Try our new research platform with insights from 80,000+ expert users

Darktrace vs Sublime Security comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 28, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Darktrace
Ranking in Email Security
9th
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
84
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (2nd), Network Traffic Analysis (NTA) (1st), Network Detection and Response (NDR) (1st), Extended Detection and Response (XDR) (6th), Cloud Security Posture Management (CSPM) (11th), Cloud-Native Application Protection Platforms (CNAPP) (9th), Attack Surface Management (ASM) (4th), AI-Powered Cybersecurity Platforms (4th), AI Observability (9th)
Sublime Security
Ranking in Email Security
23rd
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
3
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of February 2026, in the Email Security category, the mindshare of Darktrace is 2.2%, down from 2.9% compared to the previous year. The mindshare of Sublime Security is 1.6%, up from 1.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Email Security Market Share Distribution
ProductMarket Share (%)
Darktrace2.2%
Sublime Security1.6%
Other96.2%
Email Security
 

Featured Reviews

AM
Technical Consultant - Unix Platform Services at BITS AND BYTE IT CONSULTING PVT LTD
Consistent threat hunting and anomaly detection deliver valuable insights for network security management
In terms of improvement for Darktrace, pricing is the main concern. Pricing bothers me and this is one of the major factors when choosing a solution. When we get feedback from customers, that's the only felt need. When we factor in Darktrace, we do it only limited. We put it on where the perimeters and connections are, but still, some gray areas are left out, especially if we have multiple branches. We need Darktrace on each branch to get the data out, and I suggest having some kind of a centralized product that gets data from multiple sources to aggregate and provide the data.
reviewer2764257 - PeerSpot reviewer
Manager Security Operations Center at a educational organization with 10,001+ employees
Improves decision-making with clear verdict explanations and works well across multiple environments
I know that a lot of time has been invested in improving the efficacy of the platform, and it shows; it performs very well. Moving forward, I think our focus should be on how to achieve better integration with other systems. While they do provide API-level access and web hooks, I believe more out-of-the-box integrations with SOAR platforms and SIEM tools would enhance Sublime's value. This would allow it to be integrated more closely with the workflows of various teams and could potentially increase its market appeal. From my perspective, the tool itself functions exceptionally well, which gives me confidence in the system. I want to see this functionality extend to other tools that I use, enabling faster automation and improved workflows for the team, particularly from a security operations standpoint. I have no critiques regarding the tool itself. They've done an outstanding job and are maintaining high quality throughout their development process. They have a great product, and it's essential that they continue to uphold that standard, even though it requires significant effort.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I like the Antigena feature in Darktrace, as it offers immediate response and is helpful."
"Darktrace's most valuable features are that it understands the network environment and is able to trace the traffic and alert on anomalies."
"I find it very good in the way that they show the past events, including the attack history."
"The most valuable feature of Darktrace is its ability to detect and counter threats before they occur."
"t was pretty as far as the granularity of what you were getting out of it."
"The ability to detect activity on the network is very useful to us. Even if it's not necessarily an illegal activity, if it is abnormal activity, it is able to detect it and notify us."
"The most valuable feature has been the behavioral analytics that allows us to monitor all the traffic."
"Darktrace is very stable, and I would rate its stability a ten out of ten."
"I like its ability to detect and block."
"Overall, the auditability and the ability to evaluate the information in Sublime through various mechanisms made me very comfortable with setting these capabilities to auto-remediation."
"So far, I do not see any problem with Sublime Security's support or their customer service."
 

Cons

"Darktrace does not have any capabilities to configure."
"They just need to make it a little bit more accurate as far as their alerts are concerned. It does generate some false positives that you have to tune. You have to do a lot of tuning when you first get it because of the false positives, but once it is all tuned up and ready to go, it will do its thing from there."
"The cost is a bit on the higher side."
"It would be useful if there was a way to check to see if there are certain devices that are not in sync with the solution. I'm not sure if this is an option or not."
"I think there is some MSSP missing."
"There aren't so many third-party vendor platforms natively integrated with the platform."
"Although we haven't detected any network threats since implementing Darktrace, we are unsure of its efficacy. It would be beneficial if the solution could offer additional details to the user regarding any potential or prevented threats. Additionally, there could be better search tools and integration."
"Darktrace needs significant improvement in its notification capabilities."
"With Sublime Security, so far, I have seen a lot of false positives, and it is something that can bring a lot of administrative overhead."
"The ability for users to look at their own quarantine box needs improvement. So at the moment, it doesn't give you the ability to see every email that has been quarantined. No end-user has the ability to see what's being quarantined. It's only people who have access to the back-end platform that can actually see what has been quarantined. The end user doesn't know if they have an email that has been quarantined, only if they're expecting something that didn't come through."
"While they do provide API-level access and web hooks, I believe more out-of-the-box integrations with SOAR platforms and SIEM tools would enhance Sublime's value."
 

Pricing and Cost Advice

"Prior to negotiating, Darktrace offered their appliance and service for $80,000 per year."
"It is expensive."
"The pricing is quite high, estimated at around $350,000 per year."
"All of the other modules, such as the licensing modules, are on par. It's one for one."
"The price of the solution is not cheap. It is not a one-time purchase, there is a subscription that needs to be paid every one to five years depending on your choice. It is expensive but you can reduce the price by only using the services that you want."
"The pricing is subscription-based and it is high."
"The pricing is a little high compared to the competition."
"Our customers feel that the price of Darktrace is quite high compared to other solutions."
"I would rate the pricing of Sublime Security as a seven out of ten. It is reasonably well-priced."
report
Use our free recommendation engine to learn which Email Security solutions are best for your needs.
881,707 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
11%
Manufacturing Company
9%
Financial Services Firm
8%
Government
7%
Computer Software Company
11%
Financial Services Firm
10%
Marketing Services Firm
8%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business45
Midsize Enterprise19
Large Enterprise29
No data available
 

Questions from the Community

How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What do you like most about Darktrace?
A very useful feature in Darktrace for real-time threat analysis is the packet inspection that analyzes the packet traffic in real time.
What is your experience regarding pricing and costs for Sublime Security?
It's very reasonable. It's competitive with its peers, especially for the number of mailboxes we have.
What needs improvement with Sublime Security?
I know that a lot of time has been invested in improving the efficacy of the platform, and it shows; it performs very well. Moving forward, I think our focus should be on how to achieve better inte...
What is your primary use case for Sublime Security?
The basic functionality provided by Microsoft Defender and its email protections was insufficient for our needs. While it effectively handled common spam and phishing attempts, we required a soluti...
 

Overview

 

Sample Customers

Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
Snowflake, Spotify, Anduril, Elastic, Compass, Encompass Health, Zscaler, Ovo Energy, Personio, Beneteler 
Find out what your peers are saying about Darktrace vs. Sublime Security and other solutions. Updated: February 2026.
881,707 professionals have used our research since 2012.