Cisco Duo is a two-factor authentication system (2FA), acquired by Cisco in October 2018. It provides single sign-on (SSO) and endpoint visibility, as well as access controls and policy controlled adaptive authentication.
$3
per month per user
CyberArk Workforce Identity
Score 8.0 out of 10
N/A
CyberArk Identity is a SaaS-delivered suite of solutions designed to simplify identity and access management in enterprises. CyberArk Identity unifies Workforce Access and Identity Management solutions in a single offering. Workforce Access capabilities include single sign-on, multi-factor authentication, session security, and credential management. Identity Management capabilities include lifecycle management, identity orchestration, and identity governance. With CyberArk Identity,…
I would fully expect a competitor like Okta or any other multifactor mechanic to function pretty similarly, and I hesitate to say duos the best. I think the idea is that it's a simple concept, but it does it well. So I haven't evaluated any myself outside of duo, but I'm also …
Cisco Duo had an integrated method for handling MFA on Endpoints and Servers. This was a huge bonus. Administration and implementation seemed more efficient as well.
There are Okta has that Duo does not have, however since my environment has CISCO solutions implemented and the service that we receive from the vendor and integrator is top quality, DUO was the right choice.
We selected Cisco Secure Access by Duo due to its ability to interoperate with almost any on premise, cloud, or hybrid application or system. Duo also integrates nicely with our other security systems, including XDR. As well, Duo is a market leader and always pushing the sector …
Cisco Secure Access by Duo's ability to integrate with a wide variety of SSO applications and systems, as well as its focus on usability, make it an attractive option.
Centrify offered us more for our money by being more than just an SSO platform. There were several other features included such as MDM and MFA. This started other initiatives for us and felt the other solutions we evaluated would not have been able to provide.
We reviewed Okta and OneLogin while looking at Centrify for our ticketing solution SSO partner. When doing so we looked at it from the aspect of if we wanted to roll this out where we could see the use cases for it and initially it would be in a couple departments then branch …
Centrify was introduced to provide a secure, versatile and easy-to-use login experience, but it is still competiting against the other products that are in use within our company.
Seemed to be the best in breed and the one with deeper Mac integration on the short roadmap. As an Apple Distinguished School, this is obviously very critical to us. Very easy to set up and it has a deep pre-canned application pool for already deployed apps. Very easy for …
During our evaluation process, Centrify could show in the PoC that they are very flexible and open minded to our ideas. An application integration which was not part of the product catalog has been integrated for free. Furthermore the whole package compared to the …
Centrify's pricing was much better than their competitors. They also offered a better sign-in/multi-factor experience for our users when doing pilot testing. Their product also included other features like Mobile Device Management that was a nice add-on.
We started off using ADFS from Microsoft, which took most of a day to get fully functional and nearly a week to get fully optimized. The documentation was inconsistent with ADFS and there was no real support without opening a Microsoft Premier Support ticket. At the time, if …
We felt that Centrify had the most flexibility for the cost. They also have fairly robust mobile device management capabilities which some of the other products did not have.
We selected Centrify over some of the other services out their because it gives us more options such as SSO and MDM all in one and for the most part it is easy to use not only for the administrator but also for the end user.
OneLogin and Okta provide similar experiences, but OneLogin is less mature than Centrify. Their Mac and Windows management suites are still in a beta phase are cannot be deployed en masse to our user base. Okta is more expensive and does not have the security compliance. …
I was previously a OneLogin customer and even though Centrify has a lot more features, I'd have to say that my experience with OneLogin versus Centrify has been a lot better overall.
Cisco Duois is well suited in all kinds of scenarios where you need to ensure proper security measurements, I think. We can't just rely on our passwords only, as they can be easily stolen through phishing or data breaches thus keeping multi factor authentication is quite essential. I always prefer MFA or at least 2FA for any critical system.
Centrify Identity Service is well suited for nearly any organization, especially ones utilizing Active Directory for user management. It is especially well suited for organizations looking to reduce internal resource use, because it's easy to maintain and manage. Its features also allow you to free up resources previously dedicated to the provisioning and deprovisioning of Office 365/Salesforce users (as well as other applications).
Single Sign-on Integration is easy and complete configuration is UI driven with lots of help tips
RESTFul APIs for Multi-factor Authentication is easy to use and implement. Also, Centrify supports all new Security features for Multi Factor Authentication and hence you can easily select and configure different challenges based on the policies and roles for the user.
Lots of Built-in reports available for normal day to day auditing.
Documentation is oftentimes missing key information for proper implementation. This is circumvented by reading third-party guides or contacting support for additional details.
They do not push Fail-Closed as much as I think they should. Fail-Open is fairly trivial to bypass and it should be made known to the customer during setup how much this will affect overall security.
More vendor integration is something that is always craved by administrators. There are so many third-parties to integrate with.
Occasionally, I get logged out of Gmail, sometimes in the middle of an email. I'm not sure why it happens, but I think it has something to do with timing out. Which is strange because I'm on email all day. Not sure why.
There are a lot of competing solutions on the market; however, Duo "just works", and there is little to no learning curve for the new members to be acclimated to it. As long as that continues I see it as the preferred option moving forward
Centrify is central to creating efficiency and safety for our clients and internally. To remove it would cause a massive disturbance in the lives of our employees and our clients.
La interfaz es intuitiva y fácil de navegar, lo que permite a los usuarios administrar sus dispositivos y acceder a las políticas sin problemas. La integración con las aplicaciones SSO y SaaS facilita aún más el proceso de acceso, mejorando la experiencia del usuario.
In the last 5+ years we've been using Duo, there may have been 1 outage that impacted us. We do receive periodic notifications of issues but, for the most part, they impact carriers or functionality that we either don't use, or do not care about.
Since it’s a reputable company, I have received technical support when needed and I trust that if anything else happens I can contact them with any issues. I haven’t experienced bad customer service and I totally feel supported while using this authentication method. No complains so far and the high rating!
The support staff thus far has been very helpful. At times I feel they are driving the process forward without my intervention or constant reminder, which is nice to have in a company for a change. Most support seems to be a hassle but so far Centrify appears to treat your project as their own project.
Implementation was straight forward and you can isolate different scenarios in order to test new application setup or add to an existing setup. Gui interface is pretty easy to understand and follow. I had no experience with Duo and still manage to easily set up new policies and rules.
Ultimately we ended up going with Cisco Duo because we are a Cisco shop. All of our networking infrastructure, our phones, our wireless environment is Cisco based. It made logical sense to stay with a product that we already have a line of support with. With a smaller support / tech group we depend on outside Cisco support. That support is already here for us, so we stayed with a Cisco product.
We started off using ADFS from Microsoft, which took most of a day to get fully functional and nearly a week to get fully optimized. The documentation was inconsistent with ADFS and there was no real support without opening a Microsoft Premier Support ticket. At the time, if you turned on Multi-Factor Authentication (MFA) for Office 365, it turned it on for everything without any granularity. Our Information Security department said that MFA was a requirement for offsite access to our email systems, but users didn't need MFA when onsite. We looked at Okta, OneLogin, and Centrify at the same time. Centrify was the only one that responded quickly and offered a free POC with support included. We tried to deploy the Okta solution on our own, but ran into issues due to some of our non-standard AD configuration. We never received a return call from OneLogin. The Centrify POC took about 15 minutes to complete for basic functionality and a couple of hours to work out the issues related to our environment. We have been very happy with the Centrify solution and went live with our POC.
It's one of those things that only costs money in the sense of you have to convince a leadership team to spend money to save money, right? Like a compromise is far more expensive than duo paying for duo. So specifically it's really just about trying to prevent problems. And so while it costs money and we don't have a direct return on investment that we can point out immediately, I would still always advocate for it just because it keeps security. Paying for security is cheaper than getting compromised essentially.
CyberArk Workforce Identity provides secure access to on-premises and cloud applications. The platform is highly scalable and works well for companies of any size.
I can classify and label data. Also keep track of activity in shared applications and data, to know exactly who accesses each of the files.