Darktrace AI interrupts in-progress cyber-attacks, including ransomware, email phishing, and threats to cloud environments. It's able to detect and establish baselines for your organization so it can make the distinction between what is and what isn't normal network activity for your organization. This allows it to tackle complex cyber-attacks as they happen and prevent future cyber-attacks from happening.
N/A
Datadog
Score 8.8 out of 10
N/A
Datadog is a monitoring service for IT, Dev and Ops teams who write and run applications at scale, and want to turn the massive amounts of data produced by their apps, tools and services into actionable insight.
$1.27
per month (billed annually) per host
Pricing
Darktrace
Datadog
Editions & Modules
No answers on this topic
Log Management
$1.27
per month (billed annually) per host
Infrastructure
$15.00
per month (billed annually) per host
Standard
$18
per month per host
Enterprise
$27
per month per host
DevSecOps Pro
$27
per month per host
APM
$31.00
per month (billed annually) per host
DevSecOps Enterprise
$41
per month per host
Offerings
Pricing Offerings
Darktrace
Datadog
Free Trial
No
Yes
Free/Freemium Version
No
Yes
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
Optional
Additional Details
—
Discount available for annual pricing. Multi-Year/Volume discounts available (500+ hosts/mo).
Darktrace does a very good job at complementing our other security tools by adding an additional level of automated security. It is important to point out that the automation is optional. We ran Darktrace in "manual" mode until we were comfortable enough to switch it to a …
Its capabilities to respond to a threat both manual than automated way makes Darktrace one of the best NDR in the market. The rules editor allows the right flexibility to build a set of rules sized for the infrastructure, while the third parties integrations and modules helps …
The product's capacity to provide insights into network traffic is impressive. The organisation was able to find any malware harming the devices with their assistance. We really value network monitoring and self-learning monitoring tools.
We looked into several competitors and are still looking, due to the problems Darktrace has with false positives. Darktrace is attractive as their support is generally good, and working with the product is relatively easy.
We did NOT select Darktrace. OSSIM/AlienVault is a more mature product and it provided better intelligence and reporting. The end user interface is much easier to use - and you can tell built form engineers who have had to do the work. My suggestion for anyone considering …
Datadog is significantly more user-friendly than CloudWatch.In terms of capabilities, they're similar. I would not call either of the best-in-class for any single feature, but Datadog feels more polished and ready to use overall.Multi-cloud monitoring is a clear differentiator …
I use Datadog because it concentrates all these features into a single tool, facilitating the learning curve that my platform and development engineering team needs in order to be able to set up the monitors/alerts/SLIs/SLOs as well as to diagnose a production issue. Its easier …
Datadog seems to be the most feature-rich of all the alternatives we've considered, however due to problems outlined earlier, some of the others have benefits. OpenTel can give us a way to make our platforms compatible with a variety of vendors, and can be done without …
Datadog is a more complex but complete solution than any of the other Log Aggregation, monitoring, or general observabilty tools that we have trialed. I found it easier to setup following useful and up-to-date documentation provided directly by Datadog instead of scattered …
Kibana Datadog … because within our usecase we have all the events in kibana but sampled traces in Datadog … but if we had all the traces it would have been much more useful
I think Datadog and sentry serve different needs. I like sentry to keep track of errors on our systems. And then I'll jump into Datadog to investigate those issues.
We have utilized a SIEM in the past, but it was a very manual process to set it up. Content packs make it very easy to set up and get alerting instantly. Datadog takes out a lot of headaches for our security team, since they no longer have to create custom alerts for every …
First think first - it's easy to use, and very easy to implement in any infrastructure. It provides a custom dashboard and monitors. I’ve used or evaluated Grafana, Prometheus, Amazon CloudWatch, and Dynatrace, and each tool has strong capabilities. Prometheus + Grafana provide …
All other tools dont have all the features which Datadog provides. Easy to use from UI where other may have complicated UI or no UI at all to create monitors. Consider like AWS grafana, we have limitation to create monitors from UI. There is no recurring downtime for monitors. …
UI of the Datadog is easy to understand and integration steps are easy to understand. It also provides the troubleshooting steps which are easy to understand. Supports multi cloud integrations which is very important for all the customers to know about the cloud service's …
we primarily use Kubernetes, and Prometheus is great for collecting time series metrics, especially in Kubernetes. and Grafana is used for dashboards. As these are open source, we host them and manage them internally. We choose Datadog because of its logs, traces, and …
I selected Datadog because of its features and the wide range of integration support. As I already told it supports more that 600+ integrations which helps and organization to keep everything in a single place and also its AI feature which is reducing the time for root cause …
1. Grafana is good, but a lot of integration is required for it to work. .that not the case of Datadog 2. Faster to set up Datadog instead of Grafana 3. Alerting in Datadog feels much easier thanin Grafana.
Datadog is best for cloud-native and fast-setup. It is more mature for infrastructure and real-time observability. The UI is more user-friendly and provides wide coverage of app insights.
I have tried and used a number of other tools similar to Datadog such as New Relic, Splunk, Prometheus, AWS cloudwatch and Dynatrace. New Relic and Splunk provide excellent monitoring and analytics, but Datadog’s consolidated dashboards and ease of setup combined with a wealth …
Our logs are very important, and Datadog manages them exceptionally well. We frequently use Datadog services for our investigations. Use case: Monitor your apps, infrastructure, APIs, and user experience.
ease of use and implementation, other than new relic (which I think is terrible in every possible way), the other two support opentelemetry better, have more manageable costs and comparable basic services, but they do not have the breadt of services dd does.
We moved to Datadog from Microsoft's Application Insights. Application Insights did a fine job in allowing us to view our application data, but it lacked the holistic view of all our infrastructure and other platforms that could not use Application Insights. Being able to …
In terms of usability, I’ve found Datadog significantly more approachable and powerful compared to Elasticsearch, especially for day-to-day operational monitoring. Datadog offers a much more cohesive, user-friendly interface out of the box, with built-in support for metrics, …
Darktrace would be well suited to any environment really; the only constraint would be the budget. The cost scales on the number of devices to be monitored by the product, so it can be quite expensive in larger environments. Any company that would benefit from having 24/7 monitoring of their network would find that this product would suit that need perfectly. It can also create a number of reports, which is useful if you have any requirement to present periodic figures and statistics for your network. There are also additional features available and in development such as Antigena, which can be configured to allow potential threats to be automatically mitigated; it can block connections to a certain address, using certain ports, or it can enforce "normal behaviour" where it will only allow a machine to communicate in a way that Darktrace has observed before and considers normal. This has huge benefits particularly for 24/7 organisations where you don't have the ability to have someone monitoring the network personally at all times, as it could stop a malware outbreak in its tracks.
Datadog works really well with complex microservices architecture like any E-commerce platform which will be having multiple services but they all are interdependent to others so in this scenario Datadog will be best to monitor these as it will show the transactions also between those microservices. If you are using multiple services in your architecture whether it will be cloud services or on prem services Datadog will be the best choice to monitor all those service with in Datadog so that you can see everything in a single place. But if you are having small architecture and few services in that then in that scenario you can use Datadog but it will be little costly as compared to other but obviously the features are very well.
Uses it Al model UEBA to detect anomalies in the behaviour of not only the users in a corporate network but also the routers, servers, and endpoints in that network.
Provides a visualisation of both egress and outbound network traffics flowing in and out of the organisation.
Darktrace comes with it autonomous AI model detection and responses capabilities.
Darktrace as an AI next generation NDR solution, prevents ,contains and quarantines malicious traffics from and into the corporate network.
Alert windows cause lag in notifications (e.g. if the alert window is X errors in 1 hour, we won't get alerted until the end of the 1 hour range)
I would appreciate more supportive examples for how to filter and view metrics in the explorer
I would like a more clear interface for metrics that are missing in a time frame, rather than only showing tags/etc. for metrics that were collected within the currently viewed time frame
The Darktrace toolset is very expansive, allowing it to handle many different tasks, but this leads to a user interface that is sometimes not at all intuitive. Icons don't always make sense visually, and the associated tool tips do not always provide enough detail on what action the button performs
There is some room for improvement, but the Datadog team sends out updates frequently, and the UI is user-friendly for engineers, with no significant loading issues or region-specific problems. That was one of the key reasons we preferred Datadog; our company has employees worldwide, and it wasn't difficult to transition to the tool.
Darktrace support is excellent in my experience. They send a competent engineer on-site to provide on-boarding training. They were also very responsive in responding to questions and concerns. Having an individual point of contact who is a competent network and security engineer is not a common experience, at least for me.
The support team usually gets it right. We did have a rather complicate issue setting up monitoring on a domain controller. However, they are usually responsive and helpful over chat. The downside would be I don’t think they have any phone support. If that is important to you this might not be a good fit.
We did NOT select Darktrace. OSSIM/AlienVault is a more mature product and it provided better intelligence and reporting. The end user interface is much easier to use - and you can tell built form engineers who have had to do the work. My suggestion for anyone considering Darktrace, is to get the price upfront; do a 30/60 onsite trail; and do the same thing, at the same time, with AlienVault. AlientVault will win every time. I say that because that's exactly what I did.
Datadog is a more complex but complete solution than any of the other Log Aggregation, monitoring, or general observabilty tools that we have trialed. I found it easier to setup following useful and up-to-date documentation provided directly by Datadog instead of scattered around many blogs or articles. I would love to have my own Grafana + Prometheus expert to setup all the peices we need but you're paying for expertise there instead of an experience with Datadog.
One big positive is how it helps us with the security assessments that clients have done on us. They are looking to see if we know how we might have unusual/malicious traffic running on the network.
If you have a small network and only need 1 appliance, it can be a good ROI and peace of mind.
You could go down a hole in trying to spend time looking at all of your traffic with this software. You need to focus only on what it is showing as potential bad traffic.