Try our new research platform with insights from 80,000+ expert users

Darktrace vs Tanium comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Darktrace
Average Rating
8.2
Reviews Sentiment
7.2
Number of Reviews
82
Ranking in other categories
Email Security (9th), Intrusion Detection and Prevention Software (IDPS) (1st), Network Traffic Analysis (NTA) (1st), Network Detection and Response (NDR) (1st), Extended Detection and Response (XDR) (6th), Cloud Security Posture Management (CSPM) (15th), Cloud-Native Application Protection Platforms (CNAPP) (11th), Attack Surface Management (ASM) (4th), AI-Powered Cybersecurity Platforms (2nd)
Tanium
Average Rating
7.6
Reviews Sentiment
6.8
Number of Reviews
18
Ranking in other categories
Server Monitoring (5th), Vulnerability Management (21st), Endpoint Protection Platform (EPP) (31st), Endpoint Detection and Response (EDR) (26th)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. Darktrace is designed for Network Detection and Response (NDR) and holds a mindshare of 23.6%, down 25.5% compared to last year.
Tanium, on the other hand, focuses on Endpoint Protection Platform (EPP), holds 2.5% mindshare, up 2.2% since last year.
Network Detection and Response (NDR)
Endpoint Protection Platform (EPP)
 

Featured Reviews

Malebo Lethoba Group - PeerSpot reviewer
Have found the AI analyst and detection functions highly valuable for network operations while managing complexity in initial setup
The functions I find most valuable in Darktrace ( /products/darktrace-reviews ) are the AI analyst as well as the detection.The autonomous response capabilities of Darktrace are not crucial for me because it doesn't work in a network where there are no core switches. In a modern network, the autonomous response doesn't work, especially when sitting in a shared data center.If I'm running a traditional network where I am not in a shared data center with a layer two dedicated for my resources, then it can work for me. However, if I am in a data center where I don't have layer two, it becomes an issue because the autonomous response is reliant on sending spoofed TCP resets to my core switch to block traffic, which is a major issue.
NitinKushwaha - PeerSpot reviewer
Stable product with an ability to build complex roles
We use Tanium as an EDR solution for managing end-user devices and servers The product is granular and can build complex roles compared to other EDR vendors. Tanium's dashboard UI could be similar to CrowdStrike. We have been using Tanium for two and a half years. The product is stable. I rate…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I am impressed with the product's ability to give insights into network traffic."
"The solution can scale."
"The most valuable features of Darktrace are its full capabilities. You have visibility of everything."
"The product offers us a very good user interface and we've found the network visibility to be very good so far."
"The solution is outstanding from a monitoring perspective."
"Darktrace provides better visibility into network risks, allowing you to take preemptive action against risky user behavior."
"The most valuable feature is that it gives us visibility of rogue traffic that is on the network."
"The NDR is good in their solution and they have NTG for email."
"Tanium's most valuable feature is its instant discovery aspect."
"The most valuable features of this solution are the consolidation of all historical data on device endpoints, security drivers, firmware, and Software version gaps."
"I like the tool's incident response and security patching."
"When I push a quick update, it's done right away, and I can rescan immediately to confirm completion within minutes."
"Tanium's most valuable features are patch management, inventory, and distribution software."
"I like the fact that you can create patching campaigns depending on the area of your network that you want to address first. I like the ability it has to make several campaigns that work in parallel."
"Tanium’s linear-chain architecture is valuable."
"Tanium is a very good product and I would rate it eight or nine out of ten."
 

Cons

"I think there is some MSSP missing."
"In an upcoming release, there could be more customizable playbooks or a library of playbooks to choose from."
"I would like to see some additional enhancements."
"It is expensive, but everything else has been great so far."
"A reporting portal could be a great addition to help customize reports."
"It's quite expensive to have."
"The pricing model is a little too high and could be more flexible."
"The dashboard and reporting for this solution could be improved as it is currently complex. The GUI for this solution could also be improved."
"I would like to have more integrations and custom plugins to input. Integration is always a big deal in a lot of different environments."
"The most painful thing is the interface. It's a bit unclear sometimes."
"It is not really additional functions, or the features that are needed, rather the complexity would be reduced based on the number of modules required to put together a comprehensive operational security and risk compliance model."
"Any movement into a SaaS solution has challenges since the processes and data flows are not well defined. Hence, you need to build it at the same time."
"Tanium's limitations should be improved because although it is a great tool, it is limited to only a few classes during a session."
"The solution lacks mobility."
"The reporting could be improved."
"We had some issues with the solution's OS upgrade."
 

Pricing and Cost Advice

"The cost of the solution is expensive for smaller businesses. They will not be able to afford it or might not need this type of security solution."
"They are too expensive compared with other vendors."
"This solution is expensive."
"In the ballpark, we're talking about $30K, $50K, and up. It can even be as much as $50K or $100K."
"The cost is moderate."
"The pricing is very flexible for Darktrace. Sometimes, a customer does not have the appropriate budget, but Darktrace can handle that. They offer monthly payments, so the customer can acquire the solution very easily."
"It is expensive."
"The solution is about $6,000 per quarter."
"The solution offers value for money."
"Tanium is a more expensive solution in Latin America than some of the competitors, such as BigFix."
"The solution is expensive but it's a good investment."
"It's an expensive solution. It would be nice if the cost were lower."
"It is higher than some competitors in the market."
"There is an annual license required to use this solution."
"The product's pricing differs from region to region depending on negotiations and the number of endpoints."
report
Use our free recommendation engine to learn which Network Detection and Response (NDR) solutions are best for your needs.
861,524 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Manufacturing Company
9%
Financial Services Firm
8%
Government
7%
Financial Services Firm
16%
Government
12%
Computer Software Company
9%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What do you like most about Darktrace?
A very useful feature in Darktrace for real-time threat analysis is the packet inspection that analyzes the packet traffic in real time.
What do you like most about Tanium?
Tanium’s linear-chain architecture is valuable.
What needs improvement with Tanium?
While there is always room for improvement, I am pleased with Tanium.
What is your primary use case for Tanium?
The primary use case for Tanium ( /products/tanium-reviews ) is compliance, patching, and inventory as part of the core functions.
 

Overview

 

Sample Customers

Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
JPMorgan Chase, eBay, Amazon, US Bank, MetLife, pwc, Cerner, Delphi, MGM Grand, New York Life
Find out what your peers are saying about Darktrace, Vectra AI, Trend Micro and others in Network Detection and Response (NDR). Updated: June 2025.
861,524 professionals have used our research since 2012.