No more typing reviews! Try our Samantha, our new voice AI agent.

Forcepoint CASB vs Prisma Access by Palo Alto Networks comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 7, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in Cloud Access Security Brokers (CASB)
6th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
23
Ranking in other categories
Secure Web Gateways (SWG) (6th), Internet Security (3rd), Web Content Filtering (1st), ZTNA as a Service (6th), Secure Access Service Edge (SASE) (7th)
Forcepoint CASB
Ranking in Cloud Access Security Brokers (CASB)
18th
Average Rating
7.2
Reviews Sentiment
5.6
Number of Reviews
10
Ranking in other categories
No ranking in other categories
Prisma Access by Palo Alto ...
Ranking in Cloud Access Security Brokers (CASB)
1st
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
65
Ranking in other categories
Secure Web Gateways (SWG) (5th), Enterprise Infrastructure VPN (5th), ZTNA as a Service (4th), Secure Access Service Edge (SASE) (1st)
 

Mindshare comparison

As of August 2026, in the Cloud Access Security Brokers (CASB) category, the mindshare of iboss is 4.6%, up from 1.9% compared to the previous year. The mindshare of Forcepoint CASB is 1.6%, up from 1.2% compared to the previous year. The mindshare of Prisma Access by Palo Alto Networks is 12.6%, down from 16.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Access Security Brokers (CASB) Mindshare Distribution
ProductMindshare (%)
Prisma Access by Palo Alto Networks12.6%
iboss4.6%
Forcepoint CASB1.6%
Other81.2%
Cloud Access Security Brokers (CASB)
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
AlexOgbalu - PeerSpot reviewer
Director at LiveFromSpace Limited
Improving support responsiveness has remained critical while access monitoring and compliance needs have been fully addressed
We have the enterprise licenses for the scanning of the codes, both at runtime and in development, and we also have access to Veracode's e-learning platform as well as a bundle from Veracode.All that has been mentioned is the main benefits Forcepoint CASB provides to us, and it helps us to meet compliance requirements that are necessary in our industry. It's important for enterprises considering Forcepoint to work with very good system integrators and value-added resellers because a lot of things needed go beyond just getting the licenses. You need someone skilled to do all those configurations, write all the rules, and make sure you achieve a very stable environment. I am giving this review an overall rating of eight.
IgorPinter - PeerSpot reviewer
Director at PULSEC
Zero-trust access has improved remote security and now simplifies cloud-based firewall management
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pretty much good. It is basically firewall as a service, so it performs well. I completed the integration without any issues. What Palo Alto Networks can do better for Prisma Access by Palo Alto Networks is probably to have the point of presence available in more locations. The point of presence from the Serbia region has the nearest POP in Frankfurt, which is an issue since it is your gateway—when you start browsing the internet, you go through a commercial connection in Germany. They definitely need to spread the service in other countries.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Granular setup, which was able to set different levels of filters using the OUs in the AD."
"Its initial setup was straightforward."
"From a use-case scenario, what I like the most is the plug-in. I like the fact that we can do the filtering of these devices offsite independent of the network they are connected to, and we do not have to have traffic coming back inside our network."
"First of all, the security policies are essential. I do not have to rely solely on Active Directory for our users."
"iboss has significantly lowered the number of security incidents. It is crazy how much it blocks and how much it is aware of the outside danger."
"iboss is pretty scalable. They provide good support. The case managers you work with to coordinate what you need are pretty good."
"I would rate the technical support of iboss a solid 10 without a shadow of a doubt."
"We were impressed by the solution's mental health function, which can detect if someone needs help. It scans what users are browsing and flags warning signs so we can check to see if they are okay. We've had to use it a couple of times."
"It gives you value for your investment."
"Most of the features are valuable, primarily for the firewalls, the proxy, and Forcepoint CASB products."
"The product offers an easy initial setup."
"The visibility around the usage of cloud applications within my tenant is the most valuable aspect of the solution, as the administrator gets visibility and control of these applications for users whether on-premise or not and whether using pocket devices or their IOD."
"Macro integration is a good feature."
"Generally, most of our customers are happy with it though."
"The product offers several advantageous features including real-time control and monitoring capabilities, helping identify and manage various activities including shadow IT activities."
"I like that the layout and configuration are easy compared to other solutions on the market."
"The protection for web-based applications was helpful for my colleagues who didn't want a particular application on their devices. And the non-web access protection was more for our developers because they were writing and building code on their computers. Prisma Access was able to protect them."
"It has predefined or preconfigured rules, which are getting periodically updated. They are providing continuous improvements and periodically updating all search queries that they are looking for. That is one thing that helps us to stay vigilant and focused. If we query our AWS account for any breaches or vulnerabilities with any of the cloud tests, and it alerts us based on these predefined rules. It also provides an option to configure our own rules, and based on these rules, it can query the cloud trail logs, pull the information, and trigger alerts in real-time. I haven't explored this feature much because there are multiple accounts, and we don't have enough time to explore this feature. It also provides multiple integrations. When vulnerabilities or breaches are happening, you should be aware of them immediately. It provides integration with tools such as Slack, PagerDuty so that you can get alerted as soon as the high severity stuff comes up. For example, you have a security group that has allowed public traffic on port 22. As TechOps, you should be aware of this immediately. You cannot scan each machine or look into all security groups to identify it. So, Prisma helps us and alerts us when this kind of high-priority stuff comes up. It has different statistics, analytics, and graphs for data. The description of alerts is also pretty good. They describe what are the possible causes for this and what are the solutions. From Prisma Cloud, you can directly go to the AWS account. When you click on an alert, a resource, or a resource ID, it takes you to the AWS console where you need to log in. If you are already logged in, it will take you to that instance directly, and you can fix the issue there. I have found this feature very useful."
"Anyone who is considering working with Prisma Access should go ahead and implement it."
"Its hands-off security and the fact that we don't have to maintain it are the most valuable features."
"It protects all app traffic so that users can gain access to all apps. Unlike other solutions that only work from ports 80 and 443, which are predominantly for web traffic, Prisma Access covers all protocols and works on all traffic patterns... The most sophisticated attacks can arise from sources that are not behind 80/443."
"All of these come into play and give us peace of mind that this platform is best-in-class in terms of security features and tool integration."
"Prisma integrates pretty nicely even if you aren't using other Palo Alto products, is very effective for a CSP solution, and the time to value is almost instant because as soon as you stand it up, it shows value by telling you all the vulnerabilities or risks in that environment."
"Considering this work from home scenario in COVID, it is one of the best solutions one can implement."
 

Cons

"It is stable, but due to growth, it can sometimes be less stable than wanted."
"The solution could be stronger on the integration side and offer more cloud applications like G Suite or Oracle."
"I have heard they are doing DDoS filtering, but I am not certain if they are implementing it correctly."
"Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern."
"Our iboss subscription access should be more secure with an OTP or VPN etc. It is easy to gain access if, for example, hackers obtain my username and password."
"To scale up, a new iboss Node Blade Chassis must be purchased."
"For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company ExxonMobil."
"I'd like to see them accelerate development on the security side, particularly around data loss prevention."
"The deployment and initial setup can be quite difficult to install."
"The solution needs to be easier to install, and they need to clean up the backend, so stuff doesn't break."
"Forcepoint removed the ability to scan for unsanctioned applications on the CASB."
"Forcepoint technical support in general could improve in this area."
"We are not happy with the solution."
"They should work on the possibility of consolidating all of the products with the group of agents."
"It could be more robust, especially around custom applications."
"There are various modules to secure a public cloud, such as Cloud Security Posture Management. You might have seen these features available if you've reviewed solutions like Zscaler or Netskope. A full-fledged CASB should be manageable. However, the tool does not seem to offer complete public cloud visibility. While it provides some cloud visibility and can manage API traffic for Web 2.0, it lacks a specific module for securing public cloud environments."
"Its integration with non-Palo Alto products can be improved. Currently, it is easy to integrate it with other Palo Alto products such as Cortex XDR. It integrates well with other Palo Alto products. A major part of our network is based on Palo Alto products, but for those companies that use multi-vendor products in their infrastructure, Palo Alto should optimize the integration of Prisma Access with the network devices from other vendors."
"I haven't seen any SD-WAN configuration capability. If Prisma Access would support SD-WAN, that would help... SD-WAN devices should be able to reach Prisma Access, and Palo Alto should support different, vendor-specific devices, not just Palo Alto devices, for SD-WAN configuration."
"In general, it is good, but everything could be a little bit better. For example, they are working on including more data to catch or trying to reduce the gaps between the matches."
"Palo Alto Prisma 10 came out over a year ago. Palo Alto added this identity management feature. The legacy way Palo Alto selected which user is sitting on an IP address it passes through has been clunky."
"It is a managed firewall. When you run into issues and have to troubleshoot, there is a fair amount of restriction. You run into a couple of restrictions where you don't have any visibility on what is happening on the Palo Alto managed infrastructure, and you need to get on a call to get technical assistance from Palo Alto's technical support. You have to get them to work with you to fix the problem. I would definitely like them to work on the visibility into what happens inside Palo Alto's infrastructure. It is not about getting our hands onto their infrastructure to do troubleshooting or fixing problems; it is just about getting more visibility. This will help us in guiding technical support folks to the area where they need to work."
"One thing that would help is if we could get a guide. With Cisco, for example, you can just type the problem regarding your Cisco product and you will easily get your solution. In Palo Alto, however, it's not easy to find the solutions."
"The Cloud Managed Prisma Access needs some more enhancement."
"My clients are not satisfied with the technical support from Palo Alto Networks."
 

Pricing and Cost Advice

"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is probably in line with other solutions, but I do not deal with the financial side."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"It is expensive compared to one of its competitors."
"The overall pricing for iboss is very competitive and transparent."
"The solution is not that expensive compared to Zscaler. Netskope is between Forcepoint CASB and Zscaler in terms of cost. Forcepoint CASB would be the first choice because it negotiates well and offers a perpetual license, though it may seem subscription-based. I rate its pricing a six out of ten."
"The pricing really depends on the size of the customer's business because it is price-relevant to the environment."
"Palo Alto is the Cadillac solution, so their products are pretty expensive. That's just the way it is. Their solution surpasses anything else. Cisco AnyConnect, Zscaler, and all of the other products don't compare. Palo Alto is the market leader with the most features. It saves you work, and you don't have to worry about it."
"Prisma is in the middle of the road. It's not the most expensive, but it's not the cheapest. There aren't any additional costs, to my knowledge. I know they have some extra modules, but we didn't use them."
"The solution is expensive."
"It's pricey, it's not cheap. But you get what you pay for."
"It is not cheap. It is expensive. The good thing is that you are able to pay for what you need, but overall, it is not cheap. The pricing is not based on packages. You pay based on the features. If you want DLP, you only pay for DLP. They are very flexible. It is not cheap, but the licensing is flexible. There are no additional costs in addition to the standard licensing fees."
"The licensing model for this product is complicated and changes all the time, making it very hard for the user to comprehend the configuration."
"The licensing cost is about 18,000 euros."
"The pricing is very friendly. It's not confusing to figure out your workload and how much you'd be paying for the solution."
report
Use our free recommendation engine to learn which Cloud Access Security Brokers (CASB) solutions are best for your needs.
908,877 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
9%
Computer Software Company
8%
Construction Company
7%
Construction Company
10%
Manufacturing Company
10%
Comms Service Provider
10%
Outsourcing Company
9%
Financial Services Firm
12%
Manufacturing Company
10%
Computer Software Company
8%
Outsourcing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business11
Midsize Enterprise8
Large Enterprise10
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise2
Large Enterprise3
By reviewers
Company SizeCount
Small Business26
Midsize Enterprise20
Large Enterprise27
 

Questions from the Community

What needs improvement with iboss?
I think iboss could be improved by making reporting and dashboard customization more flexible, and simplifying troubl...
What is your primary use case for iboss?
I use iboss as a cloud-based secure web gateway to provide secure internet access, web filtering, and protect remote ...
What is your experience regarding pricing and costs for iboss?
My experience with iboss's pricing structure, setup cost, and licensing model has been positive, straightforward, and...
What is your experience regarding pricing and costs for Forcepoint CASB?
I would put the pricing of Forcepoint CASB at a five, closer to a four. I don't think it's very expensive, but it's a...
What needs improvement with Forcepoint CASB?
From a functionality perspective, I don't have any recommendations, but in terms of support, the speed of support is ...
What is your primary use case for Forcepoint CASB?
Forcepoint CASB ensures that access to cloud applications is properly vetted and monitored. We have a lot of remote a...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
What needs improvement with Prisma Access by Palo Alto Networks?
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pr...
 

Also Known As

iBoss Cloud Platform
Imperva Skyfence
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Zions Bank, GE Healthcare, HomeAway, Logitech, Universal, California National Resources Agency and many mor
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Find out what your peers are saying about Forcepoint CASB vs. Prisma Access by Palo Alto Networks and other solutions. Updated: August 2026.
908,877 professionals have used our research since 2012.