Try our new research platform with insights from 80,000+ expert users

Darktrace vs MetaDefender Email Security Solutions comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 15, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Defender for Offi...
Sponsored
Ranking in Email Security
1st
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
52
Ranking in other categories
Email Archiving (1st), Advanced Threat Protection (ATP) (2nd), Microsoft Security Suite (10th), Secure Email Gateway (SEG) (1st)
Darktrace
Ranking in Email Security
10th
Average Rating
8.2
Reviews Sentiment
7.2
Number of Reviews
82
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (1st), Network Traffic Analysis (NTA) (1st), Network Detection and Response (NDR) (1st), Extended Detection and Response (XDR) (6th), AI-Powered Chatbots (3rd), Cloud Security Posture Management (CSPM) (15th), Cloud-Native Application Protection Platforms (CNAPP) (11th), Attack Surface Management (ASM) (4th), AI-Powered Cybersecurity Platforms (2nd)
MetaDefender Email Security...
Ranking in Email Security
28th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
3
Ranking in other categories
Secure Email Gateway (SEG) (10th)
 

Mindshare comparison

As of June 2025, in the Email Security category, the mindshare of Microsoft Defender for Office 365 is 12.6%, down from 17.6% compared to the previous year. The mindshare of Darktrace is 3.0%, up from 1.3% compared to the previous year. The mindshare of MetaDefender Email Security Solutions is 0.4%, up from 0.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Email Security
 

Featured Reviews

Tolu Omolaja - PeerSpot reviewer
Great URL scanning and attachment scanning, but I would like more proactive threat analysis
The two main features that prove most beneficial for us are URL scanning and attachment scanning. URL scanning involves an automatic scan of links and emails. When a user clicks on a link within an email, the system promptly checks the link's safety. If the link is deemed safe, access is granted automatically. However, if it is flagged as unsafe, we receive feedback and notification to caution us about the potentially harmful link. At this point, we are presented with the option to proceed or return. I have personally witnessed the system identify a few unsafe links, making this the primary advantage of using the solution. The second crucial aspect is the scanning of attachments. When an email containing an attachment arrives, we receive a notification of the new email, along with information that the attachment is being scanned for threats. This additional layer of security provides peace of mind for our organization. While Microsoft Defender for Office 365 offers numerous features, these two stand out as particularly impressive and valuable to us.
Malebo Lethoba Group - PeerSpot reviewer
Have found the AI analyst and detection functions highly valuable for network operations while managing complexity in initial setup
The functions I find most valuable in Darktrace ( /products/darktrace-reviews ) are the AI analyst as well as the detection.The autonomous response capabilities of Darktrace are not crucial for me because it doesn't work in a network where there are no core switches. In a modern network, the autonomous response doesn't work, especially when sitting in a shared data center.If I'm running a traditional network where I am not in a shared data center with a layer two dedicated for my resources, then it can work for me. However, if I am in a data center where I don't have layer two, it becomes an issue because the autonomous response is reliant on sending spoofed TCP resets to my core switch to block traffic, which is a major issue.
Aaron Alornyenu - PeerSpot reviewer
Helps us stay compliant, has excellent malware detection, and is stable
The solution helped our organization stay 100 percent compliant with industry standards. MetaDefender Email Security can be set to be very aggressive for identifying attacks. This can be done based on how we want it. If we set it to this level, most of our emails will be blocked because the system will block anything that looks suspicious. We will also need to set the spam severity. This is the severity of everything, including phishing, spoofing, and other types of attacks. I would give the solution's ability to identify attacks a nine out of ten. MetaDefender helps us improve our spam catch rate. Any spam we receive is usually due to user subscriptions. We can specify rules of exclusion to meet our requirements as well. It also detects and blocks the links with suspicious codes. MetaDefender Email Security's multi-scanning capabilities for malware detection work based on how we set the parameters. The solution perfectly detects malware. MetaDefender can identify and disarm emails in zero-day attacks.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The product's scalability is good."
"Threat Explorer is an invaluable tool for me, and it plays a crucial role in helping me discern the origins of various email campaigns, pinpointing where they emanate from, and identifying the individuals within our organization who are affected."
"The product is not resource-intensive."
"The deployment capability is a great feature."
"The basic features are okay and I'm satisfied with the Defender."
"It’s easy to handle integrations, and we don't need a lot of people in our IT team."
"The most valuable feature is protection against malicious links, fishing, and impersonation. You can train people to be aware of these threats, but they're not always careful. When they're using their phones between meetings, they click on a link, and it's game over."
"Some of the valuable features on the email side are anti-phishing, anti-malware, and Safe Links."
"We have found the product to be stable and issue-free."
"t was pretty as far as the granularity of what you were getting out of it."
"Ability to see events and exactly what traffic or website the device had tried to connect to that raised the alert or issue."
"The NDR is good in their solution and they have NTG for email."
"I have found the most valuable features to be artificial intelligence for cybersecurity, advanced machine learning capabilities, enterprise Immune System, Antigena Network, and Antigena Email. The way the solution detects the threat over the network before it spreads is very good. It notifies you of what the threat is exactly doing and gives you all the details about the execution of that application that had created the threat over your network."
"The scalability of Darktrace is very high."
"Darktrace is very flexible."
"One thing I appreciate is Antigena Email, which is for email protection."
"The sanitization is very good."
"The most valuable feature of MetaDefender Email Security is the CDR. Customers purchase this solution specifically for data communication, as the other features can be obtained through other technologies that most customers already possess. Therefore, data communication serves as the foundation for the platform."
"The most valuable feature is called summary reconstruction which is used to deliver encrypted files to users."
 

Cons

"Microsoft wants its well-paying customers to finish testing some of its half-baked products, find bugs, and report bugs back to Microsoft's team, which is a little frustrating for those who have to manage it and roll it up to thousands of people across the organization."
"Configuration requires going to a lot of places rather than just accessing one tab."
"They can improve their security in a way where a customer can know if all their attachments are safe or not to open through a report. The solution does its job perfectly, but it never reports to the customer whether those attachments have been stopped before or not."
"The changes to customer service, specifically the new model for support agreements, are not favorable."
"About eight months ago, we started to measure the quantity of phishing and spam that we have been receiving, and it has been increasing a lot. That means that protection for our email is not as good as we were expecting."
"The only thing they should improve is the licensing model. They should stop changing it. A year ago, the five features I mentioned were included in one product. Now, three of them are bundled into one product, and you have to pay extra for the other two. I don't mind paying extra, but I don't want them to change it every year or every six months. I need to know what I'm looking at and not worry about it next year."
"Microsoft sometimes has downtime, and we'll get several incidents coming in back to back. We have a huge backlog of notifications, many of which may be false positives. However, there might be serious alerts, so we can't risk dismissing all of them at once."
"Configuration at the mid-level could be improved for the support team."
"Darktrace could expand into EDR (endpoint detection and response) and combine it with its network detection."
"It would be helpful if they could recognize incidents and simplify the customer's challenge to identify what is happening."
"This product needs more in terms of prevention. The detection capabilities work well but once a threat has been detected, Darktrace should work to prevent it from doing anything malicious."
"It's quite expensive to have."
"I would like to see some additional enhancements."
"The module can improve so that every time it's more intelligent."
"One thing that I would like to look at going forward is to have a fully automated network infrastructure that is monitored automatically real-time, and that gives me this kind of capability where I would be able to look at my network at any given time and see the state of my network. With Darktrace, at the moment, I have to almost put in a date and tell them that want you to give me data from this date to this date. I don't want that. I want a fast solution in which it doesn't matter when I log into the application. Whenever I log in, I must be able to see my network and run a report. In other words, if I go in now and I say, "Give me a full report of what happened today, it must be able to give me that. It mustn't just be limited to a seven-day period, for argument's sake. It must be able to give me real-time and day-to-day tracking of what has happened within my network."
"It could build in integrations for some complementary products, but it has an assistant plugin so this is not really a big deal."
"They offer a feature called SmartLink neutralization. I have tried it before. It seemed to work most of the time; however, I had a few users for whom it just wouldn't work. Whenever they click on a link, it stays on the MetaDefender page, saying that it's scanning it and never moves forward."
"The DLP should be upgraded and has room for improvement."
"Although the number of AV engines is good, it could be better."
 

Pricing and Cost Advice

"The pricing is normal. Considering its popularity, it's not overpriced."
"While Microsoft Defender for Office 365 necessitates pricier E3 or E5 subscriptions, the extensive functionality offered by these licenses across various Microsoft products justifies the investment."
"It is much more expensive than using another solution because we have had to include some options and upgrade our license."
"The solution could be better by simplifying the business model of their licensing. It was hard to figure out how to get the licensing done for the environment, initially."
"Defender is a little bit more expensive as compared to others. We are in the manufacturing environment. So, we don't have a high budget for all of our endpoint devices. Its cost is a major concern for us."
"The product is very expensive."
"The license is expensive because the cost is based on the number of users."
"The product is expensive."
"We've budgeted about 50,000 Kuwaiti dinars for the solution. That is a yearly operating cost."
"It is expensive. I don't have the price for other competitors."
"It is expensive."
"The price of the solution is not cheap. It is not a one-time purchase, there is a subscription that needs to be paid every one to five years depending on your choice. It is expensive but you can reduce the price by only using the services that you want."
"The cost of the solution is expensive for smaller businesses. They will not be able to afford it or might not need this type of security solution."
"It's an expensive solution."
"Prior to negotiating, Darktrace offered their appliance and service for $80,000 per year."
"The pricing is very flexible for Darktrace. Sometimes, a customer does not have the appropriate budget, but Darktrace can handle that. They offer monthly payments, so the customer can acquire the solution very easily."
"According to our customers, the price of MetaDefender is high and it continues to increase by almost 15 percent each year."
report
Use our free recommendation engine to learn which Email Security solutions are best for your needs.
858,469 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Financial Services Firm
9%
Manufacturing Company
8%
Government
6%
Computer Software Company
14%
Manufacturing Company
8%
Financial Services Firm
8%
Government
7%
Computer Software Company
14%
Comms Service Provider
12%
Educational Organization
11%
Financial Services Firm
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about Microsoft Defender for Office 365?
Threat Explorer is an invaluable tool for me, and it plays a crucial role in helping me discern the origins of variou...
What is your experience regarding pricing and costs for Microsoft Defender for Office 365?
Microsoft is quite affordable with a lot of features available for any size organization.
What needs improvement with Microsoft Defender for Office 365?
Microsoft could improve by offering recommendations for domain spoofing attacks, especially scenarios where DNS recor...
How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing u...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is ...
What do you like most about Darktrace?
A very useful feature in Darktrace for real-time threat analysis is the packet inspection that analyzes the packet tr...
What is your experience regarding pricing and costs for MetaDefender Email Security Solutions?
We paid for a three-year agreement. The cost is kind of high. For smaller companies, it may be outside of their budge...
What needs improvement with MetaDefender Email Security Solutions?
They offer a feature called SmartLink neutralization. I have tried it before. It seemed to work most of the time; how...
 

Also Known As

MS Defender for Office 365
No data available
OPSWAT MetaDefender Email Security, MetaDefender Email Gateway Security, MetaDefender Email Security
 

Overview

 

Sample Customers

Microsoft Defender for Office 365 is trusted by companies such as Ithaca College.
Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
Information Not Available
Find out what your peers are saying about Darktrace vs. MetaDefender Email Security Solutions and other solutions. Updated: June 2025.
858,469 professionals have used our research since 2012.