Our company chose Claroty Platform because it provides everything needed for auditing, assessment, tool-based assessment, integration, and deployment. It might be challenging for smaller companies due to financial reasons. But it offers great integration, extendibility, and visualization. We can do custom reporting and have access control. It provides a complete factory involvement experience, including network traffic analysis, deep package inspection, and protocol support. We can see which ports are open, protocols are working, device types, and vendors - everything under one roof.
If someone asked me whether to use the tool, I'd first check if their environment is IT or OT. It is tailored for OT environments, which is its best advantage. It offers OT-specific threat intelligence, comprehensive visibility of IT and IoT assets, too, and detailed network mapping. It helps understand potential vulnerabilities and improve overall security posture.
Claroty Platform has advanced threat detection, behavioral and anomaly detection, and industrial protocol support. It also provides risk and vulnerability management with proper scoring and Secure Remote Access for monitoring remote workers or third-party vendors. We can connect it with Azure SSO for just-in-time admin access and use identity providers for user management.
I rate the overall solution an eight out of ten.