We performed a comparison between CyberArk Identity, IBM Tivoli Access Manager [EOL], and Okta Workforce Identity based on real PeerSpot user reviews.
Find out what your peers are saying about Microsoft, Cisco, Auth0 and others in Single Sign-On (SSO)."I like the RBAC (Role-Based Access Control). It basically involves defining various roles, and then simply assigning those roles to users."
"The initial setup of CyberArk Identity was straightforward."
"The feature that we find most valuable is the ability to integrate multiple IDs for on-premises Active Directory."
"The setup, via cloud, is simple."
"I found the solution to be stable."
"The most valuable features of CyberArk Identity are its ability to control access to administrative staff."
"The tool helps with authentication. It acts as an MFA for any kind of privileged access that occurs in our organization."
"CyberArk Identity is a mature product."
"SAML 2.0."
"OAuth 2 is now the de facto standard for API protection and scoped authorized delegation. IBM TAM now supports OAuth 2 and can act as fully compliant OAuth 2 authorization server."
"Single Sign-On functionality is valuable because the core purpose of the product is to allow universal (or bespoke) SSO for application suites."
"The Verify feature: A push method which customers are going for."
"The integration effort with the end application is quite straightforward and easy."
"Its simplicity and its integration with various vendor-agnostic platforms are the most valuable features."
"Other than Okta being an easy and awesome integration tool, one of the best features it has is the provisioning and deprovisioning, which makes management way easier. You don't need to be too technical to understand how it works."
"It has a wide range of MFA options. I prefer "Okta Verify" out of them all."
"Its integration components are most valuable. It integrates with everything in some way. There are some products, such as O365 or AD, with which it completely and 100% integrates. So, you can seamlessly create accounts across the board with some of these products. For some of the products with which it doesn't completely integrate, you can do some kind of interfacing."
"Workforce Identity's best features include its user-friendliness and easy setup."
"What I found most valuable in Okta Workforce Identity is that it worked together with VMware Workspace One, so there was this device check at the same time. My company used the trusted device method that enabled you to define that only the trusted devices including the Workspace One agent were able to access the applications directly without an additional authentication step."
"The initial setup is easy."
"It is dependent on the evolution of your user base. It depends on usage per user, so the more sign-ins there are, the more expensive it becomes, so it works best for smaller companies from a financial perspective."
"The solution could be easier to use and I found it to be very complex involving many steps."
"We would like to see an improvement in the ability to manage mobile devices."
"The solution's difficulty in gaining skill sets should be improved because it's a vertical product."
"CyberArk Identity could improve by having the ability to better manage the network, such as Cisco. There seem to be some issues in this area."
"There is room for improvement in documentation. The documentation could be more specific about the changes needed to achieve specific goals."
"In terms of a governance platform, it's worth noting that CyberArk doesn't offer a particularly strong one."
"They can include the Mobile Device Management (MDM) feature."
"The OpenID features could improve in CyberArk Identity."
"The profiling element is incredibly robust, but also equally as complex, it requires an off-site course to be able to understand the context or the plethora of options available."
"The self-service portal needs improvement."
"Multi-factor authentication with social integration needs to improve."
"An Amazon Machine Image (AMI) for the newer appliance versions for hosting the virtual appliances on AWS will help."
"Looking at their roadmap, they have a broad grasp of the security features which the industry needs."
"You can't hide the device when you're checking logs."
"Okta Workforce Identity can improve by having more features in governance."
"The solution can be quite expensive."
"There should be automated aggregation and complete classification processes included in it."
"The solution should have greater on-premises availability, not just cloud and more package customization in its processing."
"The pricing could be improved."
"It only facilitates provisioning and not de-provisioning."
"The training is too costly."
More IBM Tivoli Access Manager [EOL] Pricing and Cost Advice →
Earn 20 points