No more typing reviews! Try our Samantha, our new voice AI agent.

Netskope Private Access vs Prisma Access by Palo Alto Networks comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Aug 11, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in ZTNA as a Service
6th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
23
Ranking in other categories
Secure Web Gateways (SWG) (6th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (6th), Secure Access Service Edge (SASE) (6th)
Netskope Private Access
Ranking in ZTNA as a Service
16th
Average Rating
8.6
Reviews Sentiment
6.8
Number of Reviews
17
Ranking in other categories
No ranking in other categories
Prisma Access by Palo Alto ...
Ranking in ZTNA as a Service
4th
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
65
Ranking in other categories
Secure Web Gateways (SWG) (5th), Cloud Access Security Brokers (CASB) (1st), Enterprise Infrastructure VPN (5th), Secure Access Service Edge (SASE) (1st)
 

Mindshare comparison

As of September 2026, in the ZTNA as a Service category, the mindshare of iboss is 3.6%, up from 2.3% compared to the previous year. The mindshare of Netskope Private Access is 2.3%, down from 4.8% compared to the previous year. The mindshare of Prisma Access by Palo Alto Networks is 9.9%, down from 13.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
ZTNA as a Service Mindshare Distribution
ProductMindshare (%)
Prisma Access by Palo Alto Networks9.9%
iboss3.6%
Netskope Private Access2.3%
Other84.2%
ZTNA as a Service
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
Prathamesh Samant - PeerSpot reviewer
Presales Manager at a manufacturing company with 201-500 employees
Has ensured secure remote access through real-time device checks and policy controls
There is a mixed review on the integration part of Netskope Private Access. Wherever they have out-of-the-box support, it is quite easy to integrate. Wherever customization is needed, it depends on the openness of the application being integrated with. If the other application has an open architecture where you have easy API integrations, then it becomes easier. However, in some cases, it is a tedious task to do the integration where the application is not that open or it is not supported out-of-the-box from Netskope. They can introduce the DLP feature for Netskope Private Access. Zscaler has that DLP feature. It is in their roadmap, but currently, they don't have it. If they have data protection or data loss prevention within their NPA, that would be a significant advantage.
IgorPinter - PeerSpot reviewer
Director at PULSEC
Zero-trust access has improved remote security and now simplifies cloud-based firewall management
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pretty much good. It is basically firewall as a service, so it performs well. I completed the integration without any issues. What Palo Alto Networks can do better for Prisma Access by Palo Alto Networks is probably to have the point of presence available in more locations. The point of presence from the Serbia region has the nearest POP in Frankfurt, which is an issue since it is your gateway—when you start browsing the internet, you go through a commercial connection in Germany. They definitely need to spread the service in other countries.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The security aspect of the solution, particularly the malware behind it, is excellent."
"From a use-case scenario, what I like the most is the plug-in. I like the fact that we can do the filtering of these devices offsite independent of the network they are connected to, and we do not have to have traffic coming back inside our network."
"iboss is easy to use despite its complexity. Multiple engineers manage it, but it's significantly more straightforward to administer than traditional VPNs and web proxies."
"I would definitely recommend iboss for web filtering purposes to other organizations or individuals."
"Because of iboss, I did not have to assign web filtering tasks to my techs on a daily basis."
"First of all, the security policies are essential. I do not have to rely solely on Active Directory for our users."
"The iboss system is highly reliable. The false positive rates are small compared to some other systems we've experienced through other partner agencies who use competing solutions."
"iboss is among the few products providing inline filtering where no application is needed on the device. It operates on the network side and is not device-based. This feature was one of the main reasons why we stayed with them for so long."
"In the firewall, we don't have a user-based policies list, and we can't create them. Netskope helps us to create user-based policies. For example, if there are specific teams like HR or more than nine teams, and we want logs from access over particular URLs, and we don't want to allow that specific URL for certain users, we can create these policies in Netskope. It's handy, easy to use for new users, and has a cool GUI interface. We can create multiple policies, and as for the proxy, it's a leading solution."
"It is a stable solution."
"There are several valuable features, like advanced security protections, especially the DLP (Data Loss Protection), and there's also browser and web filtering, or content filtering for our users to protect them when accessing certain links or websites, ensuring their security and permission."
"They do one software or one platform; they are the leading CASBY platform in the world, and what they can do, nobody can do."
"The main benefit for users from Netskope Private Access would be secure access from anywhere; they can easily access their systems or applications in their office premises or on-premises environment in a very secure way and the organization can also be assured knowing that whatever access they have been providing to their remote users goes through proper checks and balances before access is provided."
"With private access or next-gen VPN, they are able to keep you secure, but they are invisible in terms of how they do it. Anybody working from home and trying to bring up VPN quickly can pretty much get VPN up and running in a matter of minutes because this doesn't require any VPN technology on-prem. All the VPN technologies that you're using to access applications on-premise can be eliminated by using their software. If you're accessing Microsoft 365 or salesforce.com, you can go straight out from your home office or home internet to that application rather than having to come through a VPN. It still has all the policies enforced, and it mitigates any business risks in terms of how that user is accessing that application and what they're doing inside of it. VPN piece is really critical, especially at this time of Covid, and your latency also goes down. Your latency gets better by using the platform because they're intercepting your traffic, routing it through their local data center, and then sending it to whichever SaaS service or whatever you're going to. It does it better, faster, and quicker with all your governance policies enforced, rather than you having to go through your data center. So, all the traffic gets hauls there, and then that traffic has got to route somewhere else, and then it has got to go up to the cloud. Your latency actually goes down. They can guarantee 15 milliseconds or less pretty much across anywhere on the planet for about 95% or 90% of it."
"Even without extensive training, if you're a proficient IT professional, you can easily configure it."
"Netskope Private Access covers a wide range of use cases with solutions for client-server and server-to-client connectivity patterns."
"We are quite happy with this feature and feel very confident that the Palo Alto security stack takes care of all of these things automatically."
"You have the ability to create your own expressions for your data. Palo Alto understands that DLP is not the same for all consumers. You might have a particular need to fulfill, and they give you the opportunity to create a custom expression to match the specific format that you have. For a confidential file property that you have in your files, you can add a metadata field. It gives you that opportunity to create that."
"GlobalProtect has been beneficial for its cloud security capabilities, which are vital as businesses seek hybrid options and need to support remote workers while addressing latency issues."
"Prisma's most valuable feature would be its ability to identify bad or risky configurations."
"My advice for those who are looking for a SaaS solution is to use Prisma; it's one of the best solutions in the industry at the moment, simpler and really easy to deploy, with a very trustworthy support team from Palo Alto."
"It has predefined or preconfigured rules, which are getting periodically updated. They are providing continuous improvements and periodically updating all search queries that they are looking for. That is one thing that helps us to stay vigilant and focused. If we query our AWS account for any breaches or vulnerabilities with any of the cloud tests, and it alerts us based on these predefined rules. It also provides an option to configure our own rules, and based on these rules, it can query the cloud trail logs, pull the information, and trigger alerts in real-time. I haven't explored this feature much because there are multiple accounts, and we don't have enough time to explore this feature. It also provides multiple integrations. When vulnerabilities or breaches are happening, you should be aware of them immediately. It provides integration with tools such as Slack, PagerDuty so that you can get alerted as soon as the high severity stuff comes up. For example, you have a security group that has allowed public traffic on port 22. As TechOps, you should be aware of this immediately. You cannot scan each machine or look into all security groups to identify it. So, Prisma helps us and alerts us when this kind of high-priority stuff comes up. It has different statistics, analytics, and graphs for data. The description of alerts is also pretty good. They describe what are the possible causes for this and what are the solutions. From Prisma Cloud, you can directly go to the AWS account. When you click on an alert, a resource, or a resource ID, it takes you to the AWS console where you need to log in. If you are already logged in, it will take you to that instance directly, and you can fix the issue there. I have found this feature very useful."
"Its frontend is user-friendly. It is easy to use for us."
"This is the best product that I have looked at, out of all of the competitors."
 

Cons

"Iboss is growing so fast that it is often hard for them to keep up with the challenges."
"File integrity monitoring would be very advantageous as an additional feature."
"One thing I would like to see differently with their Zero Trust platform is that some of the AI aspects related to high-risk activities have more false positives."
"It is stable, but due to growth, it can sometimes be less stable than wanted."
"For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company ExxonMobil."
"Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern."
"Fold that in with the risk intelligence they're getting from all of the different subscriptions they are a part of. Now, these security companies subscribe to things like emerging threats, databases, etc. You can fold all this intelligence to decide what's happening on an endpoint. I would love to see them start moving into that space. That would compete directly with Microsoft. Maybe that's why they haven't. Having that ability native within the solution would be great. The other area in which I would love to see improvement is more detailed descriptions of why they block websites."
"I have heard they are doing DDoS filtering, but I am not certain if they are implementing it correctly."
"Netskope Private Access only supports TCP and UDP ports and does not support ICMP or ping."
"Netskope detects certain data or contents, but there are some limitations on how we can customize those policies for DLP."
"Netskope Private Access could improve by enhancing visibility of user performance and application performance. It should also integrate wider DLP and inspection engines on private access traffic."
"I would rate the stability around seven out of ten. Sometimes, we face some difficulty, but it depends upon the complexity of the environment."
"Netskope Private Access allows mapping only one DNS server. If a user uses a secondary DNS on-premises, Netskope fails to disconnect them. This is an issue that needs to be addressed."
"If we compare it with Zscaler, Netskope Private Access requires more configuration for setup of the overall solution."
"The major problem that we are facing is if we deploy Netskope on the server level or if we get a new server in the EMEA factor, it will affect all the machines. Recently, this has caused us to fail some reviews."
"The solution needs to develop faster features. Its interoperability feature is not working. It takes six months to one year for any product to implement the improvements. However, the process should be faster to implement the changes quickly."
"The price can be reduced to make it more competitive."
"In general, it is good, but everything could be a little bit better. For example, they are working on including more data to catch or trying to reduce the gaps between the matches."
"Though the monitoring is fine, the solution should improve its application graphs and interface monitoring."
"There is a lack of integration with third-party solutions like CrowdStrike or SentinelOne in Prisma Access by Palo Alto Networks. Although they have a tight ecosystem with their products, opening up for integration with other solutions would be beneficial."
"There is room for improvement in the multi-environment visibility, especially around containers."
"Prisma's integration between operational technology and IT should be more seamless. Right now, it requires additional setup and maintenance."
"Sometimes a third-party outage could impact the whole operability."
"It would be nice to manage Prisma Access through the cloud instead of through Panorama. You can use the cloud version to monitor Prisma Access, but it doesn't have all the features yet, and it's not 100% done."
 

Pricing and Cost Advice

"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is probably in line with other solutions, but I do not deal with the financial side."
"It is expensive compared to one of its competitors."
"The overall pricing for iboss is very competitive and transparent."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"When it comes to pricing, Netskope Private Access is relatively cheap compared to other solutions."
"There was about 60% ROI, just in terms of savings. We had 40% to 60% reduction in monthly operational costs by using Netskope."
"It is not cheap, but the value of the solution is there. It's worth the investment."
"It is significantly cost-effective compared to its contenders."
"The pricing of the solution is cheap."
"Netskope Private Access is more inexpensive than other products."
"The tool's price is normal. It is not very cheap but good compared to the competitors."
"It is not the most expensive option, being more affordable than Zscaler, but it's also not the most budget-friendly choice available."
"Prisma Access by Palo Alto Networks is an expensive solution, especially when compared to other solutions like Cisco. There are no additional charges apart from the standard licensing costs attached to the solution."
"Prisma Access is a little bit expensive."
"We have to pay additional costs for maintenance and support services."
"As compared to other solutions, Prisma Access is much cheaper. It is probably 30% to 40% cheaper than other solutions, but I do not know the exact cost."
"It's pricey, it's not cheap. But you get what you pay for."
"It is a little expensive. Because it is one of the best in the market, it is a little bit more expensive than other vendors."
"There's no reason not to buy the enterprise version that gives you unlimited PoPs, but you must understand the limitations you impose on yourself if you do that. If you go crazy, that allowlist will be too big for Kubernetes clusters."
"In terms of pricing, considering that it is a two or three years old solution, they should apply big discounts for the next two or three years. This approach will be better for them to capture the market."
report
Use our free recommendation engine to learn which ZTNA as a Service solutions are best for your needs.
913,349 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
9%
Comms Service Provider
8%
Computer Software Company
7%
Manufacturing Company
9%
Financial Services Firm
8%
Outsourcing Company
8%
Insurance Company
7%
Financial Services Firm
11%
Manufacturing Company
10%
Outsourcing Company
8%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business11
Midsize Enterprise8
Large Enterprise10
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise4
Large Enterprise9
By reviewers
Company SizeCount
Small Business26
Midsize Enterprise20
Large Enterprise27
 

Questions from the Community

What needs improvement with iboss?
I think iboss could be improved by making reporting and dashboard customization more flexible, and simplifying troubl...
What is your primary use case for iboss?
I use iboss as a cloud-based secure web gateway to provide secure internet access, web filtering, and protect remote ...
What is your experience regarding pricing and costs for iboss?
My experience with iboss's pricing structure, setup cost, and licensing model has been positive, straightforward, and...
What needs improvement with Netskope Private Access?
There is a mixed review on the integration part of Netskope Private Access. Wherever they have out-of-the-box support...
What is your primary use case for Netskope Private Access?
For secure remote access for people who are working out of the office, remotely, or traveling, my clients mostly use ...
What advice do you have for others considering Netskope Private Access?
I work with a system integrator, and nowadays, we have all these solutions in our portfolio for our customers. At tha...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
What needs improvement with Prisma Access by Palo Alto Networks?
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pr...
 

Also Known As

iBoss Cloud Platform
No data available
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Evalueserve, Stroock, Apria, Ather Energy
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Find out what your peers are saying about Netskope Private Access vs. Prisma Access by Palo Alto Networks and other solutions. Updated: August 2026.
913,349 professionals have used our research since 2012.