No more typing reviews! Try our Samantha, our new voice AI agent.

Idira Endpoint Privilege Manager vs WALLIX Bastion comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 2, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Idira Endpoint Privilege Ma...
Ranking in Privileged Access Management (PAM)
6th
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
38
Ranking in other categories
Endpoint Compliance (5th), Anti-Malware Tools (10th), Application Control (6th), Ransomware Protection (4th)
WALLIX Bastion
Ranking in Privileged Access Management (PAM)
10th
Average Rating
7.4
Reviews Sentiment
6.7
Number of Reviews
13
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the Privileged Access Management (PAM) category, the mindshare of Idira Endpoint Privilege Manager is 2.5%, down from 3.2% compared to the previous year. The mindshare of WALLIX Bastion is 3.4%, down from 7.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Privileged Access Management (PAM) Mindshare Distribution
ProductMindshare (%)
Idira Endpoint Privilege Manager2.5%
WALLIX Bastion3.4%
Other94.1%
Privileged Access Management (PAM)
 

Featured Reviews

Sumit Chavan - PeerSpot reviewer
Lead Consultant at a tech vendor with 501-1,000 employees
Helps secure the infrastructure and control users with admin rights
There are many features that are currently missing. A customization option is required for certain policies. For instance, if we need to stop PowerShell scripting, we have to create a different policy for that. Being able to create a sub-level policy within a top-level policy would be good. Currently, no user-based policy option is available inside the EPM console. We can only create computer-based policies. The database is available, but there is a drawback in not being able to create local groups on the EPM console. We only have to depend on Active Directory. This limits infrastructure security as we depend on the Active Directory team to manage user groups. If they remove any users, we lose control. If we could create groups locally and block them or set specific policies, we would have more control. Local endpoint management is missing from the EPM site. Moreover, there is an issue with policies not running as expected when we make enhancements. We have to find multiple ways to whitelist applications or enhance policies.
René DRABO - PeerSpot reviewer
Team Lead at a tech services company with 1,001-5,000 employees
Security has improved with monitored privileged sessions but the complex interface still needs work
I do not find WALLIX Bastion easy to use and ergonomic, but I have no clue about how much it costs. When I say it is not easy to use, I mean the interface is complex, but it might not be directly linked to the product; it might be linked to the way we implemented it in our context. The way we have to connect to a third Bastion and then launch another session bothers me. We also have some limitations, but I think this is linked to our context regarding how many times the session can stay open on the Windows session, which is not aligned with my needs. I am more of a promoter of other kinds of handling privileged access management with my use case, but it might not be linked to the tool; it is just because the implementation we made is not what I expect for my needs and it is not the way I want to work on my servers. In the past, I used the leader in PAM but cannot remember the name. I was more satisfied because the connection was more straightforward: I click on a button, make my authentication, and have my servers open, and this is the way I want it. The UI was the main reason why I thought the previous tool I was using was better.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Users can scale the solution."
"All of the features are valuable."
"The solution is pretty mature and can accommodate our use cases quite well."
"The feature called PTA, which stands for Privileged Threat Analytics keeps track of what admins are doing and works with Centimeters. If something fishy is going on with a user's credentials, it alerts the security team so they can act fast. Plus, it automates stuff like resetting credentials or blocking users. So, if there's a potential hack, CyberArk can change passwords and lock out users in a snap. It also gives you a heads-up if anything unusual is going on with server activities, like someone creating new users with uncontrolled credentials."
"The solution allows me to give access and privileges to each user individually"
"CyberArk Endpoint Privilege Manager has significantly improved our security posture by preventing virus incidents and restricting users from downloading unwanted applications."
"The biggest benefit of CyberArk EPM for our customers is control over privileged access for endpoints. Endpoints are often the starting point for attackers to enter and move within a network. CyberArk EPM bridges the gap between security and operations teams. Operations teams are happy because work isn't stopped due to admin rights issues, while security teams are satisfied that full admin rights aren't given to all users."
"The most valuable feature of CyberArk Endpoint Privilege Manager is its ability to reset passwords every time that it is needed or periodically."
"WALLIX Bastion is a great solution that evolves with new features, unlike competitors like CyberArk."
"The most valuable feature of WALLIX Bastion is its password management capability, which is central to safeguarding sensitive information."
"The solution's technical support team is helpful."
"Technical support is very good; they have their own ticket system that is available for all customers and their system is already in different languages, for example, English, French, and, for us, Russian."
"The interface is very simple. It doesn't need any plug-ins, just browsers that are installed at the beginning."
"I like that it's Linux-based, and you don't need to have separate implementations, extra database licenses, or enterprise licenses. I think because it's Linux-based, it's more seamless than Windows. I also like the access manager, which I think is a super tool. Everything is browser-based, and you don't need a VPN. So, that's a great thing."
"The support is great. They offer 24/7 support, but the specific level of support depends on your subscription. There's a weekday-only option, and a 24/7 option that covers all days of the week. They also have offices in different regions, including West Africa, so people there can easily get support. There's no need to worry about getting assistance."
"WALLIX Bastion is a security tool that protects us, and I think we are protected with this tool."
 

Cons

"My recommendation for improvement is to add functionality for when users request access to an application. There's a pop-up UI, but it's not very customizable. I suggest creating a UI where we can write scripts or use SDKs to enhance it. This could automatically create tickets in a system like ServiceNow when users request an application. If a manager approves, we could automatically push policies to those users."
"I'm not satisfied with the EPM, and I'm just looking to see if there's any other solution that we can get."
"It was complex to introduction the product to the end-users and the technical team."
"Technical support is slow to respond when we run into issues."
"CyberArk Endpoint Privilege Manager is not suitable for the current situation because when you compare it to OTP, OTP is the strongest password solution. You can use it as a one-time password, but you have to log into the password manager itself and if you don't change your password, it will be the weakest link in the security. In OTP, you don't have that weakest link."
"Compared to other tools like Linux, this solution isn't as user-friendly."
"The product needs a streamlined user interface; improvements to the user interface can enhance user experience and make the solution more intuitive to navigate."
"We have had some major issues with the tool, but we have worked with the R&D teams and we have worked with support. There is room for improvement, especially on response times. But they're working on it and they're doing the best they can."
"It would be better if I could manage multiple accounts in one place, like CyberArk. With WALLIX, you can only manage one account, and you are given a separate category. You have to click on each connection to do anything. For example, CyberArk might give three options for one connection if you want to have an interactive user-level experience. But with WALLIX, you have to click three times to get that access. Also, the biggest disadvantage of WALLIX is the reporting. I feel like it's very weak in reporting when compared to the other solutions. As a solution, they're good and stable. But they need to make their reports neater and better. Right now, we're going to the console and then pressing buttons every single time."
"Based on my experience as a sales tech person, one area of improvement could be a more unified licensing model."
"The product doesn't have behavior analytics."
"Also, the biggest disadvantage of WALLIX is the reporting or behavioral analysis limited. I feel like it's very weak in reporting when compared to the other solutions."
"The main problem of Bastion, CyberArk, and WALLIX is that they have the same interface for both administration and users, which is not a good idea from a security perspective."
"Reporting requires improvement; it is basic, allowing only CSV file extraction with no analytics features."
"The product doesn't have behavior analytics. They promised to develop this, but only for the cloud, not for on-premise versions."
"For me, the main issue has to do with the system performance itself."
 

Pricing and Cost Advice

"The solution requires an annual license to use it. There can be some extra costs in some cases."
"licensing for this solution is based on the number of APV (privileged users), and the number of sessions that you want to record."
"The price of CyberArk Endpoint Privilege Manager is expensive."
"I believe it's quite a reasonably priced solution. It's not very common to use CyberArk because it's a niche solution, but customers who are willing to control administrative accounts are willing to pay this money."
"The cost for CyberArk is very high."
"It's not at the lower end of the market. I think the price is reasonable considering the quality it delivers. It is a top-notch solution at a fair price point."
"CyberArk Endpoint Privilege Manager has a very high price, so it's a one out of ten for me in terms of pricing."
"The price of CyberArk Endpoint Privilege Manager is expensive. The solution is priced based on the number of accounts onboarded and the number of concurrent sessions. Everyone else is included in the price, such as support."
"The solution's pricing is comparable to that of other products."
"Some extra price needs to be paid for license."
"The solution's price is mid-ranged."
report
Use our free recommendation engine to learn which Privileged Access Management (PAM) solutions are best for your needs.
913,630 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
13%
Outsourcing Company
11%
Manufacturing Company
10%
Construction Company
8%
Financial Services Firm
12%
Comms Service Provider
10%
Computer Software Company
9%
Outsourcing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business18
Midsize Enterprise9
Large Enterprise19
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise1
Large Enterprise5
 

Questions from the Community

Looking for recommendations and a pros/cons template for software to detect insider threats
This is an inside-out --- outside-in --- inside-in question, as an insider can be an outsider as well. There is no short answer other than a blend of a PAM tool with Behavioral Analytics and Endpo...
What is your experience regarding pricing and costs for CyberArk Endpoint Privilege Manager?
I believe it's quite a reasonably priced solution. It's not very common to use CyberArk because it's a niche solution, but customers who are willing to control administrative accounts are willing t...
What needs improvement with CyberArk Endpoint Privilege Manager?
While CyberArk Endpoint Privilege Manager is a great tool, I believe the functionality could be wider. If it could work not only with permissions but also involve pure EDR tasks or User and Entity ...
What is your experience regarding pricing and costs for WALLIX Bastion?
The price of WALLIX Bastion is rated five out of ten, positioning it in the middle. The cost is justified by the features and capabilities we receive.
What needs improvement with WALLIX Bastion?
I do not find WALLIX Bastion easy to use and ergonomic, but I have no clue about how much it costs. When I say it is not easy to use, I mean the interface is complex, but it might not be directly l...
What is your primary use case for WALLIX Bastion?
The major use cases for WALLIX Bastion are general privileged access management, such as connecting to a server or securing SSH.
 

Also Known As

Viewfinity
Bastion
 

Overview

 

Sample Customers

Information Not Available
RTBF, Pharmagest, Michelin Group, Niort Hospital
Find out what your peers are saying about Idira Endpoint Privilege Manager vs. WALLIX Bastion and other solutions. Updated: September 2026.
913,630 professionals have used our research since 2012.