Try our new research platform with insights from 80,000+ expert users

Prisma Access by Palo Alto Networks vs Workspace ONE UEM comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jul 30, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
19
Ranking in other categories
Secure Web Gateways (SWG) (5th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), ZTNA as a Service (7th), Secure Access Service Edge (SASE) (8th)
Prisma Access by Palo Alto ...
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
65
Ranking in other categories
Secure Web Gateways (SWG) (4th), Cloud Access Security Brokers (CASB) (1st), Enterprise Infrastructure VPN (6th), ZTNA as a Service (2nd), Secure Access Service Edge (SASE) (1st)
Workspace ONE UEM
Average Rating
8.2
Reviews Sentiment
6.7
Number of Reviews
102
Ranking in other categories
Remote Access (6th), Virtual Desktop Infrastructure (VDI) (7th), Enterprise Mobility Management (EMM) (2nd), Identity and Access Management as a Service (IDaaS) (IAMaaS) (11th), Unified Endpoint Management (UEM) (3rd)
 

Mindshare comparison

Secure Access Service Edge (SASE) Market Share Distribution
ProductMarket Share (%)
Prisma Access by Palo Alto Networks14.8%
Netskope12.1%
Cato SASE Cloud Platform11.3%
Other61.8%
Secure Access Service Edge (SASE)
Unified Endpoint Management (UEM) Market Share Distribution
ProductMarket Share (%)
Workspace ONE UEM12.4%
Microsoft Intune30.5%
ManageEngine Endpoint Central10.3%
Other46.8%
Unified Endpoint Management (UEM)
 

Featured Reviews

Matt Crockford - PeerSpot reviewer
It's easy to roll out, and their understanding of our business made it seamless
One aspect we value about iboss is its simplicity. Their customer service is brilliant, and they are super responsive and knowledgeable. It's easy to roll out, and their understanding of our business made it seamless. We were impressed by the solution's mental health function, which can detect if someone needs help. It scans what users are browsing and flags warning signs so we can check to see if they are okay. We've had to use it a couple of times. The user interface is highly intuitive. Our IT team picked it up with minimal training. It's arranged so that it's easy to find where things are. Another advantage is the single pane of glass console, which gives you visibility into what's happening. We're not fully there yet because we haven't implemented zero trust, but we're excited about the possibilities from the demos we've seen. We launched a POC of iboss' ChatGPT Risk Protection feature two weeks ago. AI is a great tool, but you need to be careful what you put into it. My biggest fear is employees inputting sensitive corporate information or customer PII data into one of these chatbots. I was impressed by our trial of the feature. It's exactly what we wanted. Now, when a user goes to ChatGPT, there's a banner warning them not to share information, and we can block conversations containing customer data like bank details and email addresses. I don't want to stop people from using it, but we need visibility. We've only tried it on a test group of 15 people. You can configure it to look for specific keywords or integrate it with your DLP policy if you have that configured
Roberto Pastorino - PeerSpot reviewer
Have supported client adoption of security solutions but need more control over infrastructure
It's a working solution. It's not the easiest, but no DLP solution is easy. With Netskope, the whole infrastructure is proprietary. Prisma Access by Palo Alto Networks is using a service in AWS, and it's not totally a proprietary infrastructure. Sometimes a third-party outage could impact the whole operability. I'm not certain if the vendor is moving towards sovereignty of infrastructure at this moment, but from what I saw in the past, there was this reliance on third parties for the infrastructure: AWS, GCP, Oracle, and others. This is one point of attention for me. I would prefer more proprietary infrastructure.
Vishal Bhatia - PeerSpot reviewer
Effective product tracking and monitoring enhances daily operations despite needing documentation improvement
The documentation part of Workspace ONE UEM can be confusing. The documentation is not comprehensive compared to other VMware solutions or Microsoft documentation. Most people struggle to connect the dots when looking at the documentation. Even the training material and PowerPoint slide decks that trainers use are sometimes too confusing or overwhelming, with too much content but not enough clarity. The support side has recently become weaker compared to what it used to be with VMware. This is another area that needs improvement. Since working with Workspace ONE UEM from when it was AirWatch, it has improved significantly over the last five years. However, there are still some gray areas and scope for improvement, especially in documentation and workflow between different aspects of the solution.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Technical support is pretty sharp and very responsive."
"The console is cloud-based, which is something I really appreciate."
"The solution has massively improved our security posture, giving us full visibility into what our staff does online."
"From a use-case scenario, what I like the most is the plug-in. I like the fact that we can do the filtering of these devices offsite independent of the network they are connected to, and we do not have to have traffic coming back inside our network."
"Valuable features: Within the filter: Controls (Web categories, applications, and Allow/Block list) and Network (local Subnets). Within the reporter: Logs (Event Log) and Reports."
"First of all, the security policies are essential. I do not have to rely solely on Active Directory for our users."
"Iboss is a solution that prevents advanced persistent threats, and has a zero tolerance for attacks."
"The iboss system is highly reliable. The false positive rates are small compared to some other systems we've experienced through other partner agencies who use competing solutions."
"The most valuable feature of Prisma Cloud-native, in my opinion, is that it assists in identifying, analyzing, and remediating vulnerabilities."
"Prisma Access by Palo Alto Networks makes our life easier because the firewall solution we had before was totally outdated and performing poorly. This solution has completely transformed our operations."
"A feature I've found very helpful is run time security because most of the products on the market will look at security during the build time, and they don't really look at what happens once you're going into production."
"The Autonomous Digital Experience Management (ADEM) offered by Palo Alto is a good reporting tool. It gives insights into how things are going within the network. It takes all the data from the users' endpoints and does an analysis, and it suggests changes as well."
"It is easy to use, easy to integrate, and is stable. It's scalable as well."
"Prisma Access is very stable, and I am very much satisfied with its stability, rating it nine to ten out of ten."
"Panorama provides centralized management capabilities for all our firewalls and locations so that we can manage different data centers through a single device, a very valuable feature. We don't have to log into various devices to oversee them individually."
"It protects all app traffic so that users can gain access to all apps. Unlike other solutions that only work from ports 80 and 443, which are predominantly for web traffic, Prisma Access covers all protocols and works on all traffic patterns... The most sophisticated attacks can arise from sources that are not behind 80/443."
"The initial setup is easy and the deployment doesn't take too long."
"It is easy to start something and work from scratch."
"The antivirus and the ability to push security policies down to the device are key features."
"Workspace ONE UEM's best features are that you can track and monitor all the products, with a wide range of supported devices like Android, Apple, and Windows, and it offers easy application and email management along with effective compliance and health attestation capabilities."
"The most valuable feature of VMware Workspace ONE is the support for multiple devices. Not only iOS, and Android, but all kinds of platforms, including VR device management. Additionally, it has a tunneling feature, which no other solution provides. Other solutions have to integrate with other tools to have this functionality, whereas VMware Workspace ONE has its own application gateway tunnel."
"We can impose cybersecurity requirements."
"The product has fully automated features that help people do tasks easily."
"You can put all your applications on a mobile device, be it a phone or tablet. It is secure and easy to use. Because it is centrally managed, you don't have to do any configuration on the phone. I just got the phone and connected to the central applications. I just downloaded one thing and everything got rolled out. Email, calendar, and other things were deployed centrally. If you don't have AirWatch, you have to configure your phone manually. For example, you need to deploy and configure your email manually and then synchronize everything. It is much simpler when a mobile device is centrally managed."
 

Cons

"Its pricing could be better."
"File integrity monitoring would be very advantageous as an additional feature."
"The dashboards for local use could be better."
"I'd like to see them accelerate development on the security side, particularly around data loss prevention."
"Sometimes the agent stops working in iboss, and we have to reinstall the agent."
"Our biggest problem with their service was it did not recognize the device and filtering did not always work correctly."
"To scale up, a new iboss Node Blade Chassis must be purchased."
"Fold that in with the risk intelligence they're getting from all of the different subscriptions they are a part of. Now, these security companies subscribe to things like emerging threats, databases, etc. You can fold all this intelligence to decide what's happening on an endpoint. I would love to see them start moving into that space. That would compete directly with Microsoft. Maybe that's why they haven't. Having that ability native within the solution would be great. The other area in which I would love to see improvement is more detailed descriptions of why they block websites."
"The frequency of updates could be reduced."
"Its security is good. Everything is good, but the way the dashboard responds can be improved. It takes time to implement a policy. If you change only two or three lines and push the policy to make the change work, it takes 20 to 30 minutes even for a small change. That is something very irritating from the implementation perspective."
"The tools' scalability is subject to some limitations when done on-premise due to the need for additional licenses. However, in other scenarios, increasing scalability involves expanding infrastructure to accommodate more third-party VPN access. It is scalable as long as you pay the money. Also, it needs to improve security."
"It applies commits to the firewalls slowly. There isn't an API you can use for anything. We've previously had trouble with the egress IP addresses though we expressed to engineering that those mustn't change. They changed several times without warning, causing a lot of headaches."
"I would like to see support for custom applications."
"Lacks a hybrid model which has API plus in-line security."
"The price can be reduced to make it more competitive."
"It wasn't so satisfying to work with it. There is room for improvement in the policy management. It is difficult to cover the entire scenery through Palo Alto products."
"Cost of licensing is quite high."
"We're unhappy with the quality of support we get for it. We're unhappy with how upgrades occur, so we are migrating away from it. We have an on-premise AirWatch solution and for us to do upgrades we have to call AirWatch to be able to perform the upgrades. They're busy, and scheduling it is not timely enough for us."
"One of the things that I want them to improve on, if possible, is the management of Mac devices, MacBook Pro, for example. They do it, but they have scope for improvement, in my opinion. It's not that it's that bad, it just a small need."
"This product makes use of SAML across the board, which has seven known security flaws. It would be good if the company created a way to protect against SAML flaws. One way would be to integrate a firewall server or an endpoint out in the cloud with which you could establish trust. If you knew nothing about SAML and you did some Google searches about what SAML is, what are the flaws, and what are the known vulnerabilities, eventually, you'll find that there are seven flaws. There are two methods that you can use to solve those seven problems. They essentially involve putting a firewall or putting rules, such as access controls, so that anybody in the world can't just come in, authenticate, and either be a good guy or be someone trying to knock on my door and get into my house. If I could eliminate that, it would be awesome."
"The Content Locker cannot inherit permissions for the Windows Public Folder. If they could integrate with Microsoft on this point, it would be the perfect functionality."
"The bigger vendors like VMware, Insight, and MobileIron can assign engineers to customers. You can work with them to develop the right competency to use the product."
"Feature-wise, it is fine, but its pricing could be better, given that Microsoft is on a bundling spree. AirWatch would benefit from reducing the license pricing per user per month."
"I would like to see some integration with native Microsoft products such as Anti-value."
 

Pricing and Cost Advice

"It is probably in line with other solutions, but I do not deal with the financial side."
"The overall pricing for iboss is very competitive and transparent."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"It is expensive compared to one of its competitors."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"The pricing is very friendly. It's not confusing to figure out your workload and how much you'd be paying for the solution."
"Prisma Access is one of the best compared to other products on the market. The cost is favorable, and Palo Alto provides a simple architecture, so I recommend the solution to anyone using a different product. There are no hidden costs besides the license; what you see is what you get."
"It's pricey, it's not cheap. But you get what you pay for."
"Prisma is in the middle of the road. It's not the most expensive, but it's not the cheapest. There aren't any additional costs, to my knowledge. I know they have some extra modules, but we didn't use them."
"Prisma Access by Palo Alto Networks is an expensive solution, especially when compared to other solutions like Cisco. There are no additional charges apart from the standard licensing costs attached to the solution."
"As compared to other solutions, Prisma Access is much cheaper. It is probably 30% to 40% cheaper than other solutions, but I do not know the exact cost."
"I'm still comparing, but the solution is quite expensive."
"The pricing for this solution is on the higher end."
"My guess is that its licensing was yearly. There was probably no fee in addition to the standard licensing fee."
"For most of the projects, we use the standard license but for complex ones, we use the older type of processes, integrations, and licenses inside the solution."
"For the moment, we have a multi-year contract, meaning that we cannot go with a different solution at this time even if the price should prove more favorable."
"All licenses from VMware are only yearly. They start with a yearly license and look for a three-year commitment and yearly PO."
"We pay approximately thirty to thirty-five euros per device per month for the complete suite, and this is a fixed cost with one, three, or five-year licensing in advance. I would rate the pricing a four out of ten, making it affordable."
"The cost is a little bit high."
"The price of VMware Workspace ONE is expensive. However, for the features that are provided, the price is reasonable. There is a subscription to use the solution."
"Depending on the requirements of users, there is a need to make yearly payments towards the licensing costs attached to the product."
report
Use our free recommendation engine to learn which Secure Access Service Edge (SASE) solutions are best for your needs.
873,085 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Computer Software Company
11%
Manufacturing Company
9%
Comms Service Provider
6%
Computer Software Company
12%
Financial Services Firm
12%
Manufacturing Company
11%
Government
5%
Computer Software Company
15%
Manufacturing Company
8%
Financial Services Firm
8%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise6
Large Enterprise5
By reviewers
Company SizeCount
Small Business23
Midsize Enterprise21
Large Enterprise27
By reviewers
Company SizeCount
Small Business41
Midsize Enterprise21
Large Enterprise57
 

Questions from the Community

What needs improvement with iboss?
For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company Exxon...
What is your primary use case for iboss?
Previously when I used iboss, we did the POC for iboss for ExxonMobil. Four or five people wanted to move from our ol...
What is your experience regarding pricing and costs for iboss?
Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern. There are cheaper alte...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What do you like most about Prisma Access by Palo Alto Networks?
The most valuable features of the solution are in the areas of the secure remote access it provides while also being ...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
How does Microsoft Intune compare with VMware Workspace One?
Microsoft Intune is a great tool for managing a mobile device fleet while keeping access control. The solution makes ...
How does VMware Workspace One compare with VMware Horizon 7?
VMware Workspace One has a powerful set of helpful features. The solution offers very good documentation, the initial...
What do you like most about VMware Workspace ONE?
The platform provides a stable environment for operations and quickly creates new environments. Additionally, it offe...
 

Also Known As

iBoss Cloud Platform
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
VMware Workspace ONE, VMware AirWatch, Workspace ONE Assist, VMware Identity Manager, Workspace ONE Access, VMware Horizon Air
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Australian Sports Commission, Stockport NHS Foundation Trust, Lomond School, Merck, United Bank, Medical College of Wisconsin, Latymer Upper School, 2gether NHS Foundation Trust, Dowling Aaron Inc., Trillium Lakelands District School Board, Harrogate Grammar School, Duke University Football, Delta Air Lines, Adventist Health System, Giochi Preziosi, Cramlington Learning Village, Intermountain Healthcare, Safexpress, TAG Aviation
Find out what your peers are saying about Palo Alto Networks, Zscaler, Netskope and others in Secure Access Service Edge (SASE). Updated: October 2025.
873,085 professionals have used our research since 2012.