Try our new research platform with insights from 80,000+ expert users

Darktrace vs Flowmon comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 15, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Darktrace
Ranking in Network Detection and Response (NDR)
1st
Average Rating
8.2
Reviews Sentiment
7.2
Number of Reviews
82
Ranking in other categories
Email Security (9th), Intrusion Detection and Prevention Software (IDPS) (1st), Network Traffic Analysis (NTA) (1st), Extended Detection and Response (XDR) (6th), Cloud Security Posture Management (CSPM) (15th), Cloud-Native Application Protection Platforms (CNAPP) (11th), Attack Surface Management (ASM) (4th), AI-Powered Cybersecurity Platforms (2nd)
Flowmon
Ranking in Network Detection and Response (NDR)
14th
Average Rating
8.6
Reviews Sentiment
7.5
Number of Reviews
4
Ranking in other categories
Network Monitoring Software (43rd)
 

Mindshare comparison

As of July 2025, in the Network Detection and Response (NDR) category, the mindshare of Darktrace is 23.6%, down from 25.5% compared to the previous year. The mindshare of Flowmon is 1.8%, up from 1.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Network Detection and Response (NDR)
 

Featured Reviews

Malebo Lethoba Group - PeerSpot reviewer
Have found the AI analyst and detection functions highly valuable for network operations while managing complexity in initial setup
The functions I find most valuable in Darktrace ( /products/darktrace-reviews ) are the AI analyst as well as the detection.The autonomous response capabilities of Darktrace are not crucial for me because it doesn't work in a network where there are no core switches. In a modern network, the autonomous response doesn't work, especially when sitting in a shared data center.If I'm running a traditional network where I am not in a shared data center with a layer two dedicated for my resources, then it can work for me. However, if I am in a data center where I don't have layer two, it becomes an issue because the autonomous response is reliant on sending spoofed TCP resets to my core switch to block traffic, which is a major issue.
Pifu Lin - PeerSpot reviewer
Quick identification of network issues enhances performance monitoring
We will try to Proof of Concept (POC) to a client in Taiwan. We just use the features for the Network Performance Monitor (NPM) Flowmon is more easy to understand and helps find network issues more quickly. We need this solution to monitor the network performance. We started using it three…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature has been the behavioral analytics that allows us to monitor all the traffic."
"The Dynamic Threat Dashboard is very nice, as it lists all of your threats and rates them, and then you can choose whether to investigate further."
"The initial setup is simple."
"I have found the automation and AI features to be valuable. If someone were to come in to the office at midnight and log in, Darktrace would flag it."
"The most valuable feature of Darktrace is its ability to detect and counter threats before they occur."
"One member of staff is enough for deployment and maintenance because Darkforce is AI-driven. It does a lot of things by itself."
"The AI-based pattern is the most valuable feature."
"In terms of features, the data or information they collect and unsupervised machine learning are very valuable. Its unsupervised machine learning has reduced our team's effort. Both Darktrace and Vectra work on unsupervised machine learning that learns the behavior or develops a profile on its own, which allows our security team to do some other tasks rather than spending time on Darktrace or Vectra. Because of unsupervised machine learning, its detection capability is quite good. Along with that, if we utilize the integration feature properly, the automated incident response capability of Darktrace is quite useful."
"It is an open platform, so in terms of integration, we are quite happy. We can integrate it with other SNMP solutions. We can also integrate it with security solutions, such as a SIEM solution."
"The artificial intelligence and automatic detection system in Flowmon Solution are perfect for every, type of customer, such as government and commerce."
"The solution is stable."
"Flowmon is more easy to understand and helps find network issues more quickly."
"Flowmon is more easy to understand and helps find network issues more quickly."
 

Cons

"I would like to see a feature where the tool ingests information from an anti-malware product that is present at the endpoint."
"One thing that I would like to look at going forward is to have a fully automated network infrastructure that is monitored automatically real-time, and that gives me this kind of capability where I would be able to look at my network at any given time and see the state of my network. With Darktrace, at the moment, I have to almost put in a date and tell them that want you to give me data from this date to this date. I don't want that. I want a fast solution in which it doesn't matter when I log into the application. Whenever I log in, I must be able to see my network and run a report. In other words, if I go in now and I say, "Give me a full report of what happened today, it must be able to give me that. It mustn't just be limited to a seven-day period, for argument's sake. It must be able to give me real-time and day-to-day tracking of what has happened within my network."
"Darktrace needs to automate the reports of false positives, botnets and everything."
"It should be easier to access the Darktrace portal and its documentation. Only the customer can access their portal and support. It could be cheaper."
"This product needs more in terms of prevention. The detection capabilities work well but once a threat has been detected, Darktrace should work to prevent it from doing anything malicious."
"The pricing is costly in USD, and they charge based on device counts."
"I think there is some MSSP missing."
"It can have more integration with orchestration or event management solutions. They can provide more knowledge or research information for analysts for investigating cases and detecting anomalies in networks."
"The licensing price could be better."
"It would be helpful to have more details about the monitoring of the infrastructure. It should have support for SNMP. This is something that is currently not there in the product."
"If there was better visualization in Flowmon Solution it would be good."
"I do not know the detailed pricing."
 

Pricing and Cost Advice

"The tool's pricing is costly."
"Prior to negotiating, Darktrace offered their appliance and service for $80,000 per year."
"Darktrace is expensive. You can pay for the license yearly."
"It is a very expensive product."
"It was $3,600 a month or $2,000 plus or so. I am not sure. Its licensing is pretty simple."
"The cost is moderate."
"There is an annual license to use Darktrace."
"The price of Darktrace is high and could be reduced. We pay approximately $30,000 to $54,000 annually."
"The price of the solution could be better."
"It works with a permanent license, and then you can pay for the support. For the gold support, you need to pay yearly."
"The licensing fee accrues only once, but that of support is annual."
report
Use our free recommendation engine to learn which Network Detection and Response (NDR) solutions are best for your needs.
863,776 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Manufacturing Company
9%
Financial Services Firm
8%
Government
7%
Computer Software Company
13%
Financial Services Firm
10%
Manufacturing Company
10%
Performing Arts
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What do you like most about Darktrace?
A very useful feature in Darktrace for real-time threat analysis is the packet inspection that analyzes the packet traffic in real time.
What is your experience regarding pricing and costs for Flowmon Anomaly Detection System?
I don't understand the price. I am in deployment, so I do not know the detailed pricing.
What is your primary use case for Flowmon Anomaly Detection System?
We will try to Proof of Concept (POC) to a client in Taiwan. We just use the features for the Network Performance Monitor (NPM).
 

Also Known As

No data available
Flowmon Anomaly Detection System
 

Overview

 

Sample Customers

Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
SEGA
Find out what your peers are saying about Darktrace vs. Flowmon and other solutions. Updated: July 2025.
863,776 professionals have used our research since 2012.