Arquitecto De Seguridad at a tech vendor with 10,001+ employees
Real User
Top 20
Aug 9, 2026
The main use case I had for Dragos during that period was for infrastructure monitoring and to begin detecting any incidents or problems that could arise, especially configuration failures, such as unauthorized accesses or RDP sessions, mainly for an assessment of the OT infrastructure that existed at that time in the gas industry in Colombia. A specific example of an incident or relevant finding that Dragos helped identify during that assessment occurred during installations when the switches were not being correctly set to monitor mode. Once we started to receive some initial traffic, it was detected that RDP sessions existed to devices on the OT network that should not have had them, which raised an incident that proved very significant because people thought RDP was never used, and it turned out that it was being used.
My main use case for Dragos is for vulnerability management, which I rely on day-to-day. A quick specific example of how I use Dragos for vulnerability management in my daily work is that I made an asset inventory with Dragos sensors. If I am following the right procedure, it is good to go with good procedure. If we do not have the step-by-step procedure or the guidance, it may not be very simple to use.
Dragos is a tool that is very specialized in OT and ICS cybersecurity platforms. Dragos is very stable and widely used in critical infrastructure sectors, mainly in banking, education, and insurance sectors. It provides excellent detection visibility, threat detection, governance alignment, and incident response capabilities. In a real-time banking security operation, Dragos is a very strong choice. In real-time banking environments, I use Dragos for fraud and transaction monitoring. Dragos integrates with other SOC systems to monitor OT and ICS systems in banking data centers as well as ATM networks. It integrates with all the different machines to identify any fraud or transaction issues that may be happening, such as incorrect deposits or withdrawals for particular customers. All of these things are monitored through fraud and transaction monitoring, which is one of the best real-time examples. Dragos also has asset visibility capabilities where it identifies and maps critical banking infrastructure assets like servers, ATMs, and payment gateways. Asset visibility helps understand what type of ATM and what type of servers are being used, who is accessing them, who is withdrawing funds, who is depositing funds, and who is using different features. Threat detection is another important capability where Dragos detects protocol anomalies and threats in real time while reducing false positives compared to IT-centric tools. If someone tries to detect the tool with improper options, tries to break down machines, or commits fraud, threat detection helps identify who that person is and what they have done. Dragos integrates with SOC systems, especially OT and ICS systems, to give a clear picture of a particular customer who has been using a specific ATM at a center. If a customer goes to a bank and tries to use different options such as depositing, making fixed deposits, withdrawing, or conducting any kind of transaction or fraud, the fraud and transaction monitor helps identify which bank the customer visited, which data center was used, what servers are in it, and what ATM networks are across it. It tries to identify each piece of information related to that customer and helps understand whether proper or improper things have taken place. It is more of monitoring and transaction control, and it is very transparent toward any customer.
I am an engineer in a service provider company where we help clients choose and implement security solutions, and I'm still looking for a new solution. I am certified in Dragos, but I have not deployed it in client sites. I used Nozomi a few years ago for two years, and now I'm getting trained in it so that I can help clients implement the tool. My customers are still using it.
Director of IT at a tech services company with 1,001-5,000 employees
Real User
Top 10
Apr 25, 2025
We use Dragos ( /products/dragos-reviews ) specifically for managing IoT devices in the industrial sector within our manufacturing ecosystem. It provides a platform to manage, update, and keep track of all network information related to IoT devices. It allows centralized management of industrial IoT devices.
Dragos offers a comprehensive cybersecurity platform specializing in industrial control systems. It provides advanced threat detection and response capabilities tailored for sectors like energy, manufacturing, and water.Dragos enhances security by providing specialized solutions that address the unique vulnerabilities present in industrial environments. With a robust framework, it monitors networks for threats, offers advanced analytics, and delivers actionable insights. This makes it...
The main use case I had for Dragos during that period was for infrastructure monitoring and to begin detecting any incidents or problems that could arise, especially configuration failures, such as unauthorized accesses or RDP sessions, mainly for an assessment of the OT infrastructure that existed at that time in the gas industry in Colombia. A specific example of an incident or relevant finding that Dragos helped identify during that assessment occurred during installations when the switches were not being correctly set to monitor mode. Once we started to receive some initial traffic, it was detected that RDP sessions existed to devices on the OT network that should not have had them, which raised an incident that proved very significant because people thought RDP was never used, and it turned out that it was being used.
My main use case for Dragos is for vulnerability management, which I rely on day-to-day. A quick specific example of how I use Dragos for vulnerability management in my daily work is that I made an asset inventory with Dragos sensors. If I am following the right procedure, it is good to go with good procedure. If we do not have the step-by-step procedure or the guidance, it may not be very simple to use.
Dragos is a tool that is very specialized in OT and ICS cybersecurity platforms. Dragos is very stable and widely used in critical infrastructure sectors, mainly in banking, education, and insurance sectors. It provides excellent detection visibility, threat detection, governance alignment, and incident response capabilities. In a real-time banking security operation, Dragos is a very strong choice. In real-time banking environments, I use Dragos for fraud and transaction monitoring. Dragos integrates with other SOC systems to monitor OT and ICS systems in banking data centers as well as ATM networks. It integrates with all the different machines to identify any fraud or transaction issues that may be happening, such as incorrect deposits or withdrawals for particular customers. All of these things are monitored through fraud and transaction monitoring, which is one of the best real-time examples. Dragos also has asset visibility capabilities where it identifies and maps critical banking infrastructure assets like servers, ATMs, and payment gateways. Asset visibility helps understand what type of ATM and what type of servers are being used, who is accessing them, who is withdrawing funds, who is depositing funds, and who is using different features. Threat detection is another important capability where Dragos detects protocol anomalies and threats in real time while reducing false positives compared to IT-centric tools. If someone tries to detect the tool with improper options, tries to break down machines, or commits fraud, threat detection helps identify who that person is and what they have done. Dragos integrates with SOC systems, especially OT and ICS systems, to give a clear picture of a particular customer who has been using a specific ATM at a center. If a customer goes to a bank and tries to use different options such as depositing, making fixed deposits, withdrawing, or conducting any kind of transaction or fraud, the fraud and transaction monitor helps identify which bank the customer visited, which data center was used, what servers are in it, and what ATM networks are across it. It tries to identify each piece of information related to that customer and helps understand whether proper or improper things have taken place. It is more of monitoring and transaction control, and it is very transparent toward any customer.
I am an engineer in a service provider company where we help clients choose and implement security solutions, and I'm still looking for a new solution. I am certified in Dragos, but I have not deployed it in client sites. I used Nozomi a few years ago for two years, and now I'm getting trained in it so that I can help clients implement the tool. My customers are still using it.
We use Dragos ( /products/dragos-reviews ) specifically for managing IoT devices in the industrial sector within our manufacturing ecosystem. It provides a platform to manage, update, and keep track of all network information related to IoT devices. It allows centralized management of industrial IoT devices.