Try our new research platform with insights from 80,000+ expert users

Darktrace vs Fortinet FortiNDR comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 21, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Darktrace
Ranking in Network Detection and Response (NDR)
1st
Average Rating
8.2
Reviews Sentiment
7.2
Number of Reviews
82
Ranking in other categories
Email Security (8th), Intrusion Detection and Prevention Software (IDPS) (2nd), Network Traffic Analysis (NTA) (1st), Extended Detection and Response (XDR) (6th), Cloud Security Posture Management (CSPM) (14th), Cloud-Native Application Protection Platforms (CNAPP) (10th), Attack Surface Management (ASM) (4th), AI-Powered Cybersecurity Platforms (2nd)
Fortinet FortiNDR
Ranking in Network Detection and Response (NDR)
12th
Average Rating
9.6
Reviews Sentiment
7.7
Number of Reviews
2
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of October 2025, in the Network Detection and Response (NDR) category, the mindshare of Darktrace is 22.3%, down from 25.0% compared to the previous year. The mindshare of Fortinet FortiNDR is 4.1%, up from 0.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Network Detection and Response (NDR) Market Share Distribution
ProductMarket Share (%)
Darktrace22.3%
Fortinet FortiNDR4.1%
Other73.6%
Network Detection and Response (NDR)
 

Featured Reviews

Malebo Lethoba Group - PeerSpot reviewer
Have found the AI analyst and detection functions highly valuable for network operations while managing complexity in initial setup
The functions I find most valuable in Darktrace are the AI analyst as well as the detection.The autonomous response capabilities of Darktrace are not crucial for me because it doesn't work in a network where there are no core switches. In a modern network, the autonomous response doesn't work, especially when sitting in a shared data center.If I'm running a traditional network where I am not in a shared data center with a layer two dedicated for my resources, then it can work for me. However, if I am in a data center where I don't have layer two, it becomes an issue because the autonomous response is reliant on sending spoofed TCP resets to my core switch to block traffic, which is a major issue.
Anton Anton - PeerSpot reviewer
Network detection enhances security while seamless integration boosts utility
I use Fortinet FortiNDR for its Network Detection features, primarily with FortiGate on-premises. However, I do not handle day-to-day operations myself; my team manages the tools. In general, there is no issue with FortiGate in our company Some of the valuable features include FortiGate's Network…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The Antigena feature is most valuable. Once it learns your environment, Antigena can step in and block a denial of service attack, a ransomware attack, or just about anything that doesn't belong in the environment. It can detect any type of attack that hits the environment because it understands what normal looks like for the network. It is very useful for an autonomous response."
"It is autonomous. So, it learns. It uses algorithms and AI to learn the common behavioral patterns on the network, and it is able to identify threats based on abnormal patterns."
"Implementing this solution has given us confidence that we are secure."
"I can rate Darktrace's technical support as one of the best products in the world."
"The most valuable feature of Darktrace and the most valuable feature is the artificial intelligence module because that is the tool that determines automatically if there is any risk or not in the network."
"The product can scale."
"Ability to see events and exactly what traffic or website the device had tried to connect to that raised the alert or issue."
"The solution is stable. We've never had any problems with it."
"Using Fortinet FortiNDR as a bundle is cost-effective, providing a complete package of tools."
"The dashboards are very informative compared to other solutions like Cisco, providing valuable insights into network threats."
 

Cons

"The solution can improve the reporting."
"Its threat analyzer could be better. It should also have agents. They should improve this product by installing agents for the machine to get more visibility. Currently, they are monitoring only the network. They should also monitor the agents from inside. It should also have a better pricing plan because it is an expensive product."
"It would be helpful if they could recognize incidents and simplify the customer's challenge to identify what is happening."
"They just need to make it a little bit more accurate as far as their alerts are concerned. It does generate some false positives that you have to tune. You have to do a lot of tuning when you first get it because of the false positives, but once it is all tuned up and ready to go, it will do its thing from there."
"The management user interface needs improvement."
"The main portal needs improvement as it is difficult to use."
"There are still some issues with the network capturing or blocking traffic even after implementing exceptions. It requires more learning in this area."
"Getting logs from different sources can be a challenge."
"I would like to see the inclusion of sandboxing in the bundling. Currently, sandbox is not included in our package."
"There is room for improvement in third-party integrations, particularly with other vendors like Check Point and Palo Alto."
 

Pricing and Cost Advice

"Darktrace is quite an expensive solution."
"It is inexpensive considering what it can do and the competition."
"I am using a demo of Darktrace for deployment and testing which is free."
"This solution is expensive."
"We've budgeted about 50,000 Kuwaiti dinars for the solution. That is a yearly operating cost."
"I'm unfamiliar with the exact cost, but we have a yearly license and had to pay for Darktrace's services before the deployment. The product is very expensive, so some organizations can't afford to pay the total amount directly, meaning they often seek a partner or pay in installments, which increases the price more."
"The pricing is subscription-based and it is high."
"Prior to negotiating, Darktrace offered their appliance and service for $80,000 per year."
Information not available
report
Use our free recommendation engine to learn which Network Detection and Response (NDR) solutions are best for your needs.
868,787 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Manufacturing Company
9%
Financial Services Firm
8%
Government
7%
Computer Software Company
17%
Manufacturing Company
10%
Financial Services Firm
7%
Outsourcing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business44
Midsize Enterprise19
Large Enterprise29
No data available
 

Questions from the Community

How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What do you like most about Darktrace?
A very useful feature in Darktrace for real-time threat analysis is the packet inspection that analyzes the packet traffic in real time.
What is your experience regarding pricing and costs for Fortinet FortiNDR?
Using Fortinet FortiNDR as a bundle is cost-effective, providing a complete package of tools.
What needs improvement with Fortinet FortiNDR?
I would like to see the inclusion of sandboxing in the bundling. Currently, sandbox is not included in our package.
What is your primary use case for Fortinet FortiNDR?
I use Fortinet FortiNDR ( /products/fortinet-fortindr-reviews ) for its Network Detection features, primarily with FortiGate ( /products/fortinet-fortigate-reviews ) on-premises. However, I do not ...
 

Overview

 

Sample Customers

Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
Information Not Available
Find out what your peers are saying about Darktrace vs. Fortinet FortiNDR and other solutions. Updated: September 2025.
868,787 professionals have used our research since 2012.