Skip to main content
DA

Darktrace

Autonomous identity threat detection and response

Darktrace /IDENTITY monitors identity activity across your digital estate to detect account takeover, insider threats, and lateral movement. It uses AI-driven investigation and automated response to help security teams react faster without stopping normal business operations.

Paid
Enterprise
iOS
Integrations
B2B
A2A Support
Semi-Autonomous
Visit Darktrace

Is this your tool? Claim this listing to manage your content and analytics.

Ask about Darktrace

Get answers based on Darktrace's actual documentation

Try asking:

About

What It Is

Darktrace /IDENTITY is a cybersecurity product focused on identity security and account protection. It is built for security teams and enterprises that need to monitor user behavior across SSO, Active Directory, and cloud applications, then detect suspicious activity such as compromised credentials, session token misuse, and unusual login patterns.

According to Darktrace, setup centers on connecting identity and SaaS sources through integrations and APIs so the system can observe user activity across your environment. The product is positioned as an identity-defense layer that sits alongside your existing security stack rather than a standalone identity provider.

What to Know

This looks like a genuinely agentic security tool: it does not just alert, it can investigate incidents and take response actions such as blocking suspicious IPs, forcing logout, disabling accounts, and ending sessions across devices. That said, it is still a security platform for enterprises, so it is not a fit for individuals or small teams looking for lightweight identity monitoring.

The crawled content highlights Darktrace’s Self-Learning AI and Autonomous Response, but it does not specify the underlying model vendor or whether local models are supported. Pricing was not publicly available on the page, and some implementation details—such as exact deployment options and privacy controls—were not clearly stated in the source content.

Key Features
Monitors identity activity across SSO, Active Directory, and SaaS apps
Detects account takeover indicators such as unusual login location and token misuse
Identifies insider threat behavior using peer group analysis
Catches lateral attack patterns and credential theft signals
Runs autonomous investigations into security events
Use Cases
Detecting account takeover attempts across cloud applications
Investigating suspicious employee or contractor behavior
Spotting credential misuse and session token abuse
Agenticness: Adaptive Collaborator 🤝

Proposes and executes multi-step plans with your approval.

High evidence
Last evaluated: Mar 31, 2026

Dimension Breakdown

Action Capability
Autonomy
Adaptation
State & Memory
Safety

Categories

Pricing

Pricing not publicly available.

Details
AddedMarch 31, 2026
RefreshedMarch 31, 2026
Quick Facts
DeploymentCloud-hosted
AutonomySemi-autonomous
Model supportSingle model
Open sourceNo
Team supportEnterprise
Pricing modelSubscription
Interfaceweb, api
Sources
Similar tools

Related Tools

Inworld AI provides a secure platform for building AI applications, with zero-trust controls, SSO, compliance support, and zero-data-retention options. It is aimed at teams and enterprises that need to deploy AI systems with stronger security and governance requirements.

Enterprise
iOS
B2B
+4

Hive Moderation helps platforms detect and classify unsafe or policy-violating content across multiple media types. It’s built for teams that need API-based moderation and dashboard workflows rather than manual review alone.

iOS
API
Vision
+4

Purple AI helps security teams investigate alerts, hunt threats, and trigger response workflows inside SentinelOne’s Singularity Platform. It turns natural-language questions into security queries and can synthesize evidence into explainable AI verdicts.

Enterprise
iOS
Integrations
+4

Charlotte AI helps security teams offload time-intensive investigation and response work inside the CrowdStrike Falcon platform. It is aimed at security operations teams that want AI assistance grounded in Falcon data and workflows.

Enterprise
iOS
Integrations
+4