No more typing reviews! Try our Samantha, our new voice AI agent.

HashiCorp Boundary vs Idira Privileged Access Manager comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 2, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

HashiCorp Boundary
Ranking in Privileged Access Management (PAM)
28th
Average Rating
7.0
Reviews Sentiment
2.2
Number of Reviews
1
Ranking in other categories
No ranking in other categories
Idira Privileged Access Man...
Ranking in Privileged Access Management (PAM)
1st
Average Rating
8.6
Reviews Sentiment
6.8
Number of Reviews
230
Ranking in other categories
User Activity Monitoring (1st), Enterprise Password Managers (2nd), Mainframe Security (1st), Operational Technology (OT) Security (3rd)
 

Mindshare comparison

As of July 2026, in the Privileged Access Management (PAM) category, the mindshare of HashiCorp Boundary is 1.5%, up from 0.7% compared to the previous year. The mindshare of Idira Privileged Access Manager is 9.9%, down from 17.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Privileged Access Management (PAM) Mindshare Distribution
ProductMindshare (%)
Idira Privileged Access Manager9.9%
HashiCorp Boundary1.5%
Other88.6%
Privileged Access Management (PAM)
 

Featured Reviews

David Gidony - PeerSpot reviewer
Solution architect security and AI specialist at Terasky
Remote access to private lab hosts has become smoother while session control still needs refinement
HashiCorp Boundary can be improved in a few ways. The RDP session connection was recently introduced, which was a long-time feature that everyone was waiting for. Improving the desktop client and making it more elegant, fast, and optimized would be beneficial. I saw that there are new features allowing credential injection to RDP sessions and other useful functionalities that were among the top features I was looking for. I haven't had the chance to try them yet, but I saw demos that they already exist. The role-based access and permission granting is a bit complex and not intuitive. I work by myself and don't have many users to manage, but when it comes to scale, there might be a better way to manage access. The desktop app can be improved since it is slower than I would prefer, and session timeouts are a bit opaque. You don't really know how it's handling the session; sometimes the session ends and sometimes it's still alive. I find myself reactivating a session or needing to reconnect often. It could be more organized in that sense. A feature to close all active connections would help because currently, you have to go one by one and use the mouse to click on disconnect. If you have multiple sessions open, it might take some time because once you press cancel, you have to wait for a few seconds.
Atul-Gujar - PeerSpot reviewer
CyberArk manager at a comms service provider with 10,001+ employees
Secures critical infrastructures with essential user session audit records
A potential area for improvement is enhancing support for cluster environments and distributed Vaults. Clients in multiple countries that need central access have different challenges that require better solutions from CyberArk. For financial services, CyberArk can improve incident response by ensuring fast support for critical priority tickets to meet compliance requirements. Providing more documentation on CyberArk is recommended for new team members to enhance their troubleshooting capabilities. I understand it's up to the client, but 99% fail to change the demo key, so it's crucial for CyberArk to emphasize changing the key and documenting it as part of the installation process.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Using HashiCorp Boundary has saved me time and made my workflow more efficient in the specific way that I can gain access to these private instances from anywhere."
"The flexibility of integrating with other technologies is important because of a lot of applications - a lot of COTS products - are not supported when we are bringing the application IDs. The CyberArk platform provides a lot of opportunities to do customization."
"Regardless it's a good solution, it works, and the bank is happy with it."
"It has a centralized page where you can manage everything. This makes work easier. You don't have to remember different module URLs or browser applications. It is very easy to get all the secure identities of other environments into a single page, which is very important for us as it helps a lot in terms of operations, e.g., reduces management time. This is a single page where you can manage all accounts and onboard them to the CyberArk. You can then secure and see passwords from everywhere. So, there is a single pane of glass where you can manage all the identities across environments as well as across different types of identities."
"We've written over a hundred custom connectors ourselves that allow us to do all types of privileged session management for various applications. On top of that, the rest of the API-based central credential providers allow us to get away from credentials that may be hard-coded in the script or some application."
"CyberArk Privileged Access Manager has several valuable features; the basic feature is privileged access management with all the processes and procedures that are needed, and it does everything that is needed to provide a PAM project or program."
"Due to meaningless error messages, it is not possible to repair non-trivial errors without support, however, with support, we solved every problem."
"CyberArk has resulted in a massive increase in our security footprint."
"The most valuable feature is the ability to manage many accounts and broker connections between devices without needing to know passwords."
 

Cons

"The desktop app can be improved since it is slower than I would prefer, and session timeouts are a bit opaque."
"On-prem CyberArk is pretty expensive."
"It is very expensive. They charge for every single thing they offer."
"The architecture needs to be improved."
"On the UI level, things could be better."
"Stability is a huge concern right now. We are on a version which is very unstable. We have to upgrade to stabilize it. It is fine, but the problem is we have to hire CyberArk to do the upgrade. This costs money, and it is their bug."
"What could be improved in CyberArk Privileged Access Manager is the licensing model. It should be more flexible in terms of the users. Currently, it's based on the number of users, but many users only log in once in four months or once in five months. It would be great if the licensing model could be modified based on user needs. We even have users who have not logged in even once."
"One area for improvement is the plug-in development challenge. Although CyberArk provides a plug-in generator utility, it does not fully meet our needs, particularly for web-based applications. The plug-in generator currently works only for Telnet and SSH connections. We cannot generate a plug-in for web-based applications."
"The lead product has a slow process."
 

Pricing and Cost Advice

Information not available
"The price of CyberArk support could be a little bit less. Otherwise, pricing is fine."
"The cost is high compared to other products."
"The price of the solution is reasonable."
"It is in line with its competitors, but all such solutions cost too much money."
"CyberArk has been Gartner's number-one pick for the past ten years, so you can infer that their pricing is higher than everyone else. When you are the best, you will charge appropriately for it."
"CyberArk Privileged Access Manager is perceived to be somewhat overpriced compared to similar market products. It is a little bit overvalued. It could come down a little bit for my liking. However, the industry-leading reputation and the quality of service justify the high price point to some extent."
"Pricing is quite high and it could be improved."
"Payments have to be made on a yearly basis toward the licensing costs of the solution."
report
Use our free recommendation engine to learn which Privileged Access Management (PAM) solutions are best for your needs.
906,829 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
15%
Outsourcing Company
13%
Construction Company
11%
Manufacturing Company
8%
Financial Services Firm
12%
Manufacturing Company
10%
Outsourcing Company
8%
Construction Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business59
Midsize Enterprise42
Large Enterprise175
 

Questions from the Community

Ask a question
Earn 20 points
How does Sailpoint IdentityIQ compare with CyberArk PAM?
We evaluated Sailpoint IdentityIQ before ultimately choosing CyberArk. Sailpoint Identity Platform is a solution to manage risks in cloud enterprise environments. It automates and streamlines the m...
What is your experience regarding pricing and costs for CyberArk Privileged Access Manager?
My thoughts on the pricing of CyberArk Privileged Access Manager depend entirely on the vendors' requirements. If they want their things to be secure, they have to spend accordingly. We have four t...
What needs improvement with CyberArk Privileged Access Manager?
I believe account discovery and rolling support need to be improved. Account discovery is important when integrating with other systems, as other PAM solutions can perform account discovery and onb...
 

Also Known As

No data available
CyberArk Privileged Access Security, CyberArk Enterprise Password Vault
 

Overview

 

Sample Customers

Information Not Available
Rockwell Automation
Find out what your peers are saying about Idira by Palo Alto Networks, One Identity, Okta and others in Privileged Access Management (PAM). Updated: July 2026.
906,829 professionals have used our research since 2012.