No more typing reviews! Try our Samantha, our new voice AI agent.

Prisma Access by Palo Alto Networks vs Symantec Endpoint Protection Mobile comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
22
Ranking in other categories
Secure Web Gateways (SWG) (6th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (6th), ZTNA as a Service (7th), Secure Access Service Edge (SASE) (7th)
Prisma Access by Palo Alto ...
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
65
Ranking in other categories
Secure Web Gateways (SWG) (4th), Cloud Access Security Brokers (CASB) (1st), Enterprise Infrastructure VPN (5th), ZTNA as a Service (4th), Secure Access Service Edge (SASE) (1st)
Symantec Endpoint Protectio...
Average Rating
7.2
Reviews Sentiment
7.3
Number of Reviews
7
Ranking in other categories
Mobile Threat Defense (6th)
 

Mindshare comparison

Secure Access Service Edge (SASE) Mindshare Distribution
ProductMindshare (%)
Prisma Access by Palo Alto Networks10.2%
Zscaler Zero Trust Exchange Platform8.8%
Cato SASE Cloud Platform7.6%
Other73.4%
Secure Access Service Edge (SASE)
Mobile Threat Defense Mindshare Distribution
ProductMindshare (%)
Symantec Endpoint Protection Mobile5.4%
Zimperium24.6%
Lookout18.3%
Other51.7%
Mobile Threat Defense
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
IgorPinter - PeerSpot reviewer
Director at PULSEC
Zero-trust access has improved remote security and now simplifies cloud-based firewall management
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pretty much good. It is basically firewall as a service, so it performs well. I completed the integration without any issues. What Palo Alto Networks can do better for Prisma Access by Palo Alto Networks is probably to have the point of presence available in more locations. The point of presence from the Serbia region has the nearest POP in Frankfurt, which is an issue since it is your gateway—when you start browsing the internet, you go through a commercial connection in Germany. They definitely need to spread the service in other countries.
Dennis O'Reilly - PeerSpot reviewer
Cyber SecOps Principal at Dotcom Security
An easy-to-deploy solution for mobile devices that has high stability and scalability
We use Symantec Endpoint Protection Mobile for mobile devices like Android and Apple iOS Symantec Endpoint Protection Mobile is very easy to deploy, and it is really easy to set up the policies. Since deploying to a mobile device is not your average deployment to a workstation endpoint or a…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"From a use-case scenario, what I like the most is the plug-in. I like the fact that we can do the filtering of these devices offsite independent of the network they are connected to, and we do not have to have traffic coming back inside our network."
"iboss is among the few products providing inline filtering where no application is needed on the device. It operates on the network side and is not device-based. This feature was one of the main reasons why we stayed with them for so long."
"The console is cloud-based, which is something I really appreciate."
"The iboss system is highly reliable. The false positive rates are small compared to some other systems we've experienced through other partner agencies who use competing solutions."
"Valuable features: Within the filter: Controls (Web categories, applications, and Allow/Block list) and Network (local Subnets). Within the reporter: Logs (Event Log) and Reports."
"I would definitely recommend iboss for web filtering purposes to other organizations or individuals."
"This product is solid, fairly easy to use, and reliable."
"As I mentioned, the return on investment is significant, as it saved our office locations' bandwidth because when you are working remotely at home, your internet traffic routes directly to iboss and will not go to your office building, saving bandwidth bottlenecks and ensuring that issues with our building internet circuits will not impact your internet connectivity because you are directly going to the iboss data center."
"I like it because it's very easy to use. You install the client and you have to know your gateway, but that's something we give to our users. Beyond that, it takes about three seconds to train them on how to use it. And it just works well. That's great for us because it means less administrative time."
"The visibility perspective is pretty cool. If I want to know how much data is being used for a specific project, I can look at how much data has been used, from which region, and which users have been connected. That visibility is very good so that I can see how many licenses we have and how many are used."
"The protection for web-based applications was helpful for my colleagues who didn't want a particular application on their devices. And the non-web access protection was more for our developers because they were writing and building code on their computers. Prisma Access was able to protect them."
"The cloud VPN features mean we can connect everywhere and track where all our users are connecting, and Prisma Access came out with new, innovative features, including client-tracking, which was more valuable for our company and very impressive for us."
"The most valuable features of the solution stem from the fact that it offers stability and scalability while being a very secure product."
"This solution provides a DLP on the cloud and very few people have a scanning device for data at rest."
"The most valuable features are ZTNA 2.0, CASB, Threat Prevention, and Autonomous Digital Experience Management (ADAM)."
"Having all of these capabilities on a single cloud-delivered platform was extremely important to us."
"One of the features I found very nice in Symantec Endpoint Protection Mobile is that it's good at scanning and fixing issues on its own. The solution is very good at finding a lot of applications and notifying you about systems that have issues. Symantec Endpoint Protection Mobile can run headless without having to report back which I found very nice about it. I also like that the solution would create alerts when a certain amount of time lapsed for systems, and it would recommend going through and scanning the systems. As an actual endpoint protection product, Symantec Endpoint Protection Mobile is good."
"Your endpoint protection depends on the signature piece, so it's mainly for virus and malware protection, as well as also to control devices and applications."
"The patch management alerts are the most valuable, and whenever they have one, I get a notification and can then handle the upgrades or updates."
"Integration is good. You can integrate them with an off-brand endpoint solution. It has quite a few integration features you can use."
"The user interface is good. Managing and monitoring tools are also good."
"The solution has a lot of extremely useful features, is reliable and makes search engines more powerful, and the user interface, managing, and monitoring tools are also good."
"Symantec Endpoint Protection Mobile is very easy to deploy, and it is really easy to set up the policies."
"One of the features I found very nice in Symantec Endpoint Protection Mobile is that it's good at scanning and fixing issues on its own."
 

Cons

"If they could implement an extra security layer preventing access to iboss from the open internet, it would be great."
"Their on-premise hardware's network interface is capped at one gigabit, which is sort of a problem. If you stand a filter up where all traffic flows through that, according to them, in order to go above a gigabit, you have to have multiple devices, which in today's IT seems a little bit silly. They could easily put in an SFP port into their device that could accommodate 10 gigs or at least offer a box."
"The reporting feature needs improvement. It doesn't give you the expected results. It is quite difficult to get the specific reports needed, and it is not as intuitive as the rest of the platform."
"One thing I would like to see differently with their Zero Trust platform is that some of the AI aspects related to high-risk activities have more false positives."
"The dashboards for local use could be better."
"Sometimes, obviously, there are bugs."
"To scale up, a new iboss Node Blade Chassis must be purchased."
"The reporting feature needs improvement."
"I would like the solution to support a different type of authentication. We can't configure a secondary method for our portal."
"I haven't seen any SD-WAN configuration capability. If Prisma Access would support SD-WAN, that would help... SD-WAN devices should be able to reach Prisma Access, and Palo Alto should support different, vendor-specific devices, not just Palo Alto devices, for SD-WAN configuration."
"The price can be reduced to make it more competitive."
"The initial support team is not very good. Most of the time, I have found that they are one to three years experienced only. They don't have network expertise. They know about Palo Alto products but don't know how to troubleshoot the issues. We have to guide them most of the time to troubleshoot correctly since their approach is not developed."
"There can be some latency issues with the solution that should be improved."
"It is a managed firewall. When you run into issues and have to troubleshoot, there is a fair amount of restriction. You run into a couple of restrictions where you don't have any visibility on what is happening on the Palo Alto managed infrastructure, and you need to get on a call to get technical assistance from Palo Alto's technical support. You have to get them to work with you to fix the problem. I would definitely like them to work on the visibility into what happens inside Palo Alto's infrastructure. It is not about getting our hands onto their infrastructure to do troubleshooting or fixing problems; it is just about getting more visibility. This will help us in guiding technical support folks to the area where they need to work."
"The user interface could be better. They need to work a little bit on the console. It is similar to their firewalls but not exactly. They need to clean it up a bit."
"While Palo Alto has understood the essence of building capabilities around cloud technology and have come up with a CASB offering, that is a very new product. There are other companies that have better offerings for understanding cloud applications and have more graceful controls. That's something that Palo Alto needs to work on."
"Having better, real-time support would be an improvement over having to send an email."
"Application and device control needs to be improved. We also need to enhance login features for management to have good visibility of the events."
"It would be nice to have more flexibility regarding deployment."
"When there is an attack attempt on mobile, there doesn't seem to be much of a notification."
"The product price is too expensive relative to the Egyptian market here."
"I'm not sure if there's anything lacking; I personally don't use the solution too much, so I'd have to look at it a bit and do some more research. I'm more on the operation side of things."
"For a lot of the issues my team experienced from Symantec Endpoint Protection Mobile, Symantec said that getting the issues resolved would mean going through the partner that sold the product and creating an incident report to get the team to work on the actual company environment. A lot of the problems my team has been having from Symantec Endpoint Protection Mobile were associated with Outlook for endpoint users who were being locked out of the Outlook application. Another area for improvement in Symantec Endpoint Protection Mobile is its central web hub, where you're supposed to be able to update all of the endpoints because it wasn't reaching the endpoints. For example, even if the central web hub was able to see the endpoints and do the required scans, whenever you'd go to do a policy change, the policy change wouldn't propagate down to the endpoints. The central web hub allows you to monitor all of your endpoints and allows you to choose actions you'd want to do to each of the endpoints such as pushing down on updates or scanning the system. The problem my team usually gets is that majority of the time, whenever my team would do policy updates, the updates won't propagate down to the users, so it was very inconsistent. Needing to manually go through and scan systems is also an area for improvement in Symantec Endpoint Protection Mobile. Currently, there's no way to automate its scanning process. A lot of the other issues started appearing in Symantec Endpoint Protection Mobile during situations when people wanted to customize different applications. Symantec doesn't like people doing a lot of customizations. For example, the main problem in my company is users losing access to Outlook, but then my team discovered that there was a specific policy set that you could disable, and it would fix a lot of the Outlook issues. However, when you'd go to change that policy set and attach that to a user to overwrite policies on the user side, it just wouldn't do anything for that user. It wouldn't even show that the policy was updated, so this is what needs to be improved in Symantec Endpoint Protection Mobile."
"Application and device control needs to be improved."
 

Pricing and Cost Advice

"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"The overall pricing for iboss is very competitive and transparent."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is probably in line with other solutions, but I do not deal with the financial side."
"It is expensive compared to one of its competitors."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"The pricing for this solution is on the higher end."
"The initial prices of Prisma Access were okay. But as soon as you start deploying Palo Alto gear, the support prices and the recurring prices, which are the major operational costs, tend to increase over time."
"It is not cheap. It is expensive. The good thing is that you are able to pay for what you need, but overall, it is not cheap. The pricing is not based on packages. You pay based on the features. If you want DLP, you only pay for DLP. They are very flexible. It is not cheap, but the licensing is flexible. There are no additional costs in addition to the standard licensing fees."
"In terms of pricing, considering that it is a two or three years old solution, they should apply big discounts for the next two or three years. This approach will be better for them to capture the market."
"The solution is expensive."
"As compared to other solutions, Prisma Access is much cheaper. It is probably 30% to 40% cheaper than other solutions, but I do not know the exact cost."
"Prisma is in the middle of the road. It's not the most expensive, but it's not the cheapest. There aren't any additional costs, to my knowledge. I know they have some extra modules, but we didn't use them."
"It is a little expensive. Because it is one of the best in the market, it is a little bit more expensive than other vendors."
"You get the solution for free if you purchase the complete endpoint security licensing."
report
Use our free recommendation engine to learn which Secure Access Service Edge (SASE) solutions are best for your needs.
903,118 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
10%
Computer Software Company
8%
Construction Company
7%
Financial Services Firm
12%
Manufacturing Company
10%
Computer Software Company
8%
Construction Company
5%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise7
Large Enterprise9
By reviewers
Company SizeCount
Small Business26
Midsize Enterprise20
Large Enterprise27
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise2
Large Enterprise3
 

Questions from the Community

What needs improvement with iboss?
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent ...
What is your primary use case for iboss?
We used iBoss mainly for Internet Access by having an Agent on Windows laptops Primarily because when we try to use i...
What is your experience regarding pricing and costs for iboss?
I am not involved in pricing, but as per the information I have, during that time, the Blue Coat proxies we were usin...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
What needs improvement with Prisma Access by Palo Alto Networks?
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pr...
Ask a question
Earn 20 points
 

Also Known As

iBoss Cloud Platform
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
Skycure
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Samsung, Optiv, Exchange, MobileIron, Check Point, McAfee, AirWatch
Find out what your peers are saying about Palo Alto Networks, Zscaler, Cato Networks and others in Secure Access Service Edge (SASE). Updated: June 2026.
903,118 professionals have used our research since 2012.