What users are saying about
21 Ratings
1 Rating
21 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener noreferrer'>trScore algorithm: Learn more.</a>
Score 8.3 out of 100
1 Rating
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener noreferrer'>trScore algorithm: Learn more.</a>
Score 8 out of 100

Likelihood to Recommend

Darktrace

Darktrace would be well suited to any environment really; the only constraint would be the budget. The cost scales on the number of devices to be monitored by the product, so it can be quite expensive in larger environments. Any company that would benefit from having 24/7 monitoring of their network would find that this product would suit that need perfectly. It can also create a number of reports, which is useful if you have any requirement to present periodic figures and statistics for your network. There are also additional features available and in development such as Antigena, which can be configured to allow potential threats to be automatically mitigated; it can block connections to a certain address, using certain ports, or it can enforce "normal behaviour" where it will only allow a machine to communicate in a way that Darktrace has observed before and considers normal. This has huge benefits particularly for 24/7 organisations where you don't have the ability to have someone monitoring the network personally at all times, as it could stop a malware outbreak in its tracks.
Anonymous | TrustRadius Reviewer

Guardicore

This is the best possible solution for enterprise-level organizations where server counts will be in the thousands. To manage these and understand the communication can be very cumbersome without this tool. Ease of creation map zone and application-wise can be relaxing to OS teams and support teams as well. There is no limit to labeling schema of servers and it gives the freedom to do so.
Harmesh Trivedi | TrustRadius Reviewer

Pros

Darktrace

  • It did an ok job of analyzing and collecting data. It used a span (mirrored) port and then using its own algorithm developed flow records.
  • It did an ok job of segmenting traffic into networks - not always correctly, but ok.
  • It tried to identify devices by type - once again, it did ok, but not that great.
Matthew Frederickson | TrustRadius Reviewer

Guardicore

  • Network traffic flow within environment of organization.
  • Creating maps for visibility and drill down is a key feature.
  • Labelling of servers can be done via running script.
  • Alerts can be sensitized for the traffic not seen.
Harmesh Trivedi | TrustRadius Reviewer

Cons

Darktrace

  • False positives. Darktrace uses "AI" to create its alerts for "unusual" or "malicious" activity. It is very common to see an alert for completely benign and normal device behavior - PC tries to print for the first time in a while, for example.
  • Antigena actions. To some extent, this is a continuation of the previous point. Darktrace can break the network connectivity of the suspected device automatically. The excessive number of false positives makes administrators reluctant to use this feature, though. Also, the default Antigena actions are not relevant to real-world problems as I saw them in my experience with Darktrace.
Anonymous | TrustRadius Reviewer

Guardicore

  • Limited support to legacy infrastructure.
  • Integration with third party is a bit tedious.
  • Awaiting support for Kubernetes in the next version.
Harmesh Trivedi | TrustRadius Reviewer

Usability

Darktrace

No score
No answers yet
No answers on this topic

Guardicore

Guardicore 9.0
Based on 1 answer
The solution is deployed throughout the organization. Teams are working and integrating it with the help desk tool wherever required. Helps in identifying the network traffic flows in lateral movement and east and west as well. Allows policies by default and later fine-tuning to be done to narrow it and enforce blocking action. Exporting reports from the tool is easy and can be observed for any issues.
Harmesh Trivedi | TrustRadius Reviewer

Support Rating

Darktrace

Darktrace 9.5
Based on 4 answers
Any time I have had any issue with Darktrace, I've been able to contact an engineer through their support desk, and I have always had a very speedy response. Even when the issue has been caused by something outside of the Darktrace devices, they have still been very keen to try to help and identify what the problem was. The customer portal also has a large number of videos and guides that you can use to educate yourself on the product
Anonymous | TrustRadius Reviewer

Guardicore

Guardicore 9.0
Based on 1 answer
Support has been available 24*7. It also depends on criticality but support is available. Also, the right expertise from the team helps in identifying the issue quickly and this helps in less production downtime if required. The ticket is resolved with RCA.
Harmesh Trivedi | TrustRadius Reviewer

Alternatives Considered

Darktrace

We have not evaluated others as they seem to be in their own class.
Anonymous | TrustRadius Reviewer

Guardicore

1) No limit to labeling schema.2) Ease of creating maps with respect to zone, environment, subnets, etc.3) Ease of creating policies and publishing the same.4) Deception 5) Integration with monitoring tool (grafana)6) Changes in the agent can be considered if there are legacy systems, time-consuming but can be achieved with the right information.
Harmesh Trivedi | TrustRadius Reviewer

Return on Investment

Darktrace

  • We had an ROI just during the POC. DarkTrace helped us identify a ransomware attack and we stopped it before it happened.
  • The weekly reports more than pay for itself within the first few months.
  • The powerful search capability helps us solve problems where other solutions fall short.
Anonymous | TrustRadius Reviewer

Guardicore

  • Blocking unwarranted traffic can really boost security of organization.
  • Alerts can be triggered to SIEM servers and help in timely action.
  • Need to be very careful before configuring and publishing block policies in the production environment.
Harmesh Trivedi | TrustRadius Reviewer

Pricing Details

Darktrace

General

Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No

Guardicore

General

Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No

Add comparison