Try our new research platform with insights from 80,000+ expert users

CyberArk Endpoint Privilege Manager vs WALLIX Bastion comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 6, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

CyberArk Endpoint Privilege...
Ranking in Privileged Access Management (PAM)
3rd
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
38
Ranking in other categories
Endpoint Compliance (5th), Anti-Malware Tools (5th), Application Control (5th), Ransomware Protection (5th)
WALLIX Bastion
Ranking in Privileged Access Management (PAM)
4th
Average Rating
7.6
Reviews Sentiment
7.2
Number of Reviews
12
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of October 2025, in the Privileged Access Management (PAM) category, the mindshare of CyberArk Endpoint Privilege Manager is 3.2%, down from 3.6% compared to the previous year. The mindshare of WALLIX Bastion is 7.2%, down from 8.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Privileged Access Management (PAM) Market Share Distribution
ProductMarket Share (%)
CyberArk Endpoint Privilege Manager3.2%
WALLIX Bastion7.2%
Other89.6%
Privileged Access Management (PAM)
 

Featured Reviews

Sumit Chavan - PeerSpot reviewer
Helps secure the infrastructure and control users with admin rights
There are many features that are currently missing. A customization option is required for certain policies. For instance, if we need to stop PowerShell scripting, we have to create a different policy for that. Being able to create a sub-level policy within a top-level policy would be good. Currently, no user-based policy option is available inside the EPM console. We can only create computer-based policies. The database is available, but there is a drawback in not being able to create local groups on the EPM console. We only have to depend on Active Directory. This limits infrastructure security as we depend on the Active Directory team to manage user groups. If they remove any users, we lose control. If we could create groups locally and block them or set specific policies, we would have more control. Local endpoint management is missing from the EPM site. Moreover, there is an issue with policies not running as expected when we make enhancements. We have to find multiple ways to whitelist applications or enhance policies.
Herve Choupot - PeerSpot reviewer
Enhancing administration security with critical feature improvements needed
My primary use case is to make a training about Active Directory security. In my experience, I work with Bastion. I emphasize the importance of having a good knowledge of Bastion to avoid vulnerabilities It helps by providing some security features for administration, although it's crucial to be…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature of CyberArk Endpoint Privilege Manager is its scalability."
"The biggest benefit of CyberArk EPM for our customers is control over privileged access for endpoints. Endpoints are often the starting point for attackers to enter and move within a network. CyberArk EPM bridges the gap between security and operations teams. Operations teams are happy because work isn't stopped due to admin rights issues, while security teams are satisfied that full admin rights aren't given to all users."
"The solution is scalable."
"CyberArk Endpoint Privilege Manager has significantly improved our security posture by preventing virus incidents and restricting users from downloading unwanted applications."
"We have not had issues with CyberArk. It works very smoothly. We can do many things with CyberArk. It helps us to see exactly what is happening."
"The solution allows me to give access and privileges to each user individually"
"The most valuable feature of CyberArk Endpoint Privilege Manager is its ability to reset passwords every time that it is needed or periodically."
"I am impressed with the product's seamless integration. The PAM wallet and enterprise password wallet are good also good."
"The most valuable feature of WALLIX Bastion is its password management capability, which is central to safeguarding sensitive information."
"The setup process was simple, and the solution can be implemented within less than one day."
"We use WALLIX Bastion to provide access and to monitor sessions."
"Bastion provides a kind of isolation between the administration laptop and the server you want to administer."
"The support is great. They offer 24/7 support, but the specific level of support depends on your subscription. There's a weekday-only option, and a 24/7 option that covers all days of the week. They also have offices in different regions, including West Africa, so people there can easily get support. There's no need to worry about getting assistance."
"WALLIX Bastion's most valuable feature is the Access Manager because you can use it and access the data center without any client VPN."
"Its video recording capabilities have definitely been key for us."
"The solution's technical support team is helpful."
 

Cons

"The main issues I experience are related to deployment, which requires dependency on other solutions like AD or SCCM. These tools need to be defined and synced with the client or agent and master, sometimes needing manual checks."
"The product needs a streamlined user interface; improvements to the user interface can enhance user experience and make the solution more intuitive to navigate."
"For an experienced system implementer it will take approximately one day. However, for somebody who is inexperienced it may take up to five days."
"CyberArk Endpoint Privilege Manager is not suitable for the current situation because when you compare it to OTP, OTP is the strongest password solution. You can use it as a one-time password, but you have to log into the password manager itself and if you don't change your password, it will be the weakest link in the security. In OTP, you don't have that weakest link."
"CyberArk has some performance issues. For example, servers could not handle the solution when we first took CyberArk Endpoint Privilege Manager."
"Performance could be better. We have a couple of problems with CyberArk right now. One of the problems is performance in our environment. Support also takes a long time to respond. If the user already has local admin rights, then I can't collect any events in the console from this device. There are also some options in CyberArk that are not working properly, and are not helpful in this case. I can't collect any information to create a proper policy for the device. I have to investigate everything manually, or even disable the local admin from the device. I can collect the events only after this, and it's very time consuming. In my case, it's a waste of resources."
"CyberArk Endpoint Privilege Manager can improve its Identity Governance, which is already working effectively yet could continue to enhance its capabilities."
"A customization option is required for certain policies. For instance, if we need to stop PowerShell scripting, we have to create a different policy for that. Being able to create a sub-level policy within a top-level policy would be good."
"WALLIX Bastion is GUI-driven, but it sometimes needs some management."
"The scalability of WALLIX Bastion is rated seven out of ten. While it meets our current needs, scaling up the solution is not as easy, and improvements could be made in this area."
"For me, the main issue has to do with the system performance itself."
"The password management needs improvement. Management of Access Manager should be improved as well."
"The main problem of Bastion, CyberArk, and WALLIX is that they have the same interface for both administration and users, which is not a good idea from a security perspective."
"Reporting requires improvement; it is basic, allowing only CSV file extraction with no analytics features."
"The product doesn't have behavior analytics. They promised to develop this, but only for the cloud, not for on-premise versions."
"Based on my experience as a sales tech person, one area of improvement could be a more unified licensing model."
 

Pricing and Cost Advice

"The solution's pricing is reasonable compared to other vendors' products."
"It's not at the lower end of the market. I think the price is reasonable considering the quality it delivers. It is a top-notch solution at a fair price point."
"The tool is a bit pricey compared to its competitors. My company does work with competitors, but I don't have hands-on experience with other software. I've just done some comparisons."
"I rate the solution's pricing an eight out of ten since the price can be too high for smaller businesses."
"Pricing depends on how many devices you use. Right now, on-premise, it costs us a little, but it's worth it. It seems like the cloud solution is much more expensive. We got this solution one year ago, and it's like we bought the solution, and now they are not going to support it on-premise anymore. We are in the implementation phase, and we missed this, and we already paid for the licenses. This is wasted time from my perspective, and CyberArk should be more customer-friendly."
"I think that it was in the range of $200,000 that had to get approved."
"The price of CyberArk Endpoint Privilege Manager is expensive."
"It is an expensive solution."
"The solution's price is mid-ranged."
"The solution's pricing is comparable to that of other products."
"Some extra price needs to be paid for license."
report
Use our free recommendation engine to learn which Privileged Access Management (PAM) solutions are best for your needs.
870,701 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Financial Services Firm
14%
Manufacturing Company
12%
Government
7%
Computer Software Company
17%
Comms Service Provider
11%
Government
9%
Financial Services Firm
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business17
Midsize Enterprise9
Large Enterprise18
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise1
Large Enterprise4
 

Questions from the Community

Looking for recommendations and a pros/cons template for software to detect insider threats
This is an inside-out --- outside-in --- inside-in question, as an insider can be an outsider as well. There is no short answer other than a blend of a PAM tool with Behavioral Analytics and Endpo...
What do you like most about CyberArk Endpoint Privilege Manager?
The most valuable feature of the solution is its performance.
What is your experience regarding pricing and costs for CyberArk Endpoint Privilege Manager?
I believe it's quite a reasonably priced solution. It's not very common to use CyberArk because it's a niche solution, but customers who are willing to control administrative accounts are willing t...
What do you like most about WALLIX Bastion?
The support is great. They offer 24/7 support, but the specific level of support depends on your subscription. There's a weekday-only option, and a 24/7 option that covers all days of the week. The...
What is your experience regarding pricing and costs for WALLIX Bastion?
The price of WALLIX Bastion is rated five out of ten, positioning it in the middle. The cost is justified by the features and capabilities we receive.
What needs improvement with WALLIX Bastion?
The auditing and reporting features of WALLIX Bastion could be improved. Customizable reports could be introduced to generate dynamic reports based on our requirements. Adding flowcharts for the re...
 

Also Known As

Viewfinity
Bastion
 

Overview

 

Sample Customers

Information Not Available
RTBF, Pharmagest, Michelin Group, Niort Hospital
Find out what your peers are saying about CyberArk Endpoint Privilege Manager vs. WALLIX Bastion and other solutions. Updated: September 2025.
870,701 professionals have used our research since 2012.