Try our new research platform with insights from 80,000+ expert users

Dragos vs Palo Alto Networks Advanced Threat Prevention comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Dragos
Average Rating
8.0
Reviews Sentiment
6.9
Number of Reviews
2
Ranking in other categories
Operational Technology (OT) Security (5th)
Palo Alto Networks Advanced...
Average Rating
8.4
Reviews Sentiment
6.6
Number of Reviews
29
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (6th)
 

Mindshare comparison

While both are Network Security Systems solutions, they serve different purposes. Dragos is designed for Operational Technology (OT) Security and holds a mindshare of 11.9%, up 11.9% compared to last year.
Palo Alto Networks Advanced Threat Prevention, on the other hand, focuses on Intrusion Detection and Prevention Software (IDPS), holds 5.6% mindshare, up 5.3% since last year.
Operational Technology (OT) Security Market Share Distribution
ProductMarket Share (%)
Dragos11.9%
Nozomi Networks28.5%
Claroty Platform24.6%
Other35.0%
Operational Technology (OT) Security
Intrusion Detection and Prevention Software (IDPS) Market Share Distribution
ProductMarket Share (%)
Palo Alto Networks Advanced Threat Prevention5.6%
Fortinet FortiGate17.1%
Darktrace13.7%
Other63.599999999999994%
Intrusion Detection and Prevention Software (IDPS)
 

Featured Reviews

JR
Offers strong incident response features but requires more asset visibility and flexibility
Dragos' best features are that they are more focused towards Incident Response, so they have a dedicated playbook in their platform, making it easier for anyone investigating any incidents to investigate the alerts. One of the main features of Dragos is that they have a dedicated Incident Response team, so if clients need any help, they are there to help. Dragos does real-time monitoring as well, collecting mirror traffic from the span port of the switch, and as soon as it gets the traffic, it analyzes it in real time and shows what's going on in the networks, which relates to the real-time visibility feature for ICS networks.
Partha Dash - PeerSpot reviewer
Advanced protection enables us to confidently secure against evolving threats
Palo Alto Networks can improve Advanced Threat Prevention by catering to the growing adoption of AI and agentic tooling. The Threat Protection modules should have the necessary intelligence to protect against those types of threats, as AI will be there to do a human job; this is an evolving area. From an Advanced Threat Protection perspective, the technology associated with Palo Alto Networks, such as their sandboxing environment, is quite good. However, Palo Alto needs to focus on how to bring that technology to end users and how easy it is to use, especially in a hybrid environment where users work from various locations. While Palo Alto excels in certain setups, they need to improve the user experience in distributed working conditions.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Dragos is more expensive than other vendors, probably about fifteen to twenty percent more, but it is generally worth the investment."
"Dragos' best features are that they are more focused towards Incident Response, so they have a dedicated playbook in their platform, making it easier for anyone investigating any incidents to investigate the alerts."
"The initial setup was straightforward. It's quite easy. Deployment took one to two weeks."
"The most valuable features are the simplicity, transparency, and overall ease of management."
"The sandboxing tools offer great prevention for cloud feeds."
"It effectively prevents malware, ransomware, and other attacks."
"Edge protection is a valuable feature."
"The user interface is a bit more professional than some free products."
"The application control and vulnerability protection are the most valuable features."
"I find the malware protection very handy."
 

Cons

"Dragos could improve its asset visibility and discovery tools, as the competitor Claroty has better options in this area."
"I think Dragos can offer more flexibility similar to Nozomi and more visibility into the assets, nodes, and links, which would make it more competitive in the future."
"Right now we are focusing on email. If Palo Alto can increase the features related to email filtering and the new malware, it would help us protect our systems."
"We are attempting to improve the use of URL filtering beyond threat protection."
"The cost involves the price of the hardware, which is expensive. However, most of the Palo Alto solutions are expensive."
"Sometimes when you want to group a set of ports, and communicate with Palo Alto, you cannot group TCP and UDP ports together. This needs to be adjusted."
"The initial setup is complex."
"The pricing has improved with the newer generation of their Firewalls, but the price could always be lower. In comparison with other solutions, I believe they're quite competitive."
"The solution could benefit from improved AI analytics to predict potential attacks before they occur, similar to NDR systems."
"The behavioral detection capabilities could be expanded to address all threats at the perimeter, reducing the reliance on endpoint detection and response systems."
 

Pricing and Cost Advice

Information not available
"The pricing could be lower."
"Palo Alto Networks Advanced Threat Prevention is quite competitive, offering extensive threat detection and prevention capabilities, though it is priced higher than some alternatives."
"From one to ten, with one being the most expensive, I would rate the pricing of Palo Alto Networks Threat Prevention a one out of ten. It is my understanding that Palo Alto Networks Threat Prevention is the most expensive one."
"If you want to have all of the good features then you have to pay extra for licensing."
"It's not too expensive."
"The cost involves the price of the hardware, which is expensive. However, most of the Palo Alto solutions are expensive."
"The pricing has improved with the newer generation of their Firewalls, but the price could always be lower."
"Palo Alto Networks Threat Prevention could improve by having consistent pricing at system levels."
report
Use our free recommendation engine to learn which Operational Technology (OT) Security solutions are best for your needs.
867,676 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Energy/Utilities Company
17%
Manufacturing Company
14%
Construction Company
7%
Computer Software Company
5%
Computer Software Company
13%
Financial Services Firm
9%
Manufacturing Company
9%
Government
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise4
Large Enterprise15
 

Questions from the Community

What is your experience regarding pricing and costs for Dragos?
Dragos is more expensive than other vendors, probably about fifteen to twenty percent more, but it is generally worth the investment.
What needs improvement with Dragos?
I think Dragos could be improved, as I have worked in Nozomi and compared it to Nozomi. Nozomi offers a lot of flexibility in what I am able to learn and unlearn, and I have more visibility towards...
What is your primary use case for Dragos?
I am an engineer in a service provider company where we help clients choose and implement security solutions, and I'm still looking for a new solution. I am certified in Dragos, but I have not depl...
Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Arbor would be the best bid, apart from Arbor, Palo Alto and Fortinet have good solutions. As this is an ISP, I would prefer Arbor.
What is your experience regarding pricing and costs for Palo Alto Networks Threat Prevention?
Palo Alto Networks Advanced Threat Prevention requires an add-on license and is considered expensive compared to competitors like Cisco AMP and FortiGate ( /products/fortinet-fortigate-reviews ) fi...
 

Also Known As

Dragos Platform
No data available
 

Overview

 

Sample Customers

NaturEner
University of Arkansas, JBG SMITH, SkiStar AB, TRI-AD, Temple University, Telkom Indonesia
Find out what your peers are saying about Nozomi, Claroty, CyberArk and others in Operational Technology (OT) Security. Updated: August 2025.
867,676 professionals have used our research since 2012.