

Darktrace and Cisco Secure Network Analytics both compete in the network security category. Darktrace appears to have the upper hand due to its advanced AI-driven features and autonomous response capabilities, although both products are highly valued for their contributions to network security.
Features: Darktrace's key features include Antigena for autonomous response, behavioral analytics, and extensive network visibility. Additionally, Darktrace provides real-time monitoring and is adaptable for both cloud and on-premises environments. Cisco Secure Network Analytics is known for its robust network monitoring and analytics capabilities, especially remarkable in the visibility of encrypted traffic and Layer 7 visibility. It integrates well with Cisco’s ecosystem, offering thorough threat detection.
Room for Improvement: Darktrace users recommend improvements in managing false positives, enhancing report visualization, and expanding endpoint protection, especially for remote work scenarios. They also suggest simplified integration and a more flexible pricing model. Cisco Secure Network Analytics users desire better integration with Cisco and third-party systems, a more intuitive user interface, and more affordable licensing options, alongside further dashboard customization and enhanced AI capabilities.
Ease of Deployment and Customer Service: Darktrace supports multiple deployment options, with generally responsive technical support, especially for complex setups. Customers express satisfaction with their support. Cisco Secure Network Analytics is primarily focused on on-premises deployment, deeply integrated into Cisco's ecosystem. Its technical support is highly regarded for its responsiveness and effectiveness, supported by Cisco’s robust customer service.
Pricing and ROI: Darktrace is considered expensive, but users acknowledge a significant ROI due to its threat prevention and security enhancement features. Cisco Secure Network Analytics is also priced on the higher end, primarily due to its flow rate-based licensing and integration costs. Both products command a premium price but are justified by their advanced security functionalities and the outcomes they deliver.
With Cisco Secure Network Analytics implemented, we have achieved collaboration as an IT support team where we reached out to network-related members to understand how they work on Cisco Secure Network Analytics-related issues.
Other NDR solutions provide virtual appliances that can be deployed on virtualization servers to get up and running quickly.
Using this solution provides financial benefits by securing from server attacks, which offers indirect savings.
There is a lack of adequate local support from the Indian side.
For technical support of Cisco, the support they provide depends on how the client procures it, and so far, it's understandable.
The technical support from Darktrace is of high quality.
Darktrace provides excellent technical support with a monthly meeting to review platform incidents, ensuring the system functions as expected.
The challenge lies in waiting for a response after logging a ticket.
The scope of the load balancing work was a team effort where we used three tools for load balancing.
Darktrace has high scalability, and I would rate it a nine out of ten.
Since it's cloud-based, it expands easily.
There is still a gap in terms of storage, and we are trying to figure out how to increase that capacity for regulated environments, which require data retention for 5 to 6 years.
Cisco products are incredibly stable, boasting a 200% stability.
Once resolved, the system works well, and overall I think it's good.
The stability of Darktrace is excellent, rated ten out of ten.
The appliance itself has never let me down.
For stability, I would rate Darktrace an eight out of ten.
The solution should have the ability to analyze security events not only at the network layer but also at the application and OS layers.
Proper management of the database is also important; it should be centralized for easier data collection from a single database.
Advanced reporting and scheduled compliance reports look very attractive for audit and compliance teams at implementation time and can generate structured reports for visibility, risk posture, and traffic summaries.
There is no dedicated salesperson in Egypt, and having one would help to improve focus on this market.
They say they can integrate with most firewalls, but when we did an integration with Meraki MX firewalls, that integration didn't work and still doesn't work to this day.
We need Darktrace on each branch to get the data out, and I suggest having some kind of a centralized product that gets data from multiple sources to aggregate and provide the data.
Cisco solutions are considered to be very expensive.
Regarding cost, for the Bangladesh context, Cisco Secure Network Analytics is a little bit high-priced because we are a developing country, making it tough to manage affordable solutions.
The product is considered expensive compared to others.
The pricing is costly in USD, and they charge based on device counts.
The licensing cost is approximately eight dollars a year.
Cisco Secure Network Analytics filled the gap between the monitoring and management side, allowing us to check end user activity clearly from the Cisco Secure Network Analytics console.
The most valuable features include encrypted traffic analytics and the ability to fulfill requirements at the network level.
Every solution is gradually integrated with AI, and Cisco has already implemented AI building features in their solution.
It is capable of responding to lateral movement and ransomware deployment within environments where there is data exfiltration.
I do not need to manually process incidents as Darktrace provides an incident summary, potential detection paths, and other details, all exportable with just a click.
If I am in a data center where I don't have layer two, it becomes an issue because the autonomous response is reliant on sending spoofed TCP resets to my core switch to block traffic, which is a major issue.
| Product | Mindshare (%) |
|---|---|
| Darktrace | 14.3% |
| Cisco Secure Network Analytics | 5.8% |
| Other | 79.9% |

| Company Size | Count |
|---|---|
| Small Business | 13 |
| Midsize Enterprise | 7 |
| Large Enterprise | 52 |
| Company Size | Count |
|---|---|
| Small Business | 44 |
| Midsize Enterprise | 20 |
| Large Enterprise | 29 |
Cisco Secure Network Analytics enhances network security through integrated threat detection and detailed traffic visibility, optimizing performance with AI analytics and strong platform integrations.
Cisco Secure Network Analytics offers deep visibility into network traffic, with tools like network maps and server response times. Its AI-driven analytics help detect threats, focusing on east-west traffic. Integration with platforms such as pxGrid and ISE complements its capabilities. Reporting and telemetry help in identifying bandwidth issues, yet improvements are desired in AI for better data organization. Installation complexity and false positives present challenges, and managing network loads effectively is a recognized need.
What are the key features of Cisco Secure Network Analytics?Industries such as banking, defense, and police rely on Cisco Secure Network Analytics for securing networks against threats. Its capability to provide insights into encrypted traffic and facilitate device auditing makes it a sought-after choice for those requiring extensive network visibility. Users appreciate its application for threat prevention and response in demanding sectors.
Darktrace revolutionizes network security with AI-driven alerts, anomaly detection, and robust visibility across networks. It autonomously detects threats, minimizing the need for human oversight, and offers efficient IP identification with minimal false positives.
Darktrace uses advanced AI analytics to enhance network protection. Its powerful real-time threat response capabilities and self-learning enable thorough monitoring and insightful analysis of network activities. While providing scalable and reliable security, users seek improvements in false positive reduction, user-friendly interfaces, and pricing. Enhanced third-party integration, more effective dashboards, and centralized automation features remain top priorities. Users benefit greatly from its Antigena feature, offering automated responses like blocking suspicious connections for robust network defense.
What Are Darktrace's Key Features?In industries employing Darktrace, it is pivotal in securing LAN networks, analyzing behavioral patterns, and detecting internal and external threats. Adoption alongside platforms like F5 and SAP enhances incident response, traffic analysis, and threat identification, utilizing Antigena for proactive security measures.
We monitor all Network Detection and Response (NDR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.