Try our new research platform with insights from 80,000+ expert users

Darktrace vs Dragos comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Darktrace
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
84
Ranking in other categories
Email Security (9th), Intrusion Detection and Prevention Software (IDPS) (2nd), Network Traffic Analysis (NTA) (1st), Network Detection and Response (NDR) (1st), Extended Detection and Response (XDR) (6th), Cloud Security Posture Management (CSPM) (11th), Cloud-Native Application Protection Platforms (CNAPP) (9th), Attack Surface Management (ASM) (4th), AI-Powered Cybersecurity Platforms (4th), AI Observability (9th)
Dragos
Average Rating
8.0
Reviews Sentiment
6.9
Number of Reviews
2
Ranking in other categories
Operational Technology (OT) Security (5th)
 

Mindshare comparison

While both are Network Security Systems solutions, they serve different purposes. Darktrace is designed for Network Detection and Response (NDR) and holds a mindshare of 16.8%, down 25.4% compared to last year.
Dragos, on the other hand, focuses on Operational Technology (OT) Security, holds 8.9% mindshare, down 11.2% since last year.
Network Detection and Response (NDR) Market Share Distribution
ProductMarket Share (%)
Darktrace16.8%
Vectra AI12.6%
ExtraHop Reveal(x)6.8%
Other63.800000000000004%
Network Detection and Response (NDR)
Operational Technology (OT) Security Market Share Distribution
ProductMarket Share (%)
Dragos8.9%
Nozomi Networks20.6%
Claroty Platform18.2%
Other52.3%
Operational Technology (OT) Security
 

Featured Reviews

AM
Technical Consultant - Unix Platform Services at BITS AND BYTE IT CONSULTING PVT LTD
Consistent threat hunting and anomaly detection deliver valuable insights for network security management
In terms of improvement for Darktrace, pricing is the main concern. Pricing bothers me and this is one of the major factors when choosing a solution. When we get feedback from customers, that's the only felt need. When we factor in Darktrace, we do it only limited. We put it on where the perimeters and connections are, but still, some gray areas are left out, especially if we have multiple branches. We need Darktrace on each branch to get the data out, and I suggest having some kind of a centralized product that gets data from multiple sources to aggregate and provide the data.
JR
OT Cybersecurity Engineer at Nadar
Offers strong incident response features but requires more asset visibility and flexibility
Dragos' best features are that they are more focused towards Incident Response, so they have a dedicated playbook in their platform, making it easier for anyone investigating any incidents to investigate the alerts. One of the main features of Dragos is that they have a dedicated Incident Response team, so if clients need any help, they are there to help. Dragos does real-time monitoring as well, collecting mirror traffic from the span port of the switch, and as soon as it gets the traffic, it analyzes it in real time and shows what's going on in the networks, which relates to the real-time visibility feature for ICS networks.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The technical support from Darktrace is very good, including support from their resellers."
"Provides great network protection."
"The product can scale."
"The autonomous response is also highly designed in Darktrace."
"The most valuable feature is the solution's ability to trim out the false positives and point your attention to the real important stuff."
"The most beneficial feature in Darktrace is identifying phishing emails with the help of the AI engine and machine learning."
"Ability to see events and exactly what traffic or website the device had tried to connect to that raised the alert or issue."
"Darktrace is valuable since it offers full packet capture and detailed metadata."
"Dragos is more expensive than other vendors, probably about fifteen to twenty percent more, but it is generally worth the investment."
"Dragos' best features are that they are more focused towards Incident Response, so they have a dedicated playbook in their platform, making it easier for anyone investigating any incidents to investigate the alerts."
 

Cons

"There are still some issues with the network capturing or blocking traffic even after implementing exceptions. It requires more learning in this area."
"Darktrace needs significant improvement in its notification capabilities."
"The product doesn't have an endpoint agent that can react to triggers set on the device,"
"This product needs more in terms of prevention. The detection capabilities work well but once a threat has been detected, Darktrace should work to prevent it from doing anything malicious."
"The user interface and the configuration are a bit complex and should be improved or simplified."
"Darktrace needs to automate the reports of false positives, botnets and everything."
"The interface and dashboards could be improved for ease-of-use."
"The solution's user interface and stability could be improved."
"I think Dragos can offer more flexibility similar to Nozomi and more visibility into the assets, nodes, and links, which would make it more competitive in the future."
"Dragos could improve its asset visibility and discovery tools, as the competitor Claroty has better options in this area."
 

Pricing and Cost Advice

"In the ballpark, we're talking about $30K, $50K, and up. It can even be as much as $50K or $100K."
"We've budgeted about 50,000 Kuwaiti dinars for the solution. That is a yearly operating cost."
"The pricing is very flexible for Darktrace. Sometimes, a customer does not have the appropriate budget, but Darktrace can handle that. They offer monthly payments, so the customer can acquire the solution very easily."
"It is expensive."
"The pricing is quite high, estimated at around $350,000 per year."
"Prior to negotiating, Darktrace offered their appliance and service for $80,000 per year."
"It was $3,600 a month or $2,000 plus or so. I am not sure. Its licensing is pretty simple."
"The tool's pricing is costly."
Information not available
report
Use our free recommendation engine to learn which Network Detection and Response (NDR) solutions are best for your needs.
881,707 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
11%
Manufacturing Company
9%
Financial Services Firm
8%
Government
7%
Energy/Utilities Company
15%
Manufacturing Company
13%
Construction Company
7%
Comms Service Provider
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business45
Midsize Enterprise19
Large Enterprise29
No data available
 

Questions from the Community

How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What do you like most about Darktrace?
A very useful feature in Darktrace for real-time threat analysis is the packet inspection that analyzes the packet traffic in real time.
What is your experience regarding pricing and costs for Dragos?
Dragos is more expensive than other vendors, probably about fifteen to twenty percent more, but it is generally worth the investment.
What needs improvement with Dragos?
I think Dragos could be improved, as I have worked in Nozomi and compared it to Nozomi. Nozomi offers a lot of flexibility in what I am able to learn and unlearn, and I have more visibility towards...
What is your primary use case for Dragos?
I am an engineer in a service provider company where we help clients choose and implement security solutions, and I'm still looking for a new solution. I am certified in Dragos, but I have not depl...
 

Comparisons

 

Also Known As

No data available
Dragos Platform
 

Overview

 

Sample Customers

Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
NaturEner
Find out what your peers are saying about Darktrace, Vectra AI, TrendAI and others in Network Detection and Response (NDR). Updated: January 2026.
881,707 professionals have used our research since 2012.