No more typing reviews! Try our Samantha, our new voice AI agent.

Imanami GroupID vs One Identity Active Roles comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jul 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Imanami GroupID
Ranking in User Provisioning Software
13th
Ranking in Active Directory Management
19th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
3
Ranking in other categories
Identity and Access Management as a Service (IDaaS) (IAMaaS) (35th)
One Identity Active Roles
Ranking in User Provisioning Software
3rd
Ranking in Active Directory Management
1st
Average Rating
8.6
Reviews Sentiment
7.0
Number of Reviews
87
Ranking in other categories
Non-Human Identity Management (NHIM) (2nd)
 

Mindshare comparison

As of May 2026, in the Active Directory Management category, the mindshare of Imanami GroupID is 2.8%, up from 1.2% compared to the previous year. The mindshare of One Identity Active Roles is 11.9%, up from 6.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Active Directory Management Mindshare Distribution
ProductMindshare (%)
One Identity Active Roles11.9%
Imanami GroupID2.8%
Other85.3%
Active Directory Management
 

Featured Reviews

Jonathan Cauthorn - PeerSpot reviewer
Identity and Access Management Manager at a insurance company with 201-500 employees
Simplifies the task of managing groups and is affordable and easy to implement
I'd like to see it be able to do more than just groups. I'd like it to be able to do some things with email distribution lists as well. It can do that, but there were a few things that were limiting. It was difficult to get it set up, particularly with Azure in the cloud. I'd like that to be a little bit smoother. I'd like to see a better user interface. It works, but it is clunky. There should be better import and export of LDAP queries and better management tools. We've got a ton of groups, and it does take quite a while to do nightly processing. This is something that definitely needs improvement.
Varun Mehra - PeerSpot reviewer
Collaboration Support Engineer at a retailer with 11-50 employees
Automation has transformed onboarding and access control and now streamlines daily governance
While One Identity Active Roles is a strong identity and access management solution overall, there are a few areas where it could improve. One challenge we experienced was the initial setup and configuration complexity. Deploying workflows, policies, and delegation models require careful planning and a good understanding of the Active Directory environment. For organizations without experienced administrators, the learning curve can feel quite steep in the beginning. The user interface could also be more modern and intuitive. Some administrative tasks require navigating through multiple menus and the overall experience could be simplified for faster day-to-day management. Another area for improvement is reporting and customization. While the auditing features are good, creating highly customized reports sometimes requires additional efforts or scripting knowledge. More built-in reporting templates and easier dashboard customization would be helpful. We have also noticed that troubleshooting workflows or synchronization issues can occasionally take time because the logs can be very detailed and technical. Better diagnostic tools and simpler error explanations would improve the operational experience. That said, once the platform is properly configured and maintained, it performs reliably and delivers strong automation, delegation, and governance capabilities. One additional area where One Identity Active Roles could improve is cloud integration and hybrid environment management. While it works well with Active Directory and the Microsoft environment, organizations moving heavily towards cloud-first infrastructure may want even deeper and more seamless integration with modern SaaS platforms and identity providers. Performance optimization in large environments could be improved. In very large enterprise deployments with complex workflows and multiple managed domains, some administrative actions and synchronization tasks can occasionally feel slower than expected. Another point is documentation and onboarding resources. The product is feature-rich, but some advanced configurations require going through extensive documentation. More practical examples, guided setup wizards, and easier to follow best practice guides would help new administrators adopt the platform faster. Overall, the core functionality is solid, and most of the pain points are related more to usability, complexity, and modernization rather than the reliability. One additional improvement I would mention is around integration flexibility with third-party ITSM and DevOps tools. While the platform integrates well within Microsoft-centric environments, broader out-of-the-box integration and simpler API workflows for non-Microsoft ecosystems would make deployment and automation easier for organizations using diverse infrastructure. Another area is upgrade and migration simplicity. In enterprise environments, version upgrades and environment migration sometimes require careful planning and testing. Streamlining that process with more automated compatibility checks and migration assistance would reduce operational overhead.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Imanami GroupID's UI is good."
"I have found the overall features to be useful."
"For each job code, we go through and determine the access they're supposed to have to the system, and based on that job code, we use the query tool so that anybody who is in this job code gets these groups added to them, or conversely, if they change job codes, it removes the ones that they shouldn't have and adds the one they should, which runs every night so that the next day everybody has the job codes they're supposed to have."
"I have found the overall features to be useful."
"For each job code, we go through and determine the access they're supposed to have to the system. Based on that job code, we use the query tool and say that anybody who is in this job code gets these groups added to them, or conversely, if they change job codes, it removes the ones that they shouldn't have and adds the one they should. That runs every night, and the next day, everybody has the job codes they're supposed to have."
"One Identity Active Roles has helped us improve security with smooth processes."
"Active Roles provided us to do all these operations automatically and reduced our workload very significantly."
"One Identity Active Roles has significantly reduced both the complexity and the workload for Active Directory administration in our environment."
"In comparison to native Active Directory tools, using Active Roles for delegation is so much better. It uses an access template and that makes it easy to see who can access what. In fact, you can do that for many objects as well."
"Having a tool to manage all changes to AD from a single pane of glass is awesome."
"We have seen a huge return on investment with One Identity Active Roles, with measurable reductions in provisioning and admin efforts by 40 to 60%, eliminating the need for thousands of additional staff and leading to approximately 75% ROI and cost reduction."
"I see a return on investment with One Identity Active Roles, specifically noting a 40% to 60% drop in time spent on provisioning, access reviews, and audit-related tasks."
"Since we have implemented One Identity Active Roles, we have seen significant improvements, with faster user management, better control over Active Directory, reduced errors, and improved security."
 

Cons

"The product's implementation is complex. It should also work on GPO."
"The mobile application needs to be improved and there should be chatbox features to allow users to easily reach out for assistance."
"The mobile application needs to be improved and there should be chatbox features to allow users to easily reach out for assistance."
"I'd like to see a better user interface. It works, but it is clunky. There should be better import and export of LDAP queries and better management tools."
"I'd like to see a better user interface. It works, but it is clunky."
"I've had a difficult time getting it to cooperate with Azure in the cloud and, while the support staff are very good and very knowledgeable, what they assist with just on a call doesn't go deep enough to help with a number of issues. The answer that comes back is that we'd have to start an engagement with Professional Services, which is fine but that takes time to schedule and it takes budget."
"One area is the user interface and administrative experience. While the platform is feature-rich, some workflows and configuration screens can feel complex for new administrators, especially in large enterprise environments with extensive policy configurations."
"One area where One Identity Active Roles can be improved is in the user interface. It can feel outdated and not very intuitive for new users."
"The ability to send logs to a SIEM would be very beneficial."
"We don't get a lot of communication from the One Identity side. I don't know who our account representative is, and that is kind of not good since we have had some turnover there."
"The third area for improvement, which is the weakest portion of ARS, is the workflow engine, which was introduced a few years ago. It's slow and not very intuitive to use, so I would like to see improvement there."
"One specific issue I have encountered recently is that the interface and workflow configuration can become complex and less intuitive, especially when managing multiple approval steps or modifying existing workflows, which sometimes requires deeper scripting or backend adjustments, so more user-friendly and visual workflow design would be a great improvement."
"One area where One Identity Active Roles can be improved is in simplifying its initial setup and configuration process, as deployment can be complex and time-consuming for a new user or organization without deep Active Directory expertise, which can slow down adoption and require additional training or support."
 

Pricing and Cost Advice

"It is on a yearly basis, and it has the product license fee and the support for it. So, there is the licensing fee, and there is the annual maintenance that includes the support. I don't remember exactly, but we're probably paying somewhere in the neighborhood of $20,000 to $30,000 for it per year. We've got a pretty large implementation of it, and for the amount that we do, it is a pretty good deal. I would rate it a four out of five in terms of pricing."
"The price of the solution is reasonable."
"The pricing is high. I have not been involved with the renewal or cost aspect, but I know it is not cheap by any means. However, it is very useful for our environment."
"The price is reasonable. It costs us about 1 million Danish kroner annually, and we also spend about half as much on consultants."
"It's expensive."
"The pricing for Active Roles is expensive but not as expensive as other solutions like Okta."
"The licensing model is a simple user-based model, not that much complicated."
"It's fairly priced."
"The pricing is on the higher end."
report
Use our free recommendation engine to learn which Active Directory Management solutions are best for your needs.
896,467 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
16%
Comms Service Provider
11%
Media Company
10%
Manufacturing Company
10%
Outsourcing Company
20%
Financial Services Firm
8%
Computer Software Company
8%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business89
Midsize Enterprise15
Large Enterprise40
 

Questions from the Community

Ask a question
Earn 20 points
What is your experience regarding pricing and costs for One Identity Active Roles?
My experience with pricing and licensing for One Identity Active Roles has been reasonable for an enterprise solution, but it does require proper planning. The initial setup can involve some cost i...
What needs improvement with One Identity Active Roles?
One Identity Active Roles is very useful, though there are a few areas where it could be improved, such as the user interface, policy creation, and reporting - it requires good knowledge of Active ...
What is your primary use case for One Identity Active Roles?
One Identity Active Roles is used primarily for managing Active Directory, including user provisioning and group management. When a new employee joins, I use One Identity Active Roles to automatica...
 

Also Known As

No data available
Quest Active Roles
 

Overview

 

Sample Customers

Grant Thornton LLP
City of Frankfurt, Moore Public Schools, George Washington University, Transavia Airlines, Howard County, MD. See all stories at OneIdentity.com/casestudies
Find out what your peers are saying about Imanami GroupID vs. One Identity Active Roles and other solutions. Updated: May 2026.
896,467 professionals have used our research since 2012.