What users are saying about
24 Ratings
7 Ratings
24 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener'>trScore algorithm: Learn more.</a>
Score 8.7 out of 100
7 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener'>trScore algorithm: Learn more.</a>
Score 9.3 out of 100

Likelihood to Recommend

Darktrace

Darktrace would be well suited to any environment really; the only constraint would be the budget. The cost scales on the number of devices to be monitored by the product, so it can be quite expensive in larger environments. Any company that would benefit from having 24/7 monitoring of their network would find that this product would suit that need perfectly. It can also create a number of reports, which is useful if you have any requirement to present periodic figures and statistics for your network. There are also additional features available and in development such as Antigena, which can be configured to allow potential threats to be automatically mitigated; it can block connections to a certain address, using certain ports, or it can enforce "normal behaviour" where it will only allow a machine to communicate in a way that Darktrace has observed before and considers normal. This has huge benefits particularly for 24/7 organisations where you don't have the ability to have someone monitoring the network personally at all times, as it could stop a malware outbreak in its tracks.
Anonymous | TrustRadius Reviewer

Tanium

Tanium is suitable in any sort of organization where you want to look at your machines and what kind of applications they are running. One good example is removing an application from where it is not supposed to be in the organization. By using Tanium trace with basic English, first you can search all the machines which have that application, and second you can create a package either through a power shell command or CLI command and remove that application from all the machines at once.This is really saves lot of manual work, time, and also helps in balancing assets across an organization.
Anonymous | TrustRadius Reviewer

Pros

Darktrace

  • It did an ok job of analyzing and collecting data. It used a span (mirrored) port and then using its own algorithm developed flow records.
  • It did an ok job of segmenting traffic into networks - not always correctly, but ok.
  • It tried to identify devices by type - once again, it did ok, but not that great.
Matthew Frederickson | TrustRadius Reviewer

Tanium

  • Tanium helps in identifying a list of infected machines with any vulnerabilities. For example if we create a package with list of Windows vulnerabilities, it will push the package through its sensors to all the nodes, and trace out the infected machines in our organization.
  • It helps in adding IOC's which helps us in track down the hashes or shah files existing with that IOC 's machines.
  • The most impressive thing about Tanium is that it can quarantine the machine of our choice without connecting to the network, which really helps a lot of times in containment of any infected machines.
Anonymous | TrustRadius Reviewer

Cons

Darktrace

  • False positives. Darktrace uses "AI" to create its alerts for "unusual" or "malicious" activity. It is very common to see an alert for completely benign and normal device behavior - PC tries to print for the first time in a while, for example.
  • Antigena actions. To some extent, this is a continuation of the previous point. Darktrace can break the network connectivity of the suspected device automatically. The excessive number of false positives makes administrators reluctant to use this feature, though. Also, the default Antigena actions are not relevant to real-world problems as I saw them in my experience with Darktrace.
Anonymous | TrustRadius Reviewer

Tanium

  • One issue is its ring topology, as the data is stored in central hubs and pushed through its peer nodes. If the central hub fails, then the associated node will also result in failure.
  • Another problem is that all Tanium management is on premises requiring the customer to maintain it. If we want ask any help from Tanium support we always get a response like "you are maintaining it yourselves and it's your responsibility.
  • The Tanium User Interface could be improved a bit as, although the tool is rich in performance, a more impressive UI might really attract new customers.
Anonymous | TrustRadius Reviewer

Support Rating

Darktrace

Darktrace 9.5
Based on 4 answers
Any time I have had any issue with Darktrace, I've been able to contact an engineer through their support desk, and I have always had a very speedy response. Even when the issue has been caused by something outside of the Darktrace devices, they have still been very keen to try to help and identify what the problem was. The customer portal also has a large number of videos and guides that you can use to educate yourself on the product
Anonymous | TrustRadius Reviewer

Tanium

No score
No answers yet
No answers on this topic

Alternatives Considered

Darktrace

We have not evaluated others as they seem to be in their own class.
Anonymous | TrustRadius Reviewer

Tanium

Tanium is best for identifying infrastructure infections, and it is easy use where a user who has basic English knowledge can search his queries very easily. Tanium's exceptional feature is quarantining the machine from network, and this is a really impressive feature which should gain them new customers. Tanium helps in removing the suspicious application quickly, which saves time and manual work.
Anonymous | TrustRadius Reviewer

Return on Investment

Darktrace

  • We had an ROI just during the POC. DarkTrace helped us identify a ransomware attack and we stopped it before it happened.
  • The weekly reports more than pay for itself within the first few months.
  • The powerful search capability helps us solve problems where other solutions fall short.
Anonymous | TrustRadius Reviewer

Tanium

  • Adding the IOC 's tracing infected machines, and removing unwanted applications quickly.
  • Quarantine the infected machine from the network in order to prevent it from causing damage or infecting other machines.
  • The user interface could be improved.
Anonymous | TrustRadius Reviewer

Pricing Details

Darktrace

General

Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No

Tanium

General

Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No

Add comparison