No more typing reviews! Try our Samantha, our new voice AI agent.

Darktrace vs SOCRadar Extended Threat Intelligence comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.3
Darktrace users experience substantial returns through threat prevention and reduced downtime, despite deployment challenges and difficulty measuring returns.
Sentiment score
4.3
SOCRadar boosts security and efficiency by automating threat detection, reducing manual efforts, and preemptively blocking threats.
Other NDR solutions provide virtual appliances that can be deployed on virtualization servers to get up and running quickly.
Technical Consultant - Unix Platform Services at BITS AND BYTE IT CONSULTING PVT LTD
Using this solution provides financial benefits by securing from server attacks, which offers indirect savings.
Systems Specialist/ Administrator at ALFA International Company Limited.
The platform aggregates intelligence from multiple sources and provides contextual insights, reducing the manual research required for tasks that previously involved manual dark web searches or correlation across different threat intelligence sources.
Security Administrator at Yotta Data Center
Through SOCRadar Extended Threat Intelligence, we are enabled and we got a chance to provide proactive security to the clients.
Associate Threat Hunter And Threat Intelligence Analyst at a tech services company with 11-50 employees
We proactively blocked the IOCs provided by SOCRadar Extended Threat Intelligence before breaches occurred in other banks and financial industries.
Senior Security Analyst at Doyen
 

Customer Service

Sentiment score
7.6
Darktrace's customer service is praised for responsiveness and efficiency, though some suggest improvements for complex issues.
Sentiment score
7.5
SOCRadar Extended Threat Intelligence customer support is praised for fast, knowledgeable service with 24/7 availability and excellent integration guidance.
The technical support from Darktrace is of high quality.
Network & Security Section Head/Digital Transformation at a government with 201-500 employees
Darktrace provides excellent technical support with a monthly meeting to review platform incidents, ensuring the system functions as expected.
Head of Technology Operations at Pobl Group
The challenge lies in waiting for a response after logging a ticket.
Group Cybersecurity Administrator at Tharisa
SOCRadar provides IOC-related insights that correlate with recent campaigns and geopolitical tensions, enabling us to understand whether the information suits the financial services or retail sectors.
Senior Security Analyst at Doyen
When you open a ticket, they generally answer immediately.
Cyber Security Engineer at Cevizsoft Teknoloji AŞ
I can tell you they are super fast, super helpful, and they seem to be quite knowledgeable.
Senior Cyber Security Expert at a computer software company with 201-500 employees
 

Scalability Issues

Sentiment score
7.6
Darktrace is praised for its scalability, supporting diverse user bases and integrating well with existing infrastructures.
Sentiment score
6.8
SOCRadar Extended Threat Intelligence offers scalable, cloud-based solutions for MSSPs and enterprises, despite occasional pricing concerns.
Darktrace has high scalability, and I would rate it a nine out of ten.
Network & Security Section Head/Digital Transformation at a government with 201-500 employees
Since it's cloud-based, it expands easily.
Head of Technology Operations at Pobl Group
There is still a gap in terms of storage, and we are trying to figure out how to increase that capacity for regulated environments, which require data retention for 5 to 6 years.
Technical Consultant - Unix Platform Services at BITS AND BYTE IT CONSULTING PVT LTD
I rate the scalability of SOCRadar Extended Threat Intelligence at ten out of ten.
Cyber Security Engineer at Underdefense
Another aspect of its scalability is that it continuously updates threat intelligence feeds and can easily accommodate new clients or assets without major changes to the platform.
Associate Threat Hunter And Threat Intelligence Analyst at a tech services company with 11-50 employees
It is scalable because you can have multiple sources and multiple customers, with everything going through the API.
Senior Cyber Security Expert at a computer software company with 201-500 employees
 

Stability Issues

Sentiment score
8.5
Darktrace is highly rated for stability and reliability, with effective monitoring and an intuitive interface despite occasional traffic impacts.
Sentiment score
8.7
SOCRadar Extended Threat Intelligence is highly reliable, with minimal non-critical issues, providing stable and consistent performance.
The stability of Darktrace is excellent, rated ten out of ten.
Head of Technology Operations at Pobl Group
The appliance itself has never let me down.
Group Cybersecurity Administrator at Tharisa
For stability, I would rate Darktrace an eight out of ten.
Security Analyst at a healthcare company with 10,001+ employees
SOCRadar Extended Threat Intelligence is a very stable tool with no lack of performance.
Senior Cyber Security Expert at a computer software company with 201-500 employees
SOCRadar Extended Threat Intelligence is definitely stable and provides much better security compared to any other solution.
Security Administrator at Yotta Data Center
SOCRadar Extended Threat Intelligence is good and stable.
SOC Analyst L2 at a computer retailer with 11-50 employees
 

Room For Improvement

Darktrace needs improved integration, automation, usability, pricing, support, and clarity, plus better endpoint protection and third-party tool integration.
SOCRadar needs pricing adjustments, improved dashboards, enhanced AI, better customization, increased integration, more automation, and flexible access.
There is no dedicated salesperson in Egypt, and having one would help to improve focus on this market.
Solution Architect at a tech services company with 51-200 employees
They say they can integrate with most firewalls, but when we did an integration with Meraki MX firewalls, that integration didn't work and still doesn't work to this day.
Security Analyst at a healthcare company with 10,001+ employees
We need Darktrace on each branch to get the data out, and I suggest having some kind of a centralized product that gets data from multiple sources to aggregate and provide the data.
Technical Consultant - Unix Platform Services at BITS AND BYTE IT CONSULTING PVT LTD
If the pricing were structured as a flat fee of €70,000 or €30,000 with unlimited searches and unlimited credits, I would see much greater value in the solution.
Senior Cyber Security Expert at a computer software company with 201-500 employees
This improvement could focus on customizable reporting and dashboards, along with expanded automation and API integration.
Security Administrator at Yotta Data Center
Pricing, interface, customization, AI, and integration could be improved.
Cyber Security Engineer at Underdefense
 

Setup Cost

Darktrace is costly yet valued for advanced features, offering flexible module selection with negotiable discounts and yearly contracts.
SOCRadar offers competitive pricing with flexible licensing, seamless onboarding, and potential custom pricing for long-term clients.
The product is considered expensive compared to others.
Solution Architect at a tech services company with 51-200 employees
The pricing is costly in USD, and they charge based on device counts.
Group Cybersecurity Administrator at Tharisa
The licensing cost is approximately eight dollars a year.
Security Information & Incident Analyst at a financial services firm with 1,001-5,000 employees
When compared to the competition such as Group-IB or Recorded Future where they gave me a very high price, SOCRadar Extended Threat Intelligence pricing is really much better for a very good set of features.
Cybersecurity Consultant at a tech services company with 11-50 employees
My experience with SOCRadar Extended Threat Intelligence concerning pricing, setup cost, and licensing has been generally positive, as the platform offers a flexible pricing model and modular licensing that makes it easier for organizations to scale as their threat intelligence needs grow.
Security Administrator at Yotta Data Center
I think the pricing, setup cost, and licensing of SOCRadar Extended Threat Intelligence are good.
SOC Analyst L2 at a computer retailer with 11-50 employees
 

Valuable Features

Darktrace offers AI-driven threat detection, real-time monitoring, and autonomous response with scalability and ease of integration for enhanced security.
SOCRadar offers robust threat intelligence and monitoring features, enhancing risk management and security posture with swift alerts.
It is capable of responding to lateral movement and ransomware deployment within environments where there is data exfiltration.
Group Cybersecurity Administrator at Tharisa
I do not need to manually process incidents as Darktrace provides an incident summary, potential detection paths, and other details, all exportable with just a click.
Security Information & Incident Analyst at a financial services firm with 1,001-5,000 employees
If I am in a data center where I don't have layer two, it becomes an issue because the autonomous response is reliant on sending spoofed TCP resets to my core switch to block traffic, which is a major issue.
Security Analyst at a healthcare company with 10,001+ employees
With features such as dark web monitoring and external attack surface visibility, we can identify potential threats such as leaked credentials, which improves our overall response to threats and strengthens our security posture.
Security Administrator at Yotta Data Center
The accuracy and reliability of SOCRadar Extended Threat Intelligence is very high based on the artificial intelligence used.
Lead Engineer - Network & Security at Connex Information Technologies
A credential user was stolen by an infostealer, and we detected this through SOCRadar Extended Threat Intelligence before any incident occurred.
SOC Analyst L2 at a computer retailer with 11-50 employees
 

Categories and Ranking

Darktrace
Ranking in Attack Surface Management (ASM)
4th
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
84
Ranking in other categories
Email Security (10th), Intrusion Detection and Prevention Software (IDPS) (2nd), Network Traffic Analysis (NTA) (1st), Network Detection and Response (NDR) (1st), Extended Detection and Response (XDR) (7th), Cloud Security Posture Management (CSPM) (10th), Cloud-Native Application Protection Platforms (CNAPP) (9th), AI-Powered Cybersecurity Platforms (5th), AI Observability (7th)
SOCRadar Extended Threat In...
Ranking in Attack Surface Management (ASM)
6th
Average Rating
8.6
Reviews Sentiment
6.2
Number of Reviews
21
Ranking in other categories
Threat Intelligence Platforms (TIP) (3rd), Digital Risk Protection (4th)
 

Mindshare comparison

As of August 2026, in the Attack Surface Management (ASM) category, the mindshare of Darktrace is 4.3%, down from 8.9% compared to the previous year. The mindshare of SOCRadar Extended Threat Intelligence is 1.8%, up from 1.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Attack Surface Management (ASM) Mindshare Distribution
ProductMindshare (%)
Darktrace4.3%
SOCRadar Extended Threat Intelligence1.8%
Other93.9%
Attack Surface Management (ASM)
 

Featured Reviews

Pasan Jayarathna - PeerSpot reviewer
Network Security Engineer at Cyberwell Solution
Monitoring has improved data loss detection and now spots abnormal internal file transfers quickly
In my understanding, the best feature Darktrace offers is the identification of copying files, which acts as a DLP, and it is a main concern for companies because users sometimes copy data outside without knowing, especially those without a technical background. When I mention the DLP-like feature and file copying detection, the alerts have been very timely, as we get an alert within a couple of minutes, which is excellent. Even if some developers are working after hours and copying files, our SOC team detects this, and most of the time they call us so we can identify the users. The alerts are quite accurate and proactive.
yozkul - PeerSpot reviewer
Cyber Security Engineer at Cevizsoft Teknoloji AŞ
Centralized threat intelligence has improved our visibility and accelerated incident response
You can find out new threats and security incidents with SOCRadar Extended Threat Intelligence. You can see the new vulnerabilities when you are using your products. This is very useful. SOCRadar Extended Threat Intelligence has improved security in my organization, but there are some problems. Sometimes there are too many alarms, which can become quite tiring. We have a lot of information infrastructures, and SOCRadar Extended Threat Intelligence has improved our security, but we do experience some alert fatigue. There are a lot of web servers. We also integrated SOCRadar Extended Threat Intelligence with the SIEM. We can see together, and we can see all of the threats and new threats, especially. If you integrate all internal sources, IP addresses, and services to SOCRadar Extended Threat Intelligence, you can view all of the sources together in a single monitor and area. You can also view all the tickets and vulnerabilities and threats. This is very useful.
report
Use our free recommendation engine to learn which Attack Surface Management (ASM) solutions are best for your needs.
908,834 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
10%
Financial Services Firm
9%
Computer Software Company
8%
Comms Service Provider
7%
Financial Services Firm
13%
Outsourcing Company
12%
Comms Service Provider
9%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business44
Midsize Enterprise20
Large Enterprise29
By reviewers
Company SizeCount
Small Business17
Midsize Enterprise3
Large Enterprise7
 

Questions from the Community

How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What is your experience regarding pricing and costs for Darktrace?
Concerning pricing for the product, I would say it is somewhat expensive.
What needs improvement with SOCRadar Extended Threat Intelligence?
SOCRadar Extended Threat Intelligence could be improved by implementing an autonomous threat hunting option. I am not certain if this is currently implemented, but I would appreciate seeing that fe...
What is your primary use case for SOCRadar Extended Threat Intelligence?
My main use case for SOCRadar Extended Threat Intelligence is Digital Risk Protection, brand risk monitoring, threat intelligence, supply chain attacks, supply chain monitoring, VIP monitoring, ide...
What advice do you have for others considering SOCRadar Extended Threat Intelligence?
SOCRadar Extended Threat Intelligence earns a rating of ten on a scale of one to ten. I rate it a ten because of the quality of information that is always delivered when needed, and the support fro...
 

Overview

 

Sample Customers

Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
Information Not Available
Find out what your peers are saying about Darktrace vs. SOCRadar Extended Threat Intelligence and other solutions. Updated: June 2026.
908,834 professionals have used our research since 2012.