M
Mid-Market (51-1000 emp.)
"A Full-Featured, Evolving NIDS/NIPS Solution"
Very easy to implement, despite the power and complexity once it's up and running. Outstanding user interface – it needs some training to get used to, but once mastered, it's a powerful tool, even fun to use. Market leader in features, constantly evolving with new technology. Price is above average compared to similar solutions. The approach is distinctive, which adds complexity – definitely needs training and time to get comfortable with the interface. Darktrace gives us the visibility we lacked in our CyberDefense processes, as it can spot anomalies involving multiple systems that are hard to catch with other tools like EDR or signature-based IDS. It's useful for identifying various anomalous behaviors that could indicate an evolving malfunction, misconfiguration, or most importantly, a cyberattack. Drilling down into details is quick, and the level of detail is impressive. Of course, it works best when integrated into a larger, structured Cyberdefense approach, like alongside a SIEM where analysts can correlate information from multiple sources for thorough investigations.
M
Mid-Market (51-1000 emp.)
"Essential for Security Teams"
I love that it's AI-driven and self-learning. That takes a load off my shoulders as the security officer with limited staff. It's like having people sitting right here in the office. Implementation was a breeze – handled by the Darktrace team who are very knowledgeable. I use this every day, and it helps alert me to things on my network that I or no other solution could catch. It's a bit complicated to use. While it looks really cool, you definitely need a lot of training to get familiar with it. Threat detection! The method Darktrace uses goes far beyond what any other solution can do. Manpower – with limited staff, having this AI-driven tool is like having an entire department focusing on security, so I can focus on other tasks.
M
Mid-Market (51-1000 emp.)
"Guards Us Even While We Sleep"
It cuts us off the moment something goes wrong. Very rarely there are false positives and we need to get IT to bring us back online. It prevents the spread of malware.
"Strong Behavioral Detection with a Steep Price Tag"
Using this behavior-based approach, we've been able to identify anomalies that traditional signature-based systems might miss, such as unexpected data transfers or suspicious lateral movement. It's a premium product, so licensing, implementation, ongoing maintenance, support, and staff training can be significant expenses, particularly for smaller organizations. The standout feature is its self-learning AI, which establishes a baseline of 'normal' behavior in our network and flags deviations in real-time.
"Darktrace's Cyber AI Analyst is Phenomenal!"
Real-time monitoring and response to any network threats. The Cyber AI Analyst investigates threats, including potential ones, automatically triages, interprets, and reports on the full scope of security incidents. Customer support is excellent. There is an initial learning curve when first implementing Darktrace. The many features are all very complex. Real-time monitoring and protection against network threats, SaaS account attacks, and email security. The Cyber AI Analyst does the work of several human analysts in a fraction of the time a real person would take.
"Set-and-Forget Security with Minor Quirks"
The automatic blocking is a huge plus – it responds quickly and generally makes the right calls without manual input. Device tracking is solid, giving a clear picture of network activity and making it easy to spot anomalies. Visibility is impressive – it truly seems to see everything, which instills confidence in our coverage. Overall, it's been a strong addition to our security stack. It's mostly set-and-forget, but with depth when you need to dig in. Occasionally it misclassifies devices, especially when IPs change – that can be annoying to untangle when a device gets tied to the wrong activity. There's also a fair amount of noise, especially early on while the AI is still learning – it takes time to settle and reduce alert fatigue. Faster threat detection and response – we get alerts in near real-time, often before damage occurs. Automated blocking reduces manual effort, letting the team focus on higher-value tasks. Better visibility lets us see what every device is doing, which aids investigations and proactive risk reduction. Less reliance on predefined rules – the self-learning model adapts to our environment, meaning fewer blind spots.
O
Oficial Seguridad Redes y Comunicaciones
"AI-Driven Security That Transforms Network Defense"
What I value most about Darktrace/Network is its self-learning AI that adapts to our network without heavy manual tuning. Its ability to spot subtle anomalies and unknown threats is outstanding – it catches attack patterns that signature-based systems miss entirely. The Threat Visualizer is incredibly intuitive, offering clear visuals of network activity and threat progression that make complex incidents easy to explain to stakeholders. The autonomous response is also impressive, taking immediate action to contain threats while keeping business operations running. I also appreciate the comprehensive network visibility it gives us, revealing device behavior, user activities, and data flows that were previously hidden. Real-time monitoring and alerts have slashed our incident response time and boosted our overall security posture. The main challenge is the initial learning period, where the AI generates many alerts while it learns normal behavior – this requires significant time from our team to tune and validate during the first few months. Pricing can be pricey, especially for smaller organizations or tight budgets, and it climbs when you scale across segments or add advanced features. Sometimes the AI's decisions seem opaque, making it hard to explain why certain actions were taken, which is concerning for compliance or executive reports. Additionally, false positives do occur, needing manual investigation and tuning. Darktrace/Network addresses critical security gaps, like the limitations of perimeter-based defenses that miss lateral movement and insider threats. It excels at detecting behavioral anomalies and zero-day attacks that others miss. Key benefits include dramatically faster threat detection – now finding breaches in minutes instead of days or weeks – and autonomous response that cuts containment time from hours to minutes, stopping escalation. We've also gained unprecedented visibility, discovering shadow IT and rogue devices previously unknown. Most importantly, it reduces alert fatigue by prioritizing intelligently and providing context, letting analysts focus on strategic work rather than chasing false alarms.
A
Analyste en sécurité de l'information
"Robust Threat Detection, But Initial Setup is Complex"
The best part about Darktrace/Detect is its user-friendly, interactive interface that simplifies investigating alerts and understanding network activity. The platform is well-supported with responsive customer service, tutorials, blogs, and customer experience reviews that speed up learning and adoption. Over two years of use, these resources, plus the intuitive design, make daily monitoring and analysis more efficient. On the downside, the initial setup and tuning demand solid configuration and engineering skills. Without vendor support, organizations might need a large, skilled team to handle policies and integrations. Common hurdles include high alert volumes that need fine-tuning, occasional false positives, and ongoing effort (likely a SOC team) to keep detections in line with the business environment. Darktrace/Detect tackles the challenge of spotting anomalous or suspicious network behavior in real time. Its AI-driven detection flags unusual patterns that traditional tools might miss. This has dramatically improved our network visibility, cut investigation time, and strengthened our detection and response, letting us act before incidents escalate.
M
Mid-Market (51-1000 emp.)
"AI Security with a Complex Interface"
Darktrace/Network is great at flagging unusual network activity, insider threats, and compromised devices that traditional tools might overlook. Its AI can handle in minutes what would take humans years, letting our small team punch above our weight like a full SOC. The AI analyst is my favorite – it takes specific alerts and does all the correlation work for us. Setup was also painless, with the vendor helping configure everything smoothly. Those folks really know their stuff. The interface, though, while visually impressive and technical, isn't user-friendly. Manual investigations are tough because alerts don't give much direction, and there's so much data on screen that it's hard to know where to start. Some alerts lack context, so you have to be highly technical and hop between screens to get the full picture. I wish all relevant info were presented at once. Overall, I use Darktrace/Network to detect anomalies, insider threats, and compromised devices faster than traditional methods, letting our small team act like a much larger SOC.
S
Senior Lead Information Security Analyst
"Darktrace Network: Cutting-Edge AI Security with Intuitive Design and Real-Time Alerts"
Darktrace Network provides top-tier cybersecurity with a user-friendly interface that simplifies complex threat detection. It integrates smoothly with existing IT setups, boosting security without causing disruptions. Its performance is noteworthy, catching anomalies and potential threats as they happen. The cost reflects the advanced tech, but for security-focused organizations, the value justifies the expense. Setup is straightforward, backed by responsive support that ensures a hassle-free deployment. The AI-driven intelligence sets it apart, constantly learning and adapting to new threats. In short, Darktrace Network is a crucial asset for proactive security. However, the price is steep and has risen considerably over recent years, which can be problematic when budgets are tight. It spots intriguing traffic, examines it, and autonomously blocks malicious activity.