The tool offers us visibility into network traffic.
Chief ICT Officer at a financial services firm with 201-500 employees
Helps us with network traffic visibility
Pros and Cons
- "I am impressed with the product's ability to give insights into network traffic."
- "I would like to see a feature where the tool ingests information from an anti-malware product that is present at the endpoint."
What is our primary use case?
How has it helped my organization?
The tool gives us alerts whenever an admin is trying to connect.
What is most valuable?
I am impressed with the product's ability to give insights into network traffic.
What needs improvement?
I would like to see a feature where the tool ingests information from an anti-malware product that is present at the endpoint.
Buyer's Guide
Darktrace
January 2026
Learn what your peers think about Darktrace. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,114 professionals have used our research since 2012.
For how long have I used the solution?
I am using the product since September.
What do I think about the stability of the solution?
The solution is stable.
How was the initial setup?
The tool's deployment is easy.
What's my experience with pricing, setup cost, and licensing?
The tool's pricing is costly.
What other advice do I have?
I would rate the tool a nine out of ten. You need to use the tool on a trial basis so that you can get comfortable with it.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
CEO at a tech consulting company with 1-10 employees
Provides great network protection, is innovative and flexible
Pros and Cons
- "Provides great network protection."
- "Needs to improve its collaboration with local partners."
What is our primary use case?
We are a consulting company and sell Darktrace to our customers. Our company is in West Africa. I'm the company CEO.
What is most valuable?
Darktrace can observe networks and respond to those observations. It provides great network protection, is innovative and flexible.
What needs improvement?
I think Darktrace needs to improve its collaboration with local partners. That would include training and improving the technical skills of vendors. Desktop and mobile device protection could also be improved.
For how long have I used the solution?
We've been selling this solution for two years.
What do I think about the stability of the solution?
The solution is stable.
How are customer service and support?
Our customers report that the technical support is very good.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is reasonably straightforward although the process requires some preparation beforehand. The size of deployment varies greatly, we've deployed in companies ranging in size from 200 up to 5,000 users.
What's my experience with pricing, setup cost, and licensing?
Licensing costs are expensive, although I think the high cost is partly a currency issue because we're based in West Africa.
What other advice do I have?
I rate this solution eight out of 10.
Disclosure: My company has a business relationship with this vendor other than being a customer.
Buyer's Guide
Darktrace
January 2026
Learn what your peers think about Darktrace. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,114 professionals have used our research since 2012.
Chief Information Security Officer at a consultancy with 201-500 employees
The solution's reports are intuitive and informative
Pros and Cons
- "The most valuable feature is the solution's ability to trim out the false positives and point your attention to the real important stuff."
- "The level of tracking within the network from the transmission level up to the machine level can use improvement."
What is most valuable?
The most valuable feature is the solution's ability to trim out the false positives and point your attention to the real important stuff.
What needs improvement?
The level of tracking within the network from the transmission level up to the machine level can use improvement.
The solution works similarly to an intrusion prevention system at the network level. It would be a nice improvement to have an add-on that can act at the post level.
The cost of the solution can be reduced to make it more appealing to customers.
For how long have I used the solution?
I have been using the solution for two and a half years.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
The solution is scalable but costly to do.
How are customer service and support?
The customer support team is responsive and tries to resolve the issue proactively.
How was the initial setup?
The setup is straightforward and easy to integrate.
What's my experience with pricing, setup cost, and licensing?
The setup cost for the entry-level is pricy.
What other advice do I have?
I rate the solution a nine out of ten.
It takes a team of five to maintain the solution.
This solution can reduce the resources required to run a security operation center by two-thirds.
The solution's reports are intuitive and informative.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Information Technology Support Engineer at a computer software company with 51-200 employees
Secure, beneficial unusual email detection, and high availability
Pros and Cons
- "The most valuable features of Darktrace are the tracing of unusual external emails and monitoring the local network."
- "Darktrace could improve its features, such as monitoring and detecting ransomware."
What is our primary use case?
Darktrace is used for network security.
How has it helped my organization?
Darktrace has helped our organization be secure from network spam and attacks.
What is most valuable?
The most valuable features of Darktrace are the tracing of unusual external emails and monitoring the local network.
What needs improvement?
Darktrace could improve its features, such as monitoring and detecting ransomware.
For how long have I used the solution?
I have been using Darktrace for approximately three months.
What do I think about the stability of the solution?
Darktrace is a stable solution.
What do I think about the scalability of the solution?
The scalability of Darktrace is good.
We have four companies that are using this solution.
How are customer service and support?
I have not used the support from Darktrace.
How was the initial setup?
The initial setup of Darktrace was simple. The deployment of Darktrace took approximately two weeks.
What's my experience with pricing, setup cost, and licensing?
I am using a demo of Darktrace for deployment and testing which is free.
Which other solutions did I evaluate?
My company chose Darktrace because it helped other companies that needed some help with metrics monitoring and spam monitoring.
What other advice do I have?
I would recommend this solution to others.
I rate Darktrace a ten out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Network Security Engineer at a political organization with 201-500 employees
Antigena feature offers immediate and helpful response
Pros and Cons
- "I like the Antigena feature in Darktrace, as it offers immediate response and is helpful."
- "The interface is too mathematical and it should be simplified."
What is our primary use case?
Darktrace makes up part of our security solution and it is able to operate without intervention from IT staff. Antigena feature for automatic response is awesome.
How has it helped my organization?
You can have a one-person IT team and with Darktrace, you can get notification of potential threats that are incoming or are already happening on the network.
What is most valuable?
I like the Antigena feature in Darktrace, as it offers immediate response and is helpful.
This product collects more data than your traditional type of software, which is useful for us.
Darktrace picks up anomalies as soon as they arise.
What needs improvement?
The interface is too mathematical and it should be simplified. If you are a seasoned user then you would know where to go, but you have to learn it first. The terminologies being used are mostly numbers. In general, it could be more user-friendly. The GUI can be more simplified and the sections on the interface can be better organised. Usability and visibility of features can improve the skills of administrators and the product will be a preferred solution and ratings will increase.
For how long have I used the solution?
My experience with Darktrace is short because we are just implementing it now.
What do I think about the stability of the solution?
The stability of Darktrace is fine.
What do I think about the scalability of the solution?
We do not intend to scale. Scalability is more of a contract issue that comes into play if you want to add nodes to the system. We are opting for a specific number of nodes or endpoints, which we would be able to keep for quite a number of years. I don't expect that we will expand that much, so scalability should not be an issue.
How are customer service and support?
We have been in contact with technical support using different platforms. We have dealt with them using Microsoft Teams, Zoom, WhatsApp and via email.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
No
How was the initial setup?
The initial setup was quite simple and straightforward, taking about an hour to complete. After that, the port modeling took perhaps an hour or two.
What about the implementation team?
Vendor Team
What's my experience with pricing, setup cost, and licensing?
If you consider the features and the cost of market leaders, we are satisfied with the pricing.
Which other solutions did I evaluate?
Snode
What other advice do I have?
I would rate this solution an eight out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Security Operations Manager at a financial services firm with 5,001-10,000 employees
Good threat detection, and technical support and is reliable
Pros and Cons
- "Darktrace is very useful for us because it has a large number of models for detecting threats."
- "Darktrace requires numerous configurations. It would be beneficial if the configuration could be made simpler."
What is most valuable?
Darktrace is a very good solution.
Darktrace is very useful for us because it has a large number of models for detecting threats.
What needs improvement?
There are numerous false positives.
Darktrace requires numerous configurations. It would be beneficial if the configuration could be made simpler.
For how long have I used the solution?
I have been using Darktrace for three years.
What do I think about the stability of the solution?
Darktrace is very stable.
What do I think about the scalability of the solution?
Darktrace is easy to scale. It's a scalable solution.
How are customer service and support?
Technical support is good.
How was the initial setup?
The initial setup is difficult.
It took three or four months to deploy.
What other advice do I have?
People must first examine the network architecture in order to make the best implementation.
Darktrace is a very good solution, I would rate it a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
SOC Manager at a computer software company with 51-200 employees
Good visibility, secure, with a variety of modules for investigating various behaviors
Pros and Cons
- "The platform has many modules, and each module examines a different situation in the behavior."
- "It's a very complex platform."
What is our primary use case?
Darktrace is a platform that is used to check all infrastructures. They check the compartmental in the network.
What is most valuable?
It is a very good platform for understanding what is going on in your network or in your environment because it checks all the activities. This is the same when I use activities on the device, server, network, and web, it checks it all.
The platform has many modules, and each module examines a different situation in the behavior.
What needs improvement?
It's a very complex platform.
For how long have I used the solution?
I have been working with Darktrace for approximately one year.
What do I think about the stability of the solution?
Darktrace is a stable product.
What do I think about the scalability of the solution?
It's a scalable platform.
How are customer service and support?
The technical support is not very good. I believe that the support must be very quick and operational. Support will need to grow in Italy, but I'm not sure about the other side.
What's my experience with pricing, setup cost, and licensing?
It's an expensive solution.
What other advice do I have?
While it is complex, and difficult to use, once you understand the correct way to use it, it's a very good platform. I would rate Darktrace a nine out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer. Integrator
System Architect at a energy/utilities company with 51-200 employees
Stable with helpful technical support and good network visibility
Pros and Cons
- "The product offers us a very good user interface and we've found the network visibility to be very good so far."
- "It would be useful if there was a way to check to see if there are certain devices that are not in sync with the solution. I'm not sure if this is an option or not."
What is most valuable?
Overall, I like the system. The product offers us a very good user interface and we've found the network visibility to be very good so far. The solution has one window and shows all networks.
The solution comes in multiple languages, including English and Arab options.
The solution is stable.
We've found that technical support is helpful and available to assist us if we need them.
What needs improvement?
There are some automation capabilities, however, they could be presented better.
The manual is difficult to follow. While it presents some use cases, it's not very clear. There may also be some language barriers, as it's not available in my language.
Some aspects of the initial setup are complex.
It would be useful if there was a way to check to see if there are certain devices that are not in sync with the solution. I'm not sure if this is an option or not.
The cost of the solution is quite high.
I'm very interested in ISO 27001 and these processes. I'd like to better understand how it supports this kind of workflow.
For how long have I used the solution?
I haven't used the solution for very long. It may only be about 20 hours or so. It's very, very new.
What do I think about the stability of the solution?
The solution is mostly stable. I found that, during the POC, sometimes my rights would do off and I would have to reinstate them, however, other than that, it was very stable. The performance was good.
What do I think about the scalability of the solution?
I've only used the solution for a short amount of time. I can't really speak to the scalability. There were different models that I tried, however, I can't speak about how different models affect the scalability. I've only used it for a very short amount of time.
There are maybe three or four people on the solution, now that we've tested it.
How are customer service and technical support?
I haven't really interacted so much with technical support, however, there is a person available to us that could help us troubleshoot or answer our questions if we need assistance.
How was the initial setup?
There are aspects of the initial setup that are not very straightforward. there is some complexity. I needed to keep going back to the manual to check things at certain points.
What's my experience with pricing, setup cost, and licensing?
We are still currently in the test period. Within the year, we will have to invest in the cost of licensing. We have not done that yet.
The solution itself is quite expensive.
Which other solutions did I evaluate?
We did look at other solutions, however, I can't speak to which solutions we actually looked at.
What other advice do I have?
We are a partner.
I'm not sure which version of the solution we're using. My understanding is that it is version 5.
I would recommend the solution to others. However, it's important to ensure you use the solution in order to set up your processes correctly and to the benefit of the organization.
So far, I would rate the solution at an eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Buyer's Guide
Download our free Darktrace Report and get advice and tips from experienced pros
sharing their opinions.
Updated: January 2026
Product Categories
Network Detection and Response (NDR) Email Security Intrusion Detection and Prevention Software (IDPS) Network Traffic Analysis (NTA) Extended Detection and Response (XDR) Cloud Security Posture Management (CSPM) Cloud-Native Application Protection Platforms (CNAPP) Attack Surface Management (ASM) AI-Powered Cybersecurity Platforms AI ObservabilityPopular Comparisons
Fortinet FortiGate
Cloudflare
CrowdStrike Falcon
Wazuh
Datadog
SentinelOne Singularity Cloud Security
Microsoft Defender for Cloud
Prisma Cloud by Palo Alto Networks
Microsoft Defender for Office 365
SentinelOne Singularity Complete
Microsoft Sentinel
IBM Security QRadar
Cortex XDR by Palo Alto Networks
Varonis Platform
Buyer's Guide
Download our free Darktrace Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- I'm building a next-gen AI powered threat intelligence platform. What's missing from existing solutions?
- Which is better - SentinelOne or Darktrace?
- What are the pros and cons of Darktrace vs CrowdStrike Falcon vs alternative EPP solutions?
- Which alternative solutions (other than Darktrace) do you recommend for an SMB?
- How does Crowdstrike Falcon compare with Darktrace?
- How does Network Detection and Response (NDR) Differ from SIEM?
- What aspects of network security are more concerning to small and medium-sized enterprises?
- What are the best practices for Security Operations Center (SOC)?
- What is the future of the Network Operation Center (NOC)?
- Which alternative solutions (other than Darktrace) do you recommend for an SMB?















