CyberArk is a privileged account and access security suite issued by the company of the same name in Massachusetts . The Core Privileged Access Security Solution unifies Enterprise Password Vault, Privileged Session Manager and Privileged Threat Analytics to protect an organization’s most critical assets.
N/A
Forefront Identity Manager (Discontinued)
Score 8.5 out of 10
N/A
Forefront Identity Manager is a Microsoft's legacy identity management solution. In 2016 Microsoft released Microsoft Identity Manager, an updated IAM solution. Support for Forefront Identity Manager ended October 2017.
N/A
Pricing
CyberArk Privileged Access Management
Forefront Identity Manager (Discontinued)
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
CyberArk Privileged Access Management
Forefront Identity Manager (Discontinued)
Free Trial
Yes
No
Free/Freemium Version
No
No
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
CyberArk offers a variety of Identity Security packages for different user types within an organization.
—
More Pricing Information
Community Pulse
CyberArk Privileged Access Management
Forefront Identity Manager (Discontinued)
Considered Both Products
CyberArk Privileged Access Management
Verified User
Engineer
Chose CyberArk Privileged Access Management
CyberArk is better in every possible way. ERPM is engineered for a workstation model. It treats directories like they are computers with a lot of local accounts. Also many settings are universal, so it is either on or off. You cannot customize a checkout time per account is …
The system is great for enterprise or larger IT departments or teams where temporary or full access may be given using privileged IDs. Requirements for needing local admin access is also eliminated which can help with specific Windows workstation related tasks. It can be very useful when working with remote teams or contractors who may need temporary access to a system when required.
I think that MIM is great for compliance since it reduces the number of logins that are required by users. Most offices have post-it notes with logins floating around because there are so many to remember or there are "shared" logins. This reduces the number of logins to 1 and you can easily revoke access in one fell swoop. This prevents gaps and holes with terminations and updates to select groups are super simple.
Automatically discover new servers on the network and take control of the local admin password by vaulting it and ensuring nobody knows the password. A different password on every server.
Automatically roll the password in a configurable manner - after each use, after a certain period of time, etc.
Track and govern sensitive account usage by ensuring only properly authorized users can access the vault and obtain the credentials and then monitor usage.
For Windows Server 2008 R2 Servers is a great tool to set a codeless provisioning over new objects.
Can easily integrate with Active Directory and Exchange Servers, improving the identity sync between the final user and the lifecycle management.
Improvements in the areas of performance, simplified deployment easing the troubleshooting tasks, better documentation knowledge base, and more language support.
The codeless provisioning provided in FIM can sustain a variety from high demand to mid-size scenarios for account lifecycle management.
Customer support and technical support have always been great when we require assistance. Especially when we come across issues that we're not familiar with.
It is known as one of the safest products in the market. It has good support and is also available as on-premise. You can run it virtually on VMWare (and probably on other hypervisors as well). You can have a second instance on bare metal and that makes it a very safe system.