The successor to AWS Single Sign On, AWS IAM Identity Center is used to centrally manage workforce access to multiple AWS accounts and applications. It helps users to securely create or connect workforce identities and manage their access centrally across AWS accounts and applications. AWS states that IAM Identity Center is the recommended approach for workforce authentication and authorization on AWS for organizations of any size and type.
N/A
CyberArk Workforce Identity
Score 8.0 out of 10
N/A
CyberArk Identity is a SaaS-delivered suite of solutions designed to simplify identity and access management in enterprises. CyberArk Identity unifies Workforce Access and Identity Management solutions in a single offering. Workforce Access capabilities include single sign-on, multi-factor authentication, session security, and credential management. Identity Management capabilities include lifecycle management, identity orchestration, and identity governance. With CyberArk Identity,…
N/A
Pricing
AWS IAM Identity Center
CyberArk Workforce Identity
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
AWS IAM Identity Center
CyberArk Workforce Identity
Free Trial
No
Yes
Free/Freemium Version
No
No
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
—
—
More Pricing Information
Community Pulse
AWS IAM Identity Center
CyberArk Workforce Identity
Features
AWS IAM Identity Center
CyberArk Workforce Identity
Identity Management
Comparison of Identity Management features of Product A and Product B
IAM plays a pivotal role in our organization, addressing the unique needs of our diverse workforce, which includes full-time employees, part-timers, contractors, and client engineers who access our workloads. This multifaceted solution offers us unparalleled control over access, ensuring that each individual has precisely the permissions they need and nothing more. IAM's robust security features guarantee the protection of our valuable resources and sensitive data. As our organization expands, IAM effortlessly scales with us, adapting to changing requirements, and helping us maintain our commitment to top-tier security and efficient access management.
Centrify Identity Service is well suited for nearly any organization, especially ones utilizing Active Directory for user management. It is especially well suited for organizations looking to reduce internal resource use, because it's easy to maintain and manage. Its features also allow you to free up resources previously dedicated to the provisioning and deprovisioning of Office 365/Salesforce users (as well as other applications).
Single Sign-on Integration is easy and complete configuration is UI driven with lots of help tips
RESTFul APIs for Multi-factor Authentication is easy to use and implement. Also, Centrify supports all new Security features for Multi Factor Authentication and hence you can easily select and configure different challenges based on the policies and roles for the user.
Lots of Built-in reports available for normal day to day auditing.
Make it easier for users to assume roles securely, especially in cross-account settings. This might involve simplifying the process of switching roles in the management console or creating a command for AWS CLI that supports smoother role assumption.
Policy testing tools will be invaluable for administrators when they are creating policies. If this tool is able to assess the impact of enforcing a policy it will help greatly in preventing policy misconfigurations that lead to unintended consequences.
Better user interface, AWS should simplify the IAM interface to encourage new users.
Occasionally, I get logged out of Gmail, sometimes in the middle of an email. I'm not sure why it happens, but I think it has something to do with timing out. Which is strange because I'm on email all day. Not sure why.
Centrify is central to creating efficiency and safety for our clients and internally. To remove it would cause a massive disturbance in the lives of our employees and our clients.
It gets easier with time, initially, it can be overwhelming for a fresher. Once you're used to working with roles and policies and know when and where it is required eventually it becomes easy
The support staff thus far has been very helpful. At times I feel they are driving the process forward without my intervention or constant reminder, which is nice to have in a company for a change. Most support seems to be a hassle but so far Centrify appears to treat your project as their own project.
AWS Identity and Access Management (IAM) excels over Google Cloud IAM with its granular control, extensive service integration, and robust security features. AWS IAM provides fine-tuned access policies, versatile role delegation, and a wide array of services. Its adaptability and extensive toolset make it the preferred choice for businesses of all sizes.
We started off using ADFS from Microsoft, which took most of a day to get fully functional and nearly a week to get fully optimized. The documentation was inconsistent with ADFS and there was no real support without opening a Microsoft Premier Support ticket. At the time, if you turned on Multi-Factor Authentication (MFA) for Office 365, it turned it on for everything without any granularity. Our Information Security department said that MFA was a requirement for offsite access to our email systems, but users didn't need MFA when onsite. We looked at Okta, OneLogin, and Centrify at the same time. Centrify was the only one that responded quickly and offered a free POC with support included. We tried to deploy the Okta solution on our own, but ran into issues due to some of our non-standard AD configuration. We never received a return call from OneLogin. The Centrify POC took about 15 minutes to complete for basic functionality and a couple of hours to work out the issues related to our environment. We have been very happy with the Centrify solution and went live with our POC.
AWS IAM Identity Center has significantly bolstered our security posture by ensuring that only authorized personnel access our resources. This enhanced security has protected us from potential data breaches or unauthorized use of resources, mitigating risks and potential costs associated with security incidents.
While IAM brings long-term cost savings, there might be initial implementation and training costs. It's important to factor these costs into the ROI equation.
If your organization isn't used to such fine-grained access control, there might be resistance to adopting IAM. Overcoming this resistance might require additional training costs.
CyberArk Workforce Identity provides secure access to on-premises and cloud applications. The platform is highly scalable and works well for companies of any size.
I can classify and label data. Also keep track of activity in shared applications and data, to know exactly who accesses each of the files.