Try our new research platform with insights from 80,000+ expert users

Cisco Identity Services Engine (ISE) vs One Identity Manager comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
8.4
Cisco ISE boosts security, reduces costs, and simplifies IT, enhancing mobility and compliance while avoiding breach-related expenses.
Sentiment score
7.7
One Identity Manager boosts productivity, reduces costs, and enhances security by automating provisioning and standardizing IT processes globally.
Direct comparisons with Forescout reveal up to 30% to 40% difference in cost savings.
The return on investment in compliance is clear because inadequate identity management can result in substantial financial penalties for data breaches.
 

Customer Service

Sentiment score
5.3
Cisco ISE support is valued for expertise but criticized for delays, reactive approach, and integration challenges.
Sentiment score
7.2
One Identity Manager's customer service is generally decent, with premium support offering quicker responses, though at a cost.
I rate the technical support as one out of ten.
Sometimes it's challenging to identify which support team is responsible for certain issues, which is a significant concern.
It could take a day or some hours depending on the case or the customer.
 

Scalability Issues

Sentiment score
7.1
Cisco ISE offers scalable solutions for diverse enterprises, supporting expansions with additional nodes or licenses for efficient endpoint management.
Sentiment score
7.4
One Identity Manager is scalable, integrating well with platforms but may face performance issues with large databases.
Factors like architecture, business nature, and legal limitations such as GDPR affect it.
 

Stability Issues

Sentiment score
7.7
Cisco ISE is generally stable, though some face issues during updates; reliability improves with proper configuration and recent versions.
Sentiment score
7.3
Users experience mixed stability with One Identity Manager, citing performance bugs and the importance of proper configuration for stability.
Cisco Identity Services Engine (ISE) is considered very reliable and stable.
The stability of Cisco Identity Services Engine (ISE) is poor for certain use cases, like authentication.
 

Room For Improvement

Cisco ISE users face challenges with complexity, performance issues, integration, intuitive interface, documentation, and licensing concerns.
One Identity Manager requires improvements in performance, interface simplicity, documentation, and support to enhance usability and customization.
Pricing can be more expensive compared to other vendors, and there is a significant price gap observed, which doesn't seem justified by some specific features.
Additionally, the product is vulnerable and has many bugs.
One Identity Manager needs better documentation and more examples, especially for beginners, as it has a steep learning curve.
Competitors like Omada and SailPoint offer a more extensive global presence and support network.
 

Setup Cost

Cisco ISE's pricing model is complex and costly, with subscription expenses, though discounts benefit larger clients.
One Identity Manager offers competitive user-based pricing but may incur higher hardware costs, varying by region and discounts.
Compared to other solutions like HPE ClearPass, Cisco is more costly, and the conversation suggests a possible forty percent price gap compared to competitors.
Cloud solutions are expensive, while on-prem setups with shared environments are cheaper but not effective.
The pricing is reasonable compared to other solutions.
 

Valuable Features

Cisco ISE offers robust security and ease of use, integrating AAA management with scalability and improved GUI, enhancing network control.
One Identity Manager offers customization, automation, governance, and scalability, supporting onboarding, reporting, security, and cloud app management.
Cisco Identity Services Engine (ISE) is very good at device administration.
The solution is integrated with other Cisco devices and can offer automation for an organization, making deployments more dynamic and providing real-time visibility.
It ensures high security through multiple approval processes, preventing unauthorized access and enhancing compliance by providing time-based access for privileged accounts with proper audit trails.
I can use standardized connectors, called sync projects, and set up mappings and workflows, etc.
 

Categories and Ranking

Cisco Identity Services Eng...
Average Rating
8.2
Reviews Sentiment
6.6
Number of Reviews
141
Ranking in other categories
Network Access Control (NAC) (1st), Cisco Security Portfolio (1st)
One Identity Manager
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
107
Ranking in other categories
User Provisioning Software (2nd), Identity Management (IM) (3rd)
 

Mindshare comparison

Cisco Identity Services Engine (ISE) and One Identity Manager aren’t in the same category and serve different purposes. Cisco Identity Services Engine (ISE) is designed for Network Access Control (NAC) and holds a mindshare of 28.8%, down 31.6% compared to last year.
One Identity Manager, on the other hand, focuses on Identity Management (IM), holds 8.2% mindshare, up 7.4% since last year.
Network Access Control (NAC)
Identity Management (IM)
 

Featured Reviews

Bill Masci - PeerSpot reviewer
Helps across a distributed network, giving you a central way of authenticating everybody
A lot of people tell you the hardware requirements for ISE are pretty substantial. If you're running a virtual environment, you're going to be dedicating quite a bit of resources to an ISE VM. That is something that could be worked on. The upgrade process is not very simple. It's pretty time-consuming. If you follow it step by step you're probably going to have a good time, but there are still a lot of things that could be a lot more user-friendly from an administrator's perspective. [They could be] easing a lot of the issues that people have. Instead of just saying the best practice is to migrate to new nodes [what would be helpful] would be to make that upgrade process easier. The UI is a lot nicer in 3.0. It's pretty slow, but for the most part, it's easy to find what you're looking for, especially things like RADIUS live logs, TACACS live logs. From a troubleshooting perspective, it's really nice finding stuff. For setting up policies, from that perspective, it could be a little bit better looking.
Vladislav Shapiro - PeerSpot reviewer
Offers a more comprehensive and streamlined view of user identities and access
One of the most valuable features is the ability for business people to input their knowledge about business processes directly into the product. It's a good tool for anyone familiar with business or technical administration. The shopping cart capability for requests and the catalog features were also initially valuable. It's the best product for providing an enterprise view of logically disconnected SAP accounts. Sometimes, it's doing better than the SAP IG, which probably got discontinued or will be. One Identity Manager helps us connect SAP accounts to employee identities under governance. It is critical because there's no such thing as just SAP, and you want to centralize. You have Active Directory, SAP, and all the cloud applications. Every product has its user accounts, and One Identity allows you to connect them all in one place. One Identity Manager provides IGA for the more difficult-to-manage aspects of SAP. It lets you do many different things and go as deep as you want. The solution has a whole library of specialized SAP workflows for provisioning. You can build a customized web interface that you can do whatever you want with. The out-of-the-box interface for administrators or anybody else can take a little time to understand. It depends on the user's maturity. You must understand what's happening before touching the product. If you have experience using Identity Manager or similar tools, it's highly intuitive. It has so many features that it takes time to adopt, but that's not because it's difficult. The business roles are fundamental to role-based access controls. If you don't know how to build roles, it's very hard to do. One of the advantages of this particular product is that you don't have to be a technical person to build the role. You can log in as a business owner with a newly created project and add entitlements, users, or criteria. You can do it manually or using a formula. It's easy to do without any code.
report
Use our free recommendation engine to learn which Network Access Control (NAC) solutions are best for your needs.
824,053 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
27%
Computer Software Company
15%
Financial Services Firm
8%
Government
7%
Computer Software Company
18%
Financial Services Firm
14%
Government
8%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is better - Aruba Clearpass or Cisco ISE?
Aruba ClearPass is a Network Access Control tool that gives secure network access to multiple device types. You can adapt the policies to VPN access, wired, or wireless access. You can securely ...
What are the main differences between Cisco ISE and Forescout Platform?
OK, so Cisco ISE uses 802.1X to secure switchports against unauthorized access. The drawback of this is that ISE cannot secure the port if a device does not support 802.1x. Cameras, badge readers, ...
How does Cisco ISE compare with Fortinet FortiNAC?
Cisco ISE uses AI endpoint analytics to identify new devices based on their behavior. It will also notify you if someone plugs in with a device that is not allowed and will block it. The user exper...
What do you like most about One Identity Manager?
The One Identity birthright process has helped generate user accounts more accurately and quickly.
What is your experience regarding pricing and costs for One Identity Manager?
One Identity Manager is priced in the middle range but offers good value due to lower implementation time compared to competitors. Total cost of ownership is crucial where the main expense is in im...
What needs improvement with One Identity Manager?
One Identity Manager needs better documentation and more examples, especially for beginners, as it has a steep learning curve. They have rich forum but it often contain outdated information that co...
 

Also Known As

Cisco ISE
Quest One Identity Manager, Dell One Identity Manager
 

Overview

 

Sample Customers

Aegean Motorway, BC Hydro, Beachbody, Bucks County Intermediate Unit , Cisco IT, Derby City Council, Global Banking Customer, Gobierno de Castilla-La Mancha, Houston Methodist, Linz AG, London Hydro, Ministry of Foreign Affairs, Molina Healthcare, MST Systems, New South Wales Rural Fire Service, Reykjavik University, Wildau University
Texas A&M, Sky Media, BHF Bank, Swiss Post, Union Investment, Wayne State University. More at OneIdentity.com/casestudies
Find out what your peers are saying about Cisco, HPE Aruba Networking, Fortinet and others in Network Access Control (NAC). Updated: November 2024.
824,053 professionals have used our research since 2012.