Try our new research platform with insights from 80,000+ expert users

Claroty Platform vs Darktrace comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Claroty Platform
Average Rating
8.2
Reviews Sentiment
7.2
Number of Reviews
15
Ranking in other categories
Remote Access (9th), Vulnerability Management (18th), Operational Technology (OT) Security (1st), Cyber-Physical Systems Protection (1st)
Darktrace
Average Rating
8.2
Reviews Sentiment
7.2
Number of Reviews
77
Ranking in other categories
Email Security (9th), Intrusion Detection and Prevention Software (IDPS) (1st), Network Traffic Analysis (NTA) (1st), Network Detection and Response (NDR) (1st), Extended Detection and Response (XDR) (6th), AI-Powered Chatbots (2nd), Cloud Security Posture Management (CSPM) (16th), Cloud-Native Application Protection Platforms (CNAPP) (12th), Attack Surface Management (ASM) (3rd), AI-Powered Cybersecurity Platforms (2nd)
 

Mindshare comparison

While both are Network Security Systems solutions, they serve different purposes. Claroty Platform is designed for Cyber-Physical Systems Protection and holds a mindshare of 42.9%, up 31.3% compared to last year.
Darktrace, on the other hand, focuses on Extended Detection and Response (XDR), holds 10.0% mindshare, down 10.5% since last year.
Cyber-Physical Systems Protection
Extended Detection and Response (XDR)
 

Featured Reviews

Deevanshi Priya - PeerSpot reviewer
Achieve certifications with progress tracking and potential for enhanced interactivity
I was using Claroty to complete training assigned by my company. The courses were self-paced and helped me get certified in two additional certifications. I plan to use it further as I have a task list for future courses. It was primarily for certification and study materials The feature I like…
Peter-Murphy - PeerSpot reviewer
Enables proactive threat detection and immediate response through AI monitoring
The most valuable feature of Darktrace is its ability to detect and counter threats before they occur. The autonomous response capability is always enabled, blocking threats immediately without hesitation. Additionally, the Darktrace email platform is a significant asset since it addresses incoming threats before they reach the network, enhancing our security measures. Protecting the business is essential, and ensuring security through 24/7 AI monitoring is invaluable.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I like how the tool does passive and active discovery and threat detection and shows risks, recommendations, and vulnerabilities. It gives risk scores and gathers everything in one place - IP, device name, etc. We can integrate it with other tools for overall network mapping. It's useful for audits, compliance, and monitoring of all devices in the industry. It provides both monitoring and control. We also have SRA for incident response, which lets us search all alerts if we deploy the Claroty Platform."
"Their SRA solution, the Secure Remote Access solution, is very useful for industrial environments."
"The tool's best feature was the UI and the simplicity it offers."
"Claroty provides continuous threat protection and identifies pre-empty stuff and false positives."
"I appreciate the active coding, deep inspection of packages, and data retrieval. The tool covers information about assets and attack vectors, which I find superior to other tools. Based on alerts, I create reports detailing how an attacker can penetrate the plant, both externally and internally."
"The solution offers comprehensive tools that greatly enhance your IT operations if implemented correctly."
"I believe the two main aspects where Claroty stands out are their ability to provide a complete platform and their OT-specific focus."
"Claroty is very beneficial for learning and adds value to your resume."
"In terms of features, the data or information they collect and unsupervised machine learning are very valuable. Its unsupervised machine learning has reduced our team's effort. Both Darktrace and Vectra work on unsupervised machine learning that learns the behavior or develops a profile on its own, which allows our security team to do some other tasks rather than spending time on Darktrace or Vectra. Because of unsupervised machine learning, its detection capability is quite good. Along with that, if we utilize the integration feature properly, the automated incident response capability of Darktrace is quite useful."
"The ability to see what we have not seen before is most valuable. It is very interesting to find out the most vulnerable devices in our network."
"Darktrace's most valuable features are its dashboards and its ability to summarize huge amounts of information about threats and suspicious traffic."
"I have used multiple solutions, but its graphical user interface is quite interesting and quite descriptive. There are a lot of video animations, and we can easily see how the data is transferred between various points. That's something really interesting. It is also quite easy to understand for a new user."
"Artificial intelligence and machine learning functionalities are valuable."
"The AI-based pattern is the most valuable feature."
"The initial setup is simple."
"I particularly like Antigena and the analytics around the real-time monitoring of our network. I also like its reporting because it has got a seven-day reporting period within the system. Every time you run the reports, it gives you the data about the previous seven days. I like that because it is in real-time. I enjoy reading those reports and getting a very clear and decisive idea of what's happening on my network on a real-time basis. I like the actual real-time monitoring of spoofing and things like that. I also like the user monitoring as well as the network logging capabilities."
 

Cons

"There is room for improvement in the user interface to make it more vibrant and interactive, similar to IT tools."
"The graphical user interface is quite poor."
"The product's integration capabilities are an area of concern where improvements are required."
"The product could be improved in terms of user interface design."
"We face issues in the alert investigation area because it does not properly give the alert communication patterns."
"Occasionally, I face a login problem despite entering the correct password."
"There are a few protocols that Claroty doesn't currently support."
"I've reported four bugs and three feature requests so far. The main area of focus should be on how attacks are detected. The attack vector information needs to be more detailed. For example, it's not enough to state that an SMB v1 version open can lead to a WannaCry attack. A more detailed explanation should help clients understand the various ways an attack could occur."
"The initial setup is more complex and time-consuming than some solutions."
"The price point for the product was too high for what our possible use case could be."
"Getting logs from different sources can be a challenge."
"It's quite expensive to have."
"The main portal needs improvement as it is difficult to use."
"One area for improvement is the alerting system, which generates too many alerts and becomes labor-intensive for organizations not equipped with enough personnel in their SOC."
"It takes time to go through the interface and pick up things. If it were a more straightforward interface, then it would free up time."
"They just need to make it a little bit more accurate as far as their alerts are concerned. It does generate some false positives that you have to tune. You have to do a lot of tuning when you first get it because of the false positives, but once it is all tuned up and ready to go, it will do its thing from there."
 

Pricing and Cost Advice

"The tool is quite expensive."
"The licensing for physical devices is cheap, but the software version is expensive. The software version costs around 26-28 dollars. I was surprised and even double-checked. It was shocking."
"It's a bit expensive compared to other solutions."
"All of the other modules, such as the licensing modules, are on par. It's one for one."
"It is inexpensive considering what it can do and the competition."
"It is expensive. I don't have the price for other competitors."
"It was $3,600 a month or $2,000 plus or so. I am not sure. Its licensing is pretty simple."
"The pricing is reasonable."
"The solution is about $6,000 per quarter."
"It is expensive."
"The cost is moderate."
report
Use our free recommendation engine to learn which Cyber-Physical Systems Protection solutions are best for your needs.
839,422 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
16%
Computer Software Company
14%
Energy/Utilities Company
11%
Financial Services Firm
5%
Computer Software Company
15%
Manufacturing Company
8%
Financial Services Firm
8%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which solution do you prefer: Nozomi Networks or Claroty Platform?
Nozomi Networks and Claroty Platform are both leading operational technology (OT) security solutions offering a wide range of features, including asset discovery, risk assessment, and threat detect...
What do you like most about Claroty Platform?
The product helps mitigate potential threats, especially if its users have signature rules. The product also provides alerts.
What needs improvement with Claroty Platform?
If more AI features could be included with the Clarity solution, it would be feasible for everybody. As AI is booming now, there are concerns about AI security. There should be AI security solution...
How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What do you like most about Darktrace?
A very useful feature in Darktrace for real-time threat analysis is the packet inspection that analyzes the packet traffic in real time.
 

Overview

 

Sample Customers

Rockwell Automation
Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
Find out what your peers are saying about Armis vs. Claroty Platform and other solutions. Updated: January 2025.
839,422 professionals have used our research since 2012.