Try our new research platform with insights from 80,000+ expert users

Airlock Digital Application Control vs CyberArk Endpoint Privilege Manager comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Airlock Digital Application...
Ranking in Application Control
7th
Average Rating
8.6
Reviews Sentiment
6.1
Number of Reviews
2
Ranking in other categories
No ranking in other categories
CyberArk Endpoint Privilege...
Ranking in Application Control
3rd
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
38
Ranking in other categories
Endpoint Compliance (5th), Privileged Access Management (PAM) (4th), Anti-Malware Tools (5th), Ransomware Protection (5th)
 

Featured Reviews

Mahesh Shivhare - PeerSpot reviewer
Senior Cyber Security Engineer at a government with 10,001+ employees
Centralized policies have strengthened zero trust controls and improved audit visibility
There are a few areas of Airlock Digital Application Control that I would like to see improved or enhanced in the future. The first thing is that the new version release schedule is quite repetitive, deploying a new agent within a couple of months. This makes it difficult for us to keep in touch because we have a controlled environment, and everything must be done via change management. We cannot upgrade the server or stay up to date with the latest version all the time. Airlock Digital Application Control should release updates but also provide ample time for organizations to adapt to the latest version. The second area for improvement I think about is regarding the workflows. The workflows require careful tuning during initial rollout, especially in dynamic environments like what we have. My impression of the granular policy control offered by Airlock Digital Application Control is that it can still be improved. Granular policy control is much better for control and application. For metadata rules to work, all endpoints must be on a particular version or higher. Unfortunately, in our environment, we do not have all machines using the same client version, which becomes a problem. If you go to Airlock Digital Application Control, they have an answer that the best thing you can do is use the granular policy if you have all agents and endpoints on the same version. That is something we need to work upon. Granular policy is much better to control and apply, and this is my experience.
PH
Manager at a computer software company with 1,001-5,000 employees
MFA boosts protection and has blocking capabilities but dependency on other solutions complicates deployment
The main issues I experience are related to deployment, which requires dependency on other solutions like AD or SCCM. These tools need to be defined and synced with the client or agent and master, sometimes needing manual checks. The agent may have problems syncing, which complicates deployment, especially when users leave the organization, however, agents remain licensed since the server still maintains licenses. Additionally, compared to other endpoint managers like Thycotic, CyberArk Endpoint Privilege Manager lacks recording capabilities, which limits its functionality for critical applications. A feature that records activity, even when bypassing CyberArk Endpoint Privilege Manager, would be beneficial.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Using the policy management tool provided by Airlock Digital Application Control is very beneficial and completely aligns with the compliance and governance expectations of the client."
"Airlock Digital Application Control brings many main benefits to the table that help improve the way the organization functions."
"It offers great performance."
"We have not had issues with CyberArk. It works very smoothly. We can do many things with CyberArk. It helps us to see exactly what is happening."
"The department management aspect of the solution is the most valuable aspect."
"I have always found that CyberArk is a very tight, foolproof product compared to most other products available."
"The biggest benefit of CyberArk EPM for our customers is control over privileged access for endpoints. Endpoints are often the starting point for attackers to enter and move within a network. CyberArk EPM bridges the gap between security and operations teams. Operations teams are happy because work isn't stopped due to admin rights issues, while security teams are satisfied that full admin rights aren't given to all users."
"We did immediately begin to see results when using CyberArk."
"What sets CyberArk apart is its continuous innovation, staying ahead of the competition."
"In terms of ROI, deploying CyberArk Endpoint Privilege Manager has secured the infrastructure, which saves money, time, and resources."
 

Cons

"Some of the vulnerabilities that are meant for CVEs specific to Airlock Digital Application Control need to be addressed in newer versions."
"The first thing is that the new version release schedule is quite repetitive, deploying a new agent within a couple of months, which makes it difficult for us to keep in touch because we have a controlled environment and everything must be done via change management."
"CyberArk Endpoint Privilege Manager can improve its Identity Governance, which is already working effectively yet could continue to enhance its capabilities."
"The installation process is pretty difficult."
"The management of Privilege Access is not satisfactory."
"It's an old product and has many areas that can be improved."
"Can be improved by allowing computers to be excluded from policies."
"The turnaround time of the support team is an area of concern where improvements are required."
"Another enhancement needed is the scheduling of deployment, which I expect in future releases."
"The main issues I experience are related to deployment, which requires dependency on other solutions like AD or SCCM. These tools need to be defined and synced with the client or agent and master, sometimes needing manual checks."
 

Pricing and Cost Advice

Information not available
"We pay about $17 per user."
"CyberArk Endpoint Privilege Manager is slightly expensive, but costs can be negotiated to become more competitive."
"The solution's pricing is reasonable compared to other vendors' products."
"The tool is a bit pricey compared to its competitors. My company does work with competitors, but I don't have hands-on experience with other software. I've just done some comparisons."
"The solution requires an annual license to use it. There can be some extra costs in some cases."
"The price of CyberArk Endpoint Privilege Manager is expensive. The solution is priced based on the number of accounts onboarded and the number of concurrent sessions. Everyone else is included in the price, such as support."
"The professional services for one eight-hour day would be $1,800."
"It is an expensive solution."
report
Use our free recommendation engine to learn which Application Control solutions are best for your needs.
884,076 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
No data available
Financial Services Firm
13%
Manufacturing Company
11%
Computer Software Company
9%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business17
Midsize Enterprise9
Large Enterprise18
 

Questions from the Community

Ask a question
Earn 20 points
Looking for recommendations and a pros/cons template for software to detect insider threats
This is an inside-out --- outside-in --- inside-in question, as an insider can be an outsider as well. There is no short answer other than a blend of a PAM tool with Behavioral Analytics and Endpo...
What do you like most about CyberArk Endpoint Privilege Manager?
The most valuable feature of the solution is its performance.
What is your experience regarding pricing and costs for CyberArk Endpoint Privilege Manager?
I believe it's quite a reasonably priced solution. It's not very common to use CyberArk because it's a niche solution, but customers who are willing to control administrative accounts are willing t...
 

Also Known As

No data available
Viewfinity
 

Overview

Find out what your peers are saying about ThreatLocker, Check Point Software Technologies, CyberArk and others in Application Control. Updated: February 2026.
884,076 professionals have used our research since 2012.