

Darktrace and Check Point IPS are competitive products in the cybersecurity sector, focusing on threat detection and prevention. Darktrace offers an edge with its AI-driven threat detection capabilities, providing extensive network visibility, while Check Point IPS excels in automated threat intelligence with seamless integration for threat management efficiency.
Features: Darktrace provides advanced AI-driven self-learning capabilities, real-time monitoring, and comprehensive threat visualization. It also supports a robust suite of customization options that enhance network visibility and threat detection. Check Point IPS stands out with its automated threat intelligence integration via the Check Point ThreatCloud, offering real-time threat prevention and high accuracy in signature updates, effectively blocking malicious traffic and reducing false positives.
Room for Improvement: Darktrace can improve by better handling false positives, refining its user interface, expanding integration capabilities, and strengthening endpoint protection support. Its pricing model is perceived as high, which may limit accessibility. Check Point IPS could reduce its false positives, enhance its documentation to simplify setup, and improve its technical support responsiveness. The high resource usage on older hardware and cost concerns for smaller organizations need addressing.
Ease of Deployment and Customer Service: Darktrace is known for its strong customer service and technical support, despite the complex deployment process. Most users prefer an on-premises setup with some opting for hybrid cloud solutions. Check Point IPS also offers solid technical support and integrates well into existing environments, with a combination of on-premises and cloud-based setups. Users appreciate Darktrace's responsive support and proactive approach, while Check Point IPS users value its global support presence, although quicker response times are desired.
Pricing and ROI: Darktrace's pricing is considered high and inflexible; however, its effectiveness in threat prevention drives a high ROI. Check Point IPS, though perceived as costly as well, offers better bundling value with other security products. Its ROI is bolstered by reducing intrusions and streamlining security processes, appealing to customers looking for comprehensive protection and negotiated pricing benefits.
I have seen a return on investment as it results in money saved and time saved because the security tool is very complete and modern.
I have seen a return on investment more in the risk saved since it catches a lot of stuff security-wise that is good to catch.
I have seen a return on investment since using Check Point IPS, as evidenced by fewer incidents.
Other NDR solutions provide virtual appliances that can be deployed on virtualization servers to get up and running quickly.
Using this solution provides financial benefits by securing from server attacks, which offers indirect savings.
Our technical teams have personal relationships with our account executives and direct support people.
The customer support for Check Point IPS is excellent.
I have had an excellent experience with Check Point IPS's customer team, as their technical knowledge and troubleshooting skills are excellent.
The technical support from Darktrace is of high quality.
Darktrace provides excellent technical support with a monthly meeting to review platform incidents, ensuring the system functions as expected.
The challenge lies in waiting for a response after logging a ticket.
We have moved to a hyper-scale master environment, allowing us to scale by adding additional gateways to the clusters.
The scalability of Check Point IPS is on point.
The scalability of Check Point IPS is great because when I deploy gateways in the cloud, I create a cluster, which offers a very scalable option.
Darktrace has high scalability, and I would rate it a nine out of ten.
Since it's cloud-based, it expands easily.
There is still a gap in terms of storage, and we are trying to figure out how to increase that capacity for regulated environments, which require data retention for 5 to 6 years.
Check Point IPS provides a very stable and reliable environment.
Check Point IPS is very stable.
Check Point IPS is very stable with no problems regarding this solution.
The stability of Darktrace is excellent, rated ten out of ten.
The appliance itself has never let me down.
For stability, I would rate Darktrace an eight out of ten.
Automated attack path correlation in SmartEvent to improve situational awareness.
At least 60% of all the alarms generated by the IPS are false positives or something that's not important to look at, and this generates a significant workload for my team.
More granular policy customization for Check Point IPS would allow protection to be tailored more precisely to specific applications or services, which would reduce unnecessary overhead and improve accuracy.
There is no dedicated salesperson in Egypt, and having one would help to improve focus on this market.
They say they can integrate with most firewalls, but when we did an integration with Meraki MX firewalls, that integration didn't work and still doesn't work to this day.
We need Darktrace on each branch to get the data out, and I suggest having some kind of a centralized product that gets data from multiple sources to aggregate and provide the data.
Comparisons with Fortinet show that Check Point IPS is relatively more expensive, but we found it cheaper to retain it rather than switch.
My experience with pricing, setup cost, and licensing for Check Point IPS is good; it's baked into the firewall licensing, so that's very good.
My experience with pricing, setup cost, and licensing for Check Point IPS is great, and I have no problem with the price.
The product is considered expensive compared to others.
The pricing is costly in USD, and they charge based on device counts.
The licensing cost is approximately eight dollars a year.
The integration with Check Point ThreatCloud ensures the IPS engine is updated with the latest attack signatures.
The solution employs behavioral heuristic analysis to block zero-day attacks using AI-powered engines.
Whenever any zero-day attack is detected, it downloads that signature into the firewall and prevents that threat.
It is capable of responding to lateral movement and ransomware deployment within environments where there is data exfiltration.
I do not need to manually process incidents as Darktrace provides an incident summary, potential detection paths, and other details, all exportable with just a click.
If I am in a data center where I don't have layer two, it becomes an issue because the autonomous response is reliant on sending spoofed TCP resets to my core switch to block traffic, which is a major issue.
| Product | Mindshare (%) |
|---|---|
| Darktrace | 10.5% |
| Check Point IPS | 3.4% |
| Other | 86.1% |
| Company Size | Count |
|---|---|
| Small Business | 50 |
| Midsize Enterprise | 22 |
| Large Enterprise | 23 |
| Company Size | Count |
|---|---|
| Small Business | 45 |
| Midsize Enterprise | 19 |
| Large Enterprise | 29 |
Check Point IPS provides robust real-time threat prevention by blocking threats before they can harm critical systems, integrating seamlessly with ThreatCloud for enhanced security management and efficiency while minimizing false positives.
Check Point IPS enhances network security through AI-powered behavioral analysis, centralized management, and customizable policies. It ensures strong protection against known and unknown threats, including zero-day attacks, and its integration with ThreatCloud allows for automatic updates, minimizing manual interventions. However, improvements in documentation, support responsiveness, and a more intuitive interface could enhance user experience. Pricing flexibility for cloud environments and quicker signature updates are needed along with better support for high traffic and enhanced visual analytics.
What Are the Key Features of Check Point IPS?Check Point IPS is widely deployed to protect networks from unauthorized access and security threats, ensuring communication channel integrity and preventing exploits. Used across sectors, it aids in compliance with security policies, supporting enterprises in maintaining secure operations.
Darktrace revolutionizes network security with AI-driven alerts, anomaly detection, and robust visibility across networks. It autonomously detects threats, minimizing the need for human oversight, and offers efficient IP identification with minimal false positives.
Darktrace uses advanced AI analytics to enhance network protection. Its powerful real-time threat response capabilities and self-learning enable thorough monitoring and insightful analysis of network activities. While providing scalable and reliable security, users seek improvements in false positive reduction, user-friendly interfaces, and pricing. Enhanced third-party integration, more effective dashboards, and centralized automation features remain top priorities. Users benefit greatly from its Antigena feature, offering automated responses like blocking suspicious connections for robust network defense.
What Are Darktrace's Key Features?In industries employing Darktrace, it is pivotal in securing LAN networks, analyzing behavioral patterns, and detecting internal and external threats. Adoption alongside platforms like F5 and SAP enhances incident response, traffic analysis, and threat identification, utilizing Antigena for proactive security measures.
We monitor all Intrusion Detection and Prevention Software (IDPS) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.