

SailPoint Identity Security Cloud and Active Roles by One Identity are key competitors in the identity management sector. SailPoint holds an advantage with its ease of use and robust compliance features, while Active Roles stands out with its automation and comprehensive Active Directory management.
Features: SailPoint provides out-of-the-box functionalities, a user-friendly interface, and strong governance features like User Access Review and SOD Policy detection. IdentityIQ’s provisioning is also efficient. Active Roles offers strong automation capabilities, delegation, and role-based access control, enhancing its Active Directory management and auditing functionalities.
Room for Improvement: SailPoint could benefit from more competitive licensing, improved customizations, and streamlined UI. Active Roles requires a more user-friendly setup and UI, with better documentation for cloud integration to address scalability.
Ease of Deployment and Customer Service: SailPoint allows flexible deployment options across various cloud environments and benefits from a strong support network, though some regions report slower service. Active Roles primarily focuses on on-premises deployment with mixed reviews, highlighting the need for technical expertise during configuration.
Pricing and ROI: SailPoint is perceived as expensive due to the need for additional modules and services, yet it offers significant ROI through improved governance. Active Roles is also costly, justifying the investment with efficient automation reducing administrative workloads, translating to notable ROI depending on enterprise scale.
One Identity Active Roles provides excellent reporting and auditing functionality, allowing administrators to track permissions, actions, and responsibilities effectively.
Automation has really reduced the time spent on user provisioning, access management, or access changes by around 40 to 60 percent, which has significantly improved team productivity.
User onboarding time reduced by around seventy to eighty percent, from thirty to forty-five minutes to under ten minutes.
They are ready to provide support at any time.
The support team is knowledgeable about the product and AD environments.
Support is usually responsive for critical issues and provides solid practical guidance for AD workflow problems.
SailPoint's team consists of specialists who handle tickets without needing to depend on other teams.
Sometimes, the support is slow, and they often suggest resorting to expert services.
Technical support is very good.
One Identity Active Roles works well in hybrid environments, handling both on-premises and cloud identities from a single platform.
It is commonly used in medium to large organizations managing complex Microsoft Active Directory and hybrid identity environments.
The platform can scale without needing a complete redesign.
The solution scales well as long as we provide the necessary resources.
The solution is scalable and can be upgraded to accommodate increased user counts.
SailPoint is scalable, though challenges exist in terms of workflow and user interface design.
Overall, One Identity Active Roles has proven to be a stable, reliable, and well-suited solution for managing Active Directory at scale.
Overall, I consider One Identity Active Roles to be a stable solution, suitable for enterprise-grade environments.
Consistently performing for daily operations like automation and user management without major downtime reported.
IdentityIQ deserves a rating of 12 out of ten for stability.
The version I use now is very stable, especially compared to previous versions like eight point zero and eight point one.
The current REST API feels like an afterthought, and my developers want the ability to operate through CI/CD pipelines instead of logging into the GUI.
Improving documentation and providing more guided implementation resources would help organizations accelerate deployment and reduce dependency on external support.
Stronger, more seamless integration with cloud and hybrid environments like Azure AD, along with enhanced real-time reporting dashboards and easier troubleshooting tools, would help in faster issue resolution and a better overall administration experience.
SailPoint lacks some features like privileged account management and access management features found in products like Okta.
I find raising a ticket to be too complex, which could be improved for better user-friendliness.
We have also put our enhancement request, and the SailPoint team has accepted that the feature is not available and plans to include it going forward.
It is quite expensive, costing more than 50 euros per identity.
I think our total was in the seven-figure range for a couple of years of service.
The initial investment includes licensing, infrastructure setup, and implementation effort, with licensing typically based on the number of managed users or accounts, which can increase costs in large environments.
SailPoint is cheaper than ServiceNow, which is very expensive.
The pricing of SailPoint could be better.
The costs are slightly higher than SailPoint IQ due to included charges for maintenance.
It's improved our security posture. It has limited access to our crown jewels, where all our identities lie within Active Directory.
It helps in removing custom Active Directory delegation, which enhances security by eliminating unnecessary privileges, addressing identity-based breaches by reducing the number of Active Directory delegations.
Dynamic groups are also one of the best features, eliminating the need to add or manage members manually.
The automation of provisioning and deprovisioning, managing contractors, temporary users, and the overall automation factor is fantastic.
The solution can be customized to adapt the workflow to our industry, offering considerable flexibility.
From a project management point of view, the tool supports audit success with features to segregate permanent and contractor employees, integrate with HR systems, and indicate other sources for contractors.
| Product | Mindshare (%) |
|---|---|
| SailPoint Identity Security Cloud | 18.6% |
| One Identity Active Roles | 5.5% |
| Other | 75.9% |


| Company Size | Count |
|---|---|
| Small Business | 96 |
| Midsize Enterprise | 14 |
| Large Enterprise | 44 |
| Company Size | Count |
|---|---|
| Small Business | 21 |
| Midsize Enterprise | 8 |
| Large Enterprise | 43 |
One Identity Active Roles enhances Active Directory management by automating essential tasks and improving security through efficient delegation and role-based access control.
One Identity Active Roles offers advanced features for managing Active Directory environments, aiding in automating user provisioning, group management, and de-provisioning. It integrates seamlessly with Microsoft environments and provides centralized management for both on-premises and cloud identities. By improving operational efficiency and reducing manual errors, it enforces robust governance across organizations. Active Roles includes auditing and reporting tools that strengthen compliance and security monitoring. Companies find the setup could be simplified with better documentation, more customization options in reporting, and expanded cloud integration, particularly with Azure. Improved workflows and deeper native connectors are needed for seamless automation. Price adjustments and user-friendly analytics with intuitive dashboards are recommended for better usability.
What are the key features of One Identity Active Roles?
What benefits and ROI should users evaluate?
Many industries deploy One Identity Active Roles for automating user lifecycle management, especially in Active Directory environments. It significantly eases operations by automating onboarding for new hires, managing role changes, and modifying access. The platform efficiently handles tasks like password resets and compliance audits while empowering teams to securely manage user access without requiring full administrative rights.
SailPoint Identity Security Cloud is known for its user-friendly interface, high-level automation, and a wide range of pre-built connectors, making it flexible for workflow customization and robust identity lifecycle management with AI integration.
SailPoint Identity Security Cloud provides strong security features such as provisioning and certification, enhanced by AI and machine learning. It effectively manages user access, roles, and governance across environments. The platform offers scalability, comprehensive documentation, and seamless integration with third-party solutions. Despite its high cost and complex configuration, it is designed to meet enterprise needs in application provisioning, access management, and lifecycle management. Cloud and on-premises deployments are supported.
What are the key features of SailPoint Identity Security Cloud?
What benefits can users expect when evaluating SailPoint Identity Security Cloud?
SailPoint Identity Security Cloud is employed across industries for application provisioning and identity access management, supporting onboarding, offboarding, and role management. It addresses the needs of cloud and on-premises environments, providing centralized control and compliance assistance for account administration in enterprises.
We monitor all User Provisioning Software reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.