
for sure, I like the self-learning AI that understands normal email behavior and stops threats. It integrates cleanly with our other defense systems, providing a clear, natural-language narrative, useful also for end users. Darktrace / EMAIL delivers strong value as a second AI control for high-impact scenarios (BEC, internal threats, novel phishing) when you measure outcomes like time to containment, false-positive rate, and legitimate mail interrupted. Itβs expensive, but the extra layer reduces breakthrough risk and manual toil, justifying the cost when well-tuned and governed. In many cases, with targeted autonomy, solid baselines, and outcome metrics, it could even stand alone without adding complexity. Review collected by and hosted on G2.com.
What I "dislike" most about Darktrace/email is that it still needs careful tuning and governance. We mitigate with phased autonomy, baseline governance, and workflow integration. Review collected by and hosted on G2.com.