Forcepoint ONE is a cloud platform that enables users to adopt Zero Trust and Security Service Edge (SSE, the security component of SASE), unifying crucial security services, including Secure Web Gateway (SWG), Cloud Access Security Broker (CASB) and Zero Trust Network Access (ZTNA).
N/A
Zscaler Private Access
Score 7.9 out of 10
N/A
Zscaler Private Access™ (ZPA) gives users secure access to private apps and OT devices while enabling zero trust connectivity for workloads.
One scenario where Forcepoint ONE is well suited is when my organization wants to protect against data breaches and advanced threats. This solution can help my organization to quickly identify and respond to threats, as well as prevent sensitive data from leaving the organization. A less ideal scenario for Forcepoint ONE would be if an organization is primarily concerned with compliance and regulatory requirements. While Forcepoint ONE can help with some compliance tasks, it is not designed to be a comprehensive compliance solution.
The tool is, for the most part, very intuitive. Most of our issues so far (working through them with our Resident Engineer) are the one-off applications. We are working on some exemptions to make them functional. Besides that, the team loves the tool and how it can provide better security than our previous tool.
One area where Forcepoint ONE could improve is in its user interface. The interface is not particularly user-friendly, and can be confusing for users who are not familiar with it.
there are some features that are hard to use, or that are missing altogether. For example, there is no way to easily search for files or emails, and the interface for managing users and groups is not particularly intuitive.
It would be nice if Forcepoint ONE had better integration with other applications and services.
Application Segmentation and Listener Configuration - The way applications are defined and listened for is fundamental to ZPA, but can be a source of frustration, especially when dealing with legacy or non-HTTP protocols
The ZCC is the user's primary gateway, but its control over local system network behavior can sometimes clash with enterprise requirements.
Few things stand out. The ease of access: It very convenient - one click to open add details and done. Packet capture: Can't talk enough about this feature. Troubleshooting private access is always problematic,but this feature helped a lot. One thing that can be improved is early warning about expiring authentication
Ease of use Microsoft Defender was a great product, but it looked like it is too risky to have only one vendor for all our needs. Fortinet has a lot of improvements to make to consider in the enterprise segment.
All of these tools are for different needs. Zscaler Private Access being for internal seems very simple as it really only allows filtering up to L4 whereas ZIA allows for filtering up to L7. ZDX often tries to give insight into the environment but since it only works with preconfigured items, that then means when a new problem shows up - ZDX isn't helpful troubleshooting postmortem. For the internal side of the house - Zscaler Private Access' strength is its simplicity to configure.
Positive: We have now charged users internally for the service
Negative: Dealing with users who also have the Zscaler Client Connector for their company, can cause confusions
Negative: Enabling the Zscaler Internet Access entitlement has been a major headache for us because Zscaler Private Access users can't autheniticate through ZIA on a non corporate device.