No more typing reviews! Try our Samantha, our new voice AI agent.
reviewer2846145 - PeerSpot reviewer
Seniour System Admin at a financial services firm with 51-200 employees
Real User
Top 10
May 26, 2026
Centralized authentication has simplified linux access and improved security and audit control
Pros and Cons
  • "Integration of One Identity Safeguard has positively affected our operations by centralizing authentication across Linux and Unix, reducing manual account management, and simplifying user access control through Active Directory integration."
  • "One Identity Safeguard can be improved in areas such as UI modernization."

What is our primary use case?

One Identity Safeguard's main use case in our environment is authentication services. It serves as a centralized authentication solution for Linux and Unix servers, including the use of Active Directory credentials. This helps us simplify user access management, reduce local account dependency, improve security, and provide centralized authentication and auditing across servers.

A specific example of using One Identity Safeguard is for Linux and Unix server access management. Instead of maintaining separate local accounts on servers, users can log in using their Active Directory credentials. This simplifies access management, reduces password-related issues, and improves audit visibility.

What is most valuable?

The best features of One Identity Safeguard authentication services are seamless Active Directory integration, centralized integration, authentication and single sign-on for Linux and Unix systems, policy enforcement, and centralized auditing.

The Active Directory integration in One Identity Safeguard allows for seamless integration in our environment because Linux and Unix systems can directly use AD credentials for authentication without maintaining separate local user profiles. Once it is integrated properly with AD, user access management becomes much easier and centralized.

One Identity Safeguard has positively impacted our environment by simplifying Linux and Unix authentication, reducing dependency on local accounts, improving centralized access control, and making user onboarding and offboarding much easier from a security and operational perspective.

One example where One Identity Safeguard services helped us was during employee offboarding. Before, administrators had to manually remove or disable local accounts from multiple Linux servers, which was time-consuming and sometimes risky if something was missed. By integrating with Active Directory through Safeguard, disabling the AD account automatically blocks access across connected Linux and Unix systems, which improves security and reduces manual effort.

From an accuracy and reliability perspective, One Identity Safeguard has been generally consistent in our environment.

What needs improvement?

One Identity Safeguard can be improved in areas such as UI modernization. Debugging authentication issues across Linux, AD, DNS, and Kerberos sometimes still requires manual investigation and Linux expertise.

Additionally, better real-time monitoring, clearer authentication error reporting, and simpler troubleshooting tools in One Identity Safeguard would be helpful, especially when working in large and complex environments.

One area where One Identity Safeguard still needs improvement is troubleshooting and visibility during authentication failures in a real environment. Issues related to Kerberos, DNS, SSH, or AD synchronization can sometimes take time to diagnose. Better real-time monitoring and clearer error reporting would help significantly.

For how long have I used the solution?

I have been using One Identity Safeguard for four years.

Buyer's Guide
Safeguard by One Identity
July 2026
Learn what your peers think about Safeguard by One Identity. Get advice and tips from experienced pros sharing their opinions. Updated: July 2026.
905,526 professionals have used our research since 2012.

What do I think about the stability of the solution?

One Identity Safeguard is stable.

What do I think about the scalability of the solution?

Scalability is good.

How are customer service and support?

Support is very good.

Which solution did I use previously and why did I switch?

Before implementing One Identity Safeguard, we mainly relied on local Unix accounts and manual authentication. Managing access across multiple servers was time-consuming and inconsistent, especially during onboarding, offboarding, and audit cycles.

How was the initial setup?

The deployment of One Identity Safeguard in our environment took around two to four weeks, including planning, Active Directory integration, Linux server onboarding, testing, and phased rollout. The core deployment was manageable, but troubleshooting authentication dependencies such as DNS, Kerberos, and SSH configuration took additional effort during implementation.

What was our ROI?

We saw good ROI with One Identity Safeguard mainly through reduced manual Linux account management, centralized authentication, faster onboarding and offboarding, and improved audit and compliance visibility. It also reduced operational effort because disabling a user account automatically removes access on multiple systems.

What's my experience with pricing, setup cost, and licensing?

My experience with pricing, setup, and licensing was generally good for an enterprise environment, although the initial setup and license cost can be somewhat high for smaller organizations. The deployment requires some planning around Active Directory and Linux integration, but overall, the solution has reduced manual administration effort and improved centralized access management, so the value was justified in our environment.

Which other solutions did I evaluate?

We did evaluate other options before choosing One Identity Safeguard.

What other advice do I have?

The training requirement for this was moderate in our environment. Experienced Linux and Active Directory administrators were able to manage daily operations after a few days of hands-on training and documentation review. The bigger learning curve was mostly around troubleshooting Kerberos, DNS, SSH, and Linux authentication-related issues in hybrid environments.

Integration of One Identity Safeguard has positively affected our operations by centralizing authentication across Linux and Unix, reducing manual account management, and simplifying user access control through Active Directory integration. It also improved security and audit visibility because access management became more consistent across the environment instead of managing separate local accounts on individual servers.

One Identity Safeguard positively affected privileged users by improving centralized authentication and more controlled access management for Linux and Unix systems. Instead of managing multiple local privileged accounts, administrators could use centralized AD-based authentication and policies, which improved security, simplified access management, and increased audit visibility for privileged activities.

The integration difficulty for One Identity Safeguard was moderate in our environment. The Active Directory integration was straightforward, but challenges came during Linux authentication configuration, Kerberos, DNS synchronization, and integrating across multiple Unix distributions and hybrid environments.

One Identity Safeguard service was integrated with applications and services of Microsoft Active Directory, Linux and Unix servers, SSH-based access systems, VMware infrastructure, and some DevOps-related environments for centralized authentication and access management. The main advantage was centralized credential management and consistent access control across multiple platforms.

In our environment, One Identity Safeguard authentication services was mainly deployed on-premises, so cloud dependency was minimal. Although we had some integration with Microsoft Azure for hybrid infrastructure and identity-related operations, One Identity Safeguard was mainly deployed as virtual appliances on VMware infrastructure. We use virtual deployment because it is easier for scaling, backup, disaster recovery, and maintenance compared to physical appliances.

I would rate this solution an overall eight out of ten.

Which deployment model are you using for this solution?

On-premises

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: May 26, 2026
Flag as inappropriate
PeerSpot user
Niyajuddin Tiwale - PeerSpot reviewer
Technique at Digitaltrack
Real User
Top 5Leaderboard
Apr 2, 2026
Privileged access has become controlled and audited with real-time session monitoring
Pros and Cons
  • "One Identity Safeguard has positively impacted our organization by giving us complete visibility over all privileged access, making compliance audits much easier than before, and ensuring that access is not time-bound, allowing admins access only for the duration they need it."

    What is our primary use case?

    My main use case for One Identity Safeguard is to use it as a PAM tool for managing and monitoring privileged accounts. In every organization, there are special accounts such as admin or root accounts that have a very high level of access, and if these accounts are missed or compromised, it can create problems or damage. One Identity Safeguard helps us to control who uses these accounts and when they can use them.

    A quick, specific example of how I use One Identity Safeguard to manage those privileged accounts involves a database administrator needing to make an urgent change to our production database. In the past, we would just use a shared admin password that everyone in the team knows, but now with One Identity Safeguard, the admin logs into the Safeguard portal and raises an access request for the production database. The request automatically goes to his manager, and based on the review, it gets approval. One Identity Safeguard connects the admin to the database without showing him the actual password, so he never knows about the credentials.

    What is most valuable?

    The excellent session recording and monitoring stand out as the best features of One Identity Safeguard. It is a compliance-based deployment and can work across on-premises as well as cloud environments.

    Session recording and monitoring have benefited my organization by ensuring that every privileged session is monitored in real-time. Whenever any admin logs into the server through One Identity Safeguard, the system records it and the screen is viewed. The security team can watch live sessions if needed or review the recordings whenever they need them.

    One Identity Safeguard has saved our compliance efforts, so generating audit reports that used to take days now takes a minute, which is a very good example of its efficiency.

    One Identity Safeguard has positively impacted our organization by giving us complete visibility over all privileged access, making compliance audits much easier than before, and ensuring that access is not time-bound, allowing admins access only for the duration they need it.

    Compliance audits have become much simpler with One Identity Safeguard, as every access request, approval, session, and action is logged automatically. The audit team can ask who accessed what system and when, and we are able to generate those types of reports in minutes, significantly reducing our efforts and costs.

    What needs improvement?

    I have not seen any issues with One Identity Safeguard solution. I do not wish to add more about needed improvements related to usability, integration, or support.

    For how long have I used the solution?

    I have been using One Identity Safeguard for more than three years.

    What do I think about the stability of the solution?

    One Identity Safeguard is stable.

    What do I think about the scalability of the solution?

    One Identity Safeguard is a very good solution from a scalability perspective, and we have not seen any issues with its scalability so far.

    How are customer service and support?

    The customer support team for One Identity Safeguard is good, responsive, and we have seen good responses multiple times.

    Which solution did I use previously and why did I switch?

    We are using One Identity Safeguard only and did not use a different solution before.

    How was the initial setup?

    The deployment of the solution took less than one month for my organization.

    The deployment affected our privileged users smoothly, as I did not see any challenges or disruptive events with this solution.

    The experience during the deployment was very smooth, as I have not seen any kind of challenges with the end-users.

    What about the implementation team?

    We have integrated our Active Directory with One Identity Safeguard.

    The integration with Active Directory was complex during the initial setup, but later we found it to be very smooth, requiring proper planning in advance.

    The integration with Active Directory has improved our efficiency and security because our users are syncing properly.

    What was our ROI?

    We have seen a good return on investment with One Identity Safeguard because the ROI did not come in a dramatic way; it came through multiple small savings that added up significantly over the years.

    What's my experience with pricing, setup cost, and licensing?

    I had a great experience with the pricing and setup cost of One Identity Safeguard, and there were no challenges.

    Which other solutions did I evaluate?

    We have not evaluated other options before choosing One Identity Safeguard.

    What other advice do I have?

    I would advise others looking into using One Identity Safeguard to implement it in their environment and not wait for a security incident to occur. Most organizations consider access management only after something goes wrong and an account gets compromised, but by then the damage is already done. One Identity Safeguard is a tool you want in place before something bad happens, so this is highly recommended by us. I have given this review a rating of eight.

    Which deployment model are you using for this solution?

    On-premises

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Other
    Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
    Last updated: Apr 2, 2026
    Flag as inappropriate
    PeerSpot user
    Buyer's Guide
    Safeguard by One Identity
    July 2026
    Learn what your peers think about Safeguard by One Identity. Get advice and tips from experienced pros sharing their opinions. Updated: July 2026.
    905,526 professionals have used our research since 2012.
    Nishant Patil - PeerSpot reviewer
    Presales Consultant at a outsourcing company with 1,001-5,000 employees
    Real User
    Top 5
    May 14, 2026
    Strong access controls have secured privileged accounts and now improve accountability
    Pros and Cons
    • "One Identity Safeguard has positively impacted my organization by tracking admin activities in real time, recording privileged sessions, improving the accountability of engineers and administrators, and detecting suspicious or unauthorized actions."

      What is our primary use case?

      My main use case for One Identity Safeguard is securing administrator access to critical infrastructure, like firewall servers, switches, databases, as well as the VMware environments. Earlier, multiple engineers used shared admin passwords for devices and servers, which made it difficult to track who performed what activity. This also increased the risk of password misuse and unauthorized access. We have used One Identity Safeguard to secure all of these resources.

      A specific example of how I use One Identity Safeguard to secure access or track activities is when an engineer wanted to log in to a firewall for some configuration changes. One Identity Safeguard provides secure access without exposing the actual password. Once the task was completed, the password could be automatically changed, ensuring better security. This use case helps the organization improve privileged access security, maintain accountability, and reduce insider threats for auditing and compliance purposes.

      One Identity Safeguard is deployed in my organization on physical appliances, which are dedicated hardware appliances provided by One Identity.

      What is most valuable?

      The best features One Identity Safeguard offers include a secure password vault for privileged accounts, Privileged Access Management (PAM), session monitoring, and session recording. Additionally, MFA support is available. There are different benefits and features, including real-time monitoring of administrator activity, audit logs, and compliance reporting.

      Session monitoring is a feature where all privileged user activities are monitored in real-time whenever an administrator accesses critical systems such as servers, firewalls, switches, or databases. For example, if a network engineer logs into a secure firewall using One Identity Safeguard, the complete session can be monitored and recorded, including the commands executed, the configuration changes made, the previous configuration, the login duration, and the logout activity.

      One Identity Safeguard has positively impacted my organization by tracking admin activities in real time. It records privileged sessions, improves the accountability of engineers and administrators, and detects suspicious or unauthorized actions.

      What needs improvement?

      I have nothing to improve. The solution is well-designed. I do not have anything at all that I wish could be easier or better, even if it is something small, whether in the user interface, reporting, or integration.

      For how long have I used the solution?

      I have been using One Identity Safeguard for one year.

      What do I think about the stability of the solution?

      One Identity Safeguard is stable.

      What do I think about the scalability of the solution?

      In terms of scalability, One Identity Safeguard can easily grow along with the organization's infrastructure and security requirements. It supports growing infrastructure and handles a large number of privileged accounts because it can support an increasing number of users, privileged accounts, devices, and locations as the organization expands.

      How are customer service and support?

      The customer support for One Identity Safeguard is good.

      Which solution did I use previously and why did I switch?

      I have not previously used a different solution. This is the first solution we deployed.

      How was the initial setup?

      The deployment of the solution took up to one month in my environment.

      The deployment was a smooth process for my privileged users. All integrations were executed very well.

      What about the implementation team?

      Training of approximately ten to twelve days is sufficient for all users, both those new to One Identity Safeguard and those with existing knowledge. Very good training can be delivered within twelve days.

      What was our ROI?

      The return on investment comes from improving security while reducing operational risk and manual administration. Earlier, the organization managed privileged passwords manually, which increased the chance of password misuse and insider threats. After implementing One Identity Safeguard, privileged access becomes centralized, monitored, and automated. The ROI of One Identity Safeguard is mainly achieved through stronger security, reduced operational effort, automation of privileged access management, and lower risk of security incidents.

      What's my experience with pricing, setup cost, and licensing?

      My experience with pricing, setup cost, and licensing is that the price is a bit too high. The price could be lower for licenses based on the number of privileged accounts and number of managed access systems. There is a common license factor involved.

      Which other solutions did I evaluate?

      I have not evaluated other options before choosing One Identity Safeguard.

      What other advice do I have?

      My advice for others looking into using One Identity Safeguard is that it is very useful in the organization for preventing password issues. I would rate this review as nine out of ten.

      Which deployment model are you using for this solution?

      On-premises
      Disclosure: My company does not have a business relationship with this vendor other than being a customer.
      Last updated: May 14, 2026
      Flag as inappropriate
      PeerSpot user
      reviewer2789601 - PeerSpot reviewer
      Consultant at a computer software company with 11-50 employees
      Real User
      Top 5
      Dec 25, 2025
      Modern privileged access workflows have improved user onboarding and secure password management
      Pros and Cons
      • "The best feature One Identity Safeguard offers is that it is a pretty new, modern tool that makes extensive use of its API."
      • "One Identity Safeguard can be improved by fixing the documentation, which is very convoluted as of now, and addressing versioning, as some major bugs and issues are not documented well enough in the documentation, along with some patches and fixes."

      What is our primary use case?

      Our main use case for One Identity Safeguard is to integrate it to clients that need the SPP functionality, which stands for Safeguard for Privileged Passwords. They do say that we could utilize One Identity Safeguard to its full extent for now, but we're getting there.

      A quick specific example of how we use One Identity Safeguard with a client is that our latest client needed a password vault, so at first, we integrated One Identity Safeguard for Privileged Passwords, and then they asked for a personal vault so they could store their passwords and secrets, much like KeePass, so we integrated One Identity Safeguard Personal Vault as well. Lastly, they figured at some point down the line that they needed SPS as well, but only the primitive version of it, so we just decided to integrate SPS as well and form it into a cluster with SPP, but they don't use any third-party plugins as of now.

      What is most valuable?

      The best feature One Identity Safeguard offers is that it is a pretty new, modern tool that makes extensive use of its API. In general, it's easier than other tools to just perform maintenance work or perform work using the API of One Identity Safeguard. Also, the way that the access requests are structured—with entitlements and access request policies—makes it easier to govern data and identities. CyberArk, which is essentially the industry standard right now, is doing a very primitive job of helping the administrator with the task, and One Identity Safeguard is a lot better at this.

      These features help my team day-to-day by making onboarding new users easier, and they also make it easier to create existing teams that are complete with their own password management, their own password profiles and rotations, password requirements, and who gets access to what, so it all makes it easier and faster.

      One Identity Safeguard has positively impacted my organization by being another tool that we have in our arsenal to be able to get other clients as well, because we also sell One Identity IAM, and we can just bundle One Identity Safeguard with it. It also has a nice feature called remote access, which a lot of people want to use for externals in their organization, coupled with its just-in-time requisition, so it makes selling it much easier because One Identity is a company that's been in the field for ages.

      What needs improvement?

      One Identity Safeguard can be improved by fixing the documentation, which is very convoluted as of now, and addressing versioning, as some major bugs and issues are not documented well enough in the documentation, along with some patches and fixes. Custom plugins need to be introduced as soon as possible.

      I give it an eight because it's a nice tool and it's a modern tool, but there are still some issues, not necessarily pertaining to the tool itself, but to the whole philosophy of One Identity and how they have structured their workflows and their knowledge base, which essentially has no knowledge base, just like CyberArk. There are some issues that need to be fixed, plus it does not have a custom option, and a lot of clients are using in-house made applications that also need to be onboarded to One Identity Safeguard to be able to launch a browser session to that application, which One Identity Safeguard has not had any capabilities that could assist with that.

      For how long have I used the solution?

      I have been using One Identity Safeguard for two and a half years, ever since we pivoted from CyberArk, as we wanted to be more tool-agnostic, and we decided that One Identity Safeguard was our best option because we had a past with One Identity, with us being in an IAM team.

      What do I think about the stability of the solution?

      One Identity Safeguard is stable.

      What do I think about the scalability of the solution?

      So far, we haven't had any issues with One Identity Safeguard's scalability; it's been fine, but we generally target smaller to mid-sized implementations.

      How are customer service and support?

      The customer support for One Identity Safeguard is fine for what it is, even though everything needs to be run through them and there are no knowledge bases, so we have to wait for a response from the One Identity Safeguard company, and they also keep a lot of information, requiring us to make a request and then they would need to reply, but it's acceptable overall. It's not the worst I've seen.

      How would you rate customer service and support?

      Positive

      Which solution did I use previously and why did I switch?

      I previously used CyberArk before switching to One Identity Safeguard.

      How was the initial setup?

      The deployment of the solution takes about two to four weeks, give or take, but that's not counting waiting for the client to respond and all that.

      About a month of training is required for end-users, and for us, it was four months to understand One Identity Safeguard, but that was because we already had experience in other PAM tools like CyberArk.

      What about the implementation team?

      We are partners, executive partners, and resellers with this vendor.

      What's my experience with pricing, setup cost, and licensing?

      My experience with pricing, setup cost, and licensing has been a good experience overall, as the back and forth with One Identity is something that is acceptable; other tools have options to do this automatically, and they have it, but pricing, presales, and sales is acceptable overall.

      Which other solutions did I evaluate?

      Before choosing One Identity Safeguard, I evaluated Zero Trust and Delinea, but they were for smaller organizations, so we decided to adopt One Identity Safeguard.

      What other advice do I have?

      My advice to others looking into using One Identity Safeguard is to get familiar with the concepts of entitlements and access request policies, the keywords One Identity Safeguard uses, and also get familiar with the way that it handles session management and recording because it's a tool that needs a lot of time to get accustomed to. I give One Identity Safeguard an overall rating of eight out of ten.

      Disclosure: My company has a business relationship with this vendor other than being a customer. Partner, Reseller
      Last updated: Dec 25, 2025
      Flag as inappropriate
      PeerSpot user
      Satyam Gupta - PeerSpot reviewer
      Technical Support Executive at DigitalTrack Solutions Pvt Ltd
      Real User
      Top 5
      May 30, 2026
      Centralized privileged access has boosted security, accelerated audits, and improved compliance
      Pros and Cons
      • "Since we have deployed this solution, we have experienced many positive outcomes, such as faster audit preparation by fifty to seventy percent and saving operational time by almost forty to sixty percent."

        What is our primary use case?

        One Identity Safeguard is used primarily to secure privileged credentials, enforce control over administrative access, and provide visibility into privileged activities.

        Whenever a network or server administrator requires access to a production system, access is granted through One Identity Safeguard's approval workflow and credential vault rather than exposing privileged account passwords directly.

        What is most valuable?

        One Identity Safeguard offers several best features, including its privileged credential vaulting feature, automated password rotation, and privileged session management, along with session recording and playback.

        The feature that I rely on the most is automated password rotation because it reduces the risk associated with static or shared privileged credentials and improves security by automatically changing passwords at defined intervals without manual intervention, helping us to meet compliance.

        One Identity Safeguard has positively impacted our organization in many ways because it has improved our organization's privileged access security through centralized credential management, enforcing strong password control, and providing complete visibility into privileged user activities.

        Since we have deployed this solution, we have experienced many positive outcomes, such as faster audit preparation by fifty to seventy percent and saving operational time by almost forty to sixty percent. We are also experiencing very good visibility and accountability, enabling quick investigation of privileged user activities.

        The artificial intelligence-related governance and security capabilities of One Identity Safeguard are very strong because they operate within a framework of strict access control, with analytics and intelligent insights providing detailed monitoring and session tracking.

        One Identity Safeguard is very accurate in its output and very reliable, particularly when identifying unusual privileged access behavior and potential security risks, providing insights based on monitoring user activities and established behavior patterns.

        What needs improvement?

        One Identity Safeguard is a very strong privileged access management solution, and the only thing that needs to be enhanced is its dashboard customization; apart from this, everything is perfect.

        For how long have I used the solution?

        I have been using One Identity Safeguard for almost two years.

        What do I think about the stability of the solution?

        One Identity Safeguard is a stable solution.

        What do I think about the scalability of the solution?

        One Identity Safeguard is very scalable and handles organizational growth effectively.

        How are customer service and support?

        The customer support is excellent in technical assistance, and they are ready to provide support at any time.

        Which solution did I use previously and why did I switch?

        We are using One Identity Safeguard since the beginning and have not switched to another solution.

        How was the initial setup?

        The deployment of One Identity Safeguard took approximately four to eight weeks, including planning, installation, integration, and fine-tuning.

        The deployment effect was largely smooth for privileged users with very minimal disruption to day-to-day operations.

        What about the implementation team?

        The end-user required very minimum training, typically a few hours or short onboarding sessions to understand the privileged access request and workflows. The implementation was very smooth, and all users are now handling it very properly.

        What was our ROI?

        We have seen a clear return on investment, with time savings of approximately forty to sixty percent, faster audits by fifty to seventy percent, reduced risks, and increased operational efficiency.

        What's my experience with pricing, setup cost, and licensing?

        Pricing, setup cost, and licensing are managed by the management team.

        Which other solutions did I evaluate?

        We have not evaluated other options before choosing One Identity Safeguard.

        What other advice do I have?

        My advice for any organization considering One Identity Safeguard is to deploy it and start by identifying your most critical privileged accounts and administrative users. Implementing credential vaulting and automating password rotation first will provide very good security benefits.

        We are getting very positive feedback from the users, and they are very happy and appreciating One Identity Safeguard. I would rate this review a nine.

        Which deployment model are you using for this solution?

        On-premises
        Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
        Last updated: May 30, 2026
        Flag as inappropriate
        PeerSpot user
        Nitin Yadav - PeerSpot reviewer
        Network & Security Engineer at Arrow PC Network Pvt.Ltd.
        Real User
        Top 5Leaderboard
        Apr 19, 2026
        Secure access has improved privileged workflows and real-time monitoring streamlines daily tasks
        Pros and Cons
        • "One Identity Safeguard has a noticeable positive impact around security and operational efficiency, providing secure, strong security, real-time monitoring, and full visibility."
        • "Many team members feel that the biggest friction with One Identity Safeguard relates to access requests, session approvals, and policy changes, which require more clicks than expected."

        What is our primary use case?

        My main use case for One Identity Safeguard includes privilege access, session recording, and real-time monitoring.

        In daily work, I use session recording and real-time monitoring as part of my workflow.

        My main use case is privilege access.

        What is most valuable?

        The best features One Identity Safeguard offers include secure and controlled access along with real-time session controlling.

        The real-time session control feature helps me in my daily tasks by providing session controlling and monitoring in user sessions that occur, allowing proactive management across web and platform access instead of reacting after something goes wrong.

        Session monitoring and recording are also crucial parts of the features.

        One Identity Safeguard has a noticeable positive impact around security and operational efficiency, providing secure, strong security, real-time monitoring, and full visibility.

        Operational efficiency has improved as it requires less manual effort for the IT team and makes troubleshooting easier.

        What needs improvement?

        One Identity Safeguard needs improvement in deployment and integrating with other products.

        Many team members feel that the biggest friction with One Identity Safeguard relates to access requests, session approvals, and policy changes, which require more clicks than expected.

        I think One Identity Safeguard is a good product, but it just needs improvement in tech support.

        For how long have I used the solution?

        I have been using One Identity Safeguard for the last two years.

        What do I think about the stability of the solution?

        One Identity Safeguard is stable in my network.

        What do I think about the scalability of the solution?

        Scalability is very good as it can easily scale with organizational growth by adding more virtual appliances, and it handles increasing users, servers, and privilege accounts without any major performance issues.

        How are customer service and support?

        Customer support is really good.

        Which solution did I use previously and why did I switch?

        I previously used a different tool for managing, but it lacked centralized control, proper auditing, and security features.

        How was the initial setup?

        The deployment of the solution took around two to four weeks due to initial setups, integrations, and policy configurations.

        End users need a minimum of two to three weeks to understand the solutions.

        What was our ROI?

        I have seen a return on investment in both money saved and time saved.

        I have experienced noticeable time savings and some indirect cost benefits, specifically in that access provision has reduced from hours to minutes, requiring less manual effort, and the cost impact has been mitigated due to fewer security incidents and audit issues.

        What's my experience with pricing, setup cost, and licensing?

        The pricing, setup cost, and licensing are not the cheapest, but they offer strong security features that justify the cost.

        The license is usually based on the number of user accounts, which is straightforward to understand, and the setup cost is good and reasonable.

        Which other solutions did I evaluate?

        Before choosing One Identity Safeguard, I evaluated BeyondTrust.

        What other advice do I have?

        My advice for others considering One Identity Safeguard would be to plan and execute the deployment properly during the implementation phase.

        I have given this review a rating of 8.

        Which deployment model are you using for this solution?

        Hybrid Cloud

        If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

        Microsoft Azure
        Disclosure: My company does not have a business relationship with this vendor other than being a customer.
        Last updated: Apr 19, 2026
        Flag as inappropriate
        PeerSpot user
        Dhanaji Mali - PeerSpot reviewer
        Technical Specialist at VDA Infosolutions Pvt. Ltd.
        Real User
        Top 5Leaderboard
        Apr 9, 2026
        Privileged access has been secured and sessions are monitored to strengthen accountability
        Pros and Cons
        • "One Identity Safeguard has impacted our organization positively because it has helped us standardize how privileged access is managed and has also reduced dependency on manual efforts in password handling, improving operational control overall."

          What is our primary use case?

          One Identity Safeguard is used for managing privileged passwords and monitoring sessions, which helps track admin activities and enforce secure access policies for the accounts. This is important for protecting critical resources like systems or applications, thereby improving both security and accountability.

          Whenever an admin needs server access, they must request it through One Identity Safeguard. Once approval is granted based on the request, they can access the server, and the session is recorded, keeping everything monitored and controlled.

          Whenever an admin accesses a server through One Identity Safeguard, they do not need to know the actual password. The system provides temporary access through the vault, ensuring secure and controlled usage of the applications.

          What is most valuable?

          The session monitoring and recordings are the best features of One Identity Safeguard, allowing us to review what actions were performed during a session. This helps us in both troubleshooting and audits.

          One Identity Safeguard makes compliance easier and really helps in incident investigation as well as visibility.

          One Identity Safeguard has impacted our organization positively because it has helped us standardize how privileged access is managed and has also reduced dependency on manual efforts in password handling, improving operational control overall. It has reduced errors, and the manual efforts have been significantly reduced.

          What needs improvement?

          One Identity Safeguard does not require any improvements at this time based on our current usage.

          The initial setup of One Identity Safeguard is somewhat tricky and requires proper planning, so this aspect could be simplified.

          For how long have I used the solution?

          One Identity Safeguard has been in use for more than three years.

          What do I think about the stability of the solution?

          One Identity Safeguard is stable.

          What do I think about the scalability of the solution?

          From a scalability perspective, One Identity Safeguard is excellent and matches our organization's growth. We have seen a good response from the customer team, who are ready to provide support at any time we require it.

          How are customer service and support?

          We have found and seen a good response from the end-user and usability of One Identity Safeguard, as it is seamless and works well in our organization.

          Which solution did I use previously and why did I switch?

          One Identity Safeguard has been used since day one.

          How was the initial setup?

          The deployment of One Identity Safeguard took less than one month. It was straightforward, initially taking one or two days, and from this we have seen a smooth transition to One Identity Safeguard with no issues during the deployment.

          What about the implementation team?

          One-week training was provided for the users and the IT team to ensure they could manage One Identity Safeguard. The end-user access management is smooth as per usability, making for a great experience.

          What was our ROI?

          One Identity Safeguard has provided a good return on investment, which comes from the reduced risk of security incidents. Avoiding even one breach can have a significant cost. It has also reduced the time spent on password management, saving our team time in managing privileged accounts, and is helping with automation that reduces manual efforts.

          What other advice do I have?

          One Identity Safeguard is highly recommended because it is a wonderful solution, providing great usability, great security, and great visibility. One thing I would advise is to ensure your team is properly trained before deployment and plan the architecture and policies carefully, as this will help you get the best result. This review has been given a rating of nine out of ten.

          Which deployment model are you using for this solution?

          On-premises
          Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
          Last updated: Apr 9, 2026
          Flag as inappropriate
          PeerSpot user
          Erik  Sjögren - PeerSpot reviewer
          Solution Architect at Atea
          Real User
          Top 5
          Apr 11, 2026
          Priviliege Access Governance by joining IGA and PAM (cross-product)
          Pros and Cons
          • "I have successfully connected Identity Manager (IGA) to Safeguard to achieve Privilege Access Governance, making it possible by using an OOTB connector in Identity Manager to talk to the Safeguard system so I can govern the data from Safeguard and provision PAM accounts from Identity Manager to achieve a complete lifecycle."
          • "Documentation can be much better and they should provide typical use cases to get started more easily."

          What is our primary use case?

          I have hands-on experience with One Identity Safeguard and attended the foundation course in the end of last year. My primary goal is to make use of the cross-product capabilities joining IGA (Identity Manager) and Safeguard (PAM) to achieve Privilege Access Governance (PAG) since lots of customers are asking for this. The trend show consolidation within the IAM market and cross-product solutions is becoming the new standard.

          What is most valuable?

          Most important, very easy to setup.

          Safeguard for Privileged Passwords (SPP)

          I have been using asset and account discovery. This means the product will assist in identifying privileged accounts across hosts, directories, and networks.

          Other features include workflow and access requests. Typically time-based, which is best practice to restrict access. Workflows can have one or several approvers.

          The "activity center" where I can place my custom queries and get automated reports. This will collect over time and you can see what has happened for a certain user.

          I like that the upgrades are not complicated, if the appliance is clustered this is handled automatically.

          Great variety of support for different platforms and protocols.

          Safeguard for Privileged Sessions (SPS)

          I have used something called centralized policy enforcement. You can set up a gateway proxy for privileged sessions where you are applying authentication, access controls, and security policies. This is for endpoints such as SSH, RDP, and telnet.

          Then I have used session recording and audit trails. When the recording is being made, it actually records at the protocol level, meaning it can capture keystrokes, mouse input, and the GUI. The recordings can be digitally signed.

          Real-time monitoring alerts. It can detect violations according to a policy. If there is a destructive command that is dangerous, it can look for those and can trigger an alert. If we want, it can also automatically terminate the session that is ongoing. Everything is indexed and searchable. It is like a forensics investigation and you can do searchable playback.

          User behavior analytics. This is some kind of integration where in real time, it can detect anomalies, something that is not normal, and do some deeper insights on that matter.

          I have successfully connected Identity Manager (IGA) to Safeguard to achieve Privilege Access Governance. This is being possible by using an OOTB connector in Identity Manager to talk to the Safeguard system. I can govern the data from Safeguard and provision PAM accounts from Identity Manager to achieve a complete lifecycle.

          What needs improvement?

          Documentation can be much better and they should provide typical use cases to get started more easily.

          SPP and SPS has separate portals (even if they are joined). SPP seems to be a more mature product and the SPS seems to be less updated in its UI and has more technical depth when configuring.

          For how long have I used the solution?

          I have been working with it for a couple of months.

          How was the initial setup?

          Straighforward.

          Using the virtual appliance is quite easy. You download the hypervisor file, everything is already included. There is one appliance for the SPP and one for the SPS. SPP requires a Windows license and to activate it you must have internet access. It was a little headache to get it working.

          What other advice do I have?

          I'm rating the product 8 of 10 out of what I have seen so far, I'm satisfied by the features OOTB and the integration with the Identity Manager. Also the usage of Remote Access (SRA) and Cloud assistant should not be missed.

          Which deployment model are you using for this solution?

          On-premises
          Disclosure: My company has a business relationship with this vendor other than being a customer. partner
          Last updated: Apr 11, 2026
          Flag as inappropriate
          PeerSpot user
          Vivek_Jaiswal - PeerSpot reviewer
          Security Engineer at LTI Mindtree
          Real User
          Top 5Leaderboard
          Mar 30, 2026
          Identity controls have strengthened protection and simplify revoking access across user accounts
          Pros and Cons
          • "I primarily use One Identity Safeguard for protecting security across all user accounts, enterprise data accounts, assets, as well as privileged access, domain user, and admin accounts, giving SSO features and providing security across all user accounts."
          • "The user interface can be improved for better searching of user accounts, and if One Identity enhances its support in that area, it would be very helpful."

          What is our primary use case?

          My main use case for One Identity Safeguard in day-to-day work is to provide identity across all user accounts and domains, and it improves security across the enterprise by providing enhanced features with respect to this identity solution.

          I primarily use One Identity Safeguard for protecting security across all user accounts, enterprise data accounts, assets, as well as privileged access, domain user, and admin accounts, giving SSO features and providing security across all user accounts.

          What is most valuable?

          One Identity Safeguard offers the ability to identify and revoke access easily for terminated accounts, which reduces risk and simplifies control of access in case of detected threats.

          It reduces a lot of risk and saves time; every account is synced, and it can grant access with role-based permissions across all users quickly, alerting us if any threat is detected.

          I find that the deployment of One Identity Safeguard is very easy, with good integration and scalability of user accounts, enhancing feature capabilities and providing strong product support.

          What needs improvement?

          The user interface can be improved for better searching of user accounts, and if One Identity enhances its support in that area, it would be very helpful.

          If One Identity improves integration during migration from other platforms, it will definitely enhance the overall experience.

          If the integration and connectivity can be improved during deployment, it would greatly aid the overall experience.

          For how long have I used the solution?

          I have been using One Identity Safeguard for more than two years.

          What do I think about the stability of the solution?

          As of now, I have not experienced any downtime or reliability issues with One Identity Safeguard.

          What do I think about the scalability of the solution?

          One Identity Safeguard's scalability features are good, allowing me to improve the scale in terms of resources and user accounts.

          How are customer service and support?

          For small issues, I have raised support cases with One Identity, and the team has been very cooperative and responsive in providing support and documentation.

          Which solution did I use previously and why did I switch?

          I previously used SailPoint, but One Identity Safeguard is better in terms of product features.

          How was the initial setup?

          The deployment took three phases: first, I got support from the vendor for integration, second, I deployed across all users, and finally, I identified any associated risks.

          I performed the deployment in different stages for not all users, ensuring that privileged user accounts transitioned smoothly onto One Identity Safeguard.

          What about the implementation team?

          I had some formal sessions from the vendor that provided visibility into improved features, capability, enhanced security control, user accessibility, and granting access, and the team is very comfortable now.

          What was our ROI?

          I saved both money and time as a result of using One Identity Safeguard.

          What's my experience with pricing, setup cost, and licensing?

          I did not face any challenges with pricing, setup costs, and licensing, but for improved features, I need to address licensing.

          Which other solutions did I evaluate?

          Before choosing One Identity Safeguard, I evaluated Saviynt, Delinea, and Octa, finding One Identity Safeguard to be the most suitable.

          What other advice do I have?

          In the context of increasing cyber threats across organizations, I would advise others that using One Identity Safeguard is crucial for protection. I would rate this review a 9 out of 10.

          Which deployment model are you using for this solution?

          Hybrid Cloud

          If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

          Other
          Disclosure: My company does not have a business relationship with this vendor other than being a customer.
          Last updated: Mar 30, 2026
          Flag as inappropriate
          PeerSpot user
          reviewer2845779 - PeerSpot reviewer
          Gerente De Proyectos at a manufacturing company with 11-50 employees
          Real User
          Top 5Leaderboard
          Jul 15, 2026
          Centralized privileged access has transformed password management and supports compliant auditing
          Pros and Cons
          • "Before using One Identity Safeguard, two administrators spent approximately twenty hours a month on manual credential management, and after implementation, this time was reduced to about five hours a month, which represented a savings of thirty hours per month."
          • "I think the aspects that could be improved in One Identity Safeguard include the learning curve, since the installation is complex and expert guidance is required in the first steps."

          What is our primary use case?

          One Identity Safeguard is primarily utilized in my organization for managing the company's privileged accounts.

          I use One Identity Safeguard to record and audit privileged sessions in order to meet regulatory requirements.

          What is most valuable?

          The best features that One Identity Safeguard offers is the centralized approach to managing privileged accounts. Specifically, the centralized approach has helped us significantly reduce the time spent on managing privileged account passwords.

          One Identity Safeguard has positively impacted my organization. After implementation, we were able to reduce the time spent on security incidents related to compromised passwords. Before using One Identity Safeguard, two administrators spent approximately twenty hours a month on manual credential management, and after implementation, this time was reduced to about five hours a month, which represented a savings of thirty hours per month.

          What needs improvement?

          I think the aspects that could be improved in One Identity Safeguard include the learning curve, since the installation is complex and expert guidance is required in the first steps.

          The upgrade process could also be simpler.

          For how long have I used the solution?

          I have been using One Identity Safeguard for one year.

          What do I think about the stability of the solution?

          One Identity Safeguard is a stable solution.

          What do I think about the scalability of the solution?

          I perceive the scalability of One Identity Safeguard as good, as it adapts well to the growth of my organization.

          We have been able to continue adding more credentials and more users to the tool.

          How are customer service and support?

          My experience with One Identity Safeguard's customer support has been positive, as the team usually responds within reasonable time frames and shows a good level of technical knowledge.

          I would rate customer support eight out of ten.

          Which solution did I use previously and why did I switch?

          Before implementing One Identity Safeguard, we did not have another tool.

          How was the initial setup?

          One Identity Safeguard is implemented on a local server in my organization.

          The implementation of One Identity Safeguard took about eight months in our organization.

          What about the implementation team?

          The implementation affected privileged users with a learning curve, since they had to start using the tool, but it was resolved over time.

          One month of training and another month of support was needed for both administrators and end users to use the tool efficiently.

          What was our ROI?

          I have seen a return on investment with the platform, having experienced a reduction of around thirty working hours per month for privileged credential management.

          What's my experience with pricing, setup cost, and licensing?

          My experience with the licensing, installation, and pricing of One Identity Safeguard was within expectations since that was taken into account when evaluating the tool.

          What other advice do I have?

          Users have told us that the interface is intuitive, that the team becomes familiar with the platform, and the integration with Windows environments is quite complete.

          For the moment, we have not integrated the platform with other areas of our business, as we are still working on that.

          I would advise other companies that are considering implementing One Identity Safeguard to thoroughly review their internal processes so they can adapt them to the tool.

          I have given this review an overall rating of nine.

          Which deployment model are you using for this solution?

          On-premises
          Disclosure: My company does not have a business relationship with this vendor other than being a customer.
          Last updated: Jul 15, 2026
          Flag as inappropriate
          PeerSpot user
          Buyer's Guide
          Download our free Safeguard by One Identity Report and get advice and tips from experienced pros sharing their opinions.
          Updated: July 2026
          Buyer's Guide
          Download our free Safeguard by One Identity Report and get advice and tips from experienced pros sharing their opinions.