No more typing reviews! Try our Samantha, our new voice AI agent.

HashiCorp Boundary vs Idira Privileged Access Manager comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 2, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

HashiCorp Boundary
Ranking in Privileged Access Management (PAM)
23rd
Average Rating
7.0
Reviews Sentiment
2.2
Number of Reviews
1
Ranking in other categories
No ranking in other categories
Idira Privileged Access Man...
Ranking in Privileged Access Management (PAM)
1st
Average Rating
8.6
Reviews Sentiment
6.8
Number of Reviews
230
Ranking in other categories
User Activity Monitoring (1st), Enterprise Password Managers (2nd), Mainframe Security (1st), Operational Technology (OT) Security (3rd)
 

Mindshare comparison

As of September 2026, in the Privileged Access Management (PAM) category, the mindshare of HashiCorp Boundary is 1.3%, up from 1.2% compared to the previous year. The mindshare of Idira Privileged Access Manager is 8.6%, down from 16.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Privileged Access Management (PAM) Mindshare Distribution
ProductMindshare (%)
Idira Privileged Access Manager8.6%
HashiCorp Boundary1.3%
Other90.1%
Privileged Access Management (PAM)
 

Featured Reviews

David Gidony - PeerSpot reviewer
Solution architect security and AI specialist at Terasky
Remote access to private lab hosts has become smoother while session control still needs refinement
HashiCorp Boundary can be improved in a few ways. The RDP session connection was recently introduced, which was a long-time feature that everyone was waiting for. Improving the desktop client and making it more elegant, fast, and optimized would be beneficial. I saw that there are new features allowing credential injection to RDP sessions and other useful functionalities that were among the top features I was looking for. I haven't had the chance to try them yet, but I saw demos that they already exist. The role-based access and permission granting is a bit complex and not intuitive. I work by myself and don't have many users to manage, but when it comes to scale, there might be a better way to manage access. The desktop app can be improved since it is slower than I would prefer, and session timeouts are a bit opaque. You don't really know how it's handling the session; sometimes the session ends and sometimes it's still alive. I find myself reactivating a session or needing to reconnect often. It could be more organized in that sense. A feature to close all active connections would help because currently, you have to go one by one and use the mouse to click on disconnect. If you have multiple sessions open, it might take some time because once you press cancel, you have to wait for a few seconds.
Atul-Gujar - PeerSpot reviewer
CyberArk manager at a comms service provider with 10,001+ employees
Secures critical infrastructures with essential user session audit records
A potential area for improvement is enhancing support for cluster environments and distributed Vaults. Clients in multiple countries that need central access have different challenges that require better solutions from CyberArk. For financial services, CyberArk can improve incident response by ensuring fast support for critical priority tickets to meet compliance requirements. Providing more documentation on CyberArk is recommended for new team members to enhance their troubleshooting capabilities. I understand it's up to the client, but 99% fail to change the demo key, so it's crucial for CyberArk to emphasize changing the key and documenting it as part of the installation process.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Using HashiCorp Boundary has saved me time and made my workflow more efficient in the specific way that I can gain access to these private instances from anywhere."
"When we started with RPA, there was a requirement that every credential and the bots themselves be protected through the PAM system. From the get-go, we've had CyberArk in the middle... We've got a pretty robust RPA implementation with our PAM platform. Users, bots, the credentials — everything is managed via our PAM solution."
"The product has allowed us to improve both the management and access to privileged credentials, while also creating a full audit trail of all activities happening within isolated sessions of all tasks and activities taking place within the solution."
"I help implement and train others on how to use it in a highly secure environment."
"We like it for the ability to automatically change passwords. At least for my group, that's the best thing."
"What I appreciate about CyberArk Privileged Access Manager is that it is not only for password security; we can also manage their applications and platforms, and whenever a user logs in, end-to-end protection is handled, including monitoring user activity through PSM servers and reacting to threats with Privileged Threat Analysis."
"Service count rotation is probably one of my favorite features... The ability to automatically rotate any password I need to really helps with the entire enterprise strategy that we're pushing right now."
"CyberArk is a product that helps you simplify privileged access for system administrators and implement a standard set of security controls to protect the enterprise."
"Their legacy of more than 20 years is very valuable. It brings a lot of stability to the product and a wide variety of integration with the ecosystem. Because of these factors, it has also been very successful in deployment. So, the legacy and integration with other technologies make the PAM platform very stable and strong. In terms of features, most of the other vendors are still focusing just on the privileged access management or session recording, but CyberArk has incorporated artificial intelligence to make PAM a more proactive system. They have implemented threat analytics into this, and there is also a lot of focus on domain controller production, Windows Server protection, and stuff like that. They have also further advanced it with the security on the cloud and DevOps systems. They have a bundle licensing model, which really helps. They don't have a complex licensing model. Even though in our market, people say CyberArk is expensive as compared to some of the other products, but in terms of overall value and as a bundling solution, it is an affordable and highly scalable product."
 

Cons

"The desktop app can be improved since it is slower than I would prefer, and session timeouts are a bit opaque."
"The user interface needs to be improved."
"One limitation is that we are not able to put this into a decentralized mode."
"The solution that they proposed was not straightforward because of the backend processes of CyberArk."
"Tech support staff can be more proactive."
"The greatest area of improvement is with the user interface of the Password Vault Web Access component."
"The one place where we found that this product really needs to improve is the cloud."
"When I was a component owner for PAM's Privileged Threat Analytics (PTA) component, what I wanted was a clear mapping to the MITRE ATT&CK framework, a framework which has a comprehensive list of use cases. We reached out to the vendor and asked them how much coverage they have of the uses cases found on MITRE, which would have given us a better view of things while I was the product owner. Unfortunately they did not have the capability of mapping onto MITRE's framework at that time."
"CyberArk Privileged Access Manager could improve the integration docking, it should have more layers. For example, integration with OpenShift."
 

Pricing and Cost Advice

Information not available
"The product’s pricing is feasible for enterprise customers. The pricing is expensive for smaller businesses. You need to pay additional costs for service implementation and local support."
"From a client perspective, CyberArk's pricing is fair but there is a significant increase each year. They should limit the price increase because this could potentially drive customers to other partners. Price changes should be at defined intervals. There should not be sudden jumps."
"I focus more on the technical side, but I hear customers say that if CyberArk was more affordable, they might have acquired more licenses. Some clients consider alternative solutions due to pricing concerns."
"Cost efficiency is the number one thing that can be improved in my mind. This would change lots of companies minds on purchasing the product."
"In comparison to other products on the market, CyberArk is a more costly product."
"It is in line with its competitors, but all such solutions cost too much money."
"It's expensive, certainly. But CyberArk is the leader in the market with regards to privileged access management. You pay a lot, but you are paying for the value that is being delivered."
"CyberArk DNA is free if you purchase the CyberArk solution. There is no additional charge for CyberArk DNA, which is great."
report
Use our free recommendation engine to learn which Privileged Access Management (PAM) solutions are best for your needs.
911,994 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
16%
Outsourcing Company
13%
Construction Company
10%
Healthcare Company
9%
Financial Services Firm
12%
Outsourcing Company
11%
Manufacturing Company
9%
Construction Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business59
Midsize Enterprise42
Large Enterprise175
 

Questions from the Community

What needs improvement with HashiCorp Boundary?
HashiCorp Boundary can be improved in a few ways. The RDP session connection was recently introduced, which was a long-time feature that everyone was waiting for. Improving the desktop client and m...
What is your primary use case for HashiCorp Boundary?
My main use case for HashiCorp Boundary is gaining access using a reverse proxy tunnel to all kinds of hosts and instances that I don't have a direct public connection to, mostly hosts and servers ...
What advice do you have for others considering HashiCorp Boundary?
The advice I would give to others looking into using HashiCorp Boundary is that if you're a developer or a technical person or use mostly Linux machines and terminals, HashiCorp Boundary can be a g...
How does Sailpoint IdentityIQ compare with CyberArk PAM?
We evaluated Sailpoint IdentityIQ before ultimately choosing CyberArk. Sailpoint Identity Platform is a solution to manage risks in cloud enterprise environments. It automates and streamlines the m...
What is your experience regarding pricing and costs for CyberArk Privileged Access Manager?
My thoughts on the pricing of CyberArk Privileged Access Manager depend entirely on the vendors' requirements. If they want their things to be secure, they have to spend accordingly. We have four t...
What needs improvement with CyberArk Privileged Access Manager?
I believe account discovery and rolling support need to be improved. Account discovery is important when integrating with other systems, as other PAM solutions can perform account discovery and onb...
 

Also Known As

No data available
CyberArk Privileged Access Security, CyberArk Enterprise Password Vault
 

Overview

 

Sample Customers

Information Not Available
Rockwell Automation
Find out what your peers are saying about Idira by Palo Alto Networks, One Identity, Okta and others in Privileged Access Management (PAM). Updated: August 2026.
911,994 professionals have used our research since 2012.