No more typing reviews! Try our Samantha, our new voice AI agent.
Sr Sales Engineer at CrossConnect
Real User
Top 10
Jun 3, 2026
Unified security has supported hybrid workforces and protected responsible AI adoption
Pros and Cons
  • "It is a solid 10, does exactly what we need it to do in a way that is easy to manage and control, and gives us the information that we need to make sure our end users have a good experience wherever they are working."
  • "The only bad experiences we have had were really sort of when the platform launched and I think even Cisco was still learning how to support it."

What is our primary use case?

Our main use case for Cisco Secure Access is providing security for hybrid and mobile workforces. One of the big challenges these days is the fact that you will have users in the office, working remotely, and all will have different access policies.

You will have users that will be technically hopping between offices, remote work, and working on the road. The trick is determining how we can have a single, consistent security policy for those users. Cisco Secure Access helps us with that quite a bit.

We did our first pilot deployment of Cisco Secure Access about three years ago, and we have deployed it successfully at several customers since then.

What is most valuable?

The VPN as a service is the feature that we like the most and the one that our customers like the most. Historically, you would have to maintain a firewall or other local VPN concentrator device. With Cisco Secure Access, now you can VPN in directly to Cisco Secure Access cloud, have that security policy applied, and then get directed either to the internet for SaaS apps or cloud services or to local on-premises resources through Cisco Secure Access system.

AI Access feature is a relatively new feature in Cisco Secure Access, but it is one that has become very important, especially in the last year or so, as end users have started to make a lot of use of the big AI tools, ChatGPT, Claude, and all that. There is now a big concern about those users putting inappropriate information into them, confidential information, regulated information. Being able to more tightly control what models my end users use, what services they use, and what information they submit has become a major part of end-user security in general. With Cisco Secure Access, I can do that whether you are in the office, on the road, or working from home. I can ensure that wherever you are at, you are not using AI models inappropriately and exposing us to risk.

Digital Experience Monitoring is for Cisco Secure Access and really any kind of SASE deployment. You need to know how the users are using the system and what their experience is so that it is easier to troubleshoot. Because you could have users anywhere, how are they getting access to the resources? If they are having problems, how can we help troubleshoot that? ThousandEyes integration with Cisco Secure Access is a pretty comprehensive visibility tool. It works everywhere from, for example, a work-from-home user. Are they having poor connectivity? ThousandEyes will let us see that it is their home network. They have bad wireless signal. We can work with them to fix that. Alternatively, it reveals problems with their internet connection. Or if they are traveling, what is the total visibility within the entire path between them and the application, whether it be a SaaS app, locally hosted, or something hosted in Azure, AWS, or any of the big cloud providers.

What needs improvement?

These days with supply chain attacks being a major problem, being able to vet anything that is downloaded by developers, by end users for business use, is almost a requirement these days. With Cisco Secure Access, because I can do that, this goes back to that security anywhere for any user at any time. Being able to ensure that we have that coverage for someone working from home, someone working remotely, someone on-premises, keeps that supply chain risk low.

I think it is a matter of especially keeping up with the times. I mentioned AI defense earlier, but as AI use and especially as we get into agentic AI use, seeing how Cisco Secure Access works to control those agentic uses especially is important. I think that is where we expect the big improvement to be.

For how long have I used the solution?

I have been working in IT consulting for about 22 years.

Buyer's Guide
Cisco Secure Access
August 2026
Learn what your peers think about Cisco Secure Access. Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
908,834 professionals have used our research since 2012.

What do I think about the stability of the solution?

It has been rock solid and stable. I can only think of one service disruption that I have seen with it in the last several years we have been using it, and that was really only for a very short amount of time.

What do I think about the scalability of the solution?

Cisco Secure Access is a very scalable solution. Being cloud-native, scalability is really built in. The user management controls work well even for our larger customers with large numbers of users. I would say scalability for Cisco Secure Access is a very strong point. It builds on Umbrella, which is a highly scalable security solution. We see that there as well.

How are customer service and support?

When we have had problems, they have been very quickly resolved. The support engineers have always been of a high quality. The only bad experiences we have had were really sort of when the platform launched and I think even Cisco was still learning how to support it.

Which solution did I use previously and why did I switch?

There was no single solution before. What we were doing before Cisco Secure Access was just a traditional on-premises VPN or other standalone remote access solutions, which was always, I think, a management headache. Multiple products were needed for different use cases. Moving to Cisco Secure Access really helped consolidate all that into one overarching end-user security platform.

How was the initial setup?

Overall, it has been a fairly good experience. Deploying Cisco Secure Access, because for a lot of customers they started with Umbrella, and it goes back to that same operational model, that same user interface, the same configuration model, has made it probably one of the easier SASE solutions to deploy compared to some of the other vendors out there.

What about the implementation team?

For our customers, it has been a big time saver in terms of policy management. Because now, I do not have to maintain separate policies for my remote users versus my on-premises users or people in a hybrid environment. For our customers, there has been a pretty good ROI and pretty quickly too.

What was our ROI?

For our customers, it has been a big time saver in terms of policy management. Because now, I do not have to maintain separate policies for my remote users versus my on-premises users or people in a hybrid environment. For our customers, there has been a pretty good ROI and pretty quickly too.

What's my experience with pricing, setup cost, and licensing?

Pricing for Cisco Secure Access has been very reasonable in the context of the entire world of SASE solutions. Setup costs for customers coming off of Umbrella, because of the fact that it is an evolution, the setup costs for our customers have been low. A little bit higher for greenfield, but Umbrella has always been a fairly easy product to turn up and Cisco Secure Access sort of continues that. Getting customers up and running with it is pretty easy and not too expensive.

Which other solutions did I evaluate?

The other solution that we considered heavily was Palo Alto's Prisma Access, or what they call Prisma SASE now. What we found is that with Cisco Secure Access, it was a much easier on-ramp for our customer base. It was easier to get that quick ROI.

What other advice do I have?

One of the things about policy verification is with Cisco Secure Access and modern security products in general, policies can become very complicated, very quickly, especially once you start doing role-based policies. To have a tool that helps you validate the policy before you push it out to the end users ensures that the end user satisfaction is higher, fewer complaints, and fewer headaches for the IT staff when making big policy changes.

It is a solid 10. It does exactly what we need it to do. It does so in a way that is easy to manage, easy to control, and gives us the information that we need to make sure our end users have a good experience wherever they are working. My overall rating for Cisco Secure Access is 9.

The biggest advice I give to anyone looking at Cisco Secure Access or really any other SASE solution is a lot of planning. SASE deployments tend to be complex, and while Cisco Secure Access does a great job of simplifying things compared to some of the other vendors out there, a good solid project plan, a good solid assessment of your needs before deploying is always something that I would recommend anyone does.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. Partners
Last updated: Jun 3, 2026
Flag as inappropriate
PeerSpot user
Bharath _Kumar - PeerSpot reviewer
Solution Architect at Velocis Systems
Real User
Top 5Leaderboard
Jan 9, 2026
Secure remote access has protected distributed users and simplified hybrid application connectivity
Pros and Cons
  • "The product is giving whatever you need from a customer point of view."
  • "TAC engineers just exit the call once their shift timing ends."

What is our primary use case?

The use case depends upon the vertical, such as manufacturing or enterprise. Mostly customers are looking for secure remote access to their applications. They may have a vendor ecosystem where they do not want to install any client. If they are looking for a clientless VPN like ZTNA, Zero Trust Network Access, that is where it fits. Mostly they want to move away from the centralized filtering point of view, even if it is a proxy. They want to facilitate access wherever they are geographically distributed. Because Cisco Secure Access PoP is there everywhere in major regions, this helps.

If they have a use case of a user sitting in an office and a user sitting remote, and a vendor accessing their applications from outside their network, you cannot expect anything installed in the vendor laptop, which is a non-domain laptop. That time, you need to have a solution that supports secure access of that application for that vendor who is sitting outside the network and is not a domain user.

Private application access is definitely there with the resource connectors. The concept of resource connectors is there to ensure the backend traffic from the application to the user. I have use cases, but I mainly worked on SaaS web traffic where I position SSE. Internal traffic is there, but not much discussion. It is hybrid only. There are customers who are adopting data center and coming out from cloud to data center, and vice versa. Definitely it will be Hybrid Remote Access.

What is most valuable?

The price and license for Cisco Secure Access are fine. Cisco documentation is always good. As a product, in terms of Cisco SSE, I appreciate the feature set. It is simple. The product is giving whatever you need from a customer point of view. Suppose point A to point B if you have to send data, you need not worry about anything such as your data might get compromised or somebody can do a middleman attack because everything is secure. They are sending the traffic encrypted and categorizing the traffic based on the type, whether web traffic or internet traffic, and doing the security mechanism that is needed for the traffic type. You can tick mark that flexibility is there.

Cisco SSE has an AI model, so you can write the policies if you just write it in plain English, it can do that. It can also drill down to AI Canvas, which is the new product that Cisco has launched.

What needs improvement?

I sold ThousandEyes and had done proof of concepts. ThousandEyes is a good product. However, the major flaw for ThousandEyes is the way they are calculating and giving the costing to the customer. The way the units consumption pricing is structured is not that great. That is the biggest flaw, and that is where people are not adopting it. The success rate of ThousandEyes when going with a digital monitoring concept is that it will address from endpoint to the application level and cover all domains. However, the way you are structuring your pricing with respect to the consumption of the units is a major issue. The pricing structure is not good in ThousandEyes. Apart from this, it is a good product. It can identify the issues related to an endpoint, if it is a remote user, if it is an internet issue, or if it is an application issue. The HTTP response time and latencies, everything it is giving. However, when a customer is trying to adopt it, the pricing structure is not good.

For how long have I used the solution?

I have been using the solution for one and a half to two years.

What do I think about the stability of the solution?

Performance is addressed in a different way. Suppose I have a user in a branch in Europe, or if I have a branch in Australia or if I have a branch in India, they are sending to the nearest PoP, SSE PoP. You can form a tunnel from your branch. In that case, the connectivity reaching out to Cisco Secure Access PoP is being addressed. They are having redundancy also because it will have two tunnels. If this tunnel fails, still you can reach out to Cisco Secure Access cloud.

What do I think about the scalability of the solution?

There are no scalability issues because SASE is scalable.

How are customer service and support?

Cisco TAC support is better compared to any OEM. That is what I feel. However, what happens with the TAC engineers is once their shift timing ends, they will just exit the call. Again, we need to explain to the other engineer. Even they will not refer much to the notes captured by the previous TAC engineer, and we are starting again. When their shift is done, they close the call. That is not proper support.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

There are some customers who are using VPN still and maybe they are very slow in terms of technology adoption. The flaw of VPN, everyone knows now, and everyone is realizing the flaw because the moment I just enter into the network, I can go and have a lateral movement across the complete IT infrastructure. It is giving the whole access of the particular network. Whereas ZTNA will predominantly give you access as per your role, allowing you to access only that particular subnet or particular URL or particular application. In that way, you are segregating and you are not allowing certain lateral movement. That means they cannot enter into your holistic complete network. That is the basic difference and the basic flaw, and people are realizing it, but few people are not adopting ZTNA in terms of technology.

How was the initial setup?

The setup is an eight out of ten.

What about the implementation team?

We work with Palo Alto and we work with Zscaler, the same kind of thing. Zscaler is the one that started the proxies, the cloud proxies. We are very much aligned with Cisco.

What was our ROI?

We have done one major project with almost 350 outlets of one of the customers. It is fine.

What's my experience with pricing, setup cost, and licensing?

I am not sure about Cisco Secure Access setup costs as I did not feel any issues. ThousandEyes I can address, but for Cisco SSE, I think the licensing structure is fine and easy to set up, quick, and documentation is good. Everything is fine.

Which other solutions did I evaluate?

I prefer Zscaler is good. After Zscaler, Cisco is good.

What other advice do I have?

Ask for references and friends feedback. We work with Palo Alto and we work with Zscaler. Zscaler started the proxies, the cloud proxies. We are very much aligned with Cisco. It's a good product, but the major flaw is the way they are calculating and giving the costing to the customer. The units consumption pricing is not that great. My overall review rating for this product is an eight out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company has a business relationship with this vendor other than being a customer. Integrator
Last updated: Jan 9, 2026
Flag as inappropriate
PeerSpot user
Buyer's Guide
Cisco Secure Access
August 2026
Learn what your peers think about Cisco Secure Access. Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
908,834 professionals have used our research since 2012.
Chief Technology Officer at Binary Global Limited
Real User
Top 5
Jun 12, 2026
Remote access has become more secure and integrated security tools work together seamlessly
Pros and Cons
  • "In my opinion, Cisco Secure Access is a complete SSE solution."
  • "One big challenge which I see with Cisco is their MDR capabilities. They do not provide it as a service, which Palo Alto does provide."

What is our primary use case?

The two typical use cases of Cisco Secure Access are how remote workers securely access both private applications, public applications, and SaaS applications from anywhere.

What is most valuable?

In my opinion, Cisco Secure Access is a complete SSE solution. The second good thing about it is that it has very deep end integration with other products which are required to improve security, such as multi-factor authentication and NAC products, all coming from Cisco. Whatever the customer use case may be, not only Cisco Secure Access but other applications coming from the Cisco security product line are available without needing to look outside of that ecosystem. Typically, I can just take it from Cisco and complete the entire solution.

From my perspective, it is quite easy to manage Cisco Secure Access.

The Talos integration for threat detection and response capability is a must for any product, whether running a SIEM or XDR. The Talos threat intelligence, which is possibly one of the largest organizations that gathers all this data and sends updates, comes free with every Cisco security product. That is really important because security is not static; it is dynamic. New viruses and malware are emerging constantly. Talos ensures that I get updates of everything being seen across the globe so that I am not left behind.

When it comes to protecting against phishing and ransomware, it is pretty good because all identified signatures and non-signature-based protections get updated through threat intelligence. However, as I said, it all depends upon what your attack surface is. If the attack surface is mail, for example, where the bulk of threats get percolated, then it has to be augmented by additional security layers such as email security. Based on the threat attack surface, you have to protect those also with an additional set of software.

What needs improvement?

The only negative side of Cisco Secure Access is the mindshare. From my perspective, the greatest positive side of Cisco is that it has a very complete story on the entire overall security requirements of a customer, whether it is end user security, network security, or workload security. It covers it all. Having said that, the customer mindshare of looking at Cisco as a security OEM is pretty low. That is one thing which in my mind, Cisco has to really improve.

The second thing is, of course, multiple panes of glass to manage multiple products. That has been a long-standing demand from customers that they should simplify that, and Cisco is working towards it. The third thing is AI integration. Cisco is also aggressively working on AI integration with their products. Mindshare is one of the biggest challenges of Cisco security products, and they have to increase customer awareness sessions to increase the customer mindshare about their security products.

One big challenge which I see with Cisco is their MDR capabilities. They do not provide it as a service, which Palo Alto does provide. Cisco's policy and strategy is to enable partners so that it becomes partner-enabled services using Cisco products. Whereas Palo Alto provides MDR as a service and Sophos provides MDR as a service, Cisco enables partners such as us to provide equivalent services. However, there are multiple enterprise customers who would prefer to go to the OEM for that service. There are multiple big wins which Palo Alto had in India because of their own MDR capability. If I were to fight as a partner with my capability and Cisco products, I surely cannot fight the might of Palo Alto. That is one area where possibly Cisco has to relook.

For how long have I used the solution?

With regards to my experience with Cisco Secure Access, I have been working with it for at least two years now.

What do I think about the stability of the solution?

Regarding Cisco Secure Access, I would agree that it is a 99.9% stable and reliable product.

What do I think about the scalability of the solution?

My impression of scalability for Cisco Secure Access is good. Being a cloud solution, it has unlimited scalability. Scalability is not an issue. You can scale based on the number of users and licenses. You have SIA, SPA, and all licenses. Scalability is not an issue since it is a cloud-based solution.

How are customer service and support?

I believe customer service from Cisco is good and not a problem in India.

How was the initial setup?

Regarding the deployment procedure and installation of Cisco Secure Access, it is straightforward and not much of a challenge.

What about the implementation team?

We usually deploy Cisco Secure Access in our Center of Excellence, and we keep demonstrating that to the customers. It is fine and not much of a hassle.

What was our ROI?

Quantifying the return on investment depends upon what the use case is and the automation we can build up. We just did some study where, with automation and all of that, we can get almost 30% ROI.

Which other solutions did I evaluate?

In comparing Cisco Secure Access to its competitors in the market, I think the leader is definitely Palo Alto.

Comparing Cisco Secure Access pricing with its peer group, I think they are still comparable in terms of pricing. It also depends upon how desperate Cisco is to win the deal; they can also go better. When I say peer group, I am talking of Palo Altos of the world, and so forth. They are a little bit on the higher side, but still, when it comes to closure of the deal, they get aggressive and they can meet up with the competitive price points.

What other advice do I have?

I have to study more about Cisco Secure Access's ability to provide secure access via HTTP/2 and optionally QUIC, so I am not aware of this, and I will not comment on that.

Summarizing all that I have told you about Cisco Secure Access, mindshare, multiple panes of glass, AI integration, and MDR are all aspects that could be slightly better. Those are the areas for improvement. Overall, I would give Cisco Secure Access a rating of eight out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Last updated: Jun 12, 2026
Flag as inappropriate
PeerSpot user
Director Of Technology at CHILDRENS HOME ASSOCIATION OF ILLINOIS
Real User
Top 10
Jun 3, 2026
Secure remote access has simplified zero trust adoption and supports clientless RDP sessions
Pros and Cons
  • "I am happy with the performance and security levels it provides, as I feel it is a robust and high-performing product with both the clientless and the client aspects."
  • "Comparing Cisco Secure Access to something like Cloudflare One, in the future the cost can come down."

What is our primary use case?

Cisco Secure Access is used primarily for remote access into on-premises servers. We are currently in a hybrid ZTNA and VPN solution, and with ZTNA, we have more flexibility about what traffic goes over VPN and what traffic stays through the internet.

We still have the VPN aspect, and with ZTNA we also have the ability to make those on-premises servers accessible securely anywhere in the world.

How has it helped my organization?

Cisco Secure Access has affected our transition to zero trust and least privilege principles by enabling us to run an RDP session through a web browser and tie it in with our Azure AD SSO, so users do not even need a client and can still log into these servers securely.

I am happy with the performance and security levels it provides. I feel it is a robust and high-performing product, and it has both the clientless and the client aspects, which I really appreciate.

What is most valuable?

The features of Cisco Secure Access that I like the most include its ease of use.

Cisco Secure Access is both client-based and clientless.

The multi-organization management capability of Cisco Secure Access is very usable and very user-friendly, and the end users are happy with it. I try to make the product and the process as painless as possible for all our end users, so it runs well.

Cisco Secure Access has affected our transition to zero trust and least privilege principles by enabling us to run an RDP session through a web browser and tie it in with our Azure AD SSO, so users do not even need a client and can still log into these servers securely.

I am happy with the performance and security levels it provides. I feel it is a robust and high-performing product with both the clientless and the client aspects.

What needs improvement?

We have not explored much of the Experience Insights feature powered by ThousandEyes of Cisco Secure Access, as it is part of our Meraki package, but we have not really done much with it yet.

For how long have I used the solution?

We have been using Cisco Secure Access for about five years now.

What do I think about the stability of the solution?

I would assess the stability and reliability of Cisco Secure Access as very good. Nothing comes to mind regarding downtime, crashes, or performance issues.

How are customer service and support?

My experience with customer service and tech support is great, and I am very happy. Every time I run into an issue, I can get a hold of someone at Cisco to get it fixed.

They are responsive and quick on their feet.

Which solution did I use previously and why did I switch?

To address the same issues, my organization did not have any solution put in place.

How was the initial setup?

I have not used the policy verification to help reduce policy misconfigurations.

Policy configurations have not caused slowdowns or blocked access for users in the past.

What about the implementation team?

My experience with deploying Cisco Secure Access is that it is very easy to integrate with the Meraki products.

What was our ROI?

We implemented Cisco Secure Access about five years ago.

What's my experience with pricing, setup cost, and licensing?

The pricing setup cost and licensing was not complicated; it was painless.

Which other solutions did I evaluate?

When selecting Cisco Secure Access, we were not looking at different options in comparison. We knew we were going to move all of our hardware over to Cisco, and so it made sense.

Comparing Cisco Secure Access to something like Cloudflare One, in the future the cost can come down. I have also looked at Zscaler for ZTNA, but overall, it is a robust product. Obviously, we always look at cost. I think Cloudflare may not have as robust of a product, but the cost is very minimal.

What other advice do I have?

I would give Cisco Secure Access a rating of eight.

I would give customer service and tech support a rating of nine.

My overall review rating for Cisco Secure Access is eight.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Jun 3, 2026
Flag as inappropriate
PeerSpot user
Senior Manager at a retailer with 10,001+ employees
Real User
Top 20
Feb 11, 2026
Remote access has become reliable for hybrid workers and now supports rapid global VPN adoption
Pros and Cons
  • "The most valuable feature of Cisco Secure Access is the VPN, which I find very easy to use."
  • "When you have planned works in your data center, I think you need to carry out some post-checks to ensure we are not affected as users."

What is our primary use case?

Our company's use case is exclusively for VPN, specifically for remote users at this time. We are exploring what other possibilities or functions are available, such as ZTNA and other features, but we have not reached that point yet. The only business case that stacks up currently is the replacement of a legacy VPN with Cisco Secure Access. We are looking to explore further functionalities that come with it.

Using Cisco Secure Access for VPN as a service is key, especially with hybrid working where many users are home-based or traveling around the world. It is crucial that we get the VPN up and running consistently, especially if people need access to secure resources. Based on our use case, I think it has been really good to see the statistics and the number of users connecting daily, and we receive great data from it. There are many more things we can do, such as integration with ThousandEyes and Cisco ISE, but we have not done that yet. For now, we only use the basic functionality, which is a VPN as a SaaS service, but we are looking to expand to zero trust network access and various other features available.

What is most valuable?

The most valuable feature of Cisco Secure Access is the VPN, which I find very easy to use. It has a great GUI, and it is easily explainable to people. When we have remote users, it is quite easy for them to understand how they can log on, and even setting up the solution, we probably accomplished it in a record 24 hours. We worked with your expert and the product was up and running in 24 hours. We had a few more things to sort out, but it was fully functional in 36 hours with users able to log on. It is a great product.

What needs improvement?

I do not think there is anything I would improve about the product other than the support issue. I know there are various integration things when it comes to SASE, and Cisco Secure Access is one of the products that will help us in that journey. We have many Cisco routers and there is more we can do with the product, but we have not been able to use it to its full capacity yet, which is one of the plans we are working towards for this year.

For how long have I used the solution?

I have been using Cisco Secure Access for 14 months.

What do I think about the stability of the solution?

I find the solution stable. Other than when you do work in your data center, I think that is where we need to improve a bit. When you have planned works in your data center, I think you need to carry out some post-checks to ensure we are not affected as users.

What do I think about the scalability of the solution?

I think it is scalable. You can run much more, and as I mentioned, there are so many things you can do with it. It is just that we need to find a proper business case and get everybody on board; it is going to be a journey.

How are customer service and support?

My experience with Cisco support has been brilliant. We had a couple of issues recently, but I think the team has been very helpful. We had some planned upgrades in Cisco's data center, and after that, we had some posture issues. We escalated to Cisco, and once the issue was identified, we received really good support. I am pleased with the support we have from Cisco.

I would rate Cisco support an eight out of ten. I would have given them a ten if we did not have those issues last week. Based on that, I would probably say eight. The recovery was alright, but I think there is quite a bit of work to do around making us aware of the works taking place and what we need to be aware of. Other than that, I think it is brilliant support from Cisco. I quite appreciate your experts; specifically Luke Abditch has been a brilliant resource. He helped us set up the entire platform.

How would you rate customer service and support?

Positive

What other advice do I have?

The issue from last week was that during planned maintenance, you specifically performed posture checks and updates that had compatibility issues with Cortex. We were not really notified about what it was going to affect. In the morning, when users tried to log on, nobody was able to log in, and we had to get the right people from Cisco on the call to diagnose the faults. I think that is probably an improvement area, so people know what sort of works took place and where we need to concentrate to investigate the issue. After it was identified, I think it was spot on, and we were back up and running.

To make it a ten, I think it is both ways. I have not explored the product to its full extent, so once we make use of it more, then maybe we will face a few more challenges with integration. Other than that, for now, it is an eight for us.

What would help me explore it more is really about getting everybody on board from our side; it is not to say it is a Cisco issue. It is more us trying to inform people about what else we can do with this product. We do not want to rock the boat, but we want to do it in a phased manner.

Cisco could help me with onboarding more users and features. My overall review rating for Cisco Secure Access is eight out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Feb 11, 2026
Flag as inappropriate
PeerSpot user
reviewer2801928 - PeerSpot reviewer
Deputy CISO at a transportation company with 10,001+ employees
Real User
Top 10
Feb 10, 2026
Granular zero trust access has unified hybrid resources and simplifies partner connectivity
Pros and Cons
  • "The feature I like the most about Cisco Secure Access is the whole concept of zero trust, as it is exactly what we need and I believe that Cisco Secure Access is the future of cybersecurity."
  • "In general, I think features can be improved."

What is our primary use case?

My main use case for Cisco Secure Access is providing access to private resources. For example, we have outstaff or any external partners, and we don't want to provide them wide access to our network. Cisco Secure Access provides us the opportunity to give access granularly, exactly for the resources that are needed for our partners, outstaff, and so on. It's one of the scenarios, and of course, besides ZTNA, we use internet access, which provides us the opportunity to control users through a web proxy and apply some policies to control them.

Regarding whether the deployment of Cisco Secure Access has impacted the help desk ticket volume and the end-user experience, I believe it has improved significantly. For example, we have two separate infrastructures; it is a hybrid one. In Ukraine, we have infrastructure in local data centers, and in Europe, we have it in the cloud with Google. To have access to private resources, we needed two different profiles of VPN. Using Cisco Secure Access and building IPsec tunnels between Cisco ASA and Cisco Secure Access, we can combine these two separate infrastructures and use only one account to access resources in Ukraine, in local data centers, and in Europe.

What is most valuable?

The feature I like the most about Cisco Secure Access is the whole concept of zero trust. It is exactly what we need, and I believe that Cisco Secure Access is the future of cybersecurity. For this year, one of the challenges for our team is to provide secure access instead of VPN.

An example of how Cisco Secure Access benefits the organization is that it can be maintained from one console, so we don't need a lot of staff to maintain it. With our current architecture with VPN, we need a lot of technical staff. We have a lot of processes like installing certifications, creating accounts in Active Directory, and so on. At that moment, we have Azure as an identity provider. We're connected with Cisco Secure Access, and we can do all of this from one space. And of course, if we're talking about security, it's the observability. We can control it from one admin panel.

What needs improvement?

In general, I think features can be improved. We have some issues regarding the routing, regarding some configurations, and so on. But we communicate with local Cisco partners, managers, and engineers, and they always help us to solve these issues. They are trying to push Cisco engineers to improve and develop more features that would be relevant for clients. So in general, I don't have any bad experience.

For how long have I used the solution?

In my current field, I have been using Cisco Secure Access for more than seven years, and I believe this is the second year of implementing Cisco Secure Access.

What do I think about the stability of the solution?

Regarding customer support, I did not use it at some point, and we did not have any crashes or downtime during this period.

What do I think about the scalability of the solution?

Cisco Secure Access is scalable to the growth of the organization.

How are customer service and support?

Regarding customer support, I did not use it at some point, and we did not have any crashes or downtime during this period.

How would you rate customer service and support?

Which solution did I use previously and why did I switch?

At the moment we decided to use Cisco Secure Access, I didn't think of having another solution. In the production environment, we use Secure Client. Of course, we had experience with another solution, with your competitors. We tried, for example, ZTNA from Cloudflare, but for our needs, we use exactly Cisco Secure Access.

What about the implementation team?

The experience of deploying Cisco Secure Access depends on internal collaboration. If internally you have a nice collaboration with another team, it is easy. Because to deploy it, you need to collaborate with the DevOps team, with network engineers, and cybersecurity. If every one of these teams understands the reason why we would like to use it, it is quite easy and fast.

What was our ROI?

I cannot answer whether I have seen a return on investment from having Cisco Secure Access.

What's my experience with pricing, setup cost, and licensing?

Regarding costing and licensing for Cisco Secure Access, we use a lot of services from the Cisco security bundle. Cisco Secure Access is part of this bundle.

What other advice do I have?

I decided to use Cisco for a specific reason because historically we have used a lot of solutions by Cisco. At that moment, according to the functionality of Cisco Secure Access, it was one of the best solutions on the market.

Cisco Secure Access definitely utilizes the hybrid private access feature, with the configuration of conditional access and so on. Regarding the integration of Cisco Identity Intelligence with Cisco Secure Access, I am not sure.

The usability and efficiency of multi-organization management in Cisco Secure Access is quite high-level. Overall, I evaluate the AI applications in Cisco Secure Access positively as I don't have any bad experience. The AI Assistant in Cisco Secure Access is helpful sometimes, especially if it is something simple. I use the AI Assistant feature of Cisco Secure Access just during the configuration of the policy.

Cisco Secure Access is both a client-based and client-less solution. It depends on the case and situation. For some resources, for example, that store some sensitive information, I prefer agent-based.

The influence of Cisco Secure Access on the transition from VPN to ZTNA regarding users is that we just want to simplify the process of accessing private resources, and it only improves the user experience. The deployment of Cisco Secure Access has improved the help desk ticket volume and end-user experience by allowing us to combine hybrid infrastructure and reducing complexity with a simpler, unified access solution. Overall, I believe Cisco Secure Access deserves a rating of eight out of ten. It is a fast-growing solution, and I understand that it is in the process of developing, but your team is so responsible, and they are ready to help at any moment.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Google
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Feb 10, 2026
Flag as inappropriate
PeerSpot user
Senior Manager at Systems Limited
Real User
Top 20
Jun 18, 2026
Hybrid access has unified secure cloud and data center connectivity for diverse client needs
Pros and Cons
  • "The biggest benefit of Cisco Secure Access, compared to Fortinet or other solutions from Palo Alto or Prisma, is its adaptability to different network environments."
  • "Cisco could add new features in the future, such as enhanced automation capabilities."

What is our primary use case?

The major use cases for clients regarding Cisco Secure Access involve ZTNA, for when you require cloud services, like ZTNA, Secure Web Gateway, CASB, and Firewall as a Service. When you want to secure your on-premises equipment, on-premises data center, or services center, we provide the connectivity through the cloud, and at that moment, we use Cisco Secure Access.

The ZTNA part in Cisco is very important because it helps my customers to secure applications. When you configure your application or deploy your application on the on-premises data center and you want to access it where there is no trust on the inbound—whether you are an enterprise user, a remote user, or any other user coming through the cloud—then you will provide only the split tunnel or the tunnel between the cloud and your data center, which provides Cisco Secure Access.

CASB is also relevant when your services are deployed in many different cloud services, as you can use CASB in those scenarios.

What is most valuable?

The biggest benefit of Cisco Secure Access, compared to Fortinet or other solutions from Palo Alto or Prisma, is its adaptability to different network environments.

Customers appreciate the good features of Cisco Secure Access because it is a hybrid network solution. When there is a hybrid network, customers require Cisco Secure Access so they can access both cloud services and on-premises data center services.

I would say it is easy to manage Cisco Secure Access through this console. It is similar to managing a firewall, such as the FTD, and the console is straightforward.

What needs improvement?

I have seen that if the on-premises devices are Cisco devices, then we use Cisco SSE. However, when there are Fortinet devices, then we use FortiSSE, which indicates a potential area for improvement.

Cisco could add new features in the future, such as enhanced automation capabilities. They are providing automation in their technology, which is an improvement area. If you use automation tools like Red Hat, you can perform automation more effectively. Regarding AI, I think Cisco is doing well, though there is still room for improvement in AI capabilities.

For how long have I used the solution?

I started working with Cisco Secure Access relatively recently, but I understand how it works and how we submit proposals for Cisco Secure Access and Fortinet security solutions. When we require cloud security, then we provide Cisco Secure Access and SSE.

What do I think about the stability of the solution?

Cisco is stable and reliable.

What do I think about the scalability of the solution?

Scalability mostly depends on the architecture, not on the hardware or OEM. How you architect and define the network design determines scalability. If you do not have a good architecture, you cannot achieve scalability.

How are customer service and support?

I think Cisco's technical support is good. I believe that both Cisco technical support and Juniper technical support are very good.

What other advice do I have?

If the requirement is for Cisco equipment, then we propose Cisco Secure Access. If the requirement is for Fortinet, then we provide FortiSafety.

As a system implementer, I think the biggest advantage of the product is its usability in various scenarios.

I am not certain who is the leader when comparing Cisco with Fortinet and Palo Alto. Both are good at what they do, and sometimes we cannot use all the features of any product. We use specialized or customized features for our data center according to customer requirements, and all follow standard features and protocols, which are good.

The HTTP protocol is important for connecting through the cloud or establishing a tunnel. A VPN service and another tunnel between the cloud SSE and your on-premises data center are essential.

Cisco Secure Client provides the resource connector. There is a connector on the on-premises data center, so we establish a secure connection, mostly VPN or IPsec VPN, between the cloud and the data center.

I would say that Cisco Secure Access is effective in protection from ransomware and phishing attacks. It is a standard they are using, and when you are using Cisco devices, then you can rely on Cisco cloud.

Both deployment parts are not very difficult. It is straightforward.

I did not deploy Cisco Secure Access myself, but I understand from my team that it is not a big challenge.

Cisco could add new features in the future, such as enhanced automation capabilities. They are providing automation in their technology, which is an improvement area.

My experience is primarily with clients using a hybrid model.

We mostly integrate with Azure and AWS through the cloud.

I cannot say who is the leader when comparing Cisco with Fortinet and Palo Alto. Both are good at what they do, and sometimes we cannot use all the features of any product. We use specialized or customized features for our data center according to customer requirements, and all follow standard features and protocols, which are good.

I would rate Cisco support at an eight out of ten. The overall review rating for this product is nine out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Disclosure: My company has a business relationship with this vendor other than being a customer. Integrator
Last updated: Jun 18, 2026
Flag as inappropriate
PeerSpot user
Technical Product Owner at a tech vendor with 10,001+ employees
MSP
Top 20
Feb 10, 2026
Unified remote access and web controls have simplified management but still need finer role rights
Pros and Cons
  • "I consider the most valuable feature of Cisco Secure Access to be that it merged everything into one dashboard, the Cisco Secure Access dashboard."
  • "I would describe my experience deploying Cisco Secure Access as working well, though we are hitting bugs."

What is our primary use case?

My use case for Cisco Secure Access is to replace our on-premises, not site-to-site, remote access SSL VPN as we are going from on-premises to cloud service.

The second use case is to replace our Umbrella service, as we currently use Umbrella and will migrate to Cisco Secure Access as well, along with all the policies.

What is most valuable?

I consider the most valuable feature of Cisco Secure Access to be that it merged everything into one dashboard, the Cisco Secure Access dashboard. Previously, we had web access in one location and remote access in another, and we could not link them to each other. Now everything is in one place, and we can base the access control on usernames because we have the Azure Active Directory integration. We can also build policies based on that and can see or identify the impacted users.

Cisco Secure Access benefits our organization by offering Points of Presence close to our employees because we are spread across the world. Until now, we had only European gateways, so traffic had to go from India, for example, over to Europe and then sometimes back, which was delaying a lot. With Cisco Secure Access, we have a presence close to the user.

What needs improvement?

What we really find challenging is that we do not have granular role-based access control models. The only options we have are full admin or read-only. We have different departments in the company that have different responsibilities. While we as a networking team are full admins, we do not want to manage the policies regarding which websites are allowed and what is not allowed. That should be managed by our compliance team.

The granular access issue is coming from the product limitation at the moment, as it does not offer us the option to tell it that a particular role can only manage websites, allowed sites, and blocked sites. Categories or something similar are not possible.

If I had to improve the product, that would definitely be role-based access control. Though from another point of view, this limitation may also be a benefit because it forces us to implement our own front-end to use API calls. Using API, you can limit the access to that particular key.

What do I think about the stability of the solution?

I would rate Cisco Secure Access as very stable until now. We have not seen any service degradation during the maintenance activities that Cisco performs, which seems to happen frequently because we receive notification messages. However, we do not experience any service degradation, so that feels stable at the moment.

What do I think about the scalability of the solution?

I find the scalability of Cisco Secure Access is working well at the moment. The main benefit is that we do not need to care for hardware anymore in the future, such as lifecycle management. However, the migration is a little challenging because the technical background that we had, such as the routing and what happens there, is not really visible to us in the cloud service. Those are the challenges, but we are working with TAC and onboarding people that are assigned to us at the moment from Cisco.

How are customer service and support?

My experience with Cisco's technical support is good because the person assigned to us is guiding us. He understands what our use case is and he is guiding us on what we should configure and what we should not configure.

How would you rate customer service and support?

Which solution did I use previously and why did I switch?

Before, we were using Cisco Firepower as SSL gateways.

How was the initial setup?

I would describe my experience deploying Cisco Secure Access as working well, though we are hitting bugs. I have the feeling that whenever we explore a new product from Cisco, we hit a bug. At the moment, we are dealing with challenges because a new feature that was implemented is to support multi-tenancy. When we originally started, that feature was not available, so we had only one organization. Now we have a multi-organization feature, so we were migrated to it. However, we feel that with this migration, something was left behind that is not working properly. In our original organization, we have issues applying permissions for users, and we always have to raise TAC cases with the people who help us resolve it. They are currently working on that.

What was our ROI?

I have not seen a return on investment yet, as we are still building. We are in an extended pilot phase at the moment, where one country, India, is migrated to this solution, and we are deploying one by one, starting with less critical sites first, and then we will see.

Which other solutions did I evaluate?

We did not evaluate any other solutions before. It was basically a move recommendation by Cisco since we stuck with Cisco, as we had a subscription before. With the contract renewal, Cisco pushed us in a direction where we could keep using the old environment for free as part of the renewal, but we decided to go straight to the new product and migrate.

What other advice do I have?

We use VPN as a Service for our users to remote access our company, and web browsing is going through Cisco Secure Access as well. I am not using the AI Assist feature in Cisco Secure Access yet. I am not aware of VPNaaS in Cisco Secure Access. We are not using Zero Trust yet, as that will be a stage three. First, we want to get rid of the on-premises VPN gateways and then start developing Zero Trust, so it is not in use at the moment. I am not sure what Hybrid Private Access means, but what we have is an integration from Cisco Secure Access to our SD-WAN, where the Cisco Secure Access Points of Presence are directly connected with our SD-WAN cloud, optimizing the communication. I am not sure if that is what is meant by Hybrid Private Access. I would rate this product overall a six out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Last updated: Feb 10, 2026
Flag as inappropriate
PeerSpot user
Network Security Manager at Gamma Telecom Infrastructure
Real User
Top 20
Feb 12, 2026
Secure web access has centralized control but content filtering still needs major improvement
Pros and Cons
  • "The most valuable feature of Cisco Secure Access is the secure web gateway, which provides the secure edge."
  • "The Talos database is insufficient because Cisco Secure Access web gateway database is not big enough to hold every URL, leading to numerous problems with URLs not being categorized correctly and a slow turnaround for recategorization requests."

What is our primary use case?

We installed Cisco Secure Access for customers rather than our company since we're a reseller.

Cisco Secure Access is not installed for VPN as a service; the customer using the VPN side is using it for access into the core network, so it functions as a landing point and an on-ramp into the core.

What is most valuable?

The most valuable feature of Cisco Secure Access is the secure web gateway, which provides the secure edge.

The reason for this is centralized firewall control for people going out to the internet, so you can manage it. The essential ROI we are looking for with Cisco Secure Access is secure access to the internet, and in reality, this is the key factor where we can control access based upon various aspects such as AD group, plus we have a single portal where we can see what is going on and easy management.

What needs improvement?

If I could improve Cisco Secure Access in any way, it would be with Meraki integration; we do a lot with Meraki SD-WAN, and while the functionality is coming, currently it is not an Auto VPN integration, but I know it is now in public preview, and we have started to have a look at it in the lab. That is key for us because we have had a lot of problems with the VPN from Meraki into Cisco Secure Access, especially since local breakout does not work if you are running BGP over the VPN. Auto VPN functionality would be a big improvement.

The other issues we are having are around Talos and content filtering functionality; the Talos database is insufficient because Cisco Secure Access web gateway database is not big enough to hold every URL, leading to numerous problems with URLs not being categorized correctly and a slow turnaround for recategorization requests. Therefore, improvements with content filtering and Talos integration are significant for us, and we are speaking regularly to the Cisco teams about this.

Another significant issue involves a parent-child problem we have with the URLs; if they match multiple URL categories, then the rule base only looks at the first category, so it does not match multiple categories, resulting in a lot of problems around the Talos content filtering integration.

For how long have I used the solution?

I have been using Cisco Secure Access for three months.

What do I think about the stability of the solution?

Cisco Secure Access is stable, as we have had issues with the factors I have mentioned, but we can see that it is being developed all the time, which is key; new features are being released and integrated. It is stable, but since we are new to it, it is about getting an understanding and a better feel for it.

What do I think about the scalability of the solution?

So far, the scalability of Cisco Secure Access looks good; we are going to test that more as we have a project now to roll out to quite a lot of sites. Based on our discussions with the Cisco team, we should be good, but I cannot fully answer that until we have pushed it out to the hundreds of sites that we are looking to do.

How are customer service and support?

I have worked with the support team, and they are really good; I am actually about to meet one of the guys now to have a chat and catch up, so we have had some good exposure to the support teams.

The support team assigned to us is very good, so I would rate them an eight or a nine, but if you are raising a TAC case, it can be hit or miss regarding the knowledge of the TAC engineer that picks it up; on the whole, it is quite good, probably a six or a seven. However, there have been times when it has been lower due to the confusion between Cisco Secure Access and Secure Connect, especially when integrating Meraki support cases. Many of the Meraki engineers did not recognize Cisco Secure Access and only knew about Secure Connect, leading to some communication problems between Meraki and Cisco.

How would you rate customer service and support?

Positive

What other advice do I have?

Deployment of Cisco Secure Access now takes around half an hour to add a new site now that we have the baseline in place.

Adding a new site is easy now that the framework is in place.

Regarding licensing, the Essentials license, being the entry-level option, is somewhat lacking in my opinion; you lose a lot of the Layer 7 functionality that customers are looking for today. When talking about secure access, you typically expect next-gen firewall type features, and Layer 7 is quite key for that, which you do not get much of with the Essentials, but the Advantage license has a lot more and seems a lot more robust. We would definitely be looking to push the Advantage license in the future rather than Essentials.

I rate Cisco Secure Access a six at the moment; it is developing, and we can see that progress is happening. Its potential is there, but if I am being perfectly honest, I think it is a little immature at the moment and needs some work to develop some features.

Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
Last updated: Feb 12, 2026
Flag as inappropriate
PeerSpot user
reviewer2801904 - PeerSpot reviewer
Network Security Engineer at a manufacturing company with 5,001-10,000 employees
Real User
Top 5
Feb 10, 2026
Remote access has improved daily productivity and now supports secure work from anywhere
Pros and Cons
  • "The overall success of Cisco Secure Access has significantly improved my organization's security posture in terms of security and usability compared to the previous solution, which was fairly convoluted with several different hops required to log in every day from home."

    What is our primary use case?

    Cisco Secure Access is used for remote access VPN, supporting approximately 6,000 users in my organization. Daily usage ranges from about 3,000 to 4,000 users actually utilizing the solution.

    What is most valuable?

    The most valuable feature of Cisco Secure Access for users is that it is stable and it works in terms of secure access.

    The overall success of Cisco Secure Access has significantly improved my organization's security posture in terms of security and usability compared to the previous solution, which was fairly convoluted with several different hops required to log in every day from home. With Cisco Secure Access, the process is much simpler and works better, particularly in edge cases such as being in a hotel or on an unstable connection, which often caused disconnections and required a full reconnect with the previous solution.

    What needs improvement?

    There is nothing about the product itself that I would particularly like to see improved, as nothing comes to mind regarding Cisco Secure Access.

    For how long have I used the solution?

    I have been using Cisco Secure Access for about a year.

    What do I think about the stability of the solution?

    I certainly do not experience downtime with Cisco Secure Access, and there are not as many reliability issues compared to the previous solution, making it much more stable.

    My uptime with Cisco Secure Access is very good, although I cannot specify an exact figure.

    What do I think about the scalability of the solution?

    Cisco Secure Access does scale for my organization with 6,000 employees, and I believe we have the right devices for it. There have not been any issues with scaling as it was right-sized when it was implemented.

    How are customer service and support?

    I have contacted Cisco support many times, though not specifically for Cisco Secure Access but for other things.

    I would evaluate them overall as generally good.

    On a scale from one to ten, I would rate them as a seven or an eight.

    To make them a 10, it would be nice if there were not challenges in getting timely support due to our aerospace manufacturing constraints where we cannot share full telemetry or logs.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    The previous solution I used before Cisco Secure Access was Ivanti Pulse Secure.

    I decided to switch because Ivanti Pulse Secure was end of life, had vulnerabilities, and was not user-friendly, lacking features that you would expect from something like Cisco Secure Access.

    How was the initial setup?

    The deployment of Cisco Secure Access was reasonably straightforward. Although it was not specifically me who completed it, everything has worked really well.

    What about the implementation team?

    It took probably four or five months to deploy, as we had the kit for a little while, but the actual implementation was reasonably quick.

    What was our ROI?

    I have seen ROI from using Cisco Secure Access; it has provided benefits such as stability and ease of use since the previous solution was managed by third parties and now it is all in-house.

    With reduced third-party costs associated with Cisco Secure Access, there is stability and reliability for the user base, resulting in less lost hours.

    What other advice do I have?

    I do believe those vulnerabilities are covered now with Cisco Secure Access, as the support and patch support is better.

    There is nothing that comes to mind that they can improve regarding vulnerabilities because as a Cisco product, I expect any vulnerabilities to be addressed quickly, and they do. They communicate clearly about what is going to happen and what needs to be done. With the previous product, there was often uncertainty about patch availability.

    I am not using the AI Assistant feature in Cisco Secure Access.

    Regarding VPNaaS, the answer is probably not.

    I am not using the hybrid private access feature in Cisco Secure Access, but it is something we are considering, although progress is slow due to the regulations of where I work.

    I have integrated Cisco Identity Intelligence with Cisco Secure Access and am in the process of doing it with some identity elements there.

    The integration of Cisco Identity Intelligence has not influenced my identity management and security measures at the moment, as it is still a work in progress coming from a legacy solution where there was no identity management.

    I am trying to improve my IAM management.

    I cannot specify what would make it a 10 since I have not fully deployed it and do not know all the capabilities; it might also be related to limitations specific to my company.

    The reason it is only an eight and not a 10 could be due to my company's specific limitations; for instance, always-on access and AI chatbots would be features I would appreciate having.

    My overall rating for this review is eight.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    Last updated: Feb 10, 2026
    Flag as inappropriate
    PeerSpot user
    Buyer's Guide
    Download our free Cisco Secure Access Report and get advice and tips from experienced pros sharing their opinions.
    Updated: August 2026
    Buyer's Guide
    Download our free Cisco Secure Access Report and get advice and tips from experienced pros sharing their opinions.