No more typing reviews! Try our Samantha, our new voice AI agent.

Palo Alto Networks Enterprise Data Loss Prevention vs Zscaler Zero Trust Exchange Platform comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 8, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cloudflare One
Sponsored
Ranking in Data Loss Prevention (DLP)
21st
Average Rating
8.6
Reviews Sentiment
6.5
Number of Reviews
23
Ranking in other categories
Email Security (20th), Secure Web Gateways (SWG) (12th), Cloud Access Security Brokers (CASB) (13th), Distributed Denial-of-Service (DDoS) Protection (8th), Software Defined WAN (SD-WAN) Solutions (12th), Access Management (11th), Bot Management (3rd), ZTNA as a Service (9th), ZTNA (4th), Secure Access Service Edge (SASE) (10th), Remote Browser Isolation (RBI) (3rd)
Palo Alto Networks Enterpri...
Ranking in Data Loss Prevention (DLP)
18th
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
7
Ranking in other categories
No ranking in other categories
Zscaler Zero Trust Exchange...
Ranking in Data Loss Prevention (DLP)
5th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
67
Ranking in other categories
Cloud Access Security Brokers (CASB) (8th), Application Control (4th), ZTNA as a Service (1st), Secure Access Service Edge (SASE) (2nd), Remote Browser Isolation (RBI) (1st)
 

Mindshare comparison

As of June 2026, in the Data Loss Prevention (DLP) category, the mindshare of Cloudflare One is 2.0%, up from 1.5% compared to the previous year. The mindshare of Palo Alto Networks Enterprise Data Loss Prevention is 1.9%, up from 1.7% compared to the previous year. The mindshare of Zscaler Zero Trust Exchange Platform is 4.1%, down from 6.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Data Loss Prevention (DLP) Mindshare Distribution
ProductMindshare (%)
Zscaler Zero Trust Exchange Platform4.1%
Palo Alto Networks Enterprise Data Loss Prevention1.9%
Cloudflare One2.0%
Other92.0%
Data Loss Prevention (DLP)
 

Featured Reviews

CV
Network Architect at IP Dimension
Cloud security has improved remote access and has reduced costs for smaller client sites
I have used Cloudflare One's Identity-Aware Proxy, and it is quite straightforward from what I have seen so far. The app registration on the Azure side integrates fully into Cloudflare, and I am very satisfied with that part because it is easy to set up. The integration of Cloudflare One's Secure Web Gateway and Zero Trust Network Access works without any issues. That part is pretty automatic, and if you complete the rest of the setup, it comes together by itself with no issues from my side. What makes it nice is that we can actually start replacing on-site firewalls at this stage for the smaller clients because it does not matter if they go to a coffee shop or work from home; they are still secured by the same connection. The hops get shorter and you get better latency. We have done testing to see if it is better. One thing that we did notice with our proof of concept with our current client is that they have people connecting from the UK. When they used their previous VPN solution, uploading CAD drawings and other files to the server took a long time. They mentioned that it is much quicker on Cloudflare One's solution. I definitely believe that is part of the improved performance, and I am satisfied with that as well. What is nice about Cloudflare One is that it makes the setup easier and also easier to train technicians to maintain it. Compared to legacy systems, we do not need to get fancy firewalls in place that are costly. That is definitely also a cost-saver with Cloudflare One.
JL
Senior Solutions Specials at a tech services company with 11-50 employees
Comprehensive security solution enhances data classification and protection
The most valuable feature of Palo Alto Networks Enterprise Data Loss Prevention is its comprehensive end-to-end solution in Cloud Delivery Security Services, which includes URL, data loss prevention, and advanced threat prevention as features that can be enabled just by clicking a checkbox. Compared to competitors, these are often additional add-ons, whereas Palo Alto Networks provides a complete solution. The artificial intelligence integration in the product also helps immensely by classifying data, identifying data, and monitoring user access and behavior, thus improving data security strategies.
Vibin Thomas - PeerSpot reviewer
Technical Team Lead - Content Security at Valuepoint Systems
Zero trust access has transformed remote connectivity and now simplifies secure app usage
Zscaler Zero Trust Exchange Platform, especially Zscaler Private Access, is very strong, though there are a few areas where improvements can be made. One challenge observed is around initial troubleshooting and visibility. While Zscaler Private Access provides logs, it can sometimes take time to pinpoint the exact cause of access issues, especially in complex environments with multiple policies and identity integration. Another area is the dependency on identity and connector health. Since Zscaler Private Access is heavily reliant on app connectors and identity providers, any issues with these components can impact user access, making proper monitoring critical. During the initial setup, policy configuration and application onboarding require careful planning, especially for larger environments with many applications. These challenges are manageable with proper design and monitoring. Overall, the platform delivers strong security and user experience. I would recommend a few improvements, especially around user interface, reporting, and troubleshooting experience. From a user interface perspective, while the platform is powerful, the policy configuration and navigation can feel complex, especially for new users. A more simplified and intuitive layout for policy mapping and application access would help reduce the learning curve. In terms of reporting, Zscaler Private Access provides logs, but having more built-in customizable dashboards and analytics would be very helpful. Better visibility into user access patterns, application performance, and real-time troubleshooting insights would improve operational efficiency. From a support and troubleshooting standpoint, it would be beneficial to have more granular centralized visibility, allowing for quick end-to-end tracing of a user request from authentication to application access without switching between multiple views. These improvements would make the platform even more efficient, especially for large-scale enterprise environments.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Cloudflare DDoS mitigates DDoS attacks."
"The simplicity of the solution is its valuable features as almost no effort was needed to learn the configurations. It is also one of the cheapest firewalls available in this category."
"It is a stable solution."
"Clover is the best product globally."
"Cloudflare Access is part of the Zero Trust philosophy."
"The best feature is rate limiting. If I'm expecting 500 visits per hour, Cloudflare will limit the requests if I suddenly get 50,000."
"It's the endpoint exposition. We don't need to expose our VPN server to the internet and need a zero-test solution. I can apply some conditional access to the endpoint that's connecting to our network to check their security policies or the security condition of their workstation. Once the workstation is trying to connect to my internal network, then I would like to check the discrete condition of these endpoints that are trying to access my internal network. We created some conditional access. We have CrowdStrike, to check if the CrowdStrike is installed, to check if it's updated, and to check for Windows updates. We created some conditional policies to check it."
"It will take the blow rather than our applications should an attack occur."
"The security aspect in finance is crucial for controlling from a DLP perspective and ensuring protection."
"The most valuable feature of Palo Alto Networks Enterprise Data Loss Prevention is its comprehensive end-to-end solution in Cloud Delivery Security Services, which includes URL, data loss prevention, and advanced threat prevention as features that can be enabled just by clicking a checkbox."
"Another important feature is that the solution doesn't require any additional infrastructure to implement. It's a software license that is compatible with our existing hardware. We were able to install and configure the product seamlessly and effortlessly."
"It is a stable solution with good support."
"Our clients primarily deploy Palo Alto Networks Enterprise DLP to control the flow of information in and out of their networks. The main use cases include monitoring and managing sensitive data such as credit card information and personally identifiable information."
"Having this technology, which makes it easy to manage with administration done centrally, is super helpful."
"The primary feature is managing firewalls through Panorama, especially when handling multiple firewalls across different sites like headquarters and remote sites."
"The setup is very easy as we just need to switch on and switch off."
"The most valuable features of Zscaler Private Access are its ability to integrate with multiple IDPs and application segmentation."
"The product’s most valuable features are inbound and outbound scanning and API control."
"The product provides a seamless user experience."
"The UI is easy to use."
"The tool's scalability is good."
"The most valuable feature is its ability to establish connectivity for remote users and remote endpoints. It offers a high level of granularity compared to typical VPNs, which also encapsulate a lot of I/O."
"The most valuable features of this solution are the CASB solutions, which is protecting their Office 365."
"The most valuable aspect of Zscaler Cloud DLP is its automatic DLP feature."
 

Cons

"From a logging perspective, it is still a bit difficult to see exactly what users are being blocked with the current views."
"The software has automated alerts, but the automated alerts are not available in the mobile app."
"Feedback could be enhanced."
"They don't have a person to provide support for customers using the solution under their free plan."
"The response time for support must be reduced."
"The onboarding process can be improved a little bit."
"Cloudflare One is not very powerful, but for what we require, it is basic and sufficient."
"The tool should provide on-premise versions. Currently, all versions are cloud-based."
"The product is still overly complicated compared to other vendors such as Check Point, which could be improved."
"The configuration for Palo Alto Networks firewalls requires specifying many details, such as protocols and services."
"The solution needs improvement in stability. There has been feedback regarding the accuracy of file categorization."
"There are mostly performance issues."
"There is room for improvement in the documentation around the maintenance of the product, how the automatic updates work, and pushing out new policies. A little more detail and context in that area would be helpful."
"Its scalability is not on par with the features of others."
"Pricing is expensive."
"You need to have an external solution to backup everything. For example, you need to have Syslog installed on your server as well so that you can back it up to another place."
"The solution's granularity should be improved because it has limited granular options to control, visible, allow, block, delay, and receive."
"Zscaler Private Access needs to improve its collaboration with applications without compromising security."
"On a scale from one to ten, I would rate Zscaler Private Access at only a three or four."
"The solution needs to improve a lot of aspects."
"Zscaler Private Access could improve by improving external access. If external parties want to access locally to my company's services, we need to onboard them into our domain, otherwise, it doesn't work. Additionally, if their company also has Zscaler Private Access, then it doesn't work. They need to log in with our domain ID, not their company ID."
"There could be more DLP-related features. Additionally, there needs to be flexibility for integrating ISP features."
"Occasionally, issues arise in the LogStack by a third party, particularly for government websites accessed by numerous users."
"The menu for the ZIA portal could be organized a little bit differently. The most-used modules should be at the top of the menus, not somewhere near the bottom, some of them are not organized well in my opinion."
 

Pricing and Cost Advice

"The pricing of the solution is cheap. The licensing cost is also very low. I rate the cost and pricing a three out of ten."
"My company has to make yearly payments towards the licensing costs attached to the solution. There are no hidden charges apart from the licensing costs of the solution."
"The prices are slightly expensive."
"The solution is not that expensive."
"The solution's pricing lacks transparency."
"The price tag is no longer $200,000, but rather $300,000 to $400,000. It's twice."
"Cloudflare Zero Trust Platform's pricing is good."
"The pricing is somewhere in the middle. I would rate the pricing a seven out of ten."
"Palo Alto Networks Enterprise Data Loss Prevention is expensive, and licensing costs are monthly."
"The pricing of the solution depends on the buyers. But, from my point of view, it is in line with the rest of the products and the price list of Palo Alto."
"The licensing model is very fair-minded and it's a good value. It scales well... Its licensing model is more streamlined when compared to other DLP solutions."
"It's expensive."
"Zscaler CASB is an expensive solution."
"The cost is expensive. It depends on the number of users."
"It is an auto-renewal subscription service."
"The price is competitive."
"Zscaler Cloud DLP is moderately priced. We pay around 2 million rupees per year."
"My company is a Zscaler Private Access partner, so the customers pay for the license fees."
"The pricing is expensive and on the higher end. Honestly, in my opinion, it is not worth the price."
"In terms of market positioning, I would describe Zscaler Private Access as offering optimal pricing. Based on our experience, Cato Networks tends to be slightly more expensive."
report
Use our free recommendation engine to learn which Data Loss Prevention (DLP) solutions are best for your needs.
902,417 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
19%
Comms Service Provider
10%
Financial Services Firm
9%
Manufacturing Company
8%
Performing Arts
13%
Manufacturing Company
10%
Financial Services Firm
9%
Construction Company
7%
Financial Services Firm
12%
Manufacturing Company
10%
Computer Software Company
8%
Outsourcing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise1
Large Enterprise12
No data available
By reviewers
Company SizeCount
Small Business16
Midsize Enterprise12
Large Enterprise46
 

Questions from the Community

What needs improvement with Cloudflare Zero Trust Platform?
In my opinion, Cloudflare One can be improved mainly through compatibility, as the integration should be much simpler...
What is your primary use case for Cloudflare Zero Trust Platform?
Cloudflare One's primary use case for my organization is to protect servers and to provide remote access with the VPN...
What is your experience regarding pricing and costs for Palo Alto Networks Enterprise Data Loss Prevention?
Palo Alto Networks' pricing can be complex. Their catalog is extensive. They have a licensing model based on credits ...
What needs improvement with Palo Alto Networks Enterprise Data Loss Prevention?
The product is still overly complicated compared to other vendors such as Check Point, which could be improved. Simpl...
What is your primary use case for Palo Alto Networks Enterprise Data Loss Prevention?
The primary use case is a part of a complete package for Government of Canada. It helps in comparing data loss preven...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What is your experience regarding pricing and costs for Zscaler Cloud DLP?
It's an affordable solution. I would rate the pricing a six out of ten. Once after deployment, you start bundling up ...
What is your primary use case for Zscaler Cloud DLP?
In Qatar industries, the legacy systems like the Bluecoat Proxy is still being used, these solutions work at a limite...
 

Also Known As

Cloudflare Area 1 Email Security, Cloudflare Bot Management, Cloudflare Gateway, Cloudflare Zero Trust Platform, Cloudflare DDoS, Cloudflare SASE & SSE Platform
No data available
Zscaler SASE, Zscaler DLP, Zscaler CASB, Zscaler CSPM, Zscaler Browser Isolation, Zscaler Posture Control
 

Overview

 

Sample Customers

23andMe
Information Not Available
Siemens, AutoNation, GE, NOV
Find out what your peers are saying about Palo Alto Networks Enterprise Data Loss Prevention vs. Zscaler Zero Trust Exchange Platform and other solutions. Updated: June 2026.
902,417 professionals have used our research since 2012.