Try our new research platform with insights from 80,000+ expert users

Cisco Identity Services Engine (ISE) vs CyberArk Endpoint Privilege Manager comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Customer Service

Sentiment score
5.3
Cisco ISE support is praised for expertise but criticized for slow responses and inconsistent quality, especially with complex issues.
Sentiment score
3.4
CyberArk Endpoint Privilege Manager support is knowledgeable but has mixed feedback regarding response times and support accessibility.
I rate the technical support as one out of ten.
 

Room For Improvement

Sentiment score
4.5
Cisco ISE requires improved integration, usability, and performance, with enhanced features and efficiency for better user adoption and experience.
Sentiment score
5.2
Users find CyberArk Endpoint Privilege Manager complex, costly, and difficult to maintain, citing outdated features and user-friendliness issues.
They are very poor in asset classification and should focus on improving the preauthentication profiling, especially for NAC use cases.
 

Scalability Issues

Sentiment score
7.0
Cisco ISE is scalable for enterprises but requires proper design, planning, and hardware considerations for efficient deployment.
Sentiment score
7.6
CyberArk Endpoint Privilege Manager is scalable for diverse setups, praised for effective management, though massive implementations can be challenging.
Factors like architecture, business nature, and legal limitations such as GDPR affect it.
 

Setup Cost

No sentiment score available
Cisco Identity Services Engine pricing is competitive but complex, with tiered licensing and additional costs potentially impacting smaller businesses.
Sentiment score
3.3
CyberArk Endpoint Privilege Manager pricing is high, influenced by usage factors, with discounts for large enterprises, challenging for smaller businesses.
Making large organizational costs significant.
 

Stability Issues

Sentiment score
7.7
Cisco Identity Services Engine is stable and reliable, with occasional update and scaling challenges, and generally effective support resolution.
Sentiment score
7.3
CyberArk Endpoint Privilege Manager is stable, reliable, with high availability, excelling on Windows but has minor concerns on Linux.
The stability of Cisco Identity Services Engine (ISE) is poor for certain use cases, like authentication.
 

Valuable Features

Sentiment score
8.0
Cisco ISE provides robust network control, seamless Cisco integration, and enhances security with policy management, zero-trust, and BYOD support.
Sentiment score
8.4
CyberArk Endpoint Privilege Manager enhances security with features like password management, privilege delegation, application control, and centralized management.
Cisco Identity Services Engine (ISE) is very good at device administration.
 

Categories and Ranking

Cisco Identity Services Eng...
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
140
Ranking in other categories
Network Access Control (NAC) (1st), Cisco Security Portfolio (1st)
CyberArk Endpoint Privilege...
Average Rating
8.2
Reviews Sentiment
6.2
Number of Reviews
30
Ranking in other categories
Endpoint Compliance (5th), Privileged Access Management (PAM) (6th), Anti-Malware Tools (8th), Application Control (6th), Ransomware Protection (7th)
 

Mindshare comparison

Cisco Identity Services Engine (ISE) and CyberArk Endpoint Privilege Manager aren’t in the same category and serve different purposes. Cisco Identity Services Engine (ISE) is designed for Network Access Control (NAC) and holds a mindshare of 29.2%, down 31.6% compared to last year.
CyberArk Endpoint Privilege Manager, on the other hand, focuses on Privileged Access Management (PAM), holds 3.9% mindshare, up 3.7% since last year.
Network Access Control (NAC)
Privileged Access Management (PAM)
 

Featured Reviews

Rohit-Joshi - PeerSpot reviewer
Enables us to ensure that any machine that comes into the network is patched and secure
Posturing is the most valuable feature. There are other tools available that can do some of their other features, like network authentication. The posturing was something because of the nature of the industry that we are in. There are people who go outside for work. Their machines are at times not in the network, and not patched properly. We don't know when they're going to come back, whether it is in a good state, whether it has antivirus, whether it's installed on those machines. Posturing is something that we have made our baseline policy that whenever a machine comes back to our network, it should have a certain level of the operating system and a level of security and antivirus installed. We couldn't have done this posturing without Cisco ISE. This is its greatest feature. It does help me to detect and remediate my network. It enables me to detect any external threat that comes to my network and remediate. If a machine comes into my network that does not qualify per my baseline policy, I have a policy that the machine gets redirected to where it can be patched and remediated. I can ensure that it is fully patched and secure. The entire idea of having ISE is to enhance cybersecurity resilience. The zero trust architecture was coined by the cybersecurity team itself. It was a task given to us in the infrastructure space to see how we can bring resilience into the cybersecurity network and ISE was the solution.
Kaspars Vasilevskis - PeerSpot reviewer
Offers integrated solutions and expands its capabilities through strategic acquisitions
Setting up CyberArk Endpoint Privilege Manager was challenging for me due to the involvement of multiple components. The process required a good understanding of each component and its configuration. It is not a straightforward setup, and familiarity with the system is crucial to ensure everything is correctly configured. I would rate the easiness of the initial setup as a six out of ten. The deployment of CyberArk Endpoint Privilege Manager takes about a day. It is not as quick as some Linux, which can be up and running in just a couple of hours. CyberArk's deployment is more complex due to the various components that need to be set up and validated to ensure they work together seamlessly. Once the deployment is complete, you can then proceed with tasks like account onboarding.
report
Use our free recommendation engine to learn which Network Access Control (NAC) solutions are best for your needs.
816,660 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
26%
Computer Software Company
15%
Financial Services Firm
8%
Government
7%
Financial Services Firm
15%
Computer Software Company
14%
Manufacturing Company
11%
Government
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is better - Aruba Clearpass or Cisco ISE?
Aruba ClearPass is a Network Access Control tool that gives secure network access to multiple device types. You can adapt the policies to VPN access, wired, or wireless access. You can securely ...
What are the main differences between Cisco ISE and Forescout Platform?
OK, so Cisco ISE uses 802.1X to secure switchports against unauthorized access. The drawback of this is that ISE cannot secure the port if a device does not support 802.1x. Cameras, badge readers, ...
How does Cisco ISE compare with Fortinet FortiNAC?
Cisco ISE uses AI endpoint analytics to identify new devices based on their behavior. It will also notify you if someone plugs in with a device that is not allowed and will block it. The user exper...
Looking for recommendations and a pros/cons template for software to detect insider threats
This is an inside-out --- outside-in --- inside-in question, as an insider can be an outsider as well. There is no short answer other than a blend of a PAM tool with Behavioral Analytics and Endpo...
What do you like most about CyberArk Endpoint Privilege Manager?
The most valuable feature of the solution is its performance.
 

Also Known As

Cisco ISE
Viewfinity
 

Learn More

 

Overview

 

Sample Customers

Aegean Motorway, BC Hydro, Beachbody, Bucks County Intermediate Unit , Cisco IT, Derby City Council, Global Banking Customer, Gobierno de Castilla-La Mancha, Houston Methodist, Linz AG, London Hydro, Ministry of Foreign Affairs, Molina Healthcare, MST Systems, New South Wales Rural Fire Service, Reykjavik University, Wildau University
Information Not Available
Find out what your peers are saying about Cisco, HPE Aruba Networking, Fortinet and others in Network Access Control (NAC). Updated: November 2024.
816,660 professionals have used our research since 2012.