No more typing reviews! Try our Samantha, our new voice AI agent.

ThreatLocker Zero Trust Platform vs Twingate comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Mar 17, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in ZTNA as a Service
8th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
22
Ranking in other categories
Secure Web Gateways (SWG) (5th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), Secure Access Service Edge (SASE) (8th)
ThreatLocker Zero Trust Pla...
Ranking in ZTNA as a Service
4th
Average Rating
9.2
Reviews Sentiment
7.1
Number of Reviews
76
Ranking in other categories
Network Access Control (NAC) (4th), Endpoint Protection Platform (EPP) (6th), Advanced Threat Protection (ATP) (4th), Application Control (1st), ZTNA (5th), Ransomware Protection (1st)
Twingate
Ranking in ZTNA as a Service
17th
Average Rating
8.0
Reviews Sentiment
7.5
Number of Reviews
1
Ranking in other categories
Network Access Control (NAC) (12th), Internet Security (11th), Enterprise Infrastructure VPN (15th), ZTNA (9th), Secure Access Service Edge (SASE) (16th)
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
Santo Joy - PeerSpot reviewer
Head Of Cyber Security at a outsourcing company with 201-500 employees
Security controls have been strengthened with granular application, ringfencing, and access policies
The features of ThreatLocker Zero Trust Endpoint Protection Platform that I like the most are the Ringfencing, elevation control, storage control, and application whitelisting functionality. For examples of how these features benefit my company, we were looking for a solution across various vendors to actually implement application whitelisting controls. ThreatLocker's agent, which is very lightweight and does not use much CPU or RAM, helped us achieve that solution. Ringfencing was an add-on that ticked off a lot of Australian framework security controls, which is the reason we chose it. My impression of the allowlisting feature in terms of managing which software, scripts, and libraries run on my devices is that ThreatLocker's community page has a lot of information around this, which is very helpful. Not only that, the Cyber Hero support that ThreatLocker provides gives us insights and best practices, helping us achieve that solution and guiding us to the right platform. The impact of Ringfencing on controlling the behavior of approved applications has been a big winner for us because it is something that many other platforms do not provide as a functionality. Having that allowed us to identify what applications talk to each other, which is something that many other platforms do not do. The network control feature impacts my ability to manage network traffic across my endpoints and servers. We have not used this widely across all our partners, but wherever required, we use it. It has been an easy solution for those customers to get that control implemented. The elevation feature's role in facilitating just-in-time administrative access for approved applications shows that elevation control helps in many use cases involving remote control platforms, door usage, and security system platforms that require local admins. There are many solutions that provide this functionality, but the licensing cost seems to be expensive, and it also adds another solution into the mix. Rather than doing that, we try to use ThreatLocker Zero Trust Endpoint Protection Platform to achieve that control. Regarding the storage control feature, I have used it. The primary function is USB blocking, which is very widely adopted, and also just locking down and allowing certain users to access certain file locations helps us there. When it comes to enforcing policy-driven access over various storage devices, it depends on the business risk adapted by the companies that we support, but generally the use case is USB and external storage devices where companies know that is a risk, but they do not have appropriate solutions. There are EDR platforms that claim to do this, but ThreatLocker Zero Trust Endpoint Protection Platform does it at an advanced level. My assessment of the efficiency of the real-time threat intelligence and category controls employed by Web Control in blocking malicious and non-compliant sites leads me to think that Web Control is another functionality within ThreatLocker Zero Trust Endpoint Protection Platform that is an add-on on top of the current set. That is another solution that we use based on what is required for the company, but again, that is not widely adapted yet for our partners.
Joey Benamy - PeerSpot reviewer
Senior Cyber Liability Engineer at OncoLens
Helps reduce access-related support tickets, is quick to deploy, and streamlines onboarding
We were able to add Twingate into our infrastructure without having to change our infrastructure or how people work. We reaped the benefits of Twingate immediately because it replaced an alternative solution with a lot of overhead. Twingate helped reduce access-related support tickets by 80 percent. Twingate streamlines onboarding for our company, especially for the engineering team, by automating resource access through directory integrations. New employees generally require no manual configuration within Twingate, saving us significant time and effort. The resiliency is directly proportional to the level of control we exert over its components. We can manage Twingate connectors to support high availability, ensuring the system is as reliable as needed. This flexibility and control enhance Twingate's resiliency capabilities significantly.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"First of all, the security policies are essential. I do not have to rely solely on Active Directory for our users."
"I would definitely recommend iboss for web filtering purposes to other organizations or individuals."
"The iboss solution gives me the ability to scan the traffic through all the ports, through all the 131,000 PCP and UDP ports, and with this ability, we have the granularity also for consults over social media and applications on mobile, and this is an advantage that the customers are looking for right now."
"It was a very easy product to install. It can be deployed very fast."
"Granular setup, which was able to set different levels of filters using the OUs in the AD."
"We chose iboss for both zero trust and proxy (SWG) because their SWG was superior."
"From a use-case scenario, what I like the most is the plug-in. I like the fact that we can do the filtering of these devices offsite independent of the network they are connected to, and we do not have to have traffic coming back inside our network."
"The iboss system is highly reliable. The false positive rates are small compared to some other systems we've experienced through other partner agencies who use competing solutions."
"If all of our vendors would act and support us like ThreatLocker does, we would be happy."
"The application management on any workstation with the solution is valuable. I find it valuable that it indicates whether the software is part of our pre-approved list, adding a nice layer of protection. It works great because people cannot just install or download any app from the web."
"Allowlisting, in general, is valuable because it allows us to have a lot more granular control over what is executed on a desktop. We are also able to ringfence known vectors of attack through Office applications, email, browsers, etc."
"It's easy to use in regards to reducing attack surfaces."
"ThreatLocker Zero Trust Endpoint Protection Platform has absolutely saved us money, and I sleep better at night because of it, as we have the MDR package as well and just knowing someone is watching those endpoints at 3:00 a.m. is a lifesaver that you cannot put a dollar figure on."
"ThreatLocker Zero Trust Endpoint Protection Platform has helped my company and my clients' companies save on operational costs and expenses, and I would estimate we have saved at least thirty to forty percent."
"The most valuable feature is its learning capability."
"It is a comprehensive platform that allows you to do a lot of things."
"I appreciate Twingate's developer-first approach, particularly its excellent developer tools for deployment and management."
 

Cons

"For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company ExxonMobil."
"The dashboards for local use could be better."
"If they could implement an extra security layer preventing access to iboss from the open internet, it would be great."
"The problem our organization had is that iboss failed for the Mac devices; it is not able to give a successful agent for the Mac agents, and that is where in 2025 we had to migrate to the Palo Alto-based platform."
"To scale up, a new iboss Node Blade Chassis must be purchased."
"The solution could be stronger on the integration side and offer more cloud applications like G Suite or Oracle."
"Sometimes when you call in support, you get someone who is just following a sheet. It feels like a runaround. You feel that you are running into that support wall."
"Its pricing could be better."
"I find that the learning mode is too accessible. Technicians sometimes default to it instead of manually building policy controls. I would prefer the learning mode to be harder to access, ideally hidden behind a layer that requires creating at least one policy first before using the learning mode as a supplement."
"To become the best solution, some sort of integration or remote management, like remotely connecting, could be beneficial."
"I cannot suggest anything that they are not already doing. They should keep adding features as they have been."
"ThreatLocker's technical support process could be streamlined by reducing the number of steps required to reach a human agent."
"It is a little frustrating on my end since I like to go as quickly as I possibly can, and it slows me down."
"Initially, the learning curve was slightly high for me, however, that has been resolved now."
"I have several clients in the last few months that have definitely caused a problem where a domain controller completely destroyed replication once Network Control was put in place, and now our AVD servers in Azure also lose domain trust occasionally and it is intermittent, making it rather hard to prove to ThreatLocker Zero Trust Endpoint Protection Platform that they really need to look at when there is a VPN in the middle of a domain controller."
"There are some programs that, when they update, they hit other folders; it would be nice to be able to see where that application is pointing when it wants to update, especially if it's updating in the AppData folder or C Windows folder since it might be the same application already whitelisted, but it changes around."
"Twingate's lack of native support for Windows Server is a significant limitation."
 

Pricing and Cost Advice

"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"It is probably in line with other solutions, but I do not deal with the financial side."
"It is expensive compared to one of its competitors."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"The overall pricing for iboss is very competitive and transparent."
"Its price is fair. They have added some additional things to it beyond allowlisting. They are up-charging for them, but in terms of the value we get and the way it impacts us, we get a bang for our buck with ThreatLocker than a lot of our other security tools."
"I believe ThreatLocker's pricing model is fair and flexible, allowing account managers to offer customized deals based on our specific needs."
"I can't complain. Cheaper would always be nice, but I think it's reasonable compared to other software in the cybersecurity market."
"The pricing is reasonable and normal. I do not have any problems with the cost."
"I find ThreatLocker's pricing to be reasonable for the services it provides."
"Although the pricing seems good, there have been inconsistencies in contract negotiations."
"So far, it has been great. I have no complaints. Of course, everybody wishes it was cheaper."
"I do not know about the licensing and price as it comes bundled from our MSP. However, it seems fairly reasonable for us, which is why we chose it."
"Twingate's pricing is fair."
report
Use our free recommendation engine to learn which Network Access Control (NAC) solutions are best for your needs.
899,258 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
10%
Computer Software Company
8%
Construction Company
7%
Computer Software Company
13%
Financial Services Firm
11%
Manufacturing Company
10%
Comms Service Provider
7%
Comms Service Provider
17%
University
9%
Financial Services Firm
8%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise7
Large Enterprise8
By reviewers
Company SizeCount
Small Business52
Midsize Enterprise13
Large Enterprise11
No data available
 

Questions from the Community

What needs improvement with iboss?
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent ...
What is your primary use case for iboss?
We used iBoss mainly for Internet Access by having an Agent on Windows laptops Primarily because when we try to use i...
What is your experience regarding pricing and costs for iboss?
I am not involved in pricing, but as per the information I have, during that time, the Blue Coat proxies we were usin...
What is your experience regarding pricing and costs for ThreatLocker Allowlisting?
My experience with pricing, setup cost, and licensing for ThreatLocker Zero Trust Endpoint Protection Platform is goo...
What needs improvement with ThreatLocker Allowlisting?
ThreatLocker Zero Trust Endpoint Protection Platform can be improved by providing admin rights that allow us to manag...
What is your primary use case for ThreatLocker Allowlisting?
My main use case for ThreatLocker Zero Trust Endpoint Protection Platform is to secure the server.A specific example ...
What needs improvement with Twingate?
Twingate's lack of native support for Windows Server is a significant limitation. While it hasn't directly affected m...
 

Also Known As

iBoss Cloud Platform
Protect, Allowlisting, Network Control, Ringfencing
No data available
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Information Not Available
Blend, Modern Health, Webflow, Liberis, Cerebral, Homebase, Bloomreach, Cameo, Hippo and Bitpanda
Find out what your peers are saying about Hewlett Packard Enterprise, Fortinet, Cisco and others in Network Access Control (NAC). Updated: June 2026.
899,258 professionals have used our research since 2012.