No more typing reviews! Try our Samantha, our new voice AI agent.

Cato SASE Cloud Platform vs Zscaler Private Access (ZPA) comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in Cloud Access Security Brokers (CASB)
7th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
21
Ranking in other categories
Secure Web Gateways (SWG) (5th), Internet Security (3rd), Web Content Filtering (1st), ZTNA as a Service (8th), Secure Access Service Edge (SASE) (8th)
Cato SASE Cloud Platform
Ranking in Cloud Access Security Brokers (CASB)
6th
Average Rating
9.0
Reviews Sentiment
7.5
Number of Reviews
31
Ranking in other categories
WAN Optimization (2nd), Intrusion Detection and Prevention Software (IDPS) (11th), Software Defined WAN (SD-WAN) Solutions (4th), WAN Edge (6th), ZTNA as a Service (7th), Secure Access Service Edge (SASE) (3rd), Remote Browser Isolation (RBI) (2nd)
Zscaler Private Access (ZPA)
Ranking in Cloud Access Security Brokers (CASB)
9th
Average Rating
9.0
Reviews Sentiment
6.9
Number of Reviews
13
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2026, in the Cloud Access Security Brokers (CASB) category, the mindshare of iboss is 3.3%, up from 1.7% compared to the previous year. The mindshare of Cato SASE Cloud Platform is 9.9%, up from 8.9% compared to the previous year. The mindshare of Zscaler Private Access (ZPA) is 2.2%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Access Security Brokers (CASB) Mindshare Distribution
ProductMindshare (%)
Cato SASE Cloud Platform9.9%
iboss3.3%
Zscaler Private Access (ZPA)2.2%
Other84.6%
Cloud Access Security Brokers (CASB)
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
reviewer2697738 - PeerSpot reviewer
Product & Services Integrator at a comms service provider with 10,001+ employees
Cloud security has unified global network design and has simplified threat visibility
I think all of the functionalities, such as the secure web gateway feature, are quite good. I also believe Cato SASE Cloud Platform is one of the only solutions that has not only a software firewall solution but also a physical software solution where you can change the company's firewalls and put in sockets from Cato SASE Cloud Platform, which I see as an advantage for them. The single-pass architecture has improved user experience with Cato SASE Cloud Platform as it provides security teams in companies a platform where they can easily obtain information if there are breaches or security issues. I assess the benefit of integrating WAN optimization as good. There is ease in making rules between WAN optimization, especially when it comes to global connections because of all their points of presence that are spread over the world. I think the real-time threat protection of Cato SASE Cloud Platform is also good. Their points of presence are quite efficient, and I do not see any delays in that area.
BasilJiji - PeerSpot reviewer
System Engineer at a retailer with 10,001+ employees
Zero trust access has secured hybrid work and now provides seamless app connectivity
Zscaler Private Access (ZPA) has significantly reduced our attack surface by making our internal apps invisible to the internet. It effectively eliminates lateral movement as users are only connected to the specific application they are authorized to use rather than the entire network segment. Zscaler Private Access (ZPA) is highly stable. The architecture uses a global mesh of service edges with built-in fault tolerance and redundancy, providing an always-on experience that is far more reliable than our old hardware-based VPN concentrator. Zscaler Private Access (ZPA) is elastically scalable because it is a software-defined perimeter and not an appliance-based solution. I can instantly scale to support thousands of additional users without needing to upgrade any physical hardware.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Technical support is pretty sharp and very responsive."
"Because of iboss, I did not have to assign web filtering tasks to my techs on a daily basis."
"I would definitely recommend iboss for web filtering purposes to other organizations or individuals."
"Content filtering is the most useful feature of iboss."
"The iboss solution gives me the ability to scan the traffic through all the ports, through all the 131,000 PCP and UDP ports, and with this ability, we have the granularity also for consults over social media and applications on mobile, and this is an advantage that the customers are looking for right now."
"Iboss is a solution that prevents advanced persistent threats, and has a zero tolerance for attacks."
"Valuable features: Within the filter: Controls (Web categories, applications, and Allow/Block list) and Network (local Subnets). Within the reporter: Logs (Event Log) and Reports."
"iboss is definitely very good in terms of service."
"The Cato SASE Cloud Platform is a remarkable solution for managing and controlling all aspects of Zero Trust network access functions through its SASE capabilities. It's designed with an exquisite and practical architecture, making it a worthwhile investment for organizations looking to optimize IT spending and streamline management processes."
"When I first encountered Cato, I didn't know how to use it, but after a week of training, I could onboard our systems to it, so the solution was easy to learn and navigate."
"It is quite simple and easy to use."
"My rating for Cato Networks is eight out of ten because it's an excellent product, especially for what it offers."
"It is a stable solution...it is a scalable solution."
"The most valuable feature is that it also works as a next-gen firewall because it has security features."
"The visibility control and security aspects are amazing."
"It's a pretty straightforward solution."
"Zscaler Private Access (ZPA) is much more secure than VPN because users are only allowed to access specific applications rather than the whole network."
"Zscaler Private Access (ZPA) is more secure than these particular VPN solutions."
"The features I appreciate the most about Zscaler Private Access (ZPA) are that it is very easy to use, and we have Terraform for it, which makes it even easier and very straightforward."
"Zscaler Private Access (ZPA) is the most mature compared to other vendors in terms of features and stability."
"Zscaler Private Access (ZPA) is a mature, enterprise-grade Zero Trust solution that delivers security and operational benefits."
"Zscaler ZPA is easy to administer and is organized in a straightforward and logical manner."
"The scalability is amazing. Whenever we need to upgrade the users, it increases immediately."
"It provides security and has a great service user experience."
 

Cons

"The reporting feature needs improvement."
"It is stable, but due to growth, it can sometimes be less stable than wanted."
"If they could implement an extra security layer preventing access to iboss from the open internet, it would be great."
"For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company ExxonMobil."
"Sometimes the agent stops working in iboss, and we have to reinstall the agent."
"File integrity monitoring would be very advantageous as an additional feature."
"The reporting feature needs improvement. It doesn't give you the expected results. It is quite difficult to get the specific reports needed, and it is not as intuitive as the rest of the platform."
"SSL decryption: We had issues with learners using apps instead of using web browsers. This type of encryption is tough for any appliance in a BYOD environment."
"Cato Networks security could be better."
"They should include a web application firewall feature in the solution."
"They should add more sophisticated security features. It should also be integrated into the cloud."
"Cato Networks security could be better."
"The tool needs to be more granular. Its reports are not very in-depth."
"To improve Cato SASE Cloud Platform, I think they sometimes need more built-in features for security in larger networks when doing local authentication, as they currently leave that to other vendors."
"A little tweaking or improvement of the UI in terms of logging when troubleshooting would be an improvement because it's very detailed."
"The solution is not cheap."
"There are some bugs in the solution."
"One area for improvement is setting posture profiles for vendor machines."
"I am not happy with the technical support from Zscaler Private Access (ZPA), particularly in India, where reachability is an issue with salespersons."
"The training costs associated with Zscaler Private Access (ZPA) are very high, and there are few resources available online."
"The price is a concern as it increases every year and becomes more expensive, driving customers and other vendors to look for alternatives."
"The lack of control over the 700+ external IPs through which traffic exits Zscaler is problematic."
"The current pain points we sometimes experience relate to the additional security applications we have on the laptops, and sometimes I don't know if I didn't get any notification from the application because it's an agent problem or something security-wise blocking this."
"Zscaler Private Access (ZPA) can be improved by expanding integrations."
 

Pricing and Cost Advice

"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is probably in line with other solutions, but I do not deal with the financial side."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"The overall pricing for iboss is very competitive and transparent."
"It is expensive compared to one of its competitors."
"The price of Cato Networks is in the middle range compared to other solutions. NetFoundry is a less expensive solution than Cato Networks."
"I'd rate Cato SASE Cloud Platform's pricing as about five or six out of ten. It's not the cheapest solution, but it is cheaper than Palo Alto and even VeloCloud. We've been working with them for a while and have significant discounts. Our licensing costs vary because we keep adding sites, but it's about 280 per month per site. This includes additional features beyond the base product, starting at around 200."
"Cato Networks is an expensive product, but it works out of the box, so that's the usual trade-off, make versus buy. If you decide to buy a product that doesn't require much programming, then you'd want to go for Cato Networks, which will work naturally, and immediately without any complex setup. However, the product is a little bit more expensive than the competitors. On a scale of one to five, I'd rate the pricing for Cato Networks as four."
"The pricing of this solution depends on what you need. It is based on bandwidth."
"The pricing of the solution depends upon the bandwidth required for different branches"
"Cato Networks seems more expensive than Cisco Meraki."
"If you compare with VeloCloud, the price is the same or even cheaper."
"The pricing is on the higher side, almost an eight out of ten."
Information not available
report
Use our free recommendation engine to learn which Cloud Access Security Brokers (CASB) solutions are best for your needs.
889,955 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Computer Software Company
9%
Manufacturing Company
9%
Construction Company
7%
Manufacturing Company
13%
Computer Software Company
11%
Financial Services Firm
9%
Comms Service Provider
8%
Financial Services Firm
15%
Insurance Company
10%
Outsourcing Company
10%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise7
Large Enterprise8
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise7
Large Enterprise11
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise4
Large Enterprise7
 

Questions from the Community

What needs improvement with iboss?
iboss can increase security in cyberspace. I have heard they are doing DDoS filtering, but I am not certain if they a...
What is your primary use case for iboss?
I use iboss for corporate VPN and all the corporate VRF, with basically all user traffic proxying to the internet.
What is your experience regarding pricing and costs for iboss?
Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern. There are cheaper alte...
What is your primary use case for Cato Networks?
I can see that I am a consultant at a reseller and I am the architect of Cato SASE Cloud Platform designs. In the bas...
What advice do you have for others considering Cato Networks?
It is difficult to find types of companies I would not recommend Cato SASE Cloud Platform to, and I believe you can u...
What is your experience regarding pricing and costs for Cato Networks?
I do not find it particularly expensive, but for some companies, they may not have the budget to be at that level of ...
What is your experience regarding pricing and costs for Zscaler Private Access (ZPA)?
Regarding pricing, setup costs, and licensing for Zscaler Private Access (ZPA), while it is not the cheapest solution...
What needs improvement with Zscaler Private Access (ZPA)?
After deploying Zscaler Private Access (ZPA), I notice a reduction in VPN-related support tickets, particularly durin...
What is your primary use case for Zscaler Private Access (ZPA)?
My primary use case for Zscaler Private Access (ZPA) is securing application-level access to internal applications wi...
 

Also Known As

iBoss Cloud Platform
Cato Networks
No data available
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Paysafe, AdRoll, Pet Lovers Centre, Arlington Orthopedics, Humphreys & Partners Architects
Information Not Available
Find out what your peers are saying about Cato SASE Cloud Platform vs. Zscaler Private Access (ZPA) and other solutions. Updated: April 2026.
889,955 professionals have used our research since 2012.