


Find out in this report how the two Cloud Access Security Brokers (CASB) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
| Product | Mindshare (%) |
|---|---|
| Cisco Secure Access | 4.8% |
| iboss | 4.5% |
| Proofpoint Cloud App Security Broker | 1.0% |
| Other | 89.7% |


| Company Size | Count |
|---|---|
| Small Business | 13 |
| Midsize Enterprise | 7 |
| Large Enterprise | 11 |
| Company Size | Count |
|---|---|
| Small Business | 28 |
| Midsize Enterprise | 15 |
| Large Enterprise | 41 |
iboss is the Zero Trust SASE platform that gives organizations complete visibility and governance over their AI, data, and applications through one unified platform, one console, one policy engine, and one data lake.
Your endpoints may already stop malware. Your data and application activity can still be invisible. iboss decrypts and understands every connection, then turns that signal into answers security leaders can act on.
The platform leads with three capabilities in this order: AI Security and Visibility, Data Security and Visibility, and App Visibility and Control. Zero Trust Network Access, VPN replacement, and SD-WAN sit underneath as the access fabric that carries those three. Trusted by global enterprises and government agencies.
What are the most important features of Iboss?
- AI Security and Visibility: conversation capture, shadow-AI discovery, AI DLP, and agent governance across Claude, Co-Work, ChatGPT, Gemini, and Grok, and emerging services.
- Data Security and Visibility: full SSL/TLS decryption, deep content inspection, MIP label compliance, and one-click compliance reporting.
- App Visibility and Control: signatureless CASB, dual risk scoring, in-app controls, and SSPM for major SaaS.
- Containerized Zero Trust SASE: dedicated containers, isolated SSL keys, one console, one policy engine, one data lake.
- Access fabric: ZTNA, VPN replacement, and SD-WAN under the same platform.
What benefits should users consider in reviews?
- Complete visibility over AI, data, and applications from one platform instead of separate point tools.
- Encrypted traffic is inspected by default so data decisions use content and context together.
- Shadow SaaS and new web tools appear as they are used, with enforceable controls in one console.
- Native data sovereignty through dedicated containers, in-region inspection, and per-customer SSL key custody.
- Scale proven in published materials: 10M+ users, 100+ countries, 150B+ transactions, 2.5B+ threats blocked.
Economic buyers are CISOs, CIOs, and VPs of Security. Champions include security architects, network and infrastructure leaders, SecOps, and GRC. Primary segments: enterprise and business, financial services, government (including FedRAMP Gov Cloud), healthcare, manufacturing, legal and professional services, retail and hospitality, and MSP/MSSP partners. Education, including K-12, is one vertical among these.
Cisco Secure Access is a comprehensive Security Service Edge (SSE) solution (a key component of a SASE solution) that addresses the complexities of securing a hybrid enterprise. Cloud-delivered and grounded in zero trust, it delivers a unique blend of user simplicity and IT efficiency for frictionless, secure access to all applications—SaaS (with gen AI), private apps, and the internet—regardless of user location or device. Secure Access protects users, data, and devices against relentless, sophisticated, and constantly evolving threats including AI-driven attacks and identity breaches.
Provides all core SSE components (ZTNA, SWG, CASB, and FWaaS) plus extended capabilities.
Includes VPN-as-a-Service (VPNaaS), data loss prevention (DLP), AI Assistant, visibility/control/guardrails for generative AI use, digital experience monitoring (DEM), reserved IP, remote browser isolation (RBI), DNS-layer security, flexible security enforcement (in cloud or on-premises), policy verification, and more.
Protects users as they seamlessly access resources and apps with no extra steps needed, regardless of protocol, port, or level of customization
Simplifies IT operations through a single client, single dashboard, single license, and unified policies.
Lowers risk with least privilege, granular controls backed with unmatched threat intelligence of Cisco Talos.
Eases interoperability with other products from Cisco and third-party vendors with common administrative controls, data structures, and policy management.
Robust integrations
Integrates with Cisco Identity Intelligence to protect against the startling increase in identity-based attacks.
Integrates with many SAML Identity Providers (IDPs) such as AD, Azure AD, Okta, Ping, etc.
Integrates with Cisco offerings including SD-WAN, Splunk, XDR, Thousand Eyes, third party technologies such as Menlo RBI, Chrome Enterprise Browser, and AppOmni for SSPM.
Proofpoint Cloud App Security Broker provides comprehensive security for cloud applications, helping organizations protect against data breaches and manage compliance within cloud environments efficiently.
Proofpoint Cloud App Security Broker leverages a combination of advanced threat protection, data loss prevention, and identity management to secure cloud-based applications. By offering visibility and control over user activities, it enables IT professionals to mitigate risks and ensure compliance with industry regulations. Its seamless integration with existing security frameworks allows for a streamlined approach to safeguarding digital assets.
What are the main features of Proofpoint Cloud App Security Broker?In finance, healthcare, and education, Proofpoint Cloud App Security Broker is implemented to protect data privacy and meet compliance standards specific to each industry. By tailoring configurations to sector-specific needs, organizations leverage its capabilities to maintain robust security and support regulatory adherence.
We monitor all Cloud Access Security Brokers (CASB) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.