No more typing reviews! Try our Samantha, our new voice AI agent.

Cisco Duo vs Zscaler Zero Trust Exchange Platform comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 8, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in ZTNA as a Service
8th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
20
Ranking in other categories
Secure Web Gateways (SWG) (5th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), Secure Access Service Edge (SASE) (8th)
Cisco Duo
Ranking in ZTNA as a Service
2nd
Average Rating
8.8
Reviews Sentiment
7.0
Number of Reviews
116
Ranking in other categories
Single Sign-On (SSO) (4th), Authentication Systems (2nd), Access Management (4th), Cisco Security Portfolio (1st), Multi-Factor Authentication (MFA) (1st)
Zscaler Zero Trust Exchange...
Ranking in ZTNA as a Service
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
67
Ranking in other categories
Data Loss Prevention (DLP) (6th), Cloud Access Security Brokers (CASB) (8th), Application Control (5th), Secure Access Service Edge (SASE) (2nd), Remote Browser Isolation (RBI) (1st)
 

Mindshare comparison

As of April 2026, in the ZTNA as a Service category, the mindshare of iboss is 2.6%, up from 1.8% compared to the previous year. The mindshare of Cisco Duo is 2.4%, up from 2.3% compared to the previous year. The mindshare of Zscaler Zero Trust Exchange Platform is 13.9%, down from 17.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
ZTNA as a Service Mindshare Distribution
ProductMindshare (%)
Zscaler Zero Trust Exchange Platform13.9%
Cisco Duo2.4%
iboss2.6%
Other81.1%
ZTNA as a Service
 

Featured Reviews

reviewer2701851 - PeerSpot reviewer
Managing Director
Enhances web security with a single pane of glass and flexible deployment
I don't see any need for improvement; one of the really good things about iboss as a company is that they listen to customer feedback. I have suggested enhancements, and they are responsive, making changes for the better, and they do a lot of testing. To improve iboss, although we haven't used it, we considered the VPN solution that comes with the highest tier licensing, which includes DLP and various other add-ons. We prefer using another product which automatically logs you back onto your network when turning on your PC. With iboss, the connection is manual, which doesn't meet our needs. Additionally, sizing can be tricky because, although the initial recommendations may seem adequate, actual usage may require more gateways than anticipated.
Charles Slaustas - PeerSpot reviewer
Information Technology Contractor at Insight global
Supports seamless authentication for users across multiple organizations and personal portals
The features I use in Cisco Duo include Duo Pushes to confirm my identity to the device, and eventually as MFA security was increased, I actually had to use exchange passcodes. Sometimes, I have to go into the site and get into Cisco Duo to retrieve the passcode, and many of them have been two-factor, where the sites send a passcode that I have to enter into Cisco Duo. It has been more of the latter. I have not seen issues with lagging or crashing on Cisco Duo's end; it was usually on the client end, often because someone set up a bad upgrade or there were connection issues with the Cisco Duo cloud through the administrative site.
Vibin Thomas - PeerSpot reviewer
Team Lead, Technical Content Security at a tech services company with 1,001-5,000 employees
Zero trust access has transformed remote connectivity and now simplifies secure app usage
Zscaler Zero Trust Exchange Platform, especially Zscaler Private Access, is very strong, though there are a few areas where improvements can be made. One challenge observed is around initial troubleshooting and visibility. While Zscaler Private Access provides logs, it can sometimes take time to pinpoint the exact cause of access issues, especially in complex environments with multiple policies and identity integration. Another area is the dependency on identity and connector health. Since Zscaler Private Access is heavily reliant on app connectors and identity providers, any issues with these components can impact user access, making proper monitoring critical. During the initial setup, policy configuration and application onboarding require careful planning, especially for larger environments with many applications. These challenges are manageable with proper design and monitoring. Overall, the platform delivers strong security and user experience. I would recommend a few improvements, especially around user interface, reporting, and troubleshooting experience. From a user interface perspective, while the platform is powerful, the policy configuration and navigation can feel complex, especially for new users. A more simplified and intuitive layout for policy mapping and application access would help reduce the learning curve. In terms of reporting, Zscaler Private Access provides logs, but having more built-in customizable dashboards and analytics would be very helpful. Better visibility into user access patterns, application performance, and real-time troubleshooting insights would improve operational efficiency. From a support and troubleshooting standpoint, it would be beneficial to have more granular centralized visibility, allowing for quick end-to-end tracing of a user request from authentication to application access without switching between multiple views. These improvements would make the platform even more efficient, especially for large-scale enterprise environments.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"From a use-case scenario, what I like the most is the plug-in. I like the fact that we can do the filtering of these devices offsite independent of the network they are connected to, and we do not have to have traffic coming back inside our network."
"Iboss is a solution that prevents advanced persistent threats, and has a zero tolerance for attacks."
"iboss is among the few products providing inline filtering where no application is needed on the device."
"We chose iboss for both zero trust and proxy (SWG) because their SWG was superior."
"First of all, the security policies are essential. I do not have to rely solely on Active Directory for our users."
"Its initial setup was straightforward."
"Our primary use case for this product is DLP,"
"I would definitely recommend iboss for web filtering purposes to other organizations or individuals."
"The app has greater stability than rival solutions such as Google Authenticator, and Duo Push authentication is a valuable feature."
"My total rating for Cisco Duo is ten out of ten."
"It is very easy. Having just wrapped up my tenure at Cisco, it was used day in and day out for security. It was always easy to log in and not have to worry about logging in multiple times."
"It's a great solution for securing access to the applications and network because we can integrate the solution with all types of applications."
"Duo Security has helped remediate threats more quickly and offers security end to end."
"It has continuously evolved by introducing new solutions and products to address emerging security threats in our industry, demonstrating its commitment to staying ahead of evolving security challenges."
"The technical support is of a very high level, and if you have a problem they will be able to support you, logging in remotely as an engineer to give assistance, and with the upgraded license the support is even better and they will do everything for you if you have a problem, so the support is extremely good."
"Cisco Secure solutions are great for detecting and remediating threats across our infrastructure from end to end. The integration of Talos in SecureX is great. Everything is clear in one dashboard. You have a dashboard there, your dashboard, and now you can have one look in your dashboard and see everything. It's on one pane of glass."
"The initial setup is easy."
"The most valuable features of Zscaler Private Access are its ability to integrate with multiple IDPs and application segmentation."
"The product’s most valuable features are inbound and outbound scanning and API control."
"The most valuable feature is its ability to establish connectivity for remote users and remote endpoints. It offers a high level of granularity compared to typical VPNs, which also encapsulate a lot of I/O."
"Zscaler SASE is probably the number one cloud-based proxy security solution."
"The scalability of the solution is great."
"This is a product that I recommend for anybody who wants a scalable, cloud-based solution."
"The policies are very easy to implement."
 

Cons

"I'd like to see them accelerate development on the security side, particularly around data loss prevention."
"One thing I would like to see differently with their Zero Trust platform is that some of the AI aspects related to high-risk activities have more false positives."
"Sometimes, obviously, there are bugs."
"File integrity monitoring would be very advantageous as an additional feature."
"For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company ExxonMobil."
"The dashboards for local use could be better."
"Iboss is growing so fast that it is often hard for them to keep up with the challenges."
"Our biggest problem with their service was it did not recognize the device and filtering did not always work correctly."
"I have not seen ROI with Cisco Duo; probably the opposite, because it impedes productivity time to be able to get into the system. You have to authenticate and do your regular login and your Active Directory logins."
"Cisco Duo can be improved with better ways to set users up. Currently, we might not be doing it perfectly as we're having them email in phone numbers to get them set up with Duo Mobile."
"I think the prices of Cisco Duo are quite fair, but the main problem is that Microsoft Authenticator is built-in with M365, so everyone is switching to that and using it instead of Cisco Duo because it costs extra as a standalone product."
"My experience with Cisco Duo's strong security authentication system is that sometimes there are difficulties, and sometimes users just won't be able to log in. We have to reset their password so they can use Duo."
"It is easy to use when logging in, but at times, there's a delay in getting the pop-up on a phone, requiring users to occasionally retry authentication depending on backend services."
"The only challenge is finding the right person sometimes. From what I've seen, being a named account is a big deal."
"I wouldn't mind seeing some options for remembering a device for a short period of time or a specific login, particularly for administrative engineering staff, as we may be logging in to four or five different services."
"Often, people do not receive expiration messages, and sometimes, for security reasons, accounts get disabled without notifying the end user, so they mistakenly think something has gone wrong when it really just needs to be re-enabled on the external system."
"We'd like to have two-factor authentication that is quite simple."
"The solution's granularity should be improved because it has limited granular options to control, visible, allow, block, delay, and receive."
"The DX layer could be better if it had improved visibility."
"Zscaler CASB should include integrations with other SaaS applications."
"We have issues with the tool's maintenance and networking. It should be able to work in offline mode as well."
"On the improvement side, when we bypass certain internet traffic types, it's currently recommended to have a one-click option, but audio and video aren't always supported. Thus, we need to bypass that kind of traffic. So, it is an area of improvement."
"We often face performance and latency issues with Zscaler SASE."
"SCMP support would be one of the biggest improvements in my opinion. More speed improvements are also required."
 

Pricing and Cost Advice

"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is probably in line with other solutions, but I do not deal with the financial side."
"It is expensive compared to one of its competitors."
"The overall pricing for iboss is very competitive and transparent."
"I am not aware of the pricing. There are two departments, and I don't have any information about them."
"It is affordable for what's coming to the table with it, but in this day and age, the cost is looked at under a microscope, and companies need to very finely define what is needed versus what is critical. In some cases, it might not be cost-effective for a company to have it. In a lot of other cases, it is the cost of doing business."
"During testing we are allowed a certain number of licenses for free."
"Price-wise, the solution has been very, very reasonable...Licensing is the last thing I think about Duo Security because it's so easy, and I had no problems with it."
"It falls in line with everything else."
"The licensing is very good because it does not cost a lot of money. It's affordable for all-sized customers, including enterprises. There is an additional cost for premium support."
"Cisco's licensing is always a bit complicated to understand, but the price is fair. It could be more expensive than others, but the way they integrate everything, it has a fair price."
"Its price is reasonable. It is not highly expensive."
"The product is a little more expensive than other tools."
"The pricing is quite high, especially when it comes to the gateway."
"The pricing is expensive and on the higher end. Honestly, in my opinion, it is not worth the price."
"Zscaler CASB is an expensive solution."
"The cost is expensive. It depends on the number of users."
"It's expensive currently. But when purchasing for a large number of users, there's room to negotiate. It's really up to the procurement team."
"It has been relatively reasonable for what it does. Some of the additional license costs based on the advanced next-generation firewall functions are quite high, and they should have certain features ready and available as a baseline rather than having to purchase additional licenses for it. Overall, the cost seems reasonable."
"As per industry leads, Zscaler CASB is an expensive solution."
report
Use our free recommendation engine to learn which ZTNA as a Service solutions are best for your needs.
886,468 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Computer Software Company
9%
Manufacturing Company
9%
Construction Company
7%
Financial Services Firm
11%
Manufacturing Company
10%
Comms Service Provider
7%
Educational Organization
6%
Financial Services Firm
13%
Manufacturing Company
10%
Computer Software Company
9%
Insurance Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise7
Large Enterprise6
By reviewers
Company SizeCount
Small Business42
Midsize Enterprise24
Large Enterprise57
By reviewers
Company SizeCount
Small Business16
Midsize Enterprise12
Large Enterprise44
 

Questions from the Community

What needs improvement with iboss?
For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company Exxon...
What is your primary use case for iboss?
Previously when I used iboss, we did the POC for iboss for ExxonMobil. Four or five people wanted to move from our ol...
What is your experience regarding pricing and costs for iboss?
Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern. There are cheaper alte...
How does Duo Security compare with Microsoft Authenticator?
We switched to Duo Security for identity verification. We’d been using a competitor but got the chance to evaluate Du...
What is your experience regarding pricing and costs for Duo Security?
I cannot speak to the financial planning of the organization, but I can confirm that Cisco Duo falls within the secur...
What needs improvement with Duo Security?
Areas that have room for improvement in Cisco Duo include pricing, as Cisco is quite expensive, and the fact that Cis...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What needs improvement with Zscaler SASE?
The solution needs to improve a lot of aspects.
What is your primary use case for Zscaler SASE?
We are using Zscaler Zero Trust Exchange for its Zscaler Internet Access service. It provides web security, DLP, data...
 

Also Known As

iBoss Cloud Platform
Duo Security
Zscaler SASE, Zscaler DLP, Zscaler CASB, Zscaler CSPM, Zscaler Browser Isolation, Zscaler Posture Control
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Information Not Available
Siemens, AutoNation, GE, NOV
Find out what your peers are saying about Cisco Duo vs. Zscaler Zero Trust Exchange Platform and other solutions. Updated: March 2026.
886,468 professionals have used our research since 2012.