Prisma Access by Palo Alto Networks vs VMware Workspace ONE comparison

Cancel
You must select at least 2 products to compare!
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Prisma Access by Palo Alto Networks and VMware Workspace ONE based on real PeerSpot user reviews.

Find out what your peers are saying about Palo Alto Networks, Cisco, Netskope and others in Secure Access Service Edge (SASE).
To learn more, read our detailed Secure Access Service Edge (SASE) Report (Updated: November 2023).
745,341 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"The protection offered by the product is the most valuable feature. It detects vulnerabilities or traps on our users' phones and then prompts them to clean up their devices. Tools we used previously would only discover, which required us to gather information on the backend, so Lookout is a welcome upgrade.""The solution is stable.""The most valuable features are the antivirus as a whole, the anti-malware, and all of the protection features that scan our enterprise devices.""On the outside, the main differentiation is because Lookout ingest. They have ingested basically all of the apps for the last ten years and all the versions of all the apps, and we have that in a corporate database that allows us to do very large-scale machine learning and analysis on that data set. That's not something that any of the competitors really have the capability to do because they don't have access to the data set. A lot of the apps you can no longer get them because that version of the app is five or six years old, and it just doesn't exist anywhere anymore, except within our infrastructure. So, the ability to have that very rich dataset and learn from that dataset is a real differentiator."

More Lookout Pros →

"You have the ability to create your own expressions for your data. Palo Alto understands that DLP is not the same for all consumers. You might have a particular need to fulfill, and they give you the opportunity to create a custom expression to match the specific format that you have. For a confidential file property that you have in your files, you can add a metadata field. It gives you that opportunity to create that.""The Autonomous Digital Experience Management (ADEM) offered by Palo Alto is a good reporting tool. It gives insights into how things are going within the network. It takes all the data from the users' endpoints and does an analysis, and it suggests changes as well.""The most valuable feature is the ability to change the gateway. For example, if there's a problem with a specific region or vendor, we can make modifications. The solution is scalable, and there are different gateways that can be created depending on the demand.""The most valuable feature of Prisma Cloud-native, in my opinion, is that it assists in identifying, analyzing, and remediating vulnerabilities.""Panorama provides centralized management capabilities for all our firewalls and locations so that we can manage different data centers through a single device, a very valuable feature. We don't have to log into various devices to oversee them individually.""A feature I've found very helpful is run time security because most of the products on the market will look at security during the build time, and they don't really look at what happens once you're going into production.""Palo Alto Firewall is one of the best firewalls in the world.""Its frontend is user-friendly. It is easy to use for us."

More Prisma Access by Palo Alto Networks Pros →

"The most valuable feature of VMware Workspace ONE is it provides the ability to find out the location of devices and manage end-point solutions when they are deployed, and keep them secure.""The most valuable features are the ones that control the leaking.""You can upgrade and migrate the existing group policies that we use for VMware Workspace ONE for the active directory. We can push the policies and group policies. We can migrate it and manage it from VMware Workspace ONE.""The bigger vendors like VMware, Insight, and MobileIron can assign engineers to customers. You can work with them to develop the right competency to use the product.""It is a stable solution. I would rate the stability a ten out of ten.""We recently integrated Workspace ONE with our intelligence report, and this is a great tool from a reporting point of view. In our daily business, we get several requests from businesses to provide an Adobe request for monitoring, whether it is for Android or iOS devices. The main benefit of this tool is that we can exclude the report for applications.""Good device management and good integration with third parties.""It was easy to use."

More VMware Workspace ONE Pros →

Cons
"Lookout was moving into the SSE space. And so their work on SecureWeb Gateway and SD-WAN is still sort of evolving.""From the analysis that we've done, they do seem to be maybe a step behind in trying to enter the market with a new solution. But when they do pick up, they do come out with some good products.""We just submitted an enhancement request reflecting the main area we want to see improvement in; the APIs. Currently, we're able to build dashboards, but it's somewhat backward because we use our MDM API to create them. Lookout should provide API to customers so we can query our data and use it in our cloud, and this is the only outstanding area for improvement with the product right now.""The stability depends on the service from where you access it. Because sometimes, the place you are in, you have Gateway. You don't have Gateway. The gateway is overutilized. At the end, you need to go through their gateways. And this is the key point here. You have a tracking point. If it's not well orchestrated, and it scales up as you add more to the existing team, you will suffer"

More Lookout Cons →

"The licensing model isn't flexible enough. It's an all-or-nothing model. Other providers in the market allow you to buy modules or add-ons separately. With Prisma Access, you have to purchase the same module for all users.""The documentation is generally good, but they could provide a more detailed description of all the configuration steps. I have to search for information or call support. Palo Alto could add more knowledge base articles about configuration with screenshots and walkthroughs. That would be helpful. When configuring a product, you want to see examples of how it is done.""I would like the solution to support a different type of authentication. We can't configure a secondary method for our portal.""While Palo Alto has understood the essence of building capabilities around cloud technology and have come up with a CASB offering, that is a very new product. There are other companies that have better offerings for understanding cloud applications and have more graceful controls. That's something that Palo Alto needs to work on.""The frequency of updates could be reduced.""Palo Alto needs to improve the GlobalProtect agent to work as a secure web gateway agent, not only as a VPN agent because some companies would want only a secure gateway. They wouldn't want a full VPN. So, Palo Alto has to make the VPN agent work as a secure web gateway agent for those customers who want only the secure web gateway solution.""They can add some new characteristics. For example, when an incident triggers, they can automatically send a template for a particular match that is related to the policy. We don't have that right now. It is something to improve. There could be more automation for certain actions. For example, for a particular group, it can send an administrator alert to their manager. It was one of the concerns of our customers.""It applies commits to the firewalls slowly. There isn't an API you can use for anything. We've previously had trouble with the egress IP addresses though we expressed to engineering that those mustn't change. They changed several times without warning, causing a lot of headaches."

More Prisma Access by Palo Alto Networks Cons →

"One thing VMware needs to improve is compatibility with different operating systems.""There are some bugs that our team needs to work around. It required some API integration required because visitor integration was not there. For example, we are currently working on a tunnel issue, and VMware doesn't have this solution.""Pricing is a limitation. I think it's on the higher side, so if it were cheaper, it would benefit more organizations.""There could be ease of integration within the environment. I didn't have any issues when using it, but the integration part was a bit difficult for the other team.""They need a more flexible pricing model.""Sometimes, we have challenges with remote patching and remote version upgrades.""Lacks a modern enterprise mobility management platform.""The integration on the application side could improve."

More VMware Workspace ONE Cons →

Pricing and Cost Advice
  • "The pricing is fair; it's comparable to our previous solution, and we carried out multiple POCs and POVs (proof of value). The product is worth the money we pay for it."
  • "Lookout is definitely on the lower end when it comes to price point and that seems to be the only differentiator. The technology is in place in this space and it's really about who is coming in at the better price point now."
  • "In terms of feature performance versus cost, they're a good value."
  • "The licensing costs are good. Prisma has much more options and support for security, but it has a higher cost. For example, Lookout costs 2/3rd of Prisma's licensing price."
  • More Lookout Pricing and Cost Advice →

  • "The initial prices of Prisma Access were okay. But as soon as you start deploying Palo Alto gear, the support prices and the recurring prices, which are the major operational costs, tend to increase over time."
  • "Based on what I have heard from others, it is a pricey solution as compared to its peers, but I am not sure. However, considering the features that it offers, it is a break-even point. You get whatever they are promising."
  • "The pricing can be difficult because it came to us with another agreement, but it can be negotiated. I highly recommend people to compare this product's performance and pricing against BetterCloud, because I feel BetterCloud is better than Prisma SaaS if they're starting from scratch."
  • "It is pretty expensive. We have to balance the cost of some features. They need to work on some of the services and products, price-wise."
  • "The licensing model for this product is complicated and changes all the time, making it very hard for the user to comprehend the configuration."
  • "They price their products using credit modules."
  • "I would advise choosing your options according to your company's needs. Just go for what you want and do not pay for anything extra in terms of licensing. You need to determine how much bandwidth is required in your company network, and according to that, you should pay for the license. The mobile user license is based on the number of users who are going to use the VPN solution. You need to determine how many mobile users you are going to have in your network, and you should pay according to that. There are no other costs in addition to licensing, but if you go for the consultant services of Palo Alto networks to deliver the solution for you, then you need to pay something extra. That is not a part of licensing."
  • "The pricing is very friendly. It's not confusing to figure out your workload and how much you'd be paying for the solution."
  • More Prisma Access by Palo Alto Networks Pricing and Cost Advice →

  • "The price of VMware Workspace ONE is reasonable."
  • "There is a licensing fee for the users, and we pay a low amount for our support costs."
  • "VMware Workspace ONE can fit any organization because if you need more devices there are only additional fees."
  • "Workspace ONE is on the higher end of the pricing band when compared to other players in the market."
  • "VMware Workspace ONE is expensive."
  • "AirWatch would benefit from reducing the license pricing per user per month. Microsoft bundles everything, and then that bundling makes the product free for the customers."
  • "It's definitely a bit on the expensive side. It is more for smaller organizations and not large, massive enterprises. I am not sure about any additional costs. As far as we could tell, the billing was what the billing was."
  • "VMware Workspace ONE has a yearly license. You have to buy the license for one year at a time."
  • More VMware Workspace ONE Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Secure Access Service Edge (SASE) solutions are best for your needs.
    745,341 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:The licensing costs are good. Prisma has much more options and support for security, but it has a higher cost. For… more »
    Top Answer:The solution could improve identity integration as well. Zero trust, it's a good start as a zero-trust solution… more »
    Top Answer: We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure… more »
    Top Answer:Palo Alto Firewall is one of the best firewalls in the world.
    Top Answer:I'm still comparing, but the solution is quite expensive.
    Top Answer:Microsoft Intune is a great tool for managing a mobile device fleet while keeping access control. The solution makes it… more »
    Top Answer:VMware Workspace One has a powerful set of helpful features. The solution offers very good documentation, the initial… more »
    Top Answer:Workspace ONE has something like an orchestrator model that allows me to configure a set of steps to onboard new PCs… more »
    Comparisons
    Also Known As
    CipherCloud
    Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
    VMware AirWatch
    Learn More
    Overview

    Lookout is a well-established and powerful secure web gateway (SWG) solution that protects more than 200 million users from threats that can result from the penetration of unsecured web traffic into their networks. Lookout is designed to enable organizations to work remotely while maintaining a tight blanket of security over their confidential business data. It provides administrators with security that extends from their endpoints to the cloud service that they are using to run their organization’s network. 

    Users of Lookout are able to proactively detect threats and keep themselves secure from a field of threats that constantly evolves. IT teams can protect their organizations without having to rely on any other security solutions. This singular solution can run on multiple kinds of mobile devices. The privacy of individuals is preserved while keeping compliance rules intact. Additionally, users gain access to a number of tools that enable them to prevent security breaches from taking place.

    Lookout Benefits

    Some of the ways that organizations can benefit by deploying Lookout include:

    • Ease of deployment. Lookout is a solution whose design makes it easy for users to deploy it. It provides users with simple, step-by-step instructions that remove the need for organizations to devote extensive amounts of time to make sure that it is properly set up. Anyone can quickly set up the solution without undergoing technical training. 
    • Built-in support. Users of the Lookout application have access to built-in demos that can teach them how to use various solution features. Instead of spending time trying to figure out the application, users can watch the demo that is most relevant to them and see for themselves how that particular feature is used.
    • Easy-to-use user interface. Lookout’s user interface is laid out in an intuitive way that makes it easy for administrators to navigate. This interface is present in both the mobile and desktop versions of this solution. 
    • Settings customization. Lookout has a built-in settings customization menu. This makes it possible for administrators to easily customize their settings so that they best conform to their needs. 

    Lookout Features

    • Activity monitoring and activity tracking. Lookout’s activity monitoring and activity tracking capabilities enable users to keep a close eye on the activities that are taking place in their networks. IT teams and administrators have the ability to watch their networks for any unusual activity. These features ensure that organizations can keep ahead of any potential threats. They provide the kinds of insights and warnings that make the jobs of those IT teams and administrators much easier and more streamlined. 
    • Encryption. Organizations that employ Lookout can encrypt their networks and keep crucial business data from being read by unauthorized parties. This feature keeps the secrets organizations are trying to keep out of the wrong hands.
    • Anti-virus tools. Lookout provides users with tools to block threats from harming their networks. These tools can successfully block 99.6 percent of threats without raising false alarms. 

    Prisma Access by Palo Alto Networks provides consistent security for all users and applications across your remote networks. Prisma Access grants users safe access to the cloud and data center applications and the internet as well. In addition, the solution combines all of your security and networking capabilities into a single cloud-delivered platform, enabling flexible hybrid workforces.

    Prisma Access can be managed two ways:

    1. Cloud Managed
    2. Panorama Managed

    Prisma Access delivers both networking and security services, including:

    • SD-WAN
    • VPN
    • Zero Trust network access (ZTNA)
    • Quality of service (QoS)
    • Clean Pipe
    • Firewall as a service (FWaaS)
    • DNS Security
    • Threat Prevention
    • Cloud secure web gateway (SWG)
    • Data loss prevention (DLP)
    • Cloud access security broker (CASB)

    Prisma Access by Palo Alto Networks Features

    Prisma Access by Palo Alto Networks has many valuable key features including: App-ID, User-ID, Device-ID, SSL Decryption, Dynamic User Group (DUG) Monitoring, AI/ML-Based Detection, IoT Security, Reporting, URL Filtering, Enterprise Data Loss Prevention (DLP), Digital Experience Monitoring (DEM)*, Logging, Policy Automation, Intrusion Prevention System (IPS), and many more.

    Prisma Access by Palo Alto Networks Benefits

    Some of the benefits of using Prisma Access by Palo Alto Networks include:

    • Security: Prisma Access gives you consistent security to protect against cyberattacks, with enforcement of policy at every location. By implementing Prisma Access, you also gain protection that works to prevent known and unknown malware, exploits, credential theft, command and control, and many other attack vectors across all ports and protocols.

    • Global connectivity: Prisma Access provides global coverage through use of its connectivity layer.

    • Scalability: With Prisma Access, scaling is automatically managed and is scalable, flexible, and agile.

    • Instant deployment: Deployment is fast, eliminating wasted time that may otherwise be associated with setting up a solution, operating it, or shipping hardware in order to get started.

    Reviews from Real Users

    Below are some reviews and helpful feedback written by Microsoft Azure Synapse Analytics

    users who are currently using the solution.

    PeerSpot user Partha D., Global Network Tech Lead at a computer software company, speaks about his experience using the product, saying, "It protects all app traffic so that users can gain access to all apps. Unlike other solutions that only work from ports 80 and 443, which are predominantly for web traffic, Prisma Access covers all protocols and works on all traffic patterns... The most sophisticated attacks can arise from sources that are not behind 80/443."

    Tejas J., a Sr. Cloud Security Architect at a computer software company, mentions that "it is geographically dispersed, and it sits on top of Google and AWS platforms. Therefore, you don't face the standard issues, such as latency or bandwidth issues, that you usually face in the case of on-prem data centers.

    Another PeerSpot reviewer, Max I., Associate Director at Cognizant, comments that "Security is absolutely spot-on, really top-notch. It's the result of all the components that come together, such as the HIP [Host Information Profile] and components like Forcepoint, providing end-user content inspection, and antivirus. It incorporates DLP features and that's fantastic because Prisma Access makes sure that all of the essential prerequisites are in place before a user can log in or can be tunneled into."

    VMware Workspace ONE is an intelligence-driven digital workspace platform that delivers any app on any device. It integrates access control, multi-platform endpoint management, and application management. With the VMware Workspace ONE platform, IT teams can deliver a digital workspace that includes the devices and apps of the company’s choice, but with security and control.

    VMware Workspace ONE is available:

    • As a cloud service
    • On-premises
    • Hybrid

    VMware Workspace ONE Key Features

    • Simple app authentication: VMware Workspace ONE allows end-users to have password-less single sign-on, giving them access to virtually any app (mobile apps, web apps, cloud apps, and Windows apps).

    • Unified Endpoint Management options: VMware Workspace ONE aims to support all devices, offering convenience, access, security, and management that will work for any business.

    • Conditional access: VMware Workspace ONE provides a powerful policy engine to help you make dynamic decisions regarding end-user access rights and to protect sensitive information.

    • Automated app management: With VMware Workspace ONE the application delivery process can be automated, which improves security and compliance. Software packages can be automatically installed, updated, and removed, and automated workflows can also be created.

    VMware Workspace ONE Benefits

    Some of the benefits of using VMware Workspace ONE include:

    • Less IT intervention necessary: Because VMware Workspace ONE has simple app authentication, end-users can help themselves by selecting the applications they need rather than having IT intervene.

    • Smoother employee onboarding: Transform employee onboarding by enabling self-service access to the apps your end-users need to complete their job duties.

    • Compliance: VMware Workspace ONE helps end-users reach compliance by using advanced device restrictions.

    • Real-time visibility: You can have real-time visibility with application, device, and console events that provide detailed information for system monitoring. You can also view logs in the console or export pre-defined reports.

    Workspace ONE Components

    • Workspace ONE Access
    • Workspace ONE UEM
    • VMware Workspace ONE® Intelligence
    • VMware Unified Access Gateway
    • Workspace ONE Intelligent Hub

    Reviews from Real Users

    Below is some feedback from our PeerSpot users who are currently using the solution:

    PeerSpot user Patrick B., Cybersecurity Architect at a tech services company, says, "Its UI is extremely easy to use whether you're an advanced user or a novice user. When I first opened it up and had to learn the product, I was easily a novice. By the end of the third month, I was digging into the backend of the system and using it as a highly advanced user to accomplish what I needed to accomplish, and I was able to do it through the UI mostly."

    Roshan T., Partner Manager North America at a tech company, mentions how satisfied he is with the product, saying, "You can put all your applications on a mobile device, be it a phone or tablet. It is secure and easy to use. Because it is centrally managed, you don't have to do any configuration on the phone. I just got the phone and connected to the central applications. I just downloaded one thing and everything got rolled out. Email, calendar, and other things were deployed centrally. If you don't have AirWatch, you have to configure your phone manually. For example, you need to deploy and configure your email manually and then synchronize everything. It is much simpler when a mobile device is centrally managed."

    Offer
    Learn more about Lookout
    Learn more about Prisma Access by Palo Alto Networks
    Learn more about VMware Workspace ONE
    Sample Customers
    Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
    Australian Sports Commission, Stockport NHS Foundation Trust, Lomond School, Merck, United Bank, Medical College of Wisconsin, Latymer Upper School, 2gether NHS Foundation Trust, Dowling Aaron Inc., Trillium Lakelands District School Board, Harrogate Grammar School, Duke University Football, Delta Air Lines, Adventist Health System, Giochi Preziosi, Cramlington Learning Village, Intermountain Healthcare, Safexpress, TAG Aviation
    Top Industries
    VISITORS READING REVIEWS
    Computer Software Company20%
    Financial Services Firm10%
    Manufacturing Company10%
    Government7%
    REVIEWERS
    Computer Software Company48%
    Manufacturing Company9%
    University4%
    Government4%
    VISITORS READING REVIEWS
    Computer Software Company15%
    Financial Services Firm11%
    Manufacturing Company10%
    Government6%
    REVIEWERS
    Computer Software Company20%
    Financial Services Firm18%
    Retailer8%
    Comms Service Provider8%
    VISITORS READING REVIEWS
    Computer Software Company15%
    Government9%
    Financial Services Firm9%
    Manufacturing Company7%
    Company Size
    VISITORS READING REVIEWS
    Small Business22%
    Midsize Enterprise16%
    Large Enterprise62%
    REVIEWERS
    Small Business28%
    Midsize Enterprise31%
    Large Enterprise41%
    VISITORS READING REVIEWS
    Small Business18%
    Midsize Enterprise14%
    Large Enterprise68%
    REVIEWERS
    Small Business22%
    Midsize Enterprise20%
    Large Enterprise57%
    VISITORS READING REVIEWS
    Small Business24%
    Midsize Enterprise14%
    Large Enterprise62%
    Buyer's Guide
    Secure Access Service Edge (SASE)
    November 2023
    Find out what your peers are saying about Palo Alto Networks, Cisco, Netskope and others in Secure Access Service Edge (SASE). Updated: November 2023.
    745,341 professionals have used our research since 2012.

    Prisma Access by Palo Alto Networks is ranked 1st in Secure Access Service Edge (SASE) with 27 reviews while VMware Workspace ONE is ranked 2nd in UEM (Unified Endpoint Management) with 32 reviews. Prisma Access by Palo Alto Networks is rated 8.2, while VMware Workspace ONE is rated 8.2. The top reviewer of Prisma Access by Palo Alto Networks writes "Makes us part of a bigger security ecosystem with updates taken care of for us, but pricing and support need work". On the other hand, the top reviewer of VMware Workspace ONE writes "Quick to set up and easy to implement platform for monitoring and managing mobile endpoints". Prisma Access by Palo Alto Networks is most compared with Netskope , Cisco Umbrella, Zscaler Private Access, Prisma SD-WAN and Microsoft Defender for Cloud Apps, whereas VMware Workspace ONE is most compared with Microsoft Intune, VMware Horizon, Jamf Pro, SOTI MobiControl and Citrix Workspace.

    We monitor all Secure Access Service Edge (SASE) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.