Try our new research platform with insights from 80,000+ expert users

One Identity Active Roles vs SailPoint Identity Security Cloud comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 6, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
5.9
One Identity Active Roles enhances security and efficiency, automating tasks and reducing IT workload, achieving up to 30% ROI.
Sentiment score
7.1
SailPoint Identity Security Cloud reduces costs, automates access, enhances productivity, and achieves ROI within 14 to 18 months.
One Identity Active Roles provides excellent reporting and auditing functionality, allowing administrators to track permissions, actions, and responsibilities effectively.
solution architect/ engineer at APEX.IT Sp. z o.o.
It has saved 90% of the time compared to before.
IAM Specialist
One Identity has a theme that they want the right people to have the right set of access, and this is what they are able to provide with their tool.
Assistant Manager- Pre-sales ( IT-Enterprise Vertical ) at a tech vendor with 201-500 employees
 

Customer Service

Sentiment score
7.4
One Identity Active Roles support is praised for efficiency and expertise, though some face delays and need professional services.
Sentiment score
5.3
SailPoint Identity Security Cloud offers praised support with weekend availability, though regional and language challenges may occur.
Everything is good, and I can give One Identity technical support a rating of ten.
Assistant Manager- Pre-sales ( IT-Enterprise Vertical ) at a tech vendor with 201-500 employees
One Identity's support is great.
Team Lead, Technical & Enterprise Directory Services Vita Program at AIS Network
I rate customer service and support as a seven because, although they are helpful when needed, there can be delays in responding to tickets and finding necessary fixes.
IAM Product owner at a hospitality company with 10,001+ employees
SailPoint's team consists of specialists who handle tickets without needing to depend on other teams.
Technical Support Analyst at CLSA
Sometimes, the support is slow, and they often suggest resorting to expert services.
Vice President Sales at a tech vendor with 1-10 employees
Technical support is very good.
Senior Manager Cybersecurity at LTI - Larsen & Toubro Infotech
 

Scalability Issues

Sentiment score
7.4
One Identity Active Roles offers scalability and flexibility, supporting up to 150,000 users and accommodating complex enterprise environments.
Sentiment score
7.1
SailPoint Identity Security Cloud is scalable, supporting millions of identities, though may require extra resources and faces Java memory challenges.
It is very beneficial for large and complex environments.
Team Lead, Technical & Enterprise Directory Services Vita Program at AIS Network
If you are a major enterprise customer, it is a matter of scaling out on resources with more memory, disk, and CPU power.
IAM Specialist
The solution is highly scalable, with a scalability rating of nine.
IAM Product owner at a hospitality company with 10,001+ employees
The solution scales well as long as we provide the necessary resources.
Vice President Sales at a tech vendor with 1-10 employees
The solution is scalable and can be upgraded to accommodate increased user counts.
Technical Project Manager & Senior Security Architect at Tech Mahindra Limited
SailPoint is scalable, though challenges exist in terms of workflow and user interface design.
Technical Support Analyst at CLSA
 

Stability Issues

Sentiment score
7.3
One Identity Active Roles is a stable, reliable tool with minor bugs, high ratings, and occasional performance issues.
Sentiment score
7.9
SailPoint Identity Security Cloud is stable, with high reliability ratings, minor issues, and seamless integration fostering user satisfaction.
There were no major problems with One Identity Active Roles.
solution architect/ engineer at APEX.IT Sp. z o.o.
Regarding stability, One Identity Active Roles is mostly stable.
Director, Identity & M365 Engineering at a healthcare company with 10,001+ employees
We haven't had any glitches.
IAM Specialist
IdentityIQ deserves a rating of 12 out of ten for stability.
Vice President Sales at a tech vendor with 1-10 employees
The version I use now is very stable, especially compared to previous versions like eight point zero and eight point one.
Specialist Consultant at a financial services firm with 10,001+ employees
 

Room For Improvement

One Identity Active Roles needs enhancements in its interface, customization, integration, multilingual support, and pricing to stay competitive.
SailPoint Identity Security Cloud is costly, complex, and lacks user-friendliness, necessitating better automation, support, customization, and integration.
A way to connect to various directories and integrate with cloud directories would be beneficial.
Team Lead, Technical & Enterprise Directory Services Vita Program at AIS Network
Enhancements to the console are also necessary because it is more confusing than the web interface.
System Administrator at a healthcare company with 501-1,000 employees
The user interface needs to be more modern and scalable.
IAM Specialist
SailPoint lacks some features like privileged account management and access management features found in products like Okta.
Technical Project Manager & Senior Security Architect at Tech Mahindra Limited
I find raising a ticket to be too complex, which could be improved for better user-friendliness.
Technical Support Analyst at CLSA
We have also put our enhancement request, and the SailPoint team has accepted that the feature is not available and plans to include it going forward.
Senior Manager Cybersecurity at LTI - Larsen & Toubro Infotech
 

Setup Cost

One Identity Active Roles is costly but valued for its functionality, ease of use, and flexible user-based licensing model.
SailPoint Identity Security Cloud is costly, with varying prices and separate fees, but offers discounts for long-term plans.
It is quite expensive, costing more than 50 euros per identity.
solution architect/ engineer at APEX.IT Sp. z o.o.
I think our total was in the seven-figure range for a couple of years of service.
Director, Identity & M365 Engineering at a healthcare company with 10,001+ employees
The pricing is high.
Team Lead, Technical & Enterprise Directory Services Vita Program at AIS Network
SailPoint is cheaper than ServiceNow, which is very expensive.
Technical Support Analyst at CLSA
The pricing of SailPoint could be better.
Vice President Sales at a tech vendor with 1-10 employees
The costs are slightly higher than SailPoint IQ due to included charges for maintenance.
Technical Project Manager & Senior Security Architect at Tech Mahindra Limited
 

Valuable Features

One Identity Active Roles enhances AD management with automation, security, and efficiency while offering a user-friendly interface and powerful features.
SailPoint Identity Security Cloud offers intuitive UI, fast deployment, extensive connectors, and strong compliance with AI-enhanced automated identity management.
It's improved our security posture. It has limited access to our crown jewels, where all our identities lie within Active Directory.
IAM Specialist
It helps in removing custom Active Directory delegation, which enhances security by eliminating unnecessary privileges, addressing identity-based breaches by reducing the number of Active Directory delegations.
Head of Global Digital Identity Services at a hospitality company with 10,001+ employees
Dynamic groups are also one of the best features, eliminating the need to add or manage members manually.
Technical Specialist at LSEG
The automation of provisioning and deprovisioning, managing contractors, temporary users, and the overall automation factor is fantastic.
Vice President Sales at a tech vendor with 1-10 employees
The solution can be customized to adapt the workflow to our industry, offering considerable flexibility.
Specialist Consultant at a financial services firm with 10,001+ employees
From a project management point of view, the tool supports audit success with features to segregate permanent and contractor employees, integrate with HR systems, and indicate other sources for contractors.
Senior Manager Cybersecurity at LTI - Larsen & Toubro Infotech
 

Categories and Ranking

One Identity Active Roles
Ranking in User Provisioning Software
5th
Average Rating
8.6
Reviews Sentiment
7.0
Number of Reviews
28
Ranking in other categories
Active Directory Management (1st), Non-Human Identity Management (NHIM) (4th)
SailPoint Identity Security...
Ranking in User Provisioning Software
2nd
Average Rating
8.2
Reviews Sentiment
6.7
Number of Reviews
72
Ranking in other categories
Identity Management (IM) (1st), Identity and Access Management as a Service (IDaaS) (IAMaaS) (2nd), SaaS Management Platforms (1st), Cloud Infrastructure Entitlement Management (CIEM) (1st), AI IT Support (2nd)
 

Mindshare comparison

As of January 2026, in the User Provisioning Software category, the mindshare of One Identity Active Roles is 5.6%, up from 4.5% compared to the previous year. The mindshare of SailPoint Identity Security Cloud is 25.8%, down from 32.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
User Provisioning Software Market Share Distribution
ProductMarket Share (%)
SailPoint Identity Security Cloud25.8%
One Identity Active Roles5.6%
Other68.6%
User Provisioning Software
 

Featured Reviews

reviewer2789802 - PeerSpot reviewer
Director, Identity & M365 Engineering at a healthcare company with 10,001+ employees
Granular delegated access has strengthened least privilege control across complex directories
One of the things I would like to see more robust is the change history. One Identity Active Roles can only monitor changes that happen in the console, and the logs don't go back longer than thirty days, maybe sixty days. The change history, when we've seen accounts get modified, we leverage a container domain that funnels accounts into our Active Directory console. I would like to see from an initial user provisioning perspective, for them to isolate the workflow and say that this came in on X date and account was created. If anyone were to modify that account from an external resource, I would like to be able to read that as well. One Identity Active Roles is strictly limited to the console. If someone makes a change, the history of those changes is not as long as I would prefer.
ND
Principle at a manufacturing company with 10,001+ employees
User access management excels but needs enhancements with integration capabilities
I was aware of that because I used to manage these solutions earlier on, but it was purchased by the Procurement team, so I was not involved in any of those.There are certain details I may not be able to disclose currently, but we can speak in general about a number of products and tools that are ongoing. I have not been using access management controls here, so I don't have the latest features or details or hands-on experience in that space. I cannot share all the details about the improvements in security operations since we were exploring some products, but I'm familiar with Saviynt as I was one of their partners for other solutions, and currently, I cannot disclose a lot of performance related to my current roles.
report
Use our free recommendation engine to learn which User Provisioning Software solutions are best for your needs.
879,443 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Healthcare Company
9%
Manufacturing Company
9%
Financial Services Firm
8%
Financial Services Firm
17%
Computer Software Company
11%
Manufacturing Company
10%
Healthcare Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise4
Large Enterprise19
By reviewers
Company SizeCount
Small Business21
Midsize Enterprise8
Large Enterprise42
 

Questions from the Community

What is your experience regarding pricing and costs for One Identity Active Roles?
The product is expensive, but if you want to save money, the delegation set-up process is quite easy. After setting up Active Roles once, defining the delegation model, it is very efficient, almost...
What needs improvement with One Identity Active Roles?
The interface appears outdated. Once logged in, everything inside remains unchanged from years ago. Additionally, when they release new features, they should provide training or webinars at least o...
What is your primary use case for One Identity Active Roles?
I use One Identity Active Roles primarily for identity management. We use it for managing multiple domains from a single interface, and the domains do not have trust between them. It has been used ...
How does Sailpoint IdentityIQ compare with CyberArk PAM?
We evaluated Sailpoint IdentityIQ before ultimately choosing CyberArk. Sailpoint Identity Platform is a solution to manage risks in cloud enterprise environments. It automates and streamlines the m...
What is your experience regarding pricing and costs for SailPoint IdentityIQ?
The product is expensive. People need to opt for a licensing plan for one year or three years.
What advice do you have for others considering SailPoint IdentityIQ?
You can use SailPoint Atlas to take identity security to the next level. In SailPoint IIQ, writing a custom connector using the open source framework is a good option.
 

Also Known As

Quest Active Roles
IdentityIQ, IdentityNow, Cloud Infrastructure Entitlement Management, Intello
 

Overview

 

Sample Customers

City of Frankfurt, Moore Public Schools, George Washington University, Transavia Airlines, Howard County, MD. See all stories at OneIdentity.com/casestudies
Adobe, AXA Technology Services, Cuna Mutual Group, Equifax, ING Direct, Orrstown Bank, Rockwell Automation, SallieMae, Spirit Aerosystems, TEL
Find out what your peers are saying about One Identity Active Roles vs. SailPoint Identity Security Cloud and other solutions. Updated: December 2025.
879,443 professionals have used our research since 2012.