No more typing reviews! Try our Samantha, our new voice AI agent.

Darktrace vs Dragos comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Darktrace
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
84
Ranking in other categories
Email Security (10th), Intrusion Detection and Prevention Software (IDPS) (2nd), Network Traffic Analysis (NTA) (1st), Network Detection and Response (NDR) (1st), Extended Detection and Response (XDR) (7th), Cloud Security Posture Management (CSPM) (10th), Cloud-Native Application Protection Platforms (CNAPP) (9th), Attack Surface Management (ASM) (4th), AI-Powered Cybersecurity Platforms (5th), AI Observability (7th)
Dragos
Average Rating
8.0
Reviews Sentiment
5.0
Number of Reviews
4
Ranking in other categories
Operational Technology (OT) Security (5th)
 

Mindshare comparison

While both are Network Security Systems solutions, they serve different purposes. Darktrace is designed for Network Detection and Response (NDR) and holds a mindshare of 13.9%, down 23.4% compared to last year.
Dragos, on the other hand, focuses on Operational Technology (OT) Security, holds 7.8% mindshare, down 11.9% since last year.
Network Detection and Response (NDR) Mindshare Distribution
ProductMindshare (%)
Darktrace13.9%
Vectra AI9.8%
Cisco Secure Network Analytics5.5%
Other70.8%
Network Detection and Response (NDR)
Operational Technology (OT) Security Mindshare Distribution
ProductMindshare (%)
Dragos7.8%
Nozomi Networks14.5%
Claroty Platform13.8%
Other63.9%
Operational Technology (OT) Security
 

Featured Reviews

Pasan Jayarathna - PeerSpot reviewer
Network Security Engineer at Cyberwell Solution
Monitoring has improved data loss detection and now spots abnormal internal file transfers quickly
In my understanding, the best feature Darktrace offers is the identification of copying files, which acts as a DLP, and it is a main concern for companies because users sometimes copy data outside without knowing, especially those without a technical background. When I mention the DLP-like feature and file copying detection, the alerts have been very timely, as we get an alert within a couple of minutes, which is excellent. Even if some developers are working after hours and copying files, our SOC team detects this, and most of the time they call us so we can identify the users. The alerts are quite accurate and proactive.
Rajesh Podishetty - PeerSpot reviewer
Manager at a tech vendor with 51-200 employees
Risk monitoring has improved and real-time fraud detection provides transparent banking control
Dragos should be improved in deployment complexity as it requires OT engineering coordination. One needs to have proper engineering coordination to understand the system, deploy it, integrate it, and make all the complex things into one system. This is very challenging, and one should be really skillful and have experience to accomplish this. Cost is another area for improvement. The cost is higher due to site-based licensing and expert services. The licensing is very heavy, and expert services are required for deployment. Cost-wise is also challenging and needs to be improved. Integration needs alignment with IT security systems and compliance frameworks. Controlling cybersecurity where any fraudulent person or third party should not access the system is controlled, and managing that level of complexity is quite challenging. Since there is continuous monitoring, it can reduce operational risk losses by 20% to 30% annually. Controlling that huge amount of data and transactions, especially regarding storage, requires a lot of database space. The space-wise storage should be reduced.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I have used multiple solutions, but its graphical user interface is quite interesting and quite descriptive. There are a lot of video animations, and we can easily see how the data is transferred between various points. That's something really interesting. It is also quite easy to understand for a new user."
"The most valuable features of Darktrace are the tracing of unusual external emails and monitoring the local network."
"I particularly like Antigena and the analytics around the real-time monitoring of our network. I also like its reporting because it has got a seven-day reporting period within the system. Every time you run the reports, it gives you the data about the previous seven days. I like that because it is in real-time. I enjoy reading those reports and getting a very clear and decisive idea of what's happening on my network on a real-time basis. I like the actual real-time monitoring of spoofing and things like that. I also like the user monitoring as well as the network logging capabilities."
"Technical support is great. They are very responsive and helpful."
"The product is extremely stable and mature."
"We allow customers to access our Wi-Fi as guests, and some of them were going to restricted sites. Darktrace showed us what they were doing so we could block them."
"Darktrace is a good product and it can be implemented on premises."
"The ability to detect activity on the network is very useful to us. Even if it's not necessarily an illegal activity, if it is abnormal activity, it is able to detect it and notify us."
"Dragos is more expensive than other vendors, probably about fifteen to twenty percent more, but it is generally worth the investment."
"Dragos' best features are that they are more focused towards Incident Response, so they have a dedicated playbook in their platform, making it easier for anyone investigating any incidents to investigate the alerts."
"Dragos especially ensures systems recover quickly, providing resilience, and it handles all the operational resilience in banking with metrics of 99.9% uptime, 30 minutes recovery time, and 99% transaction accuracy."
"Dragos has positively impacted my organization by aiding us to compensate our time."
 

Cons

"The solution would benefit from automation. Currently, you have to know what you are searching for."
"This product needs more in terms of prevention. The detection capabilities work well but once a threat has been detected, Darktrace should work to prevent it from doing anything malicious."
"I'd love them to see maybe covering the cloud a bit more."
"The product doesn't have an endpoint agent that can react to triggers set on the device,"
"It is expensive, but everything else has been great so far."
"It can have more integration with orchestration or event management solutions. They can provide more knowledge or research information for analysts for investigating cases and detecting anomalies in networks."
"They are too expensive compared with other vendors."
"In terms of improvements, fine-tuning is the area where we have to spend some time because it works on unsupervised machine learning. It would be good if they can improve their algorithm or technical functionality to reduce the fine-tuning effort. They can also come up with something at the endpoint level. So far, Darktrace has been a network detection response (NDR) solution. It does not offer much at the endpoint level or on user-client devices or servers. There should be more visibility at the endpoint level. It would be good to have the detection and response at the endpoint level by Darktrace. It should also have integration with an agile environment so that we can have continuous development and continuous integration in the application development environment. This is currently not there. It should also have internet-facing platform visibility, which is currently missing. They also need to improve the reporting and management dashboards. Currently, these are not so easy for a non-technical person. All these features would make Darktrace much better, and they would also be helpful in selling more solutions."
"I think Dragos can offer more flexibility similar to Nozomi and more visibility into the assets, nodes, and links, which would make it more competitive in the future."
"Dragos should be improved in deployment complexity as it requires OT engineering coordination."
"From my point of view, Dragos cannot be improved at the moment, but having more user-friendly platforms would be good."
"Dragos could improve its asset visibility and discovery tools, as the competitor Claroty has better options in this area."
 

Pricing and Cost Advice

"The price of Darktrace is high and could be reduced. We pay approximately $30,000 to $54,000 annually."
"The pricing is expensive. It costs over $100,000 a year."
"The cost of the solution is expensive for smaller businesses. They will not be able to afford it or might not need this type of security solution."
"They are too expensive compared with other vendors."
"The tool's pricing is costly."
"Darktrace is quite an expensive solution."
"The pricing is reasonable."
"The solution is about $6,000 per quarter."
Information not available
report
Use our free recommendation engine to learn which Network Detection and Response (NDR) solutions are best for your needs.
908,800 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
10%
Financial Services Firm
9%
Computer Software Company
8%
Comms Service Provider
7%
Energy/Utilities Company
16%
Manufacturing Company
12%
Outsourcing Company
6%
Healthcare Company
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business44
Midsize Enterprise20
Large Enterprise29
No data available
 

Questions from the Community

How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What is your experience regarding pricing and costs for Darktrace?
Concerning pricing for the product, I would say it is somewhat expensive.
What is your experience regarding pricing and costs for Dragos?
Pricing-wise, I am not certain because there is a third party who handles the pricing in my company. The setup cost and licensing is quite critical. Licensing is always handled for access users, an...
What needs improvement with Dragos?
From my point of view, Dragos cannot be improved at the moment, but having more user-friendly platforms would be good. Enhancing the user interface experience to be better or more smoothly would be...
What is your primary use case for Dragos?
My main use case for Dragos is for vulnerability management, which I rely on day-to-day. A quick specific example of how I use Dragos for vulnerability management in my daily work is that I made an...
 

Also Known As

No data available
Dragos Platform
 

Overview

 

Sample Customers

Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
NaturEner
Find out what your peers are saying about Darktrace, TrendAI, Vectra AI and others in Network Detection and Response (NDR). Updated: July 2026.
908,800 professionals have used our research since 2012.