No more typing reviews! Try our Samantha, our new voice AI agent.

Idira Privileged Access Manager vs WALLIX Bastion comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 2, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Idira Privileged Access Man...
Ranking in Privileged Access Management (PAM)
1st
Average Rating
8.6
Reviews Sentiment
6.8
Number of Reviews
230
Ranking in other categories
User Activity Monitoring (1st), Enterprise Password Managers (2nd), Mainframe Security (1st), Operational Technology (OT) Security (3rd)
WALLIX Bastion
Ranking in Privileged Access Management (PAM)
10th
Average Rating
7.4
Reviews Sentiment
6.7
Number of Reviews
13
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the Privileged Access Management (PAM) category, the mindshare of Idira Privileged Access Manager is 8.6%, down from 16.5% compared to the previous year. The mindshare of WALLIX Bastion is 3.4%, down from 7.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Privileged Access Management (PAM) Mindshare Distribution
ProductMindshare (%)
Idira Privileged Access Manager8.6%
WALLIX Bastion3.4%
Other88.0%
Privileged Access Management (PAM)
 

Featured Reviews

Singaravelu C - PeerSpot reviewer
CyberArk Engineer at Tata Consultancy
Provides full visibility into user activity and ensures secure end-to-end access across critical systems
In CyberArk Privileged Access Manager, I see room for improvement as I am working in the on-premises networks, and now we are also having the cloud-based PAM. So there, everything is maintained by the CyberArk Privileged Access Manager team, and we are only maintaining the PSM servers. So it is already upgraded from the on-premises network to the cloud network. If you ask me what we can implement beyond that, I just need a few minutes to think about what new things, because it is already an end-to-end security on-premises itself. Now, when it comes to PCloud, Privileged Cloud, it is more secure than the on-premises networks because most of the things are handled using the cloud itself. So it is an already upgraded version; we do not need to implement something new. But if you think in that way, we can have a chance to implement our things. If anything could be improved in CyberArk Privileged Access Manager, I think we could build a small agent AI in my team, we could give access to these logs—the Vault logs, PSM logs, and CPM logs. Whenever the system is going down, the AI will automatically check. If we actually implement agent AI in CyberArk Privileged Access Manager, it will check the logs, and if any errors are coming, it automatically triggers alerts and gives the solution. That is the best improvement I can think of because these days, most things are done by agent AI. So if we also implement this agent AI in CyberArk Privileged Access Manager, we can add more features.
René DRABO - PeerSpot reviewer
Team Lead at a tech services company with 1,001-5,000 employees
Security has improved with monitored privileged sessions but the complex interface still needs work
I do not find WALLIX Bastion easy to use and ergonomic, but I have no clue about how much it costs. When I say it is not easy to use, I mean the interface is complex, but it might not be directly linked to the product; it might be linked to the way we implemented it in our context. The way we have to connect to a third Bastion and then launch another session bothers me. We also have some limitations, but I think this is linked to our context regarding how many times the session can stay open on the Windows session, which is not aligned with my needs. I am more of a promoter of other kinds of handling privileged access management with my use case, but it might not be linked to the tool; it is just because the implementation we made is not what I expect for my needs and it is not the way I want to work on my servers. In the past, I used the leader in PAM but cannot remember the name. I was more satisfied because the connection was more straightforward: I click on a button, make my authentication, and have my servers open, and this is the way I want it. The UI was the main reason why I thought the previous tool I was using was better.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"CyberArk Privileged Access Manager indeed helps meet compliance and regulatory requirements for customers, especially in the financial sector, by aligning with PCI DSS standards."
"The solution is stable and reliable."
"The auditing and recording functionality along with stringent password-change policies and one-time password use has made compliance with customer requirements a much clearer and easily managed process."
"The product is an important security measure against credential theft. It ensures session isolation and password rotation including pushing passwords to the endpoints."
"It improves security in our company. We have more than 10,000 accounts that we manage in CyberArk. We use these accounts for SQLs, Windows Server, and Unix. Therefore, keeping these passwords up-to-date in another solution or software would be impossible. Now, we have some sort of a platform to manage passwords, distribute the inflow, and manage IT teams as well as making regular changes to it according to the internal security policies in our bank."
"Securely protects our TAP/NUID and privileged access accounts within the company."
"CyberArk Privileged Access Manager has several valuable features; the basic feature is privileged access management with all the processes and procedures that are needed, and it does everything that is needed to provide a PAM project or program."
"The password rotation and cyber gateway have been quite useful."
"I feel WALLIX is better because it's simple, seamless, and easy to integrate."
"The most valuable feature of WALLIX Bastion is its password management capability, which is central to safeguarding sensitive information."
"I like that it's Linux-based, and you don't need to have separate implementations, extra database licenses, or enterprise licenses. I think because it's Linux-based, it's more seamless than Windows. I also like the access manager, which I think is a super tool. Everything is browser-based, and you don't need a VPN. So, that's a great thing."
"The support is great. They offer 24/7 support, but the specific level of support depends on your subscription. There's a weekday-only option, and a 24/7 option that covers all days of the week. They also have offices in different regions, including West Africa, so people there can easily get support. There's no need to worry about getting assistance."
"The solution's technical support team is helpful."
"WALLIX Bastion is a security tool that protects us, and I think we are protected with this tool."
"Technical support is very good; they have their own ticket system that is available for all customers and their system is already in different languages, for example, English, French, and, for us, Russian."
"Bastion provides a kind of isolation between the administration laptop and the server you want to administer."
 

Cons

"I find it hard to mention a point of improvement because I'm happy with the platform. The only thing I would say is that they can improve their price."
"CyberArk could enhance its usability by simplifying its architecture and design."
"For least privilege management, we need a different level of certification from privileged management."
"Although it's highly configurable, the user interface could use a do-over."
"The current process for accessing RDP through the CyberArk or administrative portal involves downloading an RDP file. This is inconvenient for users and problematic due to security restrictions that prevent accessing servers via downloaded RDP files."
"CyberArk definitely needs to improve user experience and reduce complexity."
"We require IAM (identify and access management) capability at the administrator level because we need more identification."
"Their support can be better. Their SLA timings are higher than others."
"Reporting requires improvement; it is basic, allowing only CSV file extraction with no analytics features."
"There could be more automation features for the solution."
"Deploying Bastion isn't as straightforward."
"Based on my experience as a sales tech person, one area of improvement could be a more unified licensing model."
"The performance of WALLIX Bastion's password manager is very low."
"It would be better if I could manage multiple accounts in one place, like CyberArk. With WALLIX, you can only manage one account, and you are given a separate category. You have to click on each connection to do anything. For example, CyberArk might give three options for one connection if you want to have an interactive user-level experience. But with WALLIX, you have to click three times to get that access. Also, the biggest disadvantage of WALLIX is the reporting. I feel like it's very weak in reporting when compared to the other solutions. As a solution, they're good and stable. But they need to make their reports neater and better. Right now, we're going to the console and then pressing buttons every single time."
"The product doesn't have behavior analytics. They promised to develop this, but only for the cloud, not for on-premise versions."
"I do not find WALLIX Bastion easy to use and ergonomic."
 

Pricing and Cost Advice

"The SaaS version of CyberArk Enterprise Password Vault is very expensive, but the on-premises version is relative, e.g. depending on the size of the environment, it can be a bit pricey, but it's relatively okay compared to the others."
"The main problem for the tool is its licensing. I work for a really big company. When you try to develop this as a service, usually you work with leverage teams who are formed with dozens of members. You might dedicate one FTE, or less, for something, e.g., an antivirus administrator. You might have half an FTE's effort dedicated to administering the antivirus, but then you have a team of about 30 users who might access that ticket. The problem is that CyberArk eliminated the possibility of concurrent users years ago. This is a big problem for companies who work with leverage teams. You need to pay for everyone. 40 licenses are used by 20 or 30 people. This is a big problem because licenses are not precisely cheap."
"Cost efficiency is the number one thing that can be improved in my mind. This would change lots of companies minds on purchasing the product."
"CyberArk Enterprise Password Vault is a very expensive product."
"The price of this solution is expensive."
"I rate the tool's pricing an eight out of ten."
"Pricing is quite high and it could be improved."
"The price of CyberArk Privileged Access Manager could be less expensive."
"Some extra price needs to be paid for license."
"The solution's price is mid-ranged."
"The solution's pricing is comparable to that of other products."
report
Use our free recommendation engine to learn which Privileged Access Management (PAM) solutions are best for your needs.
913,076 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
12%
Financial Services Firm
12%
Manufacturing Company
9%
Construction Company
7%
Financial Services Firm
12%
Comms Service Provider
10%
Computer Software Company
9%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business59
Midsize Enterprise42
Large Enterprise175
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise1
Large Enterprise5
 

Questions from the Community

How does Sailpoint IdentityIQ compare with CyberArk PAM?
We evaluated Sailpoint IdentityIQ before ultimately choosing CyberArk. Sailpoint Identity Platform is a solution to manage risks in cloud enterprise environments. It automates and streamlines the m...
What is your experience regarding pricing and costs for CyberArk Privileged Access Manager?
My thoughts on the pricing of CyberArk Privileged Access Manager depend entirely on the vendors' requirements. If they want their things to be secure, they have to spend accordingly. We have four t...
What needs improvement with CyberArk Privileged Access Manager?
I believe account discovery and rolling support need to be improved. Account discovery is important when integrating with other systems, as other PAM solutions can perform account discovery and onb...
What is your experience regarding pricing and costs for WALLIX Bastion?
The price of WALLIX Bastion is rated five out of ten, positioning it in the middle. The cost is justified by the features and capabilities we receive.
What needs improvement with WALLIX Bastion?
I do not find WALLIX Bastion easy to use and ergonomic, but I have no clue about how much it costs. When I say it is not easy to use, I mean the interface is complex, but it might not be directly l...
What is your primary use case for WALLIX Bastion?
The major use cases for WALLIX Bastion are general privileged access management, such as connecting to a server or securing SSH.
 

Also Known As

CyberArk Privileged Access Security, CyberArk Enterprise Password Vault
Bastion
 

Overview

 

Sample Customers

Rockwell Automation
RTBF, Pharmagest, Michelin Group, Niort Hospital
Find out what your peers are saying about Idira Privileged Access Manager vs. WALLIX Bastion and other solutions. Updated: September 2026.
913,076 professionals have used our research since 2012.