No more typing reviews! Try our Samantha, our new voice AI agent.

Darktrace vs Dragos comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Darktrace
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
84
Ranking in other categories
Email Security (10th), Intrusion Detection and Prevention Software (IDPS) (2nd), Network Traffic Analysis (NTA) (1st), Network Detection and Response (NDR) (1st), Extended Detection and Response (XDR) (7th), Cloud Security Posture Management (CSPM) (10th), Cloud-Native Application Protection Platforms (CNAPP) (9th), Attack Surface Management (ASM) (4th), AI-Powered Cybersecurity Platforms (5th), AI Observability (6th)
Dragos
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
3
Ranking in other categories
Operational Technology (OT) Security (6th)
 

Mindshare comparison

While both are Network Security Systems solutions, they serve different purposes. Darktrace is designed for Network Detection and Response (NDR) and holds a mindshare of 14.3%, down 24.1% compared to last year.
Dragos, on the other hand, focuses on Operational Technology (OT) Security, holds 7.9% mindshare, down 11.4% since last year.
Network Detection and Response (NDR) Mindshare Distribution
ProductMindshare (%)
Darktrace14.3%
Vectra AI10.6%
ExtraHop Reveal(x)5.9%
Other69.2%
Network Detection and Response (NDR)
Operational Technology (OT) Security Mindshare Distribution
ProductMindshare (%)
Dragos7.9%
Nozomi Networks15.2%
Claroty Platform14.8%
Other62.099999999999994%
Operational Technology (OT) Security
 

Featured Reviews

Pasan Jayarathna - PeerSpot reviewer
Network Security Engineer at Cyberwell Solution
Monitoring has improved data loss detection and now spots abnormal internal file transfers quickly
In my understanding, the best feature Darktrace offers is the identification of copying files, which acts as a DLP, and it is a main concern for companies because users sometimes copy data outside without knowing, especially those without a technical background. When I mention the DLP-like feature and file copying detection, the alerts have been very timely, as we get an alert within a couple of minutes, which is excellent. Even if some developers are working after hours and copying files, our SOC team detects this, and most of the time they call us so we can identify the users. The alerts are quite accurate and proactive.
Rajesh Podishetty - PeerSpot reviewer
Manager at a tech vendor with 51-200 employees
Risk monitoring has improved and real-time fraud detection provides transparent banking control
Dragos should be improved in deployment complexity as it requires OT engineering coordination. One needs to have proper engineering coordination to understand the system, deploy it, integrate it, and make all the complex things into one system. This is very challenging, and one should be really skillful and have experience to accomplish this. Cost is another area for improvement. The cost is higher due to site-based licensing and expert services. The licensing is very heavy, and expert services are required for deployment. Cost-wise is also challenging and needs to be improved. Integration needs alignment with IT security systems and compliance frameworks. Controlling cybersecurity where any fraudulent person or third party should not access the system is controlled, and managing that level of complexity is quite challenging. Since there is continuous monitoring, it can reduce operational risk losses by 20% to 30% annually. Controlling that huge amount of data and transactions, especially regarding storage, requires a lot of database space. The space-wise storage should be reduced.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I like the Antigena feature in Darktrace, as it offers immediate response and is helpful."
"This is something that is really easy to implement in an organization, gives us good visibility about what is happening in our networks and on the system, and we like the transparency available within our infrastructure now."
"I like the dashboards, which are cool. They are more user-friendly, in my experience. Its learning capabilities are really good."
"You have visibility, and it will find anything that you miss with other solutions."
"The main valuable feature is that we don't need a lot of analysts. With few analysts, we have all the network monitored, 24/7."
"Darktrace is valuable since it offers full packet capture and detailed metadata."
"The most valuable features of Darktrace are its full capabilities, as you have visibility of everything happening on your network, emails, and SaaS applications."
"I am impressed with the product's ability to give insights into network traffic."
"Dragos especially ensures systems recover quickly, providing resilience, and it handles all the operational resilience in banking with metrics of 99.9% uptime, 30 minutes recovery time, and 99% transaction accuracy."
"Dragos' best features are that they are more focused towards Incident Response, so they have a dedicated playbook in their platform, making it easier for anyone investigating any incidents to investigate the alerts."
"Dragos is more expensive than other vendors, probably about fifteen to twenty percent more, but it is generally worth the investment."
 

Cons

"They just need to work on their price."
"The solution could be easier to use."
"The product doesn't have an endpoint agent that can react to triggers set on the device,"
"Darktrace needs to automate the reports of false positives, botnets and everything."
"It can have more integration with orchestration or event management solutions. They can provide more knowledge or research information for analysts for investigating cases and detecting anomalies in networks."
"Block attack capabilities or integration with other SIEM solutions such as IBM QRadar."
"With Darktrace, at the moment, I have to almost put in a date and tell them that I want you to give me data from this date to this date."
"It is expensive, but everything else has been great so far."
"I think Dragos can offer more flexibility similar to Nozomi and more visibility into the assets, nodes, and links, which would make it more competitive in the future."
"Dragos could improve its asset visibility and discovery tools, as the competitor Claroty has better options in this area."
"Dragos should be improved in deployment complexity as it requires OT engineering coordination."
 

Pricing and Cost Advice

"The pricing is quite high, estimated at around $350,000 per year."
"It is pretty expensive, but it is worth it. Its licensing is yearly."
"The cost is moderate."
"The solution is about $6,000 per quarter."
"It's an expensive solution."
"Our customers feel that the price of Darktrace is quite high compared to other solutions."
"Darktrace is pricey, but the price is reasonable for what the solution does, and it's comparable to other products."
"The product is expensive."
Information not available
report
Use our free recommendation engine to learn which Network Detection and Response (NDR) solutions are best for your needs.
900,838 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
10%
Financial Services Firm
9%
Computer Software Company
9%
Government
7%
Energy/Utilities Company
14%
Manufacturing Company
12%
Construction Company
6%
Outsourcing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business44
Midsize Enterprise20
Large Enterprise29
No data available
 

Questions from the Community

How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What is your experience regarding pricing and costs for Darktrace?
Concerning pricing for the product, I would say it is somewhat expensive.
What is your experience regarding pricing and costs for Dragos?
Dragos is more expensive than other vendors, probably about fifteen to twenty percent more, but it is generally worth the investment.
What needs improvement with Dragos?
I think Dragos could be improved, as I have worked in Nozomi and compared it to Nozomi. Nozomi offers a lot of flexibility in what I am able to learn and unlearn, and I have more visibility towards...
What is your primary use case for Dragos?
I am an engineer in a service provider company where we help clients choose and implement security solutions, and I'm still looking for a new solution. I am certified in Dragos, but I have not depl...
 

Comparisons

 

Also Known As

No data available
Dragos Platform
 

Overview

 

Sample Customers

Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
NaturEner
Find out what your peers are saying about Darktrace, TrendAI, Vectra AI and others in Network Detection and Response (NDR). Updated: June 2026.
900,838 professionals have used our research since 2012.