No more typing reviews! Try our Samantha, our new voice AI agent.
reviewer2814237 - PeerSpot reviewer
Network Engineer at a outsourcing company with 1,001-5,000 employees
Real User
Top 5
Apr 17, 2026
Privileged access has become controlled and monitoring now supports security and compliance
Pros and Cons
  • "One Identity Safeguard has improved security a lot by controlling privileged access, and it also reduced risks since all sensitive activities are monitored and logged."
  • "I think One Identity Safeguard could be improved by making the UI more user-friendly and simplifying some configurations, as it can feel a bit complex at times."

What is our primary use case?

I use One Identity Safeguard mainly for managing and securing privileged access like controlling admin accounts and monitoring sensitive sessions.

For example, I use One Identity Safeguard to grant temporary admin access to users and track their sessions to make sure everything is secure.

One Identity Safeguard also helps with password vaulting and automatic rotation.

This means we don't have to share or manually manage sensitive credentials.

We are using One Identity Safeguard in a hybrid setup, partly on-premises for sensitive access control and partly integrated with cloud services.

We have integrated One Identity Safeguard with our cloud environment on Microsoft Azure and also with some internal DevOps workflows so privileged access can be controlled during the deployments and automation tasks.

It was moderately easy overall to integrate One Identity Safeguard with our DevOps workflows and Microsoft Azure environment.

Microsoft Azure integration was pretty smooth, but the DevOps workflow setup took a bit more effort to configure and test properly.

What is most valuable?

I think the best features One Identity Safeguard offers are strong password vaulting with auto-rotation, session monitoring and recording, and real-time alerts that help catch suspicious activity quickly.

The real-time alerts from One Identity Safeguard are pretty reliable.

Alerts come in quickly, and they have helped us respond faster to suspicious activity before it becomes a bigger issue.

The session recording and audit logs from One Identity Safeguard really stand out.

They make tracking and reviewing activity easy.

But it would be even better if the UI was a bit more user-friendly.

One Identity Safeguard has improved security a lot by controlling privileged access, and it also reduced risks since all sensitive activities are monitored and logged.

We have seen fewer security risks since access is controlled and monitored by One Identity Safeguard, and it definitely helped with compliance because all actions are logged and easy to audit.

What needs improvement?

I think One Identity Safeguard could be improved by making the UI more user-friendly and simplifying some configurations, as it can feel a bit complex at times.

Reporting with One Identity Safeguard could be more detailed and easier to customize, and better integration with other tools would make the overall experience smoother.

For how long have I used the solution?

I have been using One Identity Safeguard for around one and a half years.

Buyer's Guide
Safeguard by One Identity
August 2026
Learn what your peers think about Safeguard by One Identity. Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
911,952 professionals have used our research since 2012.

What do I think about the stability of the solution?

One Identity Safeguard is generally stable and reliable in day-to-day use.

What do I think about the scalability of the solution?

One Identity Safeguard is generally considered highly scalable and enterprise-ready.

How are customer service and support?

Customer support for One Identity Safeguard is generally good and knowledgeable, especially when it comes to technical issues and enterprise deployments.

Which solution did I use previously and why did I switch?

Earlier we were using a mix of manual access management and some basic PAM tools, but we switched to One Identity Safeguard for better automation, strong security controls, and easier auditing.

How was the initial setup?

Admins needed a bit of training for One Identity Safeguard, maybe a few days to get comfortable with policies and setup.

But for end-users, it was pretty minimal since most of it runs in the background.

It was mostly seamless for privileged users after deploying One Identity Safeguard.

They just had to follow the new access request process, and after a short adjustment period, it didn't really disturb their daily work.

What about the implementation team?

We didn't purchase One Identity Safeguard through the Microsoft Azure Marketplace.

We went through a direct vendor licensing process.

What was our ROI?

We have seen ROI with One Identity Safeguard mainly in reduced manual efforts and faster access handling.

Roughly around 40 percent less time spent on managing privileged accounts, and also fewer security incidents that need manual intervention, which saved both time and operational costs.

What's my experience with pricing, setup cost, and licensing?

Pricing for One Identity Safeguard was on the higher side but justified by the security features.

Setup cost was manageable and licensing is typically subscription-based per appliance or capacity, which makes it easier to scale but can add up in larger environments.

Which other solutions did I evaluate?

We did evaluate a few options before finalizing One Identity Safeguard. The main ones we looked at were CyberArk, BeyondTrust, and several others.

CyberArk was very strong but felt a bit complex and costly, and BeyondTrust was solid for remote access and monitoring.

In the end, we chose One Identity Safeguard because it fit better with our hybrid setup and integration needs.

What other advice do I have?

One Identity Safeguard is a solid and reliable PAM solution in my experience.

My advice would be to start with a clear access model before you deploy One Identity Safeguard. I would rate this review an 8 out of 10.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Apr 17, 2026
Flag as inappropriate
PeerSpot user
reviewer2846145 - PeerSpot reviewer
Seniour System Admin at a financial services firm with 51-200 employees
Real User
Top 10
May 26, 2026
Centralized authentication has simplified linux access and improved security and audit control
Pros and Cons
  • "Integration of One Identity Safeguard has positively affected our operations by centralizing authentication across Linux and Unix, reducing manual account management, and simplifying user access control through Active Directory integration."
  • "One Identity Safeguard can be improved in areas such as UI modernization."

What is our primary use case?

One Identity Safeguard's main use case in our environment is authentication services. It serves as a centralized authentication solution for Linux and Unix servers, including the use of Active Directory credentials. This helps us simplify user access management, reduce local account dependency, improve security, and provide centralized authentication and auditing across servers.

A specific example of using One Identity Safeguard is for Linux and Unix server access management. Instead of maintaining separate local accounts on servers, users can log in using their Active Directory credentials. This simplifies access management, reduces password-related issues, and improves audit visibility.

What is most valuable?

The best features of One Identity Safeguard authentication services are seamless Active Directory integration, centralized integration, authentication and single sign-on for Linux and Unix systems, policy enforcement, and centralized auditing.

The Active Directory integration in One Identity Safeguard allows for seamless integration in our environment because Linux and Unix systems can directly use AD credentials for authentication without maintaining separate local user profiles. Once it is integrated properly with AD, user access management becomes much easier and centralized.

One Identity Safeguard has positively impacted our environment by simplifying Linux and Unix authentication, reducing dependency on local accounts, improving centralized access control, and making user onboarding and offboarding much easier from a security and operational perspective.

One example where One Identity Safeguard services helped us was during employee offboarding. Before, administrators had to manually remove or disable local accounts from multiple Linux servers, which was time-consuming and sometimes risky if something was missed. By integrating with Active Directory through Safeguard, disabling the AD account automatically blocks access across connected Linux and Unix systems, which improves security and reduces manual effort.

From an accuracy and reliability perspective, One Identity Safeguard has been generally consistent in our environment.

What needs improvement?

One Identity Safeguard can be improved in areas such as UI modernization. Debugging authentication issues across Linux, AD, DNS, and Kerberos sometimes still requires manual investigation and Linux expertise.

Additionally, better real-time monitoring, clearer authentication error reporting, and simpler troubleshooting tools in One Identity Safeguard would be helpful, especially when working in large and complex environments.

One area where One Identity Safeguard still needs improvement is troubleshooting and visibility during authentication failures in a real environment. Issues related to Kerberos, DNS, SSH, or AD synchronization can sometimes take time to diagnose. Better real-time monitoring and clearer error reporting would help significantly.

For how long have I used the solution?

I have been using One Identity Safeguard for four years.

What do I think about the stability of the solution?

One Identity Safeguard is stable.

What do I think about the scalability of the solution?

Scalability is good.

How are customer service and support?

Support is very good.

Which solution did I use previously and why did I switch?

Before implementing One Identity Safeguard, we mainly relied on local Unix accounts and manual authentication. Managing access across multiple servers was time-consuming and inconsistent, especially during onboarding, offboarding, and audit cycles.

How was the initial setup?

The deployment of One Identity Safeguard in our environment took around two to four weeks, including planning, Active Directory integration, Linux server onboarding, testing, and phased rollout. The core deployment was manageable, but troubleshooting authentication dependencies such as DNS, Kerberos, and SSH configuration took additional effort during implementation.

What was our ROI?

We saw good ROI with One Identity Safeguard mainly through reduced manual Linux account management, centralized authentication, faster onboarding and offboarding, and improved audit and compliance visibility. It also reduced operational effort because disabling a user account automatically removes access on multiple systems.

What's my experience with pricing, setup cost, and licensing?

My experience with pricing, setup, and licensing was generally good for an enterprise environment, although the initial setup and license cost can be somewhat high for smaller organizations. The deployment requires some planning around Active Directory and Linux integration, but overall, the solution has reduced manual administration effort and improved centralized access management, so the value was justified in our environment.

Which other solutions did I evaluate?

We did evaluate other options before choosing One Identity Safeguard.

What other advice do I have?

The training requirement for this was moderate in our environment. Experienced Linux and Active Directory administrators were able to manage daily operations after a few days of hands-on training and documentation review. The bigger learning curve was mostly around troubleshooting Kerberos, DNS, SSH, and Linux authentication-related issues in hybrid environments.

Integration of One Identity Safeguard has positively affected our operations by centralizing authentication across Linux and Unix, reducing manual account management, and simplifying user access control through Active Directory integration. It also improved security and audit visibility because access management became more consistent across the environment instead of managing separate local accounts on individual servers.

One Identity Safeguard positively affected privileged users by improving centralized authentication and more controlled access management for Linux and Unix systems. Instead of managing multiple local privileged accounts, administrators could use centralized AD-based authentication and policies, which improved security, simplified access management, and increased audit visibility for privileged activities.

The integration difficulty for One Identity Safeguard was moderate in our environment. The Active Directory integration was straightforward, but challenges came during Linux authentication configuration, Kerberos, DNS synchronization, and integrating across multiple Unix distributions and hybrid environments.

One Identity Safeguard service was integrated with applications and services of Microsoft Active Directory, Linux and Unix servers, SSH-based access systems, VMware infrastructure, and some DevOps-related environments for centralized authentication and access management. The main advantage was centralized credential management and consistent access control across multiple platforms.

In our environment, One Identity Safeguard authentication services was mainly deployed on-premises, so cloud dependency was minimal. Although we had some integration with Microsoft Azure for hybrid infrastructure and identity-related operations, One Identity Safeguard was mainly deployed as virtual appliances on VMware infrastructure. We use virtual deployment because it is easier for scaling, backup, disaster recovery, and maintenance compared to physical appliances.

I would rate this solution an overall eight out of ten.

Which deployment model are you using for this solution?

On-premises

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: May 26, 2026
Flag as inappropriate
PeerSpot user
Buyer's Guide
Safeguard by One Identity
August 2026
Learn what your peers think about Safeguard by One Identity. Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
911,952 professionals have used our research since 2012.
Niyajuddin Tiwale - PeerSpot reviewer
Technique at Digitaltrack
Real User
Top 5Leaderboard
Apr 2, 2026
Privileged access has become controlled and audited with real-time session monitoring
Pros and Cons
  • "One Identity Safeguard has positively impacted our organization by giving us complete visibility over all privileged access, making compliance audits much easier than before, and ensuring that access is not time-bound, allowing admins access only for the duration they need it."

    What is our primary use case?

    My main use case for One Identity Safeguard is to use it as a PAM tool for managing and monitoring privileged accounts. In every organization, there are special accounts such as admin or root accounts that have a very high level of access, and if these accounts are missed or compromised, it can create problems or damage. One Identity Safeguard helps us to control who uses these accounts and when they can use them.

    A quick, specific example of how I use One Identity Safeguard to manage those privileged accounts involves a database administrator needing to make an urgent change to our production database. In the past, we would just use a shared admin password that everyone in the team knows, but now with One Identity Safeguard, the admin logs into the Safeguard portal and raises an access request for the production database. The request automatically goes to his manager, and based on the review, it gets approval. One Identity Safeguard connects the admin to the database without showing him the actual password, so he never knows about the credentials.

    What is most valuable?

    The excellent session recording and monitoring stand out as the best features of One Identity Safeguard. It is a compliance-based deployment and can work across on-premises as well as cloud environments.

    Session recording and monitoring have benefited my organization by ensuring that every privileged session is monitored in real-time. Whenever any admin logs into the server through One Identity Safeguard, the system records it and the screen is viewed. The security team can watch live sessions if needed or review the recordings whenever they need them.

    One Identity Safeguard has saved our compliance efforts, so generating audit reports that used to take days now takes a minute, which is a very good example of its efficiency.

    One Identity Safeguard has positively impacted our organization by giving us complete visibility over all privileged access, making compliance audits much easier than before, and ensuring that access is not time-bound, allowing admins access only for the duration they need it.

    Compliance audits have become much simpler with One Identity Safeguard, as every access request, approval, session, and action is logged automatically. The audit team can ask who accessed what system and when, and we are able to generate those types of reports in minutes, significantly reducing our efforts and costs.

    What needs improvement?

    I have not seen any issues with One Identity Safeguard solution. I do not wish to add more about needed improvements related to usability, integration, or support.

    For how long have I used the solution?

    I have been using One Identity Safeguard for more than three years.

    What do I think about the stability of the solution?

    One Identity Safeguard is stable.

    What do I think about the scalability of the solution?

    One Identity Safeguard is a very good solution from a scalability perspective, and we have not seen any issues with its scalability so far.

    How are customer service and support?

    The customer support team for One Identity Safeguard is good, responsive, and we have seen good responses multiple times.

    Which solution did I use previously and why did I switch?

    We are using One Identity Safeguard only and did not use a different solution before.

    How was the initial setup?

    The deployment of the solution took less than one month for my organization.

    The deployment affected our privileged users smoothly, as I did not see any challenges or disruptive events with this solution.

    The experience during the deployment was very smooth, as I have not seen any kind of challenges with the end-users.

    What about the implementation team?

    We have integrated our Active Directory with One Identity Safeguard.

    The integration with Active Directory was complex during the initial setup, but later we found it to be very smooth, requiring proper planning in advance.

    The integration with Active Directory has improved our efficiency and security because our users are syncing properly.

    What was our ROI?

    We have seen a good return on investment with One Identity Safeguard because the ROI did not come in a dramatic way; it came through multiple small savings that added up significantly over the years.

    What's my experience with pricing, setup cost, and licensing?

    I had a great experience with the pricing and setup cost of One Identity Safeguard, and there were no challenges.

    Which other solutions did I evaluate?

    We have not evaluated other options before choosing One Identity Safeguard.

    What other advice do I have?

    I would advise others looking into using One Identity Safeguard to implement it in their environment and not wait for a security incident to occur. Most organizations consider access management only after something goes wrong and an account gets compromised, but by then the damage is already done. One Identity Safeguard is a tool you want in place before something bad happens, so this is highly recommended by us. I have given this review a rating of eight.

    Which deployment model are you using for this solution?

    On-premises

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Other
    Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
    Last updated: Apr 2, 2026
    Flag as inappropriate
    PeerSpot user
    reviewer2878287 - PeerSpot reviewer
    Senior Engineer at a insurance company with 1,001-5,000 employees
    Real User
    Top 5
    Aug 5, 2026
    Privileged access has been secured and daily audits now run with automated workflows
    Pros and Cons
    • "Safeguard by One Identity has positively impacted my organization as it automated the solution, making the process smoother, cheaper, and reliable."
    • "Improving usability and simplifying configuration would be beneficial to enhance Safeguard by One Identity."

    What is our primary use case?

    I have been using Safeguard by One Identity for a couple of years now. My main use case for Safeguard by One Identity is managing and securing privileged access across the organization, which includes password vaulting, session management, and controlling access to critical systems.

    A specific example of how I use it day-to-day involves session monitoring, recording, audits, and password rotation, as all those things help manage and secure access.

    How has it helped my organization?

    Safeguard by One Identity has positively impacted my organization as it automated the solution, making the process smoother, cheaper, and reliable. I believe it has reduced the time spent on the process by 20%, and it also reduced costs.

    What is most valuable?

    The best features Safeguard by One Identity offers include privileged access, privileged password management, session monitoring and recording, alerting feature, password vaulting, session recording, and automated access workflow.

    The automated access workflow saves time, makes the process automated, and reduces risk and defects for my team day-to-day.

    What needs improvement?

    Improving usability and simplifying configuration would be beneficial to enhance Safeguard by One Identity.

    For how long have I used the solution?

    I have been working in my current field for over 15 years.

    What do I think about the stability of the solution?

    Safeguard by One Identity is a stable solution overall.

    What do I think about the scalability of the solution?

    Safeguard by One Identity's scalability is strong as it scales well in the enterprise environment, allowing systems to scale beyond the limit of one application, with the ability to add multiple nodes for password management.

    How are customer service and support?

    The customer support for Safeguard by One Identity is quite positive, offering good documentation and reliable response times with consistent support. I would rate the customer support an eight on a scale of one to ten.

    Which solution did I use previously and why did I switch?

    I have not previously used a different solution.

    How was the initial setup?

    The deployment of the solution took about eight weeks. The deployment was a smooth process with a short learning curve for our privileged users. Very small to moderate training was required to start using the solution as a short walkthrough and quick documentation check was enough to understand and begin using it.

    What about the implementation team?

    We have not integrated Safeguard by One Identity with any other parts of our business yet, but it is something we would be looking at in the future.

    What was our ROI?

    I have seen a return on investment as it saved approximately 25% of the manual effort that was required before and also saved about 15 to 20% of the cost of implementation.

    What's my experience with pricing, setup cost, and licensing?

    My experience with pricing, setup cost, and licensing is mostly positive as I find it quite cost-effective and it has a good licensing structure.

    Which other solutions did I evaluate?

    Before choosing Safeguard by One Identity, I evaluated other options such as CyberArk and BeyondTrust, but Safeguard by One Identity clearly stands out among them.

    What other advice do I have?

    My advice for others looking into using Safeguard by One Identity is to have a planned plan before implementation, identify what your systems are and the privileged accounts, and prioritize those needs, along with getting all the approvals for session policies, password rotation, approval workflows, and session monitoring.

    I would rate this review a nine on a scale of one to ten.

    Which deployment model are you using for this solution?

    Hybrid Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    Last updated: Aug 5, 2026
    Flag as inappropriate
    PeerSpot user
    Nishant Patil - PeerSpot reviewer
    Presales Consultant at a outsourcing company with 1,001-5,000 employees
    Real User
    Top 5
    May 14, 2026
    Strong access controls have secured privileged accounts and now improve accountability
    Pros and Cons
    • "One Identity Safeguard has positively impacted my organization by tracking admin activities in real time, recording privileged sessions, improving the accountability of engineers and administrators, and detecting suspicious or unauthorized actions."

      What is our primary use case?

      My main use case for One Identity Safeguard is securing administrator access to critical infrastructure, like firewall servers, switches, databases, as well as the VMware environments. Earlier, multiple engineers used shared admin passwords for devices and servers, which made it difficult to track who performed what activity. This also increased the risk of password misuse and unauthorized access. We have used One Identity Safeguard to secure all of these resources.

      A specific example of how I use One Identity Safeguard to secure access or track activities is when an engineer wanted to log in to a firewall for some configuration changes. One Identity Safeguard provides secure access without exposing the actual password. Once the task was completed, the password could be automatically changed, ensuring better security. This use case helps the organization improve privileged access security, maintain accountability, and reduce insider threats for auditing and compliance purposes.

      One Identity Safeguard is deployed in my organization on physical appliances, which are dedicated hardware appliances provided by One Identity.

      What is most valuable?

      The best features One Identity Safeguard offers include a secure password vault for privileged accounts, Privileged Access Management (PAM), session monitoring, and session recording. Additionally, MFA support is available. There are different benefits and features, including real-time monitoring of administrator activity, audit logs, and compliance reporting.

      Session monitoring is a feature where all privileged user activities are monitored in real-time whenever an administrator accesses critical systems such as servers, firewalls, switches, or databases. For example, if a network engineer logs into a secure firewall using One Identity Safeguard, the complete session can be monitored and recorded, including the commands executed, the configuration changes made, the previous configuration, the login duration, and the logout activity.

      One Identity Safeguard has positively impacted my organization by tracking admin activities in real time. It records privileged sessions, improves the accountability of engineers and administrators, and detects suspicious or unauthorized actions.

      What needs improvement?

      I have nothing to improve. The solution is well-designed. I do not have anything at all that I wish could be easier or better, even if it is something small, whether in the user interface, reporting, or integration.

      For how long have I used the solution?

      I have been using One Identity Safeguard for one year.

      What do I think about the stability of the solution?

      One Identity Safeguard is stable.

      What do I think about the scalability of the solution?

      In terms of scalability, One Identity Safeguard can easily grow along with the organization's infrastructure and security requirements. It supports growing infrastructure and handles a large number of privileged accounts because it can support an increasing number of users, privileged accounts, devices, and locations as the organization expands.

      How are customer service and support?

      The customer support for One Identity Safeguard is good.

      Which solution did I use previously and why did I switch?

      I have not previously used a different solution. This is the first solution we deployed.

      How was the initial setup?

      The deployment of the solution took up to one month in my environment.

      The deployment was a smooth process for my privileged users. All integrations were executed very well.

      What about the implementation team?

      Training of approximately ten to twelve days is sufficient for all users, both those new to One Identity Safeguard and those with existing knowledge. Very good training can be delivered within twelve days.

      What was our ROI?

      The return on investment comes from improving security while reducing operational risk and manual administration. Earlier, the organization managed privileged passwords manually, which increased the chance of password misuse and insider threats. After implementing One Identity Safeguard, privileged access becomes centralized, monitored, and automated. The ROI of One Identity Safeguard is mainly achieved through stronger security, reduced operational effort, automation of privileged access management, and lower risk of security incidents.

      What's my experience with pricing, setup cost, and licensing?

      My experience with pricing, setup cost, and licensing is that the price is a bit too high. The price could be lower for licenses based on the number of privileged accounts and number of managed access systems. There is a common license factor involved.

      Which other solutions did I evaluate?

      I have not evaluated other options before choosing One Identity Safeguard.

      What other advice do I have?

      My advice for others looking into using One Identity Safeguard is that it is very useful in the organization for preventing password issues. I would rate this review as nine out of ten.

      Which deployment model are you using for this solution?

      On-premises
      Disclosure: My company does not have a business relationship with this vendor other than being a customer.
      Last updated: May 14, 2026
      Flag as inappropriate
      PeerSpot user
      reviewer2789601 - PeerSpot reviewer
      Consultant at a computer software company with 11-50 employees
      Real User
      Top 5
      Dec 25, 2025
      Modern privileged access workflows have improved user onboarding and secure password management
      Pros and Cons
      • "The best feature One Identity Safeguard offers is that it is a pretty new, modern tool that makes extensive use of its API."
      • "One Identity Safeguard can be improved by fixing the documentation, which is very convoluted as of now, and addressing versioning, as some major bugs and issues are not documented well enough in the documentation, along with some patches and fixes."

      What is our primary use case?

      Our main use case for One Identity Safeguard is to integrate it to clients that need the SPP functionality, which stands for Safeguard for Privileged Passwords. They do say that we could utilize One Identity Safeguard to its full extent for now, but we're getting there.

      A quick specific example of how we use One Identity Safeguard with a client is that our latest client needed a password vault, so at first, we integrated One Identity Safeguard for Privileged Passwords, and then they asked for a personal vault so they could store their passwords and secrets, much like KeePass, so we integrated One Identity Safeguard Personal Vault as well. Lastly, they figured at some point down the line that they needed SPS as well, but only the primitive version of it, so we just decided to integrate SPS as well and form it into a cluster with SPP, but they don't use any third-party plugins as of now.

      What is most valuable?

      The best feature One Identity Safeguard offers is that it is a pretty new, modern tool that makes extensive use of its API. In general, it's easier than other tools to just perform maintenance work or perform work using the API of One Identity Safeguard. Also, the way that the access requests are structured—with entitlements and access request policies—makes it easier to govern data and identities. CyberArk, which is essentially the industry standard right now, is doing a very primitive job of helping the administrator with the task, and One Identity Safeguard is a lot better at this.

      These features help my team day-to-day by making onboarding new users easier, and they also make it easier to create existing teams that are complete with their own password management, their own password profiles and rotations, password requirements, and who gets access to what, so it all makes it easier and faster.

      One Identity Safeguard has positively impacted my organization by being another tool that we have in our arsenal to be able to get other clients as well, because we also sell One Identity IAM, and we can just bundle One Identity Safeguard with it. It also has a nice feature called remote access, which a lot of people want to use for externals in their organization, coupled with its just-in-time requisition, so it makes selling it much easier because One Identity is a company that's been in the field for ages.

      What needs improvement?

      One Identity Safeguard can be improved by fixing the documentation, which is very convoluted as of now, and addressing versioning, as some major bugs and issues are not documented well enough in the documentation, along with some patches and fixes. Custom plugins need to be introduced as soon as possible.

      I give it an eight because it's a nice tool and it's a modern tool, but there are still some issues, not necessarily pertaining to the tool itself, but to the whole philosophy of One Identity and how they have structured their workflows and their knowledge base, which essentially has no knowledge base, just like CyberArk. There are some issues that need to be fixed, plus it does not have a custom option, and a lot of clients are using in-house made applications that also need to be onboarded to One Identity Safeguard to be able to launch a browser session to that application, which One Identity Safeguard has not had any capabilities that could assist with that.

      For how long have I used the solution?

      I have been using One Identity Safeguard for two and a half years, ever since we pivoted from CyberArk, as we wanted to be more tool-agnostic, and we decided that One Identity Safeguard was our best option because we had a past with One Identity, with us being in an IAM team.

      What do I think about the stability of the solution?

      One Identity Safeguard is stable.

      What do I think about the scalability of the solution?

      So far, we haven't had any issues with One Identity Safeguard's scalability; it's been fine, but we generally target smaller to mid-sized implementations.

      How are customer service and support?

      The customer support for One Identity Safeguard is fine for what it is, even though everything needs to be run through them and there are no knowledge bases, so we have to wait for a response from the One Identity Safeguard company, and they also keep a lot of information, requiring us to make a request and then they would need to reply, but it's acceptable overall. It's not the worst I've seen.

      How would you rate customer service and support?

      Positive

      Which solution did I use previously and why did I switch?

      I previously used CyberArk before switching to One Identity Safeguard.

      How was the initial setup?

      The deployment of the solution takes about two to four weeks, give or take, but that's not counting waiting for the client to respond and all that.

      About a month of training is required for end-users, and for us, it was four months to understand One Identity Safeguard, but that was because we already had experience in other PAM tools like CyberArk.

      What about the implementation team?

      We are partners, executive partners, and resellers with this vendor.

      What's my experience with pricing, setup cost, and licensing?

      My experience with pricing, setup cost, and licensing has been a good experience overall, as the back and forth with One Identity is something that is acceptable; other tools have options to do this automatically, and they have it, but pricing, presales, and sales is acceptable overall.

      Which other solutions did I evaluate?

      Before choosing One Identity Safeguard, I evaluated Zero Trust and Delinea, but they were for smaller organizations, so we decided to adopt One Identity Safeguard.

      What other advice do I have?

      My advice to others looking into using One Identity Safeguard is to get familiar with the concepts of entitlements and access request policies, the keywords One Identity Safeguard uses, and also get familiar with the way that it handles session management and recording because it's a tool that needs a lot of time to get accustomed to. I give One Identity Safeguard an overall rating of eight out of ten.

      Disclosure: My company has a business relationship with this vendor other than being a customer. Partner, Reseller
      Last updated: Dec 25, 2025
      Flag as inappropriate
      PeerSpot user
      Satyam Gupta - PeerSpot reviewer
      Technical Support Executive at DigitalTrack Solutions Pvt Ltd
      Real User
      Top 5
      May 30, 2026
      Centralized privileged access has boosted security, accelerated audits, and improved compliance
      Pros and Cons
      • "Since we have deployed this solution, we have experienced many positive outcomes, such as faster audit preparation by fifty to seventy percent and saving operational time by almost forty to sixty percent."

        What is our primary use case?

        One Identity Safeguard is used primarily to secure privileged credentials, enforce control over administrative access, and provide visibility into privileged activities.

        Whenever a network or server administrator requires access to a production system, access is granted through One Identity Safeguard's approval workflow and credential vault rather than exposing privileged account passwords directly.

        What is most valuable?

        One Identity Safeguard offers several best features, including its privileged credential vaulting feature, automated password rotation, and privileged session management, along with session recording and playback.

        The feature that I rely on the most is automated password rotation because it reduces the risk associated with static or shared privileged credentials and improves security by automatically changing passwords at defined intervals without manual intervention, helping us to meet compliance.

        One Identity Safeguard has positively impacted our organization in many ways because it has improved our organization's privileged access security through centralized credential management, enforcing strong password control, and providing complete visibility into privileged user activities.

        Since we have deployed this solution, we have experienced many positive outcomes, such as faster audit preparation by fifty to seventy percent and saving operational time by almost forty to sixty percent. We are also experiencing very good visibility and accountability, enabling quick investigation of privileged user activities.

        The artificial intelligence-related governance and security capabilities of One Identity Safeguard are very strong because they operate within a framework of strict access control, with analytics and intelligent insights providing detailed monitoring and session tracking.

        One Identity Safeguard is very accurate in its output and very reliable, particularly when identifying unusual privileged access behavior and potential security risks, providing insights based on monitoring user activities and established behavior patterns.

        What needs improvement?

        One Identity Safeguard is a very strong privileged access management solution, and the only thing that needs to be enhanced is its dashboard customization; apart from this, everything is perfect.

        For how long have I used the solution?

        I have been using One Identity Safeguard for almost two years.

        What do I think about the stability of the solution?

        One Identity Safeguard is a stable solution.

        What do I think about the scalability of the solution?

        One Identity Safeguard is very scalable and handles organizational growth effectively.

        How are customer service and support?

        The customer support is excellent in technical assistance, and they are ready to provide support at any time.

        Which solution did I use previously and why did I switch?

        We are using One Identity Safeguard since the beginning and have not switched to another solution.

        How was the initial setup?

        The deployment of One Identity Safeguard took approximately four to eight weeks, including planning, installation, integration, and fine-tuning.

        The deployment effect was largely smooth for privileged users with very minimal disruption to day-to-day operations.

        What about the implementation team?

        The end-user required very minimum training, typically a few hours or short onboarding sessions to understand the privileged access request and workflows. The implementation was very smooth, and all users are now handling it very properly.

        What was our ROI?

        We have seen a clear return on investment, with time savings of approximately forty to sixty percent, faster audits by fifty to seventy percent, reduced risks, and increased operational efficiency.

        What's my experience with pricing, setup cost, and licensing?

        Pricing, setup cost, and licensing are managed by the management team.

        Which other solutions did I evaluate?

        We have not evaluated other options before choosing One Identity Safeguard.

        What other advice do I have?

        My advice for any organization considering One Identity Safeguard is to deploy it and start by identifying your most critical privileged accounts and administrative users. Implementing credential vaulting and automating password rotation first will provide very good security benefits.

        We are getting very positive feedback from the users, and they are very happy and appreciating One Identity Safeguard. I would rate this review a nine.

        Which deployment model are you using for this solution?

        On-premises
        Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
        Last updated: May 30, 2026
        Flag as inappropriate
        PeerSpot user
        Nitin Yadav - PeerSpot reviewer
        Network & Security Engineer at Arrow PC Network Pvt.Ltd.
        Real User
        Top 5Leaderboard
        Apr 19, 2026
        Secure access has improved privileged workflows and real-time monitoring streamlines daily tasks
        Pros and Cons
        • "One Identity Safeguard has a noticeable positive impact around security and operational efficiency, providing secure, strong security, real-time monitoring, and full visibility."
        • "Many team members feel that the biggest friction with One Identity Safeguard relates to access requests, session approvals, and policy changes, which require more clicks than expected."

        What is our primary use case?

        My main use case for One Identity Safeguard includes privilege access, session recording, and real-time monitoring.

        In daily work, I use session recording and real-time monitoring as part of my workflow.

        My main use case is privilege access.

        What is most valuable?

        The best features One Identity Safeguard offers include secure and controlled access along with real-time session controlling.

        The real-time session control feature helps me in my daily tasks by providing session controlling and monitoring in user sessions that occur, allowing proactive management across web and platform access instead of reacting after something goes wrong.

        Session monitoring and recording are also crucial parts of the features.

        One Identity Safeguard has a noticeable positive impact around security and operational efficiency, providing secure, strong security, real-time monitoring, and full visibility.

        Operational efficiency has improved as it requires less manual effort for the IT team and makes troubleshooting easier.

        What needs improvement?

        One Identity Safeguard needs improvement in deployment and integrating with other products.

        Many team members feel that the biggest friction with One Identity Safeguard relates to access requests, session approvals, and policy changes, which require more clicks than expected.

        I think One Identity Safeguard is a good product, but it just needs improvement in tech support.

        For how long have I used the solution?

        I have been using One Identity Safeguard for the last two years.

        What do I think about the stability of the solution?

        One Identity Safeguard is stable in my network.

        What do I think about the scalability of the solution?

        Scalability is very good as it can easily scale with organizational growth by adding more virtual appliances, and it handles increasing users, servers, and privilege accounts without any major performance issues.

        How are customer service and support?

        Customer support is really good.

        Which solution did I use previously and why did I switch?

        I previously used a different tool for managing, but it lacked centralized control, proper auditing, and security features.

        How was the initial setup?

        The deployment of the solution took around two to four weeks due to initial setups, integrations, and policy configurations.

        End users need a minimum of two to three weeks to understand the solutions.

        What was our ROI?

        I have seen a return on investment in both money saved and time saved.

        I have experienced noticeable time savings and some indirect cost benefits, specifically in that access provision has reduced from hours to minutes, requiring less manual effort, and the cost impact has been mitigated due to fewer security incidents and audit issues.

        What's my experience with pricing, setup cost, and licensing?

        The pricing, setup cost, and licensing are not the cheapest, but they offer strong security features that justify the cost.

        The license is usually based on the number of user accounts, which is straightforward to understand, and the setup cost is good and reasonable.

        Which other solutions did I evaluate?

        Before choosing One Identity Safeguard, I evaluated BeyondTrust.

        What other advice do I have?

        My advice for others considering One Identity Safeguard would be to plan and execute the deployment properly during the implementation phase.

        I have given this review a rating of 8.

        Which deployment model are you using for this solution?

        Hybrid Cloud

        If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

        Microsoft Azure
        Disclosure: My company does not have a business relationship with this vendor other than being a customer.
        Last updated: Apr 19, 2026
        Flag as inappropriate
        PeerSpot user
        Dhanaji Mali - PeerSpot reviewer
        Technical Specialist at VDA Infosolutions Pvt. Ltd.
        Real User
        Top 5Leaderboard
        Apr 9, 2026
        Privileged access has been secured and sessions are monitored to strengthen accountability
        Pros and Cons
        • "One Identity Safeguard has impacted our organization positively because it has helped us standardize how privileged access is managed and has also reduced dependency on manual efforts in password handling, improving operational control overall."

          What is our primary use case?

          One Identity Safeguard is used for managing privileged passwords and monitoring sessions, which helps track admin activities and enforce secure access policies for the accounts. This is important for protecting critical resources like systems or applications, thereby improving both security and accountability.

          Whenever an admin needs server access, they must request it through One Identity Safeguard. Once approval is granted based on the request, they can access the server, and the session is recorded, keeping everything monitored and controlled.

          Whenever an admin accesses a server through One Identity Safeguard, they do not need to know the actual password. The system provides temporary access through the vault, ensuring secure and controlled usage of the applications.

          What is most valuable?

          The session monitoring and recordings are the best features of One Identity Safeguard, allowing us to review what actions were performed during a session. This helps us in both troubleshooting and audits.

          One Identity Safeguard makes compliance easier and really helps in incident investigation as well as visibility.

          One Identity Safeguard has impacted our organization positively because it has helped us standardize how privileged access is managed and has also reduced dependency on manual efforts in password handling, improving operational control overall. It has reduced errors, and the manual efforts have been significantly reduced.

          What needs improvement?

          One Identity Safeguard does not require any improvements at this time based on our current usage.

          The initial setup of One Identity Safeguard is somewhat tricky and requires proper planning, so this aspect could be simplified.

          For how long have I used the solution?

          One Identity Safeguard has been in use for more than three years.

          What do I think about the stability of the solution?

          One Identity Safeguard is stable.

          What do I think about the scalability of the solution?

          From a scalability perspective, One Identity Safeguard is excellent and matches our organization's growth. We have seen a good response from the customer team, who are ready to provide support at any time we require it.

          How are customer service and support?

          We have found and seen a good response from the end-user and usability of One Identity Safeguard, as it is seamless and works well in our organization.

          Which solution did I use previously and why did I switch?

          One Identity Safeguard has been used since day one.

          How was the initial setup?

          The deployment of One Identity Safeguard took less than one month. It was straightforward, initially taking one or two days, and from this we have seen a smooth transition to One Identity Safeguard with no issues during the deployment.

          What about the implementation team?

          One-week training was provided for the users and the IT team to ensure they could manage One Identity Safeguard. The end-user access management is smooth as per usability, making for a great experience.

          What was our ROI?

          One Identity Safeguard has provided a good return on investment, which comes from the reduced risk of security incidents. Avoiding even one breach can have a significant cost. It has also reduced the time spent on password management, saving our team time in managing privileged accounts, and is helping with automation that reduces manual efforts.

          What other advice do I have?

          One Identity Safeguard is highly recommended because it is a wonderful solution, providing great usability, great security, and great visibility. One thing I would advise is to ensure your team is properly trained before deployment and plan the architecture and policies carefully, as this will help you get the best result. This review has been given a rating of nine out of ten.

          Which deployment model are you using for this solution?

          On-premises
          Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
          Last updated: Apr 9, 2026
          Flag as inappropriate
          PeerSpot user
          Erik  Sjögren - PeerSpot reviewer
          Solution Architect at Atea
          Real User
          Top 5
          Apr 11, 2026
          Priviliege Access Governance by joining IGA and PAM (cross-product)
          Pros and Cons
          • "I have successfully connected Identity Manager (IGA) to Safeguard to achieve Privilege Access Governance, making it possible by using an OOTB connector in Identity Manager to talk to the Safeguard system so I can govern the data from Safeguard and provision PAM accounts from Identity Manager to achieve a complete lifecycle."
          • "Documentation can be much better and they should provide typical use cases to get started more easily."

          What is our primary use case?

          I have hands-on experience with One Identity Safeguard and attended the foundation course in the end of last year. My primary goal is to make use of the cross-product capabilities joining IGA (Identity Manager) and Safeguard (PAM) to achieve Privilege Access Governance (PAG) since lots of customers are asking for this. The trend show consolidation within the IAM market and cross-product solutions is becoming the new standard.

          What is most valuable?

          Most important, very easy to setup.

          Safeguard for Privileged Passwords (SPP)

          I have been using asset and account discovery. This means the product will assist in identifying privileged accounts across hosts, directories, and networks.

          Other features include workflow and access requests. Typically time-based, which is best practice to restrict access. Workflows can have one or several approvers.

          The "activity center" where I can place my custom queries and get automated reports. This will collect over time and you can see what has happened for a certain user.

          I like that the upgrades are not complicated, if the appliance is clustered this is handled automatically.

          Great variety of support for different platforms and protocols.

          Safeguard for Privileged Sessions (SPS)

          I have used something called centralized policy enforcement. You can set up a gateway proxy for privileged sessions where you are applying authentication, access controls, and security policies. This is for endpoints such as SSH, RDP, and telnet.

          Then I have used session recording and audit trails. When the recording is being made, it actually records at the protocol level, meaning it can capture keystrokes, mouse input, and the GUI. The recordings can be digitally signed.

          Real-time monitoring alerts. It can detect violations according to a policy. If there is a destructive command that is dangerous, it can look for those and can trigger an alert. If we want, it can also automatically terminate the session that is ongoing. Everything is indexed and searchable. It is like a forensics investigation and you can do searchable playback.

          User behavior analytics. This is some kind of integration where in real time, it can detect anomalies, something that is not normal, and do some deeper insights on that matter.

          I have successfully connected Identity Manager (IGA) to Safeguard to achieve Privilege Access Governance. This is being possible by using an OOTB connector in Identity Manager to talk to the Safeguard system. I can govern the data from Safeguard and provision PAM accounts from Identity Manager to achieve a complete lifecycle.

          What needs improvement?

          Documentation can be much better and they should provide typical use cases to get started more easily.

          SPP and SPS has separate portals (even if they are joined). SPP seems to be a more mature product and the SPS seems to be less updated in its UI and has more technical depth when configuring.

          For how long have I used the solution?

          I have been working with it for a couple of months.

          How was the initial setup?

          Straighforward.

          Using the virtual appliance is quite easy. You download the hypervisor file, everything is already included. There is one appliance for the SPP and one for the SPS. SPP requires a Windows license and to activate it you must have internet access. It was a little headache to get it working.

          What other advice do I have?

          I'm rating the product 8 of 10 out of what I have seen so far, I'm satisfied by the features OOTB and the integration with the Identity Manager. Also the usage of Remote Access (SRA) and Cloud assistant should not be missed.

          Which deployment model are you using for this solution?

          On-premises
          Disclosure: My company has a business relationship with this vendor other than being a customer. partner
          Last updated: Apr 11, 2026
          Flag as inappropriate
          PeerSpot user
          Buyer's Guide
          Download our free Safeguard by One Identity Report and get advice and tips from experienced pros sharing their opinions.
          Updated: August 2026
          Buyer's Guide
          Download our free Safeguard by One Identity Report and get advice and tips from experienced pros sharing their opinions.