

Find out in this report how the two Access Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
Not having MFA means you cannot put a price tag on that because you will be hit with ransomware immediately.
I think Cisco Duo offers a good return on investment for startups, newer organizations, or those utilizing cloud-based applications.
I have not seen ROI with Cisco Duo; probably the opposite, because it impedes productivity time to be able to get into the system.
On a B2B level, it opened up the market for TomTom to sell its services in a more efficient way to car companies.
We can use a Linux image from ForgeRock with different systems, applications, websites, and mobile apps to create various types of access for users.
I can definitely see that fewer employees are needed compared to using different SaaS applications.
They got back to us quickly, were nice, and gave us what we needed.
I would rate their support 10 out of 10.
I would rate support for Cisco Duo a 10, as I have never had a negative experience.
The support portals offer comprehensive documentation, troubleshooting guides, and community forums that have been helpful for resolving common issues independently.
For standard support tickets, response times were very decent, and the support team was helpful in identifying configuration issues, especially with authentication trees, token settings, and directory replications.
The customer support is very flexible and supportive, particularly in the area of automation and customer deployments.
In my last contracting position, it was a large one for a major worldwide airline that had hundreds of thousands of devices that could use Cisco Duo, and it scaled very well.
You would not need many more engineers to manage Cisco Duo even if we scale up to 500 employees because it is so simple to manage.
Cisco Duo is scalable for organizational growth.
The access management layer is stateless, so I can scale horizontally by adding more nodes behind a load balancer as traffic increases.
The platform provides flexible authentication trees, enabling us to design custom MFA flows tailored for different user groups and risk profiles.
We scaled up with ForgeRock. My team received an award for implementing it for a 60 million customer base, which was the largest implementation at that time.
We have not had any Cisco Duo outages across all the companies I have worked for that utilize Cisco Duo.
The stability has been excellent.
I did not notice any downtime or crashes with Cisco Duo.
ForgeRock supports integration with legacy systems in our organization by offering a wide range of connectors and APIs.
ForgeRock is very stable because it manages access, authentication, and authorization effectively.
If you don't have internet access, you can't access your computer, only local access is available.
It lacks some dynamic identity management features compared to other products such as SailPoint.
Cisco should allow easier integration with third-party equipment because Cisco's own equipment is expensive.
ForgeRock needs to focus on low-code, no-code solutions that allow for drag-and-drop functionality with good orchestration.
It would be better if they were available for support whenever the customer needs it, especially during migration or go-live time periods.
The main area is complexity. ForgeRock is extremely flexible, but the learning curve can be steep.
The pricing is acceptable to them.
Their website lists $3 per month per user for the Essential license.
One of my customers recently received a billing statement charging 3,600 US dollars for 100 users for one year.
The pricing, setup cost, and licensing are very straightforward, which is a good success.
One has to spend considerable time trying to understand the different modules and different needs for those modules on the licensing front.
From a management perspective, I appreciate that we can enroll or control devices on the back end for people who get a new phone and forget to handle Cisco Duo properly and need to add a new device.
Our company benefits from all those features of Cisco Duo with confidence, and we feel very secure with it in terms of authentication of our logins.
The benefit of having a complete passwordless environment in our organization is that it's gotten people away from using the sticky note under their keyboard - which is a huge problem.
Centralized management makes the biggest difference because it allows us to define, update, and enforce security and compliance rules from a single location.
ForgeRock positively impacts our organization as we manage a large number of users with ease, providing a standard IAM solution that simplifies our processes.
ForgeRock has positively impacted my organization by allowing us to migrate from the older system to the newer ForgeRock component, enabling us to go live with many products across geographies, enhancing security as it is all cloud-based, and with the company taking care of availability, it has reduced costs for the company.
| Product | Mindshare (%) |
|---|---|
| Cisco Duo | 3.1% |
| ForgeRock | 5.2% |
| Other | 91.7% |

| Company Size | Count |
|---|---|
| Small Business | 41 |
| Midsize Enterprise | 24 |
| Large Enterprise | 54 |
| Company Size | Count |
|---|---|
| Small Business | 15 |
| Midsize Enterprise | 5 |
| Large Enterprise | 18 |
Cisco Duo is a cloud-based identity security platform safeguarding critical resources for any user and device worldwide. Known for its ease of use, Duo offers seamless protection across multi-cloud, hybrid, and on-premises environments.
Cisco Duo is designed to secure access with identity-first protection and provides extensive visibility throughout an organization's identity ecosystem. Offering multi-factor authentication, Duo facilitates easy integration and management, allowing teams to protect data effectively on VPNs, applications, and networks. Its single-pane management improves security processes while enhancing trust, making it suitable for diverse IT infrastructures.
What are the key features of Cisco Duo?
Which benefits and ROI should users consider?
In industries like education and finance, Cisco Duo is widely employed to secure multi-factor authentication across platforms such as email, databases, and servers. Its integration capabilities with Microsoft 365, Active Directory, and VPNs like AnyConnect are instrumental in verifying user identities using mobile apps or OTPs, catering effectively to both remote and on-premise environments.
ForgeRock is a comprehensive open-source identity and access management solution designed to meet the unique needs of your users and workforce. With ForgeRock you can orchestrate, manage, and secure the complete lifecycle of identities in any cloud or hybrid environment. ForgeRock allows you to set up bot detection, identity proofing, and risk-based authentication.
With ForgeRock, you can define access policies and automate the management of the identity lifecycle all from a central, easy to use, and graphical dashboard. ForgeRock Access Management allows you to build safe authentication using options like passwordless and usernameless logins, single sign-on, biometrics, contextual analytics, and behavioral authentication. When threats appear, you can swiftly change how your users access your most sensitive applications and provide users with secure access to the applications, systems, and resources they need on demand.
ForgeRock Benefits and Key Features
Reviews from Real Users
ForgeRock stands out among its competitors for a number of reasons. Two major ones are its robust identity and access tools and its being easy to manage and scale with one central dashboard.
PeerSpot users note the effectiveness of these features. A technology solutions leader at an outsourcing company writes, “We need it for multiple clients, multiple implementations. Not all of them are necessarily a multi-tenant solution. We need a very versatile solution that can do a lot of work, but from a single instance that we can centralize authentications and we don't duplicate the efforts and that's where ForgeRock seems to do better.”
Mohamed B., a cyber security consultant at a tech company, writes, "Their access management solution, OpenAM, is most valuable because it meets the needs of a lot of users. ForgeRock secured our system so that it is accessed only by authorized people, and it implemented the SSO."
We monitor all Access Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.