No more typing reviews! Try our Samantha, our new voice AI agent.
AqeelAbba - PeerSpot reviewer
IT Engineer at Cellfind (Pty) Ltd.
Real User
Top 20
Oct 16, 2024
Enhanced security with automation offers proactive threat mitigation
Pros and Cons
  • "The investigative part of Darktrace is valuable, especially the automation features. It allows setting up checks and provides guidance on mitigating situations, which is very useful. There are different modules that you can add to the console for protection."
  • "The Darktrace Mobile app needs improvement as it's currently limited in functionality, and the learning AI takes a while to adapt to new devices, flagging new users as threats for up to a month before recognizing them as regular network users."

What is our primary use case?

Normally, when we have a setup, and I log in with any guest, Darktrace blocks us from remotely logging in from within the office network. It ensures that we cannot remote log in anywhere. It is a security system that identifies hacking attempts. Darktrace also integrates with VirusTotal for verification. Additionally, we use the email protection feature.

How has it helped my organization?

Darktrace ensures that we do not have breaches on our systems, and it helps improve our security status before breaches can even reach our system.

What is most valuable?

The investigative part of Darktrace is valuable, especially the automation features. It allows setting up checks and provides guidance on mitigating situations, which is very useful. There are different modules that you can add to the console for protection.

What needs improvement?

The Darktrace Mobile app needs improvement as it's currently limited in functionality, and the learning AI takes a while to adapt to new devices, flagging new users as threats for up to a month before recognizing them as regular network users.

Buyer's Guide
Darktrace
August 2026
Learn what your peers think about Darktrace. Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
909,725 professionals have used our research since 2012.

For how long have I used the solution?

I have been using Darktrace for almost a year now.

What do I think about the stability of the solution?

Darktrace is very stable. I can reliably check logs and track what is happening within the system.

What do I think about the scalability of the solution?

The scalability isn't a high priority for us as it mostly deals with system security. It provides necessary features for security enhancement whenever needed.

How are customer service and support?

The support provided by Darktrace is very good. We had issues with Darktrace Mobile, and they assisted us with a solution, even allowing us to test new features.

Which solution did I use previously and why did I switch?

I joined the current company after Darktrace was already in use, so I do not have information on previous solutions.

How was the initial setup?

The initial setup can be rated as a seven out of ten because it involves going into the console and ensuring that the network settings are correctly configured.

What about the implementation team?

Two people are enough for deployment, provided they know the network settings and configurations.

What was our ROI?

By using Darktrace alongside Mimecast, it has helped improve our security posture by preventing breaches before they reach our system.

What's my experience with pricing, setup cost, and licensing?

I do not have any experience regarding the pricing or setup costs as it was managed by the company administration.

Which other solutions did I evaluate?

I did not have any information on other solutions evaluated prior to Darktrace as they were in use before I joined the company.

What other advice do I have?

Darktrace is a good product to invest in if you can afford it. It provides excellent security features.

I'd rate the solution eight out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Mebbert Chiyangi - PeerSpot reviewer
Information Security Analyst at INFRATEL CORPORATION ZAMBIA LIMITED
Real User
Sep 3, 2023
Efficient behaviour analytics features and offers high stability
Pros and Cons
  • "One thing I appreciate is Antigena Email, which is for email protection."
  • "One thing I would like is for Darktrace to flag SMB traffic more accurately. Currently, it only flags that SMB traffic has occurred, but it doesn't specify which file was being transferred. This makes it difficult to investigate incidents involving SMB traffic, as we don't have concrete evidence of what was being sent."

What is our primary use case?

Our primary use case is incident response.

How has it helped my organization?

One thing I appreciate is Antigena Email, which is for email protection.

What is most valuable?

One of the most valuable features is Behavior analytics.

What needs improvement?

One thing I would like is for Darktrace to flag SMB traffic more accurately. Currently, it only flags that SMB traffic has occurred, but it doesn't specify which file was being transferred. This makes it difficult to investigate incidents involving SMB traffic, as we don't have concrete evidence of what was being sent.

For example, if a user is sent an unauthorized file via SMB, Darktrace would only flag that SMB traffic occurred between the two users. It wouldn't be able to tell us which file was sent, so we would have to manually investigate the incident to determine what happened.

It would be helpful if Darktrace could flag the specific file that was being transferred in SMB traffic incidents. This would make it much easier to investigate these incidents and take appropriate action.

In future releases, I would like to see more playbooks.

For how long have I used the solution?

I have been using this solution for a year now. 

What do I think about the stability of the solution?

I would rate the stability a ten out of ten. 

What do I think about the scalability of the solution?

I would rate the scalability an eight out of ten. There are five end users in our analyst team. 

How are customer service and support?

The customer service and support are really good. That's one of the things that I've come to appreciate about Darktrace. 

Any concern that you give to them, they come on board and arrange a meeting where you could possibly do some practical work with them. They would take on the incident, and they would say, "Okay. Let's set this incident together."

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We used Sophos. We chose Darktrace because of its reliability. Unlike other solutions that rely heavily on signature-based logins, Darktrace operates by learning the behavior of individual users. This means that what may seem normal to me could be considered abnormal for someone else, and Darktrace can effectively block such anomalies. This feature has proven to be immensely helpful.

How was the initial setup?

The initial setup is very easy. I would rate my experience with the initial setup a ten out of ten, where one is difficult and ten is easy to set up. 

It took around an hour to set up. 

What about the implementation team?

The deployment process is pretty self-sufficient. It handles network closure and device discovery.

One person is sufficient for the deployment process. 

What's my experience with pricing, setup cost, and licensing?

The solution is quite expensive. I would rate the licensing model an eight out of ten. 

What other advice do I have?

I would recommend it based on its excellent behavior analytics and AI implementation.

Overall, I would rate the solution an eight out of ten. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Darktrace
August 2026
Learn what your peers think about Darktrace. Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
909,725 professionals have used our research since 2012.
Recep  Alver - PeerSpot reviewer
Cyber Security Engineer at Natica IT Consulting at Natica IT Consulting
Real User
Apr 30, 2023
A user-friendly cyber defense solution with useful dashboards
Pros and Cons
  • "I like the dashboards, which are cool. They are more user-friendly, in my experience. Its learning capabilities are really good."
  • "It should be easier to access the Darktrace portal and its documentation. Only the customer can access their portal and support. It could be cheaper."

What is our primary use case?

Our customers use Darktrace to monitor network traffic.

What is most valuable?

I like the dashboards, which are cool. They are more user-friendly, in my experience. Its learning capabilities are really good.

What needs improvement?

It should be easier to access the Darktrace portal and its documentation. Only the customer can access their portal and support. It could be cheaper. 

What do I think about the stability of the solution?

Darktrace is relatively stable.

What do I think about the scalability of the solution?

Darktrace is scalable. It's very good. We have two big banks in Turkey using this solution.

How was the initial setup?

The initial setup is straightforward. It takes me about half an hour to deploy this solution.

What about the implementation team?

We implement this solution.

What's my experience with pricing, setup cost, and licensing?

Darktrace is expensive. You can pay for the license yearly.

What other advice do I have?

I would recommend this solution to potential users. But the cloud solution is challenging to use in Turkey.

On a scale from one to ten, I would give Darktrace an eight.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
AdeelAgha - PeerSpot reviewer
Team Lead - Cyber Security & Compliance at Al Tuwairqi Group
Real User
Mar 18, 2023
Easy to deploy, stable, and scalable
Pros and Cons
  • "The AI-based pattern is the most valuable feature."
  • "There is a high ratio of false positive information."

What is our primary use case?

The solution is used as an anti-phishing tool.

What is most valuable?

The AI-based pattern is the most valuable feature. The AI monitors users' patterns in how they draft and send emails, so if there is a change in the pattern the email is flagged.

What needs improvement?

There is a high ratio of false positive information. For example, AI capabilities can sometimes make it difficult to distinguish between a legitimate email and a phishing email. This is one of the features that need to be manually sorted out and aligned. We need to improve this feature by putting DNS into the micro.

For how long have I used the solution?

I have been using the solution for three years.

What do I think about the stability of the solution?

The solution is stable.

What do I think about the scalability of the solution?

The solution is scalable.

How are customer service and support?

The technical support team is good and they provide support on a priority level.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup is easy.

What's my experience with pricing, setup cost, and licensing?

The cost is moderate.

What other advice do I have?

I give the solution an eight out of ten.

Our organization chose Darktrace because of its phishing capabilities.

Darktrace is the best way to secure a gateway and I recommend the solution to others.

Which deployment model are you using for this solution?

Private Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)
Disclosure: My company has a business relationship with this vendor other than being a customer.
PeerSpot user
Network Administrator at a healthcare company with 501-1,000 employees
Real User
Top 20
Mar 1, 2023
Detailed interface and good granularity but too expensive
Pros and Cons
  • "t was pretty as far as the granularity of what you were getting out of it."
  • "The price point for the product was too high for what our possible use case could be."

What is our primary use case?

We're part of our regional hospital group in Northwestern Ontario. One of our group members was using the DarkTrace product suite. It was brought forward that other hospitals within the group may want to try it. A couple of us did a demo, which basically involved getting the appliance installed in our data center and routing all the traffic through it. 

We basically had the product running for a company, however, it really didn't pop up or offered anything that we were not already aware of. 

What is most valuable?

It has a very detailed interface - almost too detailed. It was pretty as far as the granularity of what you were getting out of it. 

The solution is very detailed. It has lots of fancy graphics that don't necessarily lead to a good outcome regarding knowing what's going on.

What needs improvement?

The only problem with these kinds of demos is that unless something actually goes wrong or you have something in the data center already; you don't see any difference. However, no news is good news.

The price point for the product was too high for what our possible use case could be. The demo might have gone more favorably in their direction if something had actually occurred during the demo. However, nothing did, and management decided that it was not worth the very high price.

The interface didn't really give you a whole bunch of insight into actually what was going on.

They did have some AI that they claimed could tell if traffic was malicious or what the intent of the traffic was. We never got to see that actually do anything. They identified some traffic. They said it was malicious. However, it turns out it was a known traffic that we had occurring, and it wasn't malicious. So there were a few missteps that way.

The UI is too dark.

We ultimately didn't find any value in the product.

For how long have I used the solution?

We did a demo for two or three months. We did not use the solution for a very long time. 

What do I think about the scalability of the solution?

In terms of scalability, you would need a separate device for every location. For our particular hospital, we actually have three or four main facilities, or what we would consider main facilities. You'd actually need to have a physical box for every deployment in order for traffic to be efficiently detected. They did say that we could route the traffic from the site through the box. However, essentially, that would be doubling the traffic load, which didn't really seem like it was a wise decision. As far as scalability, the box that we had was very capable of handling the traffic load that we were producing. I would say we are probably using maybe ten percent of it at the most at peak levels.

How are customer service and support?

We had some interactions with them during setup and during the demo. They were fine.

How would you rate customer service and support?

Neutral

How was the initial setup?

The initial setup depends on the network. We had a mature infrastructure which made it a bit more challenging.

It took us a few hours to set everything up and make sure it was capturing everything it needed to. 

If you had a straightforward Cisco environment where you could easily forward traffic and CDP needed, it would be pretty easy. 

What's my experience with pricing, setup cost, and licensing?

I'd rate the pricing two or three out of ten. It is pretty expensive. For us, it just wasn't worth it. 

What other advice do I have?

We are customers and end-users. 

I'd rate the solution five out of ten. It's an interesting maturing market. They do have potential, however, they do need to work a fair bit on their AI models and their interface.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Network Security Engineer at Social Security Commission
Real User
Feb 18, 2023
Can be deployed in half a day and is scalable
Pros and Cons
  • "I have found the automation and AI features to be valuable. If someone were to come in to the office at midnight and log in, Darktrace would flag it."
  • "It takes time to go through the interface and pick up things. If it were a more straightforward interface, then it would free up time."

What is our primary use case?

We have a layered approach to our cyber security. We have unified threat management and use several solutions such as Kaspersky, FortiGate, and Mimecast. However, we felt that we needed something on top of all of these and decided to go with Darktrace. We only have one in-house IT security person and were looking for a solution like Darktrace that was more automated.

What is most valuable?

I have found the automation and AI features to be valuable. If someone were to come in to the office at midnight and log in, Darktrace would flag it.

What needs improvement?

It takes time to go through the interface and pick up things. If it were a more straightforward interface, then it would free up time.

For how long have I used the solution?

We did a proof of concept with Darktrace for a year.

What do I think about the scalability of the solution?

It is a scalable solution.

How are customer service and support?

Darktrace's technical support staff were responsive. We did not have to wait long for feedback on anything.

How was the initial setup?

We were able to deploy it in half a day. One person can handle the maintenance of the solution.

What about the implementation team?

We implemented the solution with the help of Darktrace representatives.

What's my experience with pricing, setup cost, and licensing?

We had an issue with pricing initially and had to cancel some of the features of the projects to fit the budget. I would like to see pricing that is not broken up into parts so that we can buy the whole package once.

Darktrace is more expensive than an average solution, but it's functionality won't match that of an average solution.

What other advice do I have?

I would rate Darktrace at nine out of ten. It is a growing product that helps with an ever changing threat landscape. Traditional endpoint antivirus solutions will not be able to keep up.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Wally Lee - PeerSpot reviewer
Vice President | Head of Information Systems & Manufacturing Engineering at a manufacturing company with 51-200 employees
Real User
Sep 11, 2022
Self-maintaining, works autonomously, and prevents data excavation
Pros and Cons
  • "The most valuable feature is that it works autonomously."
  • "The solution automatically monitors everything on the network to prevent anti-phishing by monitoring, responding, and restoring the system."
  • "The solution can improve the reporting. Currently, it only runs weekly and the reporting is complex."

What is our primary use case?

The solution automatically monitors everything on the network to prevent anti-phishing by monitoring, responding, and restoring the system. It prevents data excavation.

What is most valuable?

The most valuable feature is that it works autonomously. So you only need to look at the exceptions.

What needs improvement?

The solution can improve the reporting. Currently, it only runs weekly and the reporting is complex. It is more of a network monitoring system, basically AI.

For how long have I used the solution?

I have been using the solution for four years.

What do I think about the stability of the solution?

The solution is stable and solid.

What do I think about the scalability of the solution?

The solution is scalable and designed to be enterprise-wide.

Which solution did I use previously and why did I switch?

Previously we used Intercept X which is more at the virus level endpoint, but Darktrace is an overall network and phishing solution.

How was the initial setup?

The initial setup did not appear complex.  

What about the implementation team?

The implementation was completed by a vendor technician. The setup was simple and took a couple of hours.

What's my experience with pricing, setup cost, and licensing?

The solution is about $6,000 per quarter.

What other advice do I have?

I give the solution ten out of ten.

Our organization has about 50 nodes and there is no maintenance involved because it is self-maintaining. I recommend the solution, it is better than SIM.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Head of Security at DFCC
Real User
Sep 6, 2022
Stable security solution that offers behavioral analytics for the monitoring of traffic
Pros and Cons
  • "The most valuable feature has been the behavioral analytics that allows us to monitor all the traffic."
  • "The dashboard and reporting for this solution could be improved as it is currently complex. The GUI for this solution could also be improved."

What is our primary use case?

We are a financial Institute and make use of the IDS solution. We have the SIM called QRadar. We analyze all the traffic clouds with Darktrace and SIM.

What is most valuable?

The most valuable feature has been the behavioral analytics that allows us to monitor all the traffic.

What needs improvement?

Sometimes the solution gives some false positives which could be improved. The dashboard and reporting for this solution could be improved as it is currently complex. The GUI for this solution could also be improved. 

For how long have I used the solution?

I have been using this solution for three years. 

What do I think about the stability of the solution?

This is a stable solution. 

What do I think about the scalability of the solution?

This is a scalable solution. 

How are customer service and support?

The technical support is very good but we would like to get some information from APAC because we are in APAC region.

Which solution did I use previously and why did I switch?

We considered McAfee and other solutions but based on budget and features, we decided to go with Darktrace.

How was the initial setup?

The initial setup is straightforward and so is the maintenance. 

What about the implementation team?

The deployment was done in-house.

What other advice do I have?

I would rate this solution a seven out of ten. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1417965 - PeerSpot reviewer
IT Security Manager at a construction company with 201-500 employees
Real User
Aug 15, 2022
Beneficial viability, simple installation, and responsive support
Pros and Cons
  • "The most valuable features of Darktrace are its full capabilities, as you have visibility of everything happening on your network, emails, and SaaS applications."
  • "Darktrace could improve by being more user-friendly."

What is our primary use case?

Darktrace is an appliance that has been installed in our network, and it is connected to the database SaaS applications and they're collecting the data from there.

We are using Darktrace for tracking our network and if any suspicious activity happens, we will be notified or we can check it on our tenant.

What is most valuable?

The most valuable features of Darktrace are its full capabilities. You have visibility of everything.

What needs improvement?

Darktrace could improve by being more user-friendly.

For how long have I used the solution?

I have been using Darktrace for approximately six months.

What do I think about the stability of the solution?

Darktrace is stable.

What do I think about the scalability of the solution?

The scalability of Darktrace is good.

We have approximately 350 users using the solution in my company. Everyone is using it.

How are customer service and support?

The support from Darktrace is responsive and speedy.

I rate the support of Darktrace a nine out of ten.

How was the initial setup?

Darktrace is simple to install and the full process took approximately three weeks.

What about the implementation team?

The deployment of Darktrace was done by the vendor.

What's my experience with pricing, setup cost, and licensing?

The price of Darktrace is high and could be reduced. We pay approximately $30,000 to $54,000 annually.

The cost of the solution is high making it an issue for smaller companies. We are a small organization and it is difficult to afford. We are not a large organization. For this reason, the solution's price must be reduced. Having 350 users is not a large organization. It's a small organization and paying approximately $30,000 to $54,000 annually, is a lot. However, sometimes we had too many services to have more visibility and be secure, this is the idea why we went with Darktrace without negotiating the prices.

What other advice do I have?

I recommend Darktrace to others, it is a helpful service you will have full visibility of what's happening on your network, emails, and SaaS applications.

I rate Darktrace an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
IT Manager at SJ Securities Sdn Bhd
Real User
May 28, 2022
Quick to deploy with great detection capabilities and quick-responding support
Pros and Cons
  • "We are able to detect a lot of things, actually, and see what is happening in our network."
  • "It's quite expensive to have."
  • "The pricing is expensive. It costs over $100,000 a year."

What is our primary use case?

The product is a type of intrusion detection and prevention software. It is for network traffic monitoring.

What is most valuable?

We are able to detect a lot of things, actually, and see what is happening in our network.

It offers good protection.

The deployment is quick. 

What needs improvement?

It's good as a solution, however, for me, it's quite complicated. They've got a lot of features there. You need a lot of time to learn it.

It's quite expensive to have.

For how long have I used the solution?

I've used the solution for around a year.

What do I think about the stability of the solution?

The core is stable. There are no bugs or glitches and it doesn't crash or freeze. 

What do I think about the scalability of the solution?

It's not high on scalability, in the box itself. You don't need scalability to scale out the server like that. 

There is one that is able to monitor the entire network. Our entire IT department is on the product. We have a three-person technical team. We may expand usage later this year. 

How are customer service and support?

Technical support is quite good. Every quarter, they will contact us for a meeting, however, any issue actually is reported online and their response is quite fast.

How was the initial setup?

The deployment was very fast. They just put the appliance in and connect our call switch and do everything else that is needed. It's all very fast.

What about the implementation team?

We used the SI to help us with the implementation. 

What's my experience with pricing, setup cost, and licensing?

The pricing is expensive. It costs over $100,000 a year. There are no additional costs beyond the price of the license. 

Which other solutions did I evaluate?

I'm currently exploring other solutions as a comparison. We are looking for Sangfor Cyber Command.

What other advice do I have?

We're a customer and end-user.

It's my understanding that we are on version five.

I'd advise users that it's a good solution, however, they need to be prepared for a large learning curve. 

I'd rate the solution eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Darktrace Report and get advice and tips from experienced pros sharing their opinions.
Updated: August 2026
Buyer's Guide
Download our free Darktrace Report and get advice and tips from experienced pros sharing their opinions.