No more typing reviews! Try our Samantha, our new voice AI agent.

AWS Directory Service vs SailPoint Identity Security Cloud comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 2, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

AWS Directory Service
Ranking in Identity and Access Management as a Service (IDaaS) (IAMaaS)
18th
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
16
Ranking in other categories
No ranking in other categories
SailPoint Identity Security...
Ranking in Identity and Access Management as a Service (IDaaS) (IAMaaS)
3rd
Average Rating
8.2
Reviews Sentiment
6.7
Number of Reviews
72
Ranking in other categories
User Provisioning Software (2nd), Identity Management (IM) (3rd), SaaS Management Platforms (1st), Cloud Infrastructure Entitlement Management (CIEM) (3rd), Identity Governance Administration (IGA) (1st)
 

Mindshare comparison

As of May 2026, in the Identity and Access Management as a Service (IDaaS) (IAMaaS) category, the mindshare of AWS Directory Service is 1.1%, down from 1.7% compared to the previous year. The mindshare of SailPoint Identity Security Cloud is 8.0%, down from 11.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Identity and Access Management as a Service (IDaaS) (IAMaaS) Mindshare Distribution
ProductMindshare (%)
SailPoint Identity Security Cloud8.0%
AWS Directory Service1.1%
Other90.9%
Identity and Access Management as a Service (IDaaS) (IAMaaS)
 

Featured Reviews

Akram Zaki - PeerSpot reviewer
IT Specialist at FlairsTech
Hybrid directory service has streamlined global server access and supported reliable daily operations
Some features in AWS Directory Service are not automated and are not scriptable, so they require manual work. In today's world where everything is pretty much automated and scriptable using AI, this is a downside. The price is another concern. AWS is really expensive. They provide an awesome service in general, but it's still expensive, very expensive. AD Connector is an application which connects my own Active Directory to AWS Directory Service or AWS infrastructure. There is a bit of latency which is bound by the AD Connector availability. If the AD Connector is having issues, there is a bit of latency, but in general, it's way better than Microsoft Azure. Still, it could be better. The migration was a bit challenging and required intensive planning and migration time. That is always a hassle. No matter which cloud environment you're moving into, the migration is sensitive because you're generally moving from on-premise to a cloud environment, so there is downtime and there are unexpected issues and errors. It needs very careful planning before doing the migration itself. AWS Directory Service is lacking a few things which could be better. Single sign-on federation is missing. SCIM provisioning is not available. In my company, we use other services for SSO federation, SCIM provisioning, and authentication because of these gaps. I would like AWS Directory Service to enroll a multi-factor authentication method. I would like to have an SSO federation where users, if we're hosting applications in AWS, would not need to log in to each application. Single sign-on would log in the user to their account and from there they can open all their applications without requiring a login each time. One of the other cons in AWS is that directories cannot span multiple regions because it's a region-bound architecture. This requires several directories for multi-region deployment. This is the case on my end because my company has several branches all over the world, so it requires several deployments.
ND
Principle at a manufacturing company with 10,001+ employees
User access management excels but needs enhancements with integration capabilities
I was aware of that because I used to manage these solutions earlier on, but it was purchased by the Procurement team, so I was not involved in any of those.There are certain details I may not be able to disclose currently, but we can speak in general about a number of products and tools that are ongoing. I have not been using access management controls here, so I don't have the latest features or details or hands-on experience in that space. I cannot share all the details about the improvements in security operations since we were exploring some products, but I'm familiar with Saviynt as I was one of their partners for other solutions, and currently, I cannot disclose a lot of performance related to my current roles.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The support is very good. I would rate the technical support as a nine out of ten."
"We can provide specific access to people based on what they need from our accounts."
"We like the fact that it's got such great redundancy."
"Provides good performance and availability."
"The most valuable feature of this solution is the security of my customers and my customers' customers."
"The most valuable feature is that because it's all in the cloud, you don't need to manage the infrastructure."
"AWS Directory Service is very useful; it is a role-based mechanism, similar to identity management, and it is one of the most useful AWS features."
"AWS handles everything on the backend requiring minimal legwork from our team. We only require a dedicated database administrator while depending on Amazon for RDS."
"For my company, SailPoint IdentityIQ is a very important solution, especially because it's automated, and there's a huge audit and risk issue here in Brazil."
"This solution is great for providing control access across your environment."
"The initial setup is straightforward."
"I like IdentityIQ's granular attachment management and certification customization features."
"User provisioning and the role management features are good."
"The solution is pretty stable and simple to use."
"By using this product the organization has moved from manual access governance done previously to automated governance which has a full audit trail, and this is very beneficial."
"It is a stable tool, which we run in our complex environment."
 

Cons

"I would like to grant partial access to a table contained in a database without having to provide full access to the whole database."
"AWS could improve the number of regions. Azure has passed them. The ned more consistency, as far as the Northeast is concerned."
"AWS is really expensive. They provide an awesome service in general, but it's still expensive, very expensive."
"To get CloudWatch to monitor your memory and storage, you have to do some configuration within your server, which sometimes results in errors."
"I'd rate the solution at a six out of ten, simply based on the cost. It's very expensive."
"Currently, there is no option to integrate our on-premises Cisco AWS Directory Service, requiring some manual configuration. If AWS Active Directory Service provided additional domain controller functionalities, like other on-premises Active Directory, it would be very helpful."
"Our only complaint is that you cannot integrate your Exchange server. Or, if you are planning to install an Exchange server on your Amazon EC2 instance, then you need to configure Active Directory on EC2 instance. We would like for this limitation to be lifted."
"Some of the security protocols are difficult to understand."
"The workflow and user interface of SailPoint are not as smooth as ServiceNow's. I find raising a ticket to be too complex, which could be improved for better user-friendliness."
"There are various functions that don't work in IdentityIQ, including the access request reminder, which doesn't go to the approvals in the proper format, so it's hard for users to read."
"We have had a lot of service breaks because of the lack of support."
"There's a lot of customization required to improve the user experience."
"Needs to focus on automation wherein provisioning of work can be improved and access certification should be automated without the intervention from a manager for approval."
"It is too technical. You need really good technical skills in Java and other technologies, which are hard to find."
"When it comes to queries and analysis, I find the reporting module to be very low, very simple."
"They can work on their strategy for the on-premise version. They have to decide whether and for how long they will support the on-premise version. The new features first appear in the cloud, and after that, they are released for the on-premise version. In the cloud, you have more options and flexibility, which is absolutely normal. They have to have a clear strategy regarding whether they'll support the on-premises version with the same focus. The licensing for on-premise and cloud is a little bit different. They can make it the same."
 

Pricing and Cost Advice

"The pricing is reasonable."
"AWS' pricing is fair, and costs can be cut if you look carefully at when you're using it."
"We pay an annual subscription fee."
"The pricing depends because with AWS there are two types of directory objects: 30,000 and 500,000. It varies. AWS provides the pricing calculators so we can get an estimate from there as per the company requirement of how many users and objects that we need to create. So we can go to that portal, put in the data, and get the quotation. There are no extra licensing fees. It's all included."
"We pay an annual licensing cost for SailPoint IdentityIQ."
"Its price is okay. It provides good value for money. It is subscription-based. You can go for a one-year or three-year subscription."
"The pricing is a little bit higher than other tools."
"The product is expensive. I rate its pricing an eight out of ten."
"The pricing is based on the number of users and is reasonable."
"SailPoint is expensive compared to its competitors. It's one of the most expensive products, so I'd rate it as one out of five, cost-wise."
"It is a costly solution. Its cost, for sure, should be reduced."
"SailPoint IIQ is the best of best. That is reflected in the pricing of the solution. The pricing is based on the number of identities."
report
Use our free recommendation engine to learn which Identity and Access Management as a Service (IDaaS) (IAMaaS) solutions are best for your needs.
893,244 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
13%
Computer Software Company
11%
Performing Arts
10%
Government
10%
Financial Services Firm
17%
Manufacturing Company
9%
Computer Software Company
8%
Educational Organization
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise3
Large Enterprise5
By reviewers
Company SizeCount
Small Business21
Midsize Enterprise8
Large Enterprise42
 

Questions from the Community

What is your experience regarding pricing and costs for AWS Directory Service?
The pricing is very good because it is low and there is no management cost. You do not need to hire any system administrator to manage your Active Directory.
What needs improvement with AWS Directory Service?
Some features in AWS Directory Service are not automated and are not scriptable, so they require manual work. In today's world where everything is pretty much automated and scriptable using AI, thi...
What advice do you have for others considering AWS Directory Service?
I would like AWS Directory Service to enroll a multi-factor authentication method. I would like to have an SSO federation where users, if we're hosting applications in AWS, would not need to log in...
How does Sailpoint IdentityIQ compare with CyberArk PAM?
We evaluated Sailpoint IdentityIQ before ultimately choosing CyberArk. Sailpoint Identity Platform is a solution to manage risks in cloud enterprise environments. It automates and streamlines the m...
What advice do you have for others considering SailPoint IdentityIQ?
You can use SailPoint Atlas to take identity security to the next level. In SailPoint IIQ, writing a custom connector using the open source framework is a good option.
 

Also Known As

AWS Managed Microsoft AD
IdentityIQ, IdentityNow, Cloud Infrastructure Entitlement Management, Intello
 

Overview

 

Sample Customers

Expedia, Intuit, Royal Dutch Shell, Brooks Brothers
Adobe, AXA Technology Services, Cuna Mutual Group, Equifax, ING Direct, Orrstown Bank, Rockwell Automation, SallieMae, Spirit Aerosystems, TEL
Find out what your peers are saying about AWS Directory Service vs. SailPoint Identity Security Cloud and other solutions. Updated: April 2026.
893,244 professionals have used our research since 2012.