No more typing reviews! Try our Samantha, our new voice AI agent.

Microsoft Entra ID vs SAP Access Control comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Entra ID
Ranking in Access Management
1st
Average Rating
8.6
Reviews Sentiment
7.0
Number of Reviews
276
Ranking in other categories
Single Sign-On (SSO) (1st), Authentication Systems (1st), Identity Management (IM) (3rd), Identity and Access Management as a Service (IDaaS) (IAMaaS) (1st), Microsoft Security Suite (2nd)
SAP Access Control
Ranking in Access Management
17th
Average Rating
7.6
Reviews Sentiment
3.5
Number of Reviews
2
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of June 2026, in the Access Management category, the mindshare of Microsoft Entra ID is 12.1%, down from 26.6% compared to the previous year. The mindshare of SAP Access Control is 0.9%, up from 0.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Access Management Mindshare Distribution
ProductMindshare (%)
Microsoft Entra ID12.1%
SAP Access Control0.9%
Other87.0%
Access Management
 

Featured Reviews

Stafin Jacob - PeerSpot reviewer
Microsoft 365 Security & Compliance Practice Lead at Invoke
Identity has become our central gatekeeper and has provided secure single sign-on for all users
Microsoft Entra ID can improve by focusing more on new passwordless methods and becoming a primary adopter. One feature we would like to see is the ability to have security questions for password resets. I know the current capability is phasing out, so we do not have an alternative method yet. Customers who already use security questions require a smoother transition for that capability to be available. My experience with the deployment has had some challenges, particularly around the Microsoft MFA campaigns. The hardest part is moving users from a different MFA provider to the Microsoft MFA provider, as it ultimately depends on user activity. In large enterprises with numerous users across various geographies, this transition takes time. If there are ways to exert more control around that process, it would improve the situation.
reviewer2129061 - PeerSpot reviewer
Sap Its Workstream Manager at a energy/utilities company with 10,001+ employees
Centralized access control has improved risk detection and streamlined multi-system user provisioning
Having one tool to populate many systems for one user is one of the most beneficial aspects of the product, along with the audit part. When using Firefighter, we could have information about what a user modified or did in production because we sometimes have to use an SU01 transaction, so in that case, we use Firefighter. The main benefit for me is that it is a global system to manage the user in many systems, and also the assessment of risk with GRC. We are using Access Request to onboard people. I see some potential improvements for stability because sometimes we do not know why the approval workflow of GRC stops in the middle. When we have a look in GRC, we see that the validation is finished, but that is not the case. Sometimes, we have to check and relaunch GRC. It helps in risk detection. The benefits of SAP Access Control's user permissions management are measured through the reports in GRC. Time savings are obvious. In one request, we are able to create a user in a different system, so it is a time saving. It is a money saving as well because the access manager spends less time creating a user in a different system.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"With Azure Active Directory we were able to manage with different options the access for different users."
"For some applications, it's not only working for authentication but it's also being used to apply roles for users. From the management perspective, it's much better to have this because in the past we constantly needed to go into the console of the different solutions and create or delete users or modify their roles and permissions. Now, with Azure Active Directory, we can do that from a single point. That makes our management model much easier."
"The implementation of Microsoft Entra ID has definitely made app access easier and more seamless for working with Azure registered apps by allowing them to be integrated within the system and setting up SSOs and secure authentication through Entra."
"It offers good Microsoft integration capabilities."
"Entra has made it easy to manage identity and access by integrating with all Microsoft services."
"Microsoft Entra ID's integration capabilities have been the foundation for our Zero Trust model because my team only sets up integration and Azure App Registrations based on a request and we review them."
"The solution is extremely scalable."
"The ability to offer employees access to any platform, including private PCs and tablets, has been a game-changer."
"Having one tool to populate many systems for one user is one of the most beneficial aspects of the product, along with the audit part."
"It is an SAP product, so it integrates very well with other SAP products."
 

Cons

"At first, it was a bit challenging to come up with a workaround that would get authentication to work."
"The technical support has its downsides and upsides. While they are fast, it can take time to get the right person because there are many steps to reach the appropriate team member at Microsoft support, which can be somewhat annoying."
"There are many new features being added all the time, and Microsoft is advancing at a pace that aligns with our needs. I can't think of anything immediate that needs improvement."
"I would rate it an eight out of ten. The price plays a factor in the rating."
"Four years ago, we had an issue with Azure AD. We wanted to reverse sync from Azure AD to on-prem Active Directory, but we couldn't achieve this. Azure AD could connect only in one way, for example, from your site to Azure. If you needed to do the reverse and connect from Azure to on-prem, there was no way to achieve it. We asked Microsoft, and they told us that they don't support it."
"There are areas for improvement, particularly when moving between tenants. If we create a new tenant and try to set it up under the same organization, it becomes extremely difficult. A recent incident we dealt with took four months to resolve with a seven-day deadline, which was quite frustrating."
"The technical support could improve by having a faster response time."
"It would be ideal if the solution moved to a passwordless type of environment. It's the future of authentification. It's also more secure and convenient."
"It would be better if we could also manage other systems with it. Currently, you have to purchase plugins for it to work with other non-SAP systems. It would be good if there is an easy way to integrate SAP Access Control with other non-SAP systems."
"Because it took time to get advice on a tricky issue, the support from SAP could be better."
 

Pricing and Cost Advice

"The price of the solution's license is good."
"I would advise implementing the solution to VIPs and admins; it's affordable, effective, and efficient. I would say training staff on properly using the tool is also essential."
"Its price is per user. It is also based on the type of user that you're synchronizing up there."
"The product is relatively affordable, especially compared to Okta, a pricey solution."
"Azure Active Directory has a very extensive licensing model. Most of the features are available in the free and basic version, and then there are premium P1 and P2 editions. The licensing model is based on how many users you have per month. In Australia, for a P1 license, the cost is 8 dollars. With P1 and P2 licenses, you get a lot of goodies around the security side of things. For example, User Identity Protection is available only in P2. These are extra features that allow you to have a pretty good security posture, but most of the required things are available in the free and basic version."
"Previously, only building and global administrators could purchase subscriptions or licenses. Mid-last year, Microsoft made it so users can purchase the license online. Microsoft business subscription is for 200 to 300 users. If you have more than 300 users, you can't purchase the business plan. You have to purchase the enterprise plan. The enterprise plan is for 301 users and above. Pay as you go is also available. If you pay as you go in Azure, you will be billed for whatever you use."
"It's pretty good. We're using the native features. It's bundled with our Office 365 licenses. We aren't paying anything extra for Azure Active Directory. It's pretty good for us because it's complementary to Office 365. We're only paying for Office 365."
"MFA and P2 licenses for two Azures for fully-enabled scenarios and features cost a lot of money. This is where Okta is trying to get the prices down."
"It is a part of our package with SAP. There is no extra cost in addition to the license."
report
Use our free recommendation engine to learn which Access Management solutions are best for your needs.
900,644 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
12%
Manufacturing Company
8%
Government
8%
Computer Software Company
7%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business90
Midsize Enterprise40
Large Enterprise161
No data available
 

Questions from the Community

How does Duo Security compare with Microsoft Authenticator?
We switched to Duo Security for identity verification. We’d been using a competitor but got the chance to evaluate Duo for 30 days, and we could not be happier. Duo Security is easy to configure a...
What is your experience regarding pricing and costs for Azure Active Directory?
My experience with pricing, setup cost, and licensing is that going through and being able to use these things is always part of delivering an M365 bundle, so I don't think the experience is great ...
What needs improvement with Azure Active Directory?
Microsoft Entra ID can be improved by open-sourcing it. You already have Windows Subsystem for Linux, which is open-source Linux in Microsoft. One major shift for Microsoft would be using the commo...
What needs improvement with SAP Access Control?
SAP Access Control is quite complex. The complexity arises because we need a GRC specialist to set up the connection between GRC and the other system. We also spend time doing some specific configu...
What is your primary use case for SAP Access Control?
The major use case for SAP Access Control is to create an end-user account, and the second purpose is to check the Separation of Duties risk and the risk on our roles and authorizations. Having one...
What advice do you have for others considering SAP Access Control?
We do work with some other SAP products. We are using SAP Access Control with the GRC Access Control product. We are also using the module for Separation of Duties and the Firefighter module. It is...
 

Also Known As

Azure AD, Azure Active Directory, Azure Active Directory, Microsoft Authenticator
No data available
 

Interactive Demo

Demo not available
 

Overview

 

Sample Customers

Microsoft Entre ID is trusted by companies of all sizes and industries including Walmart, Zscaler, Uniper, Amtrak, monday.com, and more.
Information Not Available
Find out what your peers are saying about Microsoft Entra ID vs. SAP Access Control and other solutions. Updated: June 2026.
900,644 professionals have used our research since 2012.