No more typing reviews! Try our Samantha, our new voice AI agent.
PeerSpot user
Network Security Engineer at a outsourcing company with 501-1,000 employees
Real User
Top 5
Apr 27, 2026
Delegated automation has transformed directory governance and now streamlines compliant access control
Pros and Cons
  • "One Identity Active Roles has significantly reduced both the complexity and workload of administrative tasks related to Active Directory; many repetitive tasks are automated, so admins spend much less time on routine activities."
  • "One Identity Active Roles is very useful, though there are a few areas where it could be improved, such as the user interface, policy creation, and reporting; it requires good knowledge of Active Directory."

What is our primary use case?

One Identity Active Roles is used primarily for managing Active Directory, including user provisioning and group management. When a new employee joins, I use One Identity Active Roles to automatically create their AD account, assign them to groups, and apply policies, all with proper approvals.

Apart from basic user provisioning, I use One Identity Active Roles daily for managing and controlling Active Directory permissions in a structured way.

What is most valuable?

The best features One Identity Active Roles offers are delegated administration and automation, which stand out the most because they reduce admin workload and improve security. Delegated administration and automation significantly reduce admin workload while improving security and control.

For example, HR or help desk can create or modify users, but only within defined limits - they cannot make critical changes outside their scope.

One Identity Active Roles reduces the risk of misuse or accidental changes, and a workflow benefit is that the centralizing IT team does not handle every request. One Identity Active Roles has had a very positive impact on the organization, especially in terms of security and control over Active Directory.

I have utilized the fine-grained permission control feature of One Identity Active Roles, and it has significantly helped implement least privilege principles. Instead of giving broad admin rights, very specific permissions are assigned based on roles, tasks, and need-to-know access. One Identity Active Roles has had a strong positive impact on the organization's compliance efforts. All changes in AD are logged and traceable, which helps during audits. Fine-grained permissions ensure users only have the access they need, while naming conventions, access roles, and security policies are automatically enforced.

What needs improvement?

One Identity Active Roles is very useful, though there are a few areas where it could be improved, such as the user interface, policy creation, and reporting - it requires good knowledge of Active Directory. The UI can feel outdated and not very intuitive for new users, and the learning curve is steep. Sometimes there can be slight delays when handling large-scale operations, and the reporting needs to be more helpful for audits.

For how long have I used the solution?

I have been using One Identity Active Roles for around six months.

Buyer's Guide
One Identity Active Roles
May 2026
Learn what your peers think about One Identity Active Roles. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
894,807 professionals have used our research since 2012.

What do I think about the stability of the solution?

One Identity Active Roles is generally a stable and reliable solution based on my experience.

What do I think about the scalability of the solution?

One Identity Active Roles is highly scalable and works well in both medium and large enterprise environments, as it can manage multiple AD domains, Azure AD tenants, and even hybrid environments from a single console.

How are customer service and support?

Customer support for One Identity Active Roles is generally good, especially for standard issues and guidance. The support team is knowledgeable about the product and AD environments, being helpful for configuration issues, troubleshooting, and best practices.

Which solution did I use previously and why did I switch?

Before implementing One Identity Active Roles, I was primarily managing AD using native tools from Microsoft Management Console, such as Active Directory Users and Computers. I switched because the manual effort was too high, and there was limited delegation and no centralized control.

How was the initial setup?

Integrating One Identity Active Roles with the existing IT infrastructure and directory services was relatively smooth, especially since it is designed to work seamlessly with AD on-premise. It integrates natively with the AD, so the core setup is straightforward.

What was our ROI?

A strong return on investment has definitely been seen.

What's my experience with pricing, setup cost, and licensing?

My experience with pricing and licensing for One Identity Active Roles has been reasonable for an enterprise solution, but it does require proper planning. The initial setup can involve some cost in terms of time and resources, especially for configuration, policy design, and integration, as skilled Active Directory or IAM professionals were required.

Which other solutions did I evaluate?

Before selecting One Identity Active Roles, I evaluated a few other options to compare features and fit for the requirements, such as Microsoft Identity Manager.

What other advice do I have?

My impression of the automation capabilities provided by One Identity Active Roles is very positive - they significantly reduce manual effort and improve consistency. For example, when a new employee joins, I use a predefined template, and One Identity Active Roles automatically creates the user account, applies naming conventions, assigns the correct groups, and enforces policies; previously, this required multiple manual setups, but now it is done in a few clicks with consistent results.

One Identity Active Roles has significantly reduced both the complexity and workload of administrative tasks related to Active Directory. Many repetitive tasks are automated, so admins spend much less time on routine activities. Delegated administration allows other teams to handle common requests instead of escalating everything.

My experience with the delegation of administrative tasks through One Identity Active Roles has been very positive, as it has made the workflow much more efficient and controlled. It allows specific admin tasks to be assigned to different teams, so routine tasks such as user creation or password resets are handled by help desk teams, meaning requests do not need to be escalated, so turnaround time is much quicker.

My advice for organizations considering One Identity Active Roles would be to plan the implementation carefully; clearly define your requirements and decide who should have what level of access before implementing. I would rate this product an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Apr 27, 2026
Flag as inappropriate
PeerSpot user
reviewer2794194 - PeerSpot reviewer
Sr Mgr Cyber Defense at a manufacturing company with 10,001+ employees
Real User
Top 5
Jan 4, 2026
Granular delegations have streamlined least-privilege access and simplified cross-domain control
Pros and Cons
  • "One Identity Active Roles takes us less time, probably half the time, to complete delegations that are very granular and complex, compared to having to use native tools and scripts."
  • "I am not really satisfied with the customer support for One Identity Active Roles as the support is pretty limited."

What is our primary use case?

My main use case for One Identity Active Roles is delegations and limiting access based on least privilege principles.

A specific example of how I use delegations and least-based access in my environment is that for cases where people only need a password reset, I can grant that capability without granting the ability to unlock accounts, or I can grant the ability to unlock without granting people password reset permissions.

What is most valuable?

The best features One Identity Active Roles offers are that it can be used across multiple domains and forests.

In our company, we have 85 different domains, and it would be cumbersome to have a separate instance of One Identity Active Roles for each domain. One Identity Active Roles allows us to give people in one domain access through One Identity Active Roles to all these other domains without them needing an account in each of those other domains, even though there does not have to be a trust between those domains.

One Identity Active Roles has positively impacted my organization by helping speed up delegations and helping us find permissions and generate reports more quickly on who has what access where.

One Identity Active Roles takes us less time, probably half the time, to complete delegations that are very granular and complex, compared to having to use native tools and scripts.

What needs improvement?

One Identity Active Roles can be improved because schemas sometimes differ between domains, and One Identity Active Roles does not behave very well with that inconsistency. We have an open case with Quest on this issue, but so far they do not have a solution for it.

I would also like to request that their support be more detailed, as we are finding difficulties getting to the correct people.

I give it an eight mainly because if we have to undo it for a divestiture, it is very difficult to strip off just the permissions easily because they are done via domain groups. We have to go back and find them all and remove them individually, so there should be an easier way to do that.

For how long have I used the solution?

I have been using One Identity Active Roles for six years.

What do I think about the stability of the solution?

One Identity Active Roles can be buggy at times, and we have to restart the server.

What do I think about the scalability of the solution?

One Identity Active Roles can handle growth in my environment, but the downside is that when we have domains that are further away from the server, it takes longer to bring up the console.

How are customer service and support?

I am not really satisfied with the customer support for One Identity Active Roles as the support is pretty limited.

How would you rate customer service and support?

Positive

What other advice do I have?

We do run into challenges with managing upgrades and patches for One Identity Active Roles, but we have a test instance that we try to do it on first.

My advice to others looking into using One Identity Active Roles is to plan out in advance and think about the big picture before you dive in. I give One Identity Active Roles an overall rating of eight out of ten.

Which deployment model are you using for this solution?

On-premises

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Jan 4, 2026
Flag as inappropriate
PeerSpot user
Buyer's Guide
One Identity Active Roles
May 2026
Learn what your peers think about One Identity Active Roles. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
894,807 professionals have used our research since 2012.
Prithviraj kallurkar - PeerSpot reviewer
Business Development Associate at Digital Track Solutions India Private Limited
Real User
Top 5Leaderboard
Apr 20, 2026
Automation has transformed onboarding and now improves security and accuracy every day
Pros and Cons
  • "One Identity Active Roles is a very reliable and powerful solution for identity and access management."
  • "One Identity Active Roles is a strong tool, but there are a few areas where it can be improved."

What is our primary use case?

One Identity Active Roles simplifies and automates user and group management in Active Directory. It helps reduce manual work, manage permissions more securely, and ensure proper access control. Overall, it improves efficiency, reduces errors, and strengthens security in identity management.

A recent example of how we use One Identity Active Roles day-to-day is during user onboarding. Whenever a new employee joins, instead of manually creating accounts and assigning permissions, we use One Identity Active Roles to automate the process. We select the role or department, and it automatically creates the user, assigns the right groups, and provides correct access. This saves a lot of time and also avoids mistakes such as giving wrong permissions. It makes the process faster and more secure.

How has it helped my organization?

We have seen clear improvements after using One Identity Active Roles. For example, in user onboarding, what used to take around twenty to thirty minutes manually is now done in five minutes or less with automation. This represents roughly seventy to eighty percent time saved. We have also seen a big reduction in errors, especially in access assignments, since everything is role-based. I would say errors have dropped by around sixty to seventy percent. From a security point of view, we have not experienced issues such as over-permission or unauthorized access because access is controlled and audited properly. Overall, it has improved speed, reduced errors, and strengthened our security posture.

What is most valuable?

One Identity Active Roles offers several valuable features mainly around automation, security, and control. First, automation can automatically create users, assign groups, and manage access, which saves a lot of manual effort. Second, role-based access control ensures users only get the access they need. Third, delegation allows us to give limited admin rights to teams without giving full control, which reduces risks. Auditing and reporting is also very useful because we can track who made what changes, which helps in compliance. Finally, centralized management allows everything to be managed from a single console, even across multiple directories.

The feature we rely on the most in our day-to-day work is automation in One Identity Active Roles. It is very important for our team because we deal with frequent user onboarding, role changes, and access requests. Instead of doing everything manually, automation helps us complete these tasks quickly and consistently. It reduces human error, saves a lot of time, and ensures users always get the correct access based on their role. That is why it is the most valuable feature for us in our day-to-day work.

All the features in One Identity Active Roles work really well together. Automation saves time, role-based access control improves security, and auditing gives us visibility.

What needs improvement?

One Identity Active Roles is a strong tool, but there are a few areas where it can be improved. One area is the user interface, which can feel a bit complex or outdated. Making it more modern and user-friendly would reduce the learning curve. The initial setup and workflow configuration can be slightly complicated, especially for new users or smaller teams. Simplifying this would make adoption easier. Another improvement could be better cloud integration, especially with modern cloud environments to make it more seamless. Additionally, having more ready-made automation templates and better documentation would help teams implement use cases faster.

For how long have I used the solution?

I have been using One Identity Active Roles for one point five years.

What other advice do I have?

One Identity Active Roles has had a very positive impact on our organization, mainly in terms of efficiency and security. First, it has reduced manual work significantly by automating user provisioning and access management, which saves a lot of time for our IT team. Second, it has improved security by ensuring users only get the right access and reducing the risk of over-permission or errors.

One Identity Active Roles is a very reliable and powerful solution for identity and access management. It really stands out in terms of automation, security, and centralized control, especially in hybrid environments. It helps reduce manual effort, enforce policies, and maintain consistency across systems. At the same time, it has a slight learning curve and some areas of improvement, as with any enterprise tool. However, once properly implemented, it delivers strong value. I would definitely recommend One Identity Active Roles for organizations looking to improve efficiency and strengthen their identity and security.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Apr 20, 2026
Flag as inappropriate
PeerSpot user
Nitin Yadav - PeerSpot reviewer
Network & Security Engineer at Arrow PC Network Pvt.Ltd.
Real User
Top 5Leaderboard
May 16, 2026
Structured automation has transformed directory tasks and now speeds secure user onboarding
Pros and Cons
  • "One Identity Active Roles has positively impacted my organization by enabling faster onboarding and offboarding through automations, reducing manual AD errors and permission mistakes, and lightening the workload for the infrastructure help desk team."
  • "One Identity Active Roles could be improved with better cloud-native management and SaaS options, simpler reporting, and easier customization."

What is our primary use case?

One Identity Active Roles is my primary solution for managing Active Directory efficiently and securely, with a focus on day-to-day tasks such as user account credentials, password reset and account unlock, group membership management, and automating AD tasks.

When a new employee joins, I use One Identity Active Roles to create the AD account using a template and automatically assign groups based on department, set mailbox and permissions, apply naming conventions, and policy.

What is most valuable?

One Identity Active Roles offers me several best features, including automation workflow, which saves a lot of manual AD work during onboarding and offboarding, and its role-based delegations that allow the help desk to perform limited tasks without full admin rights, as well as change history and auditing that make it easy to track who can change what in AD.

The automation feature has made the biggest difference in my day-to-day work, which assists in designing auditing benefits. Tasks such as user onboarding, offboarding, group assignment, and mailbox provisioning are significantly improved.

One Identity Active Roles has positively impacted my organization by enabling faster onboarding and offboarding through automations, reducing manual AD errors and permission mistakes, and lightening the workload for the infrastructure help desk team. Tasks that used to take 20 to 30 minutes manually can now be completed within 5 to 10 minutes.

The time savings facilitated by One Identity Active Roles have allowed my team to focus more on higher-value work instead of repetitive admin tasks. Instead of spending hours on account provisioning, password issues, or manual permission changes, the team can now concentrate on projects, security improvement, and user support, which has also reduced stress during busy periods because workflows are standardized and less error-prone.

What needs improvement?

One Identity Active Roles could be improved with better cloud-native management and SaaS options, simpler reporting, and easier customization.

I wish for simpler reporting and easier customization as additional needed improvements.

For how long have I used the solution?

I have been using One Identity Active Roles for the last one and a half years.

How was the initial setup?

I assess the ease of integrating One Identity Active Roles with my existing IT infrastructure and directory services as generally good, as it integrates well with Active Directory, making the core setup straightforward. However, the initial configurations, policy roles, and workflows are complex and require AD expertise. Once deployed, day-to-day operations and synchronizations are quite reliable.

What other advice do I have?

One Identity Active Roles has significantly reduced both the complexity and workload of administrative tasks related to Active Directory, particularly for data tasks such as user creation, group changes, and account management.

My experience with the delegation of administrative tasks through One Identity Active Roles has been that it has made the workflow much more structured and controlled, with tightly scoped permissions so users receive only what they need.

My main advice to others looking into using One Identity Active Roles is to properly plan your directory structure first before configuring anything. It is essential to invest time in establishing an appropriate Active Directory structure beforehand and to use the least privilege design as a default concept. I would rate my overall experience with One Identity Active Roles as a nine out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: May 16, 2026
Flag as inappropriate
PeerSpot user
Business Development Intern at Smart Scale Labs
Real User
Top 5
May 4, 2026
Approval workflow has simplified secure access requests but still needs faster urgent handling
Pros and Cons
  • "One Identity Active Roles has made things more organized and secure across the company, and it has also reduced the need to contact IT administrators directly, saving time for both me and the IT staff."
  • "One Identity Active Roles could be improved by speeding up the approval process, especially for urgent access requests."

What is our primary use case?

I am an end user of One Identity Active Roles for internal access and system purposes. When I need access to an internal dashboard to analyze business data for a project, I raise a request through One Identity Active Roles. The request goes through the approval process, and once approved, I am granted access without needing to contact the IT team directly. This helps me complete my tasks on time, and the status can be easily tracked so I do not have to manually follow up. The approval workflow makes the process secure and smooth, and even though I am not from a technical background, it helps me significantly.

I use One Identity Active Roles to gain access to some particular tools that are shared among multiple interns in my company.

What is most valuable?

The best feature that One Identity Active Roles offers is the approval flow, which gives access only to authorized persons, making the process secure. The user-friendly interface allows someone without a technical background to apply for the tools needed and be given access.

The approval process makes things more secure and efficient. This process prevents unauthorized and accidental access to sensitive tools and data, which are major concerns for my company. I have been told to access some particular tools and data through that portal only.

One Identity Active Roles has made things more organized and secure across the company. It has also reduced the need to contact IT administrators directly, saving time for both me and the IT staff. During the orientation program, I was informed that the use of this tool has reduced the IT team's workload. Previously, the IT team needed to provide the tool and monitor who was using it, but now with this tool, they do not have to specifically check on who is accessing the tools and data.

The IT team has reduced their workload by around four hours, although I do not know the specific hours saved. Access to the tools has become much faster; as soon as I apply, it goes through the approval process, and if the tool is required, then access is provided to me or any other IT intern.

What needs improvement?

One Identity Active Roles could be improved by speeding up the approval process, especially for urgent access requests. Sometimes I need urgent approval, and then I have to call the IT team to manually pass my approval. An option to flag that I need the tool urgently would help the IT team know to expedite that approval in the future. I have seen times when I need a tool urgently, but the process takes time.

The dependency on approval sometimes causes delays, which can slow down urgent work that I am doing, particularly as my position as an intern has been growing.

For how long have I used the solution?

By the first of May, it has been approximately two months since I have been working in my current field.

What do I think about the stability of the solution?

One Identity Active Roles is quite stable, and I have not seen any downtime or crashes in my use case.

What do I think about the scalability of the solution?

One Identity Active Roles is a great tool, pretty scalable, and stable for the daily purposes we are using it for. It can be easily deployed in the company, and it is a stable solution for non-technical users like myself.

What other advice do I have?

I received one or two days of training to use all One Identity tools utilized in my company, such as One Identity Active Roles, One Identity OneLogin, and Safeguard Manager, which are all great tools. I would rate this review a 7.5 out of 10.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: May 4, 2026
Flag as inappropriate
PeerSpot user
Manik Singh - PeerSpot reviewer
Penetration Tester at Essen Vision Software
Real User
Top 5
May 7, 2026
Delegated workflows have automated account management and improve secure access control
Pros and Cons
  • "Clear ROI has been seen with One Identity Active Roles, mainly through the time savings and reduced manual administration."
  • "The UI of One Identity Active Roles could be more modern and responsive, and some advanced workflow configurations can feel complex during setup."

What is our primary use case?

One Identity Active Roles is primarily used for Active Directory administration, delegation, delegated access control, user provisioning, and automating routine account management tasks.

One Identity Active Roles automatically creates user accounts with correct group memberships and permissions based on the department and role, which saves a lot of manual AD work during onboarding.

One Identity Active Roles is also used for auditing and approval workflows, especially for sensitive AD changes where better control and tracking are needed.

What is most valuable?

The best features One Identity Active Roles offers are delegated administration, automation workflows, centralized AD management, and the detailed auditing capabilities that make tracking changes much easier.

Delegated administration has made the biggest impact because it allows the different teams to manage specific AD tasks securely without giving full domain-level access.

The automation and approval workflows stand out significantly in larger environments, especially when consistency and better control over AD changes are needed.

One Identity Active Roles has positively impacted the organization by reducing a lot of manual AD administration work, improving access control, and helping standardize user management processes across the organization.

What needs improvement?

The UI of One Identity Active Roles could be more modern and responsive, and some advanced workflow configurations can feel complex during setup.

Better cloud integration and simpler reporting customizations would definitely improve the overall experience, especially in hybrid environments.

For how long have I used the solution?

One Identity Active Roles has been in use for two years.

What do I think about the stability of the solution?

One Identity Active Roles is very stable.

What do I think about the scalability of the solution?

One Identity Active Roles scales very well in large enterprise environments, especially for organizations managing multiple domains, hybrid AD setups, and high volumes of user provisioning tasks.

How are customer service and support?

Customer support for One Identity Active Roles is great.

Which solution did I use previously and why did I switch?

Before One Identity Active Roles, the organization mostly relied on native administrative Active Directory tools and manual processes. The switch was made for better automation, delegation, and centralized control over AD management.

A few other IAM and AD management solutions were evaluated before choosing One Identity Active Roles, including SalePoint, Microsoft Entra ID, and ManageEngine.

How was the initial setup?

The integration of One Identity Active Roles with the existing IT infrastructure and directory services was fairly smooth overall since it works well with existing Active Directory environments, though some advanced integrations and workflow customization required extra planning and testing.

What was our ROI?

Clear ROI has been seen with One Identity Active Roles, mainly through the time savings and reduced manual administration. Onboarding, permission updates, and account management tasks that used to take a lot of manual effort are now largely automated and completed much faster.

What's my experience with pricing, setup cost, and licensing?

The pricing, setup cost, and licensing of One Identity Active Roles are definitely enterprise-focused, but the value from the automation, delegation, administration, and the reduced manual AD effort makes the investment worthwhile in large environments.

What other advice do I have?

My advice to others looking into using One Identity Active Roles is to plan your delegation model and automation workflows carefully before deployment because the platform delivers the most value when roles, approvals, and AD processes are well-structured from the beginning.

One Identity Active Roles has been a reliable solution for improving AD governance, reducing manual administration, and enforcing better access control across the environment. The overall review rating for One Identity Active Roles is 8 out of 10.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: May 7, 2026
Flag as inappropriate
PeerSpot user
Bhavesh Jha - PeerSpot reviewer
Technical Support Executive at Digitaltrack
Real User
Top 5Leaderboard
Apr 16, 2026
Automated role-based access has transformed daily directory tasks and reduces human errors
Pros and Cons
  • "The auto-provisioning or role-based permission handling makes my daily work easier and more efficient because it automates our environment since we don't have to manually onboard or deboard employees."

    What is our primary use case?

    My primary use case for One Identity Active Roles is to handle day-to-day Active Directory operations that allow different teams to perform tasks without giving them full administrative password or access. This enables management in a safer mode and in the most organized way.

    In daily operation, the help desk handles password resetting or account unlocking without admin rights. This is our real-time example. When new users are created in Active Directory, the configurations are automatically applied. This really helps in automating the workload and reducing human errors.

    What is most valuable?

    The best features of One Identity Active Roles are its automated features, provisioning or deprovisioning users, and its role-based permission handling where access is assigned through roles instead of giving full permission individually. This simplifies management in a large environment.

    The auto-provisioning or role-based permission handling makes my daily work easier and more efficient because it automates our environment since we don't have to manually onboard or deboard employees. It is totally automated which helps in reducing the workload of the IT team by about 50 to 60 percent. This makes our job easier and efficient without having human errors.

    One Identity Active Roles has had a great positive impact on our organization. It has really made administrator directory management easy in a controlled way and has improved security due to reduced direct access to applications or systems, thus saving time.

    I can say we have a positive impact in terms of metrics. It has really reduced administrative efforts, with a 40 to 60 percent decrease in time spent on routine Active Directory tasks such as user creation, password resetting, or any group changing for employees. This really helped the team to handle requests without any escalations and also allowed for faster user provisioning.

    What needs improvement?

    Any improvement needed as of now is non-existent; it is perfectly working in my environment. One Identity Active Roles provides great features with a smooth process.

    The initial setup of One Identity Active Roles can be more simplified. Apart from this, everything is perfect.

    For how long have I used the solution?

    I have been using One Identity Active Roles for more than four years.

    What do I think about the stability of the solution?

    One Identity Active Roles is stable.

    What do I think about the scalability of the solution?

    The scalability of One Identity Active Roles is excellent and matches our organization's growth.

    How are customer service and support?

    The customer support for One Identity Active Roles is excellent in their technical part and provides resolution for any technical issues.

    Which solution did I use previously and why did I switch?

    Since I started, we have been using One Identity Active Roles only as our solution.

    How was the initial setup?

    The initial setup of One Identity Active Roles can be more simplified.

    What about the implementation team?

    My experience with pricing, setup cost, and licensing was straightforward. We have great teaming with the vendor sales team, so there is no issue with the pricing or setup cost or licensing. They really helped in the procurement of the solution.

    What was our ROI?

    We have seen a great return on investment in using One Identity Active Roles after deployment, both in terms of cost savings and operational efficiency.

    What's my experience with pricing, setup cost, and licensing?

    My experience with pricing, setup cost, and licensing was straightforward.

    Which other solutions did I evaluate?

    We have not evaluated other options before choosing One Identity Active Roles.

    What other advice do I have?

    I don't have any additional thoughts about my main use case. I don't want to add anything else about the features. I would really recommend One Identity Active Roles to others looking into using it. I have given this review a rating of 8.

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
    Last updated: Apr 16, 2026
    Flag as inappropriate
    PeerSpot user
    Ankush Kondewar - PeerSpot reviewer
    Senior Technical Support Executive at DigitalTrack Solutions Pvt Ltd
    Real User
    Top 5Leaderboard
    Apr 2, 2026
    Automation has improved secure role-based access and reduces errors in user account management
    Pros and Cons
    • "One Identity Active Roles has helped us improve security with smooth processes."

      What is our primary use case?

      When a new user is created, predefined rules automatically apply naming standards and assigned groups. This reduces manual tasks while ensuring consistency across all operations. It prevents and avoids mistakes during the account setup.

      How has it helped my organization?

      One Identity Active Roles has helped us improve security with smooth processes. It provides role-based control that ensures every action in the AD follows the rules. This provides great outcomes and improvements in our organization's process.

      We have seen fewer mistakes and it is saving our time. It provides great centralized control and security by limiting access rights. These are the positive outcomes we are experiencing.

      What is most valuable?

      The best feature of One Identity Active Roles is its ability to control delegations. It allows us to assign limited access to team members based on their roles and responsibilities. This helps us reduce risk while keeping operations smooth and provides more secure AD management.

      Delegating tasks like password resets has impacted positively in our organization and has helped us to smoothen and speed up our work. It allows organizations to control user accounts, their permissions and changes in a more structured and simpler way. This helps improve both security and the application process.

      What needs improvement?

      I do not see anything that needs to be changed as of now concerning the organization's needs because it is working very well and it is providing great features with great processes. The initial setup could be simpler because sometimes it feels like it should be more straightforward.

      For how long have I used the solution?

      I have been working in my current field for more than eight years. I have been using One Identity Active Roles for more than three years.

      How are customer service and support?

      The vendor is ready to provide technical support 24/7 and able to resolve issues in a given timeline with proper root cause analysis of the issue.

      Which solution did I use previously and why did I switch?

      We have not evaluated other options.

      How was the initial setup?

      I had a great experience with the pricing, setup cost, and licensing because the sales team of the vendor was very helpful during all of this procedure and process.

      What was our ROI?

      I have seen a good return on investment with One Identity Active Roles. It is helping us to save our efforts and time to manage all these processes and tasks within the time limit. It is saving our team time as well as the money of the organization.

      What other advice do I have?

      I highly recommend One Identity Active Roles for any organization looking for strong management of their Active Directory in their environment with strong control, automation, and security features. Organizations can consider this solution the best fit. I also advise starting with the basic configuration and expanding gradually while providing proper training to the IT team. This will be helpful and beneficial over time. I give this product a rating of 9 out of 10.

      Which deployment model are you using for this solution?

      On-premises

      If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

      Other
      Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
      Last updated: Apr 2, 2026
      Flag as inappropriate
      PeerSpot user
      Buyer's Guide
      Download our free One Identity Active Roles Report and get advice and tips from experienced pros sharing their opinions.
      Updated: May 2026
      Buyer's Guide
      Download our free One Identity Active Roles Report and get advice and tips from experienced pros sharing their opinions.