We performed a comparison between Netskope and Prisma SD-WAN based on real PeerSpot user reviews.
Find out in this report how the two Secure Access Service Edge (SASE) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The solution is stable."
"The protection offered by the product is the most valuable feature. It detects vulnerabilities or traps on our users' phones and then prompts them to clean up their devices. Tools we used previously would only discover, which required us to gather information on the backend, so Lookout is a welcome upgrade."
"On the outside, the main differentiation is because Lookout ingest. They have ingested basically all of the apps for the last ten years and all the versions of all the apps, and we have that in a corporate database that allows us to do very large-scale machine learning and analysis on that data set. That's not something that any of the competitors really have the capability to do because they don't have access to the data set. A lot of the apps you can no longer get them because that version of the app is five or six years old, and it just doesn't exist anywhere anymore, except within our infrastructure. So, the ability to have that very rich dataset and learn from that dataset is a real differentiator."
"The most valuable features are the antivirus as a whole, the anti-malware, and all of the protection features that scan our enterprise devices."
"In Azure, we have multiple subscriptions and with every subscription, we add some kind of instance ID. We can work with the instance ID so that we allow all of the instances containing nodules. Everything else, we block. This way, if you go to outlook.com and check your email, if you log in with your company account, the instance ID will show. The network will take action according to the instance ID and say, "You are using the enterprise email. I'll let you surf. I'll let you see your email." But when you try to log in with your own email address, like Hotmail or Gmail, the instance ID will be different. This way we are not completely blocking Outlook, but we are blocking people from accessing their Outlook. We are only allowing the enterprise-level emails, and we are not allowing user-based emails."
"The most useful feature of this solution is Cloud Control, which allows me to schedule cloud uploads."
"Netskope's control is user-friendly and comprehensible. It also helps in conveying information effectively as a company, making it crucial for customer satisfaction."
"It is a very scalable tool."
"The client size and architectural components in Netskope are far better than other solutions."
"Netskope has a diverse portfolio range, which includes cloud access security brokers, content filtering, behavior analytics, and security management."
"The product's analytics part is pretty fine."
"They are very good at CASB as compared to other players."
"Prisma supports all of the applications we're currently using."
"Prisma's analytics provide a lot of valuable data. I like the internet health chart that shows latency, dropped packets, MOS for data quality, etc. It also runs a continuous speed test in the background. I've used it multiple times to troubleshoot internet connections when the service provider has attempted to claim nothing is wrong with the circuit. It gives me data to send them showing we're not getting the speed we should, or there is constant packet loss."
"I like that the integration with Palo Alto is easy."
"If the MPLS goes down, there is a really smooth transition for a branch site to take traffic over the Internet. It will advertise the routes of that site in a jiffy."
"Prisma SD-WAN is intuitive. We have a better idea of the different tools we can use and jump between the menus quickly."
"From the main controller, we can administer the customer's devices, QoS, network, and traffic. We can monitor it and we can change and create policies as well as upgrade the software. We can totally control a customer's network from one site, the Prisma SD-WAN portal."
"I like the link monitoring and analytics. These are the features that set Prisma apart from other products. Prisma works well with large, complex networks. One of my clients is a top bank in the United States, and Prisma has performed well for that customer."
"When it comes to supporting large, complex, network architectures, it's a very simple architecture. The main component is the fabric. It's very easy to troubleshoot if there is an issue happening in the underlying network."
"From the analysis that we've done, they do seem to be maybe a step behind in trying to enter the market with a new solution. But when they do pick up, they do come out with some good products."
"The stability depends on the service from where you access it. Because sometimes, the place you are in, you have Gateway. You don't have Gateway. The gateway is overutilized. At the end, you need to go through their gateways. And this is the key point here. You have a tracking point. If it's not well orchestrated, and it scales up as you add more to the existing team, you will suffer"
"Lookout was moving into the SSE space. And so their work on SecureWeb Gateway and SD-WAN is still sort of evolving."
"We just submitted an enhancement request reflecting the main area we want to see improvement in; the APIs. Currently, we're able to build dashboards, but it's somewhat backward because we use our MDM API to create them. Lookout should provide API to customers so we can query our data and use it in our cloud, and this is the only outstanding area for improvement with the product right now."
"There could be better integration with other solutions."
"It needed some fine-tuning on core business sites that we used, which were sensitive to what we term a man-in-the-middle certificate by design. Some sites were not tolerant because they presented as potentially malicious. So, we just had to make some tweaks so that it would bypass or interpret it."
"They could improve their mobile agents as they have some limitations."
"Netskope needs to improve its stability."
"I would like to have an identity theft protection function."
"Deployment and policy tweaking were two areas where improvement needs to be made."
"Netskope CASB can improve by working more similarly to a VPN technology instead of a proxy. They then could have visibility on the endpoint device. Most clients have some tools where they check the endpoint health or other things, such as the security posture, or if they want to access the resources. For example, if they should have antivirus running, this kind of posture check should be available but it is missing."
"The dashboard performance could be much better and faster, but because it is a complicated product, it takes time for the dashboard to process."
"I'd like to see them move more towards CASB."
"There are two parallel things that we want Palo Alto to work on. First, customers want a unified appliance that does the work of all firewalls in addition to SD-WAN. Second, the cloud presence should be completely automated. If I purchase the SASE architecture, I shouldn't worry about deployments in Prisma Access or on Prisma SD-WAN. It should be deployed in one go."
"Customer support is our biggest pain point. The quality of support has gone down a little since we initially deployed this product. I don't know if this is due to turnover at Palo Alto or a lack of training. It is now taking one or two days to get an initial response that says, "Hey, we've looked into this, can you pull this data for us?" In the past, we'd immediately get a response."
"Prisma SD-WAN's technical support should be improved."
"Sometimes, during the product's initial setup phase, bypass pair or couple ports don't come up normally, and it requires an hour and a half to troubleshoot to reset the box from Prisma SD-WAN to factory default."
"We are incorporating their zone-based firewalls. Prisma SD-WAN has limited documentation on how it manipulates traffic, e.g., how it is interacting with TCP and UDP. We recently had some traffic that was black holing. We literally had to do packet captures to see that the new zone-based firewall, which runs on top of Prisma SD-WAN, was causing issues."
"The only con is the pricing because it's more premium."
"The tool needs to work on price and complexity."
Netskope is ranked 4th in Secure Access Service Edge (SASE) with 35 reviews while Prisma SD-WAN is ranked 10th in Secure Access Service Edge (SASE) with 11 reviews. Netskope is rated 8.4, while Prisma SD-WAN is rated 8.6. The top reviewer of Netskope writes "Network proxy that provides visibility during deployment and allows you to control PII". On the other hand, the top reviewer of Prisma SD-WAN writes "A stable tool that offers a good uptime and ensures a return on investment". Netskope is most compared with Zscaler Internet Access, Prisma Access by Palo Alto Networks, Microsoft Defender for Cloud Apps, Cisco Umbrella and Skyhigh Security, whereas Prisma SD-WAN is most compared with Prisma Access by Palo Alto Networks, Cisco SD-WAN, Meraki SD-WAN, Fortinet FortiGate and Juniper Session Smart Router. See our Netskope vs. Prisma SD-WAN report.
See our list of best Secure Access Service Edge (SASE) vendors.
We monitor all Secure Access Service Edge (SASE) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.