Try our new research platform with insights from 80,000+ expert users

Claroty Platform vs Darktrace vs Fortra's Tripwire Enterprise comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Mindshare comparison

Cyber-Physical Systems Protection Market Share Distribution
ProductMarket Share (%)
Claroty Platform43.3%
Armis34.1%
Verve Security Center13.5%
Other9.099999999999994%
Cyber-Physical Systems Protection
Network Detection and Response (NDR) Market Share Distribution
ProductMarket Share (%)
Darktrace22.3%
Vectra AI15.6%
ExtraHop Reveal(x)8.2%
Other53.900000000000006%
Network Detection and Response (NDR)
Intrusion Detection and Prevention Software (IDPS) Market Share Distribution
ProductMarket Share (%)
Fortra's Tripwire Enterprise1.3%
Fortinet FortiGate16.6%
Darktrace13.8%
Other68.3%
Intrusion Detection and Prevention Software (IDPS)
 

Featured Reviews

Deevanshi Priya - PeerSpot reviewer
Achieve certifications with progress tracking and potential for enhanced interactivity
I was using Claroty to complete training assigned by my company. The courses were self-paced and helped me get certified in two additional certifications. I plan to use it further as I have a task list for future courses. It was primarily for certification and study materials The feature I like…
Malebo Lethoba Group - PeerSpot reviewer
Have found the AI analyst and detection functions highly valuable for network operations while managing complexity in initial setup
The functions I find most valuable in Darktrace are the AI analyst as well as the detection.The autonomous response capabilities of Darktrace are not crucial for me because it doesn't work in a network where there are no core switches. In a modern network, the autonomous response doesn't work, especially when sitting in a shared data center.If I'm running a traditional network where I am not in a shared data center with a layer two dedicated for my resources, then it can work for me. However, if I am in a data center where I don't have layer two, it becomes an issue because the autonomous response is reliant on sending spoofed TCP resets to my core switch to block traffic, which is a major issue.
reviewer2093205 - PeerSpot reviewer
It has excellent scalability and allows you to execute custom COCR rules, letting you fine-tune agent monitoring
I'm using Tripwire Enterprise version 9.0. In my company, thirty to forty people use Tripwire Enterprise, mainly different types of engineers, governance, risk, compliance, and cybersecurity personnel. I advise people planning to use Tripwire Enterprise to take the training because the solution has a fairly complex interface. You can do a lot of work with it, but it isn't very easy. Tripwire Enterprise is a sophisticated tool. I rate the tool an eight on a scale of one to ten because it does an excellent job of handling the unique challenges of maintaining NERC CIP compliance and monitoring industrial controls.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The tool's best feature was the UI and the simplicity it offers."
"The solution offers comprehensive tools that greatly enhance your IT operations if implemented correctly."
"The product helps mitigate potential threats, especially if its users have signature rules. The product also provides alerts."
"I have had a very good experience with the Claroty Platform."
"I appreciate the active coding, deep inspection of packages, and data retrieval. The tool covers information about assets and attack vectors, which I find superior to other tools. Based on alerts, I create reports detailing how an attacker can penetrate the plant, both externally and internally."
"The main advantage of Claroty, when compared to its competitors, is integrated secure remote access."
"Claroty identifies all vulnerabilities available in our environment."
"The solution's asset management is really great compared to Dragos or Nozomi."
"I like the Antigena feature in Darktrace, as it offers immediate response and is helpful."
"The most valuable feature is the alerts. The alerts are meaningful. The event rolls up into meaningful and actionable alerts rather than just being noise."
"Darktrace is very flexible."
"The product offers us a very good user interface and we've found the network visibility to be very good so far."
"AI analytics are built directly into the product."
"I find the complete portfolio to be excellent."
"A very useful feature in Darktrace for real-time threat analysis is the packet inspection that analyzes the packet traffic in real time."
"The most valuable feature of Darktrace is its ability to detect and counter threats before they occur."
"Even if you change a single word in Notepad, it will let you know whether it was added, removed, or modified."
"Its reporting features are great. It gives you an in-depth report. Its customization is also great, and it is working fine."
"The product supports different platforms."
"File monitoring is the most valuable feature of the solution."
"What's most valuable in Tripwire Enterprise is the ability to execute custom COCR rules that lets me fine-tune how I monitor Linux and Windows agents."
"The most valuable feature is integrity management. I had some discussions with service providers, and they also agreed."
"The most valuable feature is the integrity."
"We use Tripwire Enterprise as a tool to test the vulnerability of a network. That is the most valuable feature of the product for us."
 

Cons

"The Claroty Platform becomes too noisy when it gives numerous CVEs related to vendor match. Sometimes, these CVEs are not actually related to the device in the firmware at the site."
"There is room for improvement in the user interface to make it more vibrant and interactive, similar to IT tools."
"Claroty Platform only gives the vulnerabilities based on the make and model of the devices, so it doesn't provide any resolution or any detailed explanation of how one can resolve such issues."
"I've reported four bugs and three feature requests so far. The main area of focus should be on how attacks are detected. The attack vector information needs to be more detailed. For example, it's not enough to state that an SMB v1 version open can lead to a WannaCry attack. A more detailed explanation should help clients understand the various ways an attack could occur."
"Claroty Platform could improve the pricing to get more acceptability in the market."
"There are a few protocols that Claroty doesn't currently support."
"For improvement, I think the training could be more practical. We have external training, but they're mostly theoretical. I want the solution to provide hands-on lab experience to help users learn better."
"If more AI features could be included with the Clarity solution, it would be feasible for everybody."
"Pricing bothers me and this is one of the major factors when choosing a solution."
"It is expensive, but everything else has been great so far."
"The interface is too mathematical and it should be simplified."
"I think there is some MSSP missing."
"It's quite expensive to have."
"Needs to improve its collaboration with local partners."
"I did not use the AI features because they should make it more user-friendly which would be a benefit. Additionally, the solution could integrate with more SIEM or SOAR tools."
"The product doesn't have an endpoint agent that can react to triggers set on the device,"
"The initial setup is complex."
"It needs more local support from the OEM side. It would be great if this can be improved."
"An area for improvement in Tripwire Enterprise is stability, as my company had stability issues with the last few versions of the solution. Tripwire Enterprise has been a bit buggy."
"Cloud monitoring could be better. It would also be better if the company followed a pay-as-you-use model."
"The deployment with certain systems can be difficult and it needs to be simplified."
"The main way that it can be improved is through better reporting."
"A lot of network devices need a custom integration."
"The Windows online integration license needs to be improved."
 

Pricing and Cost Advice

"The licensing for physical devices is cheap, but the software version is expensive. The software version costs around 26-28 dollars. I was surprised and even double-checked. It was shocking."
"It's a bit expensive compared to other solutions."
"The tool is quite expensive."
"Darktrace is quite an expensive solution."
"The cost of the solution is expensive for smaller businesses. They will not be able to afford it or might not need this type of security solution."
"The pricing is very flexible for Darktrace. Sometimes, a customer does not have the appropriate budget, but Darktrace can handle that. They offer monthly payments, so the customer can acquire the solution very easily."
"The pricing is a little high compared to the competition."
"The pricing is expensive. It costs over $100,000 a year."
"The solution is about $6,000 per quarter."
"There is an annual license to use Darktrace."
"Darktrace is pricey, but the price is reasonable for what the solution does, and it's comparable to other products."
"The licensing depends on the equipment, how many devices and the types of devices."
"Cloud monitoring could be better. It could also be cheaper. It would be better if the company followed a pay-as-you-use model."
"Tripwire is more expensive than Netwrix."
report
Use our free recommendation engine to learn which Cyber-Physical Systems Protection solutions are best for your needs.
870,623 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
15%
Computer Software Company
11%
Energy/Utilities Company
9%
Financial Services Firm
5%
Computer Software Company
12%
Manufacturing Company
9%
Financial Services Firm
8%
Comms Service Provider
7%
University
11%
Manufacturing Company
10%
Government
7%
Non Profit
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise1
Large Enterprise11
By reviewers
Company SizeCount
Small Business44
Midsize Enterprise19
Large Enterprise29
By reviewers
Company SizeCount
Small Business5
Large Enterprise3
 

Questions from the Community

What do you like most about Claroty Platform?
The product helps mitigate potential threats, especially if its users have signature rules. The product also provides...
What needs improvement with Claroty Platform?
Regarding the cons of the Claroty Platform, it is not about the deployment, but rather the identification. The Clarot...
What is your primary use case for Claroty Platform?
My clients are using the Claroty Platform for asset identification, finding CVEs and threat intel. I am aware of the ...
How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing u...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is ...
What do you like most about Darktrace?
A very useful feature in Darktrace for real-time threat analysis is the packet inspection that analyzes the packet tr...
What do you like most about Tripwire Enterprise?
The product supports different platforms.
What needs improvement with Tripwire Enterprise?
The solution has some limitations in OT, IoT, and AIX. The product must provide whitelisting services.
 

Overview

 

Sample Customers

Rockwell Automation
Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
1. Aetna 2. Adobe 3. ADP 4. Airbus 5. Amazon 6. American Express 7. Aon 8. ATT 9. Bank of America 10. Barclays 11. Baxter International 12. Bechtel 13. Boeing 14. Cisco Systems 15. CocaCola 16. Comcast 17. Dell 18. ETRADE 19. ExxonMobil 20. Ford Motor Company 21. General Electric 22. General Motors 23. Google 24. JPMorgan Chase 25. Kraft Foods 26. Lockheed Martin 27. McDonald's 28. Merck 29. Microsoft 30. Morgan Stanley 31. Nike 32. Oracle