Try our new research platform with insights from 80,000+ expert users

CyberArk Privileged Access Manager vs Okta Workforce Identity comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 6, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Customer Service

Sentiment score
6.5
CyberArk's support is knowledgeable and efficient, but some users face slow initial responses and documentation challenges.
Sentiment score
7.4
Okta Workforce Identity support is praised for responsiveness and professionalism, though some users note improvement areas like response times.
They are helpful, but complex issues can take a long time to resolve, which can delay solutions for urgent customer issues.
They do not go into analyzing the issue.
CyberArk's customer service has improved recently and is now very responsive.
 

Room For Improvement

Sentiment score
4.6
CyberArk Privileged Access Manager needs UI updates, improved integrations, simpler deployment, better performance, enhanced reporting, and flexible pricing.
Sentiment score
4.4
Okta Workforce Identity struggles with integration, user provisioning, and user experience, while high pricing hinders broader adoption.
They want everything to be on the cloud, but even in the SaaS version of CyberArk Privileged Access Manager, they need to deploy some servers on-premises.
Upgrades require a lot of resources, as it impacts the entire organization.
The graphical user interface could be simplified and harmonized for better usability.
 

Scalability Issues

Sentiment score
7.7
CyberArk Privileged Access Manager scales effectively across environments, though careful planning is needed to avoid potential license issues.
Sentiment score
7.7
Okta Workforce Identity is praised for its scalability and flexibility across environments, despite some business scalability challenges.
We have different operating systems, database systems, and decentralized infrastructure.
The SaaS version is more flexible, allowing easier scaling with increased users.
We started small and expanded it to an enterprise level, and are now moving to the cloud for further growth.
 

Setup Cost

Sentiment score
5.9
CyberArk Privileged Access Manager is costly but comprehensive; careful planning and consultation can optimize costs for larger enterprises.
Sentiment score
5.0
Okta Workforce Identity pricing is competitive but costly for large firms due to yearly per-user subscriptions and additional fees.
CyberArk is comparatively expensive compared to other PAM solutions, such as Delinea, especially during renewal.
CyberArk is expensive compared to other products I know.
It is very expensive.
 

Stability Issues

Sentiment score
7.8
CyberArk Privileged Access Manager is stable and reliable, with most issues stemming from human errors or configuration rather than product flaws.
Sentiment score
8.2
Okta Workforce Identity boasts 99.9% uptime, high reliability, and minimal downtime, with efficient issue resolution and strong user trust.
Proper fine-tuning and expertise ensure the product performs well.
Overall, the stability of the solution is high.
 

Valuable Features

Sentiment score
8.2
CyberArk Privileged Access Manager offers secure credential storage, session monitoring, and integration to enhance security and compliance efficiency.
Sentiment score
8.2
Okta Workforce Identity offers secure authentication, centralized management, and seamless integration, enhancing productivity and simplifying user access control.
CyberArk Privileged Access Manager helps ensure data privacy because we now know who is using which credentials and at what time.
As a security professional, I have real-time visibility into ongoing sessions.
After giving access, it continually checks if the user is the same user.
You can only log in if you have the access, which protects the applications by avoiding cross-site scripting.
 

Categories and Ranking

CyberArk Privileged Access ...
Ranking in Privileged Access Management (PAM)
1st
Average Rating
8.6
Reviews Sentiment
6.9
Number of Reviews
196
Ranking in other categories
User Activity Monitoring (1st), Enterprise Password Managers (3rd), Mainframe Security (2nd), Operational Technology (OT) Security (3rd)
Okta Workforce Identity
Ranking in Privileged Access Management (PAM)
5th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
64
Ranking in other categories
Single Sign-On (SSO) (5th), Authentication Systems (6th), Identity and Access Management as a Service (IDaaS) (IAMaaS) (2nd), Access Management (4th), ZTNA as a Service (8th)
 

Featured Reviews

SatishIyer - PeerSpot reviewer
Lets you ensure relevant, compliant access in good time and with an audit trail, yet lacks clarity on MITRE ATT&CK
When I was a component owner for PAM's Privileged Threat Analytics (PTA) component, what I wanted was a clear mapping to the MITRE ATT&CK framework, a framework which has a comprehensive list of use cases. We reached out to the vendor and asked them how much coverage they have of the uses cases found on MITRE, which would have given us a better view of things while I was the product owner. Unfortunately they did not have the capability of mapping onto MITRE's framework at that time. PTA is essentially the monitoring interface of the broker (e.g. Privileged Access Management, the Vault, CPM, PSM, etc.), and it's where you can capture your broker bypass and perform related actions. For this reason, we thought that this kind of mapping would be required, but CyberArk informed us that they did not have the capability we had in mind with regard to MITRE ATT&CK. I am not sure what the situation is now, but it would definitely help to have that kind of alignment with one of the more well-known frameworks like MITRE. For CyberArk as a vendor, it would also help them to clearly spell out in which areas they have full functionality and in which ares they have partial or none. Of course, it also greatly benefits the customers when they're evaluating the product.
Tor Nordhagen - PeerSpot reviewer
Extremely easy to work with, simple to set up, and reasonably priced
The drawback of this solution is that in our shops, many staff members sometimes have to be borrowed from one shop to another and the solution does not really support having multiple roles. The user experience we would like to have when a person works in shop A which pays their salary is that they should have access to pretty much everything. Maybe you have somebody who is a manager in that shop A, he should be able to order new wear, he should be able to change the pricing, he should be able to empty the cash registry, and ship it to the bank. But when for instance, in COVID, people had to fill in for people in shops where a lot of people were sick, then they had to actually use user accounts of people that work in shop B. If you were employed in shop A, you could not work in shop B without borrowing somebody else's user ID and password. Which is really bad. We haven't been able to work around that and Okta Workforce Identity does not have a solution for it. We are now piloting their identity governance solution. Obviously, it's easy to give somebody access, give them an account, and give them roles, but it's hard to maintain that. For example, if you moved from, say working in a shop to working in a warehouse. But why do you still have all this shop access? The solution has until now not had anything to really support the process of taking away access. But now we are in a better release program of Okta's identity governance solution. Although it's very basic, the solution has started on a journey, but identity governance is something that Okta Workforce Identity really needs to improve. The ability or the options in the solution for changing the look and feel are not good enough because in our partner portal, essentially what they have is an ugly admin interface. The admin interface is good enough for us technical people because that's all we need. We work with the product and we're able to see the data but when it comes to presenting the service portal, Okta Workforce Identity does not have any capabilities really for making it look pretty. To add branding and different graphical user interface elements than Okta basic for essentially delegated admin for the business-to-business portal is horrifying because you're essentially using the tech admin. The only option we had and used, was to take the tech admin console and strip it. so that a vendor that has some goods that are sold in the shops, when they want to add a user on their side, say a driver or a packer on their side who should know how much they've packed in a truck to come to our warehouse, then the user interface that this vendor is using, these functional people will then have to use an extremely basic user interface.
report
Use our free recommendation engine to learn which Privileged Access Management (PAM) solutions are best for your needs.
823,875 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
32%
Financial Services Firm
12%
Computer Software Company
11%
Manufacturing Company
6%
Computer Software Company
15%
Financial Services Firm
12%
Manufacturing Company
8%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

How does Sailpoint IdentityIQ compare with CyberArk PAM?
We evaluated Sailpoint IdentityIQ before ultimately choosing CyberArk. Sailpoint Identity Platform is a solution to manage risks in cloud enterprise environments. It automates and streamlines the m...
What do you like most about CyberArk Privileged Access Manager?
The most valuable features of the solution are control and analytics.
What is your experience regarding pricing and costs for CyberArk Privileged Access Manager?
CyberArk Privileged Access Manager comes at a high cost. But the solution is worth its price.
What do you like most about Okta Workforce Identity?
Okta has introduced the Universal Directory. It has custom attribute capability and user permissions to read/write on their profiles or hide them. Profile sources and identity profile sourcing are ...
What needs improvement with Okta Workforce Identity?
We are facing one issue with Cypress test cases. Whenever I write Cypress test cases, we encounter problems with logging in through Okta. There is no proper documentation on integrating test cases ...
 

Also Known As

CyberArk Privileged Access Security, CyberArk Enterprise Password Vault
No data available
 

Learn More

 

Overview

 

Sample Customers

Rockwell Automation
FedEx, Zoom, Takeda, Lululemon Athletica, GrunHub, jetBlue, McKensson, Bain & Company, Engie, Peloton, Sonos, T-Mobile, Hewlett Packard, MGM Resorts, Ally Financial, Priceline, Albertsons, Itercom, Classy, FICO, Kensho, Live Nation, Drata, Rotary, and others.
Find out what your peers are saying about CyberArk Privileged Access Manager vs. Okta Workforce Identity and other solutions. Updated: December 2024.
823,875 professionals have used our research since 2012.