No more typing reviews! Try our Samantha, our new voice AI agent.

Idira Endpoint Privilege Manager vs Symantec Privileged Access Manager comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 2, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Idira Endpoint Privilege Ma...
Ranking in Privileged Access Management (PAM)
6th
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
38
Ranking in other categories
Endpoint Compliance (5th), Anti-Malware Tools (10th), Application Control (6th), Ransomware Protection (4th)
Symantec Privileged Access ...
Ranking in Privileged Access Management (PAM)
15th
Average Rating
7.8
Reviews Sentiment
7.0
Number of Reviews
53
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the Privileged Access Management (PAM) category, the mindshare of Idira Endpoint Privilege Manager is 2.5%, down from 3.2% compared to the previous year. The mindshare of Symantec Privileged Access Manager is 1.9%, up from 1.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Privileged Access Management (PAM) Mindshare Distribution
ProductMindshare (%)
Idira Endpoint Privilege Manager2.5%
Symantec Privileged Access Manager1.9%
Other95.6%
Privileged Access Management (PAM)
 

Featured Reviews

Sumit Chavan - PeerSpot reviewer
Lead Consultant at a tech vendor with 501-1,000 employees
Helps secure the infrastructure and control users with admin rights
There are many features that are currently missing. A customization option is required for certain policies. For instance, if we need to stop PowerShell scripting, we have to create a different policy for that. Being able to create a sub-level policy within a top-level policy would be good. Currently, no user-based policy option is available inside the EPM console. We can only create computer-based policies. The database is available, but there is a drawback in not being able to create local groups on the EPM console. We only have to depend on Active Directory. This limits infrastructure security as we depend on the Active Directory team to manage user groups. If they remove any users, we lose control. If we could create groups locally and block them or set specific policies, we would have more control. Local endpoint management is missing from the EPM site. Moreover, there is an issue with policies not running as expected when we make enhancements. We have to find multiple ways to whitelist applications or enhance policies.
Muzi Lubisi - PeerSpot reviewer
Senior technical Consultant at CA Africa
Secure management of sensitive servers and seamless applications with direct linking
The credential injection feature is highly valued, particularly for RDP sessions. A majority of customers use it for RDP, and a couple for Linux servers. The broader capabilities, including access to multiple systems, web-based applications, and clustering, have never posed an issue. The threat analytics aspect is also a robust feature that analyzes all pertinent information.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"CyberArk Endpoint Privilege Manager has had a positive impact on my customers' security posture."
"It doesn't affect operational efficiency. If you set everything correctly, the user doesn't notice that it is in the background."
"You can use it to strip users of their local admin rights and, at the same time, elevate applications for them."
"CyberArk Endpoint Privilege Manager helped us reduce the time for regulatory processes to approximately two to four months, completing the solution and training."
"We have not had issues with CyberArk. It works very smoothly. We can do many things with CyberArk. It helps us to see exactly what is happening."
"I like that you can remove the admin rights from the user's computer and have control over the environment. That means you can delete the local admins and grant them proper privileges with the console. So, they will get proper permissions for applications they need, but we don't have to do it. In the domain where we don't have control, the user can only do specified actions, but not all of them."
"We did immediately begin to see results when using CyberArk."
"The solution's technical support is good."
"It reduces the viral attacks on my website. It also allows certain users access to see what happens daily."
"Manager user/admin’s password, so it’s more secure and password will be changed on time."
"The DB clustering is a really good benefit of using CA PAM."
"On the access management side, our system administrators, under privileged management, don't have to use their local tools to log on to the production servers, because they log on to a web interface that makes the access more secure and keeps the sessions strictly between the production servers and the IA PAM."
"The solution has the capability to address hybrid eco-systems, both on-premises and cloud services, and integration with the AD RBAC model is also a great feature, as we can tie it to the central repository."
"The RDP-gateway: For limiting which server an operator can access."
"Comprehensive coverage of the required features for the PAM solution."
"Transparent login and cluster synchronization are quite stable compared with other products, and it is easy to manage for the administrator."
 

Cons

"CyberArk Endpoint Privilege Manager can improve its Identity Governance, which is already working effectively yet could continue to enhance its capabilities."
"If you do not have certification, you cannot send a ticket; this makes dealing with technical support difficult."
"Compared to other tools like Linux, this solution isn't as user-friendly."
"The installation process is pretty difficult."
"CyberArk Endpoint Privilege Manager is a perfect solution, but CyberArk Endpoint Privilege Manager for Linux has many issues. Another area for improvement in CyberArk Endpoint Privilege Manager, specifically for Windows, is that there's no way for you to check credential theft from a text file, such as a notepad file."
"They need much better integration with Azure AD."
"It cannot be on-prem. It is only cloud-based. Sometimes, that's a restriction in terms of usage."
"The management of Privilege Access is not satisfactory."
"The product has not improved our organization."
"The accessibility and other issues were big blockers for our customer: The local accounts with AD integration multi-tenant deployment Java installation on the local machines; those three elements were the biggest blockers for our project when we used it, and we were always putting out fires to do that."
"Stability is a problem that we fight every day."
"We had some issues with the load balancing feature when configured for clustering."
"I would like to see improvements in branding customization and multi-tenancy."
"The cons are that you are rarely (if ever) able to talk to a technician when calling support."
"I think the management console could be improved."
"Now, the reporting feature on CA PAM only shows the basic information in white-black table format."
 

Pricing and Cost Advice

"CyberArk Endpoint Privilege Manager has a very high price, so it's a one out of ten for me in terms of pricing."
"Although I do not deal directly with the pricing, CyberArk Endpoint Privilege Manager is costly compared to other solutions. However, it offers beneficial features."
"I rate the solution's pricing an eight out of ten since the price can be too high for smaller businesses."
"The solution's pricing is reasonable compared to other vendors' products."
"We pay about $17 per user."
"The cost for CyberArk is very high."
"I think that it was in the range of $200,000 that had to get approved."
"It is an expensive solution."
"The licensing is simple and scalable."
"I would prefer better licensing options for the 20-100 users we have at a given time."
"It is reasonably priced."
"Pricing is fair compared to other top vendors."
"Appliances are relatively cheap, don’t skimp. Make sure you have redundancy, high availability, and enough appliances to manage the concurrent workload."
"The version we are using is affordable compared to BeyondTrust, which is maybe three to four times as expensive, but it depends on the features."
"They offer per-device, per-user, or monthly and yearly licensing models."
"It is more expensive than other solutions on the market."
report
Use our free recommendation engine to learn which Privileged Access Management (PAM) solutions are best for your needs.
913,076 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
13%
Outsourcing Company
10%
Manufacturing Company
10%
Construction Company
8%
Outsourcing Company
20%
Construction Company
13%
Comms Service Provider
6%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business18
Midsize Enterprise9
Large Enterprise19
By reviewers
Company SizeCount
Small Business14
Midsize Enterprise6
Large Enterprise30
 

Questions from the Community

Looking for recommendations and a pros/cons template for software to detect insider threats
This is an inside-out --- outside-in --- inside-in question, as an insider can be an outsider as well. There is no short answer other than a blend of a PAM tool with Behavioral Analytics and Endpo...
What is your experience regarding pricing and costs for CyberArk Endpoint Privilege Manager?
I believe it's quite a reasonably priced solution. It's not very common to use CyberArk because it's a niche solution, but customers who are willing to control administrative accounts are willing t...
What needs improvement with CyberArk Endpoint Privilege Manager?
While CyberArk Endpoint Privilege Manager is a great tool, I believe the functionality could be wider. If it could work not only with permissions but also involve pure EDR tasks or User and Entity ...
What is your experience regarding pricing and costs for Symantec Privileged Access Manager?
Due to the nature of the solution, it is hard to gauge, but compared to competitors, the pricing is very good. I would rate it as an eight and a half out of ten.
What needs improvement with Symantec Privileged Access Manager?
Recent releases need improvement in webpage management. For instance, navigating through a webpage that acts like a wizard, where I proceed to the next page and enter more information, is not handl...
What is your primary use case for Symantec Privileged Access Manager?
With the customers that I have so far, I help them broker RDP sessions to sensitive servers, particularly those that manage aspects like physical access. I have also done it for backend databases, ...
 

Also Known As

Viewfinity
CA PAM, Xceedium Xsuite, CA Privileged Access Manager
 

Overview

 

Sample Customers

Information Not Available
NEOVERA, Telesis, eSoft
Find out what your peers are saying about Idira Endpoint Privilege Manager vs. Symantec Privileged Access Manager and other solutions. Updated: September 2026.
913,076 professionals have used our research since 2012.