Try our new research platform with insights from 80,000+ expert users

Palo Alto Networks Enterprise Data Loss Prevention vs Zscaler Zero Trust Exchange Platform comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Apr 20, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cloudflare
Sponsored
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
75
Ranking in other categories
CDN (1st), Distributed Denial-of-Service (DDoS) Protection (1st), Managed DNS (1st), Cloud Security Posture Management (CSPM) (14th)
Palo Alto Networks Enterpri...
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
7
Ranking in other categories
Data Loss Prevention (DLP) (14th)
Zscaler Zero Trust Exchange...
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
63
Ranking in other categories
Data Loss Prevention (DLP) (3rd), Cloud Access Security Brokers (CASB) (3rd), Application Control (3rd), ZTNA as a Service (1st), Secure Access Service Edge (SASE) (2nd), Cloud Security Posture Management (CSPM) (13th), Cloud-Native Application Protection Platforms (CNAPP) (10th), Remote Browser Isolation (RBI) (1st)
 

Featured Reviews

Spencer Malmad - PeerSpot reviewer
It's easy to set up because you point the DNS to it, and it's working in under 15 minutes
Cloudflare is highly scalable. Cloudflare is a system with a web portal that the end users like me see. It's a console where we can adjust the DNS, caching, and security features all in that console. Cloudflare owns thousands of servers across the world that cache the data. It's a powerful solution. When clients sign up for Cloudflare, they're getting this monster content delivery network, security, and a web application firewall in one. It's all rolled into one, and it's massive. Unless you have your website hosted on a massive hosting provider, there's no way that you can deliver the amount of data that Cloudflare can provide to the end users. If you have static content, there's no way that you can ever match what Cloudflare can do. Obviously, there are competitors to Cloudflare that do the same, but I'm saying other types of solutions. Let's say you go with F5. Great, that's on-prem. That's in your colo. You can't deliver as much data to the internet as you can with a CDN. You don't have to spend $20,000 on a net scaler, F5, or whatever Cisco's selling now. You don't have to buy that. You pay them $50 a month or $150 a month. It's totally worth it because even in five years, you'll never get the performance value, not just the actual ROI. You have to consider how much throughput you can get with Cloudflare.
Kunal Chopra - PeerSpot reviewer
Helps to control information flow in and out of networks but needs improvement on stability
Our clients primarily deploy Palo Alto Networks Enterprise DLP to control the flow of information in and out of their networks. The main use cases include monitoring and managing sensitive data such as credit card information and personally identifiable information.  The solution needs improvement…
Sumit Bhanwala - PeerSpot reviewer
Cloud-based platform simplifies device and data center management
I find it to be good. The solution is cloud-based with the latest inspection engines, which I find to be amazing. We are less dependent on data centers and device management, which reduces our efforts significantly. It improves our device management, data center management, and updating devices. We need fewer engineers for this management, and it reduces time and efforts for data center management, device upgrades, and IT support.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Cloudflare offers CDN and DDoS protection. We have the front end, API, and database in how you structure applications."
"The most valuable feature is its usability."
"The DDoS protection is the most valuable aspect of the solution."
"I like Cloudflare's application gateway and DDoS protection."
"The most valuable feature of the solution is external DNS. It is also very secure. They have their own main server and once you configure it, the product takes care of everything. There are no issues in resolving IPs and low latency is also present."
"Cloudflare is a security SaaS provider that provides security and protects us from any application layer attack."
"We're using dynamic components to build flexible pages to create and manage Git merge requests for code and reviews."
"The technical support is good."
"The setup is very easy as we just need to switch on and switch off."
"Our clients primarily deploy Palo Alto Networks Enterprise DLP to control the flow of information in and out of their networks. The main use cases include monitoring and managing sensitive data such as credit card information and personally identifiable information."
"The security aspect in finance is crucial for controlling from a DLP perspective and ensuring protection."
"The most valuable feature of Palo Alto Networks Enterprise Data Loss Prevention is its comprehensive end-to-end solution in Cloud Delivery Security Services, which includes URL, data loss prevention, and advanced threat prevention as features that can be enabled just by clicking a checkbox."
"The security aspect in finance is crucial for controlling from a DLP perspective and ensuring protection."
"The primary feature is managing firewalls through Panorama, especially when handling multiple firewalls across different sites like headquarters and remote sites."
"Another important feature is that the solution doesn't require any additional infrastructure to implement. It's a software license that is compatible with our existing hardware. We were able to install and configure the product seamlessly and effortlessly."
"It is a stable solution with good support."
"The product’s most valuable features are inbound and outbound scanning and API control."
"The most valuable aspect of Zscaler Cloud DLP is its automatic DLP feature."
"The user interface of Zscaler Private Access is excellent. With proper knowledge and expertise, one can efficiently handle intricate enterprise environments without feeling overwhelmed. This leads to exceptional productivity for managed service providers. The user experience is remarkably streamlined, enabling the management of even the most complex enterprise setups without any excessive complications."
"The scalability is pretty good."
"We don't need to connect anymore. It is automatically connected when you log on in Windows."
"The most valuable features of Zscaler Private Access are its ability to integrate with multiple IDPs and application segmentation."
"It is easy to use."
"The most valuable feature is its ability to establish connectivity for remote users and remote endpoints. It offers a high level of granularity compared to typical VPNs, which also encapsulate a lot of I/O."
 

Cons

"The product support needs to be accessible from more places, a wider area of coverage."
"Support response time could be improved."
"An integrated SSO feature would be useful for Cloudflare DNS."
"There are some issues with the CDN services."
"The product needs to improve its automation."
"Areas like how assessment, discovery, and payload are dealt with and how it all comes into your organization can be considered when trying to make suggestions to Cloudflare for improvements."
"We have noticed multiple instances where Cloudflare falsely indicates that our servers are down, even when there is no actual load on them. This makes it challenging for us to identify the exact issue."
"I think the APIs are a little bit hard for us to work with. The APIs could be more open so that we could integrate better with our SolarWinds or our monitoring solution."
"The solution needs improvement in stability. There has been feedback regarding the accuracy of file categorization."
"There are mostly performance issues."
"You need to have an external solution to backup everything. For example, you need to have Syslog installed on your server as well so that you can back it up to another place."
"Its scalability is not on par with the features of others."
"The product is still overly complicated compared to other vendors such as Check Point, which could be improved."
"Pricing is expensive."
"The configuration for Palo Alto Networks firewalls requires specifying many details, such as protocols and services."
"There is room for improvement in the documentation around the maintenance of the product, how the automatic updates work, and pushing out new policies. A little more detail and context in that area would be helpful."
"The only issue with Zscaler Cloud DLP is that it only gives you DLP protection from web traffic, which is flowing out, while a full-blown DLP solution such as Forcepoint or Symantec gives you DLP coverage for multiple channels. Zscaler Cloud DLP doesn't give you coverage for email, fax, and USB channels, and this is the only challenge or room for improvement in the solution. It's just an extension on top of what you're buying on the proxy, so it's just an added layer, and it doesn't cover DLP on a very broad level. I'm unsure if Zcaler is in the business of competing with a full-blown DLP solution, and if there's a plan to expand the features of Zscaler Cloud DLP beyond the web channel because you'll have to deploy a full-blown agent for it. I'm unsure if this is on the cards because the solution is just an added layer that you get with your proxy. I've asked the Zcaler team whether there's a plan to go full DLP in the future, but I didn't get a positive response. There isn't any feature I'd like added to Zscaler Cloud DLP currently, because anything you could think of that should be in cloud or SaaS solutions is already there, except for machine learning, as it's the only functionality that seems to be lacking in the solution. Machine learning is an additional policy available in other DLP solutions in the market, but my team didn't find it in Zscaler Cloud DLP."
"The granularity in blocking is not sufficient, as new domains are automatically blocked for 30 days without further information."
"The menu for the ZIA portal could be organized a little bit differently. The most-used modules should be at the top of the menus, not somewhere near the bottom, some of them are not organized well in my opinion."
"The interface needs a bit of work."
"While Zscaler supports client-initiated connections, it does not support server-initiated connections. This is a feature that Zscaler may consider adding in the future."
"There is improvement in enhancing proper manageability, policies, and logs. So, log management could be improved."
"On the improvement side, when we bypass certain internet traffic types, it's currently recommended to have a one-click option, but audio and video aren't always supported. Thus, we need to bypass that kind of traffic. So, it is an area of improvement."
"You won't find anything that can help you with the configuration part and other areas related to the product if you search for proper or exact details of Zscaler Cloud DLP online in very easy language."
 

Pricing and Cost Advice

"There are no additional costs beyond the standard licensing fees."
"A free version of the solution is available."
"The price is reasonable."
"I believe their performance has improved, but I'd like to refrain from discussing the pricing aspect related to the cloud. The pricing, in my opinion, could be simplified, and I think they should consider reevaluating the pricing for support, as it can be quite high. At times, this cost can make it challenging to choose CARFAGuard or opt for the support."
"For Cloudflare, I recommend it heavily for small businesses with revenue under a couple of million dollars. Onboarding is easy, and they even have a free plan. This makes it simple for businesses in the $100,000-$500,000 range to try it out and see its value, allowing them to scale up their infrastructure as needed."
"The cost primarily depends on the size of the organization."
"So far I use free tier and happy with it. You can subscribe to business package if needed."
"The tool is a premium product, so it is very expensive."
"It's expensive."
"Palo Alto Networks Enterprise Data Loss Prevention is expensive, and licensing costs are monthly."
"The pricing of the solution depends on the buyers. But, from my point of view, it is in line with the rest of the products and the price list of Palo Alto."
"The licensing model is very fair-minded and it's a good value. It scales well... Its licensing model is more streamlined when compared to other DLP solutions."
"In the long run, cloud services are not inherently costly."
"The pricing is expensive and on the higher end. Honestly, in my opinion, it is not worth the price."
"It is an auto-renewal subscription service."
"Zscaler DLP solution is expensive, with a fixed pricing structure that is billed annually and monthly. There are no additional costs for licenses."
"Zscaler Private Access can be an expensive solution, depending on the license type you will purchase."
"Zscaler CASB is an expensive solution."
"As per industry leads, Zscaler CASB is an expensive solution."
"The technical support is good."
report
Use our free recommendation engine to learn which Data Loss Prevention (DLP) solutions are best for your needs.
849,686 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
17%
Computer Software Company
14%
Comms Service Provider
9%
Financial Services Firm
8%
Manufacturing Company
13%
Computer Software Company
12%
Healthcare Company
11%
Financial Services Firm
10%
Computer Software Company
16%
Financial Services Firm
13%
Manufacturing Company
10%
Insurance Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Cloudflare. We are moving from Akamai prolexic to Cloudflare. Cloudflare anycast network outperforms Akamai static GR...
Which would you choose - Cloudflare DNS or Quad9?
Cloudflare DNS is a very fast, very reliable public DNS resolver. It is an enterprise-grade authoritative DNS service...
What do you like most about Cloudflare?
Cloudflare offers CDN and DDoS protection. We have the front end, API, and database in how you structure applications.
What do you like most about Palo Alto Networks Enterprise Data Loss Prevention?
Our clients primarily deploy Palo Alto Networks Enterprise DLP to control the flow of information in and out of their...
What is your experience regarding pricing and costs for Palo Alto Networks Enterprise Data Loss Prevention?
Palo Alto Networks' pricing can be complex. Their catalog is extensive. They have a licensing model based on credits ...
What needs improvement with Palo Alto Networks Enterprise Data Loss Prevention?
The product is still overly complicated compared to other vendors such as Check Point, which could be improved. Simpl...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What do you like most about Zscaler SASE?
The most valuable features of Zscaler Private Access are reliability, scalability, and availability.
What is your experience regarding pricing and costs for Zscaler SASE?
Zscaler SASE is quite expensive compared to other solutions. The price is not fixed and it does not include all of th...
 

Also Known As

Cloudflare DNS
No data available
Zscaler SASE, Zscaler DLP, Zscaler CASB, Zscaler CSPM, Zscaler Browser Isolation, Zscaler Posture Control
 

Overview

 

Sample Customers

Trusted by over 9,000,000 Internet Applications and APIs, including Nasdaq, Zendesk, Crunchbase, Steve Madden, OkCupid, Cisco, Quizlet, Discord and more.
Information Not Available
Siemens, AutoNation, GE, NOV
Find out what your peers are saying about Palo Alto Networks Enterprise Data Loss Prevention vs. Zscaler Zero Trust Exchange Platform and other solutions. Updated: April 2025.
849,686 professionals have used our research since 2012.