I am working with Darktrace in concert with F5, Tufin, and SAP security products.
Senior Security & Infrastructure Architect at a retailer with 10,001+ employees
Built-in AI analytics helps give you total visibility of your architecture assets
Pros and Cons
- "AI analytics are built directly into the product."
- "It is a very simple product to use."
- "It is really good; it has given us a view of our company and it has actually caught a couple of people that were doing data exfiltration and stealing data from our company, and we caught them doing it in the act in live time, which is just incredible."
- "A reporting portal could be a great addition to help customize reports."
- "The only thing that I can think of that would improve it would be if they had a better visualization and a reporting portal."
What is our primary use case?
What is most valuable?
One of the things I like most about Darktrace is the fact that it has AI analytics built into it. That merger allows us to have a look at the way that things are working within our company. The fact that it is self-learning is a benefit that has given me 100% visibility across the cloud, my SaaS (Software as a Service) providers, my Office 365 services, within my data center, and also on-premises.
We are also working with Darktrace on their alpha and beta testing for endpoint security. That is a model that we are thinking about incorporating later.
Another thing I really like is that it is a very simple product to use. It is very logical and it works beautifully.
What needs improvement?
The product is really excellent all around and I can not fault it. The only thing that I can think of that would improve it would be if they had a better visualization and a reporting portal.
What I mean by better visualization is it could help map our services and endpoints in a better way. At the moment it is fairly complex in the way that it represents our network devices. It would help if there was in a slightly more logical way of visualizing the assets as opposed to the way it is currently being done.
We are talking to Dartrace at the moment about putting in a reporting portal so we can have technical reports separate from management reports. Some of our management gets information in reports that they do not need to see. When they see it they will not understand what it means. Targeting — or customizing — the reports that we make can allow us to have the content fit what the recipient needs to see without distracting extras.
Apart from those potential additions, this product is absolutely excellent. It has given us everything we have wanted. Darktrace, as a company, has been really good. Our account manager is totally responsive. The support teams have been really conscientious.
Fingers crossed. So far Darktrace has proven to be a great asset.
For how long have I used the solution?
We have been using Darktrace for about four-and-a-half years now.
Buyer's Guide
Darktrace
June 2026
Learn what your peers think about Darktrace. Get advice and tips from experienced pros sharing their opinions. Updated: June 2026.
902,270 professionals have used our research since 2012.
What do I think about the scalability of the solution?
The scalability of Darktrace is excellent. If we want to increase the IP count it is just a matter of negotiating the licenses. We have already upgraded to the largest model of their hardware, and scaling is nice and simple in that situation.
How are customer service and support?
The technical support people have been good. They understand exactly what we need every time. So I am very happy about that.
If you ask a question and support can not answer straight away, they will say that they will be back to you within 'X' number of hours. Then they actually do it, which is not something that you get a lot of in technical support teams. Normally people do not stick to what they say they are going to do.
How was the initial setup?
Our deployment took probably the best part of three months. But the amount of time was more a matter of our constraints, not a problem with Darktrace and the difficulty of deployment. We are operating in 13 countries and it was the scale of it that took additional time. Smaller deployments will take less time.
What other advice do I have?
If someone asked me for advice about the product I would definitely highly recommend it to those who need this type of solution. It is really good. It has given us a view of our company and it has actually caught a couple of people that were doing data exfiltration and stealing data from our company. We caught them doing it in the act in live time, which is just incredible.
On the scale from one to ten where one is the worst and ten is the best, I would definitely rate this product at the moment as a ten. It is a perfect solution for our needs.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Manager, Information Security at a manufacturing company with 1,001-5,000 employees
A hybrid quality solution for email, network and cloud security
What is our primary use case?
We use the solution for email, network and cloud security.
What is most valuable?
The network security and AR response are the main things.
What needs improvement?
The product is expensive, but it is a very good product. The user interface is also good.
For how long have I used the solution?
I have been using Darktrace for two years.
What do I think about the stability of the solution?
The product is stable.
I rate the solution’s stability a nine out of ten.
What do I think about the scalability of the solution?
The solution’s scalability is pretty straightforward. We’ve around 3500 users using this solution.
I rate the solution’s scalability an eight out of ten.
How are customer service and support?
I contact technical support on occasion and ask questions, and they are responsive. I can get them on call or email. I’m very happy with the support.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup was quick and painless.
What's my experience with pricing, setup cost, and licensing?
The product is very expensive.
What other advice do I have?
The product is expensive, but it is a quality product. If you look apart from the cost, it's a good product followed by very good support. If you're willing to spend the money, it is worth consideration.
Overall, I rate the solution an eight out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Darktrace
June 2026
Learn what your peers think about Darktrace. Get advice and tips from experienced pros sharing their opinions. Updated: June 2026.
902,270 professionals have used our research since 2012.
Chief ICT Officer at Barbados Public Workers Cooperative Credit Union Ltd
Helps us with network traffic visibility
Pros and Cons
- "I am impressed with the product's ability to give insights into network traffic."
- "I would like to see a feature where the tool ingests information from an anti-malware product that is present at the endpoint."
What is our primary use case?
The tool offers us visibility into network traffic.
How has it helped my organization?
The tool gives us alerts whenever an admin is trying to connect.
What is most valuable?
I am impressed with the product's ability to give insights into network traffic.
What needs improvement?
I would like to see a feature where the tool ingests information from an anti-malware product that is present at the endpoint.
For how long have I used the solution?
I am using the product since September.
What do I think about the stability of the solution?
The solution is stable.
How was the initial setup?
The tool's deployment is easy.
What's my experience with pricing, setup cost, and licensing?
The tool's pricing is costly.
What other advice do I have?
I would rate the tool a nine out of ten. You need to use the tool on a trial basis so that you can get comfortable with it.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
CEO at VERINET
Provides great network protection, is innovative and flexible
Pros and Cons
- "Provides great network protection."
- "Needs to improve its collaboration with local partners."
What is our primary use case?
We are a consulting company and sell Darktrace to our customers. Our company is in West Africa. I'm the company CEO.
What is most valuable?
Darktrace can observe networks and respond to those observations. It provides great network protection, is innovative and flexible.
What needs improvement?
I think Darktrace needs to improve its collaboration with local partners. That would include training and improving the technical skills of vendors. Desktop and mobile device protection could also be improved.
For how long have I used the solution?
We've been selling this solution for two years.
What do I think about the stability of the solution?
The solution is stable.
How are customer service and support?
Our customers report that the technical support is very good.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is reasonably straightforward although the process requires some preparation beforehand. The size of deployment varies greatly, we've deployed in companies ranging in size from 200 up to 5,000 users.
What's my experience with pricing, setup cost, and licensing?
Licensing costs are expensive, although I think the high cost is partly a currency issue because we're based in West Africa.
What other advice do I have?
I rate this solution eight out of 10.
Disclosure: My company has a business relationship with this vendor other than being a customer.
Chief Information Security Officer at a consultancy with 201-500 employees
The solution's reports are intuitive and informative
Pros and Cons
- "The most valuable feature is the solution's ability to trim out the false positives and point your attention to the real important stuff."
- "This solution can reduce the resources required to run a security operation center by two-thirds."
- "The level of tracking within the network from the transmission level up to the machine level can use improvement."
What is most valuable?
The most valuable feature is the solution's ability to trim out the false positives and point your attention to the real important stuff.
What needs improvement?
The level of tracking within the network from the transmission level up to the machine level can use improvement.
The solution works similarly to an intrusion prevention system at the network level. It would be a nice improvement to have an add-on that can act at the post level.
The cost of the solution can be reduced to make it more appealing to customers.
For how long have I used the solution?
I have been using the solution for two and a half years.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
The solution is scalable but costly to do.
How are customer service and support?
The customer support team is responsive and tries to resolve the issue proactively.
How was the initial setup?
The setup is straightforward and easy to integrate.
What's my experience with pricing, setup cost, and licensing?
The setup cost for the entry-level is pricy.
What other advice do I have?
I rate the solution a nine out of ten.
It takes a team of five to maintain the solution.
This solution can reduce the resources required to run a security operation center by two-thirds.
The solution's reports are intuitive and informative.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Head of Strategic Business Development at Grove
Simple to set up with a useful antigena and threat visualizer
Pros and Cons
- "It's a very stable product."
- "The product is extremely stable and mature."
- "In the next version, I'd like to see penetration testing."
What is our primary use case?
We primarily use this solution as part of our security.
What is most valuable?
The cyber AI analyst, antigena, and threat visualizer are the most valuable aspects of the solution.
The setup is very simple.
It's a very stable product.
Users can expand it as needed.
What needs improvement?
I don't have any thoughts on where there might be a need for improvement.
In the next version, I'd like to see penetration testing. They already have that coming up, so it'll be good to see that.
For how long have I used the solution?
I've been dealing with the solution for three to four years.
What do I think about the stability of the solution?
The product is extremely stable and mature. There are no bugs or glitches. It doesn't crash or freeze.
What do I think about the scalability of the solution?
The product is very scalable across all vectors of the digital estate.
How was the initial setup?
The initial implementation process is extremely easy. It's extremely seamless and very easy to set up. It's up and running in less than an hour.
What other advice do I have?
I'm a partner and reseller.
We are using the latest version of the solution.
It's deployed on-premise, in the cloud, in email, via SaaS, and on the endpoint.
I'd advise potential new users to use antigena. It's a handy tool to stop cyber attacks.
I'd rate the solution ten out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer.
Information Technology Support Engineer at CCTZ
Secure, beneficial unusual email detection, and high availability
Pros and Cons
- "The most valuable features of Darktrace are the tracing of unusual external emails and monitoring the local network."
- "Darktrace has helped our organization be secure from network spam and attacks."
- "Darktrace could improve its features, such as monitoring and detecting ransomware."
What is our primary use case?
Darktrace is used for network security.
How has it helped my organization?
Darktrace has helped our organization be secure from network spam and attacks.
What is most valuable?
The most valuable features of Darktrace are the tracing of unusual external emails and monitoring the local network.
What needs improvement?
Darktrace could improve its features, such as monitoring and detecting ransomware.
For how long have I used the solution?
I have been using Darktrace for approximately three months.
What do I think about the stability of the solution?
Darktrace is a stable solution.
What do I think about the scalability of the solution?
The scalability of Darktrace is good.
We have four companies that are using this solution.
How are customer service and support?
I have not used the support from Darktrace.
How was the initial setup?
The initial setup of Darktrace was simple. The deployment of Darktrace took approximately two weeks.
What's my experience with pricing, setup cost, and licensing?
I am using a demo of Darktrace for deployment and testing which is free.
Which other solutions did I evaluate?
My company chose Darktrace because it helped other companies that needed some help with metrics monitoring and spam monitoring.
What other advice do I have?
I would recommend this solution to others.
I rate Darktrace a ten out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
ICT Coordinator at a tech services company with 51-200 employees
A smart, autonomous solution that monitors and identifies threats based on abnormal patterns and proactively blocks them
Pros and Cons
- "It is autonomous. So, it learns. It uses algorithms and AI to learn the common behavioral patterns on the network, and it is able to identify threats based on abnormal patterns."
- "It is expensive, but everything else has been great so far."
What is our primary use case?
We have a Darktrace appliance, and we are using it to monitor threats in our network environment. It has the Antigena module installed. So, it does not only monitor but also proactively blocks when there is a physical threat.
It scans the entire network, which includes all IP addresses, subnets, and users. It is very smart for all different segments of the network.
What is most valuable?
It is autonomous. So, it learns. It uses algorithms and AI to learn the common behavioral patterns on the network, and it is able to identify threats based on abnormal patterns.
What needs improvement?
It is expensive, but everything else has been great so far. It is fine for now for what we need it to do.
For how long have I used the solution?
I have been using this solution for about a year and a half.
How are customer service and support?
Their support has been great so far.
How was the initial setup?
It was very easy and straightforward.
What's my experience with pricing, setup cost, and licensing?
It is expensive.
What other advice do I have?
It is good. Recently, they have made it more sensitive for tracking or identifying all the behaviors or patterns. So, you're getting more alerts out of it, which I guess is a good thing.
I would rate it a ten out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Security Manager at Yarix S.r.l.
Simple to set up with an excellent Enterprise Immune System and Cyber AI Analyst
Pros and Cons
- "The initial setup is simple."
- "The Enterprise Immune System, Cyber Artificial Intelligence Analyst, and Antigena technology are all very useful aspects of the product."
- "There aren't so many third-party vendor platforms natively integrated with the platform."
- "The solution could have better integration capabilities."
What is our primary use case?
We primarily use the solution for network traffic analysis, to identify potential threats running on our customers' ICP environment, and to generate alerts to our SOC.
What is most valuable?
The Enterprise Immune System, Cyber Artificial Intelligence Analyst, and Antigena technology are all very useful aspects of the product.
The solution is quite stable.
The scalability is great.
The initial setup is simple.
What needs improvement?
It can always improve here and there, however, in general, it's already quite complete.
The solution could have better integration capabilities. There aren't so many third-party vendor platforms natively integrated with the platform.
They need a better-automated response setup.
For how long have I used the solution?
I've been using the solution for a few years at this point.
What do I think about the stability of the solution?
The solution is stable. There are no bugs or glitches. it doesn't crash or freeze. It's reliable.
What do I think about the scalability of the solution?
I've found the solution's scalability to be very good. It can scale from one endpoint to many thousands of endpoints. We have a lot of implementations that are quite sizable for our customers.
We have 20 to 30 clients on the solution at this time.
How are customer service and support?
Technical support is fine. That said, we are very skilled and therefore we don't require the help of technical support all that often.
How was the initial setup?
We find the implementation process to be quite painless. We only had to identify the right place in which put the appliances, and then they start learning.
We were able to deploy same day. it's a pretty fast process.
We have a team dedicated to the delivery that manages Darktrace and other technical solutions and they are in charge of implementation in the customers' ICP environment. More or less, we have more than ten people handling this.
What about the implementation team?
We are capable of handling implementations for our clients.
What's my experience with pricing, setup cost, and licensing?
Our clients pay a yearly licensing fee. I can't speak to the exact costs involved. We have a variety of clients who have licenses with Darktrace.
What other advice do I have?
We are partners of Darktrace.
We utilize both cloud and on-premises deployments.
I would recommend the solution to other companies and clients.
I'd rate the product at a ten out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Network Security Engineer at Social Security Commission
Antigena feature offers immediate and helpful response
Pros and Cons
- "I like the Antigena feature in Darktrace, as it offers immediate response and is helpful."
- "You can have a one-person IT team and with Darktrace, you can get notification of potential threats that are incoming or are already happening on the network."
- "The interface is too mathematical and it should be simplified."
What is our primary use case?
Darktrace makes up part of our security solution and it is able to operate without intervention from IT staff. Antigena feature for automatic response is awesome.
How has it helped my organization?
You can have a one-person IT team and with Darktrace, you can get notification of potential threats that are incoming or are already happening on the network.
What is most valuable?
I like the Antigena feature in Darktrace, as it offers immediate response and is helpful.
This product collects more data than your traditional type of software, which is useful for us.
Darktrace picks up anomalies as soon as they arise.
What needs improvement?
The interface is too mathematical and it should be simplified. If you are a seasoned user then you would know where to go, but you have to learn it first. The terminologies being used are mostly numbers. In general, it could be more user-friendly. The GUI can be more simplified and the sections on the interface can be better organised. Usability and visibility of features can improve the skills of administrators and the product will be a preferred solution and ratings will increase.
For how long have I used the solution?
My experience with Darktrace is short because we are just implementing it now.
What do I think about the stability of the solution?
The stability of Darktrace is fine.
What do I think about the scalability of the solution?
We do not intend to scale. Scalability is more of a contract issue that comes into play if you want to add nodes to the system. We are opting for a specific number of nodes or endpoints, which we would be able to keep for quite a number of years. I don't expect that we will expand that much, so scalability should not be an issue.
How are customer service and support?
We have been in contact with technical support using different platforms. We have dealt with them using Microsoft Teams, Zoom, WhatsApp and via email.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
No
How was the initial setup?
The initial setup was quite simple and straightforward, taking about an hour to complete. After that, the port modeling took perhaps an hour or two.
What about the implementation team?
Vendor Team
What's my experience with pricing, setup cost, and licensing?
If you consider the features and the cost of market leaders, we are satisfied with the pricing.
Which other solutions did I evaluate?
Snode
What other advice do I have?
I would rate this solution an eight out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Download our free Darktrace Report and get advice and tips from experienced pros
sharing their opinions.
Updated: June 2026
Product Categories
Network Detection and Response (NDR) Email Security Intrusion Detection and Prevention Software (IDPS) Network Traffic Analysis (NTA) Extended Detection and Response (XDR) Cloud Security Posture Management (CSPM) Cloud-Native Application Protection Platforms (CNAPP) Attack Surface Management (ASM) AI-Powered Cybersecurity Platforms AI ObservabilityPopular Comparisons
Fortinet FortiGate
Cloudflare
CrowdStrike Falcon
Cortex XDR by Palo Alto Networks
Datadog
Wazuh
SentinelOne Singularity Cloud Security
Cloudflare One
Dynatrace
Microsoft Defender for Cloud
SentinelOne Singularity Endpoint
Prisma Cloud by Palo Alto Networks
IBM Security QRadar
Buyer's Guide
Download our free Darktrace Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- I'm building a next-gen AI powered threat intelligence platform. What's missing from existing solutions?
- Which is better - SentinelOne or Darktrace?
- What are the pros and cons of Darktrace vs CrowdStrike Falcon vs alternative EPP solutions?
- Which alternative solutions (other than Darktrace) do you recommend for an SMB?
- How does Crowdstrike Falcon compare with Darktrace?
- How does Network Detection and Response (NDR) Differ from SIEM?
- What aspects of network security are more concerning to small and medium-sized enterprises?
- What are the best practices for Security Operations Center (SOC)?
- What is the future of the Network Operation Center (NOC)?
- Which alternative solutions (other than Darktrace) do you recommend for an SMB?
















