No more typing reviews! Try our Samantha, our new voice AI agent.

Appgate SDP vs Cisco Secure Workload comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 4, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
24
Ranking in other categories
Secure Web Gateways (SWG) (6th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (6th), ZTNA as a Service (6th), Secure Access Service Edge (SASE) (7th)
Appgate SDP
Average Rating
8.8
Reviews Sentiment
6.4
Number of Reviews
8
Ranking in other categories
ZTNA as a Service (15th), ZTNA (7th), Secure Access Service Edge (SASE) (16th), Microsegmentation Software (7th)
Cisco Secure Workload
Average Rating
8.6
Reviews Sentiment
7.7
Number of Reviews
15
Ranking in other categories
Cloud and Data Center Security (9th), Cloud Workload Protection Platforms (CWPP) (23rd), Microsegmentation Software (5th), Cisco Security Portfolio (9th)
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
Joseph Koomson - PeerSpot reviewer
Ip Network Security Specialist at MTN Ghana
Zero trust access has strengthened remote connectivity and secures diverse office devices
Appgate SDP support is always available to assist, which is the primary strength. However, there are areas for improvement. When a user is unable to connect, the platform should display detailed information such as the user's IP address, MAC address, and specific reasons for connection failure. Currently, aside from invalid username and password errors, Appgate SDP provides generic errors related to policy, such as a policy admin error. The system should provide deeper diagnostics to explain why a user cannot connect. The dashboard could also be enhanced with additional features and logins to provide better visibility. Sometimes there is no immediate clarity about what is happening. After using Appgate SDP for a long time and experiencing various errors, we have learned where to investigate, but this would be problematic for new users trying to resolve issues. The dashboard could display user connection times, failure reasons, and other relevant information. The user activity logs and accounting features should be improved in particular.
Raj Metkar - PeerSpot reviewer
Director, Head of Networks at MUFG, EMEA
Discover internal application dependencies and create a dependency map
We actively seek improvements in integrating the Infoblox DDI platform with Cisco Secure Workload. This integration allows Cisco Secure Workload to learn about our networks and network tags, providing valuable insights into vulnerabilities related to the operating system and various applications installed on our servers. Recently, Cisco announced a new product called HyperShield, an AI-based autonomous micro-segmentation solution. While Cisco has not stated that HyperShield will replace Cisco Secure Workload, it represents a natural evolution for the company. HyperShield features dynamic policy discovery and enforcement; however, once policies are enforced, they do not change until a discovery occurs, requiring a re-enforcement process. This new platform operates autonomously, minimizing the need for user or security engineer intervention. I would have expected Cisco to incorporate more automatic discovery and enforcement features within the existing Cisco Secure Workload product. Instead of enhancing the current product, they have introduced a new solution. Cisco plans to honor existing Tetration licenses, allowing users to transition to HyperShield without additional costs, reflecting the investment enterprises have already made. From Cisco’s perspective, this represents a natural progression in their product line. While the product name changes, it seems more of a rebranding effort. The enhancements are greater autonomy, improved discovery, and automatic enforcement, which are now being introduced in HyperShield. Cisco Secure Workload offers automatic policy enforcement but cannot adjust policies dynamically as the application needs to change. Having used the platform for the past five years, the recent announcement has been reassuring. Cisco has confirmed that our investment in the platform will not go to waste. They will honor our existing licenses, providing a natural migration path to the new solution without any disruption

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We chose iboss for both zero trust and proxy (SWG) because their SWG was superior."
"I would rate the technical support of iboss a solid 10 without a shadow of a doubt."
"Valuable features: Within the filter: Controls (Web categories, applications, and Allow/Block list) and Network (local Subnets). Within the reporter: Logs (Event Log) and Reports."
"Iboss is a solution that prevents advanced persistent threats, and has a zero tolerance for attacks."
"From a use-case scenario, what I like the most is the plug-in. I like the fact that we can do the filtering of these devices offsite independent of the network they are connected to, and we do not have to have traffic coming back inside our network."
"We were impressed by the solution's mental health function, which can detect if someone needs help. It scans what users are browsing and flags warning signs so we can check to see if they are okay. We've had to use it a couple of times."
"As I mentioned, the return on investment is significant, as it saved our office locations' bandwidth because when you are working remotely at home, your internet traffic routes directly to iboss and will not go to your office building, saving bandwidth bottlenecks and ensuring that issues with our building internet circuits will not impact your internet connectivity because you are directly going to the iboss data center."
"Because of iboss, I did not have to assign web filtering tasks to my techs on a daily basis."
"Appgate SDP has positively impacted my organization, as we are using it to securely access the internet after the cyber attack."
"It is a scalable solution...The support answers your questions very fast."
"Previously, with AnyConnect, we experienced frequent issues, and in comparison to that solution, we have seen significant improvement and minimum downtime."
"Appgate SDP is the best solution for micro-segmentation and supplying VPN solutions."
"It is pretty stable."
"One of the most important features is stopping lateral movement across our network."
"The interface is really friendly. It's simple to understand."
"The simplicity of the SDP platform is a standout feature; instead of navigating through intricate details, users can seamlessly connect to the company's network or switch to the internet with minimal effort."
"The solution is very user-friendly, which clients appreciate."
"Overall, this is a really good product and I am happy with it."
"Generally speaking, Cisco support is considered one of the best in the networking products and stack."
"The solution offers 100% telemetry coverage; the telemetry you collect is not sampled, it's not intermittent, it's complete, and you see everything in it, including full visibility of all activities on your endpoints and in your network."
"Instead of proving that all the access control lists are in place and all the EPGs are correct, we can just point the auditor to a dashboard and point out that there aren't any escaped conversations. It saves an enormous, enormous amount of time."
"The most valuable feature right now is to do with having visibility on the network — especially on our servers — and to be able to enforce some type of security measures."
"This product does everything that you need it to do and more and does a lot to provide visibility in a network environment, save time and money, and make the organization IT operate in a much more streamlined fashion."
"The product provides multiple-device integration."
 

Cons

"The area I would like to see improvement in is the ability with in the reporter to navigate directly to the content the user is traversing. It is kind of there, but it's not perfect. Quite frequently, I receive links that lead me to pages with error messages."
"Our biggest problem with their service was it did not recognize the device and filtering did not always work correctly."
"Fold that in with the risk intelligence they're getting from all of the different subscriptions they are a part of. Now, these security companies subscribe to things like emerging threats, databases, etc. You can fold all this intelligence to decide what's happening on an endpoint. I would love to see them start moving into that space. That would compete directly with Microsoft. Maybe that's why they haven't. Having that ability native within the solution would be great. The other area in which I would love to see improvement is more detailed descriptions of why they block websites."
"The problem our organization had is that iboss failed for the Mac devices; it is not able to give a successful agent for the Mac agents, and that is where in 2025 we had to migrate to the Palo Alto-based platform."
"Their on-premise hardware's network interface is capped at one gigabit, which is sort of a problem. If you stand a filter up where all traffic flows through that, according to them, in order to go above a gigabit, you have to have multiple devices, which in today's IT seems a little bit silly. They could easily put in an SFP port into their device that could accommodate 10 gigs or at least offer a box."
"I appreciate that iboss's single pane of glass console gives centralized visibility into web traffic, user activity, security policies, and alerts from one dashboard, allowing us to quickly investigate incidents and monitor policy violations without switching between multiple tools, improving operational efficiency; however, the dashboard customization and reporting could be more flexible."
"Its pricing could be better."
"File integrity monitoring would be very advantageous as an additional feature."
"They could provide a single-box solution to manage tools for 4000 users. Additionally, they could add extra features to enhance remote micro connection."
"On the cloud, when you make some changes, it may be difficult."
"One thing that kind of sticks out to me is the ability to do a proper non-split tunnel. VPN tunnel-wise, it is not really a true unsplit tunnel, but I think that's just because of the way it's designed. A split VPN basically allows your system to talk to other systems without being forced down the tunnel. A VPN running in a non-split tunnel mode forces all the traffic down the tunnel to wherever you're VPNing to. It forces the traffic down so that the traffic is subject to the firewall and rules that you have in your corporate environment and such. It helps to prevent remote malicious folks that may be talking directly to that box from piggybacking into the corporate environment through it. They do it partially, but it would be nice to see more of an enterprise-level solution there."
"If I could change or improve anything about Appgate SDP, it would be to enhance the user experience by improving the UI so that it is more explanatory."
"One limitation is that it's harder to provide access to multiple applications in the company with Appgate, but that's probably because of poor management."
"When a user is unable to connect, the platform should display detailed information such as the user's IP address, MAC address, and specific reasons for connection failure."
"The user interface should be improved as it is not very easy to work with the updates."
"It would be better to connect to an application portal from any device. Documentation and support could be better."
"There's room for improvement when it comes to Cisco Secure Workload. A couple of internal areas could be refined a little bit. They are trying to solve it, depending on where you suppose the agent is. Suppose you have the agent on both the server and the client, which could be the front-end server or web server connecting to the. In that case, if those two are communicating on RPC, the server can look into its configuration. It could go down and find the configuration file on the FTP server and then set the policies to it. But there are a lot of different FTP servers out there. It's also a complex case for the tool to support all FTP servers."
"There was a controversy when Cisco reduced the amount of data they kept, and the solution became quite cost-intensive, which made its adoption challenging….Although they have modified it now, I preferred the previous version, and I wish all the functionality were back under the same product."
"The multi-tenancy, redundancy, backup and restore functionalities, as well as the monitoring aspects of the solution, need improvement. The solution offers virtually no enterprise-grade possibility for monitoring."
"It has an uninviting interface."
"Secure Workload is a little complicated to use, and the dashboard isn't intuitive, so it takes a while to learn how to use it."
"I would have expected Cisco to incorporate more automatic discovery and enforcement features within the existing Cisco Secure Workload product."
"The emailed notifications are either hard to find or they are not available. Search capabilities can be improved."
"The interface is really helpful for technical people, but it is not user-friendly."
 

Pricing and Cost Advice

"It is expensive compared to one of its competitors."
"The overall pricing for iboss is very competitive and transparent."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It is probably in line with other solutions, but I do not deal with the financial side."
"The pricing is according to the market price. It is not a very cheap solution. They have some very aggressive promotions to sell the product in the market."
"We pay $100 per user per month. One license for the site is around $17."
"It is a pretty expensive tool. It is maybe about $20,000 per year for a hundred users or so."
"It is not cheap and pricing may limit scalability."
"Regarding price, Cisco Secure Workload can be expensive if you don't have a budget. If you're not doing micro-segmentation, every extra security measure or enforcement you're putting on top of your existing environment will be an extra cost. It's not a cheap solution at all. But from my point of view, if you need to do micro-segmentation, this is one of the best tools I've seen for it. I can't compare that to Microsoft's solution because I haven't looked into it. I've looked into VMware and Cisco. Those are the only two that I know of. I didn't know that Microsoft could do micro-segmentation at all. Maybe they can, but I haven't heard anything about it."
"The cost for the hardware is around 300k."
"Pricing depends on the scope of the application and the features. Larger installations save more."
"The pricing is a bit higher than we anticipated."
"The price is based on how many computers you're going to install it on."
"The price is outrageous. If you have money to throw at the product, then do it."
report
Use our free recommendation engine to learn which Microsegmentation Software solutions are best for your needs.
915,341 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
10%
Comms Service Provider
8%
Construction Company
7%
Manufacturing Company
12%
Outsourcing Company
11%
Comms Service Provider
8%
Financial Services Firm
7%
Manufacturing Company
13%
Financial Services Firm
9%
Government
8%
Outsourcing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business13
Midsize Enterprise7
Large Enterprise11
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise1
Large Enterprise6
By reviewers
Company SizeCount
Small Business5
Midsize Enterprise3
Large Enterprise8
 

Questions from the Community

What needs improvement with iboss?
I think iboss could be improved by making reporting and dashboard customization more flexible, and simplifying troubl...
What is your primary use case for iboss?
I use iboss as a cloud-based secure web gateway to provide secure internet access, web filtering, and protect remote ...
What is your experience regarding pricing and costs for iboss?
My experience with iboss's pricing structure, setup cost, and licensing model has been positive, straightforward, and...
What is your experience regarding pricing and costs for Appgate SDP?
Regarding pricing and setup cost, everything is already pre-installed in my organization, so I am not sure about pric...
What needs improvement with Appgate SDP?
Appgate SDP support is always available to assist, which is the primary strength. However, there are areas for improv...
What is your primary use case for Appgate SDP?
Appgate SDP is used for user connectivity both in the office and outside the office for remote connectivity. When out...
What is your experience regarding pricing and costs for Cisco Secure Workload?
CloudStrike offers antivirus capabilities and firewall features for servers and VDI but lacks automatic policy discov...
What needs improvement with Cisco Secure Workload?
We actively seek improvements in integrating the Infoblox DDI platform with Cisco Secure Workload. This integration a...
What is your primary use case for Cisco Secure Workload?
When we onboarded Cisco Secure Workload, the usual use case was to discover internal application dependencies and cre...
 

Also Known As

iBoss Cloud Platform
No data available
Cisco Tetration
 

Overview

 

Sample Customers

Trusted by global enterprises and government agencies.
United States Air Force  FINRA Weight Watchers Rackspace  DataDog SageNet  Verdant Norwegian Cruise Line  VoiceBase  The Third Floor 
ADP, University of North Carolina Charlotte (UNCC)
Find out what your peers are saying about Appgate SDP vs. Cisco Secure Workload and other solutions. Updated: September 2026.
915,341 professionals have used our research since 2012.