Darktrace vs. Google Threat Intelligence (Mandiant)

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Darktrace
Score 8.5 out of 10
N/A
Darktrace AI interrupts in-progress cyber-attacks, including ransomware, email phishing, and threats to cloud environments. It's able to detect and establish baselines for your organization so it can make the distinction between what is and what isn't normal network activity for your organization. This allows it to tackle complex cyber-attacks as they happen and prevent future cyber-attacks from happening.N/A
Google Threat Intelligence (Mandiant)
Score 8.8 out of 10
Enterprise companies (1,001+ employees)
Google Threat Intelligence, based on the expertise and service of Mandiant, aims to accelerate security and risk decision making – operational as well as strategic – and to enable security teams to focus on threats that matter to them.N/A
Pricing
DarktraceGoogle Threat Intelligence (Mandiant)
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
DarktraceGoogle Threat Intelligence (Mandiant)
Free Trial
NoYes
Free/Freemium Version
NoYes
Premium Consulting/Integration Services
NoYes
Entry-level Setup FeeNo setup feeOptional
Additional DetailsPriced by company size
More Pricing Information
Community Pulse
DarktraceGoogle Threat Intelligence (Mandiant)
Considered Both Products
Darktrace

No answer on this topic

Google Threat Intelligence (Mandiant)
Chose Google Threat Intelligence (Mandiant)
If you want threat intel coming into your EDR, Email gateway, and IPS, this is the most cost-effective solution. The others can only pump into your SIEM and rely on monitoring and detection. The former goes into active defense, aka active blocking.
Features
DarktraceGoogle Threat Intelligence (Mandiant)
Endpoint Security
Comparison of Endpoint Security features of Product A and Product B
Darktrace
-
Ratings
Google Threat Intelligence (Mandiant)
7.2
6 Ratings
0% below category average
Infection Remediation00 Ratings7.26 Ratings
Threat Intelligence
Comparison of Threat Intelligence features of Product A and Product B
Darktrace
-
Ratings
Google Threat Intelligence (Mandiant)
7.8
10 Ratings
8% above category average
Network Analytics00 Ratings7.79 Ratings
Threat Recognition00 Ratings7.89 Ratings
Vulnerability Classification00 Ratings7.510 Ratings
Automated Alerts and Reporting00 Ratings8.09 Ratings
Threat Analysis00 Ratings7.510 Ratings
Threat Intelligence Reporting00 Ratings8.210 Ratings
Automated Threat Identification00 Ratings7.99 Ratings
Best Alternatives
DarktraceGoogle Threat Intelligence (Mandiant)
Small Businesses
Auvik
Auvik
Score 8.5 out of 10
OpenText Core Endpoint Protection
OpenText Core Endpoint Protection
Score 7.9 out of 10
Medium-sized Companies
SolarWinds NetFlow Traffic Analyzer (NTA)
SolarWinds NetFlow Traffic Analyzer (NTA)
Score 9.4 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
Enterprises
SolarWinds NetFlow Traffic Analyzer (NTA)
SolarWinds NetFlow Traffic Analyzer (NTA)
Score 9.4 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
DarktraceGoogle Threat Intelligence (Mandiant)
Likelihood to Recommend
8.1
(13 ratings)
7.8
(18 ratings)
Likelihood to Renew
9.7
(2 ratings)
-
(0 ratings)
Usability
6.5
(3 ratings)
7.6
(18 ratings)
Support Rating
7.0
(3 ratings)
-
(0 ratings)
User Testimonials
DarktraceGoogle Threat Intelligence (Mandiant)
Likelihood to Recommend
Darktrace
Darktrace is a product well suited for the vast majority of infrastructures and helps monitoring and responding to threats based on the network in a very elastic way. This is a product based on on-premise infrastructures that hosts its machines locally, of course it can be technically difficult to monitor an entire On-Cloud infrastructure but even there there's room for sensors and monitoring, not to mention the SaaS and mail integration that completes the product.
Read full review
Google
Usually SOC leverages Intel from mutiple sources. The scenarios are: 1.Suitable: In large scale SOC where more than 5000 devices are being monitored and the tech stack is wide, Mandiant will play an excellent role in that scenario. 2.Not Suitable: In small scale SOCs wherein limited devices belonging to the same tech stack is being used then the analysts can rely on OSINT and it is not useful to buy the solution.
Read full review
Pros
Darktrace
  • Uses it Al model UEBA to detect anomalies in the behaviour of not only the users in a corporate network but also the routers, servers, and endpoints in that network.
  • Provides a visualisation of both egress and outbound network traffics flowing in and out of the organisation.
  • Darktrace comes with it autonomous AI model detection and responses capabilities.
  • Darktrace as an AI next generation NDR solution, prevents ,contains and quarantines malicious traffics from and into the corporate network.
Read full review
Google
  • accelerated threat response feature, prioritizing threats according to requirement.
  • Optimization of the threat intelligence , and can be integrated with 3rd party tools.
  • Features like - Breach ,Adversary, Machine and Operational Intelligence.
  • Mandiant dynamic host and the malware views along with indicators.
Read full review
Cons
Darktrace
  • There are few areas that I would say need to be improved; their customer support portal allows you to log tickets with any suggestions or things you feel the product is missing, and they will generally show you how to achieve what you want, or in some cases, introduce it as a feature in a later update.
Read full review
Google
  • Paywalls exist throughout the data set and can halt an investigation without the right model
  • Some data was incomplete or broken up between pay tiers
  • Navigation through the data lacked a definitive trail or breadcrumbs to retrace steps during investigations
Read full review
Likelihood to Renew
Darktrace
It's a powerfull product that help administrators to provide email security to our organization.
Good metrics about received emails that help us to determine in doubt case if the email is a false positive or it's malware.
They're improving the product releasing continuous updates and have mobile phone app to manage it.
Read full review
Google
No answers on this topic
Usability
Darktrace
The Darktrace toolset is very expansive, allowing it to handle many different tasks, but this leads to a user interface that is sometimes not at all intuitive. Icons don't always make sense visually, and the associated tool tips do not always provide enough detail on what action the button performs
Read full review
Google
Mandiant Advantage Threat Intelligence has a very usable platform, with well-differentiated sections for the analyst, as well as the possibility of cross-searching to obtain the desired results. All this is presented with an interface that is easy on the eye and not very messy, which increases productivity and the speed with which work is done.
Read full review
Support Rating
Darktrace
Darktrace support is excellent in my experience. They send a competent engineer on-site to provide on-boarding training. They were also very responsive in responding to questions and concerns. Having an individual point of contact who is a competent network and security engineer is not a common experience, at least for me.
Read full review
Google
No answers on this topic
Alternatives Considered
Darktrace
We did NOT select Darktrace. OSSIM/AlienVault is a more mature product and it provided better intelligence and reporting. The end user interface is much easier to use - and you can tell built form engineers who have had to do the work. My suggestion for anyone considering Darktrace, is to get the price upfront; do a 30/60 onsite trail; and do the same thing, at the same time, with AlienVault. AlientVault will win every time. I say that because that's exactly what I did.
Read full review
Google
It gives more ways to analyze threats and options to fixed it. This device gives more visibility on vulnerability detection and its analysis. It provides detailed reports to have more information of all malwares which help us to increase overall security of our current organization
Read full review
Return on Investment
Darktrace
  • One big positive is how it helps us with the security assessments that clients have done on us. They are looking to see if we know how we might have unusual/malicious traffic running on the network.
  • If you have a small network and only need 1 appliance, it can be a good ROI and peace of mind.
  • You could go down a hole in trying to spend time looking at all of your traffic with this software. You need to focus only on what it is showing as potential bad traffic.
Read full review
Google
  • Improved incident response time
  • Specific investigations that have reduced the attack surface
  • Technical reports on threats not controlled by the bank's local team
Read full review
ScreenShots

Google Threat Intelligence (Mandiant) Screenshots

Screenshot of Mandiant Advantage DashboardScreenshot of Mandiant Advantage Actor DetailsScreenshot of Mandiant Advantage Actor Graph