Try our new research platform with insights from 80,000+ expert users

Delinea Privileged Access Service vs One Identity Manager comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Delinea Privileged Access S...
Average Rating
8.0
Reviews Sentiment
7.2
Number of Reviews
12
Ranking in other categories
Enterprise Password Managers (13th), Privileged Access Management (PAM) (14th)
One Identity Manager
Average Rating
8.2
Reviews Sentiment
6.7
Number of Reviews
134
Ranking in other categories
User Provisioning Software (1st), Identity Management (IM) (3rd)
 

Mindshare comparison

While both are Identity and Access Management solutions, they serve different purposes. Delinea Privileged Access Service is designed for Privileged Access Management (PAM) and holds a mindshare of 2.8%, up 2.8% compared to last year.
One Identity Manager, on the other hand, focuses on Identity Management (IM), holds 4.8% mindshare, down 6.9% since last year.
Privileged Access Management (PAM) Market Share Distribution
ProductMarket Share (%)
Delinea Privileged Access Service2.8%
CyberArk Privileged Access Manager11.6%
WALLIX Bastion5.1%
Other80.5%
Privileged Access Management (PAM)
Identity Management (IM) Market Share Distribution
ProductMarket Share (%)
One Identity Manager4.8%
SailPoint Identity Security Cloud14.6%
Microsoft Entra ID9.3%
Other71.3%
Identity Management (IM)
 

Featured Reviews

Francesco Panacea - PeerSpot reviewer
Senior Consultant at Deloitte Risk Advisory
Comprehensive documentation streamlines implementation with opportunity to improve user experience
I typically use Delinea Privileged Access Service within my IT infrastructure management for consulting, to secure privileged access, recording, session recording, password vault, etcetera The most common solution I find effective for protecting sensitive data is the most common features of…
reviewer2538840 - PeerSpot reviewer
Senior identity and security specialist at a pharma/biotech company with 1,001-5,000 employees
Highly flexible and stable, but lacks in many aspects and requires a strong partner
In terms of providing a single platform for enterprise-level administration and governance of users, data, and privileged accounts, One Identity is not yet there. One Identity recently bought OneLogin. They already had Safeguard and One Identity Manager. They have started integrating these three tools. I am also on the customer advisory board (CAB) of One Identity, so I have more insight into these things. I know that they started to integrate OneLogin and One Identity just recently. OneLogin is their access management tool. They use it for authentication and for SSO. It is a competitor for Entra and Okta, whereas Safeguard is competing with CyberArk, Delinea, and BeyondTrust. One Identity has indeed done good integration between their three products. However, the platform is not unified. You still need three URLs, which is not optimal. They are going there, but it will take them time. The second thing they are not yet good at is their SaaS offering. They are behind in the market. They started with something in Safeguard, but it is a pretty basic offering. It is still a new baby. They have Safeguard On Demand, but it is just a hosted PAM solution. I did PoC for Safeguard twice. This is how I know this, but I have not used it. As PAM, Safeguard is a good product, but it is not a full-featured PAM like CyberArk or BeyondTrust. They are lacking in that aspect. The integration between One Identity's products is similar to BMC's integration. I used to work with BMC products such as BMC Remedy ten years ago. I used to be an ITSM or Control-M guy. When BMC integrated its products, the integration was not well done. It was like two different entities trying to integrate with each other rather than one company giving you a fully-fledged platform. The same thing is happening with One Identity Manager at the moment. They are selling it as a unified platform, but in my opinion, it is not yet good. It is also not bad. There are things that I can take from it, but there is no complete picture. The problem nowadays is that vendors are getting into each other's areas. For example, CyberArk used to be just a PAM provider, so people would integrate with it, but now, CyberArk wants to do the identity bit. It has now become a competitor for other vendors, so they will stop integrating with it. SailPoint, at some point, stopped integrating with CyberArk. SailPoint and CyberArk's integration was good. This is what is happening in the market or between vendors. All of them are getting into each other's area. If you happen to buy another product from a competitor, you need to integrate it on your own. There is no integration plug-in concept between them. This is a bit hard for companies that already have a PAM and they want to buy a new IGA, for example, or vice versa. They are trying to shift towards an Angular-based platform for their web portal or for IT Shop. That has been very long overdue because they did not modernize their web portal for almost three versions. They are doing it, but there is no feature parity till version 9.3, which is the upcoming version. This is a problem. For example, data governance is not included in 9.2 if you want to upgrade, but if you do not upgrade, you lose support. They have these issues with the roadmap in general. They give you options, but they are not always the complete options. To me, it seems that this company is going to suffer in the long run. Another issue is that for admin requests, we have to configure the tool at least in seven different clients, which is unacceptable. We are in 2024, not in 1981 or 1985. Having seven clients for the same tool, or more, is just unheard of. To me, that is a very old design idea. I am on the newest version 9.2, and I am still doing that. To me, that is a big problem as an admin. The relationship with the customers is extremely bad. That is not a technical problem. That is a company problem. They tried to fix that, but it seems they failed. They do not have the personnel. They have a hiring problem. They now rely on partners. They are a type of company where the partner is more of a vendor to you as a client rather than the company itself. If you want to pick any solution by One Identity, you need a very strong partner with you. If you do not, you will struggle with this product's adoption, roadmap, vision, and implementation. We struggle a lot as a client. I have been there. I have seen that. It is not easy with them. One Identity is based in Europe. Our account manager at One Identity resigned in May and till now, just to show how bad they are, we do not know who our new account manager is. We are in August. Their Starling Connect roadmap or flagship is a failure. We had to withdraw from using it with SuccessFactors, for example. It had a lot of stability issues. Now, my understanding is better, but it caused a bad implementation, so we are not using it. They are not investing a lot in enhancing or extending Starling Connect. They are using Starling Connect as a propagation gateway to SaaS apps so that you have One Identity Manager on-prem talking to Starling Connect which is handling all SaaS apps. However, the roadmap for Starling Connect is not clear. Now that they have bought OneLogin, OneLogin can do that as well as an IAM tool. You can now bring any IAM or CIAM tool such as Entra, Okta, or OneLogin. They can be your propagation gateway. OneLogin and Starling Connect are competing products, and they need to unify them. They cannot have both products doing the same thing. When I discussed this with the head of engineering from their side, they were still defending having Starling Connect. I do not understand why because if you have a proper IAM such as Entra or Okta, that is your propagation gateway. That is it. You can do everything you want with it. You can merge the functionality, and that is it. You do not need Starling Connect. To me, this is confusing. You use a propagation gateway like Starling Connect because it has ready plug-ins to connect to SaaS apps and you do not need to create a custom connector every time. If you look at the number of apps that One Identity supports with Starling Connect, there are not more than 50, which is not a lot. There is a big difference when you compare it to Okta Marketplace or Entra Marketplace. You will immediately understand the difference. OneLogin's marketplace is better than Starling Connect, but OneLogin was not a part of One Identity before, so they had their own marketplace. Overall, the Starling Connect roadmap does not make sense to me. They need to remove the dependency on VB.NET for backend development and they need to unify the front end. If they are selling it as a unified product, they need to give me a unified UX. This is something I have mentioned to Mark Logan himself. This is how ServiceNow won over Remedy. Having a unified UX and being able to turn on or off a feature is better than trying to connect three or four different products with different contracts. To me, the main thing is that they need to modernize their application. Once we do that, making it SaaS is doable.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution provides secure access to environments."
"Delinea has very good support."
"I recommend it to other organizations."
"The most valuable feature is the author's discovery of assets."
"The privileged account management feature is what I like most."
"The vault and auditing capabilities are the most valuable feature because they include multiple reports that allow us to create our own reports."
"The most valuable feature of Delinea Privileged Access Service is we can use the server as a jump host. It is simple to manage the accounts on the system."
"Delinea Privileged Access Service's UI part was very user-friendly for secure credential storage and management."
"The best feature of this solution is its flexibility to be customized."
"One Identity enables us to provide users with permissions for only the roles that they need. We can use segmentation to ensure that users don't have roles that can cause trouble in the business."
"The best features of One Identity Manager are the synchronization project, the mapping, onboarding using CSV, and the designer tool which allows us to write our own custom workflows."
"The connection with multiple systems is what makes it flexible. We can create the accounts flexibly, enabling access to other systems. In addition to Active Directory, it can extend to SAP, to Salesforce, to Office 365, etc."
"This solution has helped to increase employee productivity when it comes to provisioning users in our systems. This solution has been really been effective with our retail workers. It wouldn't be possible to onboard and manage our 40,000 store employees without it. The management of the solution is pretty automated."
"In terms of what the most valuable feature of One Identity Manager is, that would be hard to say because the tool is great overall. There's not really one feature you'd prefer over other features, but what's really great, in my opinion, is the fact that the provisioning is really stable and accurate, and it's a process my company trusts. This means that without a lot of maintenance, I can be pretty sure that as soon as my alternative source gives a new identity or gives new information about a particular identity, everything will be transformed and executed the right way. My company has tried other solutions and there's always a struggle with the provisioning system in terms of knowing what systems work, but with One Identity Manager, this issue doesn't happen. It's also a stable system which I like."
"One Identity Manager is flexible and offers numerous connectors that enable us to serve as the core component of the system, as well as to construct our own connectors using the API."
"One Identity Manager is user-friendly and easy to customize. One Identity's business roles enable me to map company structures for dynamic application provisioning, which is fairly important."
 

Cons

"The integration with sync could be improved."
"There needs to be a notification when a password is near expiration."
"I would have been really happy if Delinea were evolving or innovating like CyberArk."
"Enhancing the solution by incorporating additional features to make it comprehensive would be beneficial. It would be more convenient to have a complete package solution that consolidates all the features in one place, making it easier to manage. Currently, I am required to access two separate servers for reports, which could be avoided if all the necessary features were available in a single location. This would be highly advantageous for managing everything effectively."
"Although the interface is intuitive, it could be a little more user-friendly."
"I would like for there to be a suitable solution to deploy a low-spec version for desktop password management to all our staff."
"This solution needs better integration with third-party solutions because their ability to support other tools is very weak."
"The initial setup is a bit complex."
"What is missing is a mobile user interface for the end-users so that they can do simple things on their mobile phones on the go. The time it takes to synchronize a large target system is often significant, often taking multiple hours."
"The user experience is good, but it can be improved. There are a lot of features in the administration part, and they need better documentation. For example, they need to explain the main reason for a feature, and what the tables are in the database. It needs better documentation about all the features that are in the solution."
"I would like it to have an easier integration with phones."
"The initial setup was complex. We have a lot of different systems. The journey from implementing to joining all the systems was difficult."
"I would like One Identity Manager to offer an easier way for users to learn to use their new features."
"The performance is quite bad, but this is because we have a very old version."
"Their technical support's attitude is a bit strange. Quite often, we have to prove that there is a problem with the product rather than having them prove that there is not a problem with the product."
"The policy and role management features are a bit hard to scale. The whole model for who can do what and how to set it up is not so well-governed for a larger organization. The demos are always shown for a 100 or a 1000 people, but when it is a large number, it is quite difficult to maintain."
 

Pricing and Cost Advice

"The price of Delinea Privileged Access Service is average compared to its competitors."
"The pricing is moderate."
"The price is cheap if I compare Delinea Privileged Access Service with other products."
"The price model is based on the number of devices and opposed to the number of users, and it is not very flexible."
"In addition to the license fees, we have to pay for the server and admin fees."
"It is sad that people with a limited budget won't be able to afford it."
"The product comes at a very good price and it's quite competitive, although you need to buy add-ons for certain things."
"The solution is priced too high, so I rate its pricing a nine out of ten."
"One Identity Manager is expensive."
"On-premises, it is cheap. It is way cheaper than others. The cost of the hosted one varies. They do offer a hosted one, and its cost varies, but it is not that expensive. You have a license for employees and a license for support."
"There are old processes that are really great for some people and look like pieces of artwork. However, the maintenance of them is really expensive."
"It needs flexibility in the licensing or packaging, because you buy the entire package at once, and sometimes the customers are a bit overwhelmed with whatever they get. I would like if they could cut the licensing or packaging into somewhat smaller things."
"The pricing is okay."
"One Identity Manager is fairly priced."
"I believe the pricing is fair."
"In addition to licensing fees, we may incur costs for professional services if product issues or implementation errors arise beyond our control."
report
Use our free recommendation engine to learn which Privileged Access Management (PAM) solutions are best for your needs.
880,685 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
11%
Computer Software Company
10%
Financial Services Firm
8%
Comms Service Provider
7%
Financial Services Firm
13%
Manufacturing Company
9%
Computer Software Company
7%
Comms Service Provider
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business6
Large Enterprise8
By reviewers
Company SizeCount
Small Business43
Midsize Enterprise17
Large Enterprise87
 

Questions from the Community

Looking for recommendations and a pros/cons template for software to detect insider threats
This is an inside-out --- outside-in --- inside-in question, as an insider can be an outsider as well. There is no short answer other than a blend of a PAM tool with Behavioral Analytics and Endpo...
What do you like most about Delinea Privileged Access Service?
The solution provides secure access to environments.
What is your experience regarding pricing and costs for Delinea Privileged Access Service?
The difference in license cost is minimal, with CyberArk being slightly costly due to its market-leading position. The difference is in the range of a few hundred dollars.
What do you like most about One Identity Manager?
The One Identity birthright process has helped generate user accounts more accurately and quickly.
What is your experience regarding pricing and costs for One Identity Manager?
Specific details regarding pricing, setup cost, and licensing cannot be shared. However, One Identity is quite affordable, particularly with partner status.
What needs improvement with One Identity Manager?
One of the improvements concerning One Identity Manager that I mentioned before is that we need to add the Arabic language for the web portal and APIs. The Arabic language is the main thing that af...
 

Also Known As

Centrify Privileged Access Service, Centrify Zero Trust Privilege Services, Centrify Zero Trust Privilege, Centrify Infrastructure Services, Centrify Server Suite, Centrify Privilege Service
Quest One Identity Manager
 

Overview

 

Sample Customers

Boeing, Citi, Credit Suissw, Delta, Duke Energy, FDIC, GE Capital, Harvard University, Johnson & Johnson, Major League Baseball, Michelin, Microsoft
Texas A&M, Sky Media, BHF Bank, Swiss Post, Union Investment, Wayne State University. More at OneIdentity.com/casestudies
Find out what your peers are saying about CyberArk, One Identity, Delinea and others in Privileged Access Management (PAM). Updated: January 2026.
880,685 professionals have used our research since 2012.