

Find out in this report how the two Access Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
We were able to implement zero trust extremely quickly because of the platform and its ongoing developments, including Cisco Duo Network Gateway, which enabled that transition to zero trust extremely quickly.
Not having MFA means you cannot put a price tag on that because you will be hit with ransomware immediately.
I think Cisco Duo offers a good return on investment for startups, newer organizations, or those utilizing cloud-based applications.
On a B2B level, it opened up the market for TomTom to sell its services in a more efficient way to car companies.
We can use a Linux image from ForgeRock with different systems, applications, websites, and mobile apps to create various types of access for users.
I can definitely see that fewer employees are needed compared to using different SaaS applications.
They got back to us quickly, were nice, and gave us what we needed.
I would rate their support 10 out of 10.
I would rate support for Cisco Duo a 10, as I have never had a negative experience.
The support portals offer comprehensive documentation, troubleshooting guides, and community forums that have been helpful for resolving common issues independently.
For standard support tickets, response times were very decent, and the support team was helpful in identifying configuration issues, especially with authentication trees, token settings, and directory replications.
The customer support is very flexible and supportive, particularly in the area of automation and customer deployments.
In my last contracting position, it was a large one for a major worldwide airline that had hundreds of thousands of devices that could use Cisco Duo, and it scaled very well.
You would not need many more engineers to manage Cisco Duo even if we scale up to 500 employees because it is so simple to manage.
Cisco Duo is scalable for organizational growth.
The access management layer is stateless, so I can scale horizontally by adding more nodes behind a load balancer as traffic increases.
The platform provides flexible authentication trees, enabling us to design custom MFA flows tailored for different user groups and risk profiles.
We scaled up with ForgeRock. My team received an award for implementing it for a 60 million customer base, which was the largest implementation at that time.
We have not had any Cisco Duo outages across all the companies I have worked for that utilize Cisco Duo.
The stability has been excellent.
I did not notice any downtime or crashes with Cisco Duo.
ForgeRock supports integration with legacy systems in our organization by offering a wide range of connectors and APIs.
ForgeRock is very stable because it manages access, authentication, and authorization effectively.
If you don't have internet access, you can't access your computer, only local access is available.
It lacks some dynamic identity management features compared to other products such as SailPoint.
Cisco should allow easier integration with third-party equipment because Cisco's own equipment is expensive.
ForgeRock needs to focus on low-code, no-code solutions that allow for drag-and-drop functionality with good orchestration.
It would be better if they were available for support whenever the customer needs it, especially during migration or go-live time periods.
The main area is complexity. ForgeRock is extremely flexible, but the learning curve can be steep.
The pricing is acceptable to them.
Their website lists $3 per month per user for the Essential license.
One of my customers recently received a billing statement charging 3,600 US dollars for 100 users for one year.
The pricing, setup cost, and licensing are very straightforward, which is a good success.
One has to spend considerable time trying to understand the different modules and different needs for those modules on the licensing front.
From a management perspective, I appreciate that we can enroll or control devices on the back end for people who get a new phone and forget to handle Cisco Duo properly and need to add a new device.
Our company benefits from all those features of Cisco Duo with confidence, and we feel very secure with it in terms of authentication of our logins.
The benefit of having a complete passwordless environment in our organization is that it's gotten people away from using the sticky note under their keyboard - which is a huge problem.
Centralized management makes the biggest difference because it allows us to define, update, and enforce security and compliance rules from a single location.
ForgeRock positively impacts our organization as we manage a large number of users with ease, providing a standard IAM solution that simplifies our processes.
ForgeRock has positively impacted my organization by allowing us to migrate from the older system to the newer ForgeRock component, enabling us to go live with many products across geographies, enhancing security as it is all cloud-based, and with the company taking care of availability, it has reduced costs for the company.
| Product | Mindshare (%) |
|---|---|
| Cisco Duo | 3.2% |
| ForgeRock | 4.5% |
| Other | 92.3% |

| Company Size | Count |
|---|---|
| Small Business | 44 |
| Midsize Enterprise | 24 |
| Large Enterprise | 58 |
| Company Size | Count |
|---|---|
| Small Business | 15 |
| Midsize Enterprise | 5 |
| Large Enterprise | 18 |
Cisco Duo is a cloud-based identity security platform safeguarding critical resources for any user and device worldwide. Known for its ease of use, Duo offers seamless protection across multi-cloud, hybrid, and on-premises environments.
Cisco Duo is designed to secure access with identity-first protection and provides extensive visibility throughout an organization's identity ecosystem. Offering multi-factor authentication, Duo facilitates easy integration and management, allowing teams to protect data effectively on VPNs, applications, and networks. Its single-pane management improves security processes while enhancing trust, making it suitable for diverse IT infrastructures.
What are the key features of Cisco Duo?
Which benefits and ROI should users consider?
In industries like education and finance, Cisco Duo is widely employed to secure multi-factor authentication across platforms such as email, databases, and servers. Its integration capabilities with Microsoft 365, Active Directory, and VPNs like AnyConnect are instrumental in verifying user identities using mobile apps or OTPs, catering effectively to both remote and on-premise environments.
ForgeRock offers robust integration, customization, and identity management with support for SAML, OAuth 2.0, and DevOps readiness, ensuring enhanced security and scalability.
ForgeRock stands out in identity and access management featuring flexible authentication flows, risk-based authentication, centralized policy management, and comprehensive data protection. Its open-source foundation and cloud capabilities allow versatility and ease of use. While it provides excellent user path orchestration through the Journey feature, challenges exist in integration support and user-friendly customization. Improved documentation and streamlined interfaces are necessary to overcome deployment complexities. Additionally, the cost and support model may be burdensome for smaller organizations.
What are the key features?ForgeRock is widely utilized in industries like telecommunications, insurance, and open banking for secure user authentication and access management. It supports microservice authentications, customer identity management, single sign-on, and multi-factor authentication, integrating effectively with existing infrastructures to enhance security and user experience.
We monitor all Access Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.