No more typing reviews! Try our Samantha, our new voice AI agent.

Aruba ESP vs Zscaler Zero Trust Exchange Platform comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 8, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in Secure Access Service Edge (SASE)
6th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
24
Ranking in other categories
Secure Web Gateways (SWG) (6th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (6th), ZTNA as a Service (6th)
Aruba ESP
Ranking in Secure Access Service Edge (SASE)
27th
Average Rating
0.0
Reviews Sentiment
5.9
Number of Reviews
2
Ranking in other categories
No ranking in other categories
Zscaler Zero Trust Exchange...
Ranking in Secure Access Service Edge (SASE)
2nd
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
67
Ranking in other categories
Data Loss Prevention (DLP) (6th), Cloud Access Security Brokers (CASB) (8th), Application Control (5th), ZTNA as a Service (1st), Remote Browser Isolation (RBI) (1st)
 

Mindshare comparison

As of September 2026, in the Secure Access Service Edge (SASE) category, the mindshare of iboss is 3.2%, up from 2.0% compared to the previous year. The mindshare of Aruba ESP is 1.1%, up from 0.4% compared to the previous year. The mindshare of Zscaler Zero Trust Exchange Platform is 8.8%, down from 11.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Secure Access Service Edge (SASE) Mindshare Distribution
ProductMindshare (%)
Zscaler Zero Trust Exchange Platform8.8%
iboss3.2%
Aruba ESP1.1%
Other86.9%
Secure Access Service Edge (SASE)
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
SatishKumar13 - PeerSpot reviewer
Deputy Manager at Savex Technologies Pvt Ltd
Has improved remote connectivity with secure segmentation for traveling users
The scenario has totally changed after COVID. Earlier, people used to work from office culture, but now it has shifted to work from anywhere. Devices are not fixed either. Previously it was fixed asset, but now people are using smartphones, IoT devices, laptops, and other devices, connecting from anywhere. Segmenting network traffic is very difficult and complicated because putting a firewall across devices is very difficult and nearly impossible. EdgeConnect, which includes endpoint protection or SSE, is very agent-based. POPs are nearly reachable across the globe, so users can access services globally whenever they want to reach the data center or access the internet. It creates segregation, and after segregation, it comes with security functionality including CASB, web, anti-malware, and antivirus functionality. It protects the endpoint whenever connecting with unsecured networks. The first level post-check of security parameters matches all functionalities. Their segregation part allows us to define parameters through ZTNA functionality, Zero Trust Network Access where we can define postures, whether devices relate to corporate network or personal use, if antivirus is running, if OS is updated, and many more things. Based upon that, it helps customers protect the complete infrastructure, whether connecting with office network, unsecured network, or remote office.
Vibin Thomas - PeerSpot reviewer
Technical Team Lead - Content Security at Valuepoint Systems
Zero trust access has transformed remote connectivity and now simplifies secure app usage
Zscaler Zero Trust Exchange Platform, especially Zscaler Private Access, is very strong, though there are a few areas where improvements can be made. One challenge observed is around initial troubleshooting and visibility. While Zscaler Private Access provides logs, it can sometimes take time to pinpoint the exact cause of access issues, especially in complex environments with multiple policies and identity integration. Another area is the dependency on identity and connector health. Since Zscaler Private Access is heavily reliant on app connectors and identity providers, any issues with these components can impact user access, making proper monitoring critical. During the initial setup, policy configuration and application onboarding require careful planning, especially for larger environments with many applications. These challenges are manageable with proper design and monitoring. Overall, the platform delivers strong security and user experience. I would recommend a few improvements, especially around user interface, reporting, and troubleshooting experience. From a user interface perspective, while the platform is powerful, the policy configuration and navigation can feel complex, especially for new users. A more simplified and intuitive layout for policy mapping and application access would help reduce the learning curve. In terms of reporting, Zscaler Private Access provides logs, but having more built-in customizable dashboards and analytics would be very helpful. Better visibility into user access patterns, application performance, and real-time troubleshooting insights would improve operational efficiency. From a support and troubleshooting standpoint, it would be beneficial to have more granular centralized visibility, allowing for quick end-to-end tracing of a user request from authentication to application access without switching between multiple views. These improvements would make the platform even more efficient, especially for large-scale enterprise environments.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Content filtering is the most useful feature of iboss."
"I would say iboss is a very good product; its scalability is very good, and it's seamless for the user."
"Its initial setup was straightforward."
"iboss has significantly lowered the number of security incidents. It is crazy how much it blocks and how much it is aware of the outside danger."
"Iboss is a solution that prevents advanced persistent threats, and has a zero tolerance for attacks."
"The security aspect of the solution, particularly the malware behind it, is excellent. That's something that really helped us out. It's not just a simple proxy that just blocks the insights of potential threats that come on behind it. They do malware detection and that helps us a lot."
"Deploying iboss leads to good return on investment, estimated around 70% to 80%."
"From a use-case scenario, what I like the most is the plug-in. I like the fact that we can do the filtering of these devices offsite independent of the network they are connected to, and we do not have to have traffic coming back inside our network."
"It provides a single umbrella for the complete network infrastructure, which is a very key differentiator from other products."
"Aruba ESP is a single place where you manage everything, and you have integrations with a lot of other vendors together on the same platform."
"The product's most valuable features are cloud-based services and secure internet access. We don't have to set up any physical appliances."
"Zscaler SASE is probably the number one cloud-based proxy security solution."
"The most valuable feature is its ability to establish connectivity for remote users and remote endpoints. It offers a high level of granularity compared to typical VPNs, which also encapsulate a lot of I/O."
"I like the web filtering capabilities."
"The policies are very easy to implement."
"It is a stable solution."
"The in-line DLP feature is one of the most vital features"
"Zscaler's technical support is quite good."
 

Cons

"iboss can be improved because the integration could be better; you need to import all the sites that you access today, and there are a few problems whenever you import thousands of websites, making the integration process messy for the users."
"Sometimes, obviously, there are bugs."
"I appreciate that iboss's single pane of glass console gives centralized visibility into web traffic, user activity, security policies, and alerts from one dashboard, allowing us to quickly investigate incidents and monitor policy violations without switching between multiple tools, improving operational efficiency; however, the dashboard customization and reporting could be more flexible."
"For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company ExxonMobil."
"The problem our organization had is that iboss failed for the Mac devices; it is not able to give a successful agent for the Mac agents, and that is where in 2025 we had to migrate to the Palo Alto-based platform."
"The area I would like to see improvement in is the ability with in the reporter to navigate directly to the content the user is traversing. It is kind of there, but it's not perfect. Quite frequently, I receive links that lead me to pages with error messages."
"The reporting feature needs improvement."
"The reporting feature needs improvement. It doesn't give you the expected results. It is quite difficult to get the specific reports needed, and it is not as intuitive as the rest of the platform."
"Aruba ESP should include more integrations with third-party vendors."
"Segmenting network traffic is very difficult and complicated because putting a firewall across devices is very difficult and nearly impossible."
"It has massive room for improvement. The Zscaler product itself is okay, but it doesn't give enough granularity for us as an organization to stipulate rules or processes, especially for data-driven services."
"The only issue with Zscaler Cloud DLP is that it only gives you DLP protection from web traffic, which is flowing out, while a full-blown DLP solution such as Forcepoint or Symantec gives you DLP coverage for multiple channels. Zscaler Cloud DLP doesn't give you coverage for email, fax, and USB channels, and this is the only challenge or room for improvement in the solution. It's just an extension on top of what you're buying on the proxy, so it's just an added layer, and it doesn't cover DLP on a very broad level. I'm unsure if Zcaler is in the business of competing with a full-blown DLP solution, and if there's a plan to expand the features of Zscaler Cloud DLP beyond the web channel because you'll have to deploy a full-blown agent for it. I'm unsure if this is on the cards because the solution is just an added layer that you get with your proxy. I've asked the Zcaler team whether there's a plan to go full DLP in the future, but I didn't get a positive response. There isn't any feature I'd like added to Zscaler Cloud DLP currently, because anything you could think of that should be in cloud or SaaS solutions is already there, except for machine learning, as it's the only functionality that seems to be lacking in the solution. Machine learning is an additional policy available in other DLP solutions in the market, but my team didn't find it in Zscaler Cloud DLP."
"They should work on a replica account. There could be alerts and replica files sent to the DLP team during data collection."
"It's an expensive solution."
"The menu for the ZIA portal could be organized a little bit differently. The most-used modules should be at the top of the menus, not somewhere near the bottom, some of them are not organized well in my opinion."
"From a user interface perspective, while the platform is powerful, the policy configuration and navigation can feel complex, especially for new users."
"The connectivity monitoring part should be included in the core license without any extra charges."
"There aren't really any missing features that I have witnessed."
 

Pricing and Cost Advice

"We have not priced the solution recently, but they were competitive with other vendors in the past."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It is expensive compared to one of its competitors."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"The overall pricing for iboss is very competitive and transparent."
"It is probably in line with other solutions, but I do not deal with the financial side."
"Users need to pay a yearly license for three, five, seven, or ten years based on their requirements."
"The price is competitive."
"The solution is expensive."
"It has been relatively reasonable for what it does. Some of the additional license costs based on the advanced next-generation firewall functions are quite high, and they should have certain features ready and available as a baseline rather than having to purchase additional licenses for it. Overall, the cost seems reasonable."
"The solution has increased prices this year."
"The technical support is good."
"As per industry leads, Zscaler CASB is an expensive solution."
"The cost is expensive. It depends on the number of users."
"My company is a Zscaler Private Access partner, so the customers pay for the license fees."
report
Use our free recommendation engine to learn which Secure Access Service Edge (SASE) solutions are best for your needs.
914,262 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
9%
Comms Service Provider
8%
Construction Company
7%
No data available
Financial Services Firm
12%
Manufacturing Company
10%
Outsourcing Company
9%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business12
Midsize Enterprise8
Large Enterprise10
No data available
By reviewers
Company SizeCount
Small Business17
Midsize Enterprise12
Large Enterprise45
 

Questions from the Community

What needs improvement with iboss?
I think iboss could be improved by making reporting and dashboard customization more flexible, and simplifying troubl...
What is your primary use case for iboss?
I use iboss as a cloud-based secure web gateway to provide secure internet access, web filtering, and protect remote ...
What is your experience regarding pricing and costs for iboss?
My experience with iboss's pricing structure, setup cost, and licensing model has been positive, straightforward, and...
What needs improvement with Aruba ESP?
The scenario has totally changed after COVID. Earlier, people used to work from office culture, but now it has shifte...
What is your primary use case for Aruba ESP?
I am working for the SASE portfolio as a product manager, so I cannot give any comment on other products. If there ar...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What is your experience regarding pricing and costs for Zscaler Cloud Protection?
This is an area where I have candid feedback from our organization regarding pricing, setup cost, and licensing for Z...
What needs improvement with Zscaler Cloud Protection?
After three years of working with Zscaler Zero Trust Exchange Platform, I do have genuine feedback on areas where I f...
 

Also Known As

iBoss Cloud Platform
No data available
Zscaler SASE, Zscaler DLP, Zscaler CASB, Zscaler CSPM, Zscaler Browser Isolation, Zscaler Posture Control
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Information Not Available
Siemens, AutoNation, GE, NOV
Find out what your peers are saying about Aruba ESP vs. Zscaler Zero Trust Exchange Platform and other solutions. Updated: September 2026.
914,262 professionals have used our research since 2012.