Try our new research platform with insights from 80,000+ expert users

Microsoft Entra Permissions Management vs One Identity Manager comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Microsoft Entra Permissions...
Average Rating
7.0
Number of Reviews
2
Ranking in other categories
Microsoft Security Suite (25th), Cloud Infrastructure Entitlement Management (CIEM) (3rd)
One Identity Manager
Average Rating
8.0
Reviews Sentiment
7.5
Number of Reviews
105
Ranking in other categories
User Provisioning Software (2nd), Identity Management (IM) (3rd)
 

Mindshare comparison

Microsoft Entra Permissions Management and One Identity Manager aren’t in the same category and serve different purposes. Microsoft Entra Permissions Management is designed for Cloud Infrastructure Entitlement Management (CIEM) and holds a mindshare of 12.5%, up 10.3% compared to last year.
One Identity Manager, on the other hand, focuses on Identity Management (IM), holds 8.0% mindshare, up 7.5% since last year.
Cloud Infrastructure Entitlement Management (CIEM)
Identity Management (IM)
 

Featured Reviews

Sameer Bhat - PeerSpot reviewer
Nov 28, 2023
Provides resource-based access and security, but time-bound access can be a problem
Entra ID is the core of the identity management that we have. This is the key product that we are using. I am currently also looking into Entra Private Access because we are planning to deploy about 50,000 desktops into Azure and use Azure Virtual Desktop. We would like to give access to the users from the desktop to on-premises applications. I learned that Entra Private Access is a good solution. That is not yet GA, but that is what we are looking for. Entra provides a single pane of glass for managing user access, but because our company also integrates with Nebula API, only administrators use Entra's pane. A normal person who wants to get onboarded can do self-service using Nebula. The features for whitelisting and other things are definitely there. That is what we use specifically. Application IDs, enterprise applications, and all those things are already there, so we have more efficiency. There is also security because we usually do not allow user identities to get direct access to Azure resources. Usually, we use the service principles from Entra ID, so this way, it increases security. Entra has helped to save time for our IT administrators. We tend to automate a lot of things. We can do automation using Graph APIs and save time. It is hard to quantify the time savings, but there has been a medium amount of time savings. Entra has helped to save our organization money. We care about security and risk more than money, but it also saves money. We are premium customers, and because we have a commit-to-consume contract with Microsoft of multi-million dollars, the money does not come into it because we have to consume those resources.
Vladislav Shapiro - PeerSpot reviewer
Oct 11, 2024
Offers a more comprehensive and streamlined view of user identities and access
One of the most valuable features is the ability for business people to input their knowledge about business processes directly into the product. It's a good tool for anyone familiar with business or technical administration. The shopping cart capability for requests and the catalog features were also initially valuable. It's the best product for providing an enterprise view of logically disconnected SAP accounts. Sometimes, it's doing better than the SAP IG, which probably got discontinued or will be. One Identity Manager helps us connect SAP accounts to employee identities under governance. It is critical because there's no such thing as just SAP, and you want to centralize. You have Active Directory, SAP, and all the cloud applications. Every product has its user accounts, and One Identity allows you to connect them all in one place. One Identity Manager provides IGA for the more difficult-to-manage aspects of SAP. It lets you do many different things and go as deep as you want. The solution has a whole library of specialized SAP workflows for provisioning. You can build a customized web interface that you can do whatever you want with. The out-of-the-box interface for administrators or anybody else can take a little time to understand. It depends on the user's maturity. You must understand what's happening before touching the product. If you have experience using Identity Manager or similar tools, it's highly intuitive. It has so many features that it takes time to adopt, but that's not because it's difficult. The business roles are fundamental to role-based access controls. If you don't know how to build roles, it's very hard to do. One of the advantages of this particular product is that you don't have to be a technical person to build the role. You can log in as a business owner with a newly created project and add entitlements, users, or criteria. You can do it manually or using a formula. It's easy to do without any code.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Multifactor authentication is valuable."
"The solution integrates well with our infrastructure and other systems without any issues."
"The solution is flexible. You can customize it a lot. You can can build connectors, connecting them to a new application, and so on."
"The back-end, its capabilities, and workflows are very good."
"The biggest improvement has been the auditing. Now we have a record of what the users have, what the users have requested and when, and when things were approved. It's all in the same system."
"One Identity Manager provides a wide range of features that enable connection to numerous target systems."
"Its flexibility is the most valuable feature, the way we can customize the user interface and the workflow processes."
"One Identity Manager stands out for its extensive functionality."
"One Identity is one of the most feature-rich platforms on the market. It covers every use case. The user interface has been improved, making it easier to make it look like what customers want. It's easier to customize than a lot of competition solutions. There are nearly a thousand built-in processes that you can edit and customize according to your needs."
"Quest One IDM allows for large customization."
 

Cons

"We use a third-party API called Nebula API to integrate the account for authorization. The time-bound access area in Entra can be a problem. It can be improved in terms of the granularity of the permissions."
"The solution's pricing and support services need improvement."
"There are a few aspects of One Identity Manager's user experience that could be improved."
"The philosophy behind One Identity Manager has always been that there's not one way of working and that you can set it up according to your own identity and access management philosophy, but what would make it better is by shortening the setup time and the learning curve time. If the team could create some best practices with a wizard to set the solution up within companies, that would be a killer feature and would help make identity access management more approachable. That would also help companies that don't have the resources or a dedicated team to set up One Identity Manager. What I'd like to see in the next release of the solution is the addition of just released application governance parts. That would sound promising. It would also be interesting if the team sets up best practice startup wizards, so you could set up One Identity Manager according to selectable best practice wizards instead of setting it up completely by yourself."
"The technical support is non-existent. It is not worth talking about."
"It is particularly slow if you are using it in a large organization."
"One Identity Manager is currently in the process of modernizing its UI, which I hope will result in a more user-friendly interface for its Identity Manager. However, it is uncertain whether they have plans to consolidate their various tools into a unified system to simplify configuration and tasks."
"I would like One Identity Manager to offer an easier way for users to learn to use their new features."
"How One Identity Manager deals with disconnected systems needs improvement."
"One key area for improvement is implementing continuous integration and deployment."
 

Pricing and Cost Advice

"The product cost is in the mid to high range."
"We are a Fortune 500 company, so we always negotiate with Microsoft."
"I rate One Identity seven out of 10 for affordability. It's reasonably priced."
"The pricing is okay."
"The solution is flexible, in general. You can define the parts of the solution that you want to use, and it won't affect the price."
"One Identity Manager has a reasonable price point."
"You get a lot of bang for your buck with One Identity. It has many features that are included in the standard IGA license. Most people who are considering buying One Identity don't understand how much power is behind it in engines."
"In addition to licensing fees, we may incur costs for professional services if product issues or implementation errors arise beyond our control."
"We are paying for premium support, which is expensive. However, we do receive very good, fast support."
"Start with an operations team that is motivated to learn a lot in a short period of time. The longer you wait, the more expensive it will be to get the right level of expertise in this area."
report
Use our free recommendation engine to learn which Cloud Infrastructure Entitlement Management (CIEM) solutions are best for your needs.
814,763 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
15%
Computer Software Company
13%
Government
8%
Manufacturing Company
8%
Computer Software Company
18%
Financial Services Firm
14%
Government
8%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for Microsoft Entra Permissions Management?
The product cost is in the mid to high range. You need to have a good budget to implement it, so it is considered fairly expensive for our market. I rate the pricing a seven out of ten.
What needs improvement with Microsoft Entra Permissions Management?
The solution's pricing and support services need improvement.
What do you like most about One Identity Manager?
The One Identity birthright process has helped generate user accounts more accurately and quickly.
What is your experience regarding pricing and costs for One Identity Manager?
One Identity Manager is priced in the middle range but offers good value due to lower implementation time compared to competitors. Total cost of ownership is crucial where the main expense is in im...
What needs improvement with One Identity Manager?
The client application should transition to a web-based interface to improve administration flexibility. Improvements are also needed in the analytics, peer comparison, and recommendation features,...
 

Also Known As

CloudKnox Permissions Management
Quest One Identity Manager, Dell One Identity Manager
 

Overview

 

Sample Customers

Information Not Available
Texas A&M, Sky Media, BHF Bank, Swiss Post, Union Investment, Wayne State University. More at OneIdentity.com/casestudies
Find out what your peers are saying about SailPoint, CrowdStrike, Microsoft and others in Cloud Infrastructure Entitlement Management (CIEM). Updated: October 2024.
814,763 professionals have used our research since 2012.