What is our primary use case?
One Identity Defender strengthens identity and access security through MFA, helping us ensure that only authorized users can access critical systems, especially for privileged accounts, with a focus on remote access security by securing remote access with MFA. It adds an external, extra layer of security when users log in from outside the corporate network, with the primary purpose being securing privileged access. We use One Identity Defender to enforce MFA for admin and high-risk accounts to prevent unauthorized access.
In our environment, we use One Identity Defender, and a specific example of how we use it for privileged access and remote login is that whenever an admin user tries to log in to critical servers remotely, they must complete MFA, which helps us prevent unauthorized login attempts from unknown devices.
Overall, we use One Identity Defender daily to enforce multi-factor authentication and ensure secure access from both privileged and remote users, reflecting its importance in our day-to-day operations.
What is most valuable?
One Identity Defender offers multi-factor authentication to strengthen login security, especially for privileged and remote access users, alongside its integration with Active Directory, ensuring smooth operation with existing user identities. It also provides centralized administration, token-based authentication, and strong audit logs for tracking all login activities overall, helping to enforce secure access control and reduce the risk of unauthorized access.
We rely on centralized administration and strong audit logs daily, with centralized administration helping us manage users and policies from one place, saving time and reducing manual work. Audit logs help us track all authentication activities, allowing us to quickly review who accessed what and when.
One Identity Defender is quite easy to integrate with existing systems like Active Directory and other applications, which makes deployment smoother. It also supports flexible authentication methods, enabling us to adapt security based on risk level and user type. Overall, it improves security without adding much complexity for end-users.
One Identity Defender has positively impacted our organization by improving overall security through the addition of MFA, which reduces the risk of unauthorized access and makes user authentication more controlled and reliable.
What needs improvement?
One Identity Defender is a strong product, but there are a few areas where it can be improved. First, the user interface and reporting dashboards could be made more intuitive and customizable for faster analysis. Second, the integration with more modern cloud-native applications could be expanded to better support hybrid environments. Additionally, adding more advanced analytics or AI-based risk detection would help in identifying suspicious login patterns proactively. Overall, it is very effective, but these improvements could make it even more powerful and easier to use at scale.
Another area for improvement would be the support and deployment experience. While the product is stable, faster support response times and more detailed documentation would help during troubleshooting and upgrades. Additionally, deployment could be simplified in the future with more guided step options or automated configuration attempts, especially for large environments. This would reduce implementation effort and make onboarding quicker for new teams.
For how long have I used the solution?
It has been a year since we started using One Identity Defender.
What do I think about the stability of the solution?
One Identity Defender is generally very stable in our environment. After implementation, we have not faced major downtime or authentication failures, and it runs reliably in the background while consistently enforcing multi-factor authentication from both privileged and remote access users.
What do I think about the scalability of the solution?
One Identity Defender has shown good scalability in our environment, enabling us to scale it from a smaller user base to a much larger number of users without major changes to architecture. It integrates tightly with Active Directory and maintains excellent performance, continuing to handle increased authentication requests smoothly as we onboard more users and privilege accounts.
How are customer service and support?
The customer support experience with One Identity Defender has generally been good. Whenever we raise tickets for configuration or integration issues, the support team is responsive and provides proper guidance to resolve the issue.
Which solution did I use previously and why did I switch?
Previously we were using a more basic authentication approach, mainly Active Directory, password-based login, and limited or no MFA for privileged access. We switched to One Identity Defender because the earlier setup was not sufficient from a security standpoint, lacking strong MFA enforcement and increasing the risk of unauthorized access. There was also limited visibility and control over authentication events. With One Identity Defender, we strengthened security with MFA, improved control over privileged accounts, and gained better audit and monitoring capabilities.
How was the initial setup?
Overall, the pricing and licensing for One Identity Defender is on the enterprise side, but it is justified by the security value it provides. It is typically based on our users or tokens, depending on the deployment model. From a setup cost perspective, there is some initial work involved in infrastructure setup and integration with Active Directory, but once configured, it is quite stable and does not require heavy ongoing maintenance.
What was our ROI?
We have seen a positive return on investment after implementing One Identity Defender, with one of the biggest benefits being the reduction in operational effort for the team, especially in handling password resets and access-related issues. Since MFA has reduced a lot of login failures and security incidents, the ROI is seen in reduced support effort, improved efficiency, and a stronger security posture rather than direct headcount reduction.
What's my experience with pricing, setup cost, and licensing?
After implementing One Identity Defender, we noticed specific outcomes, such as fewer unauthorized access attempts getting through because MFA is enforced for all privileged and remote logins. It has also reduced dependency on manual password resets and improved control over user access.
Which other solutions did I evaluate?
Before selecting One Identity Defender, we were evaluating a few other multi-factor authentication and identity security solutions available in the market, including options such as Microsoft authentication based on MFA, Azure AD, RSA SecurID, and Duo Security.
What other advice do I have?
My advice for others looking into using One Identity Defender would be first to clearly define your use case, especially whether you need MFA mainly for privileged access, remote users, or both, as this will help design the right policy structure from the beginning. Second, ensure proper planning for integration with existing identity systems like Active Directory, as that is key for smooth deployment and scalability. Finally, keep user training and communication in mind because user adoption is important for MFA success. I would rate this product an 8 out of 10.
Which deployment model are you using for this solution?
On-premises
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other