What is our primary use case?
We currently have two specific use cases for Zscaler Private Access (ZPA). Firstly, we use Azure Virtual Desktops (AVD), and the ZPA proxy facilitates user access to the internet. Secondly, we replaced our BlueCoat proxies with the ZPA solution in our server environment, directing their internet traffic through it.
What is most valuable?
The simplicity and logical structure of Zscaler make it easy to use and administer. It allows grouping, enabling en masse access conveniently. Unlike the BlueCoat proxy, which was more prescriptive and individual-focused, Zscaler offers group access. Additionally, Zscaler's modern tools enhance the network architecture by passing everything through a central core of security, ensuring everything is secure before accessing the internet.
What needs improvement?
Zscaler restricts customization, allowing a maximum of 256 customizable rules. This limitation is a drawback, as there are times when more customization is needed.
For how long have I used the solution?
I have been using Zscaler ZPA for a couple of years.
What was my experience with deployment of the solution?
The deployment took about three months, which was partly due to our slow work process and coordination with a third party. While Zscaler was not solely responsible for this duration, there were times when the documentation was insufficient, requiring us to react and fix issues.
What do I think about the stability of the solution?
There have been no stability issues since we cut over in mid-December. The solution is resilient, and we have not encountered any problems.
What do I think about the scalability of the solution?
Scalability is not a problem at all. It works well and fits everything we need, earning a score of ten.
How are customer service and support?
Zscaler’s customer service is quite good. They were available whenever needed and maintained regular contact with us. Even though achieving perfection is difficult, their support is commendable.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
We previously used various Broadcom products, including BlueCoat proxies and Symantec EDR capabilities, for the last five years. However, we switched to different vendors and moved our endpoint protection to Microsoft Defender and proxy solution to Zscaler due to the older, clunky nature of the previous solutions.
How was the initial setup?
The initial setup was fairly simple, with a rating of seven or eight. However, not all explanations were clear, and the documentation sometimes lacked detail, causing us to pivot around certain issues.
What about the implementation team?
Our backend team of three or four people works intricately with the solution. The implementation involved our team and some third-party involvement, which contributed to the deployment duration.
What was our ROI?
It’s difficult to gauge the ROI accurately due to transitioning from a large, all-encompassing contract with Broadcom. While the Zscaler deployment saved us from renewing an expensive Broadcom contract, isolating the financial impact specifically on Zscaler is challenging.
What's my experience with pricing, setup cost, and licensing?
The pricing is reasonable, falling at around a three or four. The costs for licensing were minimal relative to other solutions.
Which other solutions did I evaluate?
I can only compare Zscaler with Broadcom solutions. We faced issues with Broadcom's WSS, and while BlueCoat was effective, it was an older, more prescriptive solution. The modern, SaaS nature of Zscaler offers a better alternative.
What other advice do I have?
I recommend ZPA to other users for its ease of use and support. However, the universal external IPs from Zscaler can be a pain because traffic could emerge from any of over 700 IPs, requiring ZPA or additional infrastructure to manage. I rate the overall solution a 9 out of 10.
Which deployment model are you using for this solution?
Hybrid Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure