What is our primary use case?
Currently, we do not have any additional sensitive servers, but we were recently tasked with implementing two-factor authentication for all of our servers. To accomplish this, we evaluated multiple vendors and found that RSA SecurID Access was the most compatible solution. Furthermore, RSA SecurID Access is well-established in the industry, making it the preferred choice for our needs.
How has it helped my organization?
By implementing RSA SecurID Access, we were able to decrease the number of users who shared account credentials. Additionally, for accounts with higher privileges, we were able to minimize data loss by providing enhanced security. The implementation process was straightforward, and we experienced fewer privilege-related issues as a result.
What is most valuable?
I would say that the two-factor authentication and the ease of installation and configuration are the most valuable features of this solution.
What needs improvement?
Sometimes, we encounter issues with other applications that are not compatible with RSA SecurID Access and require expert troubleshooting. At those times, we need additional support from an implementation perspective. This is an area where Oracle can improve as there is no substitute for reliable and efficient support.
A better option would be to have a fingerprint scanner as an additional feature, which would provide multi-factor authentication.
For how long have I used the solution?
I have been working with RSA SecurID Access for almost three and a half years.
What do I think about the stability of the solution?
I would rate the stability of RSA SecurID Access an eight out of ten.
What do I think about the scalability of the solution?
RSA SecurID Access is a scalable solution.
I would rate the scalability of RSA SecurID Access a nine out of ten.
Initially, our organization had around 250 users for whom we were aware of the usage of the solution. However, there were certain users for whom we were not notified due to the nature of their job, and hence we were not aware of their usage. Eventually, we decided to scale the solution for all our 4,000 users. Currently, we are using it for 250 users only.
There is a high likelihood that we will expand our usage in the future.
How are customer service and support?
Based on my experience with the initial handling, I would rate their involvement in the high-level design an eight out of ten.
How was the initial setup?
I would rate my experience with the initial setup an eight out of ten.
What about the implementation team?
This solution took nearly two months to deploy.
We were dealing with some dark sites and needed a vendor who could provide an on-premises solution. For those specific sites, we had a limited number of tokens and needed two-factor authentication, which RSA was able to provide.
Initially, we relied on vendor support to assist us with the high-level design of the solution. However, for the actual deployment process, we found that it was sufficient to refer to the configuration document and carry out the steps ourselves without requiring further assistance.
The team responsible for implementing the solution consisted of three system engineers, one from the Windows team, one from the DevOps team, and one from the security team.
The security team member was specifically included to ensure that the authentication solution met the necessary security requirements.
What's my experience with pricing, setup cost, and licensing?
RSA SecurID Access is expensive.
I would rate the pricing a seven out of ten with ten being expensive.
Licensing fees are paid per year.
Which other solutions did I evaluate?
After evaluating another solution that had thumb impression features, we received complaints from some users that their thumb impressions were not working. This led us to choose RSA instead.
What other advice do I have?
I would highly recommend this solution to others who are interested in using it.
I would rate RSA SecurID Access an eight out of ten.
Which deployment model are you using for this solution?
On-premises
*Disclosure: I am a real user, and this review is based on my own experience and opinions.