Try our new research platform with insights from 80,000+ expert users
CyberArk Endpoint Privilege Manager Logo

CyberArk Endpoint Privilege Manager pros and cons

Vendor: CyberArk
4.1 out of 5
680 followers
Post review

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the report

Prominent pros & cons

PROS

CyberArk Endpoint Privilege Manager significantly reduces the attack surface for local administrative rights and privilege escalation.
Its lifecycle management feature is highly valuable, allowing it to adapt to any target environment for enhanced security.
The database is completely encrypted and protected with multiple layers, ensuring robust data security.
Users benefit from scalable, high-performance identity security, with features like password management and ransomware protection.
CyberArk Endpoint Privilege Manager bridges the gap between security and operations teams, controlling privileged access without hindering operations.

CONS

CyberArk Endpoint Privilege Manager has performance issues, with delayed response times from technical support.
There are challenges in collecting events when local admin rights are enabled, as manual investigation is often required, impacting efficiency.
The installation process can be complex, particularly for inexperienced users, taking up to five days to complete.
The integration with Azure AD needs improvement to enhance compatibility and functionality.
The pricing of CyberArk Endpoint Privilege Manager is considered high, and there's a demand for more flexible cost options.
 

CyberArk Endpoint Privilege Manager Pros review quotes

Sumit Chavan - PeerSpot reviewer
Jan 17, 2025
The most valuable feature is the ability to control users with admin rights. Even if developers and senior folks maintain their admin rights, we can still manage their activities.
Oluwajuwon Olorunlona - PeerSpot reviewer
Dec 8, 2022
CyberArk Endpoint Privilege Manager is very easy to manage, which I like. The solution also has a dashboard where you can see which software is suspicious, which I find valuable.
GH
Dec 30, 2024
CyberArk Endpoint Privilege Manager enhances computer security by providing minimal access, effectively preventing ransomware attacks.
Learn what your peers think about CyberArk Endpoint Privilege Manager. Get advice and tips from experienced pros sharing their opinions. Updated: February 2025.
838,713 professionals have used our research since 2012.
AP
Jan 13, 2023
The solution is scalable.
reviewer2600361 - PeerSpot reviewer
Dec 9, 2024
The most valuable feature of CyberArk Endpoint Privilege Manager is its scalability.
WG
May 19, 2020
It has drastically reduced the attack surface for local administrative rights and the chance of escalation of privilege. We've removed, at this point, close to 98 percent of the local administrative accounts on workstations. If there were an incident, it would stop at that point and we'd be able to know.
BG
Dec 27, 2024
The features I find most valuable are the endpoint privilege capabilities, which provide automatic protection to our IT environment.
reviewer1614768 - PeerSpot reviewer
Jun 30, 2021
I like that you can remove the admin rights from the user's computer and have control over the environment. That means you can delete the local admins and grant them proper privileges with the console. So, they will get proper permissions for applications they need, but we don't have to do it. In the domain where we don't have control, the user can only do specified actions, but not all of them.
Anish R - PeerSpot reviewer
Nov 16, 2022
I have always found that CyberArk is a very tight, foolproof product compared to most other products available.
Karthik Raja - PeerSpot reviewer
Aug 19, 2024
The biggest benefit of CyberArk EPM for our customers is control over privileged access for endpoints. Endpoints are often the starting point for attackers to enter and move within a network. CyberArk EPM bridges the gap between security and operations teams. Operations teams are happy because work isn't stopped due to admin rights issues, while security teams are satisfied that full admin rights aren't given to all users.
 

CyberArk Endpoint Privilege Manager Cons review quotes

Sumit Chavan - PeerSpot reviewer
Jan 17, 2025
A customization option is required for certain policies. For instance, if we need to stop PowerShell scripting, we have to create a different policy for that. Being able to create a sub-level policy within a top-level policy would be good.
Oluwajuwon Olorunlona - PeerSpot reviewer
Dec 8, 2022
CyberArk Endpoint Privilege Manager is a perfect solution, but CyberArk Endpoint Privilege Manager for Linux has many issues. Another area for improvement in CyberArk Endpoint Privilege Manager, specifically for Windows, is that there's no way for you to check credential theft from a text file, such as a notepad file.
GH
Dec 30, 2024
Another enhancement needed is the scheduling of deployment, which I expect in future releases.
Learn what your peers think about CyberArk Endpoint Privilege Manager. Get advice and tips from experienced pros sharing their opinions. Updated: February 2025.
838,713 professionals have used our research since 2012.
AP
Jan 13, 2023
The installation process is pretty difficult.
reviewer2600361 - PeerSpot reviewer
Dec 9, 2024
CyberArk Endpoint Privilege Manager could be improved by simplifying the administration process, specifically when setting up policies and applications.
WG
May 19, 2020
We have had some major issues with the tool, but we have worked with the R&D teams and we have worked with support. There is room for improvement, especially on response times. But they're working on it and they're doing the best they can.
BG
Dec 27, 2024
I would like to see improvements in customization, particularly allowing the user more control over what is deleted.
reviewer1614768 - PeerSpot reviewer
Jun 30, 2021
Performance could be better. We have a couple of problems with CyberArk right now. One of the problems is performance in our environment. Support also takes a long time to respond. If the user already has local admin rights, then I can't collect any events in the console from this device. There are also some options in CyberArk that are not working properly, and are not helpful in this case. I can't collect any information to create a proper policy for the device. I have to investigate everything manually, or even disable the local admin from the device. I can collect the events only after this, and it's very time consuming. In my case, it's a waste of resources.
Anish R - PeerSpot reviewer
Nov 16, 2022
CyberArk is a pretty heavy solution.
Karthik Raja - PeerSpot reviewer
Aug 19, 2024
My recommendation for improvement is to add functionality for when users request access to an application. There's a pop-up UI, but it's not very customizable. I suggest creating a UI where we can write scripts or use SDKs to enhance it. This could automatically create tickets in a system like ServiceNow when users request an application. If a manager approves, we could automatically push policies to those users.