Try our new research platform with insights from 80,000+ expert users

ForgeRock vs Microsoft Entra Permissions Management comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

ForgeRock
Average Rating
8.0
Reviews Sentiment
6.5
Number of Reviews
30
Ranking in other categories
Identity Management (IM) (13th), Access Management (11th), Customer Identity and Access Management (CIAM) (6th)
Microsoft Entra Permissions...
Average Rating
7.0
Reviews Sentiment
7.0
Number of Reviews
2
Ranking in other categories
Microsoft Security Suite (31st), Cloud Infrastructure Entitlement Management (CIEM) (7th)
 

Mindshare comparison

ForgeRock and Microsoft Entra Permissions Management aren’t in the same category and serve different purposes. ForgeRock is designed for Access Management and holds a mindshare of 7.2%, up 6.9% compared to last year.
Microsoft Entra Permissions Management, on the other hand, focuses on Cloud Infrastructure Entitlement Management (CIEM), holds 7.0% mindshare, down 22.4% since last year.
Access Management
Cloud Infrastructure Entitlement Management (CIEM)
 

Featured Reviews

Harjinder Singh Dhanjal - PeerSpot reviewer
A highly-modular access management tool that covers a wide range of use cases
ForgeRock is an extensive product with many functionalities and capabilities, much more than many other tools combined. It comes with XML functionality and the latest standards, including IoT, providing almost all the major identity-use cases. ForgeRock is comprehensive and open and can extend its functionality. ForgeRock has multiple units inside it, such as identity gateways. It has extensive application management and supports all sorts of protocols.
Sameer Bhat - PeerSpot reviewer
Provides resource-based access and security, but time-bound access can be a problem
Entra ID is the core of the identity management that we have. This is the key product that we are using. I am currently also looking into Entra Private Access because we are planning to deploy about 50,000 desktops into Azure and use Azure Virtual Desktop. We would like to give access to the users from the desktop to on-premises applications. I learned that Entra Private Access is a good solution. That is not yet GA, but that is what we are looking for. Entra provides a single pane of glass for managing user access, but because our company also integrates with Nebula API, only administrators use Entra's pane. A normal person who wants to get onboarded can do self-service using Nebula. The features for whitelisting and other things are definitely there. That is what we use specifically. Application IDs, enterprise applications, and all those things are already there, so we have more efficiency. There is also security because we usually do not allow user identities to get direct access to Azure resources. Usually, we use the service principles from Entra ID, so this way, it increases security. Entra has helped to save time for our IT administrators. We tend to automate a lot of things. We can do automation using Graph APIs and save time. It is hard to quantify the time savings, but there has been a medium amount of time savings. Entra has helped to save our organization money. We care about security and risk more than money, but it also saves money. We are premium customers, and because we have a commit-to-consume contract with Microsoft of multi-million dollars, the money does not come into it because we have to consume those resources.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Even though we have very small business interests with them today, they see that we plan on growing drastically over the next two years. Therefore, we have excellent support and we are now at a point where we are not calling tech support. We pick up a phone and call the Account Manager and they'll get everything resolved for us. We don't have to queue along with everybody else and go through a long process."
"Installation and configuration are pretty easy for ForgeRock OpenIDM."
"ForgeRock products are customizable, and the out-of-the-box features are solid, too. I primarily use the OIDC compliance features. It's just a configuration. it's easy to set up and customize trees. We can add our own features if necessary. Banks and corporations have different standards and specific validations."
"Easy to navigate, handle and manage the applications."
"This is a stable solution. When you do experience any issues, you will see it in your DB logs or audit logs so you can easily reach a conclusion of might be causing it."
"ForgeRock has CIAM, which other products didn't have, and they have DevOps ready."
"We create and define the permissions and configurations for the users."
"ForgeRock is an extensive product with many functionalities and capabilities, much more than many other tools combined."
"The solution integrates well with our infrastructure and other systems without any issues."
"Multifactor authentication is valuable."
 

Cons

"As with any complex software platform, there is a learning curve to using ForgeRock, and it may require specialized expertise to implement and manage effectively."
"It should have a better user interface. Its flexibility should also be improved. It is not about simplifying; it is more about flexibility. Each company has its own requirements, and ForgeRock can provide more flexibility in terms of the use of existing modules to implement features for the customers."
"The product's customization is a bit complicated."
"I don't think ForgeRock directly supports integrations with Slack, making it an area where improvements are required."
"The product's support services in the French language are not free."
"In future releases, I would like to see easier integration with other solutions, like facial recognition and KYC solutions with biometric onboarding."
"We're worried about the scaling. We're told it will be okay and there won't be issues, however, I'm not 100% convinced."
"They should improve the solution by include reporting."
"We use a third-party API called Nebula API to integrate the account for authorization. The time-bound access area in Entra can be a problem. It can be improved in terms of the granularity of the permissions."
"The solution's pricing and support services need improvement."
 

Pricing and Cost Advice

"Its price is comparable to other products in the market."
"The pricing of the solution is fair but I do not have the full details."
"We have multiple clients we are looking at right now. We are at a very small number, however, the idea and the goal is to grow. We are looking at about $100,000 and $50,000 a minimum a month cost. That'd be minimum maybe in a couple of years."
"ForgeRock is an expensive solution."
"The license is purchased annually per user. However, you can negotiate if you are signing for a longer period of time. When comparing this solution to others on the market it is priced fair, it is not at the top of the price range or at the bottom end."
"It's a bit pricey and could be more competitive."
"ForgeRock's pricing is more competitive than other products."
"Its licensing is on a yearly basis, but it also depends on the contract that you have with the vendor. They have multiple types of contracts. There are additional costs to the standard licensing fees. If you need some of the features, you have to pay more."
"We are a Fortune 500 company, so we always negotiate with Microsoft."
"The product cost is in the mid to high range."
report
Use our free recommendation engine to learn which Access Management solutions are best for your needs.
862,499 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
24%
Computer Software Company
12%
Insurance Company
7%
Manufacturing Company
6%
Computer Software Company
15%
Financial Services Firm
15%
Government
10%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about ForgeRock?
The most valuable features of ForgeRock are social login and data protection.
What is your experience regarding pricing and costs for ForgeRock?
Our company was considering switching back to Keycloak from ForgeRock, so as to not pay any license fees. ForgeRock also supports M-PIN and biometric features that Keycloak does not provide. My com...
What needs improvement with ForgeRock?
In the past, I saw that Splunk was integrated with a testing portal, and then it was integrated with Slack. I don't think ForgeRock directly supports integrations with Slack, making it an area wher...
What is your experience regarding pricing and costs for Microsoft Entra Permissions Management?
The product cost is in the mid to high range. You need to have a good budget to implement it, so it is considered fairly expensive for our market. I rate the pricing a seven out of ten.
What needs improvement with Microsoft Entra Permissions Management?
The solution's pricing and support services need improvement.
 

Also Known As

ForgeRock Identity Platform, ForgeRock OpenIDM
CloudKnox Permissions Management
 

Overview

 

Sample Customers

Geico, Thomson Reuters, Salesforce, McKesson, Trinet, SKY, BNP Paribas, Deloitte, Capgemini, North Western University
Information Not Available
Find out what your peers are saying about Microsoft, Auth0, Ping Identity and others in Access Management. Updated: July 2025.
862,499 professionals have used our research since 2012.