No more typing reviews! Try our Samantha, our new voice AI agent.

Netskope Private Access vs Prisma Access by Palo Alto Networks comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Aug 11, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in ZTNA as a Service
8th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
22
Ranking in other categories
Secure Web Gateways (SWG) (5th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), Secure Access Service Edge (SASE) (8th)
Netskope Private Access
Ranking in ZTNA as a Service
14th
Average Rating
8.6
Reviews Sentiment
6.8
Number of Reviews
17
Ranking in other categories
No ranking in other categories
Prisma Access by Palo Alto ...
Ranking in ZTNA as a Service
5th
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
65
Ranking in other categories
Secure Web Gateways (SWG) (4th), Cloud Access Security Brokers (CASB) (1st), Enterprise Infrastructure VPN (5th), Secure Access Service Edge (SASE) (1st)
 

Mindshare comparison

As of June 2026, in the ZTNA as a Service category, the mindshare of iboss is 3.5%, up from 1.9% compared to the previous year. The mindshare of Netskope Private Access is 2.8%, down from 5.2% compared to the previous year. The mindshare of Prisma Access by Palo Alto Networks is 10.1%, down from 14.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
ZTNA as a Service Mindshare Distribution
ProductMindshare (%)
Prisma Access by Palo Alto Networks10.1%
iboss3.5%
Netskope Private Access2.8%
Other83.6%
ZTNA as a Service
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
Prathamesh Samant - PeerSpot reviewer
Presales Manager at a manufacturing company with 201-500 employees
Has ensured secure remote access through real-time device checks and policy controls
There is a mixed review on the integration part of Netskope Private Access. Wherever they have out-of-the-box support, it is quite easy to integrate. Wherever customization is needed, it depends on the openness of the application being integrated with. If the other application has an open architecture where you have easy API integrations, then it becomes easier. However, in some cases, it is a tedious task to do the integration where the application is not that open or it is not supported out-of-the-box from Netskope. They can introduce the DLP feature for Netskope Private Access. Zscaler has that DLP feature. It is in their roadmap, but currently, they don't have it. If they have data protection or data loss prevention within their NPA, that would be a significant advantage.
IgorPinter - PeerSpot reviewer
Director at PULSEC
Zero-trust access has improved remote security and now simplifies cloud-based firewall management
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pretty much good. It is basically firewall as a service, so it performs well. I completed the integration without any issues. What Palo Alto Networks can do better for Prisma Access by Palo Alto Networks is probably to have the point of presence available in more locations. The point of presence from the Serbia region has the nearest POP in Frankfurt, which is an issue since it is your gateway—when you start browsing the internet, you go through a commercial connection in Germany. They definitely need to spread the service in other countries.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution has massively improved our security posture, giving us full visibility into what our staff does online."
"First of all, the security policies are essential. I do not have to rely solely on Active Directory for our users."
"Content filtering is the most useful feature of iboss."
"Its initial setup was straightforward."
"The security aspect of the solution, particularly the malware behind it, is excellent. That's something that really helped us out. It's not just a simple proxy that just blocks the insights of potential threats that come on behind it. They do malware detection and that helps us a lot."
"As I mentioned, the return on investment is significant, as it saved our office locations' bandwidth because when you are working remotely at home, your internet traffic routes directly to iboss and will not go to your office building, saving bandwidth bottlenecks and ensuring that issues with our building internet circuits will not impact your internet connectivity because you are directly going to the iboss data center."
"It was a very easy product to install. It can be deployed very fast."
"The iboss solution gives me the ability to scan the traffic through all the ports, through all the 131,000 PCP and UDP ports, and with this ability, we have the granularity also for consults over social media and applications on mobile, and this is an advantage that the customers are looking for right now."
"The initial setup of Netskope Private Access is pretty simple and straightforward."
"There are several valuable features, like advanced security protections, especially the DLP (Data Loss Protection), and there's also browser and web filtering, or content filtering for our users to protect them when accessing certain links or websites, ensuring their security and permission."
"With private access or next-gen VPN, they are able to keep you secure, but they are invisible in terms of how they do it. Anybody working from home and trying to bring up VPN quickly can pretty much get VPN up and running in a matter of minutes because this doesn't require any VPN technology on-prem. All the VPN technologies that you're using to access applications on-premise can be eliminated by using their software. If you're accessing Microsoft 365 or salesforce.com, you can go straight out from your home office or home internet to that application rather than having to come through a VPN. It still has all the policies enforced, and it mitigates any business risks in terms of how that user is accessing that application and what they're doing inside of it. VPN piece is really critical, especially at this time of Covid, and your latency also goes down. Your latency gets better by using the platform because they're intercepting your traffic, routing it through their local data center, and then sending it to whichever SaaS service or whatever you're going to. It does it better, faster, and quicker with all your governance policies enforced, rather than you having to go through your data center. So, all the traffic gets hauls there, and then that traffic has got to route somewhere else, and then it has got to go up to the cloud. Your latency actually goes down. They can guarantee 15 milliseconds or less pretty much across anywhere on the planet for about 95% or 90% of it."
"It is a stable solution...It is a scalable solution."
"In the firewall, we don't have a user-based policies list, and we can't create them. Netskope helps us to create user-based policies. For example, if there are specific teams like HR or more than nine teams, and we want logs from access over particular URLs, and we don't want to allow that specific URL for certain users, we can create these policies in Netskope. It's handy, easy to use for new users, and has a cool GUI interface. We can create multiple policies, and as for the proxy, it's a leading solution."
"It is a stable solution."
"Even without extensive training, if you're a proficient IT professional, you can easily configure it."
"In the VPN scenario, what was happening, the user would get back to the complete source. But in NPA, the application will go to the user. There is an outbound connection. There is no inbound. Storage providers are also not there. It's the best feature because it is the replacement of the VPN."
"It's much faster and more secure than legacy solutions. It is also quite stable and scalable as well. We are able to see all the traffic in one place."
"If you are planning on using the SASE model for your organization, I would recommend Palo Alto Prisma Access."
"The remediation process is easy compared to other platforms."
"Overall, it's a great solution that works quite well."
"Overall, the security provided by Prisma Access is very good."
"The initial setup is very straightforward."
"It is geographically dispersed, and it sits on top of Google and AWS platforms. Therefore, you don't face the standard issues, such as latency or bandwidth issues, that you usually face in the case of on-prem data centers."
"Being able to use the user ID or Active Directory Group is one of the great features for control and providing more flexibility without worrying about IP addresses."
 

Cons

"Their on-premise hardware's network interface is capped at one gigabit, which is sort of a problem. If you stand a filter up where all traffic flows through that, according to them, in order to go above a gigabit, you have to have multiple devices, which in today's IT seems a little bit silly. They could easily put in an SFP port into their device that could accommodate 10 gigs or at least offer a box."
"For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company ExxonMobil."
"Sometimes the agent stops working in iboss, and we have to reinstall the agent."
"Our biggest problem with their service was it did not recognize the device and filtering did not always work correctly."
"The reporting feature needs improvement. It doesn't give you the expected results. It is quite difficult to get the specific reports needed, and it is not as intuitive as the rest of the platform."
"Our iboss subscription access should be more secure with an OTP or VPN etc. It is easy to gain access if, for example, hackers obtain my username and password."
"I'd like to see them accelerate development on the security side, particularly around data loss prevention."
"The endpoint-type solution is an area that needs some improvement."
"In some cases, it is a tedious task to do the integration where the application is not that open or it is not supported out-of-the-box from Netskope."
"We faced certain issues with China users as it can be rather challenging for them due to the presence of Great Firewall."
"The solution needs to develop faster features. Its interoperability feature is not working. It takes six months to one year for any product to implement the improvements. However, the process should be faster to implement the changes quickly."
"The major problem that we are facing is if we deploy Netskope on the server level or if we get a new server in the EMEA factor, it will affect all the machines. Recently, this has caused us to fail some reviews."
"Netskope detects certain data or contents, but there are some limitations on how we can customize those policies for DLP."
"I would like to see them go down the path of including SD-WAN. Currently, they don't do SD-WAN. If they could somehow natively do that inside of the platform, that would be amazing. I don't know if they're going to do it, but it would be amazing if they do."
"Netskope needs to provide some kind of data protection strategy as well because, currently, if you connect through private access, we don't have any data protection policies or implementation."
"The main challenge we are facing across various Trust Network Access (TNA) technologies, including Netskope, is their inability to support broadcast applications or those relying on broadcasting protocols."
"We've run into some challenges, having hit a lot of bugs over the past year in the deployment of GlobalProtect. We've had our fair share of issues that I haven't been happy with. We're working with the support organization to remediate them and waiting for updated releases. The response on getting the bugs fixed has not been what I would consider adequate for a product like this."
"The only drawback at the moment is that a cloud solution like Prisma Access requires Palo Alto Panorama, which is normally a VM that sits in your data center."
"The Cloud Management application has room for improvement. There are a lot of things on the roadmap for that application; things are going to happen soon."
"Its integration with non-Palo Alto products can be improved. Currently, it is easy to integrate it with other Palo Alto products such as Cortex XDR. It integrates well with other Palo Alto products. A major part of our network is based on Palo Alto products, but for those companies that use multi-vendor products in their infrastructure, Palo Alto should optimize the integration of Prisma Access with the network devices from other vendors."
"The initial support team is not very good. Most of the time, I have found that they are one to three years experienced only. They don't have network expertise. They know about Palo Alto products but don't know how to troubleshoot the issues. We have to guide them most of the time to troubleshoot correctly since their approach is not developed."
"While Palo Alto has understood the essence of building capabilities around cloud technology and have come up with a CASB offering, that is a very new product. There are other companies that have better offerings for understanding cloud applications and have more graceful controls. That's something that Palo Alto needs to work on."
"There should be a dedicated portal or SASE-based solution. They're trying to add a plugin but it needs a dedicated portal because it is now an enterprise solution for multiple organizations. People should be able to directly log in to a dedicated page for Prisma Access, rather than going into a Panorama plugin, and always having to update the plugin."
"Compared to other products, the price is slightly high. In fact, sometimes there is a large pricing gap."
 

Pricing and Cost Advice

"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"The overall pricing for iboss is very competitive and transparent."
"It is expensive compared to one of its competitors."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is probably in line with other solutions, but I do not deal with the financial side."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"I believe that the price for Netskope Private Access is included in the features or functionality my company purchased from NetSkope."
"It is not the most expensive option, being more affordable than Zscaler, but it's also not the most budget-friendly choice available."
"It is significantly cost-effective compared to its contenders."
"It is not cheap, but the value of the solution is there. It's worth the investment."
"The pricing of the solution is cheap."
"The tool's price is normal. It is not very cheap but good compared to the competitors."
"There was about 60% ROI, just in terms of savings. We had 40% to 60% reduction in monthly operational costs by using Netskope."
"Netskope Private Access is more inexpensive than other products."
"They price their products using credit modules."
"Prisma Access is a little bit expensive."
"The licensing fees are paid on a yearly basis and for what we get, the price is good."
"The solution is expensive."
"There's no reason not to buy the enterprise version that gives you unlimited PoPs, but you must understand the limitations you impose on yourself if you do that. If you go crazy, that allowlist will be too big for Kubernetes clusters."
"As compared to other solutions, Prisma Access is much cheaper. It is probably 30% to 40% cheaper than other solutions, but I do not know the exact cost."
"Prisma Access by Palo Alto Networks is an expensive solution, especially when compared to other solutions like Cisco. There are no additional charges apart from the standard licensing costs attached to the solution."
"I would advise choosing your options according to your company's needs. Just go for what you want and do not pay for anything extra in terms of licensing. You need to determine how much bandwidth is required in your company network, and according to that, you should pay for the license. The mobile user license is based on the number of users who are going to use the VPN solution. You need to determine how many mobile users you are going to have in your network, and you should pay according to that. There are no other costs in addition to licensing, but if you go for the consultant services of Palo Alto networks to deliver the solution for you, then you need to pay something extra. That is not a part of licensing."
report
Use our free recommendation engine to learn which ZTNA as a Service solutions are best for your needs.
900,747 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
10%
Computer Software Company
8%
Construction Company
7%
Financial Services Firm
12%
Manufacturing Company
10%
Computer Software Company
9%
Insurance Company
7%
Financial Services Firm
12%
Manufacturing Company
10%
Computer Software Company
8%
Construction Company
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise7
Large Enterprise8
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise4
Large Enterprise9
By reviewers
Company SizeCount
Small Business26
Midsize Enterprise20
Large Enterprise27
 

Questions from the Community

What needs improvement with iboss?
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent ...
What is your primary use case for iboss?
We used iBoss mainly for Internet Access by having an Agent on Windows laptops Primarily because when we try to use i...
What is your experience regarding pricing and costs for iboss?
I am not involved in pricing, but as per the information I have, during that time, the Blue Coat proxies we were usin...
What needs improvement with Netskope Private Access?
There is a mixed review on the integration part of Netskope Private Access. Wherever they have out-of-the-box support...
What is your primary use case for Netskope Private Access?
For secure remote access for people who are working out of the office, remotely, or traveling, my clients mostly use ...
What advice do you have for others considering Netskope Private Access?
I work with a system integrator, and nowadays, we have all these solutions in our portfolio for our customers. At tha...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
What needs improvement with Prisma Access by Palo Alto Networks?
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pr...
 

Also Known As

iBoss Cloud Platform
No data available
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Evalueserve, Stroock, Apria, Ather Energy
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Find out what your peers are saying about Netskope Private Access vs. Prisma Access by Palo Alto Networks and other solutions. Updated: June 2026.
900,747 professionals have used our research since 2012.