Try our new research platform with insights from 80,000+ expert users

ForgeRock vs Symantec Identity Governance and Administration comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 1, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Omada Identity
Sponsored
Ranking in Identity Management (IM)
4th
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
48
Ranking in other categories
User Provisioning Software (3rd), Identity and Access Management as a Service (IDaaS) (IAMaaS) (5th), Customer Identity and Access Management (CIAM) (3rd)
ForgeRock
Ranking in Identity Management (IM)
13th
Average Rating
8.0
Reviews Sentiment
6.5
Number of Reviews
30
Ranking in other categories
Access Management (9th), Customer Identity and Access Management (CIAM) (5th)
Symantec Identity Governanc...
Ranking in Identity Management (IM)
27th
Average Rating
7.6
Reviews Sentiment
6.7
Number of Reviews
66
Ranking in other categories
User Provisioning Software (12th)
 

Mindshare comparison

As of April 2025, in the Identity Management (IM) category, the mindshare of Omada Identity is 3.3%, down from 3.4% compared to the previous year. The mindshare of ForgeRock is 4.5%, down from 5.4% compared to the previous year. The mindshare of Symantec Identity Governance and Administration is 1.4%, up from 1.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Identity Management (IM)
 

Featured Reviews

Pernilla Hulth - PeerSpot reviewer
The interface is easy to use and gives you a solid overview
The cloud-based deployment was straightforward, but the on-prem deployment was in a highly complex ecosystem. Omada has matured since then. I wouldn't say that it isn't straightforward, but it depends on the customer. A standard deployment is relatively easy, but it can be more painful if you need a lot of customization. We deployed the cloud solution in around four months, nearly meeting the 12-week benchmark. The on-prem deployment took three years. It was a highly complex ecosystem that was dependent on other systems. Depending on the size of your environment, you need a product owner and some specialists for maintenance. My last customer was a university with a complex environment. They had around 12 people involved in maintenance at that organization. Typically, it's between 2-5 people.
Trisha Bhola - PeerSpot reviewer
It's easier to customize and maintain our code
I worked on two different projects based on ForgeRock, and both are automated deployments. One is a UI-based deployment. It's an automated process using some scripts. The deployments are done through Octopus, so it's also automated. We first deploy the essential components of AM and then implement additional configurations like Amster Imports. After that, we import all the SAML Federation data and add some certificates. We have two teams of five and three team members working on the different deployment processes. One is working on the dev side, another is looking at the higher environment, and one is managing the data. In another project, I'm the only developer. We also deploy on the dev environments so that anyone can test new features, configurations, and client requirements. They can test it on the dev environment, but a team of four people manages higher environments. The Access Management component involves the most customization, which takes around 15 to 20 minutes because of the need to import the Amster configuration. If another deployment is simultaneously happening, it may be a little slower and take around 30 minutes. The other components, like the user data stores, take about five to seven minutes. It's another five to 10 minutes for Identity Management. After deployment, the maintenance is mostly checking for security vulnerabilities. If ForgeRock shares security vulnerabilities or advisories, we check to see if there is something inside we need to maintain. Other than that, we just install updates when they add features each month.
Efrén Yanez - PeerSpot reviewer
Identifies, debugs and models the privileges of your organization, adapting it to business strategies.
* Identifies, debugs and models the privileges of your organization, adapting it to business strategies. * Helps discover roles based on available patterns ("basic roles" / "Iterated Search" / "Characteristic Roles" / "Rule Hierarchies Roles" / "User Hierarchy Based Roles" / "Structured Search" / "Obvious Roles"). * Enables review campaigns to certify user privileges, roles and resources, activating the RACI model in the process. * Identity Governance comes with Connector Xpress but if you have Identity Manager you can use the integration between them and import the information that comes from CA Identity Manager and its connectors. * Allows the construction of segregation of rights (SoD) rules by definition of the client and enables “detective" and "corrective" levels for violations of business rules policies. * Provides a set of SoD rules for SAP in order to apply "best practices" to this type of "endpoint" (more than 3,000 rules / Consult CA Technologies if available in last version). * Helps to analyze privileges to find points of cleaning and improvement (Similar Roles / Roles Hierarchy / dual link / Suspect connections / Collectors, etc.). * Regulatory compliance is one of the objectives of the solution. * Covers the life cycle of enterprise privileges and maintains the role model "shallow" or "deep" / "functional" or "granular per application". * Helps you take advantage of the Identity Governance on the portal but better if you integrate with Identity Suite (best user experience). * You can enable LDAP authentication (AD/others) or integrate with CA Single Sign-On for portal access. * Real integration between CA Identity Manager and CA Identity Governance for better use of compliance approved roles, data exchange, and improved customer experience. * Data Transformation available using PDI (Pentaho Data Integration) * New functionality when integrating with Identity Portal.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It has a very user-friendly interface compared to what we are used to, and it is highly configurable. In the old solution, when we needed to do something, we had to have a programmer sitting next to us, whereas, in Omada Identity, everything is configurable."
"Omada offers a technical solution that addresses both our needs."
"The most valuable functionality of the solution for us is that when employees stop working for the municipality, they are automatically disabled in Active Directory. Omada controls that 100 percent. They are disabled for 30 days, and after that time Omada deletes the Active Directory account. The same type of thing happens when we employ a new person. Their information is automatically imported to Omada and they are equipped with the roles and rights so they can do their jobs."
"Omada Identity Suite has a very powerful workflow engine. It is used for requesting access for approval to everything that's around Access Management and for re-certification purposes."
"Omada's best feature is creating accounts, automatically assigning permissions, and distributing resources based on assignment policies."
"The administrative features and SoD are valuable."
"The key benefit of Omada Identity is maintaining complete control."
"The best feature in Omada Identity is that it enables us to implement standardized employee life cycle processes so that we don't have to create them ourselves. We can then use the standard workflows. The breadth and scope of the solution’s IGA features also fulfill our requirements."
"The solution's most valuable feature is the authentication for the consumers. The integration with other third-party applications is excellent."
"Easy to navigate, handle and manage the applications."
"We create and define the permissions and configurations for the users."
"ForgeRock has CIAM, which other products didn't have, and they have DevOps ready."
"Their access management solution, OpenAM, is most valuable because it meets the needs of a lot of users."
"We have found the identity and access management tools in the solution to be particularly useful for our organization."
"The product is easy to use in a development environment."
"I like the way it is handling authentication and authorization."
"Provisioning engine (on the back-end, separate from front-end components, that's part of layered architecture)."
"What I found most valuable in Symantec Identity Governance and Administration is its simple GUI. It's also easy to deploy compared to other products. With other products, you have to install the Windows version inside the Windows machine on all units, but with Symantec Identity Governance and Administration, it can work offline, so the solution is a little bit easier than other systems."
"I've used it to manage users, create and update, delete users, change passwords, and assign and change rules."
"It's a very useful tool that has improved our client's security, from day one."
"Out-of-the-box the product has a lot of opportunity for configuration and sophisticated identity management capability."
"Self-registration and self-service password management are valuable features. The role modeling feature is also very useful. It allows you to model your enterprise role."
"When comparing it to other products, you can set up CA IAM in a PoC very quickly to demonstrate its provisioning capabilities."
"Word mining and risk campaigns are the most valuable features of this solution."
 

Cons

"Improved traceability would be helpful for administrators. For example, let's say a user's permission is being revoked. We can only see the system that has carried out a particular action but not what triggered it. If an event definition or something has changed in the criteria for the permission being removed or something like that, we don't have immediate access to that information. It takes a little detective work."
"We are trying to use Omada's standards and to adapt our processes. But we have had some trouble with the bad documentation. This is something that they could improve on. It has not been possible for us to analyze some of the problems so far, based on the documentation. We always need consultants. The documentation should include some implementation hints and some guidelines for implementing the processes."
"The backend is pretty good but the self-service request access screen, the GUI, needs improvement. It's an old-fashioned screen. Also, Omada has reports, but I wouldn't dare show them to the business because they look like they're from 1995. I know they are working on these things and that’s good, because they’re really needed."
"The reporting and importing have room for improvement."
"Omada could communicate better with us about the product roadmap. We haven't gotten any updates about it. The user interface is often a bit difficult to understand. It isn't optimized for small screens, so it doesn't display all of the information clearly, so users need to scroll a lot."
"Omada could make it a bit more convenient to send emails based on events automatically. Having that functionality is critical for us to maintain transparency."
"When you do a recalculation of an identity, it's hard to understand what was incorrect before you started the recalculation, and which values are actually updated... all you see are all the new fields that are provisioned, instead of seeing only the fields that are changed."
"When making a process, you should be able to use some coding to do some advanced calculations. The calculations you can currently do are too basic. I would also like some additional script features."
"The solution requires more simplified customization. However, part of the problem is my clients determining their own preferences. Technology can help and do many things, but you have to define your own policies to ensure that the solution or service works within those parameters. Helping customers understand their business and different processes is another issue not relating to the functionality of this solution."
"In an upcoming release, the solution could improve by limiting the need to do customizations."
"Automatic Deployment needs improvement. it could be made easier."
"I think the upgrade process is sometimes a little complicated and there are failures that occur."
"It should be a little bit easier to implement. It is user-friendly, but there is always scope for improvement."
"The only problem with ForgeRock is that it is derived from an open-source product, so sometimes it's a bit unstable."
"They should improve the solution by include reporting."
"As with any complex software platform, there is a learning curve to using ForgeRock, and it may require specialized expertise to implement and manage effectively."
"The solution is not the best or the fastest available."
"The product has a lot of need for improvement. Our issues are being raised back to the vendor as enhancements."
"In the next release, there should be provisioning of your certifications."
"Identity Manager has a lack of entitlement support, unlike other products that I have worked with."
"There are times that it takes too long to generate reports and to run the assessment tools to collect the information."
"Symantec is only on-premises, not on the cloud."
"The reporting functions."
"Integration capabilities with other solutions and formats, including JSON, could be improved."
 

Pricing and Cost Advice

"Omada Identity offers a reasonable price point, but it will increase as we transition to the cloud."
"It is not cheap. It is expensive, but compared to what we did almost three years ago, it is value for money. It is worth it."
"It is licensed per managed user per year."
"While Omada Identity carries a premium price tag, it proves to be cost-effective."
"From an on-prem point of view, the cost is quite transparent and reasonable. The direct cost is primarily for licenses and maintenance on licenses."
"Omada continues to be very competitive on pricing, especially on the Omada cloud product."
"The pricing for Omada Identity is fair."
"Omada Identity is very reasonably and competitively priced."
"The pricing of the solution is fair but I do not have the full details."
"ForgeRock's pricing is more competitive than other products."
"Its price is comparable to other products in the market."
"ForgeRock is an expensive solution."
"We have multiple clients we are looking at right now. We are at a very small number, however, the idea and the goal is to grow. We are looking at about $100,000 and $50,000 a minimum a month cost. That'd be minimum maybe in a couple of years."
"The license is purchased annually per user. However, you can negotiate if you are signing for a longer period of time. When comparing this solution to others on the market it is priced fair, it is not at the top of the price range or at the bottom end."
"Its licensing is on a yearly basis, but it also depends on the contract that you have with the vendor. They have multiple types of contracts. There are additional costs to the standard licensing fees. If you need some of the features, you have to pay more."
"It's a bit pricey and could be more competitive."
"The price is flexible for our existing customers."
"The product has a good price in competition with another product with the same solution."
"I do not recall the approximate prices or licensing models, although I do so that it was priced per user number."
"Pricing and licensing models are adequate and reasonable."
"Compared to other options, CA products are not that expensive."
"Symantec keeps increasing the price. I rate its pricing a seven on a scale of ten."
"The price is based on the number of users."
"The connector is free, and bundled with the product."
report
Use our free recommendation engine to learn which Identity Management (IM) solutions are best for your needs.
845,040 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
16%
Computer Software Company
13%
Manufacturing Company
8%
Government
7%
Financial Services Firm
24%
Computer Software Company
12%
Insurance Company
7%
Government
7%
Computer Software Company
28%
Financial Services Firm
18%
Manufacturing Company
9%
Real Estate/Law Firm
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Omada Identity Cloud?
As an administrator, we benefit from a lot of functionality that is available out of the box, but it is also configur...
What is your experience regarding pricing and costs for Omada Identity Cloud?
They are positioned at a good price point. They are lower than some of their competitors.
What needs improvement with Omada Identity Cloud?
The biggest issue, which is the reason why we are transitioning from their product to SailPoint, is the overall user ...
What do you like most about ForgeRock?
The most valuable features of ForgeRock are social login and data protection.
What is your experience regarding pricing and costs for ForgeRock?
Our company was considering switching back to Keycloak from ForgeRock, so as to not pay any license fees. ForgeRock a...
What needs improvement with ForgeRock?
In the past, I saw that Splunk was integrated with a testing portal, and then it was integrated with Slack. I don't t...
What do you like most about Symantec Identity Governance and Administration?
The product’s most valuable feature is flexibility. It can be customized as per the customer’s requirements.
What is your experience regarding pricing and costs for Symantec Identity Governance and Administration?
The pricing has been very reasonable, but licensing costs vary based on the customer. It follows a user-based licensi...
What needs improvement with Symantec Identity Governance and Administration?
Symantec should develop a SaaS solution for cloud environments to make the solution available in various marketplaces...
 

Also Known As

Omada Identity Suite, Omada Identity Cloud
ForgeRock Identity Platform, ForgeRock OpenIDM
CA Identity Suite, Symantec IGA, Layer7 Identity Suite, CA Identity Manager (CA IDM), CA Identity Minder, CA IAM, CA Identity Manager (CA IDM), CA Identity Governance
 

Overview

 

Sample Customers

Bayer, ECCO Shoes, Vattenfall, NuStar Energy, Unicredit, Schiphol Group, BMW Group, Deutsche Leasing
Geico, Thomson Reuters, Salesforce, McKesson, Trinet, SKY, BNP Paribas, Deloitte, Capgemini, North Western University
Acciona, Core Blox, DBS
Find out what your peers are saying about ForgeRock vs. Symantec Identity Governance and Administration and other solutions. Updated: March 2025.
845,040 professionals have used our research since 2012.