No more typing reviews! Try our Samantha, our new voice AI agent.

Active Roles by One Identity vs Imanami GroupID comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jul 20, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Active Roles by One Identity
Ranking in User Provisioning Software
3rd
Ranking in Active Directory Management
1st
Average Rating
8.6
Reviews Sentiment
7.0
Number of Reviews
90
Ranking in other categories
Non-Human Identity Management (NHIM) (1st)
Imanami GroupID
Ranking in User Provisioning Software
17th
Ranking in Active Directory Management
16th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
3
Ranking in other categories
Identity and Access Management as a Service (IDaaS) (IAMaaS) (35th)
 

Mindshare comparison

As of July 2026, in the User Provisioning Software category, the mindshare of Active Roles by One Identity is 5.5%, down from 5.7% compared to the previous year. The mindshare of Imanami GroupID is 2.2%, up from 1.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
User Provisioning Software Mindshare Distribution
ProductMindshare (%)
One Identity Active Roles5.5%
Imanami GroupID2.2%
Other92.3%
User Provisioning Software
 

Featured Reviews

Varun Mehra - PeerSpot reviewer
collaboration support engineer at a retailer with 11-50 employees
Automation has transformed onboarding and access control and now streamlines daily governance
While One Identity Active Roles is a strong identity and access management solution overall, there are a few areas where it could improve. One challenge we experienced was the initial setup and configuration complexity. Deploying workflows, policies, and delegation models require careful planning and a good understanding of the Active Directory environment. For organizations without experienced administrators, the learning curve can feel quite steep in the beginning. The user interface could also be more modern and intuitive. Some administrative tasks require navigating through multiple menus and the overall experience could be simplified for faster day-to-day management. Another area for improvement is reporting and customization. While the auditing features are good, creating highly customized reports sometimes requires additional efforts or scripting knowledge. More built-in reporting templates and easier dashboard customization would be helpful. We have also noticed that troubleshooting workflows or synchronization issues can occasionally take time because the logs can be very detailed and technical. Better diagnostic tools and simpler error explanations would improve the operational experience. That said, once the platform is properly configured and maintained, it performs reliably and delivers strong automation, delegation, and governance capabilities. One additional area where One Identity Active Roles could improve is cloud integration and hybrid environment management. While it works well with Active Directory and the Microsoft environment, organizations moving heavily towards cloud-first infrastructure may want even deeper and more seamless integration with modern SaaS platforms and identity providers. Performance optimization in large environments could be improved. In very large enterprise deployments with complex workflows and multiple managed domains, some administrative actions and synchronization tasks can occasionally feel slower than expected. Another point is documentation and onboarding resources. The product is feature-rich, but some advanced configurations require going through extensive documentation. More practical examples, guided setup wizards, and easier to follow best practice guides would help new administrators adopt the platform faster. Overall, the core functionality is solid, and most of the pain points are related more to usability, complexity, and modernization rather than the reliability. One additional improvement I would mention is around integration flexibility with third-party ITSM and DevOps tools. While the platform integrates well within Microsoft-centric environments, broader out-of-the-box integration and simpler API workflows for non-Microsoft ecosystems would make deployment and automation easier for organizations using diverse infrastructure. Another area is upgrade and migration simplicity. In enterprise environments, version upgrades and environment migration sometimes require careful planning and testing. Streamlining that process with more automated compatibility checks and migration assistance would reduce operational overhead.
GV
Senior application Security Engineer at OneDigital Health and Benefits
Shows group analytics with good UI but needs improvement in GPO
The solution helps with group analytics.  Imanami GroupID's UI is good.  The product's implementation is complex. It should also work on GPO.  I have been using the solution for two years.  I rate the tool's stability an eight out of ten.  I rate Imanami GroupID's scalability an eight out of…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Overall, One Identity Active Roles has led to roughly a 40 to 60 percent reduction in AD-related service desk tickets and manual effort, with user onboarding tasks dropping from 15 to 20 minutes down to just a few minutes through automation and templates, adding up to dozens of IT hours saved every month and enabling the same team to manage more users without additional headcount."
"One Identity Active Roles provides strong automation capabilities that significantly reduce manual administrative work, with one especially helpful example being automated employee onboarding, where user accounts, group membership, permissions, and mailbox access are assigned automatically based on the employee's department or role."
"One Identity Active Roles is recommended as one of the best solutions currently in the market since it addresses many issues such as risks faced, inconsistent account setup, excessive admin privileges, lack of audit trails, and manual provisioning errors, all of which can be resolved with this solution."
"Another good feature is the change history. It's centralized in a single place and allows us to manage people's Active Directory domains from a central location. We can also drill down into individual objects in a troubleshooting or even an auditing situation. We can show evidence to auditors by drilling down into the individual history. It gives you all the history of what happened around an individual object. That is something that would be almost impossible to do in Active Directory, or extremely complicated."
"One Identity Active Roles has positively impacted our organization in both efficiency and security."
"Overall, One Identity Active Roles has been a reliable and valuable solution for improving Active Directory management, automation, and access control, helping reduce manual efforts, improve security, and streamline identity administration tasks across the organization."
"Overall, the return on investment comes from time savings, reduced errors, better resource utilization, and improved compliance, which together justify the investment."
"One Identity Active Roles has positively impacted our organization by improving AD administration efficiency, reducing manual errors, strengthening access governance, and helping to standardize user provisioning and compliance processes across the team."
"Imanami GroupID's UI is good."
"I have found the overall features to be useful."
"For each job code, we go through and determine the access they're supposed to have to the system, and based on that job code, we use the query tool so that anybody who is in this job code gets these groups added to them, or conversely, if they change job codes, it removes the ones that they shouldn't have and adds the one they should, which runs every night so that the next day everybody has the job codes they're supposed to have."
 

Cons

"One area where One Identity Active Roles could be improved is the user interface."
"Active Roles could add more options for web customization. Our requirements are exceedingly specific. We'd like to get the web interface down to just five buttons, but in some cases, we can only get to six. The web interface in the current version is less customizable than in the previous one."
"When doing a workflow, we would like a bit better feedback on the screen, as we're trying to get it to work. For example, there is a "Find" function that you need set up in a workflow to do some of the automation. It is not the easiest to get a result from those finds when you're trying to do that. In the MMC, they have a couple different types of workflows. In this particular case, we use their workflow functionality to find all of X within the environment, then if you find it, do X, Y, and Z. You can have multiple steps. When you do that search function within that workflow, it's really hard to find out, "Is my search working?" It would be nice if there was some feedback on the screen so you could see if your search is working properly within the workflow."
"Some advanced configuration and workflow can feel complex, so simplifying setup and management would improve the overall experience."
"Integration capabilities are somewhere in the middle; it is not easy to integrate, but it is not the hardest thing out there."
"It also has workflows and those are really powerful, but there are no built-in workflows."
"One specific issue I have encountered recently is that the interface and workflow configuration can become complex and less intuitive, especially when managing multiple approval steps or modifying existing workflows, which sometimes requires deeper scripting or backend adjustments, so more user-friendly and visual workflow design would be a great improvement."
"The user and group management in Azure AD could be better. Our focus these days is dynamic sharing with several on-prem Microsoft applications like SharePoint."
"The product's implementation is complex. It should also work on GPO."
"The mobile application needs to be improved and there should be chatbox features to allow users to easily reach out for assistance."
"I'd like to see a better user interface. It works, but it is clunky. There should be better import and export of LDAP queries and better management tools."
 

Pricing and Cost Advice

"The price is reasonable. It costs us about 1 million Danish kroner annually, and we also spend about half as much on consultants."
"The pricing for Active Roles is expensive but not as expensive as other solutions like Okta."
"The licensing model is a simple user-based model, not that much complicated."
"The pricing is on the higher end."
"It's fairly priced."
"It's expensive."
"The pricing is high. I have not been involved with the renewal or cost aspect, but I know it is not cheap by any means. However, it is very useful for our environment."
"It is on a yearly basis, and it has the product license fee and the support for it. So, there is the licensing fee, and there is the annual maintenance that includes the support. I don't remember exactly, but we're probably paying somewhere in the neighborhood of $20,000 to $30,000 for it per year. We've got a pretty large implementation of it, and for the amount that we do, it is a pretty good deal. I would rate it a four out of five in terms of pricing."
"The price of the solution is reasonable."
report
Use our free recommendation engine to learn which User Provisioning Software solutions are best for your needs.
905,526 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
24%
Financial Services Firm
8%
Computer Software Company
7%
Manufacturing Company
6%
Construction Company
18%
Manufacturing Company
12%
Comms Service Provider
10%
Media Company
10%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business96
Midsize Enterprise14
Large Enterprise44
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for One Identity Active Roles?
I wasn't directly involved in the pricing or licensing decisions, so I cannot comment on the exact cost. For our operations, I believe the investment was considered worthwhile because the product r...
What needs improvement with One Identity Active Roles?
I think One Identity Active Roles is a mature and reliable solution, but there are a few areas where it could be improved. The biggest one is the management interface, which feels dated compared to...
What is your primary use case for One Identity Active Roles?
Our main use case for One Identity Active Roles is to simplify and standardize Active Directory administration across multiple business units while reducing the amount of manual work handled by our...
Ask a question
Earn 20 points
 

Also Known As

Quest Active Roles
No data available
 

Overview

 

Sample Customers

City of Frankfurt, Moore Public Schools, George Washington University, Transavia Airlines, Howard County, MD. See all stories at OneIdentity.com/casestudies
Grant Thornton LLP
Find out what your peers are saying about Active Roles by One Identity vs. Imanami GroupID and other solutions. Updated: June 2026.
905,526 professionals have used our research since 2012.