TrustRadius: an HG Insights company

Carbon Black App Control vs. SailPoint Identity Security Cloud

Save this comparison

Save this comparison

Add Product

Recommended Comparisons

    Overview
    ProductRatingMost Used ByProduct SummaryStarting Price

    Carbon Black App Control

    Score6.7 out of 10
    N/ACarbon Black App Control is an application control product, used to lock down servers and critical systems, prevent unwanted changes and ensure continuous compliance with regulatory mandates.N/A

    SailPoint Identity Security Cloud

    Score8.1 out of 10
    N/ASailPoint Identity Security for the cloud enterprise manages risk from the explosion of technology access. The solution gives businesses visibility while automating and accelerating the management of all user identities, entitlements, systems, data and cloud services.N/A
    Pricing
    Carbon Black App ControlSailPoint Identity Security Cloud
    Editions & Modules
    No answers on this topic
    No answers on this topic
    Offerings
    Pricing Offerings
    Carbon Black App ControlSailPoint Identity Security Cloud
    Free Trial
    NoNo
    Free/Freemium Version
    NoNo
    Premium Consulting/Integration Services
    NoNo
    Entry-level Setup FeeNo setup feeNo setup fee
    Additional Details——
    More Pricing Information
    Community Pulse
    Carbon Black App ControlSailPoint Identity Security Cloud
    Considered Both Products
    Broadcom
    No answer on this topic
    SailPoint
    No answer on this topic
    Key User Insights
    Would buy again
    No answers on this topic
    89%
    Would buy again
    16 Answers
    Delivers good value for the price
    No answers on this topic
    93%
    Delivers good value for the price
    13 Answers
    Happy with the feature set
    No answers on this topic
    89%
    Happy with the feature set
    16 Answers
    Lived up to sales and marketing promises
    No answers on this topic
    67%
    Lived up to sales and marketing promises
    8 Answers
    Implementation went as expected
    No answers on this topic
    73%
    Implementation went as expected
    11 Answers
    Features
    Carbon Black App ControlSailPoint Identity Security Cloud
    Identity Management
    Comparison of Identity Management features of Carbon Black App Control and SailPoint Identity Security Cloud
    Feature
    Carbon Black App Control
    -
    Ratings
    SailPoint Identity Security Cloud
    7.6
    17 Ratings
    8% below category average
    ID-Management Access Control00 Ratings8.317 Ratings
    ID Management Single-Sign On (SSO)00 Ratings7.810 Ratings
    Multi-Factor Authentication00 Ratings7.98 Ratings
    Password Management00 Ratings7.410 Ratings
    Account Provisioning and De-provisioning00 Ratings8.317 Ratings
    ID Management Workflow Automation00 Ratings7.017 Ratings
    ID Risk Management00 Ratings6.213 Ratings
    Best Alternatives
    Carbon Black App ControlSailPoint Identity Security Cloud
    Small Businesses
    Rencore Code (SPCAF)
    Score8.8 out of 10
    JumpCloud
    Score9.3 out of 10
    Medium-sized Companies
    Trend Vision One Email and Collaboration Security
    Score9.9 out of 10
    OneLogin by One Identity
    Score9.4 out of 10
    Enterprises
    Checkmarx
    Score7.6 out of 10
    RSA Access Manager (Discontinued)
    Score10 out of 10
    All AlternativesView all alternativesView all alternatives
    User Ratings
    Carbon Black App ControlSailPoint Identity Security Cloud
    Likelihood to Recommend
    10.0
    (3 ratings)
    8.3
    (24 ratings)
    Likelihood to Renew
    -
    (0 ratings)
    9.1
    (2 ratings)
    Usability
    -
    (0 ratings)
    7.1
    (10 ratings)
    Support Rating
    -
    (0 ratings)
    9.1
    (2 ratings)
    Implementation Rating
    -
    (0 ratings)
    9.1
    (2 ratings)
    User Testimonials
    Carbon Black App ControlSailPoint Identity Security Cloud
    Likelihood to Recommend
    Broadcom
    Cb Protect is best suited somewhere where you want to maximize the lockdown of workstations. So moving past no local admin rights to blocking specific applications and peripherals. The idea would be to have a list of applications you want to run, and then anything else is not able to be used. As stated prior, if you have a very fluid environment where you are having all sorts of new applications installed frequently (I feel for you!!) this is still do-able, but it misses the general idea. I think especially in environments that are more sensitive to new applications, like banks, healthcare systems etc, this is a good fit. The ability to look at application levels, drift, unapproved software etc is very useful.
    Incentivized
    Read full review
    SailPoint
    As discussed in previous sections, it does integrate well with other systems, and basic JML works well; it's very powerful and customizable in these areas (though also complex). The downsides are in areas like access reviews, where it's less customizable (no way to automatically send a review to the owner for a set of access items; each review needs an individual to be selected for it).
    Incentivized
    Read full review
    Pros
    Broadcom
    • Controls file writes, executions of the scripts
    • Defends from process injections, memory protection
    • Visibility and lock down posibilities
    Incentivized
    Read full review
    SailPoint
    • Brings users access, profiles and accounts all into one place
    • Manages the Life Cycle Management process across ALL identities, permanent and Temporary
    • Secures and manages access to critical applications and resources across the group
    • Enables Info. Security to customise, share and delegate authority across the group
    • Single version of the truth across our technology platform
    Incentivized
    Read full review
    Cons
    Broadcom
    • Perhaps more specific training.
    Incentivized
    Read full review
    SailPoint
    • The user interface is not very intuitive. It is hard for the occasional user to navigate through the request process. There are no instructions on the screen to help the user to know what to do. It is left up to the user to figure out what to click on and how to navigate through the process.
    Incentivized
    Read full review
    Likelihood to Renew
    Broadcom
    No answers on this topic
    SailPoint
    Its a best tool for a CISO, works very well, easy to use, great connectors and integrations, great reports, automated reviews, full compliance, great support to a JML (Joiners, Movers and Leavers) project;
    Read full review
    Usability
    Broadcom
    No answers on this topic
    SailPoint
    Always improving the UI, so it's getting better. Some areas are fully featured, but others, such as Separation of Duties reporting and policies, are very weak.
    Incentivized
    Read full review
    Support Rating
    Broadcom
    No answers on this topic
    SailPoint
    Support for Customizations is very limited.
    Incentivized
    Read full review
    Implementation Rating
    Broadcom
    No answers on this topic
    SailPoint
    The first journey isn't easy because you need to win your internal process and problem concern and Sailpoint have many experience to support this phase, and make the real difference into the client experience;
    Read full review
    Alternatives Considered
    Broadcom
    The big difference between Protect and Barkly/AMP is how exactly it goes about what it's doing. Protect is application whitelisting and program reputation. So the way it's protecting you is using a proprietary reputation service, and hash values to identify applications, and then hitting a list of whitelisted programs to decide if you are able to run that or not, based on the policy you are in. There is a LOT of value in that. We actually are working on transitioning to Cisco Advanced Malware Protection (AMP). The main reason is cost (about the same cost as Cb Protect, but with (most of) the featureset of all 3 Carbon Black products for less than 1/3 of the total spend. AMP works differently, looking at a reputation service powered by Cisco's Talos cloud. You don't really have application whitelisting, but that also reduces how many "requests" you get for applications. So I'll have to find a different way to do whitelisting and USB blocking and the like, but I'm getting more visibility across my network and also built in antivirus (TETRA engine - ClamAV with some work). Barkly is an add that we are looking to put in as it looks at behavior of programs. So specifically it watches for privilege elevation and the like. Thus far all the big name problem children (WannaCry, other ransomware problems) have been caught natively in Barkly day 0.
    Incentivized
    Read full review
    SailPoint
    The on-prem SailPoint IdentityIQ platform provides the necessary customization that is required in our dynamic environment. Although we may look at a cloud-based Identity Management service again in the future, (there are many advantages), our identity management, authentication, and application assignment processes cannot be quickly consolidated to a single cloud-based service at this time.
    Read full review
    Return on Investment
    Broadcom
    • App Control can ensure Continuous Compliance.
    • Solution can reduce expenses on different security software.
    • Nowadays Zero Trust approach is very important for any organization and Application control is one of the main parts of it.
    Incentivized
    Read full review
    SailPoint
    • Over 300,000 password change/reset calls avoided to the helpdesk annually.
    • 1,000 plus accounts with proper accesses provisioned via automated birthright processes weekly versus 1-2 days of manual provisioning and approvals. With a call center population that churns many people per week, this brings many dollars of efficiency to the operations teams.
    • Flexibility on terminations to manage accounts and access for target applications based on regulatory or business rules to ensure compliance and avoid fines for non-compliance.
    Incentivized
    Read full review
    ScreenShots