No more typing reviews! Try our Samantha, our new voice AI agent.

One Identity Safeguard Valuable Features

Mahesh Malve - PeerSpot reviewer
Mahesh Malve
Senior Business Development Associate at DigitalTrack Solutions ind pvt ltd

One Identity Safeguard offers several strong features, but the best ones are centered around securing and controlling privileged access. First, password vaulting and automated credential rotation is a key feature. It securely stores privileged credentials and automatically rotates them after use or on a schedule, reducing the risk of password misuse. Second, privileged session management is very powerful. It allows real-time monitoring, recording, and playback of sessions, which helps in auditing and investigating any suspicious activity. It also provides audit and compliance reporting. All activities are logged, indexed, and searchable, making it easier to meet compliance requirements. Finally, privileged analysis and threat detection uses behavior analysis to detect anomalies and identify potential security risks before they become incidents.

One Identity Safeguard has had a very positive impact on our organization, especially in strengthening our security posture and improving operational efficiency. One of the biggest improvements is around privileged access control. Earlier, managing shared admin credentials was a challenge, but with One Identity Safeguard, we now have centralized credential vaulting and automated password rotation, which has significantly reduced the risk of misuse or credential leakage. Another key benefit is session management and monitoring. We now have full visibility into all privileged sessions. Real-time monitoring allows us to identify and respond to suspicious activities instantly. Session recording and playback have helped us resolve incidents faster and maintain accountability across teams. From a compliance perspective, it has been a major advantage. We can easily generate audit trails, which saves a lot of time during audits. It helps us align with standards such as ISO, PCI DSS, and internal governance policies by ensuring complete traceability of privileged actions. Operationally, it has also improved efficiency. Admins no longer need to remember or share passwords. This reduces dependency on manual processes and minimizes human errors.

With One Identity Safeguard, we have seen clear, measurable improvements across security, operations, and compliance. Regarding audit and compliance efficiency, earlier, preparing for audits used to take two to three days, especially when gathering logs from multiple systems. With One Identity Safeguard's centralized reporting and session records, we have reduced that to just a few hours, achieving 60 to 70 percent time savings. Auditors now get direct session playback and detailed reports, which has significantly reduced back and forth queries. Regarding faster incident investigation, before implementation, investigating a privileged activity could take four to six hours. Now, with session playback, we can identify a root cause within 30 to 45 minutes, improving response time by nearly 70 to 80 percent. Regarding reduction in security risk, we have eliminated shared credentials, which reduced the risk of unauthorized access. Automated password rotation and vaulting have led to a noticeable drop in credential-related incidents, around 40 to 50 percent. Real-time monitoring has helped us proactively detect and stop suspicious sessions before escalations. Regarding operational productivity, the admin team saves time as they no longer manually manage or share passwords. Access provisioning is faster, improving efficiency by 30 to 40 percent in daily privileged operations.

View full review »
Varun Mehra - PeerSpot reviewer
Varun Mehra
collaboration support engineer at a retailer with 11-50 employees

In my opinion, one of the best features of One Identity Safeguard is privileged password management. It securely stores credentials and automatically rotates passwords, which reduces the risk of misuse and removes the need for manual handling. Another standout feature is session monitoring and recording. It allows full visibility into what users are doing during privileged sessions, with the ability to record, replay, and audit activities, which is very helpful for security and compliance. I also find the real-time monitoring and alerting very valuable. The system can detect suspicious behavior and even block or terminate sessions if something looks risky, which adds a strong, proactive security layer. Lastly, the automated workflow and approval systems stand out. Access requests go through proper approvals with defined policies, which ensures controlled and traceable access to critical systems. Overall, the combination of password vaulting, session control, and automation makes it a very strong PAM solution for securing privileged access.

The alerting feature has been very useful for us. For example, we once had a situation where a privileged account tried to access a system outside of normal working hours. One Identity Safeguard triggered an alert immediately and we were able to review the session in real time and stop it before any changes were made. It helped us catch a potential security risk early. Also, the session recording made it easy to verify what was attempted, which helped during an internal review. One additional benefit is the ease of auditing. All activities are logged and easy to track, which saves a lot of time during compliance checks. The centralized dashboard also gives a clear view of who has access to what, which is very helpful for day-to-day management.

View full review »
Prithviraj kallurkar - PeerSpot reviewer
Prithviraj kallurkar
Business Development Executive at Digitaltrack

In my opinion, the best features of One Identity Safeguard are the ones that directly improve both security and operational control. First, privileged session monitoring and recording stand out. One Identity Safeguard can capture and replay entire sessions with searchable logs, even down to the commands and screen activity. This is extremely useful for audits and incident investigations. Second would be secure password vaulting with automated rotation, which is a big advantage. It eliminates manual credential handling and reduces the risk of password exposure while enforcing strong security policies. Another key feature is real-time monitoring and threat detection. One Identity Safeguard can detect suspicious behavior during a session and even block unsafe actions, which adds a proactive security layer rather than just reactive logging. Finally, centralized privileged access governance is an essential feature. Bringing password management, session control, and analytics into a single platform makes it much easier to manage hybrid environments effectively.

Session monitoring and recording, even from demos and industry feedback, has the biggest impact on audits in terms of clarity and speed. Instead of relying only on logs or user statements, with One Identity Safeguard, I can actually replay a full session, see exactly what commands were run, what changes were made, and in what sequence. During an audit or investigation, instead of spending hours correlating logs, my team can directly pull the session recording as evidence. It reduces ambiguity, speeds up root cause analysis, and makes compliance reporting much stronger and more defensible. For example, if there is any suspected misconfiguration or data change, I do not have to guess; I can literally watch what happened.

For day-to-day operations, automated password rotation in One Identity Safeguard shifts us from a manual, reactive process to a fully automated, policy-driven approach. Today, IT teams often spend time resetting privileged passwords, handling access requests, and responding to potential credential exposure. With automation in place, most of the effort is eliminated. Passwords are rotated automatically after each use or on a scheduled basis, so there is no need for frequent manual resets. In fact, it does not just reduce how often we reset passwords; it removes the need for manual resets almost entirely. In terms of workload, this means fewer support tickets related to password issues, less coordination between teams for credential sharing, and reduced human error. The IT team can shift focus from routine tasks to more strategic work like security improvements and system optimization. One important operational change is that users no longer handle actual credentials. They request access, get approved, and One Identity Safeguard manages everything in the background. That is a big shift in thinking, but it slightly improves security.

View full review »
Buyer's Guide
One Identity Safeguard
June 2026
Learn what your peers think about One Identity Safeguard. Get advice and tips from experienced pros sharing their opinions. Updated: June 2026.
900,644 professionals have used our research since 2012.
Aditi Kunte-Gummul - PeerSpot reviewer
Aditi Kunte-Gummul
Senior ISR at Digital Track Solutions

One Identity Safeguard's best features that stand out the most are its strong combination of password vault, session monitoring, and automated access control. It securely stores and automatically rotates privileged credentials, so users never see the actual password, which greatly reduces security risk. The session recording and real-time monitoring provide complete visibility into all administrative activities, making auditing and compliance much easier. Another key feature is its approval-based workflow system that ensures every privileged access request is controlled and time-bound, along with real-time alerting for threat detection that helps quickly identify suspicious behavior. Overall, these features work together to provide a highly secure, transparent, and well-governed privileged access environment that fits seamlessly into daily operations.

Session monitoring and real-time alerting have improved our security by giving full visibility into admin activities. For example, we once detected an unusual command during a privileged session and could immediately review the live session recording and take action, which helped prevent a potential threat. Overall, it has made our approach more proactive by allowing us to monitor, detect, and respond to suspicious behavior instantly, instead of reacting after an issue occurs.

One Identity Safeguard has had a strong positive impact on our organization by significantly improving security, control, and accountability around privileged access. We no longer rely on shared or static credentials and instead use controlled, time-bound access with full session monitoring, which has reduced the risk of misuse and insider threats. It also makes audits much easier because every activity is recorded and traceable. Operationally, it has streamlined workflows by automating password management and access approvals, saving time for the IT team and creating a more structured, secure, and compliant environment overall.

View full review »
ST
Sindre Toft
Senior Information Technology Consultant at Helse Nord IKT

One Identity Safeguard's best features are that it provides easy control over your items and what you manage, and it is generally user-friendly, though we are still working on some issues.

The UI for the privileged passwords in One Identity Safeguard is really good. The support for it has also been excellent, but for the privileged sessions, the UI is not that great. We have it currently locked off, so only the administrators work in there, but it is not optimal. We are also missing a lot of documentation in my opinion for some of the features. Overall, it is acceptable. I would not say it is perfect, but it works.

The cloud assistant feature enables me to add an extra layer of security for critical passwords without needing time-consuming approval. We primarily use it for vendors, not for internal users, but we are moving towards having to use it more for internal use as well.

Since using One Identity Safeguard, we have more control over who accesses what, especially regarding vendors. We have seen billing actually go down because we now know how long vendors have been on the server and how long they have worked on it. Overall, we have a more centralized place to store items and have control over them.

View full review »
SusangRamesh - PeerSpot reviewer
SusangRamesh
Product Marketing Manager at OJCommerce, LLC

One major advantage of One Identity Safeguard is that the workflow engine is completely automated, which I enjoy very much. Also, approving or creating new passwords is completely remote. I can do it from anywhere, even from my system, and it is completely secure as well. The workflow engine is completely automated and also the onboarding of assets is very much quicker through Safeguard, which I appreciate very much.

One thing that I appreciate very much with One Identity Safeguard is the user-centric design that it provides. This user-centric design ensures that there is a reduced learning curve for using the product and the product is ready to use from day one. Very minimal knowledge-based documents are required, which speeds up the entire process for us.

Definitely, it helps us onboard new members in a much quicker way. Because any new software, any new platform is much harder to get a grasp on. But with the very specific user-centric design that Safeguard provides, it is very easy to understand what is happening and from day one itself, I am able to see the results of how quick it is and how efficient it has made our entire team.

With One Identity Safeguard, the number of password thefts or password misuse has greatly reduced now. Because we have a lot of senior-level, administrative-level roles that we have and their data, their password is very much essential for us. And with One Identity Safeguard, we are able to save that information very well. Apart from One Identity Safeguard's password protection, there is also the session management that it provides, which is very useful for us. We are able to control, monitor, and even record these privileged sessions that we have so that it makes us identify patterns and reduce risks much more easily.

Our overall efficiency has improved 35% after One Identity Safeguard. Also with the session recording and the session audit that One Identity provides, we are able to completely zero in on where the issue is and we are able to correct it in a much quicker manner rather than earlier. Our manual errors are greatly reduced with the help of One Identity and also we are able to completely relax and do our work more rather than focusing on unnecessary things, which One Identity takes care of for us.

View full review »
PP
PravinPatil
Senior Engineer at Pantomath Group

The most valuable features of One Identity Safeguard are password vaulting, session monitoring, and approval-based access controls. These features help secure privileged accounts, improve visibility into administrative activities, and ensure that access to critical systems is properly controlled and audited.

Session monitoring has been particularly useful during troubleshooting and audit reviews. When a question arose about a configuration change on a critical server, the recorded session could be reviewed to quickly understand what actions were performed. The approval workflow is another significant feature, as it ensures that privileged access is granted only when needed and follows the appropriate authorization process, which strengthens governance and accountability.

Centralized password management is also greatly appreciated, as it reduces the need for administrators to know or store privileged credentials directly, which improves security and simplifies access management. One Identity Safeguard brings access control, auditing, and credential management together in a single solution, making day-to-day administration more efficient.

One Identity Safeguard has had a very positive impact on operations because it is used in daily activities. Improved control over privileged access across the organization has been achieved. Before One Identity Safeguard, managing administrative credentials and tracking privileged activities involved more manual effort, but after implementation, access became more secure and easier to audit. It has helped reduce the risk of unauthorized access and improved the overall security and compliance posture.

View full review »
HA
Anumula Hitesh
Senior Business Development Executive at Digitaltrack

One key benefit of my main use case with One Identity Safeguard is that it helped me eliminate shared admin credentials, which was a major security risk earlier. Now, every access request is tracked and tied to an individual user, improving accountability. It also simplified audits by providing clear session records, which solved a big challenge I previously faced with compliance visibility.

The best features One Identity Safeguard offers include credential injection, session monitoring, and role-based access control. Credential injection ensures passwords are never exposed to users, improving security, while session monitoring and recording provide full visibility and an audit trail of activity. Role-based access helps enforce a least privilege policy, and additional features such as real-time alerts, reporting, and integration with other systems make it a comprehensive solution for managing and securing privilege.

View full review »
PP
Prathamesh Pawar
Sr.Technical Support Executive at Digitaltrack Solution Private Limited

The most valuable features of One Identity Safeguard are its strong privilege access control and session security capabilities. One key feature is password vaulting with automated rotation, which ensures that privileged credentials are never exposed to users and are regularly updated. Key features include password vaulting with rotation, session monitoring and recording, secure remote access without exposing credentials, approval-based workflows, and seamless integration with Active Directory.

One Identity Safeguard integrates seamlessly with Microsoft Active Directory, simplifying user authentication and access management. The integration provides centralized authentication, group-based access control, and automated management of privileged domain accounts, reducing manual efforts and improving security.

Additional features include session proxy access, granular policy control, threat detection, detailed audit logs, multifactor authentication, and high availability support.

View full review »
Mahesh Dattatray Malve - PeerSpot reviewer
Mahesh Dattatray Malve
Senior Business Development Executive at Digitaltrack

The strongest features of One Identity Safeguard are definitely privileged session monitoring, password vaulting, and controlled temporary access workflows. Those are the areas that stood out most in my day-to-day operations.

A feature area that I think is sometimes underrated is the centralized visibility One Identity Safeguard provides across privileged activities in a large environment.

One Identity Safeguard had a positive impact mainly in improving privilege access control, operational accountability, and audit readiness. Before implementing PAM properly, privileged access management was more dependent on manual controls and shared administrative practices, which increases both security and operational risk. One major improvement was better control over privileged credentials.

There were definitely some measurable operational improvements after implementing One Identity Safeguard. One noticeable improvement was audit readiness and reduction in access-related observations. Earlier, collecting evidence for privileged access reviews or administrative activity tracking required more manual efforts. With centralized session logging and monitoring, audit preparation becomes much faster and structured.

They mainly helped by improving accountability and reducing unnecessary permanent privilege access. For example, during production troubleshooting, external vendor or internal support teams sometimes needed elevated access urgently. Earlier, in many environments, teams would share privileged credentials directly to save time, but that created security and audit risk because multiple people could use the same account without proper visibility. With One Identity Safeguard, access could be approved for a limited duration and the session was monitored and logged.

View full review »
Aryan Priyanish D. - PeerSpot reviewer
Aryan Priyanish D.
Developer Intern at Stealth

In my opinion, the strongest features of One Identity Safeguard are session monitoring, real-time session control, and the privileged password vault. The password vault has been a game changer because it provides a secure and controlled way to store, manage, and rotate sensitive credentials without exposing them to users. Session monitoring allows us to track and record privileged user activity in real time, which improves visibility and accountability. Overall, One Identity Safeguard has had a positive impact on our organization by strengthening security through centralized privileged access control and improving efficiency through automation. Real-time session monitoring has further enhanced oversight and reduced risk.

View full review »
MG
SohanMulik
Seniour System Admin at Pantomath Group

The best features of One Identity Safeguard are centralized authentication, seamless Active Directory integration, single sign-on on Linux and UNIX systems, role-based access control, policy enforcement, and auditing capability, which improve security and simplify administration and enhance compliance across the enterprise environment.

The most valuable feature is seamless integration with Active Directory, allowing Linux and UNIX systems to use centralized AD authentication, enabling single sign-on, centralized user management, consistent security policy, and easier access control without maintaining separate local accounts.

Additionally, the auditing, policy enforcement, and centralized access management features of One Identity Safeguard are very valuable as they improve security, visibility, simplify compliance management, and reduce administrative effort across Linux and UNIX environments.

One Identity Safeguard has positively impacted my organization by reducing manual user management efforts, improving security through centralized authentication, eliminating most local account-related issues, simplifying access management, and improving audit and compliance visibility across Linux and UNIX systems.

View full review »
Twinkle Solanki - PeerSpot reviewer
Twinkle Solanki
Business development executive at Digitaltrack solution Pvt Ltd

The best features of One Identity Safeguard mainly revolve around strong security, visibility, and control over privileged access. One of the most valuable features is its password management, where sensitive credentials are securely stored, automatically rotated, and accessed only through a controlled workflow, reducing the risk of misuse. Another standout feature is session monitoring and recording, which captures every action taken during privileged sessions.

The session monitoring and recording feature in One Identity Safeguard has been extremely valuable for our team, especially from a security and compliance perspective. We use it quite regularly whenever an administrator accesses critical systems. Every privileged session is recorded in detail, covering screen activity, commands executed, and user behavior, so we have a complete audit trail. This has helped us quickly investigate incidents, verify actions taken on sensitive systems, and ensure that all activities follow internal policies.

One Identity Safeguard has had a very positive impact on our organization, especially in terms of security, efficiency, and visibility. It has helped us centralize and control privileged access and provided a structured secure approach. As a result, we now have much better visibility into accessing credentialed systems and the actions performed, which has improved accountability and compliance.

One Identity Safeguard has significantly improved accountability and compliance by giving us complete visibility of all privileged activities. Every access requires approval, and a session is logged and recorded, which means we always have a great audit trail of who accessed what and when. This has made internal and external audits much smoother, as we can quickly provide evidence without manually tracking.

View full review »
KartikSwami - PeerSpot reviewer
KartikSwami
Assistant Manager at a comms service provider with 10,001+ employees

One best feature One Identity Safeguard offers is multi-factor authentication, which adds extra security by requiring more than one verification step. When I mention requiring more than one verification step, I am referring to multi-factor authentication, and it helps to secure systems because it will protect the data. One Identity Safeguard has positively impacted my organization by helping to increase security because of password vaulting.

Password management has improved as it is easier now; for example, I experienced improved efficiency when my IT team needs to access a production server. I have noticed measurable outcomes regarding reduced time to access servers and fewer security incidents since using One Identity Safeguard because it helps me to secure my data and it is reliable.

View full review »
Aman Khandelwal - PeerSpot reviewer
Aman Khandelwal
IT Manager at Flash.co

The best features are that the user interface is very good and the functionality is smooth, with a good user experience overall. Apart from this, the third-party integration that One Identity Safeguard provides is another major feature that I appreciate. It integrates well with other third-party websites and solutions, allowing the end user to log in or save their password on those websites using One Identity Safeguard.

A specific third-party integration that I found especially useful was when we integrated Salesforce Cloud, which was a smooth experience overall without any bottlenecks during the integration process, resulting in a good workflow.

One Identity Safeguard has positively impacted my organization by reducing the cases of password theft and increasing efficiency. Our employees no longer have to worry about password theft, allowing them to be more efficient in their work. It has helped us reduce the effort that our employees used to expend by entering passwords and user IDs manually before using One Identity Safeguard.

The incidents of password theft have reduced by around forty percent, which has been a very good result from using One Identity Safeguard for our organization and is a great benefit for us.

We have saved a lot of time because users no longer have to save passwords manually, as everything has been automated. This saving of time leads to increased overall efficiency of our organization.

View full review »
Chetan Bhati - PeerSpot reviewer
Chetan Bhati
Human Toxicology Engineer at Arrow PC Network Pvt Ltd

Some of the best features of One Identity Safeguard in my opinion are its password vaulting, session monitoring, and detailed auditing capabilities. It securely stores privileged credentials, provides real-time monitoring and recording of admin sessions, and maintains complete audit logs, which helps in improving security and meeting compliance requirements.

One Identity Safeguard has positively impacted our organization by improving our overall security through controlled and monitored privileged access. We have reduced risk related to password misuse, and auditing has become much easier. It also helps in maintaining compliance and gives better visibility into admin activities across the environment.

View full review »
HL
Helena Helena
Head of External Relations at Lilo.org

One Identity Safeguard provides multiple features, including data protection services. These tools are able to assess the security demands and compliance requirements. After assessing, I am able to know how data can be saved, and when data is properly saved, everything becomes easier because my data is stored securely and no one can access it.

One of the reasons why I need this is because it has the ability to centralize security monitoring across the entire data infrastructure, and it helps to automate and connect devices in a single platform whereby I can safeguard my data through multiple authentications.

Among the features, there is the AI assistant which helps to verify the quality of data and also verifies the security setups. I appreciate that this tool eliminates the manual process and time-consuming tasks for gathering evidence for compliance by auditing automatically, and it also pulls information from all integrated tools. This helps to ensure that the security of the integrated ecosystem is functioning and protected.

One Identity Safeguard works with One Login, and when they work together, they provide the best outcome which increases the security factors. Cloud integration is another valuable feature that enhances the overall security capabilities.

View full review »
PI
Pragyawan Ipo
Tester at PantomathGroup

The best features One Identity Safeguard offers, which stand out for me, include password vaulting, session monitoring, and privileged access control, which collectively help us secure sensitive accounts, control access to critical systems, and maintain an audit trail of privileged activities. Together, they provide a good balance between security and operational efficiency.

Session monitoring has been very useful for my team from both a security and audit perspective, giving us visibility into privileged activity and ensuring that administrative access is being used appropriately. For example, during troubleshooting or system maintenance, we can review the session record if there are questions about changes made on a server, which has helped improve accountability and made the review much easier.

Another feature I appreciate is the approval-based access workflow, as it gives us more control over privileged access requests without slowing down operations too much. What stands out to me is how the platform combines security, auditing, and access management in one place, making it easier to manage privileged accounts across different systems.

One of the biggest positive impacts of One Identity Safeguard on my organization is the improved control over privileged access; before implementing it, managing administrative credentials and tracking privileged activity required more manual effort. After implementation, access became more structured, and we had better visibility into who was accessing critical systems and when, which helped strengthen our security posture and made audit-related activities easier to manage.

One measurable improvement I observed was the reduction in time spent managing privileged credentials and access requests, as tasks that previously involved manual coordination became more streamlined through the platform. We also improved audit readiness because privileged sessions and access activities were centrally tracked, which reduced the effort required during compliance reviews and investigations.

View full review »
Nikhil Jethwa - PeerSpot reviewer
Nikhil Jethwa
Technical Consultant at ProTechmanize Solutions (P) Ltd.

The best feature for us is the secure password vaulting, session recording, and automated approval workflows, because this gives us strong control over privileged access and helps us stay compliant both within our organization and with respect to customer compliance. The second feature that stands out is the real-time session monitoring and automatic credential rotation.

Automatic credential rotation helps our team by removing the need for manual changes to privileged passwords, reducing the risk of stale or shared credentials and ensuring that every access is controlled and compliant. It saves time and reduces risk since passwords are rotated after every use, so no one keeps passwords for long-term access. This prevents misuse and limits the impact of credential leaks.

We have found that we are able to comply with all security standards through the password rotation, which has helped us improve our security posture by centrally managing all privileged action accounts and enforcing strict access control to these accounts. Since the session monitoring feature and audit trail are available, we can see what changes were made by the user, who used this, how many times, and what was done in this session. We have also seen a reduction in IT operations because of password credential rotation and password management, which has reduced our manual work and increased our efficiency and security.

Our manual intervention has decreased because of the time we were taking for password management, and we have increased security with roughly a twenty to thirty percent decrease in IT calls, allowing the IT team to do other jobs because the load of password management has decreased. We have increased accountability since every privileged action is now traceable, which significantly strengthens our internal security control, and we have been able to get the compliance checks done much faster.

We have saved time since we do not have to manually manage passwords because One Identity Safeguard has automated that process. We have saved approximately thirty to forty percent of our time, and our team is spending more time on critical issues rather than managing passwords. This has reduced repetitive IT tasks and allowed our team to focus on more significant projects, and it has also reduced the risk of breaches and costly security penalties.

We have always received positive feedback from our team. The password rotation feature of this product is appreciated by all users, and they like this because they have saved time using this product, since they were previously wasting time on password management and manual interventions.

View full review »
Vishal Koovaparambil - PeerSpot reviewer
Vishal Koovaparambil
Senior Cyber Security Analyst at DigitalTrack Solutions Pvt Ltd

The best features One Identity Safeguard offers include secure credential vaulting, live session recording and playback, and just-in-time access workflows that prevent engineers from having permanent admin rights.

I find myself relying most on the live session recording feature. Being able to look up a specific command used during an administrative session and jump directly to that video timestamp makes finding security or operational mistakes very quickly, which is valuable for us.

One Identity Safeguard has positively impacted our organization in many ways by providing privileged access security and improving compliance. The overall access management, the better visibility we are getting into user accounts, and the better compliance controls are helping us in many ways.

View full review »
Shrinkhala Singh - PeerSpot reviewer
Shrinkhala Singh
Senior Manager at Agriculture Skill Council of India
There is one thing that we are currently focusing on, which is detecting behaviors or threat behaviors to improve our analysis of threat detection.

As I mentioned earlier, this past trend analysis of all these threat attacks, flagging up the red issues, is something very good and happens in a proactive manner. One Identity Safeguard has definitely strengthened our operational security because what they do is combine your password with a secure solution and analyze any deviations such as unusual password activity.

One Identity Safeguard is a game changer for us, especially for rapid business expansion and building trust with our clients.

View full review »
SM
Sohan Mulik
Working at 3i Infotech

One Identity Safeguard offers several strong features for PAM. The best ones are password vaulting, automatic password rotation, privileged session monitoring and recording, role-based access control, and approval workflows. I also appreciate the centralized log management, auditing and compliance reporting, and integration with Active Directory and enterprise environments. Features such as session playback, real-time monitoring, and REST API support are very useful for daily administration and security operations.

The feature that has had the biggest impact on my daily operations is the password vaulting and automatic password rotation. It has significantly improved security by eliminating manual password sharing and reducing the risk of unauthorized access. It also saves operational time because administrators can securely request access through One Identity Safeguard without knowing the actual password. Session monitoring and auditing also help a great deal during troubleshooting and compliance reviews.

One additional advantage is that it provides centralized control and complete audit visibility for privileged access activities.

View full review »
RP
Rohan Paul
Data Manager at Gitarattan International Business School

The best features One Identity Safeguard offers include Privileged Password Vaulting as the first one. The strongest features are Session Recording and Password Vaulting with rotation and Just-in-Time Access, which together give strong control and visibility and audit readiness.

The Session Recording feature specifically helps my team and makes things easier for audits or investigations by giving a clear, time-stamped playback of privileged activities. It removes guesswork, speeds up audits, and ensures full accountability for admin actions.

One Identity Safeguard has positively impacted my organization by improving our security posture, eliminating shared privileged credentials, increasing visibility into admin activity, and making compliance audits faster and more reliable.

View full review »
Ankush Kondewar - PeerSpot reviewer
Ankush Kondewar
Senior Technical Support Executive at DigitalTrack Solutions Pvt Ltd

One Identity Safeguard offers secure password vaulting, which ensures passwords are not shared or exposed, significantly improving security, and session monitoring and recording, allowing us to track all the admin activities easily.

These features help our team day-to-day by eliminating password sharing among the admins and ensuring secure access to critical systems, which reduces security risks, while tracking and controlling privileged access prevents misuse of admin accounts and improves overall system security.

One Identity Safeguard has positively impacted our organization by increasing visibility into privileged user activities, allowing us to track and audit all actions easily, which helps in compliance and security.

View full review »
reviewer2814237 - PeerSpot reviewer
reviewer2814237
Network Engineer at a outsourcing company with 1,001-5,000 employees

I think the best features One Identity Safeguard offers are strong password vaulting with auto-rotation, session monitoring and recording, and real-time alerts that help catch suspicious activity quickly.

The real-time alerts from One Identity Safeguard are pretty reliable.

Alerts come in quickly, and they have helped us respond faster to suspicious activity before it becomes a bigger issue.

The session recording and audit logs from One Identity Safeguard really stand out.

They make tracking and reviewing activity easy.

But it would be even better if the UI was a bit more user-friendly.

One Identity Safeguard has improved security a lot by controlling privileged access, and it also reduced risks since all sensitive activities are monitored and logged.

We have seen fewer security risks since access is controlled and monitored by One Identity Safeguard, and it definitely helped with compliance because all actions are logged and easy to audit.

View full review »
reviewer2846145 - PeerSpot reviewer
reviewer2846145
Seniour System Admin at a financial services firm with 51-200 employees

The best features of One Identity Safeguard authentication services are seamless Active Directory integration, centralized integration, authentication and single sign-on for Linux and Unix systems, policy enforcement, and centralized auditing.

The Active Directory integration in One Identity Safeguard allows for seamless integration in our environment because Linux and Unix systems can directly use AD credentials for authentication without maintaining separate local user profiles. Once it is integrated properly with AD, user access management becomes much easier and centralized.

One Identity Safeguard has positively impacted our environment by simplifying Linux and Unix authentication, reducing dependency on local accounts, improving centralized access control, and making user onboarding and offboarding much easier from a security and operational perspective.

One example where One Identity Safeguard services helped us was during employee offboarding. Before, administrators had to manually remove or disable local accounts from multiple Linux servers, which was time-consuming and sometimes risky if something was missed. By integrating with Active Directory through Safeguard, disabling the AD account automatically blocks access across connected Linux and Unix systems, which improves security and reduces manual effort.

From an accuracy and reliability perspective, One Identity Safeguard has been generally consistent in our environment.

View full review »
Niyajuddin Tiwale - PeerSpot reviewer
Niyajuddin Tiwale
Technique at Digitaltrack

The excellent session recording and monitoring stand out as the best features of One Identity Safeguard. It is a compliance-based deployment and can work across on-premises as well as cloud environments.

Session recording and monitoring have benefited my organization by ensuring that every privileged session is monitored in real-time. Whenever any admin logs into the server through One Identity Safeguard, the system records it and the screen is viewed. The security team can watch live sessions if needed or review the recordings whenever they need them.

One Identity Safeguard has saved our compliance efforts, so generating audit reports that used to take days now takes a minute, which is a very good example of its efficiency.

One Identity Safeguard has positively impacted our organization by giving us complete visibility over all privileged access, making compliance audits much easier than before, and ensuring that access is not time-bound, allowing admins access only for the duration they need it.

Compliance audits have become much simpler with One Identity Safeguard, as every access request, approval, session, and action is logged automatically. The audit team can ask who accessed what system and when, and we are able to generate those types of reports in minutes, significantly reducing our efforts and costs.

View full review »
reviewer2803014 - PeerSpot reviewer
reviewer2803014
It Manager at a tech vendor with 10,001+ employees

The best feature that One Identity Safeguard provides is its flexibility, as well as the fact that it integrates well with other software like Salesforce, which I really appreciate.

The integration part of One Identity Safeguard has been quite beneficial for my workflow, especially with tools like Salesforce.

One Identity Safeguard is flexible and provides out-of-the-box integrations that have been very helpful for me, and the installation process was quite easy and smooth, which I would also rate as a feature.

One Identity Safeguard has positively impacted us because the fear of theft of passwords or IDs has been reduced to almost zero, significantly enhancing our security.

The reduction in password or ID theft risk with One Identity Safeguard has led to measurable changes as security incidents have been reduced, positively impacting us and increasing our efficiency.

View full review »
Nishant Patil - PeerSpot reviewer
Nishant Patil
Presales Consultant at a outsourcing company with 1,001-5,000 employees

The best features One Identity Safeguard offers include a secure password vault for privileged accounts, Privileged Access Management (PAM), session monitoring, and session recording. Additionally, MFA support is available. There are different benefits and features, including real-time monitoring of administrator activity, audit logs, and compliance reporting.

Session monitoring is a feature where all privileged user activities are monitored in real-time whenever an administrator accesses critical systems such as servers, firewalls, switches, or databases. For example, if a network engineer logs into a secure firewall using One Identity Safeguard, the complete session can be monitored and recorded, including the commands executed, the configuration changes made, the previous configuration, the login duration, and the logout activity.

One Identity Safeguard has positively impacted my organization by tracking admin activities in real time. It records privileged sessions, improves the accountability of engineers and administrators, and detects suspicious or unauthorized actions.

View full review »
reviewer2789601 - PeerSpot reviewer
reviewer2789601
Consultant at a computer software company with 11-50 employees

The best feature One Identity Safeguard offers is that it is a pretty new, modern tool that makes extensive use of its API. In general, it's easier than other tools to just perform maintenance work or perform work using the API of One Identity Safeguard. Also, the way that the access requests are structured—with entitlements and access request policies—makes it easier to govern data and identities. CyberArk, which is essentially the industry standard right now, is doing a very primitive job of helping the administrator with the task, and One Identity Safeguard is a lot better at this.

These features help my team day-to-day by making onboarding new users easier, and they also make it easier to create existing teams that are complete with their own password management, their own password profiles and rotations, password requirements, and who gets access to what, so it all makes it easier and faster.

One Identity Safeguard has positively impacted my organization by being another tool that we have in our arsenal to be able to get other clients as well, because we also sell One Identity IAM, and we can just bundle One Identity Safeguard with it. It also has a nice feature called remote access, which a lot of people want to use for externals in their organization, coupled with its just-in-time requisition, so it makes selling it much easier because One Identity is a company that's been in the field for ages.

View full review »
Satyam Gupta - PeerSpot reviewer
Satyam Gupta
Technical Support Executive at DigitalTrack Solutions Pvt Ltd

One Identity Safeguard offers several best features, including its privileged credential vaulting feature, automated password rotation, and privileged session management, along with session recording and playback.

The feature that I rely on the most is automated password rotation because it reduces the risk associated with static or shared privileged credentials and improves security by automatically changing passwords at defined intervals without manual intervention, helping us to meet compliance.

One Identity Safeguard has positively impacted our organization in many ways because it has improved our organization's privileged access security through centralized credential management, enforcing strong password control, and providing complete visibility into privileged user activities.

Since we have deployed this solution, we have experienced many positive outcomes, such as faster audit preparation by fifty to seventy percent and saving operational time by almost forty to sixty percent. We are also experiencing very good visibility and accountability, enabling quick investigation of privileged user activities.

The artificial intelligence-related governance and security capabilities of One Identity Safeguard are very strong because they operate within a framework of strict access control, with analytics and intelligent insights providing detailed monitoring and session tracking.

One Identity Safeguard is very accurate in its output and very reliable, particularly when identifying unusual privileged access behavior and potential security risks, providing insights based on monitoring user activities and established behavior patterns.

View full review »
Nitin Yadav - PeerSpot reviewer
Nitin Yadav
Network & Security Engineer at Arrow PC Network Pvt.Ltd.

The best features One Identity Safeguard offers include secure and controlled access along with real-time session controlling.

The real-time session control feature helps me in my daily tasks by providing session controlling and monitoring in user sessions that occur, allowing proactive management across web and platform access instead of reacting after something goes wrong.

Session monitoring and recording are also crucial parts of the features.

One Identity Safeguard has a noticeable positive impact around security and operational efficiency, providing secure, strong security, real-time monitoring, and full visibility.

Operational efficiency has improved as it requires less manual effort for the IT team and makes troubleshooting easier.

View full review »
Dhanaji Mali - PeerSpot reviewer
Dhanaji Mali
Technical Specialist at VDA Infosolutions Pvt. Ltd.

The session monitoring and recordings are the best features of One Identity Safeguard, allowing us to review what actions were performed during a session. This helps us in both troubleshooting and audits.

One Identity Safeguard makes compliance easier and really helps in incident investigation as well as visibility.

One Identity Safeguard has impacted our organization positively because it has helped us standardize how privileged access is managed and has also reduced dependency on manual efforts in password handling, improving operational control overall. It has reduced errors, and the manual efforts have been significantly reduced.

View full review »
Erik  Sjögren - PeerSpot reviewer
Erik Sjögren
Solution Architect at Atea

Most important, very easy to setup.

Safeguard for Privileged Passwords (SPP)

I have been using asset and account discovery. This means the product will assist in identifying privileged accounts across hosts, directories, and networks.

Other features include workflow and access requests. Typically time-based, which is best practice to restrict access. Workflows can have one or several approvers.

The "activity center" where I can place my custom queries and get automated reports. This will collect over time and you can see what has happened for a certain user.

I like that the upgrades are not complicated, if the appliance is clustered this is handled automatically.

Great variety of support for different platforms and protocols.

Safeguard for Privileged Sessions (SPS)

I have used something called centralized policy enforcement. You can set up a gateway proxy for privileged sessions where you are applying authentication, access controls, and security policies. This is for endpoints such as SSH, RDP, and telnet.

Then I have used session recording and audit trails. When the recording is being made, it actually records at the protocol level, meaning it can capture keystrokes, mouse input, and the GUI. The recordings can be digitally signed.

Real-time monitoring alerts. It can detect violations according to a policy. If there is a destructive command that is dangerous, it can look for those and can trigger an alert. If we want, it can also automatically terminate the session that is ongoing. Everything is indexed and searchable. It is like a forensics investigation and you can do searchable playback.

User behavior analytics. This is some kind of integration where in real time, it can detect anomalies, something that is not normal, and do some deeper insights on that matter.

I have successfully connected Identity Manager (IGA) to Safeguard to achieve Privilege Access Governance. This is being possible by using an OOTB connector in Identity Manager to talk to the Safeguard system. I can govern the data from Safeguard and provision PAM accounts from Identity Manager to achieve a complete lifecycle.

View full review »
Vivek_Jaiswal - PeerSpot reviewer
Vivek_Jaiswal
Security Engineer at LTI Mindtree

One Identity Safeguard offers the ability to identify and revoke access easily for terminated accounts, which reduces risk and simplifies control of access in case of detected threats.

It reduces a lot of risk and saves time; every account is synced, and it can grant access with role-based permissions across all users quickly, alerting us if any threat is detected.

I find that the deployment of One Identity Safeguard is very easy, with good integration and scalability of user accounts, enhancing feature capabilities and providing strong product support.

View full review »
Jonas Piliponis - PeerSpot reviewer
Jonas Piliponis
Chief Cyber Security Officer at a retailer with 51-200 employees

The best features One Identity Safeguard offers include video recordings to help us control our support risks.

Accessing and reviewing those recordings when needed is easy, and there are no problems with recording or reviewing.

One Identity Safeguard has positively impacted my organization by helping us manage risk. We have this product as Balabit, which is a good product that is very light and helps us check or assist with our needs.

View full review »
reviewer2679786 - PeerSpot reviewer
reviewer2679786
Consultant at a outsourcing company with 5,001-10,000 employees

There is ease of implementation. Compared to other PAM solutions, it is easy to implement and use from an administrator's point of view. That is the most important benefit. It is very simple to implement and use.

View full review »
AA
Aryan Dwivedi
Business Development Intern

The best features One Identity Safeguard offers include session monitoring, secure remote access, a security-focused approach, and privileged access control, which stand out to me the most.

Session monitoring and strong security features allow real-time control where the manager can watch live sessions and review recordings, providing a strong layer of security. The interface is friendly, and there is strong protection that builds trust, knowing that the manager has confidence in the system.

One Identity Safeguard provides very clear and detailed records of privileged access and user activities, making compliance with requirements easier, and the reports are customizable as I usually work upon them.

One Identity Safeguard has saved us security time, improved security, better compliance, increased trust in employees, and reduced risk since the tools provided by the company are now in safer hands. Security incidents have decreased significantly according to my seniors, and faster detection of unauthorized privileged access has become easier due to quick responses when someone uses an account without proper authority.

View full review »
Suraj Varma - PeerSpot reviewer
Suraj Varma
Network Security Engineer at Digitaltrack

The best feature of One Identity Safeguard, in my opinion, is its session monitoring, which includes full visibility with session recording, user-friendly access control, and helps in a compliance-ready environment.

The session monitoring feature of One Identity Safeguard stands out because it provides full visibility on which user is accessing which servers at what time, collecting all these logs and also providing data that can be used for audit purposes.

One Identity Safeguard has positively impacted our organization by providing strong security, compliance, and the data required for audits, making it really helpful.

View full review »
Mithun Sharma - PeerSpot reviewer
Mithun Sharma
Sr Technical Engineer at Arrow PC Network Pvt Ltd

The best feature of One Identity Safeguard is password vaulting combined with session management, which allows us to provide privileged access without exposing actual credentials to users. Users can access critical servers through approved workflows while all sessions are monitored and recorded for auditing and compliance.

The session management feature of One Identity Safeguard has a significant impact on my daily operations and compliance because it allows us to monitor and record all privileged activities performed on critical systems, reducing risk as administrators can access systems without knowing shared privileged passwords. If an incident occurs, we can replay recorded sessions to identify exactly what actions were performed by whom.

From a compliance perspective, One Identity Safeguard helps meet requirements for standards through session recording and audit logs, allowing us to provide evidence of privileged access approvals, session recordings, and user activity during audits without relying on manual documentation.

View full review »
reviewer2686314 - PeerSpot reviewer
reviewer2686314
IAM Specialist

The implementation time was quick. It was basically up and running within a week. 

I like the features that allow you to rotate your password, give you access to an RDP session without knowing your password, and record sessions. This is helpful for external people coming in, as we can review what they have been doing and use the recordings for training purposes. For example, if I want to upgrade a system that an external consultant did, these recordings can help identify issues. We can set different keywords to cut off a session if something malicious is detected. We can prevent a malicious action.

We use it to log in to various systems such as Linux and Windows, which is very convenient. There is also a personal vault for browser use, allowing us to save credentials for business-related websites securely. If a user leaves the company, I can assign that vault to another user. I can share credentials, save files within One Identity Safeguard, and ensure that certificates and license numbers are securely stored. I can see who has access to the files. I can save license numbers and license files in One Identity Safeguard, so I know where they are saved. I can also give access only to those who need it, as opposed to them residing on a file share or OneDrive, where access is not as transparent.

View full review »
NT
Nick Turner
Systems Administrator at a university with 10,001+ employees

It provides secure and centralized access to both on-prem and cloud servers, which we did not have before. Previously, there were myriad ways to access our servers, so this centralizing feature is beneficial. 

The auditing and approval mechanisms are features we did not have before and are greatly appreciated.

View full review »
Mohamed Fouad - PeerSpot reviewer
Mohamed Fouad
Cybersecurity Team Leader at EMAK For Computer Manufacturing (ECM)

One of the best features One Identity Safeguard offers is its capability to integrate with many systems, which is valuable for us since we have multiple database systems with many vendors in our organization.

One Identity Safeguard positively impacts our organization by reducing the likelihood of breaches from privileged sprawl by removing shared admin passwords and enforcing control checkouts while also improving our investigation times and providing strong forensics from a centralized location.

View full review »
reviewer2687787 - PeerSpot reviewer
reviewer2687787
Business Line Manager - IGA & PAM at a tech services company with 201-500 employees
The best feature of One Identity Safeguard is its infrastructure simplicity compared to other solutions. Joining two clusters together makes it easy and robust at the same time. The interface is robust and secure, and with recent releases, it has become more stable. Implementation is straightforward, and user experience is simple. View full review »
Martin Ajayiobe - PeerSpot reviewer
Martin Ajayiobe
Senior Vice President (Infrastructure Systems/Information Security) at MAXUT

The most valuable feature of One Identity Safeguard is the user-friendly interface.

The password vault feature has proven to be most effective for managing privileged access. Recycling passwords has been critical. The environment is on lockdown with the One Identity privileged access management solution. No hacker can get in.

View full review »
Tor Nordhagen - PeerSpot reviewer
Tor Nordhagen
Executive Director at Semaphore

The identity discovery is good, and the performance is pretty good value.

View full review »
RR
Reviewer7009881
Independent Consultant

A dealbreaker for customers is the capabilities of the privileged analytics module, which can be extremely useful in certain cases. From a functionality standpoint, I would like to emphasize One Identity Safeguard architecture itself is quite mature. It offers high availability and enables end users to deploy the solution with 99.999 percent uptime, which is crucial in an enterprise environment with a large number of endpoints.

View full review »
Daniel Pettersson - PeerSpot reviewer
Daniel Pettersson
System Manager at a retailer with 10,001+ employees

The whole product solves the privileged access management challenge for our company. We have a secure tunnel, a secure session manager, and automatic logging of sessions, which is good for forensic purposes. We have a rich level of logs and can trace what happened on which machine and see who did what.

Feedback from our users on the usability is positive regarding the UI experience. Instead of keeping their credentials on them somewhere, they now have a very easy-to-use portal with a nice GUI. There has been some feedback from people saying, "Couldn't it do this," or "Now I have to do that". But that's basically change management and not a real problem. There is some getting used to the UI, but I think the UI is very easy to understand and to use. The usability is very good and that's one of the main ways Safeguard stands out from the competition.

View full review »
NS
Nawaz Sarwar
Consultant at a tech vendor with 11-50 employees

From my experience, the features are best for monitoring and the usage of LDAP and SSH. I think One Identity should improve its documentation because it is vast and not clear, and clear documentation on implementing the solution would be advantageous for consultants. I find clear documentation helpful for clients and customers to achieve what they want.

View full review »
DN
Don Naz
Security Architect at a media company with 51-200 employees

There are numerous valuable data protection features, including the content and information that offer us more scalable protection as needed.

We also have access to immediate support for situations that we are unable to handle.

View full review »
Yehuda Fabian - PeerSpot reviewer
Yehuda Fabian
System Administrator at Shaare Zedek Medical Centre

We currently use only one feature, which is privileged access to remote desktop servers with rotating passwords for privileged accounts. This is the main feature we use, and it typically disconnects external users from the system before giving them a different user to use for logging in. We have to use the Safeguard session in an integrated separate session or with the exact name available to record the sessions.

View full review »
Darius Radford. - PeerSpot reviewer
Darius Radford.
Managing Partner at Knightswatch Cyber

It's a good solution for managing identities under OneFile for authorization.

So far, the useability and functionality are very good.

We use the Approval Anywhere, or cloud assistant feature and it is great. It enables us to add an extra layer of security for critical passwords without adding time to the approval process.

The secure remote access feature for privileged users has been useful as well. We've had moderate success with it. It doesn't apply to some reference levels. We do like that it does not make us use a VPN. It gives us more flexibility. We can push out to mobile users a bit easier. 

View full review »
reviewer2299191 - PeerSpot reviewer
reviewer2299191
Cybersecurity Director at a sports company with 501-1,000 employees

We don't need to use VPN for remote access.

View full review »
reviewer2285733 - PeerSpot reviewer
reviewer2285733
Senior Consultant at a tech vendor with 5,001-10,000 employees

What I like about One Identity Safeguard is its interface, which is easy to understand, even for people new to the product. I also like that the solution collects data without any access to the machine, plus it has a feature that lets people explore access to machines within a network.

Regarding the usability and functionality of One Identity Safeguard, the most common feedback I receive from users is that the solution is easy to use and can easily move data.

I also like that One Identity Safeguard lets you configure the maximum number of connections to the target, a configuration I didn't find in its competitor.

My customers use the transparent mode for privileged sessions in One Identity Safeguard, and it is easy to use, though it may be more difficult to configure. I haven't received any customer complaints about that feature, so it's not that difficult to use.

To start using One Identity Safeguard in terms of training for people who manage the solution and the end-users, my colleague and I took a course from One Identity. That training was enough for the basic features, but for some other features, my colleague and I had to create some tickets, though he and I know the database and processes. For users, it is easy because my company provides them with a two-page resource manual with screenshots. Then, I spent some time with the managers to show how One Identity Safeguard works, which is very easy because I've used the solution before. 

The analytics interface of One Identity Safeguard is also easy to understand.

View full review »
reviewer2285244 - PeerSpot reviewer
reviewer2285244
Cyber Security Engineer at a financial services firm with 5,001-10,000 employees

I like Safeguard's snapshot feature that enables us to review the last time an application was opened and by whom. If there are any issues, we can look behind the scenes to see what has been done. We can suspend a user's access or close off a server. 

View full review »
reviewer2283744 - PeerSpot reviewer
reviewer2283744
IT Specialist at a tech services company with 201-500 employees

The monitoring system is very good.

It has a very nice user interface.

The product is very fast to implement.

We use the solution's transparent mode for privileged sessions.

View full review »
MW
Mohanned Wael
Solution Consultant at Quest Egypt Software

One of the most important aspects is that it is very easy to use and install. It is also agentless, so all of the operations happen more smoothly than any other product. Our end-users find it easy. They have a web application. They only need to enter the credentials, and they can access the Safeguard session. They can use it very fast without any problems. Its learning curve is very low.

View full review »
reviewer1386330 - PeerSpot reviewer
reviewer1386330
Manager Engineering at a comms service provider with 1,001-5,000 employees

All the features are promising, but we love the reporting feature because we can get each and every report. That's a major compliance requirement. Its reporting is really amazing, and it has made life a lot easier.

Its setup is quick. It is easy to set up and operate. It doesn't matter whether you have a deep IT background or not.

View full review »
EK
Ebrahim Khosravi
Professional Service Manager at a financial services firm with 501-1,000 employees

The first feature I like about One Identity Safeguard is the live contact point for the VPNs. This has been working very well for us, as it's both highly available and reliable.

The second thing I like is the services that let us review all the contacts and take all the passwords from another administrator. These services are very reasonable. For instance, some of the third-parties will leave our company and support, but then fail to relinquish the usernames and passwords. With the security orchestra that One Identity Safeguard provides, this is no longer a problem.

View full review »
reviewer2037558 - PeerSpot reviewer
reviewer2037558
SOC Analyst at a recreational facilities/services company with 10,001+ employees

In terms of the user experience, it is a pretty useful product. It works in a good way. 

View full review »
SR
Shashank Rawat
Consultant at a manufacturing company with 11-50 employees

I like the discovery functionality and the change password feature through the check-in. I also like the bulk import with the help of templates that come with it out of the box. With the help of these few features, my tasks are made easier.

We also use the Secure Remote Access feature for privileged users. Access is based on group membership and with that membership they connect to the remote machine. It's an easy process to manage. 

View full review »
FI
Reviewer56857
Chief Information Security Officer at a financial services firm with 51-200 employees

We use the solution’s Approval Anywhere feature which enables us to add an extra layer of security for critical passwords without adding time-consuming approval processes. In the past, we were having problems when a user went on vacation. There were many recalled cases of password sharing. When we received this type of incidence and started to investigate, we found out the past setup had no solution. For example, if someone with a daily duty went on vacation, they still had to do it within the office. That is why sometimes people tried to justify the sharing of passwords by the importance of their duties. Now, by using this platform, if someone goes on a vacation, out of office, or needs urgent/planned leave, then our setup will select the functions tied to that person and automatically delegate them to the next person. That person can start performing that duty based on their access. No sharing of passwords is required.

View full review »
Martin Ajayiobe - PeerSpot reviewer
Martin Ajayiobe
Senior Vice President (Infrastructure Systems/Information Security) at MAXUT

The part of this product that I like the most is the transparent mode. That is the number one advantage of the product. I also like the ease-of-use. That is what Quest is known for. The interface is interactive, relatively easy-to-use.  

I like the fact that we are using a proxy server. Also, I like the fact that it is integrated in such a way that I can connect to my Linux and Unix resources using my AD credentials. They map the AD credentials to Linux accounts. So, when I am connected to my AD accounts, it acts as a sort of proxy to convert it to the Unix account that it is configured for. That is quite useful.  

View full review »
AP
Alexander Pirogov
Head of Department of Technical Means of Protection at BrokerCreditService

The most valuable feature is the logging sessions with their visualization, which is video recording. This functionality allows us to restore the actions of a user in the event of any incidents.

The solution transparently integrates into the infrastructure and users do not notice it. I would give this feature the highest rating.

While the "transparent mode" feature did not affect the monitoring in any way, it led to an increase in the convenience of connecting users.

This solution visualizes RDP sessions and logs SSH sessions.

View full review »
CE
Cody Engelman
Expert Systems Architect at Tempur Sealy International, Inc.

The password part is the most valuable because we were going to start vaulting certain accounts to get a lot of passwords changed. Historically, we have had really stale passwords on non-human and service accounts. E.g., on one of our service accounts, the password hasn't changed for 17 years. It was not even that complicated or good of a password in the first place. 

This solution has definitely helped us consolidate. It replicates to other appliances, so we're replicating to our DR site. Thus, if anything were to happen to our data center or personnel, whomever was trying to pick up the pieces and try to put the business back together would at least have all the passwords available to them.

The physical appliance form factors are pretty nice. They are definitely Dell inspired and easy to set up with accurate instructions. We have had no problems.

Regarding usability and functionality:

  • It has a nice, clean interface. 
  • It's pretty direct and easy to personalize. 
  • Users can set up favorites on certain things that they request. Very often, they shortcut it. So, it reduces the clicks down to three clicks. 
  • You can have a password for any account. 
  • It's auditable, which makes the security guys' happy.
View full review »
reviewer1308201 - PeerSpot reviewer
reviewer1308201
VP & Head of Cybersecurity Manager at a financial services firm with 1,001-5,000 employees

We have physical appliances for this solution. We went with that version of it because it was easier for us to deploy it and not have the IT engineers involved with our deployment. We wanted to control everything, from the deployment to the supportability to the usability of the product. I really enjoy the form factor of the appliance because it's definitely a change from the previous version, which was a bigger box. This one is a lot easier. It doesn't take up room on the rack, and it's very efficient as far as resources go.

The ease of use of the GUI is a really nice feature. It has a nice look and feel to it.

The actual checkout process is simple. You log into the portal and you're presented with accounts. That makes that so much easier because you don't have to go searching for stuff. It identifies what accounts you have, you click on it, and you go through the checkout process.

It's one of the best products we've seen. When you start looking at the functionality and use cases and usability of the product, it's straightforward. They designed this product with the end-user in mind, and they also had the sysadmin who is supporting the product in mind. They really did a nice job. Overall, it's a nice product to work with.

We use the Approval Anywhere feature and, through an app, it allows us to approve or deny requests. We don't have that turned on across the board, but we are turning it on slowly but surely. It adds an extra layer of security for critical passwords without adding time-consuming approval processes. That extra layer of security is our "belt and suspender" approach. It's making sure that you are approved to make a change, especially during production hours; it's approved by the person's manager.

View full review »
reviewer1300329 - PeerSpot reviewer
reviewer1300329
VP Risk Management at a financial services firm with 1,001-5,000 employees

It is working as it's supposed to work. We had a lot of good support from the One Identity team who helped us build it and do a test. 

We are able to log and get reporting on all privileged activity that is being performed. We like the fact that we can leverage the session recording feature, which is especially valuable when we're dealing with third-party vendors that have to remote into our our boxes and servers to do any work on behalf of the bank. Now, we can record everything they are doing to ensure that they're only doing the changes that were needed. In addition, we use it to leverage knowledge transfer with our internal staff.

We use the solution’s Approval Anywhere feature. We do have the Starling 2FA app on our mobile devices. We haven't rolled out the request and approval yet. We want to get people to use it in their daily functions, whether it's business as usual work, break glass, or any changes that they need to make tied into an approved formal change request. Starting in April, we will be rolling out the request and approval phase. Based on the type of change being requested, break glass will need to be approved, especially if they're doing it during the daytime or off-hours. Then, we will have change requests tied into our change-advisory board. Once there's a change that's approved via our CAB process, then that person will be allowed to check out the credentials they need and tie it back into the ServiceNow ticket that was created. This gives us the audibility between when that change was being made and ensuring that it's being performed for its intended purposes. We are taking a crawl-walk-run approach.

View full review »
EC
Edouard Camoin
Chief Information Security Officer at Outscale

The transparent proxy is the most valuable feature. When you are connecting to a server inside the platform, the user doesn't need to change their habit. They just have to make small configurations to their workstation, then it is transparent for them. Our users like the solution because it's transparent. Users doesn't need to have interaction with 3DS OUTSCALE IT or security team to work as usual. It's interesting for the users because they don't have to think, "I have to note all that I've done during the incident to remember it".

We use the solution’s “transparent mode” feature for privileged sessions. It is very easy because it is only a simple configuration for our users. We don't have to modify our network. We install it, configure it, and it works. So, it is super easy. The rollout for our users is seamless.

The "transparent mode" allows for better visibility. With its monitoring, we can do investigations which are good for us and improve our system.

View full review »
Mahfoudh Bousaidi - PeerSpot reviewer
Mahfoudh Bousaidi
Network & Security Engineer at Onetechpro dz

Safeguard has the ability to record and retrieve in the full-video format.

View full review »
Walid Semrani - PeerSpot reviewer
Walid Semrani
Networking and Security Engineer at a tech services company with 1-10 employees

We deployed it into our company for controlling a client's behavior in our data center. It is very useful to control their connections, such as RDP. 

View full review »
reviewer1242459 - PeerSpot reviewer
reviewer1242459
Software Solutions Architect at a computer software company with 11-50 employees

I have found the most useful feature of One Identity Safeguard to be Privileged Sessions.

View full review »
it_user1216335 - PeerSpot reviewer
it_user1216335
Security Business Consultant at a tech services company with 201-500 employees

The most interesting thing about this product is it is very easy to implement and configure as well as its usability. Also, for the final user, the work experience doesn't change when using the SPS for the Linux administrator, which is fantastic. You change only a little bit of the connection. Everything else is really easy.

View full review »
reviewer1161345 - PeerSpot reviewer
reviewer1161345
Works with 10,001+ employees

The most valuable feature is auditing the sessions. All of the sessions (RDP, SSH, Citrix) can be audited and replayed on demand.

Complete indexing on SSH sessions means that all commands are searchable after indexing.

View full review »
reviewer1334721 - PeerSpot reviewer
reviewer1334721
Director of Information Security at a healthcare company with 1,001-5,000 employees

There are a lot of features, so it's going to sound funny, but one of the most simplistic features, the Favorites feature, is the one we like the best. You do a full run-through of configuration to check out a server and then you can save that whole configuration as a favorite. So the next time you go in, you click on the favorite that you configured and it automatically takes you to the end so you can check the server out that much faster. It saves a lot of time, resulting in an increase in productivity and a decrease in issues and errors and interface problems. It increases redundancy and gives us a much easier interface to use.

We're using virtual appliances for Safeguard because of the flexibility of virtual appliances. We can snapshot them, we can restore them quickly. There's a lot more flexibility with virtual.

We use the solution’s Approval Anywhere feature, and it allows a group of five individuals to receive notifications on their phones, through Starling, and review a request and approve it with one click.

We also use the solution’s “transparent mode” feature for privileged sessions. We record them and we also review them. That way, if there are problems with any configurations they did, we can go back and review them. Also, for mentoring, teams utilize it to help individuals deploy code better or to make changes to configurations. There are a lot of positives with that feature. It was very easy to start using this feature. The entire platform is very intuitive, very easy to work with, easy to set up. I can't think of anything that we have really had huge issues with. The rollout of "transparent mode" was seamless for our users. We sent out picture instructions on how to do it and offered to get on a call with people to discuss it with us, but nobody had any questions. In terms of the monitoring itself, it doesn't affect things any differently than the previous solution. It's pretty much the same. Obviously, using the tools is easier, but we were monitoring the same type of information as before.

View full review »
reviewer1081059 - PeerSpot reviewer
reviewer1081059
IT Security Consultant at a tech services company with 51-200 employees

The solution's most valuable features are the efficiency and the quality of the recording.

View full review »
SS
Sergey Smirkin
Head of Information Security at a financial services firm with 11-50 employees

The majority of the features offered with this solution are the same as with other similar systems. The most unique and valuable features are the upstream and downstream throughput capacities; the Safeguard platform provides agile integration.

In actuality, all the features are valuable. They're good and user-friendly.

View full review »
HeadOfDed6dc - PeerSpot reviewer
HeadOfDed6dc
Head of Department at a financial services firm with 10,001+ employees

One of the most valuable features is that it supports the Linux operating system. Also, the transparent mode for privileged sessions is a very good solution.

View full review »
SF
Stephen Fleming-Unger
Security Consultant at Controlware GmbH

There are a variety of protocols that it supports.

The video-like stream and audit capabilities, in combination with its indexing capabilities to search for critical events quickly, are valuable features.

The transparent mode for privileged sessions is really nice because it keeps the integration quite smooth. Also, users don't have to change the way that they currently are used to working. 

It is easy to manage. There is a very logical, clear user interface. Also, the integration of scripts is thoughtfully implemented. Overall, it's a nice product to manage.

View full review »
CJ
Cedric Jolivet
Identity & Access Manager at Reist Telecom
  • Acting as a proxy
  • Session encryption
  • Flexibility of usage

The transparent mode for privileged sessions is one of the best things for customers, because they don't see the system in-between. Thus, it is transparent for them.

The system is easy to manage, as it is not a system that you will change everything all of a sudden. It evolves most of the time with customer requests.

View full review »
IdmArchi90fa - PeerSpot reviewer
IdmArchi90fa
IDM Architect at a tech company with 10,001+ employees

The extensible framework for authentication is one of the most valuable features. We use an MFA plug-in and a lot of different factors, depending on what the business use-cases are. And of course, the auditing functionality is also valuable.

We have also found the solution to be extensible through cloud-delivered services. It's worked out well. The SPS instances we use are located on-premise, but we can still utilize them to access resources in the cloud. That's not a problem. We haven't deployed any SPS itself in the cloud, but it works fine for our cloud environments.

View full review »
it_user841344 - PeerSpot reviewer
it_user841344
System Consultant at a tech services company with 1,001-5,000 employees

Its hardware and compliance.

View full review »
it_user589470 - PeerSpot reviewer
it_user589470
IT Security Engineer

Flexible modes are easily integrated into the customer infrastructure. It's easy to find needed information and the indexer does a good job.

Secure replays: Balabit SCB supports multiple security officers (something like senior and junior officer), who can encrypt upstream, and downstream flows, with different SSL certificates. For example, one officer can see replays, and another officer can only see replays by pressing on a key.

View full review »
it_user598935 - PeerSpot reviewer
it_user598935
Chief Technology Officer & Solution Architect at a tech services company with 51-200 employees
  • Fully transparent for users.
  • Supports many protocols.
  • Full OCR indexing: You can find anything that happened in sessions, including commands, programs opened, etc. Without OCR, you would only be able to find who did which sessions, but not the content of the sessions or what admins have been doing.
  • Non-agent approach: A very important feature that is able to monitor access to devices which are not computers, such as switches, firewalls, or any device which uses SSH, TELNET, HTTPS. You are able to monitor access to the Internet by web browser, because SCB can work as a HTTP/S proxy.
View full review »
it_user437646 - PeerSpot reviewer
it_user437646
PreSales Engineer at a tech vendor with 201-500 employees

Monitoring and controls privileged access to remote server/appliances for RDP/SSH/HTTP/ICA/VNC protocols

Four-eye authentication and gateway authentication with real-time audit capability

Credential storage and user mapping policies

Inband destination selection with DNS resolve/mapping internal resources

Detailed audit search capability into proprietary video stream for all protocols supported with keylog functions

View full review »
Buyer's Guide
One Identity Safeguard
June 2026
Learn what your peers think about One Identity Safeguard. Get advice and tips from experienced pros sharing their opinions. Updated: June 2026.
900,644 professionals have used our research since 2012.