

CyberArk Identity and StrongDM are key competitors in the enterprise security software category. While CyberArk Identity stands out for its comprehensive identity governance and system integration, StrongDM seems to have the edge with its credential-less access and audit features, making it particularly attractive for cloud and hybrid environments.
Features: CyberArk Identity excels in integrating with existing systems, offering single sign-on (SSO), multi-factor authentication (MFA), identity governance, and role-based access control. It effectively manages administrative access and compliance requirements, with robust session monitoring. StrongDM is notable for its session logging, credential-less access, and detailed audit trails. It integrates seamlessly with cloud environments and Kubernetes, providing centralized resource management and rapid offboarding.
Room for Improvement: CyberArk Identity needs to address issues concerning its GUI, the complexity of deployment, and support. Users express the need for enhanced mobile device management (MDM) features, improved integration, and clearer documentation. StrongDM could enhance its onboarding process for larger enterprises, fine-tune dashboard customization, and expand its reporting and change management features. Improved documentation and planning for complex environments are also needed.
Ease of Deployment and Customer Service: CyberArk Identity offers flexible deployment options, including on-premises and hybrid cloud, which can complicate deployment processes. While some users praise its technical support for quick resolutions, others criticize it for lack of depth. StrongDM, primarily operating in hybrid and public cloud models, benefits from easier deployment and is renowned for responsive customer support. However, it still requires improvements in documentation and setup processes.
Pricing and ROI: CyberArk Identity is generally considered expensive, particularly for on-premises setups, but is seen as a long-term investment in identity management and compliance, leading to potential cost savings. StrongDM, while also competitively priced, is valued for operational cost savings and efficient cloud management, justifying its cost through effective support and simplicity.
I have seen over 30% return on investment due to the improvement in operational efficiencies through automation, which enhances productivity.
I can definitely say that it saved us time, and a lot of it. Probably months worth of time in engineering and IT support.
The onboarding of temporary privileged access accelerated significantly, allowing us to release consultants much faster than before, saving considerable money.
We need fewer employees now because StrongDM saves our time by eliminating manual work.
They resolved the problem immediately after I reported it, on the same day, within one hour.
They respond immediately when requests are raised, and they are always available for priority one tickets.
I received prompt responses and support, which I would rate as very good.
They responded quickly to issues and were readily available for calls rather than waiting for email confirmations.
The technical support is responsive and knowledgeable.
They also have very good documentation, where they often ask us to refer to a particular document but can provide excellent on-call support.
When delving deep into the concepts, there is a lot to address and learn, especially when facing real-time scenarios.
You can scale it out pretty easily, and you can implement it very small.
CyberArk Identity is definitely a scalable solution; it all depends on the money that you have, as with anything else.
If a larger organization such as Microsoft or Dell adopted it, there would be more privileged accounts, showing the product's potential to grow if issues in maintenance and crashing are resolved.
StrongDM's scalability is impressive; it is highly available, and we never perceived any latency issues.
StrongDM has very large and good scalability, capable of providing a million data in a second, showcasing its great scalability.
We no longer have our data infiltrated by unauthorized persons, and tracking actions within the system has become very easy.
When you have it in the cloud, you have CyberArk every time you need it.
With a stable network, due to the redundant data centers across the globe, it is a lot easier to use as a SaaS solution.
The gateway sometimes crashes, and you are unable to retrieve passwords.
StrongDM is very stable; I cannot recall experiencing a glitch.
I rate the stability of the product five out of ten because crashes sometimes happen when we are working on it.
It would be helpful if they released a generalized document for processes such as migration.
Integration or deployment is extremely difficult for CyberArk Identity.
There's a need to enhance network performance.
StrongDM has limited MFA and passwordless options, relying heavily on time-based one-time passwords (OTP) or Duo, lacking support for true passwordless setups like biometrics or hardware YubiKeys, and it does not support per-session MFA.
It would be beneficial to have better control and alignment between frequent updates and improved communication regarding possible negative effects on existing customer bases.
It is difficult to find documentation or materials to review how it works, and there is less product material available in the market.
Regarding pricing, it can be quite a lot for small companies.
If I am not going fully cloud, there are additional resources I will need to purchase, such as spinning more VMs or acquiring an HSM device to encrypt the vault.
For comparison, Okta was around five dollars per user.
The setup cost was free, with technical staff aiding our onboarding, requiring us only to cover the license fee.
It was mentioned that while the product is rapidly gaining features, it might become cost-prohibitive for wider usage.
My thoughts on the pricing of StrongDM is that it is expensive.
It impacts zero trust security strategies. It prevents lateral movements in the organization.
The two-factor authentication is very important, but the fact that every account is being regenerated every time we use it is the most important security feature for us.
It is the most powerful access management system.
One of the most powerful tools in StrongDM is audit logging.
Just-in-Time Access is the primary feature that works well and makes life easier for us here at LivePerson.
The best features for us are the centralized access control and the detailed audit logging, which allow us to provide temporary privileged access without managing VPNs ourselves.
| Product | Mindshare (%) |
|---|---|
| Idira Identity | 3.7% |
| StrongDM | 0.8% |
| Other | 95.5% |


| Company Size | Count |
|---|---|
| Small Business | 20 |
| Midsize Enterprise | 4 |
| Large Enterprise | 10 |
| Company Size | Count |
|---|---|
| Small Business | 5 |
| Midsize Enterprise | 3 |
| Large Enterprise | 9 |
CyberArk Identity is a versatile identity management solution suitable for a wide range of enterprises. It is designed to enhance enterprise security and improve user experience. Its focus on security, compliance, and operational efficiency, combined with positive user feedback, makes it a strong contender in the identity management space.
CyberArk Identity offers a robust suite of features to manage user identities and access privileges. It focuses on securing access to resources across various environments, including cloud and on-premises applications. Its capabilities include single sign-on (SSO), multi-factor authentication (MFA), lifecycle management, and privileged access management. These features are engineered to streamline access control, enhance security, and ensure compliance with regulatory standards.
According to our user interviews, CyberArk Identity is praised for its reliability and user-friendly interface. IT professionals highlight the ease of integration with existing systems, while business executives appreciate the visibility it provides into access and identity management across the organization. Users also commend the responsive customer support, which is crucial for enterprise-level solutions.
IT Professionals found that CyberArk Identity's focus on multi-layered security significantly reduced the risk of data breaches and unauthorized access. With a centralized dashboard and automation features, you can streamline identity and access management tasks, saving time and reducing complexity. Finally, it helps meet various compliance requirements.
StrongDM streamlines secure, password-less access, reducing attack surfaces with its zero trust approach. It integrates smoothly with existing systems supporting IP whitelisting and excels in managing runtime features while offering comprehensive audit logging and seamless resource access.
StrongDM provides organizations with enhanced security through features like password rotation and efficient management of access to resources such as EC2 instances, Kubernetes clusters, and databases. Its integration capabilities are complemented by cost-effectiveness compared to competitors like CyberArk. Companies utilize StrongDM for controlling access in dynamic environments, benefiting from audit logging for detailed movement tracking. While users appreciate its efficiency, they also seek improvements in update control and better accompanying documentation. Some express the need for a cloud-native option to address diverse demands, as the current setup can be challenging without comprehensive materials. Flexibility and more traditional PAM features are in demand.
What are StrongDM's key features?In industries managing sensitive data or requiring regulated access, StrongDM is crucial for securing cloud private networks and managing user access to databases and hosts. DevOps teams benefit from its ability to protect connectivity to backend servers, ensuring identity and access management remains robust and adaptable for companies dealing with frequent changes or expansions.
We monitor all Access Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.