Try our new research platform with insights from 80,000+ expert users

Cisco Secure Network Analytics vs Claroty Platform comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Juniper Mist Premium Analytics
Sponsored
Average Rating
8.0
Number of Reviews
2
Ranking in other categories
Network Monitoring Software (58th)
Cisco Secure Network Analytics
Average Rating
8.2
Number of Reviews
59
Ranking in other categories
Network Monitoring Software (24th), Network Traffic Analysis (NTA) (3rd), Network Detection and Response (NDR) (5th), Cisco Security Portfolio (4th)
Claroty Platform
Average Rating
8.0
Number of Reviews
11
Ranking in other categories
Remote Access (10th), Vulnerability Management (15th), Operational Technology (OT) Security (1st), Cyber-Physical Systems Protection (1st)
 

Mindshare comparison

Network Monitoring Software
Cyber-Physical Systems Protection
 

Featured Reviews

ALEXANDRE VIANNA - PeerSpot reviewer
May 3, 2024
Has a single dashboard, but is expensive
We use this solution to manage our mission environment The single dashboard is a valuable feature.  The technical support needs improvement. The initial setup is straightforward. The solution is expensive. I rate the pricing an eight out of ten.  Overall, I rate the solution a seven out of…
Rainier S. - PeerSpot reviewer
Mar 22, 2018
You are able to drill down into a center's utilization, then create reports based on it
In the last year or two, we have been working with our Cisco NAS engineers to improve our security posturing. It is more our being proactive rather than reactive. While Stealthwatch and Lancope have this ability to look inside and give you visibility (a great feature), follow-up is the rule. We would like filters that you can put into place to tap onto certain types of behaviors, alerts out, and/or hopefully a block. This is sort of what we are looking for. I might be speaking too early, because we are not down this path yet. We know the feature set is there, we just do not know yet how to achieve it. That is proactive rather than more reactive. For Lancope Stealthwatch, we would like to see it more on the ASA Firewall platform. While this might already be available, this is more a failing of Cisco to inform us if it is there. For example: * Are we on the right or wrong version of the code? * What does the code look like? * Are we are really looking at firewalls? Or is it more about the foundation and route switches that we are seeing? It is about visibility.
AnandKumar2 - PeerSpot reviewer
Jul 8, 2024
Useful for active coding, deep inspection of packages, and data retrieval
I appreciate the active coding, deep inspection of packages, and data retrieval. The tool covers information about assets and attack vectors, which I find superior to other tools. Based on alerts, I create reports detailing how an attacker can penetrate the plant, both externally and internally. Initially, I felt the Claroty Platform wasn't up to the mark for vulnerability management, but recent upgrades have been very helpful. The new features provide more detailed information, including CVE numbers and thorough explanations, such as for MS17-010 (WannaCry). This level of detail meets my expectations and allows me to determine how much of the plant's assets and devices would be compromised if a vulnerability is exploited. This information is crucial for reporting to the CISO.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We can manage the entire system across the network and troubleshoot the pain points."
"The single dashboard is a valuable feature."
"Visibility. The ability to look East and West. To see what is passing through your circuits, where it is coming from, and how big it is."
"It's a dependable product that is able to pinpoint where we have vulnerabilities if they occur."
"The most valuable feature is anomaly detection, where it finds things that are not allowed internally."
"The most valuable feature is its alerts and dashboard."
"Cisco Stealthwatch has reduced the amount of time to detect an immediate threat."
"The search options on Cisco Stealthwatch are the most valuable. You can get very granular with it, down to the kilobits or the seconds if you want. The product supports any time frame that you need, so that is nice."
"The fact that it can identify down to an IP address of a system that is causing problems, or potentially causing problems, is very valuable."
"Cisco Secure Network Analytics has increased the visibility of what is happening in our network, and I think that's the most important reason to use it. We can see what is really happening instead of just looking at numbers from routers or switches."
"Claroty provides continuous threat protection and identifies pre-empty stuff and false positives."
"The solution offers comprehensive tools that greatly enhance your IT operations if implemented correctly."
"I appreciate the active coding, deep inspection of packages, and data retrieval. The tool covers information about assets and attack vectors, which I find superior to other tools. Based on alerts, I create reports detailing how an attacker can penetrate the plant, both externally and internally."
"The main advantage of Claroty, when compared to its competitors, is integrated secure remote access."
"The product helps mitigate potential threats, especially if its users have signature rules. The product also provides alerts."
"The solution's asset management is really great compared to Dragos or Nozomi."
"I like how the tool does passive and active discovery and threat detection and shows risks, recommendations, and vulnerabilities. It gives risk scores and gathers everything in one place - IP, device name, etc. We can integrate it with other tools for overall network mapping. It's useful for audits, compliance, and monitoring of all devices in the industry. It provides both monitoring and control. We also have SRA for incident response, which lets us search all alerts if we deploy the Claroty Platform."
"The solution's most valuable feature is the map, which shows everything that is connected and communicates with each other."
 

Cons

"The Wi-Fi side needs improvement."
"The technical support needs improvement."
"The version with the Dell server had iDRAC problems. Often, it reported iDRAC failure."
"There could be better integration on the programming side, which uses Python. StealthWatch could provide a template for Python to manage the switches. For example, it would be nice if StealthWatch bounced a port automatically it detected something anomalous."
"I would like to see a hybrid solution that can work without being connected directly to the internet for those destinations."
"The reporting of day-to-day metrics still has room for improvement."
"We determined that Stealthwatch wouldn't provide the machine learning model that we required."
"There's a lot of traffic on our network that we don't see sometimes."
"Cisco could improve the administration for the customers."
"We haven't seen ROI."
"Claroty Platform could improve the pricing to get more acceptability in the market."
"The product's integration capabilities are an area of concern where improvements are required."
"We face issues in the alert investigation area because it does not properly give the alert communication patterns."
"For improvement, I think the training could be more practical. We have external training, but they're mostly theoretical. I want the solution to provide hands-on lab experience to help users learn better."
"I've reported four bugs and three feature requests so far. The main area of focus should be on how attacks are detected. The attack vector information needs to be more detailed. For example, it's not enough to state that an SMB v1 version open can lead to a WannaCry attack. A more detailed explanation should help clients understand the various ways an attack could occur."
"Claroty Platform only gives the vulnerabilities based on the make and model of the devices, so it doesn't provide any resolution or any detailed explanation of how one can resolve such issues."
"There are a few protocols that Claroty doesn't currently support."
"The product could be improved in terms of user interface design."
 

Pricing and Cost Advice

"The solution is expensive."
"Our fees are approximately $3,000 USD."
"​Licensing is done by flows per second, not including outside (in traffic)."
"Pricing is much higher compared to other solutions."
"One of the things which bugs me about Lancope is the licensing. We understand how licensing works. Our problem is when we bought and purchased most of these Lancope devices, we did so with our sister company. Somewhere within the purchase and distribution, licensing got mixed up. That is all on Cisco, and it is their responsibility. They allotted some of our sister company's equipment to us, and some of our equipment to them. To date, they have never been able to fix it."
"We pay for support costs on a yearly basis."
"The tool is not cheaply priced."
"Licensing is on a yearly basis."
"On a yearly basis, licensing is somewhere around $30,000."
"It's a bit expensive compared to other solutions."
"The licensing for physical devices is cheap, but the software version is expensive. The software version costs around 26-28 dollars. I was surprised and even double-checked. It was shocking."
"The tool is quite expensive."
report
Use our free recommendation engine to learn which Network Monitoring Software solutions are best for your needs.
814,649 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Financial Services Firm
12%
Manufacturing Company
9%
Government
8%
Computer Software Company
31%
Financial Services Firm
11%
Government
8%
Manufacturing Company
6%
Manufacturing Company
15%
Computer Software Company
15%
Energy/Utilities Company
12%
Financial Services Firm
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about Juniper Mist Premium Analytics?
We can manage the entire system across the network and troubleshoot the pain points.
What do you like most about Cisco Stealthwatch?
The most valuable feature of Cisco Secure Network Analytics is the Threat Intelligence integration.
What is your experience regarding pricing and costs for Cisco Stealthwatch?
The tool is not cheaply priced. In cybersecurity, you want an extra layer of security in your organization. Some sect...
What needs improvement with Cisco Stealthwatch?
The expensive nature of the tool is an area of concern where improvements are required.
Which solution do you prefer: Nozomi Networks or Claroty Platform?
Nozomi Networks and Claroty Platform are both leading operational technology (OT) security solutions offering a wide ...
What do you like most about Claroty Platform?
The product helps mitigate potential threats, especially if its users have signature rules. The product also provides...
What needs improvement with Claroty Platform?
For improvement, I think the training could be more practical. We have external training, but they're mostly theoreti...
 

Also Known As

No data available
Cisco Stealthwatch, Cisco Stealthwatch Enterprise, Lancope StealthWatch
No data available
 

Learn More

Video not available
 

Overview

 

Sample Customers

Information Not Available
Edge Web Hosting, Telenor Norway, Ivy Tech Community College of Indiana, Webster Financial Corporation, Westinghouse Electric, VMware, TIAA-CREF
Rockwell Automation
Find out what your peers are saying about Zabbix, Datadog, Auvik and others in Network Monitoring Software. Updated: November 2024.
814,649 professionals have used our research since 2012.