Try our new research platform with insights from 80,000+ expert users

ForgeRock vs Symantec Identity Governance and Administration comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 1, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Omada Identity
Sponsored
Ranking in Identity Management (IM)
4th
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
48
Ranking in other categories
User Provisioning Software (3rd), Identity and Access Management as a Service (IDaaS) (IAMaaS) (5th), Customer Identity and Access Management (CIAM) (3rd)
ForgeRock
Ranking in Identity Management (IM)
13th
Average Rating
8.0
Reviews Sentiment
6.5
Number of Reviews
30
Ranking in other categories
Access Management (9th), Customer Identity and Access Management (CIAM) (5th)
Symantec Identity Governanc...
Ranking in Identity Management (IM)
27th
Average Rating
7.6
Reviews Sentiment
6.7
Number of Reviews
66
Ranking in other categories
User Provisioning Software (12th)
 

Mindshare comparison

As of April 2025, in the Identity Management (IM) category, the mindshare of Omada Identity is 3.3%, down from 3.4% compared to the previous year. The mindshare of ForgeRock is 4.5%, down from 5.4% compared to the previous year. The mindshare of Symantec Identity Governance and Administration is 1.4%, up from 1.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Identity Management (IM)
 

Featured Reviews

Pernilla Hulth - PeerSpot reviewer
The interface is easy to use and gives you a solid overview
The cloud-based deployment was straightforward, but the on-prem deployment was in a highly complex ecosystem. Omada has matured since then. I wouldn't say that it isn't straightforward, but it depends on the customer. A standard deployment is relatively easy, but it can be more painful if you need a lot of customization. We deployed the cloud solution in around four months, nearly meeting the 12-week benchmark. The on-prem deployment took three years. It was a highly complex ecosystem that was dependent on other systems. Depending on the size of your environment, you need a product owner and some specialists for maintenance. My last customer was a university with a complex environment. They had around 12 people involved in maintenance at that organization. Typically, it's between 2-5 people.
Trisha Bhola - PeerSpot reviewer
It's easier to customize and maintain our code
I worked on two different projects based on ForgeRock, and both are automated deployments. One is a UI-based deployment. It's an automated process using some scripts. The deployments are done through Octopus, so it's also automated. We first deploy the essential components of AM and then implement additional configurations like Amster Imports. After that, we import all the SAML Federation data and add some certificates. We have two teams of five and three team members working on the different deployment processes. One is working on the dev side, another is looking at the higher environment, and one is managing the data. In another project, I'm the only developer. We also deploy on the dev environments so that anyone can test new features, configurations, and client requirements. They can test it on the dev environment, but a team of four people manages higher environments. The Access Management component involves the most customization, which takes around 15 to 20 minutes because of the need to import the Amster configuration. If another deployment is simultaneously happening, it may be a little slower and take around 30 minutes. The other components, like the user data stores, take about five to seven minutes. It's another five to 10 minutes for Identity Management. After deployment, the maintenance is mostly checking for security vulnerabilities. If ForgeRock shares security vulnerabilities or advisories, we check to see if there is something inside we need to maintain. Other than that, we just install updates when they add features each month.
Efrén Yanez - PeerSpot reviewer
Identifies, debugs and models the privileges of your organization, adapting it to business strategies.
* Identifies, debugs and models the privileges of your organization, adapting it to business strategies. * Helps discover roles based on available patterns ("basic roles" / "Iterated Search" / "Characteristic Roles" / "Rule Hierarchies Roles" / "User Hierarchy Based Roles" / "Structured Search" / "Obvious Roles"). * Enables review campaigns to certify user privileges, roles and resources, activating the RACI model in the process. * Identity Governance comes with Connector Xpress but if you have Identity Manager you can use the integration between them and import the information that comes from CA Identity Manager and its connectors. * Allows the construction of segregation of rights (SoD) rules by definition of the client and enables “detective" and "corrective" levels for violations of business rules policies. * Provides a set of SoD rules for SAP in order to apply "best practices" to this type of "endpoint" (more than 3,000 rules / Consult CA Technologies if available in last version). * Helps to analyze privileges to find points of cleaning and improvement (Similar Roles / Roles Hierarchy / dual link / Suspect connections / Collectors, etc.). * Regulatory compliance is one of the objectives of the solution. * Covers the life cycle of enterprise privileges and maintains the role model "shallow" or "deep" / "functional" or "granular per application". * Helps you take advantage of the Identity Governance on the portal but better if you integrate with Identity Suite (best user experience). * You can enable LDAP authentication (AD/others) or integrate with CA Single Sign-On for portal access. * Real integration between CA Identity Manager and CA Identity Governance for better use of compliance approved roles, data exchange, and improved customer experience. * Data Transformation available using PDI (Pentaho Data Integration) * New functionality when integrating with Identity Portal.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable aspects of Omada Identity for me are the automation capabilities."
"The most valuable feature is the automatic provisioning and reconciliation of things like the Active Directory groups and memberships."
"I'm not using Omada, but the interface is easy to use and gives you a solid overview of your identities."
"Technically, the product does everything one would expect from an identity and access management platform. The product offers robust handling of Active Directory resources."
"It has a very user-friendly interface compared to what we are used to, and it is highly configurable. In the old solution, when we needed to do something, we had to have a programmer sitting next to us, whereas, in Omada Identity, everything is configurable."
"It scales in terms of numbers and types of identities. It can govern the on-premise applications as well as the cloud applications. So, it can manage hybrid environments with all types of identities and various load amounts."
"Its best feature is definitely the process design. It is quite easy and straightforward to design a process."
"The support response time and the freedom from strange bugs and strange things happening in the software are valuable."
"The most valuable features are that it is easy to manage and it's stable."
"I like the way it is handling authentication and authorization."
"The product is easy to set up."
"Easy to customize and adaptable to any environment."
"ForgeRock products are customizable, and the out-of-the-box features are solid, too. I primarily use the OIDC compliance features. It's just a configuration. it's easy to set up and customize trees. We can add our own features if necessary. Banks and corporations have different standards and specific validations."
"ForgeRock has CIAM, which other products didn't have, and they have DevOps ready."
"Their access management solution, OpenAM, is most valuable because it meets the needs of a lot of users."
"We used it to implement multi-factor authentication and to improve our security posture as well as reducing the potential for attacks."
"Out-of-the-box the product has a lot of opportunity for configuration and sophisticated identity management capability."
"I like that it is easy to diagnose. It has a version of a virtual appliance so we can download it, run it, configure it, and it would take about 10 to 15 minutes to configure the cluster or so."
"It is easy to use, and does not requires an extensive programming or development background."
"The solution is easy to scale."
"​It has improved our user management. It is definitely streamlined​."
"It has good endpoint support and endpoint connectivity to different versioning endpoints."
"Using the implementation guide, I was able to implement the solution with ease."
"The most valuable features are role-based access and identity provisioning, which allow a single point of user access to multiple places."
 

Cons

"I would like more training. As someone who is new to this world, I don't feel that the courses Omada provides are good enough. They should also improve the documentation. It is difficult to learn how to use the solution by yourself"
"If you find an error and you need it fixed, you have to upgrade. It's not like they say, "Okay, we'll fix this problem for you." You have to upgrade. The last time we upgraded, because there was an error in a previous version, we had to pay 150,000 Danish Krone (about $24,000 at the time of this review) to upgrade our systems... That means that we have to pay to get errors fixed that Omada has made in programming the system. I hope they change this way of looking at things."
"There's a challenge with handling large amounts of data in this system."
"The biggest issue, which is the reason why we are transitioning from their product to SailPoint, is the overall user experience."
"Omada Identity has two main issues that need to be solved or improved the most. One is its setup or installation process because it's complex and cumbersome. I'm talking about the process for on-premises deployment because I've never tried the cloud version of Omada Identity. Setting up the cloud version should be much easier. The second area for improvement in Omada Identity is that it's piggybacking on Microsoft's complex way of having all kinds of add-ons, extensions, or setups, whether small or large, such as the new SQL Server, and it's cumbersome to make sure that everything works. Omada Identity is a complex solution and could still be improved."
"They need to improve the cost for small companies."
"The Omada Identity SaaS version doesn't provide all the features Omada Identity on-premise provides."
"The comprehensiveness of Omada's out-of-the-box connectors for the applications we use could be better. We are getting a new HR system called Cornerstone for which they do not have an out-of-the-box connector, so we have to take the REST connector and play around with it."
"The solution's deployment should be made easier."
"Automatic Deployment needs improvement. it could be made easier."
"The identity management model needs a bit of improvement."
"The user interface could be improved as it is cumbersome and outdated. It doesn't have a responsive UI."
"In an upcoming release, the solution could improve by limiting the need to do customizations."
"We raised tickets asking for improvements, but sometimes we don't get the proper solution. They are responding, but the ticket is open for weeks and weeks. For some issues, we don't get a satisfactory solution or the solution doesn't work."
"It should have a better user interface. Its flexibility should also be improved. It is not about simplifying; it is more about flexibility. Each company has its own requirements, and ForgeRock can provide more flexibility in terms of the use of existing modules to implement features for the customers."
"We would like this solution to be developed for use with mobile applications."
"The product's technical support could be better."
"They provide a framework to develop your own connectors. A connector is a piece of software that integrates with the solutions that are not a part of the support matrix. Currently, it is difficult to create these connectors in this solution. Other solutions, such as NetIQ Identity, provide a better way to create your own connector. Currently, there is no cloud version. It should have a cloud version."
"The support from Symantec Identity Governance and Administration could improve."
"In the next release, there should be provisioning of your certifications."
"We would like to see integration with analytics. Also, for them to be more efficient regarding discovering and implementing new rules."
"The drawback with the CA Identity Manager is they don't have a connector to HR systems like SAP, or PeopleSoft, or Workday. That's a major drawback with the CA Identity Manager. For that we have to do lots of custom quoting to get data from HR systems. And if they could connect it to GRC systems, that's good to have in an identity product."
"There are several areas for improvement in Symantec Identity Governance and Administration. They have no proper documentation on how to do backups. They also have a lengthy workflow process where we have to make some configurations to manage automation in the rules and in our tasks which takes time. We have to manually configure all the configuration files, and we cannot export users because there's no export system in Symantec Identity Governance and Administration. What we'd like to see in the next release of the solution is for them to make configuration and integration with other systems their top priorities. We have many API systems to manage, so hopefully, if they make these enhancements shortly, we can directly connect with our API systems when using Symantec Identity Governance and Administration."
"The Identity tool needs to do more kinds of reporting for audit purposes. It doesn't really track any of the metrics that are useful to us, at this point."
 

Pricing and Cost Advice

"Omada is expensive."
"Omada Identity is competitively priced and delivers good value for our money."
"They are positioned at a good price point. They are lower than some of their competitors."
"It is fairly priced for an on-premise environment, but for the cloud environment, I am not that happy with the pricing."
"Omada Identity is very reasonably and competitively priced."
"While Omada Identity carries a premium price tag, it proves to be cost-effective."
"It is licensed per managed user per year."
"It is not cheap. It is expensive, but compared to what we did almost three years ago, it is value for money. It is worth it."
"We have multiple clients we are looking at right now. We are at a very small number, however, the idea and the goal is to grow. We are looking at about $100,000 and $50,000 a minimum a month cost. That'd be minimum maybe in a couple of years."
"Its price is comparable to other products in the market."
"ForgeRock is an expensive solution."
"The pricing of the solution is fair but I do not have the full details."
"The license is purchased annually per user. However, you can negotiate if you are signing for a longer period of time. When comparing this solution to others on the market it is priced fair, it is not at the top of the price range or at the bottom end."
"It's a bit pricey and could be more competitive."
"ForgeRock's pricing is more competitive than other products."
"Its licensing is on a yearly basis, but it also depends on the contract that you have with the vendor. They have multiple types of contracts. There are additional costs to the standard licensing fees. If you need some of the features, you have to pay more."
"The price is flexible for our existing customers."
"The price is based on the number of users."
"Compared to other options, CA products are not that expensive."
"I do not recall the approximate prices or licensing models, although I do so that it was priced per user number."
"The connector is free, and bundled with the product."
"Symantec keeps increasing the price. I rate its pricing a seven on a scale of ten."
"The product has a good price in competition with another product with the same solution."
"Pricing and licensing models are adequate and reasonable."
report
Use our free recommendation engine to learn which Identity Management (IM) solutions are best for your needs.
848,716 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
16%
Computer Software Company
13%
Manufacturing Company
8%
Government
7%
Financial Services Firm
24%
Computer Software Company
12%
Insurance Company
7%
Manufacturing Company
7%
Computer Software Company
29%
Financial Services Firm
18%
Manufacturing Company
9%
Real Estate/Law Firm
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Omada Identity Cloud?
As an administrator, we benefit from a lot of functionality that is available out of the box, but it is also configur...
What is your experience regarding pricing and costs for Omada Identity Cloud?
They are positioned at a good price point. They are lower than some of their competitors.
What needs improvement with Omada Identity Cloud?
The biggest issue, which is the reason why we are transitioning from their product to SailPoint, is the overall user ...
What do you like most about ForgeRock?
The most valuable features of ForgeRock are social login and data protection.
What is your experience regarding pricing and costs for ForgeRock?
Our company was considering switching back to Keycloak from ForgeRock, so as to not pay any license fees. ForgeRock a...
What needs improvement with ForgeRock?
In the past, I saw that Splunk was integrated with a testing portal, and then it was integrated with Slack. I don't t...
What do you like most about Symantec Identity Governance and Administration?
The product’s most valuable feature is flexibility. It can be customized as per the customer’s requirements.
What is your experience regarding pricing and costs for Symantec Identity Governance and Administration?
The pricing has been very reasonable, but licensing costs vary based on the customer. It follows a user-based licensi...
What needs improvement with Symantec Identity Governance and Administration?
Symantec should develop a SaaS solution for cloud environments to make the solution available in various marketplaces...
 

Also Known As

Omada Identity Suite, Omada Identity Cloud
ForgeRock Identity Platform, ForgeRock OpenIDM
CA Identity Suite, Symantec IGA, Layer7 Identity Suite, CA Identity Manager (CA IDM), CA Identity Minder, CA IAM, CA Identity Manager (CA IDM), CA Identity Governance
 

Overview

 

Sample Customers

Bayer, ECCO Shoes, Vattenfall, NuStar Energy, Unicredit, Schiphol Group, BMW Group, Deutsche Leasing
Geico, Thomson Reuters, Salesforce, McKesson, Trinet, SKY, BNP Paribas, Deloitte, Capgemini, North Western University
Acciona, Core Blox, DBS
Find out what your peers are saying about ForgeRock vs. Symantec Identity Governance and Administration and other solutions. Updated: April 2025.
848,716 professionals have used our research since 2012.