No more typing reviews! Try our Samantha, our new voice AI agent.

Idira Endpoint Privilege Manager vs Veza comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 2, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Idira Endpoint Privilege Ma...
Ranking in Privileged Access Management (PAM)
6th
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
38
Ranking in other categories
Endpoint Compliance (4th), Anti-Malware Tools (10th), Application Control (5th), Ransomware Protection (6th)
Veza
Ranking in Privileged Access Management (PAM)
25th
Average Rating
7.6
Reviews Sentiment
6.7
Number of Reviews
2
Ranking in other categories
GRC (24th), Identity Management (IM) (23rd), SaaS Security Posture Management (SSPM) (9th), Non-Human Identity Management (NHIM) (7th), Identity Security and Posture Management (ISPM) (3rd)
 

Mindshare comparison

As of July 2026, in the Privileged Access Management (PAM) category, the mindshare of Idira Endpoint Privilege Manager is 2.4%, down from 3.3% compared to the previous year. The mindshare of Veza is 1.5%, up from 0.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Privileged Access Management (PAM) Mindshare Distribution
ProductMindshare (%)
Idira Endpoint Privilege Manager2.4%
Veza1.5%
Other96.1%
Privileged Access Management (PAM)
 

Featured Reviews

Sumit Chavan - PeerSpot reviewer
Lead Consultant at a tech vendor with 501-1,000 employees
Helps secure the infrastructure and control users with admin rights
There are many features that are currently missing. A customization option is required for certain policies. For instance, if we need to stop PowerShell scripting, we have to create a different policy for that. Being able to create a sub-level policy within a top-level policy would be good. Currently, no user-based policy option is available inside the EPM console. We can only create computer-based policies. The database is available, but there is a drawback in not being able to create local groups on the EPM console. We only have to depend on Active Directory. This limits infrastructure security as we depend on the Active Directory team to manage user groups. If they remove any users, we lose control. If we could create groups locally and block them or set specific policies, we would have more control. Local endpoint management is missing from the EPM site. Moreover, there is an issue with policies not running as expected when we make enhancements. We have to find multiple ways to whitelist applications or enhance policies.
HarshalJethwa - PeerSpot reviewer
Cloud Operations Engineer at a tech vendor with 51-200 employees
Centralized access control has strengthened least privilege and streamlined audit compliance
The best features Veza offers in my experience are access visibility to see who can access what and which parts, relationship mapping of a user to roles, policies and resources, and risk detection such as over-permission and unused permission privileges. I can perform audit compliance using those features and the platform supports multiple platforms. Out of those features, I find risk detection to be the most valuable in my day-to-day work because I can check who has over-permission or unused permissions and understand relationship mapping and access visibility. Veza has positively impacted my organization by improving access for our users, allowing us to check the user and perform auditing for our system or organization. We are now able to implement least privilege practices, which has made our organization and system more secure.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution allows me to give access and privileges to each user individually"
"I have always found that CyberArk is a very tight, foolproof product compared to most other products available."
"The password rotation and the session recording are the most valuable features."
"The most valuable feature is the ability to control users with admin rights. Even if developers and senior folks maintain their admin rights, we can still manage their activities."
"Their customer support was excellent."
"What sets CyberArk apart is its continuous innovation, staying ahead of the competition."
"You can use it to strip users of their local admin rights and, at the same time, elevate applications for them."
"It identifies the original source, and all instances of malicious applications in the environment."
"Veza has positively impacted my organization by improving access for our users, allowing us to check the user and perform auditing for our system or organization, and we are now able to implement least privilege practices, which has made our organization and system more secure."
"It's the only current GRC vendor with licensing rights for HITRUST 11.3 framework, and I've avoided expensive HITRUST licensing costs through a custom control framework."
 

Cons

"It's an old product and has many areas that can be improved."
"The turnaround time of the support team is an area of concern where improvements are required."
"It was complex to introduction the product to the end-users and the technical team."
"The solution is good but can be improved by allowing computers to be excluded from policies."
"If you do not have certification, you cannot send a ticket; this makes dealing with technical support difficult."
"CyberArk Endpoint Privilege Manager is not suitable for the current situation because when you compare it to OTP, OTP is the strongest password solution. You can use it as a one-time password, but you have to log into the password manager itself and if you don't change your password, it will be the weakest link in the security. In OTP, you don't have that weakest link."
"We have had some major issues with the tool, but we have worked with the R&D teams and we have worked with support. There is room for improvement, especially on response times. But they're working on it and they're doing the best they can."
"CyberArk Endpoint Privilege Manager can improve its Identity Governance, which is already working effectively yet could continue to enhance its capabilities."
"The support experience could be better."
"Veza can be improved as it is currently not suitable for small projects due to its high cost, complex setup, and requirement for more integration with multiple systems."
 

Pricing and Cost Advice

"The solution's pricing is reasonable compared to other vendors' products."
"The price of CyberArk Endpoint Privilege Manager is expensive."
"licensing for this solution is based on the number of APV (privileged users), and the number of sessions that you want to record."
"Pricing depends on how many devices you use. Right now, on-premise, it costs us a little, but it's worth it. It seems like the cloud solution is much more expensive. We got this solution one year ago, and it's like we bought the solution, and now they are not going to support it on-premise anymore. We are in the implementation phase, and we missed this, and we already paid for the licenses. This is wasted time from my perspective, and CyberArk should be more customer-friendly."
"The solution requires an annual license to use it. There can be some extra costs in some cases."
"The cost for CyberArk is very high."
"The tool is priced high. I would rate its pricing an eight out of ten."
"It's not at the lower end of the market. I think the price is reasonable considering the quality it delivers. It is a top-notch solution at a fair price point."
Information not available
report
Use our free recommendation engine to learn which Privileged Access Management (PAM) solutions are best for your needs.
906,852 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Manufacturing Company
11%
Outsourcing Company
7%
Government
7%
Financial Services Firm
14%
Manufacturing Company
10%
Healthcare Company
9%
Outsourcing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business18
Midsize Enterprise9
Large Enterprise19
No data available
 

Questions from the Community

Looking for recommendations and a pros/cons template for software to detect insider threats
This is an inside-out --- outside-in --- inside-in question, as an insider can be an outsider as well. There is no short answer other than a blend of a PAM tool with Behavioral Analytics and Endpo...
What is your experience regarding pricing and costs for CyberArk Endpoint Privilege Manager?
I believe it's quite a reasonably priced solution. It's not very common to use CyberArk because it's a niche solution, but customers who are willing to control administrative accounts are willing t...
What needs improvement with CyberArk Endpoint Privilege Manager?
While CyberArk Endpoint Privilege Manager is a great tool, I believe the functionality could be wider. If it could work not only with permissions but also involve pure EDR tasks or User and Entity ...
What is your experience regarding pricing and costs for Veza?
My experience with pricing, setup cost, and licensing is that the pricing is much higher and the setup is very complex.
What needs improvement with Veza?
Veza can be improved as it is currently not suitable for small projects due to its high cost, complex setup, and requirement for more integration with multiple systems. Additionally, there are no e...
What is your primary use case for Veza?
My main use case for Veza is to use it for authentication and to determine who can access what and what can be accessed by the system or organization users. We set permissions for cloud platforms a...
 

Also Known As

Viewfinity
No data available
 

Overview

Find out what your peers are saying about Idira Endpoint Privilege Manager vs. Veza and other solutions. Updated: June 2026.
906,852 professionals have used our research since 2012.