Try our new research platform with insights from 80,000+ expert users

CyberArk Privileged Access Manager vs OpenText Access Manager with Managed Services comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

CyberArk Privileged Access ...
Average Rating
8.6
Reviews Sentiment
6.8
Number of Reviews
229
Ranking in other categories
User Activity Monitoring (1st), Enterprise Password Managers (3rd), Privileged Access Management (PAM) (1st), Mainframe Security (2nd), Operational Technology (OT) Security (3rd)
OpenText Access Manager wit...
Average Rating
8.0
Reviews Sentiment
7.2
Number of Reviews
5
Ranking in other categories
Web Access Management (3rd), Access Management (22nd)
 

Featured Reviews

SI
Senior PAM Consultant at iC Consult GmbH
Makes privileged access management easy with automation and granular control
Many people underestimate the value of these tools because they treat them as simple automated password management. Once you realize the volume of passwords in your organization and factor in nonhuman passwords, you realize its value. Last year, CyberArk Impact cited 45 nonhuman passwords for every human password. If you have 10,000 employees, you can imagine the number of passwords. There are also many other operations. For example, you have a Qualys scanner that needs to reach out and touch all your endpoints and scan them for vulnerabilities. They use an API call to CyberArk to pull out a Privileged credential that allows them to log in to that target. This is an automated machine call. It is tapping into CyberArk to get that credential. There can be hundreds of thousands of those operations a day. You do not want to manage those passwords by hand. Some people marginalize the significance of such a solution by saying that it is just a fancy password changer. It goes well beyond that, especially with API calls and automation. Its importance extends beyond merely changing passwords; it involves automation, API calls, and process integration, crucial in agile environments for standing up new Amazon servers or other processes needing privileged credentials. CyberArk can automate these tasks into their build processes. Another critical feature is the proxy service via Privileged Session Manager (PSM), providing not only a proxy between your user and the target servers, protecting against malware but also offering session recording. Many companies I have worked with implemented a PAM product as a knee-jerk reaction to SOX audit requirements. They discovered they needed session recording and retention for regulatory compliance. This has become a major factor for clients instituting CyberArk, so PSM is a big deal in addition to regular password rotation.
MS
Senior Specialist: Solution Architecture at a tech services company with 501-1,000 employees
A mature, powerful product with good integration capabilities
Since we use it to access a number of mission-critical applications, it means that we have multiple sites. We have independent instances of Access Manager deployed. What's very important for us is to ensure that the configurations across the various sites are 100% aligned. If they had a mechanism to ensure that's the case, that would be great. For example, the worst thing to do is if you run into an issue, and then you fail over to your disaster recovery environment, and then you find out that you've got a missing configuration there, it'll be great if one could easily compare configurations across instances of NetIQ Access Manager to ensure consistency. It's just about ensuring consistent configuration across various instances. Having the ability to easily extract and view and compare and version control configurations would be ideal. If you consider our scenario whereby, let's say, we've got an instance for our retail environment, and for that instance, we've got a disaster recovery environment. We need to ensure the amount of service at each of those sites. Now yes, they serve different purposes, however, for us, it's very important that site A and site B are 100% aligned. And so if there was a way to easily extract the configuration and to compare it across sites, to me, that would just make everything from an operational perspective significantly easier.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Every aspect of the solution is very well integrated, and even that gives comfort. It is a fail-safe kind of environment."
"It is very simple to use."
"It's a highly flexible solution that can adapt to each customer's needs."
"The Password Upload Utility tool makes it easier when setting up a Safe that contains multiple accounts and has cut down the amount of time that it takes to complete the task."
"We have the identity provider for all the authentication processes. However, sometimes, we need access to different applications for customers or clients that are not integrated into the identity provider. For these, we need to store a password to gain access. For example, we use the CyberArk Password Vault for third-party services. This vault needs to be shared with many people in our company."
"We use the solution for password vaulting, password rotation, session management, and secret management."
"The most valuable feature is the special management. It records the activity and the actions that we use for auditing."
"We found the initial setup to be easy."
"The features that we have found most valuable with NetIQ Access Manager are its single sign-on and two factor two second factor database."
"It's very easy to integrate with applications."
"The single sign-on feature is excellent."
"The most valuable features of NetIQ Access Manager are SSO and Multi-Factor Authentication."
"There are lots of options to customize the solution to your needs."
 

Cons

"I would like to see is the policy export and import. When we expend, we do not want to just hand do a policy."
"I think they can improve account onboarding. For instance, you have to use the Password Vault utility, whereas in Thycotic I think there is a feature in the user interface that allows you to upload your account with an Excel file. So I'd like to have a similar thing in CyberArk."
"The solution's architecture could be improved. It requires installation on four to five different servers."
"I would love them to improve their UI customizing features."
"CyberArk Privileged Access Manager can be improved because I have experienced one issue where a user connected through RDP to a Linux server and the PAM could not fetch any commands or key store logging from the Linux server, which works fine on Windows servers."
"It is easily customized, and that customization makes it very easy to start trying to shoehorn the solution into roles it was never intended to fill."
"New functionalities and discovered bugs take longer to patch. We would greatly appreciate quicker development of security patches and bug corrections."
"The Vault's disaster recovery features need improvement."
"Classification of junctions and new versions of applications, such as APIs, can be added to enable the use of more devices that utilize biometrics for Multi-Factor Authentication to improve the solution."
"The application portal could be improved with more options and easier customization."
"I would love to see the upgrade procedure handled more effectively. I would prefer to have OVS installation possibilities, although the upgrade procedures should include the OS as well. You should be able to use the whole application as an appliance."
"Having the ability to easily extract and view and compare and version control configurations would be ideal."
"In terms of what could be improved, I would say the security of the infrastructure and the server and the working networking device."
 

Pricing and Cost Advice

"Payments have to be made on a yearly basis toward the licensing costs of the solution."
"I have heard from my leaders that CyberArk is costlier in terms of licensing. The support and maintenance are also costly. We use their premium support, but for the price we pay, we do not get the value."
"It's an affordable platform."
"Pricing and licensing depend on the environment."
"The SaaS version of CyberArk Enterprise Password Vault is very expensive, but the on-premises version is relative, e.g. depending on the size of the environment, it can be a bit pricey, but it's relatively okay compared to the others."
"CyberArk DNA is free if you purchase the CyberArk solution. There is no additional charge for CyberArk DNA, which is great."
"I hope to learn how the pricing works so that I can understand it better, but I am certain it is not inexpensive."
"The product’s pricing is feasible for enterprise customers. The pricing is expensive for smaller businesses. You need to pay additional costs for service implementation and local support."
"The price of the solution is average."
report
Use our free recommendation engine to learn which Access Management solutions are best for your needs.
881,082 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
15%
Manufacturing Company
10%
Computer Software Company
9%
Government
6%
Manufacturing Company
14%
Transportation Company
11%
Financial Services Firm
6%
Real Estate/Law Firm
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business59
Midsize Enterprise40
Large Enterprise173
No data available
 

Questions from the Community

How does Sailpoint IdentityIQ compare with CyberArk PAM?
We evaluated Sailpoint IdentityIQ before ultimately choosing CyberArk. Sailpoint Identity Platform is a solution to manage risks in cloud enterprise environments. It automates and streamlines the m...
What do you like most about CyberArk Privileged Access Manager?
The most valuable features of the solution are control and analytics.
What is your experience regarding pricing and costs for CyberArk Privileged Access Manager?
My thoughts on the pricing of CyberArk Privileged Access Manager depend entirely on the vendors' requirements. If they want their things to be secure, they have to spend accordingly. We have four t...
Ask a question
Earn 20 points
 

Also Known As

CyberArk Privileged Access Security, CyberArk Enterprise Password Vault
No data available
 

Overview

 

Sample Customers

Rockwell Automation
Bancomext, Bouwend Nederland, Camera dei Deputati, CGT, Coopservice Group, Court of Appeals of Georgia, Etnic, European Automotive Manufacturer, FDM Document Dynamics, Hainan Province Information Center, Highland Community College, Huntington Bank, Johnsonville Sausage, London School of Hygiene & Tropical Medicine, Mazars, Mexico's Tax Administration Service, Owens Community College, Pasco Risk, RDC, School District of Hartford, Senckenberg Nature Research Society, Sheetz, Spanish Public Employment Service, SUNY Orange County Community College, Swisscard, The Municipality of Siena, The University of Westminster, UMB Financial Corporation Invests in Identity Management, University of Dayton, University of Groningen, Vodacom, World Wide Technology
Find out what your peers are saying about CyberArk Privileged Access Manager vs. OpenText Access Manager with Managed Services and other solutions. Updated: December 2025.
881,082 professionals have used our research since 2012.