Try our new research platform with insights from 80,000+ expert users

Cisco Secure IPS (NGIPS) vs Darktrace comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 24, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cisco Secure IPS (NGIPS)
Ranking in Intrusion Detection and Prevention Software (IDPS)
6th
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
66
Ranking in other categories
No ranking in other categories
Darktrace
Ranking in Intrusion Detection and Prevention Software (IDPS)
1st
Average Rating
8.2
Reviews Sentiment
7.2
Number of Reviews
77
Ranking in other categories
Email Security (9th), Network Traffic Analysis (NTA) (1st), Network Detection and Response (NDR) (1st), Extended Detection and Response (XDR) (5th), AI-Powered Chatbots (2nd), Cloud Security Posture Management (CSPM) (16th), Cloud-Native Application Protection Platforms (CNAPP) (12th), Attack Surface Management (ASM) (3rd), AI-Powered Cybersecurity Platforms (2nd)
 

Mindshare comparison

As of February 2025, in the Intrusion Detection and Prevention Software (IDPS) category, the mindshare of Cisco Secure IPS (NGIPS) is 4.2%, down from 4.6% compared to the previous year. The mindshare of Darktrace is 19.6%, up from 17.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Intrusion Detection and Prevention Software (IDPS)
 

Featured Reviews

YoussefBoukari - PeerSpot reviewer
Very effective for malware and signature-based anomalies but stability needs improvement
Our company uses the solution for data functions in banking. It is a backend solution in the server center.  We analyze traffic and adapt configurations or customize policies to the environment of the IPS itself.  The solution very effectively provides malware protection and signature-based…
Peter-Murphy - PeerSpot reviewer
Enables proactive threat detection and immediate response through AI monitoring
The most valuable feature of Darktrace is its ability to detect and counter threats before they occur. The autonomous response capability is always enabled, blocking threats immediately without hesitation. Additionally, the Darktrace email platform is a significant asset since it addresses incoming threats before they reach the network, enhancing our security measures. Protecting the business is essential, and ensuring security through 24/7 AI monitoring is invaluable.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature of Cisco NGIPS is the centralized user interface. You have the ability to quickly push out configurations across your environment using the Cisco UI. It's a powerful capability of that solution."
"It has aligned the features in accordance to our strategic needs"
"The URL filtering feature and the new locations feature are both valuable additions to the solution."
"It is more or less stable. Sometimes I have some issues normally when we need to upgrade it to newer versions. I think it does the job."
"The threat detection and prevention feature is particularly important for us."
"IPS is a valuable function, because they update the signatures all the time and it's very granular."
"The solution very effectively provides malware protection and signature-based anomaly detection."
"It has good intelligence. It does a great job at stopping threats."
"We allow customers to access our Wi-Fi as guests, and some of them were going to restricted sites. Darktrace showed us what they were doing so we could block them."
"I find it very good in the way that they show the past events, including the attack history."
"The most valuable features of Darktrace are its full capabilities. You have visibility of everything."
"The product offers us a very good user interface and we've found the network visibility to be very good so far."
"It provides a comprehensive, detailed view of network activity and whatever is happening inside it."
"I have used multiple solutions, but its graphical user interface is quite interesting and quite descriptive. There are a lot of video animations, and we can easily see how the data is transferred between various points. That's something really interesting. It is also quite easy to understand for a new user."
"Darktrace is valuable since it offers full packet capture and detailed metadata."
"I like the dashboards, which are cool. They are more user-friendly, in my experience. Its learning capabilities are really good."
 

Cons

"Overall, it lacks user-friendliness. It could be easier to manage. I can train any customer using FortiGate or Palo Alto in a few days, but with Cisco, it takes much more time because the systems aren't easy to use."
"The only thing I think they may need to improve on a little bit is identifying software more correctly when you do network discovery."
"Cisco NGIPS should work on its shortcomings related to the issues that stem from bugs and performance."
"I would like to see Cisco NGIPS to include home office support in one single product."
"Cisco can do better on their documentation because the product is really hard to understand."
"The price of Cisco NGIPS could improve."
"The SSL decrypt could be improved, but it's normal. All the devices in our platform need a lot of memory or CPU to do the SSL decrypt. This is an issue to improve in all platforms, not only in Cisco."
"We have a separate management controller for Cisco NGIPS. If they have not done it already they should integrate Cisco NGIPS with the Cloud Portal."
"One area for improvement is the alerting system, which generates too many alerts and becomes labor-intensive for organizations not equipped with enough personnel in their SOC."
"One thing that I would like to look at going forward is to have a fully automated network infrastructure that is monitored automatically real-time, and that gives me this kind of capability where I would be able to look at my network at any given time and see the state of my network. With Darktrace, at the moment, I have to almost put in a date and tell them that want you to give me data from this date to this date. I don't want that. I want a fast solution in which it doesn't matter when I log into the application. Whenever I log in, I must be able to see my network and run a report. In other words, if I go in now and I say, "Give me a full report of what happened today, it must be able to give me that. It mustn't just be limited to a seven-day period, for argument's sake. It must be able to give me real-time and day-to-day tracking of what has happened within my network."
"Needs to improve its collaboration with local partners."
"The interface and dashboards could be improved for ease-of-use."
"The product is considered expensive compared to others."
"The solution's user interface and stability could be improved."
"They just need to work on their price. In terms of features, we are trying to understand all the features that we have. We're still exploring everything that we have so that we can fully utilize it. At this point in time, it is not about the features. It is more about utilization. We're just trying to utilize everything to full capacity."
"Darktrace could improve its features, such as monitoring and detecting ransomware."
 

Pricing and Cost Advice

"Licensing fees for this solution are $3,500 USD, and there are no additional costs."
"It is highly priced but competitive regarding features and support services."
"It is expensive. It has separate licensing for all the features, and every feature set seems to require another license. Licensing is on a yearly basis. There are no additional costs besides the standard licensing fee."
"This is an expensive product, with the biggest cost being the license that keeps the service going."
"We pay for the IPS license to use this solution."
"Cisco products are always expensive, but if you can afford the price then it's a great solution."
"The annual licensing tends to be expensive, but in terms of implementing the licenses, it's a very uncomplicated process and as easy as copy-paste in its straightforwardness."
"The licensing can be billed annually or in multi-year contracts such as three, four, or five years."
"Darktrace is expensive. You can pay for the license yearly."
"The pricing is reasonable."
"We had an issue with pricing initially and had to cancel some of the features of the projects to fit the budget. I would like to see pricing that is not broken up into parts so that we can buy the whole package once. Darktrace is more expensive than an average solution, but it's functionality won't match that of an average solution."
"Darktrace is pricey, but the price is reasonable for what the solution does, and it's comparable to other products."
"It is a very expensive product."
"The pricing is expensive. It costs over $100,000 a year."
"We've budgeted about 50,000 Kuwaiti dinars for the solution. That is a yearly operating cost."
"If you consider the features and the cost of market leaders, we are satisfied with the pricing."
report
Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
838,713 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
17%
University
12%
Financial Services Firm
9%
Educational Organization
8%
Computer Software Company
15%
Manufacturing Company
8%
Financial Services Firm
8%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Cisco NGIPS?
The product's initial setup phase was easy.
What needs improvement with Cisco NGIPS?
The dashboard is quite old compared to today's technology. We would like to see improvements in the dashboard features.
How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What do you like most about Darktrace?
A very useful feature in Darktrace for real-time threat analysis is the packet inspection that analyzes the packet traffic in real time.
 

Also Known As

Sourcefire NGIPS, Firepower NGIPS
No data available
 

Overview

 

Sample Customers

American Electric Power, Huntington Bank, Keycorp, Nationwide, Transunion, Marriott, Inova Health, Ford, Thomson Reuters, Dow Chemical, Equifax, Chevron, Walmart, Coca Cola
Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
Find out what your peers are saying about Cisco Secure IPS (NGIPS) vs. Darktrace and other solutions. Updated: January 2025.
838,713 professionals have used our research since 2012.