Try our new research platform with insights from 80,000+ expert users

Darktrace vs Heimdal Email Security comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 21, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Darktrace
Ranking in Email Security
8th
Average Rating
8.2
Reviews Sentiment
7.2
Number of Reviews
82
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (2nd), Network Traffic Analysis (NTA) (1st), Network Detection and Response (NDR) (1st), Extended Detection and Response (XDR) (6th), Cloud Security Posture Management (CSPM) (14th), Cloud-Native Application Protection Platforms (CNAPP) (10th), Attack Surface Management (ASM) (4th), AI-Powered Cybersecurity Platforms (2nd)
Heimdal Email Security
Ranking in Email Security
64th
Average Rating
9.0
Reviews Sentiment
7.9
Number of Reviews
1
Ranking in other categories
Fraud Detection and Prevention (73rd)
 

Mindshare comparison

As of October 2025, in the Email Security category, the mindshare of Darktrace is 2.6%, up from 2.4% compared to the previous year. The mindshare of Heimdal Email Security is 0.2%, up from 0.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Email Security Market Share Distribution
ProductMarket Share (%)
Darktrace2.6%
Heimdal Email Security0.2%
Other97.2%
Email Security
 

Featured Reviews

Malebo Lethoba Group - PeerSpot reviewer
Have found the AI analyst and detection functions highly valuable for network operations while managing complexity in initial setup
The functions I find most valuable in Darktrace are the AI analyst as well as the detection.The autonomous response capabilities of Darktrace are not crucial for me because it doesn't work in a network where there are no core switches. In a modern network, the autonomous response doesn't work, especially when sitting in a shared data center.If I'm running a traditional network where I am not in a shared data center with a layer two dedicated for my resources, then it can work for me. However, if I am in a data center where I don't have layer two, it becomes an issue because the autonomous response is reliant on sending spoofed TCP resets to my core switch to block traffic, which is a major issue.
Melvin Ong - PeerSpot reviewer
Straightforward to set up, reliable, and offers good functionality
We primarily use the solution for email security and general email management.  It's improved our productivity.  The solution works well overall. The functionality is very good.  The setup process is easy.  It is stable and reliable. It's scalable.  I don't have any specific areas that need…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The platform has many modules, and each module examines a different situation in the behavior."
"The Dynamic Threat Dashboard is very nice, as it lists all of your threats and rates them, and then you can choose whether to investigate further."
"Darktrace's most valuable features are that it understands the network environment and is able to trace the traffic and alert on anomalies."
"The models, triggers, and alerts are customizable."
"Ability to see events and exactly what traffic or website the device had tried to connect to that raised the alert or issue."
"The most valuable feature is that it works autonomously."
"It is very stable and easy to use."
"Darktrace's most valuable features are its dashboards and its ability to summarize huge amounts of information about threats and suspicious traffic."
"It is stable and reliable."
 

Cons

"It's quite expensive to have."
"In an upcoming release, there could be more customizable playbooks or a library of playbooks to choose from."
"One thing I would like is for Darktrace to flag SMB traffic more accurately. Currently, it only flags that SMB traffic has occurred, but it doesn't specify which file was being transferred. This makes it difficult to investigate incidents involving SMB traffic, as we don't have concrete evidence of what was being sent."
"Darktrace requires numerous configurations. It would be beneficial if the configuration could be made simpler."
"The module can improve so that every time it's more intelligent."
"The pricing is a bit high for the region."
"Updates keep coming, which is great, but I prefer a unified UI experience. The intelligence section and the incident view should be seamlessly connected in one view to avoid jumping between pages."
"Darktrace could improve by being more user-friendly."
"The solution could be less expensive."
 

Pricing and Cost Advice

"There is an annual license to use Darktrace."
"I'm unfamiliar with the exact cost, but we have a yearly license and had to pay for Darktrace's services before the deployment. The product is very expensive, so some organizations can't afford to pay the total amount directly, meaning they often seek a partner or pay in installments, which increases the price more."
"Prior to negotiating, Darktrace offered their appliance and service for $80,000 per year."
"In the ballpark, we're talking about $30K, $50K, and up. It can even be as much as $50K or $100K."
"It is a very expensive product."
"It's an expensive solution."
"When it comes to large installations, it can be expensive, but for small accounts it's fine."
"The pricing is subscription-based and it is high."
Information not available
report
Use our free recommendation engine to learn which Email Security solutions are best for your needs.
869,832 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Manufacturing Company
9%
Financial Services Firm
8%
Comms Service Provider
7%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business44
Midsize Enterprise19
Large Enterprise29
No data available
 

Questions from the Community

How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What do you like most about Darktrace?
A very useful feature in Darktrace for real-time threat analysis is the packet inspection that analyzes the packet traffic in real time.
Ask a question
Earn 20 points
 

Comparisons

No data available
 

Also Known As

No data available
MailSentry
 

Overview

 

Sample Customers

Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
Brother, Symbion, CPH West
Find out what your peers are saying about Microsoft, Abnormal AI, Proofpoint and others in Email Security. Updated: September 2025.
869,832 professionals have used our research since 2012.