No more typing reviews! Try our Samantha, our new voice AI agent.

Idira Privileged Access Manager vs WSO2 Identity Server comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Idira Privileged Access Man...
Average Rating
8.6
Reviews Sentiment
6.8
Number of Reviews
230
Ranking in other categories
User Activity Monitoring (1st), Enterprise Password Managers (3rd), Privileged Access Management (PAM) (1st), Mainframe Security (1st), Operational Technology (OT) Security (3rd)
WSO2 Identity Server
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
11
Ranking in other categories
Customer Identity and Access Management (CIAM) (11th)
 

Mindshare comparison

While both are Identity and Access Management solutions, they serve different purposes. Idira Privileged Access Manager is designed for Privileged Access Management (PAM) and holds a mindshare of 9.8%, down 18.2% compared to last year.
WSO2 Identity Server, on the other hand, focuses on Customer Identity and Access Management (CIAM), holds 2.7% mindshare, up 2.2% since last year.
Privileged Access Management (PAM) Mindshare Distribution
ProductMindshare (%)
CyberArk Privileged Access Manager9.8%
One Identity Safeguard4.3%
Delinea Secret Server4.2%
Other81.7%
Privileged Access Management (PAM)
Customer Identity and Access Management (CIAM) Mindshare Distribution
ProductMindshare (%)
WSO2 Identity Server2.7%
Okta Platform14.4%
Auth0 Platform12.5%
Other70.4%
Customer Identity and Access Management (CIAM)
 

Featured Reviews

Atul-Gujar - PeerSpot reviewer
CyberArk manager at a comms service provider with 10,001+ employees
Secures critical infrastructures with essential user session audit records
A potential area for improvement is enhancing support for cluster environments and distributed Vaults. Clients in multiple countries that need central access have different challenges that require better solutions from CyberArk. For financial services, CyberArk can improve incident response by ensuring fast support for critical priority tickets to meet compliance requirements. Providing more documentation on CyberArk is recommended for new team members to enhance their troubleshooting capabilities. I understand it's up to the client, but 99% fail to change the demo key, so it's crucial for CyberArk to emphasize changing the key and documenting it as part of the installation process.
Ritesh_Shah - PeerSpot reviewer
Senior Solution Architect at Hewlett Packard Enterprise
Utilizing key management and seamless single sign-on integration for enhanced user profile management
WSO2 Identity Server's key management feature stands out as a particularly impactful feature for enhancing security. Additionally, from a user perspective, the self-user portal and user profile management capabilities are highly valuable. It allows users to manage their profiles, change passwords, and offers a self-care portal type of functionality. The single sign-on capability integrates seamlessly with various platforms, including Google, Facebook, LDAP, and Active Directory, which supports rapid product launches.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable features of CyberArk Privileged Access Manager include quick access, ease of use, and a variety of connection methods beyond the web portal."
"The best thing about CyberArk Privileged Access Manager is that they keep on upgrading it. They continually conduct research and development from their end, and we get immediate support from CyberArk whenever OEM support is required for any task."
"One way it has improved the organization is we now have restricted access for all users to go through CyberArk."
"With reducing the privileged account access, there has been a huge improvement."
"Technical support has been very responsive in navigating challenges. It is very easy to open a ticket."
"We also use CyberArk’s Secrets Manager. Because AWS is the biggest area for us, we have accounts in AWS that are being rotated by CyberArk. We also have a manual process for the most sensitive of our AWS accounts, like root accounts. We've used Secrets Manager on those and that has resulted in a significant risk reduction, as well."
"I appreciate the ease of use for support analysts."
"The best feature is vaulting. CyberArk has a separate vault, which is their proprietary vault, which provides multiple encryptions for every password object, as well as tamper-proof recording."
"The product provides easy integration between API manager and IT server components."
"I am completely satisfied with WSO2 Identity Server and would definitely recommend it to other companies."
"Some of the valuable features of the solution are the easy integration with processes, such as Single Sign-On, and overall WSO2 is straightforward and does not need customization."
"I use this solution to generate keystores and certifications and link these with project development in our company."
"The single sign-on procedure itself, as well as the ability to connect to external user sources such as Microsoft Active Directory and LDAP servers, are the solution's most valuable features."
"The keystore feature has been most valuable for us."
"Comprehensive ecosystem."
"We are able to use this tool to better secure next generation data centers, which use software defined networks."
 

Cons

"The initial setup could be simplified. Right now, in comparison to its nearest competitors, it's quite complex."
"CyberArk has two disadvantages; the first is that it's insanely expensive and the other is it's very complex."
"If there is an area that has room for improvement, it's probably working with their support and getting people on the phone. That is hard to do with most products in general, but that seems to be the difficult area. The product is fantastic, but sometimes we want somebody on the phone."
"This is probably a common thing, but they do ask for a lot of log files, a lot of information. They ask you to provide a lot of information to them before they're willing to give you anything at all upfront. It would be better if they were a little more give-and-take upfront: "Why don't you try these couple of things while we take your log files and stuff and go research them?" A little bit of that might be more helpful."
"We're still struggling with the use of RDP through PSMs."
"To get it to a ten it should give other possibilities to select if you could follow the keystrokes. It should have a flexibility with things where people can use it a lot faster."
"Perhaps improve the user registry integration. It is already fine, but a bit atypical."
"As of now, it does not manage all of the IDM practices. It is only good as a PAM solution."
"There needs to be a good support model and easy-to-understand documentation."
"The solution could improve its development from a user perspective."
"The solution's licensing model could be more flexible, and pricing could be improved."
"First, improvements have to been made in the high availability architecture. This has to do with the master-slave replication, and how the load balancing is handled between the identity servers."
"I tried the product but I found it very cumbersome, so I no longer use it."
"The high availability architecture has to be improved."
"This solution requires extensive knowledge to be used effectively as certain areas of its use are not user friendly."
"This solution does not have BPM workflows already integrated, we had to integrate the BPM module externally."
 

Pricing and Cost Advice

"This product is very expensive."
"My company always complains about the cost of CyberArk Privileged Access Manager because it's too high."
"It's not a cheap application. It's very expensive."
"Licensing fees are paid on a yearly basis."
"I hope to learn how the pricing works so that I can understand it better, but I am certain it is not inexpensive."
"Its price can be reduced."
"If you want a Ferrari, it will cost you. The solution is really nice, so it costs the client, but in the long run, it is very good. If you buy a solution that costs a lot to maintain because it is not stable, and you are frequently asking for consultant support, it costs more."
"There are no additional costs other than the standard licensing fees."
"We have to take their support, but that is a minimal charge if I'm comparing it to other identity managers."
"I rate the product price an eight out of ten. There is a need to pay more for the extra features provided by the solution."
"At this time we are working with the open-source version."
"I have found the solutions license is priced competitively compared to others."
"WSO2 Identity Server is not an expensive solution."
"They should bring in some good pricing models to host the marketplace."
report
Use our free recommendation engine to learn which Privileged Access Management (PAM) solutions are best for your needs.
896,692 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
13%
Manufacturing Company
10%
Computer Software Company
7%
Comms Service Provider
6%
Comms Service Provider
14%
Construction Company
10%
Transportation Company
9%
Financial Services Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business59
Midsize Enterprise42
Large Enterprise174
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise2
Large Enterprise5
 

Questions from the Community

How does Sailpoint IdentityIQ compare with CyberArk PAM?
We evaluated Sailpoint IdentityIQ before ultimately choosing CyberArk. Sailpoint Identity Platform is a solution to manage risks in cloud enterprise environments. It automates and streamlines the m...
What is your experience regarding pricing and costs for CyberArk Privileged Access Manager?
My thoughts on the pricing of CyberArk Privileged Access Manager depend entirely on the vendors' requirements. If they want their things to be secure, they have to spend accordingly. We have four t...
What needs improvement with CyberArk Privileged Access Manager?
I believe account discovery and rolling support need to be improved. Account discovery is important when integrating with other systems, as other PAM solutions can perform account discovery and onb...
What is your experience regarding pricing and costs for WSO2 Identity Server?
The pricing is currently the same as the API Manager, so it's not surprising. Since we used it primarily for SSO and the self portal, there were no additional pricing concerns.
What needs improvement with WSO2 Identity Server?
Currently, all required features are supported. If new use cases for artificial intelligence arise, it could be beneficial to incorporate those. However, for our current projects, WSO2 Identity Ser...
What is your primary use case for WSO2 Identity Server?
We deployed WSO2 Identity Server to fulfill our single sign-on (SSO) requirements. Whenever we implement the API Manager, instead of using the API Manager's inbuilt key manager, we use WSO2 Identit...
 

Also Known As

CyberArk Privileged Access Security, CyberArk Enterprise Password Vault
No data available
 

Overview

 

Sample Customers

Rockwell Automation
Nutanix, ELM, AlmavivA, BDigital, StubHub, M-creations, MedVision360
Find out what your peers are saying about Idira Privileged Access Manager vs. WSO2 Identity Server and other solutions. Updated: January 2023.
896,692 professionals have used our research since 2012.