Try our new research platform with insights from 80,000+ expert users

ForgeRock vs Microsoft Entra ID Protection comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 1, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

ForgeRock
Ranking in Identity Management (IM)
13th
Average Rating
8.0
Reviews Sentiment
6.5
Number of Reviews
30
Ranking in other categories
Access Management (15th), Customer Identity and Access Management (CIAM) (7th)
Microsoft Entra ID Protection
Ranking in Identity Management (IM)
6th
Average Rating
8.8
Reviews Sentiment
6.7
Number of Reviews
21
Ranking in other categories
Microsoft Security Suite (9th), Identity Threat Detection and Response (ITDR) (2nd)
 

Mindshare comparison

As of February 2026, in the Identity Management (IM) category, the mindshare of ForgeRock is 3.7%, down from 4.8% compared to the previous year. The mindshare of Microsoft Entra ID Protection is 1.5%, up from 0.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Identity Management (IM) Market Share Distribution
ProductMarket Share (%)
Microsoft Entra ID Protection1.5%
ForgeRock3.7%
Other94.8%
Identity Management (IM)
 

Featured Reviews

Ahmet Murat Ülker - PeerSpot reviewer
Devops Engineer and Trainer at a tech vendor with 1-10 employees
Easy to use, but customizations can be complicated to handle
I would suggest others use the product after asking them to consider their use cases. SSO may be a use case for some, and using the product as an IDM tool may be a use case. At the moment, my company is not deploying all the components of ForgeRock itself. My company uses ForgeRock for OAuth 2.0. For example, my company is not deploying the IDM and identity gateway components. You should consider your use case and select the required components for that use case. My company does not use the SSO features of the tool. My company uses SSO to access ForgeRock's AM Console for individual users. My company does not use single sign on features of the product and instead, we use Auth0. I rate the tool a seven or eight out of ten.
Luis Gabriel Mieles Benavides - PeerSpot reviewer
Cloud Architect at Sonda S.A.
Identity protection has strengthened daily access control and improved passwordless security
The best features of Microsoft Entra ID Protection include the password dictionary, which we do not have in Active Directory. Conditional access is excellent because we can select the location from which users authenticate, and this is the best feature for me. Another valuable feature is the ability to identify critical or suspicious computers. If computers are too old or too suspicious, the system does not allow authentication, which is excellent. The effectiveness of automated remediation for handling identity threats is great. I use passwordless authentication with cellular phone authentication, which is excellent because we do not always need a password. Microsoft Entra ID Protection is a great solution overall because it improves security in the company through identity management. It improves integration with other solutions such as Google, Gmail, Hotmail, Outlook, and Facebook. We can create different applications and integrate with different services.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution's most valuable feature is the authentication for the consumers. The integration with other third-party applications is excellent."
"Their access management solution, OpenAM, is most valuable because it meets the needs of a lot of users."
"Easy to navigate, handle and manage the applications."
"The most valuable features are that it is easy to manage and it's stable."
"I like the way it is handling authentication and authorization."
"The solution is very scalable. We have a lot of users that have been increasing over the years that we have been using it. We have approximately 20,000 users."
"ForgeRock products are customizable, and the out-of-the-box features are solid, too. I primarily use the OIDC compliance features. It's just a configuration. it's easy to set up and customize trees. We can add our own features if necessary. Banks and corporations have different standards and specific validations."
"Easy to customize and adaptable to any environment."
"For me, automatization is most valuable."
"I recommend this product overall."
"The multifactor authentication feature is effective, providing an additional layer of security."
"The protections for handling identity threats in Microsoft Entra ID Protection, such as the automated remediation, are working effectively."
"The most valuable features are the API apps, which I use to connect to my cloud Protection."
"These features ease the job of security analysts, providing a better vision of user activities and potential risks."
"The solution helps us with authentication."
"The tool is simple and you can find a lot of tutorials, and videos on YouTube that can help you."
 

Cons

"Lacks simplified documentation within the tool that requires use of a separate portal."
"The product's customization is a bit complicated."
"ForgeRock is an open source solution and is available to everyone but it is not freeware. If you need support, you need a subscription for ForgeRock. Many of its functionalities need to be built up with the help of a consultant."
"In future releases, I would like to see easier integration with other solutions, like facial recognition and KYC solutions with biometric onboarding."
"The product's support services in the French language are not free."
"We raised tickets asking for improvements, but sometimes we don't get the proper solution. They are responding, but the ticket is open for weeks and weeks. For some issues, we don't get a satisfactory solution or the solution doesn't work."
"The solution could improve by adding more advertising and marketing."
"They should improve the solution by include reporting."
"A potential area of improvement in Microsoft Entra ID Protection could include backup-level capability or snapshot capability."
"I did have some trouble finding specific documentation, particularly for troubleshooting."
"Azure AD could improve by enhancing the availability of specialized courses for security, such as NETSCOUT security or other relevant certifications. It would be beneficial to have specific courses for security, to provide in-depth knowledge and skills related to Azure AD. While there are micro-learning resources available for various concepts, many people in the IT industry may not have the time to go through all the courses to properly configure and utilize Azure Active Directory. Simplifying the implementation process and making it easier for individuals to join a company with Azure AD could also be considered areas for improvement."
"The platform's pricing and scalability need improvement."
"Entra ID lacks a function to synchronize from the cloud to the local directory. This is a significant issue since there is no write-back feature from the cloud to local, which would allow me to use my own credentials from the cloud tenant securely."
"The experience is not very smooth for the user. This is an area where Microsoft could improve the authorization process."
"Identity labeling and sensitivity needs improvement."
"There is room for improvement in the ability for Entra ID Protection to inherit roles and configurations from whatever solution I am migrating from, so that these don't have to be built from the ground up during the implementation process."
 

Pricing and Cost Advice

"The pricing of the solution is fair but I do not have the full details."
"We have multiple clients we are looking at right now. We are at a very small number, however, the idea and the goal is to grow. We are looking at about $100,000 and $50,000 a minimum a month cost. That'd be minimum maybe in a couple of years."
"Its price is comparable to other products in the market."
"Its licensing is on a yearly basis, but it also depends on the contract that you have with the vendor. They have multiple types of contracts. There are additional costs to the standard licensing fees. If you need some of the features, you have to pay more."
"ForgeRock's pricing is more competitive than other products."
"It's a bit pricey and could be more competitive."
"ForgeRock is an expensive solution."
"The license is purchased annually per user. However, you can negotiate if you are signing for a longer period of time. When comparing this solution to others on the market it is priced fair, it is not at the top of the price range or at the bottom end."
"The product cost is on the expensive side."
"From one to ten, if one is cheap and ten is expensive, I rate the tool a seven out of ten."
"The pricing is competitive in the SMA segment and runs $5-$6 per user."
"The price of Azure AD is not expensive."
"Azure Active Directory Identity Protection is not very expensive."
report
Use our free recommendation engine to learn which Identity Management (IM) solutions are best for your needs.
881,665 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
21%
Manufacturing Company
9%
Computer Software Company
8%
Insurance Company
6%
Financial Services Firm
14%
Computer Software Company
13%
Government
9%
Manufacturing Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business13
Midsize Enterprise4
Large Enterprise13
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise1
Large Enterprise5
 

Questions from the Community

What do you like most about ForgeRock?
The most valuable features of ForgeRock are social login and data protection.
What is your experience regarding pricing and costs for ForgeRock?
Our company was considering switching back to Keycloak from ForgeRock, so as to not pay any license fees. ForgeRock also supports M-PIN and biometric features that Keycloak does not provide. My com...
What needs improvement with ForgeRock?
In the past, I saw that Splunk was integrated with a testing portal, and then it was integrated with Slack. I don't think ForgeRock directly supports integrations with Slack, making it an area wher...
What is your experience regarding pricing and costs for Azure Active Directory Identity Protection?
The pricing for Microsoft Entra ID protection is not expensive. It varies based on the company's size and quality.
What needs improvement with Azure Active Directory Identity Protection?
We explore the possibilities to use Purview to control our applications, though not very deeply as it's not very helpful at this moment.For us, the most important problem is access; we need an easy...
What is your primary use case for Azure Active Directory Identity Protection?
We are still deep involved in the use of Microsoft technology for databases and business intelligence, and in the last three years with Power Apps and Power Automate, all that means Azure services,...
 

Also Known As

ForgeRock Identity Platform, ForgeRock OpenIDM
Azure Active Directory Identity Protection, Azure AD Identity Protection
 

Overview

 

Sample Customers

Geico, Thomson Reuters, Salesforce, McKesson, Trinet, SKY, BNP Paribas, Deloitte, Capgemini, North Western University
Information Not Available
Find out what your peers are saying about ForgeRock vs. Microsoft Entra ID Protection and other solutions. Updated: December 2025.
881,665 professionals have used our research since 2012.