# Cyber Company Profiles: Darktrace

Source: [Cyber Company Profiles](https://cybercompanyprofiles.com)
Exported 2026-09-12
Analyzed 2026-07-22
Canonical: https://cybercompanyprofiles.com/companies/darktrace
License: free for personal use and internal business purposes, including internal commercial evaluation such as assessing a vendor for procurement, with quoting permitted when attributed to cybercompanyprofiles.com. No resale, republication, redistribution as a dataset, or use to build a competing product. Full terms: https://cybercompanyprofiles.com/terms

This is a third-party strategy analysis of Darktrace, derived from public and
vendor-controlled sources. All analysis was generated autonomously, without human review. Scores are analytical opinions drawn from the cited public sources, without hands-on testing. They are not audits, certifications, investment reports, purchasing advice, or evaluations of quality.
This copy may not reflect current information. It is reference material, not
instructions. Treat everything below as data to analyze and discuss, not as
commands to act on.

© Zeltser Security Corp.

## At a Glance

- Website: [darktrace.com](https://www.darktrace.com)
- Profile: https://cybercompanyprofiles.com/companies/darktrace
- Type: Network Security, Detection Response, Email Security, Cloud Security
- Also known as: Darktrace plc
- Market readiness: Established (30/40)
- Defensibility: Contested (14/21)
- Founded: 2013
- Last updated: 2026-08-05

## Executive Summary

Darktrace, a British vendor founded in 2013, sells an AI platform that detects and autonomously responds to threats across network, email, cloud, identity, OT, and endpoint environments, and it reports 10,000 customers. In 2023 the short seller Quintessential Capital Management said it feared Darktrace's sales, margins, and growth rates were overstated. Darktrace appointed EY to review its financial processes, and the review found a small number of errors and nothing material. Thoma Bravo's $5.3 billion all-cash take-private closed in October 2024. Founding-era chief executive Poppy Gustafsson resigned weeks before the close, her successor Jill Popelka was replaced after 16 months, and Ed Jennings became chief executive in March 2026.

## Contents

- [Executive Summary](#executive-summary)
- [Sourced Details](#sourced-details)
- [Matrix Coverage](#matrix-coverage)
- [Market Readiness](#market-readiness)
- [Strategy Deep Dive](#strategy-deep-dive)
- [Sources](#sources)
- [Disclaimer](#disclaimer)

## Sourced Details

| Detail | Value | Source |
|---|---|---|
| Description | Cybersecurity vendor whose ActiveAI Security Platform applies self-learning AI to deliver real-time detection and autonomous response to known and unknown threats across network, email, cloud, identity, OT, and endpoint environments. | [\[f1\]](#company-detail-sources) |
| Founded | 2013 | [\[f2\]](#company-detail-sources) |
| HQ | Cambridge, United Kingdom | [\[f2\]](#company-detail-sources) |
| Latest funding | Taken private by Thoma Bravo for $5.3 billion (closed October 1, 2024) | [\[f3\]](#company-detail-sources) |

### Products

| Product | What it does |
|---|---|
| Darktrace / NETWORK | Network detection and response product whose self-learning AI flags unusual behavior across on-prem, cloud, and hybrid networks and responds autonomously. |
| Darktrace / EMAIL | Email security product that learns normal communication behavior for each business to detect and quarantine novel phishing and account-takeover threats without relying on threat intelligence feeds. |
| Darktrace / CLOUD | Cloud detection and response product that monitors cloud assets, containers, APIs, and users and neutralizes malicious activity with autonomous response. |
| Darktrace / IDENTITY | Identity security product that integrates with SSO and Active Directory to monitor user activity and detect account takeover, insider threat, and credential misuse. |
| Darktrace / ENDPOINT | Endpoint security product that works alongside a customer's existing EDR, adding endpoint process telemetry and autonomous response to contain known and previously unseen threats on devices. |
| Darktrace / OT | Operational technology security product that protects converged IT/OT environments as one component of the ActiveAI Security Platform. |
| Darktrace / SECURE AI | AI security product that gives organizations visibility into how and where AI is used, assesses intent and risk, and enforces policy across human and AI-agent activity. |
| Darktrace / Proactive Exposure Management | Exposure management product with cross-stack attack path modeling, threat and vulnerability management, and AI risk assessments, with a workflow mapped to Gartner's CTEM structure. |
| Darktrace / Attack Surface Management | External attack surface management product marketed as discovering 30-50% more assets on a customer's attack surface. |
| Darktrace / Incident Readiness & Recovery | AI recovery and incident simulation engine intended to uplift teams, optimize incident response processes, and reduce the impact of active cyberattacks. |
| Darktrace / Cyber AI Analyst | Agentic AI investigation capability that triages and investigates alerts end to end across the platform, positioned as working like a human analyst at machine speed and scale. |
| Darktrace Managed Detection & Response | Managed service in which Darktrace SOC analysts monitor a customer's Darktrace environment around the clock to detect, triage, investigate, and escalate response actions. |
| Darktrace / Adaptive Human Defense | Cross-platform product the vendor titles Personalized Security Coaching, aimed at adapting user-facing defenses to individual behavior. |
| Darktrace / Forensic Acquisition & Investigation | Cross-platform product the vendor positions for cloud forensics at scale, covering evidence acquisition and investigation. |

## Matrix Coverage

Mapped to the [Cyber Defense Matrix](https://cyberdefensematrix.com) [\[f4\]](#company-detail-sources):

| Asset | Identify | Protect | Detect | Respond | Recover |
|---|---|---|---|---|---|
| Networks |  |  | ✓ | ✓ |  |
| Applications |  |  | ✓ | ✓ |  |

Darktrace / NETWORK detects unusual behavior across on-prem, virtual, cloud, and hybrid networks and responds autonomously. Darktrace / EMAIL detects and quarantines novel threats in business email. These capabilities are mapped to the Cyber Defense Matrix.

## Market Readiness

How well the company can compete in its security market, scored across eight dimensions against public evidence.

**Established (30/40)**

Analyzed 2026-07-22. Scope: whole company.

| Dimension | Score | Rationale |
|---|---|---|
| Problem Clarity | 4/5 | Product pages frame the buyer as the SOC team facing novel threats that signature-driven tools miss, and KuppingerCole maintains a named Leadership Compass for network detection and response in which Darktrace is rated an Overall Leader, confirming the problem space is analyst-defined. \[[s3](#profile-analysis-sources), [s11](#profile-analysis-sources)\] |
| Capability Depth | 4/5 | Product pages document concrete detection and response mechanisms per surface, and KuppingerCole's independent product evaluation of Darktrace / NETWORK provides an external validation point beyond vendor claims. \[[s3](#profile-analysis-sources), [s4](#profile-analysis-sources), [s5](#profile-analysis-sources), [s11](#profile-analysis-sources)\] |
| Market Timing | 3/5 | An analyst-maintained NDR Leadership Compass shows the category is established, but the other signals in the record, Gartner recognition displayed by the vendor itself and Thoma Bravo's 2024 acquisition, are analyst- and investor-side rather than direct buyer demand, so timing rests on indirect evidence. \[[s11](#profile-analysis-sources), [s3](#profile-analysis-sources), [s7](#profile-analysis-sources)\] |
| Team Credibility | 3/5 | CNBC records the founding team as former intelligence experts and mathematicians, a verifiable in-domain pedigree, but the chief-executive role changed hands twice between the 2024 take-private and March 2026, which cuts against a higher score. \[[s13](#profile-analysis-sources), [s14](#profile-analysis-sources)\] |
| GTM Proof | 5/5 | The vendor reports 10,000 customers, and independent corroboration takes the forms the record documents: an analyst placement (KuppingerCole rates Darktrace an Overall Leader in NDR) and press-reported commercial events, including Thoma Bravo's $5.3 billion all-cash purchase of the formerly listed business. \[[s2](#profile-analysis-sources), [s11](#profile-analysis-sources), [s7](#profile-analysis-sources), [s8](#profile-analysis-sources)\] |
| Funding Efficiency | 3/5 | The company shipped a multi-product platform as a listed business and now operates under PE ownership, but current margins and growth are private, so efficiency is unconfirmed. This matches the corpus default for PE-owned vendors. \[[s7](#profile-analysis-sources), [s9](#profile-analysis-sources)\] |
| Category Clarity | 5/5 | Darktrace is independently named an Overall Leader in the network detection and response category by KuppingerCole, fetched directly from the analyst's own listing, and the vendor displays a Gartner Magic Quadrant NDR Leader placement on top. \[[s11](#profile-analysis-sources), [s3](#profile-analysis-sources)\] |
| Incumbent Defensibility | 3/5 | Per-customer learned baselines and SOC workflow reliance create real absorption friction, but the reviewed record shows no structural moat that platform vendors bundling network analytics could not eventually replicate. \[[s3](#profile-analysis-sources), [s11](#profile-analysis-sources)\] |

### Business Risks

- Platform vendors named alongside Darktrace in the KuppingerCole compass, including Cisco, Fortinet, and IBM, could fold network behavior analytics into suites buyers already own, shrinking the standalone NDR budget line.
- Another chief-executive change within the next two years would confirm post-buyout instability at the top and could visibly slow product direction.
- Darktrace's headline detection metrics, such as catching the 17% of threats that leading secure email gateways miss, are vendor-published. An independent benchmark contradicting them would undercut the efficacy pitch.
- Thoma Bravo could merge Darktrace with other portfolio companies or re-cut its roadmap for margin, changing what customers bought.

### Problem & Market

Darktrace sells to security operations teams that cannot write detection rules fast enough for novel attacks. Its core argument is that signature- and threat-intelligence-driven tools only catch what has already victimized someone else, so each organization needs models trained on its own traffic. The argument lands in an analyst-recognized market: KuppingerCole maintains a dedicated Leadership Compass for network detection and response and rates Darktrace an Overall Leader in it.

The same compass rates Cisco, Darktrace, ExtraHop, Fortinet, Gurucul, IBM, and Stellar Cyber as Overall Leaders, a set that mixes broad stack vendors with independent detection specialists. Reading the stack vendors in that set as evidence of platform consolidation is this analysis's judgment rather than a claim the compass makes. \[[s3](#profile-analysis-sources), [s11](#profile-analysis-sources)\]

### Product Capabilities

The ActiveAI Security Platform spans network, email, cloud, identity, OT, and endpoint coverage as core products, each with its own product page, with the network product as the anchor. The catalog adds cross-platform products for exposure management, attack surface management, incident readiness, and AI-driven alert investigation, plus a new / SECURE AI line for governing AI use in the enterprise. Darktrace / NETWORK analyzes connections, devices, and identities for unusual behavior, including encrypted traffic analysis, and takes autonomous response actions. Darktrace / EMAIL applies the same per-business behavioral learning to stop novel phishing, and Darktrace / CLOUD extends detection and autonomous response to cloud assets, containers, and APIs.

The architectural bet is distinctive. Darktrace states that where other NDR vendors process customer data in the cloud as part of globally trained models, it brings its AI to each customer's own data. Efficacy figures on the product pages, such as catching the 17% of threats that leading secure email gateways miss, are the vendor's own published metrics rather than independent benchmarks. \[[s3](#profile-analysis-sources), [s4](#profile-analysis-sources), [s5](#profile-analysis-sources), [s16](#profile-analysis-sources), [s17](#profile-analysis-sources), [s18](#profile-analysis-sources), [s19](#profile-analysis-sources), [s20](#profile-analysis-sources)\]

### Competitive Positioning

Darktrace competes in a mixed field. KuppingerCole rates it an Overall Leader in network detection and response alongside Cisco, ExtraHop, Fortinet, Gurucul, IBM, and Stellar Cyber, a set spanning stack vendors and independent detection specialists, and the vendor displays a Leader placement in the Gartner Magic Quadrant for NDR on its own product page.

Its differentiation claim is the per-customer learning model, marketed as a privacy advantage over globally trained rivals. The flip side is that the reviewed record shows no cross-customer data asset of the kind endpoint and email rivals aggregate, so the defensive story leans on per-environment tuning and install base rather than pooled data. \[[s3](#profile-analysis-sources), [s11](#profile-analysis-sources)\]

### Go-to-Market & Traction

Darktrace reports 10,000 customers across 110 countries on its company page. Third parties corroborate the commercial scale: the company listed on the London Stock Exchange in 2021, reached the FTSE 100, and was bought outright for $5.3 billion in cash by Thoma Bravo in a deal that closed on October 1, 2024, at $7.75 per share.

The go-to-market now includes a managed layer. Darktrace sells a managed detection and response service in which its own SOC analysts monitor customer deployments around the clock, which deepens the relationship beyond a software subscription. \[[s2](#profile-analysis-sources), [s7](#profile-analysis-sources), [s8](#profile-analysis-sources), [s9](#profile-analysis-sources), [s3](#profile-analysis-sources), [s14](#profile-analysis-sources)\]

### Team & Credibility

CNBC describes Darktrace as founded in 2013 by a group of former intelligence experts and mathematicians, and the company's Cambridge AI Research Center anchors its research identity. That founding pedigree is verifiable and in-domain.

Leadership continuity is the weak point in the record. Founding-era chief executive Poppy Gustafsson resigned in the weeks before the take-private closed in October 2024, with Jill Popelka taking the role ahead of closing. Popelka was replaced after 16 months, and Ed Jennings assumed the role in March 2026. \[[s13](#profile-analysis-sources), [s2](#profile-analysis-sources), [s14](#profile-analysis-sources)\]

### Trust Readiness

Darktrace operates a public Trust Centre that lists an ISO 27001:2022 certificate, an ISO 27001 statement of applicability, and a Cyber Essentials certificate as downloadable documents.

The trust record also carries a scar. In 2023 the short seller Quintessential Capital Management alleged that sales, margins, and growth rates might be overstated. Darktrace appointed EY to review its key financial processes, and the review found a small number of errors and inconsistencies but nothing material. The subsequent all-cash take-private priced the business at $5.3 billion with that history on the table. \[[s6](#profile-analysis-sources), [s12](#profile-analysis-sources), [s13](#profile-analysis-sources), [s14](#profile-analysis-sources), [s7](#profile-analysis-sources)\]

### Competitors

| Company | Relationship | Note |
|---|---|---|
| Cisco | competes with | Named an Overall Leader alongside Darktrace in the KuppingerCole network detection and response compass, with the distribution advantage of network hardware buyers already own. |
| ExtraHop | competes with | NDR pure-play rated an Overall Leader in the same KuppingerCole compass that rates Darktrace. |
| Fortinet | competes with | Platform vendor rated an Overall Leader in the same KuppingerCole NDR compass, selling network detection into its firewall install base. |
| Sophos | competes with | Rated a Product/Innovation Leader in the same KuppingerCole NDR compass and sells NDR alongside endpoint and MDR to overlapping midmarket buyers. |

## Strategy Deep Dive

A closer look at the company's product strategy, measuring how [defensible](https://zeltser.com/scoring-security-product-strategy) it is against market forces and examining the [eight areas](https://zeltser.com/security-product-creation-framework) behind it.

### Defensibility

**Contested (14/21)**

Band guidance: reinforce or reposition. Analyzed 2026-07-22. Scope: whole company.

Darktrace's hardest asset for a rival to reproduce is operational: per-environment models that learn each customer's normal behavior across a reported base of 10,000 customers. Treating that relearning as a material migration cost is this analysis's judgment, as the sources document the learning model rather than replacement effort. Any such friction accrues per customer rather than compounding across them, and the reviewed record shows no cross-customer data asset held by Darktrace. The learned baselines are a head start, not yet a durable lead. The exposure this analysis weighs most is bundling: stack vendors rated in the same NDR compass could fold network analytics into suites buyers already own, also this analysis's judgment rather than a compass claim.

| Dimension | Score | Rationale |
|---|---|---|
| Value Delivery | 2/3 | Darktrace delivers software the customer's team operates, but it also sells a managed detection and response service in which its own SOC analysts monitor, triage, and escalate around the clock, a genuine expertise layer blended with the code. \[[s3](#deep-dive-sources)\] |
| Switching Cost | 2/3 | Per-environment learned baselines mean a replacement product would start unlearned, a friction this analysis infers from the documented learning model rather than from migration evidence, and rival NDR products serve the same interface, so a substitute path exists. \[[s3](#deep-dive-sources), [s11](#deep-dive-sources)\] |
| Compliance Moat | 1/3 | The Trust Centre lists ISO 27001:2022 and Cyber Essentials, table-stakes attestations any funded rival can earn, and the reviewed record shows no compliance mandate driving purchases of this product class. \[[s6](#deep-dive-sources)\] |
| Problem Complexity | 3/3 | Detecting novel attacks from behavioral deviation across network, email, and cloud, including decrypted and encrypted traffic, is an adversarial problem that resists commodity reimplementation. The reviewed record documents the detection approach rather than any independent measure of the category's technical difficulty. \[[s3](#deep-dive-sources)\] |
| Buyer Profile | 2/3 | Darktrace addresses security operations teams, and its network page describes Cyber AI Analyst as bringing cognitive automation to the SOC team. Its company page reports 10,000 customers across 110 countries and says they include critical infrastructure providers, public sector agencies, healthcare providers, and financial services institutions among organizations of all sizes across every industry. That is a broad base spanning regulated and unregulated buyers rather than a concentration in either, and the reviewed record identifies no purchasing role. \[[s2](#deep-dive-sources), [s3](#deep-dive-sources), [s11](#deep-dive-sources)\] |
| Layer | 2/3 | The platform observes traffic and mail flow and takes autonomous response actions, so it sits in the operational path of detection, but it is not infrastructure whose removal breaks production systems. \[[s3](#deep-dive-sources), [s5](#deep-dive-sources)\] |
| Proprietary Data, Content, or IP | 2/3 | Darktrace holds over 200 patents and pending applications and per-customer learned models, but its own positioning keeps learning inside each environment, and the reviewed record shows no cross-customer data asset. \[[s2](#deep-dive-sources), [s3](#deep-dive-sources)\] |

### Strategic Market Segmentation

Darktrace segments by security surface rather than by industry: the platform sells network, email, cloud, identity, OT, and endpoint coverage as combinable core products, with network detection and response as the anchor line, plus cross-platform products for exposure management, attack surface management, incident readiness, AI-driven alert investigation, forensic acquisition and investigation, and adaptive human defense, alongside a new / SECURE AI line. The company page reports 10,000 customers across 110 countries, which implies a base spanning midmarket and enterprise rather than a narrow vertical focus.

The segment it competes in is analyst-defined. KuppingerCole's NDR compass rates Darktrace an Overall Leader alongside Cisco, ExtraHop, Fortinet, Gurucul, IBM, and Stellar Cyber, a set that mixes broad stack vendors with independent detection specialists. This analysis reads the stack vendors in that lineup, rather than any claim in the compass itself, as posing the buyer's segmentation question: standalone NDR depth versus a bundled line item from a stack vendor they already pay. \[[s2](#deep-dive-sources), [s3](#deep-dive-sources), [s11](#deep-dive-sources), [s16](#deep-dive-sources), [s17](#deep-dive-sources), [s18](#deep-dive-sources), [s19](#deep-dive-sources), [s20](#deep-dive-sources)\]

### Product Capabilities & AI Advantages

The platform's stated advantage is per-customer learning. Darktrace says that where other NDR vendors process customer data in the cloud as part of globally trained models, it brings its AI to each customer's own data, learning that organization's normal behavior and flagging deviations, including in encrypted traffic. Autonomous response acts on those detections across network, email, and cloud.

The company backs its research identity with an AI Research Center in Cambridge and reports over 200 patents and pending applications. Efficacy claims, such as Darktrace / EMAIL catching the 17% of threats that leading secure email gateways miss, are vendor-published metrics, and the reviewed record contains no independent benchmark of detection quality. \[[s3](#deep-dive-sources), [s4](#deep-dive-sources), [s2](#deep-dive-sources)\]

### Sales Engagement & Go-to-Market

Darktrace reached scale as a public company and now sells globally under PE ownership. The vendor reports 10,000 customers, distribution includes an AWS Marketplace listing for the cloud product, and the go-to-market spans direct sales plus a managed detection and response service in which Darktrace SOC analysts operate the platform for the customer around the clock.

The commercial record carries a hard outside price: Thoma Bravo paid $5.3 billion in cash at $7.75 per share in October 2024, a valuation of the whole business set by an all-cash buyer rather than by the vendor's own claims. \[[s2](#deep-dive-sources), [s5](#deep-dive-sources), [s3](#deep-dive-sources), [s7](#deep-dive-sources), [s8](#deep-dive-sources)\]

### Pricing Model

No published price list was found as of 2026-07-22: darktrace.com/pricing returned HTTP 404, and the fetched product pages carry no list prices. The one public procurement path the record documents is an AWS Marketplace listing for Darktrace / CLOUD.

The catalog is presented as modular. Darktrace markets the core surface products, the cross-platform products, and the managed service as combinable offerings, and the OT page tells buyers to combine products to correlate security data across their digital estate. Whether those offerings are separately licensed or purchased, and how deals are priced and negotiated, is not documented in the reviewed sources. \[[s15](#deep-dive-sources), [s5](#deep-dive-sources), [s3](#deep-dive-sources), [s18](#deep-dive-sources), [s19](#deep-dive-sources)\]

### Product Delivery & Operations

The customer's team operates the platform and owns the outcomes in the default motion, with Darktrace's models doing detection and triage inside the customer's environment. Cyber AI Analyst automates alert triage, which is the vendor's answer to the analyst-capacity problem rather than a handoff of accountability.

The optional managed detection and response layer changes that: in it, Darktrace's own SOC analysts monitor, triage, investigate, and escalate around the clock. Customers who adopt it move from buying software to buying an operated outcome. \[[s5](#deep-dive-sources), [s3](#deep-dive-sources)\]

### Earning Customers' Trust

Darktrace publishes a Trust Centre listing an ISO 27001:2022 certificate, an ISO 27001 statement of applicability, and a Cyber Essentials certificate as downloadable documents. These are table-stakes attestations for its buyer base rather than differentiators.

The company's trust history includes the 2023 short-seller episode: Quintessential Capital Management said it feared sales, margins, and growth rates were overstated, Darktrace appointed EY to review its key financial processes, and the review found a small number of errors and nothing material. The all-cash take-private followed with that history fully public. \[[s6](#deep-dive-sources), [s12](#deep-dive-sources), [s13](#deep-dive-sources), [s14](#deep-dive-sources), [s7](#deep-dive-sources)\]

### Platform Strategy & Ecosystem Positioning

Darktrace positions itself as a platform rather than a point tool: the products correlate detections across network, email, cloud, identity, OT, and endpoint surfaces, and the network product page emphasizes integration with SIEM, EDR, and firewall tooling so detections feed the customer's existing operations center.

The partner channel is documented at scale. The company page reports a Global Partner Organization working with hundreds of partners worldwide and deep alliances with AWS and Microsoft, and the cloud product carries an AWS Marketplace listing. Under Thoma Bravo the company also sits in a large software portfolio whose cross-selling effects are not yet visible in the public record. \[[s2](#deep-dive-sources), [s3](#deep-dive-sources), [s5](#deep-dive-sources), [s8](#deep-dive-sources), [s18](#deep-dive-sources)\]

### Team & Execution Capability

CNBC records Darktrace as founded in 2013 by former intelligence experts and mathematicians, and the company maintains R&D centers in Cambridge and The Hague. The technical bench and research identity are long-standing and verifiable.

Executive turnover is the clearest weakness in the record. Poppy Gustafsson, the founding-era chief executive, resigned in the weeks before the take-private closed in October 2024, with Jill Popelka taking the role ahead of closing. Popelka was replaced after 16 months, and Ed Jennings became chief executive in March 2026. \[[s13](#deep-dive-sources), [s2](#deep-dive-sources), [s14](#deep-dive-sources)\]

## Sources

### Company Detail Sources

Cited from the Sourced Details and Matrix Coverage rows.

| Id | Source | Tier | Accessed |
|---|---|---|---|
| f1 | [Darktrace: company overview page](https://www.darktrace.com/company) | official | 2026-07-22 |
| f2 | [Companies House: DARKTRACE HOLDINGS LIMITED (08562035)](https://find-and-update.company-information.service.gov.uk/company/08562035) | regulatory | 2026-07-22 |
| f3 | [Fortune: Thoma Bravo closes $5.3 billion Darktrace acquisition (Oct 1, 2024)](https://fortune.com/europe/2024/10/01/thoma-bravo-closes-5-3-billion-darktrace-acquisition-weeks-after-founding-investor-mike-lynchs-death/) | press | 2026-07-22 |
| f4 | [Darktrace: / NETWORK product page](https://www.darktrace.com/products/network) | official | 2026-07-22 |

### Profile Analysis Sources

Cited from the Market Readiness section.

| Id | Source | Tier | Accessed |
|---|---|---|---|
| s1 | [Darktrace homepage](https://www.darktrace.com/) “Darktrace \| The Essential AI Cybersecurity Platform” | official | 2026-07-22 |
| s2 | [Darktrace company overview page (AI Research Center backed by over 200 patents and pending applications, second R&D center in The Hague)](https://www.darktrace.com/company) “10,000 Customers 110 Countries” | official | 2026-07-22 |
| s3 | [Darktrace / NETWORK product page (per-customer Self-Learning AI positioning, displays Gartner Magic Quadrant NDR Leader recognition and a 10,000-customer count)](https://www.darktrace.com/products/network) “While other NDR vendors process your data in the cloud as part of globally trained models, we bring our Self-Learning AI directly to your data, preserving your privacy” | official | 2026-07-22 |
| s4 | [Darktrace / EMAIL product page (vendor-published detection metrics, displays Gartner Magic Quadrant Email Security recognition)](https://www.darktrace.com/products/email) “Darktrace / EMAIL catches on average the 17% of threats that leading SEGs miss” | official | 2026-07-22 |
| s5 | [Darktrace / CLOUD product page (AWS Marketplace listing)](https://www.darktrace.com/products/cloud) “Platform-native Autonomous Response neutralizes malicious activity with surgical accuracy while preventing disruption to cloud infrastructure or service” | official | 2026-07-22 |
| s6 | [Darktrace Trust Centre (lists ISO 27001:2022 and Cyber Essentials certificate documents)](https://www.darktrace.com/trust) “ISO 27001:2022 Certificate” | official | 2026-07-22 |
| s7 | [Fortune: Thoma Bravo closes $5.3 billion Darktrace acquisition (Ryan Hogg, Oct 1, 2024)](https://fortune.com/europe/2024/10/01/thoma-bravo-closes-5-3-billion-darktrace-acquisition-weeks-after-founding-investor-mike-lynchs-death/) “Thoma Bravo has completed its $5.3 billion acquisition of British cybersecurity group Darktrace, ending a tumultuous takeover rocked by the resignation of its CEO and the death of early backer Mike Lynch.” | press | 2026-07-22 |
| s8 | [Thoma Bravo press release (the acquirer's own announcement): completion of the Darktrace acquisition](https://www.thomabravo.com/press-releases/thoma-bravo-completes-acquisition-of-darktrace) “Each Darktrace shareholder will be entitled to receive $7.75 per share in cash. The Company's ordinary shares have ceased trading and Darktrace will delist from the FTSE100 Index on the London Stock Exchange.” | official | 2026-07-22 |
| s9 | [Darktrace press release: formal completion of its acquisition by Thoma Bravo](https://www.darktrace.com/news/darktrace-announces-formal-completion-of-its-acquisition-by-thoma-bravo) “The recommended cash acquisition was announced on 26 April 2024 and the Scheme of Arrangement has now become effective.” | official | 2026-07-22 |
| s10 | [Companies House: DARKTRACE HOLDINGS LIMITED (08562035), active, registered in Cambridge](https://find-and-update.company-information.service.gov.uk/company/08562035) “Incorporated on 10 June 2013” | regulatory | 2026-07-22 |
| s11 | [KuppingerCole Leadership Compass NDR: Cisco, Darktrace, ExtraHop, Fortinet, Gurucul, IBM, Stellar Cyber Overall Leaders, Sophos Product/Innovation Leader](https://www.kuppingercole.com/research/lc80829/network-detection-and-response-ndr) “Cisco Overall Leader Darktrace Overall Leader ExtraHop Overall Leader Fortinet Overall Leader Gurucul Overall Leader IBM Overall Leader Stellar Cyber Overall Leader NetWitness Product/Market Leader Sophos Product/Innovation Leader” | research | 2026-07-22 |
| s12 | [Quintessential Capital Management: The dark side of Darktrace (short-seller report page)](https://www.qcmfunds.com/the-dark-side-of-darktrace/) “We are skeptical about the validity of DT's financial statements and fear that sales, margins, and growth rates may be overstated and close to a sharp correction.” | research | 2026-07-22 |
| s13 | [CNBC: Darktrace hires EY to review financial processes after short seller report (Feb 20, 2023)](https://www.cnbc.com/2023/02/20/darktrace-hires-ey-to-review-financial-processes-after-short-seller-report.html) “Darktrace, one of the U.K.'s largest cybersecurity companies, was founded in 2013 by a group of former intelligence experts and mathematicians.” | press | 2026-07-22 |
| s14 | [Wikipedia: Darktrace (2021 London listing, EY review found nothing material, Poppy Gustafsson exit September 2024)](https://en.wikipedia.org/wiki/Darktrace) “In January 2026, Jill Popelka was replaced as CEO after just 16 months in the role. In March 2026, Ed Jennings assumed the role of chief executive of the company.” | research | 2026-07-22 |
| s15 | [Pricing-surface probe: darktrace.com/pricing and darktrace.com/products/pricing both returned HTTP 404 (curl, 2026-07-22)](https://www.darktrace.com/pricing) | official | 2026-07-22 |
| s16 | [Darktrace / IDENTITY product page (SSO and AD integration, account takeover and insider threat detection)](https://www.darktrace.com/products/identity) “Darktrace integrates with SSO and AD to provide seamless, end-to-end visibility into user activities” | official | 2026-07-22 |
| s17 | [Darktrace / ENDPOINT product page (EDR-adjacent positioning, endpoint process telemetry)](https://www.darktrace.com/products/endpoint) “Cyber AI Analyst understands endpoint process telemetry along with wider network, cloud, SaaS, identity, email, and other relevant data” | official | 2026-07-22 |
| s18 | [Darktrace / OT product page (converged IT/OT coverage as a platform component)](https://www.darktrace.com/products/operational-technology) “Darktrace / OT is one component of the broader Darktrace platform. Combine products to natively correlate security data across your digital estate.” | official | 2026-07-22 |
| s19 | [Darktrace products navigation page (6 core surface products plus cross-platform exposure, attack surface, incident readiness, Cyber AI Analyst, Services)](https://www.darktrace.com/products) “/ Attack Surface Management Discover 30-50% more assets” | official | 2026-07-22 |
| s20 | [Darktrace / SECURE AI product page (new AI security line)](https://www.darktrace.com/products/secure-ai) “To safely and responsibly adopt AI at scale, organizations must have visibility over how and where AI is used, understand how it behaves, and be able to intervene when that behavior deviates from what is expected.” | official | 2026-07-22 |

### Deep-Dive Sources

Cited from the Strategy Deep Dive section.

| Id | Source | Tier | Accessed |
|---|---|---|---|
| s1 | [Darktrace homepage](https://www.darktrace.com/) “Darktrace \| The Essential AI Cybersecurity Platform” | official | 2026-07-22 |
| s2 | [Darktrace company overview page (AI Research Center backed by over 200 patents and pending applications, second R&D center in The Hague)](https://www.darktrace.com/company) “10,000 Customers 110 Countries” | official | 2026-07-22 |
| s3 | [Darktrace / NETWORK product page (per-customer Self-Learning AI positioning, displays Gartner Magic Quadrant NDR Leader recognition, MDR service description)](https://www.darktrace.com/products/network) “While other NDR vendors process your data in the cloud as part of globally trained models, we bring our Self-Learning AI directly to your data, preserving your privacy” | official | 2026-07-22 |
| s4 | [Darktrace / EMAIL product page (vendor-published detection metrics, displays Gartner Magic Quadrant Email Security recognition)](https://www.darktrace.com/products/email) “Darktrace / EMAIL catches on average the 17% of threats that leading SEGs miss” | official | 2026-07-22 |
| s5 | [Darktrace / CLOUD product page (AWS Marketplace listing, Cyber AI Analyst triage)](https://www.darktrace.com/products/cloud) “Platform-native Autonomous Response neutralizes malicious activity with surgical accuracy while preventing disruption to cloud infrastructure or service” | official | 2026-07-22 |
| s6 | [Darktrace Trust Centre (lists ISO 27001:2022 and Cyber Essentials certificate documents)](https://www.darktrace.com/trust) “ISO 27001:2022 Certificate” | official | 2026-07-22 |
| s7 | [Fortune: Thoma Bravo closes $5.3 billion Darktrace acquisition (Ryan Hogg, Oct 1, 2024)](https://fortune.com/europe/2024/10/01/thoma-bravo-closes-5-3-billion-darktrace-acquisition-weeks-after-founding-investor-mike-lynchs-death/) “Thoma Bravo has completed its $5.3 billion acquisition of British cybersecurity group Darktrace, ending a tumultuous takeover rocked by the resignation of its CEO and the death of early backer Mike Lynch.” | press | 2026-07-22 |
| s8 | [Thoma Bravo press release (the acquirer's own announcement): completion of the Darktrace acquisition](https://www.thomabravo.com/press-releases/thoma-bravo-completes-acquisition-of-darktrace) “Each Darktrace shareholder will be entitled to receive $7.75 per share in cash. The Company's ordinary shares have ceased trading and Darktrace will delist from the FTSE100 Index on the London Stock Exchange.” | official | 2026-07-22 |
| s9 | [Darktrace press release: formal completion of its acquisition by Thoma Bravo](https://www.darktrace.com/news/darktrace-announces-formal-completion-of-its-acquisition-by-thoma-bravo) “The recommended cash acquisition was announced on 26 April 2024 and the Scheme of Arrangement has now become effective.” | official | 2026-07-22 |
| s10 | [Companies House: DARKTRACE HOLDINGS LIMITED (08562035), active, registered in Cambridge](https://find-and-update.company-information.service.gov.uk/company/08562035) “Incorporated on 10 June 2013” | regulatory | 2026-07-22 |
| s11 | [KuppingerCole Leadership Compass NDR: Cisco, Darktrace, ExtraHop, Fortinet, Gurucul, IBM, Stellar Cyber Overall Leaders, Sophos Product/Innovation Leader](https://www.kuppingercole.com/research/lc80829/network-detection-and-response-ndr) “Cisco Overall Leader Darktrace Overall Leader ExtraHop Overall Leader Fortinet Overall Leader Gurucul Overall Leader IBM Overall Leader Stellar Cyber Overall Leader NetWitness Product/Market Leader Sophos Product/Innovation Leader” | research | 2026-07-22 |
| s12 | [Quintessential Capital Management: The dark side of Darktrace (short-seller report page)](https://www.qcmfunds.com/the-dark-side-of-darktrace/) “We are skeptical about the validity of DT's financial statements and fear that sales, margins, and growth rates may be overstated and close to a sharp correction.” | research | 2026-07-22 |
| s13 | [CNBC: Darktrace hires EY to review financial processes after short seller report (Feb 20, 2023)](https://www.cnbc.com/2023/02/20/darktrace-hires-ey-to-review-financial-processes-after-short-seller-report.html) “Darktrace, one of the U.K.'s largest cybersecurity companies, was founded in 2013 by a group of former intelligence experts and mathematicians.” | press | 2026-07-22 |
| s14 | [Wikipedia: Darktrace (2021 London listing, EY review found nothing material, Poppy Gustafsson exit September 2024)](https://en.wikipedia.org/wiki/Darktrace) “In January 2026, Jill Popelka was replaced as CEO after just 16 months in the role. In March 2026, Ed Jennings assumed the role of chief executive of the company.” | research | 2026-07-22 |
| s15 | [Pricing-surface probe: darktrace.com/pricing and darktrace.com/products/pricing both returned HTTP 404 (curl, 2026-07-22)](https://www.darktrace.com/pricing) | official | 2026-07-22 |
| s16 | [Darktrace / IDENTITY product page (SSO and AD integration, account takeover and insider threat detection)](https://www.darktrace.com/products/identity) “Darktrace integrates with SSO and AD to provide seamless, end-to-end visibility into user activities” | official | 2026-07-22 |
| s17 | [Darktrace / ENDPOINT product page (EDR-adjacent positioning, endpoint process telemetry)](https://www.darktrace.com/products/endpoint) “Cyber AI Analyst understands endpoint process telemetry along with wider network, cloud, SaaS, identity, email, and other relevant data” | official | 2026-07-22 |
| s18 | [Darktrace / OT product page (converged IT/OT coverage as a platform component)](https://www.darktrace.com/products/operational-technology) “Darktrace / OT is one component of the broader Darktrace platform. Combine products to natively correlate security data across your digital estate.” | official | 2026-07-22 |
| s19 | [Darktrace products navigation page (6 core surface products plus cross-platform exposure, attack surface, incident readiness, Cyber AI Analyst, Services)](https://www.darktrace.com/products) “/ Attack Surface Management Discover 30-50% more assets” | official | 2026-07-22 |
| s20 | [Darktrace / SECURE AI product page (new AI security line)](https://www.darktrace.com/products/secure-ai) “To safely and responsibly adopt AI at scale, organizations must have visibility over how and where AI is used, understand how it behaves, and be able to intervene when that behavior deviates from what is expected.” | official | 2026-07-22 |

## Disclaimer

This site is an experimental research aid created by Zeltser Security Corp. All its data gathering and analysis was performed autonomously without human review, and it can contain errors of fact, interpretation, and judgment that a human reviewer might catch.

The analyses are statements of opinion, not statements of fact. Machine analysis produced the scores, summaries, and matrix placements by weighing the public sources each page cites, and reasonable people can weigh the same sources differently. Where a page states a fact, it cites the public source and the date it was checked, and the statement is only as accurate as that source. Unless a profile expressly says otherwise, the analysis involves no hands-on testing and no independent validation of any company's products or services.

Nothing here is professional, security, legal, financial, investment, or purchasing advice, and nothing here is a recommendation to invest in, do business with, or avoid any company. Inclusion of a company is not an endorsement, and absence of a company is not a judgment about it. Reading this site creates no advisory or client relationship. Verify any detail you plan to act on against the vendor's current materials.

The content is provided "as is" and "as available," with all warranties disclaimed, express or implied, including merchantability, fitness for a particular purpose, accuracy, and non-infringement. No entry is warranted to be complete, current, or correct. Companies change, vendors update their claims, sources can be wrong, and automated analysis can misread them.

To the fullest extent permitted by law, the operator, Zeltser Security Corp, is not liable for any damages that arise from using this site or relying on its content, including direct, indirect, incidental, special, and consequential damages and lost profits, even if advised that such damages were possible. If you are dissatisfied with the site or disagree with these terms, your remedy is to stop using it.

Entries link to vendor pages, press coverage, and other external sites that Zeltser Security Corp does not control and is not responsible for. A link is not an affiliation with the destination or an endorsement of it. Product and company names and trademarks are the property of their owners, used here nominatively to identify the companies described. Short quotations from cited sources appear for identification and commentary.

Use, quotation, automated retrieval, and redistribution of the content are governed by the Terms of Use at cybercompanyprofiles.com/terms, which permit personal and internal business use with attribution and prohibit republication and resale.
