No more typing reviews! Try our Samantha, our new voice AI agent.

Prisma Access by Palo Alto Networks vs Symantec Endpoint Protection Mobile comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Average Rating
8.4
Reviews Sentiment
7.0
Number of Reviews
24
Ranking in other categories
Secure Web Gateways (SWG) (6th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (6th), ZTNA as a Service (6th), Secure Access Service Edge (SASE) (7th)
Prisma Access by Palo Alto ...
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
65
Ranking in other categories
Secure Web Gateways (SWG) (5th), Cloud Access Security Brokers (CASB) (1st), Enterprise Infrastructure VPN (5th), ZTNA as a Service (4th), Secure Access Service Edge (SASE) (1st)
Symantec Endpoint Protectio...
Average Rating
7.2
Reviews Sentiment
7.3
Number of Reviews
7
Ranking in other categories
Mobile Threat Defense (7th)
 

Mindshare comparison

Secure Access Service Edge (SASE) Mindshare Distribution
ProductMindshare (%)
Prisma Access by Palo Alto Networks10.1%
Zscaler Zero Trust Exchange Platform8.9%
Netskope7.5%
Other73.5%
Secure Access Service Edge (SASE)
Mobile Threat Defense Mindshare Distribution
ProductMindshare (%)
Symantec Endpoint Protection Mobile5.4%
Zimperium24.2%
Lookout18.0%
Other52.4%
Mobile Threat Defense
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
IgorPinter - PeerSpot reviewer
Director at PULSEC
Zero-trust access has improved remote security and now simplifies cloud-based firewall management
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pretty much good. It is basically firewall as a service, so it performs well. I completed the integration without any issues. What Palo Alto Networks can do better for Prisma Access by Palo Alto Networks is probably to have the point of presence available in more locations. The point of presence from the Serbia region has the nearest POP in Frankfurt, which is an issue since it is your gateway—when you start browsing the internet, you go through a commercial connection in Germany. They definitely need to spread the service in other countries.
Dennis O'Reilly - PeerSpot reviewer
Cyber SecOps Principal at Dotcom Security
An easy-to-deploy solution for mobile devices that has high stability and scalability
We use Symantec Endpoint Protection Mobile for mobile devices like Android and Apple iOS Symantec Endpoint Protection Mobile is very easy to deploy, and it is really easy to set up the policies. Since deploying to a mobile device is not your average deployment to a workstation endpoint or a…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"From a use-case scenario, what I like the most is the plug-in. I like the fact that we can do the filtering of these devices offsite independent of the network they are connected to, and we do not have to have traffic coming back inside our network."
"We were impressed by the solution's mental health function, which can detect if someone needs help. It scans what users are browsing and flags warning signs so we can check to see if they are okay. We've had to use it a couple of times."
"Granular setup, which was able to set different levels of filters using the OUs in the AD."
"Our primary use case for this product is DLP,"
"Valuable features: Within the filter: Controls (Web categories, applications, and Allow/Block list) and Network (local Subnets). Within the reporter: Logs (Event Log) and Reports."
"iboss is among the few products providing inline filtering where no application is needed on the device. It operates on the network side and is not device-based. This feature was one of the main reasons why we stayed with them for so long."
"As I mentioned, the return on investment is significant, as it saved our office locations' bandwidth because when you are working remotely at home, your internet traffic routes directly to iboss and will not go to your office building, saving bandwidth bottlenecks and ensuring that issues with our building internet circuits will not impact your internet connectivity because you are directly going to the iboss data center."
"The solution has massively improved our security posture, giving us full visibility into what our staff does online."
"The valuable features are that it is easy to use, easy to integrate, and is stable; it's scalable as well."
"Overall, the cost savings, ease of deployment, and better VPN user experience and performance are valuable."
"The solution improved the consistency of our security controls and the BCP, there has been a 20 percent reduction in TCO, and Prisma Access also enabled us to deliver better applications by centralizing security management."
"Prisma integrates pretty nicely even if you aren't using other Palo Alto products, is very effective for a CSP solution, and the time to value is almost instant because as soon as you stand it up, it shows value by telling you all the vulnerabilities or risks in that environment."
"It has predefined or preconfigured rules, which are getting periodically updated. They are providing continuous improvements and periodically updating all search queries that they are looking for. That is one thing that helps us to stay vigilant and focused. If we query our AWS account for any breaches or vulnerabilities with any of the cloud tests, and it alerts us based on these predefined rules. It also provides an option to configure our own rules, and based on these rules, it can query the cloud trail logs, pull the information, and trigger alerts in real-time. I haven't explored this feature much because there are multiple accounts, and we don't have enough time to explore this feature. It also provides multiple integrations. When vulnerabilities or breaches are happening, you should be aware of them immediately. It provides integration with tools such as Slack, PagerDuty so that you can get alerted as soon as the high severity stuff comes up. For example, you have a security group that has allowed public traffic on port 22. As TechOps, you should be aware of this immediately. You cannot scan each machine or look into all security groups to identify it. So, Prisma helps us and alerts us when this kind of high-priority stuff comes up. It has different statistics, analytics, and graphs for data. The description of alerts is also pretty good. They describe what are the possible causes for this and what are the solutions. From Prisma Cloud, you can directly go to the AWS account. When you click on an alert, a resource, or a resource ID, it takes you to the AWS console where you need to log in. If you are already logged in, it will take you to that instance directly, and you can fix the issue there. I have found this feature very useful."
"Overall, the security provided by Prisma Access is very good."
"The cloud VPN features mean we can connect everywhere and track where all our users are connecting, and Prisma Access came out with new, innovative features, including client-tracking, which was more valuable for our company and very impressive for us."
"Prisma Access does everything beautifully."
"The biggest advantage it has is the VPN product that is incorporated into the solution."
"The solution has a lot of extremely useful features, is reliable and makes search engines more powerful, and the user interface, managing, and monitoring tools are also good."
"The most valuable feature is to be able to power up a device and wipe the data remotely."
"Integration is good. You can integrate them with an off-brand endpoint solution. It has quite a few integration features you can use."
"One of the features I found very nice in Symantec Endpoint Protection Mobile is that it's good at scanning and fixing issues on its own."
"The patch management alerts are the most valuable, and whenever they have one, I get a notification and can then handle the upgrades or updates."
"The user interface is good. Managing and monitoring tools are also good."
"One of the features I found very nice in Symantec Endpoint Protection Mobile is that it's good at scanning and fixing issues on its own. The solution is very good at finding a lot of applications and notifying you about systems that have issues. Symantec Endpoint Protection Mobile can run headless without having to report back which I found very nice about it. I also like that the solution would create alerts when a certain amount of time lapsed for systems, and it would recommend going through and scanning the systems. As an actual endpoint protection product, Symantec Endpoint Protection Mobile is good."
 

Cons

"Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern."
"File integrity monitoring would be very advantageous as an additional feature."
"To scale up, a new iboss Node Blade Chassis must be purchased."
"Our iboss subscription access should be more secure with an OTP or VPN etc. It is easy to gain access if, for example, hackers obtain my username and password."
"Sometimes when you call in support, you get someone who is just following a sheet. It feels like a runaround. You feel that you are running into that support wall."
"If they could implement an extra security layer preventing access to iboss from the open internet, it would be great."
"Their on-premise hardware's network interface is capped at one gigabit, which is sort of a problem. If you stand a filter up where all traffic flows through that, according to them, in order to go above a gigabit, you have to have multiple devices, which in today's IT seems a little bit silly. They could easily put in an SFP port into their device that could accommodate 10 gigs or at least offer a box."
"The area I would like to see improvement in is the ability with in the reporter to navigate directly to the content the user is traversing. It is kind of there, but it's not perfect. Quite frequently, I receive links that lead me to pages with error messages."
"It wasn't so satisfying to work with it. There is room for improvement in the policy management. It is difficult to cover the entire scenery through Palo Alto products."
"Prisma's integration between operational technology and IT should be more seamless. Right now, it requires additional setup and maintenance."
"The dependencies of applications sometimes are a bit confusing."
"The pricing for this solution is on the higher end. Our customer felt that the solution was a bit overpriced but they had nothing that offered them better protection."
"It applies commits to the firewalls slowly. There isn't an API you can use for anything. We've previously had trouble with the egress IP addresses though we expressed to engineering that those mustn't change. They changed several times without warning, causing a lot of headaches."
"It is a managed firewall. When you run into issues and have to troubleshoot, there is a fair amount of restriction. You run into a couple of restrictions where you don't have any visibility on what is happening on the Palo Alto managed infrastructure, and you need to get on a call to get technical assistance from Palo Alto's technical support. You have to get them to work with you to fix the problem. I would definitely like them to work on the visibility into what happens inside Palo Alto's infrastructure. It is not about getting our hands onto their infrastructure to do troubleshooting or fixing problems; it is just about getting more visibility. This will help us in guiding technical support folks to the area where they need to work."
"Technical support could be a lot better."
"There is room for improvement in the multi-environment visibility, especially around containers."
"It would be nice to have more flexibility regarding deployment."
"For a lot of the issues my team experienced from Symantec Endpoint Protection Mobile, Symantec said that getting the issues resolved would mean going through the partner that sold the product and creating an incident report to get the team to work on the actual company environment. A lot of the problems my team has been having from Symantec Endpoint Protection Mobile were associated with Outlook for endpoint users who were being locked out of the Outlook application. Another area for improvement in Symantec Endpoint Protection Mobile is its central web hub, where you're supposed to be able to update all of the endpoints because it wasn't reaching the endpoints. For example, even if the central web hub was able to see the endpoints and do the required scans, whenever you'd go to do a policy change, the policy change wouldn't propagate down to the endpoints. The central web hub allows you to monitor all of your endpoints and allows you to choose actions you'd want to do to each of the endpoints such as pushing down on updates or scanning the system. The problem my team usually gets is that majority of the time, whenever my team would do policy updates, the updates won't propagate down to the users, so it was very inconsistent. Needing to manually go through and scan systems is also an area for improvement in Symantec Endpoint Protection Mobile. Currently, there's no way to automate its scanning process. A lot of the other issues started appearing in Symantec Endpoint Protection Mobile during situations when people wanted to customize different applications. Symantec doesn't like people doing a lot of customizations. For example, the main problem in my company is users losing access to Outlook, but then my team discovered that there was a specific policy set that you could disable, and it would fix a lot of the Outlook issues. However, when you'd go to change that policy set and attach that to a user to overwrite policies on the user side, it just wouldn't do anything for that user. It wouldn't even show that the policy was updated, so this is what needs to be improved in Symantec Endpoint Protection Mobile."
"I'm not sure if there's anything lacking; I personally don't use the solution too much, so I'd have to look at it a bit and do some more research. I'm more on the operation side of things."
"When there is an attack attempt on mobile, there doesn't seem to be much of a notification."
"A lot of the problems my team has been having from Symantec Endpoint Protection Mobile were associated with Outlook for endpoint users who were being locked out of the Outlook application."
"The product price is too expensive relative to the Egyptian market here."
"The price is too expensive for the Egyptian market here. Compared to other products or the other competition here in the local market, they need to be more competitive cost-wise."
"Application and device control needs to be improved. We also need to enhance login features for management to have good visibility of the events."
 

Pricing and Cost Advice

"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"It is expensive compared to one of its competitors."
"The overall pricing for iboss is very competitive and transparent."
"It is probably in line with other solutions, but I do not deal with the financial side."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is pretty expensive. We have to balance the cost of some features. They need to work on some of the services and products, price-wise."
"Prisma is in the middle of the road. It's not the most expensive, but it's not the cheapest. There aren't any additional costs, to my knowledge. I know they have some extra modules, but we didn't use them."
"Prisma SaaS is more expensive than similar solutions but I think it's worth it."
"This is not an expensive product and everything is included with one license."
"There's no reason not to buy the enterprise version that gives you unlimited PoPs, but you must understand the limitations you impose on yourself if you do that. If you go crazy, that allowlist will be too big for Kubernetes clusters."
"Based on what I have heard from others, it is a pricey solution as compared to its peers, but I am not sure. However, considering the features that it offers, it is a break-even point. You get whatever they are promising."
"It is not cheap. It is expensive. The good thing is that you are able to pay for what you need, but overall, it is not cheap. The pricing is not based on packages. You pay based on the features. If you want DLP, you only pay for DLP. They are very flexible. It is not cheap, but the licensing is flexible. There are no additional costs in addition to the standard licensing fees."
"The solution requires a license and the technical support has extra costs. The licensing model could improve."
"You get the solution for free if you purchase the complete endpoint security licensing."
report
Use our free recommendation engine to learn which Secure Access Service Edge (SASE) solutions are best for your needs.
908,745 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
9%
Computer Software Company
8%
Construction Company
7%
Financial Services Firm
12%
Manufacturing Company
10%
Computer Software Company
8%
Outsourcing Company
6%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business11
Midsize Enterprise8
Large Enterprise10
By reviewers
Company SizeCount
Small Business26
Midsize Enterprise20
Large Enterprise27
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise2
Large Enterprise3
 

Questions from the Community

What needs improvement with iboss?
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent ...
What is your primary use case for iboss?
We used iBoss mainly for Internet Access by having an Agent on Windows laptops Primarily because when we try to use i...
What is your experience regarding pricing and costs for iboss?
I am not involved in pricing, but as per the information I have, during that time, the Blue Coat proxies we were usin...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
What needs improvement with Prisma Access by Palo Alto Networks?
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pr...
Ask a question
Earn 20 points
 

Also Known As

iBoss Cloud Platform
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
Skycure
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Samsung, Optiv, Exchange, MobileIron, Check Point, McAfee, AirWatch
Find out what your peers are saying about Palo Alto Networks, Zscaler, Cisco and others in Secure Access Service Edge (SASE). Updated: July 2026.
908,745 professionals have used our research since 2012.