Try our new research platform with insights from 80,000+ expert users

Prisma Access by Palo Alto Networks vs Workspace ONE UEM comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jul 30, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
19
Ranking in other categories
Secure Web Gateways (SWG) (6th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), ZTNA as a Service (10th), Secure Access Service Edge (SASE) (9th)
Prisma Access by Palo Alto ...
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
63
Ranking in other categories
Secure Web Gateways (SWG) (4th), Cloud Access Security Brokers (CASB) (1st), Enterprise Infrastructure VPN (5th), ZTNA as a Service (2nd), Secure Access Service Edge (SASE) (3rd)
Workspace ONE UEM
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
101
Ranking in other categories
Remote Access (5th), Virtual Desktop Infrastructure (VDI) (7th), Enterprise Mobility Management (EMM) (3rd), Identity and Access Management as a Service (IDaaS) (IAMaaS) (11th), Unified Endpoint Management (UEM) (3rd)
 

Mindshare comparison

Secure Access Service Edge (SASE)
Unified Endpoint Management (UEM)
 

Featured Reviews

Matt Crockford - PeerSpot reviewer
It's easy to roll out, and their understanding of our business made it seamless
One aspect we value about iboss is its simplicity. Their customer service is brilliant, and they are super responsive and knowledgeable. It's easy to roll out, and their understanding of our business made it seamless. We were impressed by the solution's mental health function, which can detect if someone needs help. It scans what users are browsing and flags warning signs so we can check to see if they are okay. We've had to use it a couple of times. The user interface is highly intuitive. Our IT team picked it up with minimal training. It's arranged so that it's easy to find where things are. Another advantage is the single pane of glass console, which gives you visibility into what's happening. We're not fully there yet because we haven't implemented zero trust, but we're excited about the possibilities from the demos we've seen. We launched a POC of iboss' ChatGPT Risk Protection feature two weeks ago. AI is a great tool, but you need to be careful what you put into it. My biggest fear is employees inputting sensitive corporate information or customer PII data into one of these chatbots. I was impressed by our trial of the feature. It's exactly what we wanted. Now, when a user goes to ChatGPT, there's a banner warning them not to share information, and we can block conversations containing customer data like bank details and email addresses. I don't want to stop people from using it, but we need visibility. We've only tried it on a test group of 15 people. You can configure it to look for specific keywords or integrate it with your DLP policy if you have that configured
Amar-Patil - PeerSpot reviewer
Enables seamless policy management and supports secure remote work
Our primary use case for Prisma Access by Palo Alto Networks is to control the internet and serve as an internet proxy. Additionally, we use it for secure remote work One of the most valuable features of Prisma Access by Palo Alto Networks is the ability to manage on-premise firewalls. We can…
Emthias Abdul Salam - PeerSpot reviewer
Offers a valuable single sign-on feature and a user-friendly interface with outstanding scaling capabilities
The single sign-on feature, which integrates with the Identity Manager is one of the most vital features. The VMware Workspace ONE Tunnel is another crucial aspect of the solution. Authentication processes become seamless with the single sign-on feature of VMware Workspace ONE. Whether the application resides within the premises or outside, the users don't need to reenter the credentials, VMware Workspace ONE auto authenticates using scripts. The solution can also integrate the app catalog with the Intelligent Hub, which acts as the agent. Applications catalogs and similar aspects can be accessed through one single interface, whether it's from an Android, iOS, or Windows device. It's a very user-friendly tool in terms of accessibility.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Our primary use case for this product is DLP,"
"It was a very easy product to install. It can be deployed very fast."
"The solution has massively improved our security posture, giving us full visibility into what our staff does online."
"Granular setup, which was able to set different levels of filters using the OUs in the AD."
"iboss has significantly lowered the number of security incidents. It is crazy how much it blocks and how much it is aware of the outside danger."
"The iboss system is highly reliable. The false positive rates are small compared to some other systems we've experienced through other partner agencies who use competing solutions."
"I would rate the technical support of iboss a solid 10 without a shadow of a doubt."
"First of all, the security policies are essential. I do not have to rely solely on Active Directory for our users."
"It has predefined or preconfigured rules, which are getting periodically updated. They are providing continuous improvements and periodically updating all search queries that they are looking for. That is one thing that helps us to stay vigilant and focused. If we query our AWS account for any breaches or vulnerabilities with any of the cloud tests, and it alerts us based on these predefined rules. It also provides an option to configure our own rules, and based on these rules, it can query the cloud trail logs, pull the information, and trigger alerts in real-time. I haven't explored this feature much because there are multiple accounts, and we don't have enough time to explore this feature. It also provides multiple integrations. When vulnerabilities or breaches are happening, you should be aware of them immediately. It provides integration with tools such as Slack, PagerDuty so that you can get alerted as soon as the high severity stuff comes up. For example, you have a security group that has allowed public traffic on port 22. As TechOps, you should be aware of this immediately. You cannot scan each machine or look into all security groups to identify it. So, Prisma helps us and alerts us when this kind of high-priority stuff comes up. It has different statistics, analytics, and graphs for data. The description of alerts is also pretty good. They describe what are the possible causes for this and what are the solutions. From Prisma Cloud, you can directly go to the AWS account. When you click on an alert, a resource, or a resource ID, it takes you to the AWS console where you need to log in. If you are already logged in, it will take you to that instance directly, and you can fix the issue there. I have found this feature very useful."
"The initial setup is very straightforward."
"It is easy to use, easy to integrate, and is stable. It's scalable as well."
"Overall, the cost savings, ease of deployment, and better VPN user experience and performance are valuable."
"Prisma's most valuable feature would be its ability to identify bad or risky configurations."
"I think the stability of Prisma Access by Palo Alto Networks is excellent, and I would rate it ten out of ten."
"The Autonomous Digital Experience Management (ADEM) offered by Palo Alto is a good reporting tool. It gives insights into how things are going within the network. It takes all the data from the users' endpoints and does an analysis, and it suggests changes as well."
"The most valuable feature is the zero-trust part of this solution."
"We used to have a system before, Mac OS Open Directory server and this open directory became obsolete because Apple decided to stop the enterprise market, so there was no other alternative for us to use. We chose this to replace the open directory and we found that it has many more features than the previous solution. We totally rely on it right now to manage all the devices on campus."
"It seems highly stable and scalable."
"The most valuable feature is the interface with SCAP, which is the Security Content Automation Protocol."
"The single sign-on feature, which integrates with the Identity Manager is one of the most vital features."
"It helps the end users to work on the road without needing to set up all kinds of VPN connections"
"VMware Workspace ONE is a platform that's really good at monitoring and managing mobile endpoints. It can be set up quickly and implemented easily. Technical support for this solution has always been good."
"The feature that we find most valuable is the corporate email pushing."
"Workspace ONE adds a lot of value compared to Microsoft because Microsoft is a late entry into the market, and they're still developing their product from an end-user perspective. Workspace ONE has a slight edge because of AirWatch. VMware has developed its product over a longer period of time, so they have better integrations as a whole solution."
 

Cons

"Sometimes, obviously, there are bugs."
"Their on-premise hardware's network interface is capped at one gigabit, which is sort of a problem. If you stand a filter up where all traffic flows through that, according to them, in order to go above a gigabit, you have to have multiple devices, which in today's IT seems a little bit silly. They could easily put in an SFP port into their device that could accommodate 10 gigs or at least offer a box."
"Sometimes when you call in support, you get someone who is just following a sheet. It feels like a runaround. You feel that you are running into that support wall."
"File integrity monitoring would be very advantageous as an additional feature."
"I am currently doing a PoC of the zero trust aspect of it. Compared to other similar solutions, it is hard to get around each feature. It takes a while to get used to it."
"Our biggest problem with their service was it did not recognize the device and filtering did not always work correctly."
"Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern."
"Our biggest problem with their service was it did not recognize the device and filtering did not always work correctly."
"The cloud setup is straightforward, and the onboarding process is much better, but the on-premises initial setup is slightly complex."
"While Palo Alto has understood the essence of building capabilities around cloud technology and have come up with a CASB offering, that is a very new product. There are other companies that have better offerings for understanding cloud applications and have more graceful controls. That's something that Palo Alto needs to work on."
"My clients would like to see a more feature-rich product."
"They can add some new characteristics. For example, when an incident triggers, they can automatically send a template for a particular match that is related to the policy. We don't have that right now. It is something to improve. There could be more automation for certain actions. For example, for a particular group, it can send an administrator alert to their manager. It was one of the concerns of our customers."
"The initial support team is not very good. Most of the time, I have found that they are one to three years experienced only. They don't have network expertise. They know about Palo Alto products but don't know how to troubleshoot the issues. We have to guide them most of the time to troubleshoot correctly since their approach is not developed."
"Prisma Access by Palo Alto Networks should consolidate the portals into a single portal. It is slow and takes more than ten seconds to load a page."
"Lacks a hybrid model which has API plus in-line security."
"When it comes to integration mechanisms, Prisma SaaS does not support reverse proxy type of integrations."
"Windows 10 management is there, but VMware only recently developed that part, and it's not fully mature. Patch management and other integrations are there as well as the application-pushing part, command line, mandatory commands, etc. Some out-of-the-box solutions should be available to better integrate a broader range of applications and handle application push. That's the roadmap we should look at."
"Its performance is quite good on Apple phones or even mid-range phones. If you install an AirWatch on a phone that is not too powerful, you will have performance issues. That's only because the phone is not too powerful, and there is not enough memory, etc. They could do a lighter version for a less powerful phone. It would also be useful for very small companies that don't want to spend money on expensive phones. Having said that, I don't think that is their target market. If their target market is enterprise, all enterprises perhaps have an agreement with Google or Apple, and they would get a phone that has already been tested, and they know that AirWatch will work on that phone."
"The setup was very difficult. It was not as easy as I had expected."
"vIDM could be improved with the multi-tenant capabilities that VMware tends to offer—features like customization branding and the integration of the app catalog based on the branding. Since the integration has been at top-level OGs, you were not able to then do rebranding if you were required to use specific user groups to highlight specific applications. At the time, I was personally opening feature requests for these things. I haven't worked with the latest release, so I don't know if these features were already deployed or not."
"I prefer to work with Jamf Pro because it is more specific to working with the iPad features."
"The solution needs to adapt to the cloud based reality of the current world model. Some customers may have reluctance to this, but it is the next level for all of the big providers. Azure, AWS and Google are all on the forefront of cloud-based solutions."
"From an improvement perspective, there is a need for discounts to be offered by the solution since it is something that any organization can expect from the product."
"There are a lot of difficulties whenever people have a lot of configurations in it, basically related to security certificate configurations and integration with VMware Horizon."
 

Pricing and Cost Advice

"It is probably in line with other solutions, but I do not deal with the financial side."
"The overall pricing for iboss is very competitive and transparent."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It is expensive compared to one of its competitors."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is a little expensive. Because it is one of the best in the market, it is a little bit more expensive than other vendors."
"The initial prices of Prisma Access were okay. But as soon as you start deploying Palo Alto gear, the support prices and the recurring prices, which are the major operational costs, tend to increase over time."
"There's no reason not to buy the enterprise version that gives you unlimited PoPs, but you must understand the limitations you impose on yourself if you do that. If you go crazy, that allowlist will be too big for Kubernetes clusters."
"The licensing fees are paid on a yearly basis and for what we get, the price is good."
"They price their products using credit modules."
"The licensing model for this product is complicated and changes all the time, making it very hard for the user to comprehend the configuration."
"The pricing is very friendly. It's not confusing to figure out your workload and how much you'd be paying for the solution."
"This is not an expensive product and everything is included with one license."
"The tool is expensive."
"It's an expensive tool."
"In some cases, a customer may feel the solution is expensive."
"If you have a host of custom requirements (including licensing), make sure to set aside enough time for the initial setup because it can take up to a few weeks depending on how complex your environment is."
"The solution can be costly when the customer is dealing with multiple platforms. If a customer is only dealing with iOS, Windows, and Android then Intune is the better choice because there are free licenses."
"I think the pricing of the product needs advisement. It would be great to bundle the VM products together. I think the actual box itself should be included in the license. At present, it is not paired with the mobile device."
"In terms of pricing, this solution is definitely much more expensive compared to other solutions, like MobileIron or MaaS360 or any other product in the market. This solution is more expensive by 30 or 40 percent."
"It is quite expensive, but I think large companies have agreements with these organizations that provide remote monitoring for phones, and they get massive discounts. The public price does not reflect what they pay. You won't get the same pricing if you're buying for 10 employees versus 1,000 employees. On the public price, you get perhaps a 10% discount, but if you're buying 1,000, the discount could be really massive, especially if you signed a contract for a number of years."
report
Use our free recommendation engine to learn which Secure Access Service Edge (SASE) solutions are best for your needs.
860,632 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Financial Services Firm
11%
Manufacturing Company
9%
Government
6%
Computer Software Company
14%
Manufacturing Company
13%
Financial Services Firm
12%
Government
6%
Computer Software Company
17%
Financial Services Firm
10%
Manufacturing Company
7%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about iboss?
Content filtering is the most useful feature of iboss.
What needs improvement with iboss?
For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company Exxon...
What is your primary use case for iboss?
Previously when I used iboss, we did the POC for iboss for ExxonMobil. Four or five people wanted to move from our ol...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What do you like most about Prisma Access by Palo Alto Networks?
The most valuable features of the solution are in the areas of the secure remote access it provides while also being ...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
How does Microsoft Intune compare with VMware Workspace One?
Microsoft Intune is a great tool for managing a mobile device fleet while keeping access control. The solution makes ...
How does VMware Workspace One compare with VMware Horizon 7?
VMware Workspace One has a powerful set of helpful features. The solution offers very good documentation, the initial...
What do you like most about VMware Workspace ONE?
The platform provides a stable environment for operations and quickly creates new environments. Additionally, it offe...
 

Also Known As

iBoss Cloud Platform
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
VMware Workspace ONE, VMware AirWatch, Workspace ONE Assist, VMware Identity Manager, Workspace ONE Access, VMware Horizon Air
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Australian Sports Commission, Stockport NHS Foundation Trust, Lomond School, Merck, United Bank, Medical College of Wisconsin, Latymer Upper School, 2gether NHS Foundation Trust, Dowling Aaron Inc., Trillium Lakelands District School Board, Harrogate Grammar School, Duke University Football, Delta Air Lines, Adventist Health System, Giochi Preziosi, Cramlington Learning Village, Intermountain Healthcare, Safexpress, TAG Aviation
Find out what your peers are saying about Zscaler, Cisco, Palo Alto Networks and others in Secure Access Service Edge (SASE). Updated: June 2025.
860,632 professionals have used our research since 2012.