Try our new research platform with insights from 80,000+ expert users

ForgeRock vs Microsoft Entra ID Protection comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 1, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

ForgeRock
Ranking in Identity Management (IM)
15th
Average Rating
8.0
Reviews Sentiment
6.5
Number of Reviews
30
Ranking in other categories
Access Management (14th), Customer Identity and Access Management (CIAM) (7th)
Microsoft Entra ID Protection
Ranking in Identity Management (IM)
8th
Average Rating
8.6
Reviews Sentiment
6.8
Number of Reviews
20
Ranking in other categories
Microsoft Security Suite (9th), Identity Threat Detection and Response (ITDR) (2nd)
 

Mindshare comparison

As of January 2026, in the Identity Management (IM) category, the mindshare of ForgeRock is 3.8%, down from 4.7% compared to the previous year. The mindshare of Microsoft Entra ID Protection is 1.2%, up from 0.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Identity Management (IM) Market Share Distribution
ProductMarket Share (%)
Microsoft Entra ID Protection1.2%
ForgeRock3.8%
Other95.0%
Identity Management (IM)
 

Featured Reviews

Ahmet Murat Ülker - PeerSpot reviewer
Devops Engineer and Trainer at a tech vendor with 1-10 employees
Easy to use, but customizations can be complicated to handle
I would suggest others use the product after asking them to consider their use cases. SSO may be a use case for some, and using the product as an IDM tool may be a use case. At the moment, my company is not deploying all the components of ForgeRock itself. My company uses ForgeRock for OAuth 2.0. For example, my company is not deploying the IDM and identity gateway components. You should consider your use case and select the required components for that use case. My company does not use the SSO features of the tool. My company uses SSO to access ForgeRock's AM Console for individual users. My company does not use single sign on features of the product and instead, we use Auth0. I rate the tool a seven or eight out of ten.
reviewer2133984 - PeerSpot reviewer
Sr. Security Analyst/Incident Response at a retailer with 5,001-10,000 employees
Conditional access provides detailed security customization
The best features of Microsoft Entra ID Protection are the conditional aspects, particularly the conditions that can be created. Microsoft Entra ID Protection has helped us because it gives us conditions that we can filter on or support, providing us more granularity. Microsoft Entra ID Protection allows blocking based on geolocation and similar parameters. The protections for handling identity threats in Microsoft Entra ID Protection, such as the automated remediation, are working effectively. With Microsoft Entra ID Protection, we are able to pivot off of particular alerts and stay abreast of them, which works to enhance our organization's security strategy. They definitely aid in threat detection with Microsoft Entra ID Protection.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We used it to implement multi-factor authentication and to improve our security posture as well as reducing the potential for attacks."
"The solution is very scalable. We have a lot of users that have been increasing over the years that we have been using it. We have approximately 20,000 users."
"In terms of the tool's operational efficiency, ForgeRock Access Management is used in a lot of environments, different regions, and in different stages of production environments."
"Installation and configuration are pretty easy for ForgeRock OpenIDM."
"The solution's most valuable feature is the authentication for the consumers. The integration with other third-party applications is excellent."
"The most valuable features are that it is easy to manage and it's stable."
"The most valuable features of ForgeRock are social login and data protection."
"I like the intelligent authentication feature."
"As an end-user, I find the experience to be quite seamless. My main advantage is that I only need to manage one login and one two-factor authentication method to access all the necessary tools. I don't have to set up separate logins and authentication for each application."
"The features we find most effective for identity security include access reviews, two-factor authentication, and modification."
"The protections for handling identity threats in Microsoft Entra ID Protection, such as the automated remediation, are working effectively."
"The reverse proxy feature provides additional security that is not available in other solutions."
"These features ease the job of security analysts, providing a better vision of user activities and potential risks."
"The primary and most valuable aspect of Azure AD identity is its ability to function seamlessly on both on-premise and cloud infrastructure, eliminating the need for extensive updates. However, this dual solution can pose vulnerabilities that require substantial support and security measures in the on-premise environment. Despite the challenges, it is currently not feasible to completely abandon AD, especially for companies in the sales and energy sectors. The integration with Microsoft Defender is crucial for enhancing security, making identity and security the primary focus and purpose of Azure AD."
"The multifactor authentication feature is effective, providing an additional layer of security."
"I find the most valuable feature to be conditional access."
 

Cons

"In an upcoming release, the solution could improve by limiting the need to do customizations."
"We're worried about the scaling. We're told it will be okay and there won't be issues, however, I'm not 100% convinced."
"The user interface could be improved as it is cumbersome and outdated. It doesn't have a responsive UI."
"It should be a little bit easier to implement. It is user-friendly, but there is always scope for improvement."
"It should have a better user interface. Its flexibility should also be improved. It is not about simplifying; it is more about flexibility. Each company has its own requirements, and ForgeRock can provide more flexibility in terms of the use of existing modules to implement features for the customers."
"We raised tickets asking for improvements, but sometimes we don't get the proper solution. They are responding, but the ticket is open for weeks and weeks. For some issues, we don't get a satisfactory solution or the solution doesn't work."
"The only problem with ForgeRock is that it is derived from an open-source product, so sometimes it's a bit unstable."
"In future releases, I would like to see easier integration with other solutions, like facial recognition and KYC solutions with biometric onboarding."
"Microsoft has not offered control over how they calculate high or low-risk scenarios. While they mention if a low risk is found by Microsoft, the triggered policy isn't customizable."
"Entra ID lacks a function to synchronize from the cloud to the local directory. This is a significant issue since there is no write-back feature from the cloud to local, which would allow me to use my own credentials from the cloud tenant securely."
"Microsoft has not offered control over how they calculate high or low-risk scenarios."
"There is a lot of confusion around the user interface."
"The experience is not very smooth for the user. This is an area where Microsoft could improve the authorization process."
"Identity protection and trust issues, particularly in hybrid environments, could be addressed better with Microsoft Entra ID Protection. This would aid connectivity concerns."
"The pricing could be improved."
"The product's initial setup phase is not easy."
 

Pricing and Cost Advice

"The license is purchased annually per user. However, you can negotiate if you are signing for a longer period of time. When comparing this solution to others on the market it is priced fair, it is not at the top of the price range or at the bottom end."
"ForgeRock is an expensive solution."
"The pricing of the solution is fair but I do not have the full details."
"We have multiple clients we are looking at right now. We are at a very small number, however, the idea and the goal is to grow. We are looking at about $100,000 and $50,000 a minimum a month cost. That'd be minimum maybe in a couple of years."
"Its licensing is on a yearly basis, but it also depends on the contract that you have with the vendor. They have multiple types of contracts. There are additional costs to the standard licensing fees. If you need some of the features, you have to pay more."
"It's a bit pricey and could be more competitive."
"ForgeRock's pricing is more competitive than other products."
"Its price is comparable to other products in the market."
"From one to ten, if one is cheap and ten is expensive, I rate the tool a seven out of ten."
"The product cost is on the expensive side."
"The price of Azure AD is not expensive."
"Azure Active Directory Identity Protection is not very expensive."
"The pricing is competitive in the SMA segment and runs $5-$6 per user."
report
Use our free recommendation engine to learn which Identity Management (IM) solutions are best for your needs.
881,082 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
21%
Computer Software Company
9%
Manufacturing Company
8%
Insurance Company
6%
Computer Software Company
14%
Financial Services Firm
14%
Manufacturing Company
9%
Government
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business13
Midsize Enterprise4
Large Enterprise13
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise1
Large Enterprise4
 

Questions from the Community

What do you like most about ForgeRock?
The most valuable features of ForgeRock are social login and data protection.
What is your experience regarding pricing and costs for ForgeRock?
Our company was considering switching back to Keycloak from ForgeRock, so as to not pay any license fees. ForgeRock also supports M-PIN and biometric features that Keycloak does not provide. My com...
What needs improvement with ForgeRock?
In the past, I saw that Splunk was integrated with a testing portal, and then it was integrated with Slack. I don't think ForgeRock directly supports integrations with Slack, making it an area wher...
What is your experience regarding pricing and costs for Azure Active Directory Identity Protection?
The pricing for Microsoft Entra ID protection is not expensive. It varies based on the company's size and quality.
What needs improvement with Azure Active Directory Identity Protection?
We explore the possibilities to use Purview to control our applications, though not very deeply as it's not very helpful at this moment.For us, the most important problem is access; we need an easy...
What is your primary use case for Azure Active Directory Identity Protection?
We are still deep involved in the use of Microsoft technology for databases and business intelligence, and in the last three years with Power Apps and Power Automate, all that means Azure services,...
 

Also Known As

ForgeRock Identity Platform, ForgeRock OpenIDM
Azure Active Directory Identity Protection, Azure AD Identity Protection
 

Overview

 

Sample Customers

Geico, Thomson Reuters, Salesforce, McKesson, Trinet, SKY, BNP Paribas, Deloitte, Capgemini, North Western University
Information Not Available
Find out what your peers are saying about ForgeRock vs. Microsoft Entra ID Protection and other solutions. Updated: December 2025.
881,082 professionals have used our research since 2012.