

Find out in this report how the two Cloud Access Security Brokers (CASB) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
There is a net positive return on investment
The ROI is often cited around 289% over the three years of typical enterprises.
I have found Zscaler Private Access (ZPA) to be very effective at providing operational flexibility during my organization's transition to cloud environments.
Since we have a very small team, the ROI is around 20% to 30%.
The product is reliable, making customer support less frequently needed.
I usually need to raise the alarm and contact a couple of people within Palo Alto Networks to just respond quicker, so technical support should be much better.
We rarely need to contact support due to having a strong internal team and a robust product.
The technical support for ZPA is excellent, rated ten out of ten.
We had regular calls, and the team was open and willing to assist us whenever required.
We lack specific root causes, and it's tough to relay information to users, considering multiple contributors such as phone numbers and internet service providers.
To scale, one would need to upgrade or acquire more hardware.
Prisma Access provides significant scalability, allowing integration of different systems.
Prisma Access by Palo Alto Networks is a cloud-based solution, and from my experience, there are no issues with scalability.
Zscaler ZPA has excellent scalability.
I rate the scalability of ZPA as ten out of ten because it's a cloud service and can scale as needed.
We need to deploy it and ensure it will be available in two different Availability Zones, but it's not something that can be done with automation, such as auto-scaling.
I think the stability of Prisma Access by Palo Alto Networks is excellent, and I would rate it ten out of ten.
Prisma Access by Palo Alto Networks works efficiently during peak usage times.
GlobalProtect is a satisfying solution, and the product is robust without major stability issues.
Even during peak usage or mass remote access events, performance remains consistent, which is critical for an enterprise environment handling business-critical applications.
The architecture uses a global mesh of service edges with built-in fault tolerance and redundancy, providing an always-on experience.
We implemented a resilient solution with load balance to ensure stability, which has proven effective thus far.
Hosting it in the cloud can mitigate these issues by allowing connection through the nearest Palo Alto or Prisma Cloud regional hub.
There is a lack of integration with third-party solutions like CrowdStrike or SentinelOne in Prisma Access by Palo Alto Networks.
Sometimes a third-party outage could impact the whole operability.
It complicates whitelisting, as we cannot determine which IP will be used, posing a challenge when needing to integrate with third parties.
I would appreciate seeing dynamic scaling implemented because it would be beneficial if an instance goes down to automatically start another one.
While Zscaler Private Access (ZPA) wants users to utilize their infrastructure for scale benefits, regulated environments such as government and investment banks need on-premises processing for regulations and low latency requirements.
The pricing is on the higher side, rating it around eight to nine out of ten.
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
Pricing for Prisma Access and Prisma SD WAN is high due to the need for different hardware flavors like IONs.
It is expensive.
Although the solution is costly, its features justify the price for securing the organization from various access types.
While it is a premium investment, the short payback period of about 11 months and consolidation of multiple point products make it very cost-effective in the long run.
These features are security-driven, providing robust protection against increasing cyber threats by integrating NG Firewalls, SD WAN, and CASB, all within a fully cloud-native solution.
GlobalProtect has been beneficial for its cloud security capabilities, which are vital as businesses seek hybrid options and need to support remote workers while addressing latency issues.
One of the most valuable features of Prisma Access by Palo Alto Networks is the ability to manage on-premise firewalls.
Zscaler pre-tests websites and authorizes safe access, giving us a layer of security that we rely on.
Zscaler Private Access (ZPA) is much more secure than VPN because users are only allowed to access specific applications rather than the whole network.
Zscaler has allowed an easy, secure way for us to access our internal resources from outside.
| Product | Mindshare (%) |
|---|---|
| Prisma Access by Palo Alto Networks | 12.6% |
| Zscaler Private Access (ZPA) | 2.0% |
| Other | 85.4% |


| Company Size | Count |
|---|---|
| Small Business | 26 |
| Midsize Enterprise | 20 |
| Large Enterprise | 27 |
| Company Size | Count |
|---|---|
| Small Business | 2 |
| Midsize Enterprise | 4 |
| Large Enterprise | 7 |
Prisma Access by Palo Alto Networks delivers robust security features including secure remote access across apps and traffic monitoring. It integrates smoothly with cloud environments to provide advanced threat protection and visibility into network traffic.
Prisma Access offers a comprehensive suite of security tools designed to protect cloud environments and remote workforces. With its focus on real-time risk identification and threat prevention, Prisma Access provides encrypted tunnels and centralized management for seamless connectivity and enhanced data security. Designed to scale across platforms like AWS, Azure, and GCP, it optimizes traffic and connectivity while offering extensive visibility into vulnerabilities. However, integration with third-party products, usability, and support services are areas for development, as users report interface challenges and desire improved scalability and geographic coverage, especially in regions like China and South America.
What are the key features of Prisma Access?Prisma Access is effectively used in industries requiring secure remote access and stringent data protection, such as finance and healthcare. Organizations leverage it to enforce Zero Trust policies, optimize network performance with SD-WAN, and ensure security compliance across multiple platforms.
Zscaler Private Access enhances security by enabling access to specific applications without exposing entire networks. It is designed for scalability and flexibility, making it particularly suitable for cloud transitions and remote work environments.
Zscaler Private Access offers a comprehensive solution for modern security needs by ensuring secure remote application access. This is achieved through its advanced features such as micro-segmentation and AI capabilities. Organizations can integrate ZPA with existing security infrastructure, providing seamless operation during cloud transitions. Users benefit from policy-based access management and dashboards that enhance visibility and control. However, ZPA faces some challenges, including bugs, configuration difficulties with identity providers, and a limited rule customization capacity. Delayed support responses and annual price increases are also concerns that need addressing.
What are the key features of Zscaler Private Access?Zscaler Private Access is widely adopted across industries transitioning from traditional VPNs to more secure remote access solutions. Companies leverage it for secure network communication, accessing cloud resources like AWS and Azure, and integrating with internal systems. Local, customer, and cloud networks extensively use ZPA for secure internet access and as a modern replacement for older proxy technologies.
We monitor all Cloud Access Security Brokers (CASB) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.