No more typing reviews! Try our Samantha, our new voice AI agent.

Cisco Duo vs Zscaler Zero Trust Exchange Platform comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 8, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in ZTNA as a Service
8th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
20
Ranking in other categories
Secure Web Gateways (SWG) (5th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), Secure Access Service Edge (SASE) (8th)
Cisco Duo
Ranking in ZTNA as a Service
2nd
Average Rating
8.8
Reviews Sentiment
7.0
Number of Reviews
118
Ranking in other categories
Single Sign-On (SSO) (4th), Authentication Systems (2nd), Access Management (4th), Cisco Security Portfolio (1st), Multi-Factor Authentication (MFA) (1st)
Zscaler Zero Trust Exchange...
Ranking in ZTNA as a Service
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
67
Ranking in other categories
Data Loss Prevention (DLP) (6th), Cloud Access Security Brokers (CASB) (8th), Application Control (5th), Secure Access Service Edge (SASE) (2nd), Remote Browser Isolation (RBI) (1st)
 

Mindshare comparison

As of April 2026, in the ZTNA as a Service category, the mindshare of iboss is 2.6%, up from 1.8% compared to the previous year. The mindshare of Cisco Duo is 2.4%, up from 2.3% compared to the previous year. The mindshare of Zscaler Zero Trust Exchange Platform is 13.9%, down from 17.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
ZTNA as a Service Mindshare Distribution
ProductMindshare (%)
Zscaler Zero Trust Exchange Platform13.9%
Cisco Duo2.4%
iboss2.6%
Other81.1%
ZTNA as a Service
 

Featured Reviews

reviewer2701851 - PeerSpot reviewer
Managing Director
Enhances web security with a single pane of glass and flexible deployment
I don't see any need for improvement; one of the really good things about iboss as a company is that they listen to customer feedback. I have suggested enhancements, and they are responsive, making changes for the better, and they do a lot of testing. To improve iboss, although we haven't used it, we considered the VPN solution that comes with the highest tier licensing, which includes DLP and various other add-ons. We prefer using another product which automatically logs you back onto your network when turning on your PC. With iboss, the connection is manual, which doesn't meet our needs. Additionally, sizing can be tricky because, although the initial recommendations may seem adequate, actual usage may require more gateways than anticipated.
Charles Slaustas - PeerSpot reviewer
Information Technology Contractor at Insight global
Supports seamless authentication for users across multiple organizations and personal portals
The features I use in Cisco Duo include Duo Pushes to confirm my identity to the device, and eventually as MFA security was increased, I actually had to use exchange passcodes. Sometimes, I have to go into the site and get into Cisco Duo to retrieve the passcode, and many of them have been two-factor, where the sites send a passcode that I have to enter into Cisco Duo. It has been more of the latter. I have not seen issues with lagging or crashing on Cisco Duo's end; it was usually on the client end, often because someone set up a bad upgrade or there were connection issues with the Cisco Duo cloud through the administrative site.
Vibin Thomas - PeerSpot reviewer
Team Lead, Technical Content Security at Valuepoint Systems
Zero trust access has transformed remote connectivity and now simplifies secure app usage
Zscaler Zero Trust Exchange Platform, especially Zscaler Private Access, is very strong, though there are a few areas where improvements can be made. One challenge observed is around initial troubleshooting and visibility. While Zscaler Private Access provides logs, it can sometimes take time to pinpoint the exact cause of access issues, especially in complex environments with multiple policies and identity integration. Another area is the dependency on identity and connector health. Since Zscaler Private Access is heavily reliant on app connectors and identity providers, any issues with these components can impact user access, making proper monitoring critical. During the initial setup, policy configuration and application onboarding require careful planning, especially for larger environments with many applications. These challenges are manageable with proper design and monitoring. Overall, the platform delivers strong security and user experience. I would recommend a few improvements, especially around user interface, reporting, and troubleshooting experience. From a user interface perspective, while the platform is powerful, the policy configuration and navigation can feel complex, especially for new users. A more simplified and intuitive layout for policy mapping and application access would help reduce the learning curve. In terms of reporting, Zscaler Private Access provides logs, but having more built-in customizable dashboards and analytics would be very helpful. Better visibility into user access patterns, application performance, and real-time troubleshooting insights would improve operational efficiency. From a support and troubleshooting standpoint, it would be beneficial to have more granular centralized visibility, allowing for quick end-to-end tracing of a user request from authentication to application access without switching between multiple views. These improvements would make the platform even more efficient, especially for large-scale enterprise environments.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We chose iboss for both zero trust and proxy (SWG) because their SWG was superior."
"Technical support is pretty sharp and very responsive."
"From a use-case scenario, what I like the most is the plug-in. I like the fact that we can do the filtering of these devices offsite independent of the network they are connected to, and we do not have to have traffic coming back inside our network."
"Technical support is pretty sharp and very responsive."
"Iboss is a solution that prevents advanced persistent threats, and has a zero tolerance for attacks."
"Granular setup, which was able to set different levels of filters using the OUs in the AD."
"Our primary use case for this product is DLP,"
"From a corporate perspective, I understand that it's important to keep the company data safe."
"Cisco Duo is very easy to deploy and the documentation is very thorough, which makes deployment straightforward."
"Duo features benefit my company by making logins more secure and simpler. Everything is in one box, so we don't have multiple servers trying to do the same thing."
"The two-factor authentication is valuable because that is the use case for which we are using it."
"I can recommend Cisco Duo because it is very easy to accept and understand."
"I appreciate the simple login feature of Cisco Duo; being able to log into your actual page and then having all your apps there is convenient."
"It is a great system regarding multi-factor authentication, specifically after we did the integration with Active Directory, allowing us to manage the users who use the VPN, our main gateway for VPN Cisco ASA Secure, with full administration."
"Regarding the valuable features, I would say that Duo Security is easy to use, has speed, and is dependable."
"Duo allowed us to greatly enhance our security."
"The solution is cloud-based with the latest inspection engines, which I find to be amazing."
"The most valuable feature of Zscaler Private Access is we do not have to connect to a VPN, it is seamless. It is more convenient for us because we use one agent to cover the internet and VPN access."
"The most valuable aspect of Zscaler Cloud DLP is its automatic DLP feature."
"The tool's scalability is good."
"The product’s most valuable features are data discovery, activity control, and zero trust exchange."
"Users get direct secure access to applications over the internet."
"It does the job. What it is needed for. I can use it for VPN, I can use it for secure connections, I can use it as a firewall. So the solution does the job."
"Sandboxing, DLP, and SSL inspection engine are the most valuable features of Zscaler SASE."
 

Cons

"The endpoint-type solution is an area that needs some improvement."
"SSL decryption: We had issues with learners using apps instead of using web browsers."
"One thing I would like to see differently with their Zero Trust platform is that some of the AI aspects related to high-risk activities have more false positives."
"The reporting feature needs improvement."
"Their on-premise hardware's network interface is capped at one gigabit, which is sort of a problem. If you stand a filter up where all traffic flows through that, according to them, in order to go above a gigabit, you have to have multiple devices, which in today's IT seems a little bit silly. They could easily put in an SFP port into their device that could accommodate 10 gigs or at least offer a box."
"I am currently doing a PoC of the zero trust aspect of it. Compared to other similar solutions, it is hard to get around each feature. It takes a while to get used to it."
"Our iboss subscription access should be more secure with an OTP or VPN etc. It is easy to gain access if, for example, hackers obtain my username and password."
"Fold that in with the risk intelligence they're getting from all of the different subscriptions they are a part of. Now, these security companies subscribe to things like emerging threats, databases, etc. You can fold all this intelligence to decide what's happening on an endpoint. I would love to see them start moving into that space. That would compete directly with Microsoft. Maybe that's why they haven't. Having that ability native within the solution would be great. The other area in which I would love to see improvement is more detailed descriptions of why they block websites."
"Duo was clearly purchased, and Cisco has a lot of other panels for their Firepower products, et cetera. They need to continue bringing it, Umbrella, and the endpoint pieces even more together and make the integration a little more seamless among all of them."
"For the back-end, there could be a few more security features applied."
"When you come to the push in Duo Security, there are some integrations where you have to use the code instead of the push functionality."
"My experience with Cisco Duo's strong security authentication system is that sometimes there are difficulties, and sometimes users just won't be able to log in. We have to reset their password so they can use Duo."
"To improve Cisco Duo, the biggest consideration is the licensing standpoint; the most common issue I've found is customers not setting up the Active Directory sync properly, leading to inflated licensing usage when they try to delete inactive users that are still being charged."
"I'd like to see it integrated into other applications. I know there are some integrations, but I haven't been able to explore that any further."
"Technical support could be improved. I don't think all support should have to go through an agreement."
"When we try to sell Cisco Duo for any license, sometimes customers approach us and say that Cisco Duo is expensive compared to competitors or that the features are not as good."
"The pricing is expensive and on the higher end. Honestly, in my opinion, it is not worth the price."
"Zscaler Private Access needs to improve its collaboration with applications without compromising security."
"Having a Zscaler-specific device could streamline this process and provide a more consistent user experience across diverse branches."
"The menu for the ZIA portal could be organized a little bit differently. The most-used modules should be at the top of the menus, not somewhere near the bottom, some of them are not organized well in my opinion."
"There are some performance issues with the solution once the module addition begins"
"The area that requires improvement is their support. The current support is lacking."
"The interface needs a bit of work."
"The pricing for Private Access seems to be on the expensive side, and I believe they should consider making it more competitive with other solutions."
 

Pricing and Cost Advice

"It is expensive compared to one of its competitors."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"The overall pricing for iboss is very competitive and transparent."
"It is probably in line with other solutions, but I do not deal with the financial side."
"I haven't seen it in a while, but it's at par with everything else licensing-wise."
"During testing we are allowed a certain number of licenses for free."
"Cisco's licensing is always a bit complicated to understand, but the price is fair. It could be more expensive than others, but the way they integrate everything, it has a fair price."
"Our licensing fee is currently on an annual basis."
"With regard to pricing, for a small business buying a one off, it's pretty expensive. If it's an enterprise that has thousands of employees, however, it's really nothing to protect your data because if your network goes down or it's breached, you're losing millions of dollars every minute. When it comes to a large enterprise, it's priced where it should be because you're talking business to business. You're not talking business to consumer."
"It's a bit confusing because we're on a three-year plan with a certain number of licenses, and we've gone over that number. They told us that when we renew, they will add all these licenses. We've expanded quickly, so everyone's kind of scared because no one knows what the bill is with the long pricing cycle."
"Price wise, it's not cheap, but it's not expensive at all either. It's in the middle."
"Duo Security's pricing is good, fair, and very comparable to today's market."
"The product is a bit expensive."
"As per industry leads, Zscaler CASB is an expensive solution."
"Zscaler SASE software is quite expensive compared to other solutions"
"It's expensive currently. But when purchasing for a large number of users, there's room to negotiate. It's really up to the procurement team."
"Zscaler Private Access is extremely expensive."
"Zscaler Cloud DLP is moderately priced. We pay around 2 million rupees per year."
"The licensing model for Zscaler Cloud DLP allows you to only buy what you need. You don't need to buy it as a whole, so it's good."
"The pricing is quite high, especially when it comes to the gateway."
report
Use our free recommendation engine to learn which ZTNA as a Service solutions are best for your needs.
886,906 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Computer Software Company
9%
Manufacturing Company
9%
Construction Company
7%
Financial Services Firm
11%
Manufacturing Company
10%
Comms Service Provider
7%
Educational Organization
6%
Financial Services Firm
13%
Manufacturing Company
9%
Computer Software Company
9%
Insurance Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise7
Large Enterprise8
By reviewers
Company SizeCount
Small Business42
Midsize Enterprise24
Large Enterprise57
By reviewers
Company SizeCount
Small Business16
Midsize Enterprise12
Large Enterprise44
 

Questions from the Community

What needs improvement with iboss?
iboss can increase security in cyberspace. I have heard they are doing DDoS filtering, but I am not certain if they a...
What is your primary use case for iboss?
I use iboss for corporate VPN and all the corporate VRF, with basically all user traffic proxying to the internet.
What is your experience regarding pricing and costs for iboss?
Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern. There are cheaper alte...
How does Duo Security compare with Microsoft Authenticator?
We switched to Duo Security for identity verification. We’d been using a competitor but got the chance to evaluate Du...
What is your experience regarding pricing and costs for Duo Security?
I cannot speak to the financial planning of the organization, but I can confirm that Cisco Duo falls within the secur...
What needs improvement with Duo Security?
Areas that have room for improvement in Cisco Duo include pricing, as Cisco is quite expensive, and the fact that Cis...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What needs improvement with Zscaler SASE?
The solution needs to improve a lot of aspects.
What is your primary use case for Zscaler SASE?
We are using Zscaler Zero Trust Exchange for its Zscaler Internet Access service. It provides web security, DLP, data...
 

Also Known As

iBoss Cloud Platform
Duo Security
Zscaler SASE, Zscaler DLP, Zscaler CASB, Zscaler CSPM, Zscaler Browser Isolation, Zscaler Posture Control
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Information Not Available
Siemens, AutoNation, GE, NOV
Find out what your peers are saying about Cisco Duo vs. Zscaler Zero Trust Exchange Platform and other solutions. Updated: March 2026.
886,906 professionals have used our research since 2012.