Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Darktrace
Score 8.6 out of 10
N/A
Darktrace AI interrupts in-progress cyber-attacks, including ransomware, email phishing, and threats to cloud environments. It's able to detect and establish baselines for your organization so it can make the distinction between what is and what isn't normal network activity for your organization. This allows it to tackle complex cyber-attacks as they happen and prevent future cyber-attacks from happening.N/A
Lastline
Score 10.0 out of 10
N/A
Lastline in San Mateo, California offers a network detection and response solution designed to provide network traffic analysis (NTA) to protect enterprise networks against sophisticated threats in real-time.N/A
Microsoft Defender for Cloud Apps
Score 7.6 out of 10
N/A
Microsoft Defender for Cloud Apps (formerly Microsoft Cloud App Security) is a multimode cloud access security broker.N/A
Pricing
DarktraceLastlineMicrosoft Defender for Cloud Apps
Editions & Modules
No answers on this topic
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
DarktraceLastlineMicrosoft Defender for Cloud Apps
Free Trial
NoNoNo
Free/Freemium Version
NoNoNo
Premium Consulting/Integration Services
NoNoNo
Entry-level Setup FeeNo setup feeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
DarktraceLastlineMicrosoft Defender for Cloud Apps
Best Alternatives
DarktraceLastlineMicrosoft Defender for Cloud Apps
Small Businesses
Auvik
Auvik
Score 8.5 out of 10
NinjaOne
NinjaOne
Score 9.1 out of 10

No answers on this topic

Medium-sized Companies
SolarWinds NetFlow Traffic Analyzer (NTA)
SolarWinds NetFlow Traffic Analyzer (NTA)
Score 9.4 out of 10
NinjaOne
NinjaOne
Score 9.1 out of 10
Avanan
Avanan
Score 9.8 out of 10
Enterprises
SolarWinds NetFlow Traffic Analyzer (NTA)
SolarWinds NetFlow Traffic Analyzer (NTA)
Score 9.4 out of 10
Cisco Meraki MX
Cisco Meraki MX
Score 9.0 out of 10
Avanan
Avanan
Score 9.8 out of 10
All AlternativesView all alternativesView all alternativesView all alternatives
User Ratings
DarktraceLastlineMicrosoft Defender for Cloud Apps
Likelihood to Recommend
8.1
(13 ratings)
-
(0 ratings)
7.0
(11 ratings)
Likelihood to Renew
9.7
(2 ratings)
-
(0 ratings)
-
(0 ratings)
Usability
6.5
(3 ratings)
-
(0 ratings)
8.0
(1 ratings)
Support Rating
7.0
(3 ratings)
-
(0 ratings)
5.0
(1 ratings)
User Testimonials
DarktraceLastlineMicrosoft Defender for Cloud Apps
Likelihood to Recommend
Darktrace
Darktrace is a product well suited for the vast majority of infrastructures and helps monitoring and responding to threats based on the network in a very elastic way. This is a product based on on-premise infrastructures that hosts its machines locally, of course it can be technically difficult to monitor an entire On-Cloud infrastructure but even there there's room for sensors and monitoring, not to mention the SaaS and mail integration that completes the product.
Read full review
Lastline
No answers on this topic
Microsoft
Microsoft Defender for Cloud Apps is well suited when working with other Microsoft Applications. For example, if you are working with Microsoft Office 365 it works very well when implementing CASB features. It works when implementing monitoring or blocks on Sanctioned applications however customizing the message to users is not that great.
Read full review
Pros
Darktrace
  • Uses it Al model UEBA to detect anomalies in the behaviour of not only the users in a corporate network but also the routers, servers, and endpoints in that network.
  • Provides a visualisation of both egress and outbound network traffics flowing in and out of the organisation.
  • Darktrace comes with it autonomous AI model detection and responses capabilities.
  • Darktrace as an AI next generation NDR solution, prevents ,contains and quarantines malicious traffics from and into the corporate network.
Read full review
Lastline
No answers on this topic
Microsoft
  • The integration to Microsoft Entra ID is seamless, which allows Conditional Access to redirect the session to Microsoft Defender for Cloud App for it to take actions (Block or Monitor).
  • Tracker users' activity is very good when troubleshooting or running an investigate.
  • Detecting risky users through tight integration with Microsoft Entra ID is a very good feature.
  • Detecting mass downloads and blocking the download of files from non-manage company devices is a very good feature as well.
Read full review
Cons
Darktrace
  • There are few areas that I would say need to be improved; their customer support portal allows you to log tickets with any suggestions or things you feel the product is missing, and they will generally show you how to achieve what you want, or in some cases, introduce it as a feature in a later update.
Read full review
Lastline
No answers on this topic
Microsoft
  • It takes some time to scan and apply the policies when there is some sensitive information.
  • After it applies the policies, it works, but there is a delay.
  • It doesn't provide any way to scan Microsoft Teams when an external exchange of images is happening. You can always do the filtering on the documents during the chat, but if there is an image, then some kind of OCR capability is required to detect it. At present, there is no way [Microsoft Cloud App Security] can go and detect those kinds of images and alert us
Read full review
Likelihood to Renew
Darktrace
It's a powerfull product that help administrators to provide email security to our organization.
Good metrics about received emails that help us to determine in doubt case if the email is a false positive or it's malware.
They're improving the product releasing continuous updates and have mobile phone app to manage it.
Read full review
Lastline
No answers on this topic
Microsoft
No answers on this topic
Usability
Darktrace
The Darktrace toolset is very expansive, allowing it to handle many different tasks, but this leads to a user interface that is sometimes not at all intuitive. Icons don't always make sense visually, and the associated tool tips do not always provide enough detail on what action the button performs
Read full review
Lastline
No answers on this topic
Microsoft
The interface is pretty simple and easy to use; however, you will need to do a lot of investigative research on your own to get comfortable with it. Originally, many of the Microsoft security tools had their own seperate consoles. Overtime, they have blended into one interface which is the ideal state. In some cases it is clear Microsoft had to pick which console a certain feature or setting was going to reside in and this leads to some confusion. For example, DLP is managed through Defender for Cloud Apps but you will also need to jump into Purview. For things like reverse proxy on your M365 tenant, you will need to go into Azure and setup conditional access rules. Not a big problem and I can understand why the settings are located where they are but for someone just starting out with Defender for Cloud Apps, it will take some time to figure out.
Read full review
Support Rating
Darktrace
Darktrace support is excellent in my experience. They send a competent engineer on-site to provide on-boarding training. They were also very responsive in responding to questions and concerns. Having an individual point of contact who is a competent network and security engineer is not a common experience, at least for me.
Read full review
Lastline
No answers on this topic
Microsoft
I have not utilized actual support but the Sales and Product teams have been super helpful in moving our implementation forward and showing us the best practices.
Read full review
Alternatives Considered
Darktrace
We did NOT select Darktrace. OSSIM/AlienVault is a more mature product and it provided better intelligence and reporting. The end user interface is much easier to use - and you can tell built form engineers who have had to do the work. My suggestion for anyone considering Darktrace, is to get the price upfront; do a 30/60 onsite trail; and do the same thing, at the same time, with AlienVault. AlientVault will win every time. I say that because that's exactly what I did.
Read full review
Lastline
No answers on this topic
Microsoft
More flexible and more features with easy integration with cloud services like Microsoft Azure and other cloud services. Overall both gives similar features but we prefer Microsoft cloud app security due to its high threat detection rate. mostly we have been able to stop the threat in very very less time.
Read full review
Return on Investment
Darktrace
  • One big positive is how it helps us with the security assessments that clients have done on us. They are looking to see if we know how we might have unusual/malicious traffic running on the network.
  • If you have a small network and only need 1 appliance, it can be a good ROI and peace of mind.
  • You could go down a hole in trying to spend time looking at all of your traffic with this software. You need to focus only on what it is showing as potential bad traffic.
Read full review
Lastline
No answers on this topic
Microsoft
  • Cloud App Security saves us thousands of dollars finding and rectifying apps security issues
  • Identity Security Posture helps the organization identity stay in shape, saving thousands of dollars on security consultations
  • The cost of suffering a breach cannot be quantified, CAS helps minimize the chances of the attackers succeeding, with excellent historical logging for most operations
Read full review
ScreenShots

Lastline Screenshots

Screenshot of Lastline Defender sees every malicious behavior programmed into a piece of malware.Screenshot of Lastline Defender's informed AI can distill petabytes of network activity data down to a very small number of actual multi-faceted security incidents.Screenshot of Lastline Defender delivers a blueprint of an intrusion showing all infected hosts, lateral movement, external communications with C&C servers, and more.Screenshot of The timeline shows the specific sequence of activities that took place during a cyber attack.