Try our new research platform with insights from 80,000+ expert users

Prisma Access by Palo Alto Networks vs Zscaler Private Access (ZPA) comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in Cloud Access Security Brokers (CASB)
7th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
19
Ranking in other categories
Secure Web Gateways (SWG) (5th), Internet Security (3rd), Web Content Filtering (1st), ZTNA as a Service (7th), Secure Access Service Edge (SASE) (8th)
Prisma Access by Palo Alto ...
Ranking in Cloud Access Security Brokers (CASB)
1st
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
66
Ranking in other categories
Secure Web Gateways (SWG) (4th), Enterprise Infrastructure VPN (5th), ZTNA as a Service (2nd), Secure Access Service Edge (SASE) (1st)
Zscaler Private Access (ZPA)
Ranking in Cloud Access Security Brokers (CASB)
8th
Average Rating
9.0
Reviews Sentiment
6.9
Number of Reviews
13
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of January 2026, in the Cloud Access Security Brokers (CASB) category, the mindshare of iboss is 2.5%, up from 1.7% compared to the previous year. The mindshare of Prisma Access by Palo Alto Networks is 14.7%, down from 18.7% compared to the previous year. The mindshare of Zscaler Private Access (ZPA) is 1.8%, up from 0.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Access Security Brokers (CASB) Market Share Distribution
ProductMarket Share (%)
Prisma Access by Palo Alto Networks14.7%
iboss2.5%
Zscaler Private Access (ZPA)1.8%
Other81.0%
Cloud Access Security Brokers (CASB)
 

Featured Reviews

reviewer2701851 - PeerSpot reviewer
Managing Director
Enhances web security with a single pane of glass and flexible deployment
I don't see any need for improvement; one of the really good things about iboss as a company is that they listen to customer feedback. I have suggested enhancements, and they are responsive, making changes for the better, and they do a lot of testing. To improve iboss, although we haven't used it, we considered the VPN solution that comes with the highest tier licensing, which includes DLP and various other add-ons. We prefer using another product which automatically logs you back onto your network when turning on your PC. With iboss, the connection is manual, which doesn't meet our needs. Additionally, sizing can be tricky because, although the initial recommendations may seem adequate, actual usage may require more gateways than anticipated.
IgorPinter - PeerSpot reviewer
Director at PULSEC
Zero-trust access has improved remote security and now simplifies cloud-based firewall management
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pretty much good. It is basically firewall as a service, so it performs well. I completed the integration without any issues. What Palo Alto Networks can do better for Prisma Access by Palo Alto Networks is probably to have the point of presence available in more locations. The point of presence from the Serbia region has the nearest POP in Frankfurt, which is an issue since it is your gateway—when you start browsing the internet, you go through a commercial connection in Germany. They definitely need to spread the service in other countries.
Martin Partridge - PeerSpot reviewer
Solutions Architect at Direct Line Group
User access is simplified and secured through central core functionalities
The simplicity and logical structure of Zscaler make it easy to use and administer. It allows grouping, enabling en masse access conveniently. Unlike the BlueCoat proxy, which was more prescriptive and individual-focused, Zscaler offers group access. Additionally, Zscaler's modern tools enhance the network architecture by passing everything through a central core of security, ensuring everything is secure before accessing the internet.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Our primary use case for this product is DLP,"
"Granular setup, which was able to set different levels of filters using the OUs in the AD."
"We were impressed by the solution's mental health function, which can detect if someone needs help. It scans what users are browsing and flags warning signs so we can check to see if they are okay. We've had to use it a couple of times."
"Content filtering is the most useful feature of iboss."
"iboss is pretty scalable. They provide good support. The case managers you work with to coordinate what you need are pretty good."
"iboss is easy to use despite its complexity. Multiple engineers manage it, but it's significantly more straightforward to administer than traditional VPNs and web proxies."
"It was a very easy product to install. It can be deployed very fast."
"Iboss is a solution that prevents advanced persistent threats, and has a zero tolerance for attacks."
"A feature I've found very helpful is run time security because most of the products on the market will look at security during the build time, and they don't really look at what happens once you're going into production."
"The solution is not very complex and is easy to manage for people who may or may not have knowledge about Palo Alto Networks."
"The most valuable feature of Prisma Access is its ability to provide enterprise-class security for both Internet and internal application access."
"GlobalProtect has been beneficial for its cloud security capabilities, which are vital as businesses seek hybrid options and need to support remote workers while addressing latency issues."
"Its hands-off security and the fact that we don't have to maintain it are the most valuable features."
"It supports auto-scaling for mobile users. It auto-scales depending on the mobile user traffic. For example, if 1,000 people are working from home today, and tomorrow, the number increases to 2,000, it is not going to be an issue."
"The solution improved the consistency of our security controls and the BCP. There has been a 20 percent reduction in TCO. Prisma Access also enabled us to deliver better applications by centralizing security management."
"Prisma Access gives us security from a single point. It controls mobile users and determines how secure their networks will be, including from where they will get internet access. We can optimize things and add security profiles centrally."
"Zscaler Private Access (ZPA) has significantly reduced our attack surface by making our internal apps invisible to the internet."
"Zscaler has allowed an easy, secure way for us to access our internal resources from outside."
"Overall, I would rate it a nine out of ten."
"I would assess the security level achieved with Zscaler Private Access (ZPA)'s Zero Trust architecture as inherent to the system."
"The scalability is amazing. Whenever we need to upgrade the users, it increases immediately."
"Zscaler Private Access (ZPA) is a mature, enterprise-grade Zero Trust solution that delivers security and operational benefits."
"Zscaler Private Access helps by resolving network choke issues, allowing application access from public networks without needing to integrate with internal networks."
"Zscaler Private Access (ZPA) is the most mature compared to other vendors in terms of features and stability."
 

Cons

"Its pricing could be better."
"Their on-premise hardware's network interface is capped at one gigabit, which is sort of a problem. If you stand a filter up where all traffic flows through that, according to them, in order to go above a gigabit, you have to have multiple devices, which in today's IT seems a little bit silly. They could easily put in an SFP port into their device that could accommodate 10 gigs or at least offer a box."
"One thing I would like to see differently with their Zero Trust platform is that some of the AI aspects related to high-risk activities have more false positives."
"Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern."
"SSL decryption: We had issues with learners using apps instead of using web browsers. This type of encryption is tough for any appliance in a BYOD environment."
"Our iboss subscription access should be more secure with an OTP or VPN etc. It is easy to gain access if, for example, hackers obtain my username and password."
"Fold that in with the risk intelligence they're getting from all of the different subscriptions they are a part of. Now, these security companies subscribe to things like emerging threats, databases, etc. You can fold all this intelligence to decide what's happening on an endpoint. I would love to see them start moving into that space. That would compete directly with Microsoft. Maybe that's why they haven't. Having that ability native within the solution would be great. The other area in which I would love to see improvement is more detailed descriptions of why they block websites."
"For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company ExxonMobil."
"They could add more flexibility and improve product performance."
"The product's price is an area of concern where improvements are required. The solution's price should be lowered."
"If you compare Prisma SaaS against other products, such as Cloud Log, it's a little bit tricky to understand, but it offers different functionality that other products don't have. From a user usability point of view, you need some training for this product, as an admin, you need a couple of demos."
"The price can be reduced to make it more competitive."
"The solution’s stability could be improved."
"The tools' scalability is subject to some limitations when done on-premise due to the need for additional licenses. However, in other scenarios, increasing scalability involves expanding infrastructure to accommodate more third-party VPN access. It is scalable as long as you pay the money. Also, it needs to improve security."
"When it comes to the VPN, it uses the global protect VPN functionality to connect remotely, but it has a feature limitation for assigning multiple IP sub-links to different user groups. It would be much better if we are able to assign the current IP blocks for the sub-links based on the user groups."
"Palo Alto Prisma 10 came out over a year ago. Palo Alto added this identity management feature. The legacy way Palo Alto selected which user is sitting on an IP address it passes through has been clunky."
"The price is a concern as it increases every year and becomes more expensive, driving customers and other vendors to look for alternatives."
"I am not happy with the technical support from Zscaler Private Access (ZPA), particularly in India, where reachability is an issue with salespersons."
"Customer service and support are rated seven or eight out of ten, needing improvement in quality and response time."
"Zscaler Private Access (ZPA) could be improved by making troubleshooting for specific mobile devices such as iPhones more intuitive, as identifying the root cause for mobile connectivity issues can sometimes be complex."
"Sometimes connection errors occur when users are unable to connect to the particular cloud."
"The lack of control over the 700+ external IPs through which traffic exits Zscaler is problematic."
"One area for improvement is setting posture profiles for vendor machines."
"Zscaler Private Access (ZPA) can be improved by expanding integrations."
 

Pricing and Cost Advice

"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It is probably in line with other solutions, but I do not deal with the financial side."
"The overall pricing for iboss is very competitive and transparent."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"It is expensive compared to one of its competitors."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"I would advise choosing your options according to your company's needs. Just go for what you want and do not pay for anything extra in terms of licensing. You need to determine how much bandwidth is required in your company network, and according to that, you should pay for the license. The mobile user license is based on the number of users who are going to use the VPN solution. You need to determine how many mobile users you are going to have in your network, and you should pay according to that. There are no other costs in addition to licensing, but if you go for the consultant services of Palo Alto networks to deliver the solution for you, then you need to pay something extra. That is not a part of licensing."
"The pricing is very friendly. It's not confusing to figure out your workload and how much you'd be paying for the solution."
"The licensing fees are paid on a yearly basis and for what we get, the price is good."
"Prisma Access by Palo Alto Networks is an expensive solution, especially when compared to other solutions like Cisco. There are no additional charges apart from the standard licensing costs attached to the solution."
"It is pretty expensive. We have to balance the cost of some features. They need to work on some of the services and products, price-wise."
"Actually the solution is very expensive. I don't know the particulars since the purchasing team dealt with it."
"The licensing model for this product is complicated and changes all the time, making it very hard for the user to comprehend the configuration."
"It's pricey, it's not cheap. But you get what you pay for."
Information not available
report
Use our free recommendation engine to learn which Cloud Access Security Brokers (CASB) solutions are best for your needs.
881,114 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Computer Software Company
10%
Manufacturing Company
9%
Comms Service Provider
6%
Financial Services Firm
11%
Manufacturing Company
11%
Computer Software Company
11%
Government
5%
Financial Services Firm
14%
Insurance Company
12%
Comms Service Provider
9%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise6
Large Enterprise5
By reviewers
Company SizeCount
Small Business24
Midsize Enterprise21
Large Enterprise27
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise4
Large Enterprise7
 

Questions from the Community

What needs improvement with iboss?
For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company Exxon...
What is your primary use case for iboss?
Previously when I used iboss, we did the POC for iboss for ExxonMobil. Four or five people wanted to move from our ol...
What is your experience regarding pricing and costs for iboss?
Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern. There are cheaper alte...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What do you like most about Prisma Access by Palo Alto Networks?
The most valuable features of the solution are in the areas of the secure remote access it provides while also being ...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
What is your experience regarding pricing and costs for Zscaler Private Access (ZPA)?
Regarding pricing, setup costs, and licensing for Zscaler Private Access (ZPA), while it is not the cheapest solution...
What needs improvement with Zscaler Private Access (ZPA)?
After deploying Zscaler Private Access (ZPA), I notice a reduction in VPN-related support tickets, particularly durin...
What is your primary use case for Zscaler Private Access (ZPA)?
My primary use case for Zscaler Private Access (ZPA) is securing application-level access to internal applications wi...
 

Also Known As

iBoss Cloud Platform
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
No data available
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Information Not Available
Find out what your peers are saying about Prisma Access by Palo Alto Networks vs. Zscaler Private Access (ZPA) and other solutions. Updated: December 2025.
881,114 professionals have used our research since 2012.