

Darktrace and Proofpoint Email Protection compete in cybersecurity, focusing on AI-driven analytics and email security respectively. Darktrace appears to have an upper hand in threat detection due to its advanced AI-driven, self-learning capabilities.
Features: Darktrace's strong points include AI analytics for threat detection, unsupervised machine learning for behavior analysis, and Antigena's automatic response features. Proofpoint Email Protection excels in email threat protection, integrating SPF, DKIM, and DMARC protocols, advanced spam filters, and robust email analytics.
Room for Improvement: Darktrace needs better handling of false positives and improved integration with major platforms, along with enhanced endpoint security. Proofpoint Email Protection faces user interface complexity and high pricing issues, with needs for better phishing detection and user intuitiveness.
Ease of Deployment and Customer Service: Darktrace offers flexible deployment options including on-premises and hybrid solutions, with generally good technical support, though complex deployments need better assistance. Proofpoint Email Protection is primarily cloud-based with well-regarded, responsive technical support.
Pricing and ROI: Darktrace is considered expensive, especially for smaller businesses, but its comprehensive security features are seen as justifying the cost. Proofpoint Email Protection is also high-priced, yet its robust email security features provide value for larger organizations looking to reduce security risks.
Other NDR solutions provide virtual appliances that can be deployed on virtualization servers to get up and running quickly.
Using this solution provides financial benefits by securing from server attacks, which offers indirect savings.
The ideal situation would be to have all these portals combined into one unified dashboard.
After Proofpoint Email Protection, phishing has been completely eliminated, so it is working very efficiently.
Instead of individually logging into five portals, we can log into one and they all connect as if we had logged into all of them.
The technical support from Darktrace is of high quality.
Darktrace provides excellent technical support with a monthly meeting to review platform incidents, ensuring the system functions as expected.
The challenge lies in waiting for a response after logging a ticket.
I am familiar with the granular policy control feature of Proofpoint Email Protection, and I find their support excellent for modifying those policies.
Even the engineers have been helpful, and if we open a case, they get back to us right away.
We always contact them if we need support, whether it's for setting up features or technical support, which is very responsive.
Darktrace has high scalability, and I would rate it a nine out of ten.
Since it's cloud-based, it expands easily.
There is still a gap in terms of storage, and we are trying to figure out how to increase that capacity for regulated environments, which require data retention for 5 to 6 years.
Proofpoint is scalable for multi-site organizations with thousands of users.
The solution provides a graphical representation and dashboard view showing how many threats are getting blocked on a daily and monthly basis.
Proofpoint Email Protection is considered to be highly scalable, designed for large enterprises, with a cloud-based architecture that offers an enormous number of options, including multi-organization support and high-volume email handling.
The stability of Darktrace is excellent, rated ten out of ten.
The appliance itself has never let me down.
For stability, I would rate Darktrace an eight out of ten.
If Proofpoint Email Protection has an outage, we are either not receiving emails or not blocking the right threats.
Regarding the stability and performance of Proofpoint Email Protection, I have not experienced any crashes, downtimes, or performance issues.
Proofpoint Email Protection is very stable and reliable, as it remains accessible at all times without issues, ensuring that data is available in real time.
There is no dedicated salesperson in Egypt, and having one would help to improve focus on this market.
They say they can integrate with most firewalls, but when we did an integration with Meraki MX firewalls, that integration didn't work and still doesn't work to this day.
We need Darktrace on each branch to get the data out, and I suggest having some kind of a centralized product that gets data from multiple sources to aggregate and provide the data.
The older legacy user interface just took a little to work with, and the new unified interface, as it was able to do more and more of the functionality of the old one, the product just got easier and easier to use.
In addition to the UI improvements, I would appreciate an increase in the speed of the tasks being processed on the pod.
There are pros and cons to that, but I would suggest maintaining a good balance between security protection and operational impact.
The product is considered expensive compared to others.
The pricing is costly in USD, and they charge based on device counts.
The licensing cost is approximately eight dollars a year.
Customers pay around $90,000 yearly for a 1,000-user organization, with the subscription license being the main expense, apart from implementation fees.
Given my other experience with other vendors, I think they are a bit on the high end and a bit on the pricey end for the email security functionality that we were using.
Although it is a bit costly compared to Mimecast, Defender, and Cofense Vision, it is efficient and strong in security, so I do not mind the cost because I will not reduce my security risk.
It is capable of responding to lateral movement and ransomware deployment within environments where there is data exfiltration.
I do not need to manually process incidents as Darktrace provides an incident summary, potential detection paths, and other details, all exportable with just a click.
If I am in a data center where I don't have layer two, it becomes an issue because the autonomous response is reliant on sending spoofed TCP resets to my core switch to block traffic, which is a major issue.
Without Proofpoint Email Protection, most of these emails would have come through, slipped through Exchange, gotten into the user's mailbox, and created a lot of trouble for the organization.
Proofpoint Email Protection has positively impacted my organization by ensuring we are not at risk of a breach through email.
TAP alerts, where Proofpoint Email Protection scans emails and sends alerts, provide the ability to review suspicious emails and validate them in a sandbox environment.
| Product | Mindshare (%) |
|---|---|
| Proofpoint Email Protection | 5.9% |
| Darktrace | 1.8% |
| Other | 92.3% |


| Company Size | Count |
|---|---|
| Small Business | 44 |
| Midsize Enterprise | 20 |
| Large Enterprise | 29 |
| Company Size | Count |
|---|---|
| Small Business | 30 |
| Midsize Enterprise | 25 |
| Large Enterprise | 62 |
Darktrace revolutionizes network security with AI-driven alerts, anomaly detection, and robust visibility across networks. It autonomously detects threats, minimizing the need for human oversight, and offers efficient IP identification with minimal false positives.
Darktrace uses advanced AI analytics to enhance network protection. Its powerful real-time threat response capabilities and self-learning enable thorough monitoring and insightful analysis of network activities. While providing scalable and reliable security, users seek improvements in false positive reduction, user-friendly interfaces, and pricing. Enhanced third-party integration, more effective dashboards, and centralized automation features remain top priorities. Users benefit greatly from its Antigena feature, offering automated responses like blocking suspicious connections for robust network defense.
What Are Darktrace's Key Features?In industries employing Darktrace, it is pivotal in securing LAN networks, analyzing behavioral patterns, and detecting internal and external threats. Adoption alongside platforms like F5 and SAP enhances incident response, traffic analysis, and threat identification, utilizing Antigena for proactive security measures.
Proofpoint Email Protection provides powerful filtering against spam, phishing, and malware, leveraging effective threat detection and blocking capabilities. This solution integrates smoothly with platforms like Office 365, offering a user-friendly dashboard for seamless operations.
Proofpoint Email Protection focuses on email security, ensuring protection against phishing, malware, and spam. It includes features like URL scanning, anti-phishing, anti-virus protection, and sandboxing for comprehensive threat analysis. Its advanced analytics through TAP and TRAP, along with strong integration abilities, make it appealing for handling email threats. While scalability and ease of deployment are advantages, challenges such as integration in complex environments, the cost, and limited local support require attention. Enhancements in search functionality, email encryption, and improved phishing detection are also needed.
What are the key features of Proofpoint Email Protection?
What benefits and ROI should users look for in reviews?
Industries adopting Proofpoint Email Protection include finance, healthcare, and education sectors, which benefit from its robust email security measures. Educational institutions prioritize safe communication for staff and students, while healthcare organizations focus on protecting sensitive patient data. Financial services benefit from preventing data breaches and fraud through advanced threats management.
We monitor all Email Security reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.