Try our new research platform with insights from 80,000+ expert users

Darktrace vs Sublime Security comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 21, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Darktrace
Ranking in Email Security
8th
Average Rating
8.2
Reviews Sentiment
7.2
Number of Reviews
82
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (2nd), Network Traffic Analysis (NTA) (1st), Network Detection and Response (NDR) (1st), Extended Detection and Response (XDR) (6th), Cloud Security Posture Management (CSPM) (14th), Cloud-Native Application Protection Platforms (CNAPP) (10th), Attack Surface Management (ASM) (4th), AI-Powered Cybersecurity Platforms (2nd)
Sublime Security
Ranking in Email Security
21st
Average Rating
9.0
Reviews Sentiment
7.5
Number of Reviews
2
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of October 2025, in the Email Security category, the mindshare of Darktrace is 2.6%, up from 2.4% compared to the previous year. The mindshare of Sublime Security is 1.6%, up from 0.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Email Security Market Share Distribution
ProductMarket Share (%)
Darktrace2.6%
Sublime Security1.6%
Other95.8%
Email Security
 

Featured Reviews

Malebo Lethoba Group - PeerSpot reviewer
Have found the AI analyst and detection functions highly valuable for network operations while managing complexity in initial setup
The functions I find most valuable in Darktrace are the AI analyst as well as the detection.The autonomous response capabilities of Darktrace are not crucial for me because it doesn't work in a network where there are no core switches. In a modern network, the autonomous response doesn't work, especially when sitting in a shared data center.If I'm running a traditional network where I am not in a shared data center with a layer two dedicated for my resources, then it can work for me. However, if I am in a data center where I don't have layer two, it becomes an issue because the autonomous response is reliant on sending spoofed TCP resets to my core switch to block traffic, which is a major issue.
LARK IT - PeerSpot reviewer
Easy to setup, stable and highly scalable
The ability for users to look at their own quarantine box needs improvement. So at the moment, it doesn't give you the ability to see every email that has been quarantined. No end-user has the ability to see what's being quarantined. It's only people who have access to the back-end platform that can actually see what has been quarantined. The end user doesn't know if they have an email that has been quarantined, only if they're expecting something that didn't come through. In future releases, I would just like to see that ability for users to see what's being quarantined and what's not quarantined but safe. Just those genuine false positives.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature of Darktrace is its ability to detect and counter threats before they occur."
"The autonomous response is also highly designed in Darktrace."
"The most valuable features of Darktrace are the tracing of unusual external emails and monitoring the local network."
"The Dynamic Threat Dashboard is very nice, as it lists all of your threats and rates them, and then you can choose whether to investigate further."
"The solution is outstanding from a monitoring perspective."
"We allow customers to access our Wi-Fi as guests, and some of them were going to restricted sites. Darktrace showed us what they were doing so we could block them."
"The NDR is good in their solution and they have NTG for email."
"The active threat dashboard is the most valuable feature of this solution."
"Overall, the auditability and the ability to evaluate the information in Sublime through various mechanisms made me very comfortable with setting these capabilities to auto-remediation."
"I like its ability to detect and block."
 

Cons

"Darktrace is a closed technology, meaning we know very little about how it works, including the architecture, which is significant. As a result, when we implement the system and find we're getting many false positives, we have minimal insight into why it's happening and what we can do to fix it. We don't know how the solution is configured, the criteria for threats to be determined, or the product's inner workings. We understand that they have to ensure privacy and their copyright, but we want to see some documentation or public research into the security Darktrace provides."
"Pricing bothers me and this is one of the major factors when choosing a solution."
"Darktrace needs significant improvement in its notification capabilities."
"It is expensive, but everything else has been great so far."
"The pricing is a bit high for the region."
"Darktrace needs to automate the reports of false positives, botnets and everything."
"There is a high ratio of false positive information."
"It's quite expensive to have."
"The ability for users to look at their own quarantine box needs improvement. So at the moment, it doesn't give you the ability to see every email that has been quarantined. No end-user has the ability to see what's being quarantined. It's only people who have access to the back-end platform that can actually see what has been quarantined. The end user doesn't know if they have an email that has been quarantined, only if they're expecting something that didn't come through."
"While they do provide API-level access and web hooks, I believe more out-of-the-box integrations with SOAR platforms and SIEM tools would enhance Sublime's value."
 

Pricing and Cost Advice

"Our customers feel that the price of Darktrace is quite high compared to other solutions."
"Darktrace is expensive. You can pay for the license yearly."
"I am using a demo of Darktrace for deployment and testing which is free."
"Prior to negotiating, Darktrace offered their appliance and service for $80,000 per year."
"Darktrace is pricey, but the price is reasonable for what the solution does, and it's comparable to other products."
"It was $3,600 a month or $2,000 plus or so. I am not sure. Its licensing is pretty simple."
"All of the other modules, such as the licensing modules, are on par. It's one for one."
"It's an expensive solution."
"I would rate the pricing of Sublime Security as a seven out of ten. It is reasonably well-priced."
report
Use our free recommendation engine to learn which Email Security solutions are best for your needs.
869,785 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Manufacturing Company
9%
Financial Services Firm
8%
Comms Service Provider
7%
Computer Software Company
14%
Financial Services Firm
8%
Government
7%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business44
Midsize Enterprise19
Large Enterprise29
No data available
 

Questions from the Community

How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What do you like most about Darktrace?
A very useful feature in Darktrace for real-time threat analysis is the packet inspection that analyzes the packet traffic in real time.
What do you like most about Sublime Security?
I like its ability to detect and block.
What is your experience regarding pricing and costs for Sublime Security?
I would rate the pricing of Sublime Security as a seven. It is reasonably well-priced.
What needs improvement with Sublime Security?
The ability for users to look at their own quarantine box needs improvement. So at the moment, it doesn't give you the ability to see every email that has been quarantined. No end-user has the abil...
 

Overview

 

Sample Customers

Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
Information Not Available
Find out what your peers are saying about Microsoft, Abnormal AI, Proofpoint and others in Email Security. Updated: September 2025.
869,785 professionals have used our research since 2012.