We performed a comparison between Darktrace and Sophos Email based on real PeerSpot user reviews.
Find out in this report how the two Email Security solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."Some of the valuable features on the email side are anti-phishing, anti-malware, and Safe Links."
"The product is not resource-intensive."
"Since we have started using the solution, there have been fewer compromises."
"I like its investigation capabilities, as that is what is most important to me. It is fairly simple with a user-friendly interface."
"The initial setup is straightforward. You just add the license, click it, and then you can set up the rules. It is quite simple."
"Defender is a SaaS platform, so it offers more flexibility. Managing the permissions is easier. The solution's automated detection and response features are scalable."
"At the moment we are satisfied with this product. It's a stable, scalable, and resilient solution for us."
"Microsoft Defender for Office 365's most valuable features are safe attachments and safe links."
"The Antigena feature is most valuable. Once it learns your environment, Antigena can step in and block a denial of service attack, a ransomware attack, or just about anything that doesn't belong in the environment. It can detect any type of attack that hits the environment because it understands what normal looks like for the network. It is very useful for an autonomous response."
"The main valuable feature is that we don't need a lot of analysts. With few analysts, we have all the network monitored, 24/7."
"We have found the product to be stable and issue-free."
"The initial setup is simple."
"The models, triggers, and alerts are customizable."
"It's a very stable product."
"What I like about Darktrace, is that you can quickly identify threats."
"The solution can scale."
"When you say email security, it's about everything, incoming email, outgoing email, spam, phishing emails, unwanted marketing emails. You can set rules, but the main feature of Sophos Email is to make sure you don't get hacked. 95% of people who are hacked do not get hacked by typing the router password. They are hacked from the inside out, which means they send you a document that is a zero-day attack, you open it, nothing happens, but technically the attack is running in the background of your computer. This is how they gain access to your PC."
"The feature of Sophos Email that we find most effective for detecting suspicious emails is primarily based on their signatures."
"The best thing about it is the logs."
"I have found Sophos Email to be scalable."
"The deployment is very easy. It's quite straightforward."
"There are many features that are important, but among those, the spam protection feature is very valuable. It help us to safeguard the email against phishing and ensures that there is maximum security enabled for our communication processes. It has a huge role in protecting our emails from potential threats."
"The tool's most valuable feature is the anti-spam detection filter. Its threat email intelligence features help to identify email data."
"The platform is scalable when installed on server-based systems."
"The custom alerts have to improve a lot."
"The GUI is sometimes slow to fetch the device report and could be improved."
"Microsoft security solutions work as expected. They are constantly updating the solutions to make them better. At the same time, the changes can impact a customer's environment, and we need to adjust settings. Sometimes we aren't aware of the changes, and nothing is pushed from the backend automatically."
"In some situations, it has not been able to pick impersonated emails having no attachments. Technical support definitely has a scope for improvement."
"The company should focus on adding threats that the solution is currently unable to detect."
"We need a separate license and we don't know how to get the license that is required."
"The only thing they should improve is the licensing model. They should stop changing it. A year ago, the five features I mentioned were included in one product. Now, three of them are bundled into one product, and you have to pay extra for the other two. I don't mind paying extra, but I don't want them to change it every year or every six months. I need to know what I'm looking at and not worry about it next year."
"Microsoft sometimes has downtime, and we'll get several incidents coming in back to back. We have a huge backlog of notifications, many of which may be false positives. However, there might be serious alerts, so we can't risk dismissing all of them at once."
"I would like for the product to work on the endpoints as well. I would like to see enhanced visibility into the endpoints and network but this solution only sits on the network itself."
"Darktrace requires numerous configurations. It would be beneficial if the configuration could be made simpler."
"The initial setup is more complex and time-consuming than some solutions."
"I believe their network monitoring device licensing module could use some improvement."
"I was under impression that Darktrace's automatic blocking would be an out-of-the-box feature, but we had to integrate it with our firewall to get it to block automatically. The salesperson should be upfront and explain that you need to integrate it with your network. I would also like to see more reporting on risk. Banks in my region want to see at a glance the risk level of various assets."
"Its documentation is not up to the mark. At times, I have a lot of trouble finding a solution. Even when I posted questions on the community chats, it took a lot of time for me to get answers. That's something that can be improved. Darktrace can focus on creating a more interactive community. If there are more people from Darktrace to focus on community chats, it would be better."
"In terms of improvements, fine-tuning is the area where we have to spend some time because it works on unsupervised machine learning. It would be good if they can improve their algorithm or technical functionality to reduce the fine-tuning effort. They can also come up with something at the endpoint level. So far, Darktrace has been a network detection response (NDR) solution. It does not offer much at the endpoint level or on user-client devices or servers. There should be more visibility at the endpoint level. It would be good to have the detection and response at the endpoint level by Darktrace. It should also have integration with an agile environment so that we can have continuous development and continuous integration in the application development environment. This is currently not there. It should also have internet-facing platform visibility, which is currently missing. They also need to improve the reporting and management dashboards. Currently, these are not so easy for a non-technical person. All these features would make Darktrace much better, and they would also be helpful in selling more solutions."
"In an upcoming release, there could be more customizable playbooks or a library of playbooks to choose from."
"Servicing and support are areas with shortcomings where the solution needs to improve."
"The tool’s stability should be improved."
"Lacks visibility into spam emails."
"A lot of legit emails get quarantined."
"The solution should be able to support the cloud environment."
"Sophos Email has few improvements to implement, including the handling of incoming emails in the systems. It needs to add additional feature that helps in enhancing the scanning processes of these emails. While adding these features, it should work towards improving the current features also."
"I would like to see improvements in the initial setup process, ensuring better compatibility with diverse customer infrastructures."
"Sophos Email can improve security."
More Microsoft Defender for Office 365 Pricing and Cost Advice →
Darktrace is ranked 11th in Email Security with 65 reviews while Sophos Email is ranked 10th in Email Security with 26 reviews. Darktrace is rated 8.2, while Sophos Email is rated 8.0. The top reviewer of Darktrace writes "Great autonomous support, offers an easy setup, and has responsive support". On the other hand, the top reviewer of Sophos Email writes "Provides good identity proxy features, but sandboxing and spam control features could be improved". Darktrace is most compared with CrowdStrike Falcon, Vectra AI, SentinelOne Singularity Complete, Cortex XDR by Palo Alto Networks and Cisco Secure Network Analytics, whereas Sophos Email is most compared with Microsoft Exchange Online Protection (EOP), Fortinet FortiMail, Proofpoint Email Protection, Barracuda Email Security Gateway and Perception Point Advanced Email Security. See our Darktrace vs. Sophos Email report.
See our list of best Email Security vendors.
We monitor all Email Security reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.