

Find out in this report how the two ZTNA solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
If I compare this to an on-premises environment using Cisco ISE or Aruba ClearPass, it would require phenomenally large teams for infrastructure management.
If you were moving from a traditional on-premise NAC that was 100% managed by the IT department, there would be great savings in going to a cloud-based NAC with Portnox.
By automating the device containment and remediation processes, we save countless hours weekly.
Their knowledge portal and Cato Academy portal are excellent resources.
Our customer service experience is excellent
I think the technical support by Cato SASE Cloud Platform is quite good.
The main area needing improvement is the technical knowledge of support staff.
For very high severity issues where the entire office is non-functional, response time is within 30 minutes.
In terms of support, it is usually quite impressive. I usually get support in a matter of minutes or seconds, depending on the priority of the ticket.
As an MSSP, we find it scalable for end users across EPP platforms, network, and cloud sides.
We have never had any challenge based on a customer who has 1,000 devices versus a customer who has 30,000 devices; the feel is the same.
Its infrastructure scales automatically in the background, eliminating concerns about capacity or backend upgrades.
It has a centralized cloud-based architecture, so we do not have to worry about other considerations such as local infrastructure or purchasing additional equipment.
I would rate the stability of the solution as ten on a scale of one to ten.
I find Cato SASE Cloud Platform overall stable.
The product itself is available and its uptime is 100%.
In the four years that I used Portnox, if it crashed or the server crashed, that would not have been more than once.
If there is a version one and another version, the communication between the organization using it and Portnox should be firm so they can coordinate effectively.
The platform lacks strong security features on the edge.
To improve Cato SASE Cloud Platform, I think they sometimes need more built-in features for security in larger networks when doing local authentication.
Ideally, we should be able to search for any MAC address in the database, regardless of its authentication status, to see all its associated groups and potential conflicts.
When I reach the technical support, they give solutions that do not help me much, so I try to search the internet for other users' experiences to find solutions.
I would definitely request a UI refresh that makes the dashboard more modern and surfaces critical logs so they are easier to access in a pinch.
I do not find it particularly expensive, but for some companies, they may not have the budget to be at that level of security for their networks.
The pricing is flexible due to our special partnership with Cato Networks.
If you compare Portnox with all other well-known standard products, it is the cheapest.
The pricing is a bit high, possibly due to the cloud features and running instances across regions like the US, Asia, and Europe.
You are charged according to the number of users.
It is scalable for end users across network and cloud sides and saves operational costs.
The single-pass architecture has improved user experience with Cato SASE Cloud Platform as it provides security teams in companies a platform where they can easily obtain information if there are breaches or security issues.
It's notable how Portnox has improved operational efficiency.
It is a very robust application because three teams use that part: the network team, the security team, and the support people.
It is possible to find the MAC address in the switch, but in Portnox, it is very useful to see the status of those ports, and that increases our security.

| Company Size | Count |
|---|---|
| Small Business | 16 |
| Midsize Enterprise | 7 |
| Large Enterprise | 11 |
| Company Size | Count |
|---|---|
| Small Business | 19 |
| Midsize Enterprise | 9 |
| Large Enterprise | 15 |
Cato SASE Cloud Platform delivers a comprehensive approach to network security and connectivity, integrating SASE, CASB, and zero-trust network access for improved performance and scalability in diverse locations.
Cato SASE Cloud Platform offers robust security solutions, including a next-gen firewall and VPN support. It provides a unified management system that is easy to use and integrates seamlessly with existing infrastructures. The platform's self-healing model ensures real-time threat mitigation, enhancing connectivity and performance even in challenging locations. Users appreciate the platform's scalability, integration capabilities, and significant cost savings. However, there is room for improvement in security, network integration, feature enhancement, and affordability to better support larger enterprises and improve user experience.
What are the essential features of Cato SASE Cloud Platform?Organizations in sectors like finance, telecommunications, and construction use Cato SASE Cloud Platform for enhanced network security and global connectivity. It effectively replaces MPLS with a cloud-native SD-WAN, integrates security measures for public clouds, and provides centralized management. Its implementation supports a zero-trust model, redundancy, and ISP integration, ensuring scalable remote access and improved security measures.
Portnox NAC is a cloud-native network access control solution built for today's hybrid, distributed enterprises. Get real-time visibility into every device on your network, enforce risk-based access policies automatically, and maintain continuous compliance — all without deploying a single on-premises appliance.
----------
About Portnox Security
Portnox is a cloud-native enterprise access control provider that helps organizations secure every identity - human and non-human - across networks, applications, and infrastructure. As identities, devices, and workloads multiply across modern environments, Portnox enables continuous access verification based on identity context, device posture, and risk signals. Its unified platform brings together passwordless authentication, access control, continuous policy enforcement, and automated response through a single policy engine.
Portnox gives security and IT teams real-time visibility into everything connecting and the ability to quickly restrict, quarantine, or revoke non-compliant access. Today, Portnox actively manages more than one million devices worldwide, secures 40 million authentication sessions, and blocks over one million unauthorized access attempts every day. Learn more at portnox.com.
CAPABILITIES:
• Discover and assess users, devices, and identities connecting to corporate resources
• Unify continuous zero trust access control on networks, applications, and infrastructure
• Enforce identity- and context-aware access policies
• Enable secure remote work without complexity
• Deliver passwordless authentication, device posture checks, and continuous access enforcement
• Control administrative access to routers, switches, firewalls, and other network devices
• Improve audit readiness with visibility, access logs, and policy-based compliance controls
BUILT FOR:
Portnox is designed for distributed organizations that need to manage access across employees, contractors, service accounts, managed devices, unmanaged devices, IoT, network infrastructure, SaaS applications, private applications, and AI agents. The platform helps reduce reliance on on-premises appliances, legacy VPNs, and fragmented access tools by centralizing access policy enforcement from a single cloud-native policy engine.
INTEGRATIONS:
Portnox integrates with the tools you already use (including Azure AD / Entra ID, Okta) and works with your existing network appliances, (such as Meraki, Fortinet, and more), and many other identity and network infrastructure tools.
We monitor all ZTNA reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.