary Defense MDR is designed for Managed Detection and Response (MDR) and holds a mindshare of 1.4%, up 0.6% compared to last year.
Darktrace, on the other hand, focuses on Network Detection and Response (NDR), holds 13.2% mindshare, down 22.3% since last year.
Managed Detection and Response (MDR) Mindshare Distribution
ProductMindshare (%)
Binary Defense MDR1.4%
SentinelOne Wayfinder Threat Detection and Response6.3%
CrowdStrike Falcon Complete MDR4.4%
Other87.9%
Managed Detection and Response (MDR)
Network Detection and Response (NDR) Mindshare Distribution
ProductMindshare (%)
Darktrace13.2%
Vectra AI9.1%
Cisco Secure Network Analytics5.4%
Other72.30000000000001%
Network Detection and Response (NDR)
 

Featured Reviews

reviewer2588769 - PeerSpot reviewer
Cybersecurity Architect, Information Technology Division at a healthcare company with 1,001-5,000 employees
Phenomenal response time and good handling of context in our diverse environment
We are going to have a meeting with them the following Monday. It will be our first quarterly business review. Half of it is going to be looking at new products and new functions that they are bringing out. So far, I do not have anything negative or a concern. There were two small mistakes that the technician made, and they were remedied immediately. Once we brought them to their attention, they were remedied. I do not have any complaints. They were just simple mistakes that anybody could make, and their response was a positive response. So far, I have not had anything negative to say. The only area for improvement that I can think of relates to statistical analysis for SLAs. They are in the middle of moving to a new product called D3 which is going to do some backend work for them. I know they are working to improve some of the help desk statistics, such as the time the tickets open and the time they are closed. They are working on that function. It is going to be resolved in the next month or two. We have service level agreements with them, but they can use improved statistics for service level agreements. This is the only point of improvement I can identify.
Pasan Jayarathna - PeerSpot reviewer
Network Security Engineer at Cyberwell Solution
Monitoring has improved data loss detection and now spots abnormal internal file transfers quickly
In my understanding, the best feature Darktrace offers is the identification of copying files, which acts as a DLP, and it is a main concern for companies because users sometimes copy data outside without knowing, especially those without a technical background. When I mention the DLP-like feature and file copying detection, the alerts have been very timely, as we get an alert within a couple of minutes, which is excellent. Even if some developers are working after hours and copying files, our SOC team detects this, and most of the time they call us so we can identify the users. The alerts are quite accurate and proactive.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The case interface is Binary Defense MDR's most valuable feature."
"The best part about Binary Defense MDR is that it runs on everything, and they keep an eye on things 24/7."
"The most valuable features are the SIEM and the ticketing function; the latter is very smooth and easy to read and understand. We don't have any issues looking at the ticketing information when we're trying to identify what's going on."
"Among the valuable features are the agent, continuous reporting, and dashboard. It has all the features we need and we haven't had to customize it, other than turning on certain features that we wanted."
"The most valuable feature is reviewing tickets and the notes added by technicians."
"With Binary Defense, we don't just get an alert, but also a detailed rundown of why they're alerting us on it. They tell us what was executed, or the username, script, or IP. That way, we're not wasting time investigating."
"The biggest aspect for us is that they are able to conform to our environment and utilize our tools. That way, we still maintain ownership of all the data and access to the applications, and we never lose control of the ability to run the solution ourselves if we need to."
"The most valuable part of Binary Defense is its team of cybersecurity analysts. Their analysts filter out the noise and only forward the critical threats that require a response instead of false positives."
"The main valuable feature is that we don't need a lot of analysts. With few analysts, we have all the network monitored, 24/7."
"The Antigena feature is very useful."
"The ability to see what we have not seen before is most valuable. It is very interesting to find out the most vulnerable devices in our network."
"Implementing this solution has given us confidence that we are secure."
"One member of staff is enough for deployment and maintenance because Darkforce is AI-driven. It does a lot of things by itself."
"I find the complete portfolio to be excellent."
"The most valuable features are the AI and advanced learning tools that distinguish it from other products."
"The most valuable feature is the endpoint protection."
 

Cons

"The current reporting system could benefit from improvement."
"I don't find any downside to them, but if I have to put one, it would be consistent manpower or staffing. The only area where the solution can be improved is going to be with people. As they grow, they are struggling with the same thing that every other company is, which is getting talent and getting that talent to stay, but they've just revised their tiering system to go from a flat analyst and manager to a three-tier solution where it goes through two or three before it gets elevated. That seems to have worked out well, so if one level misses it, the next one picks it up, and it works out fine."
"We found a couple of bugs in the user interface."
"The only area for improvement that I can think of relates to statistical analysis for SLAs. They are in the middle of moving to a new product called D3 which is going to do some backend work for them. I know they are working to improve some of the help desk statistics, such as the time the tickets open and the time they are closed."
"The only area I see for improvement with Binary Defense is their service portal. It could benefit from some enhancements."
"Binary Defense MDR could be even better with additional features, like automatic scans and file quarantine."
"We found that an earlier version of the agent had high memory usage and that was a bit concerning, but we raised the concern with their support team and they immediately replied that they had noticed the same thing and had a candidate fix already available... it totally fixed the issue."
"I would like to see more frequent check-ins with our security status."
"It can have more integration with orchestration or event management solutions. They can provide more knowledge or research information for analysts for investigating cases and detecting anomalies in networks."
"Darktrace could expand into EDR (endpoint detection and response) and combine it with its network detection."
"The solution can improve the reporting. Currently, it only runs weekly and the reporting is complex."
"The management user interface needs improvement."
"It's a very complex platform."
"Its threat analyzer could be better. It should also have agents."
"In an upcoming release, there could be more customizable playbooks or a library of playbooks to choose from."
"Block attack capabilities or integration with other SIEM solutions such as IBM QRadar."
 

Pricing and Cost Advice

"The pricing is on target. Working with their sales team on pricing negotiations was a pleasant process. They were very respectful of the constraints we had and I feel that we're paying a fair price."
"Binary Defense has changed its pricing model from being primarily based on the volume of data to one based on escalations and incidents they handle."
"The pricing isn't that bad, it's very competitive. I don't feel that it's over-priced and I don't feel that it's under-priced."
"It's valued at the right price. Even with the number of endpoints we have, we don't feel that it's a lot more than any competitor. In fact, it might be less expensive when you look at the fact that you're getting a full flex SOC out of it along with the tools."
"The solution's price is spot on; if anything, it's slightly below the norm for most services. Compared to building the same team internally, it would cost more to create the same amount of capability than what we get from an external team. Price-wise, Binary Defense is in a great spot."
"It has been good. We have saved money, and we have a better product."
"Binary Defense MDR is priced competitively and may be slightly lower than CrowdStrike."
"The pricing is very good. They are definitely competitive and they were lower at the time that we went with them."
"Darktrace is expensive. You can pay for the license yearly."
"I am using a demo of Darktrace for deployment and testing which is free."
"The cost of the solution is expensive for smaller businesses. They will not be able to afford it or might not need this type of security solution."
"We've budgeted about 50,000 Kuwaiti dinars for the solution. That is a yearly operating cost."
"When it comes to large installations, it can be expensive, but for small accounts it's fine."
"The solution is about $6,000 per quarter."
"I'm unfamiliar with the exact cost, but we have a yearly license and had to pay for Darktrace's services before the deployment. The product is very expensive, so some organizations can't afford to pay the total amount directly, meaning they often seek a partner or pay in installments, which increases the price more."
"Darktrace is pricey, but the price is reasonable for what the solution does, and it's comparable to other products."
report
Use our free recommendation engine to learn which Managed Detection and Response (MDR) solutions are best for your needs.
915,817 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
19%
Insurance Company
11%
Financial Services Firm
8%
Construction Company
6%
Manufacturing Company
10%
Financial Services Firm
9%
Comms Service Provider
8%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business5
Midsize Enterprise4
Large Enterprise7
By reviewers
Company SizeCount
Small Business44
Midsize Enterprise21
Large Enterprise29
 

Questions from the Community

What is your experience regarding pricing and costs for Binary Defense MDR?
It has been good. We have saved money, and we have a better product. We are a company that has become an enterprise from a small medium business in two years. Our company passed a certain dollar ma...
What needs improvement with Binary Defense MDR?
We are going to have a meeting with them the following Monday. It will be our first quarterly business review. Half of it is going to be looking at new products and new functions that they are brin...
What is your primary use case for Binary Defense MDR?
They co-manage our Sentinel SIEM instance, and they provide a Security Operations Center (SOC) with 24/7 coverage. They perform research and remediation. They have a separate team for phishing. Tha...
How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What is your experience regarding pricing and costs for Darktrace?
Concerning pricing for the product, I would say it is somewhat expensive.
 

Also Known As

Binary Defense Vision, Binary Defense Managed Detection and Response, Binary Defense Managed Detection & Response
No data available
 

Overview

 

Sample Customers

Securitas USA, Black Hills Energy, Lincoln Electric,The J.M. Smuckers Company, New York Community Bank, State of Connecticut, NCR
Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
Find out what your peers are saying about Huntress, CrowdStrike, SentinelOne and others in Managed Detection and Response (MDR). Updated: September 2026.
915,817 professionals have used our research since 2012.