I use the Claroty Platform to analyze data in industrial environments, especially for operational technologies in manufacturing.
I like how the tool does passive and active discovery and threat detection and shows risks, recommendations, and vulnerabilities. It gives risk scores and gathers everything in one place - IP, device name, etc. We can integrate it with other tools for overall network mapping. It's useful for audits, compliance, and monitoring of all devices in the industry. It provides both monitoring and control. We also have SRA for incident response, which lets us search all alerts if we deploy the Claroty Platform.
For improvement, I think the training could be more practical. We have external training, but they're mostly theoretical. I want the solution to provide hands-on lab experience to help users learn better.
As a user or administrator, it's easy to use. However, documentation is a bit lacking for deploying the collection server or spanning and trafficking. We need clearer guidelines on what to do first, second, and so on.
The two points for improvement are more lab-oriented, practical training, and better documentation for implementing the tool. Even though the support is very good and they explain everything, having clearer documentation would be helpful.
I have been using the product for a year.
The tool is very stable and useful for monitoring industrial environments.
In my team, about five to six people use the Claroty Platform, and including clients, it ranges from five to ten people.
I've contacted the support team, and they've been very helpful. They assist with troubleshooting and solving issues, even joining meetings to help us understand things better.
Our company chose Claroty Platform because it provides everything needed for auditing, assessment, tool-based assessment, integration, and deployment. It might be challenging for smaller companies due to financial reasons. But it offers great integration, extendibility, and visualization. We can do custom reporting and have access control. It provides a complete factory involvement experience, including network traffic analysis, deep package inspection, and protocol support. We can see which ports are open, protocols are working, device types, and vendors - everything under one roof.
If someone asked me whether to use the tool, I'd first check if their environment is IT or OT. It is tailored for OT environments, which is its best advantage. It offers OT-specific threat intelligence, comprehensive visibility of IT and IoT assets, too, and detailed network mapping. It helps understand potential vulnerabilities and improve overall security posture.
Claroty Platform has advanced threat detection, behavioral and anomaly detection, and industrial protocol support. It also provides risk and vulnerability management with proper scoring and Secure Remote Access for monitoring remote workers or third-party vendors. We can connect it with Azure SSO for just-in-time admin access and use identity providers for user management.
I rate the overall solution an eight out of ten.