TrustRadius: an HG Insights company

Zscaler Private Access

Score8.9 out of 10

62 Reviews and Ratings

What is Zscaler Private Access?

Zscaler Private Access™ (ZPA) gives users secure access to private apps and OT devices while enabling zero trust connectivity for workloads.

Media

how ZPA provides access for all users while minimizing the attack surface, eliminating lateral movement, and stopping zero day threats. A cloud native service, ZPA can be deployed in just hours to replace legacy remote access tools like VPNs and VDIs.

Top Performing Features

  • Secure Web Gateways

    Provides user protection from malicious web-based attacks while implementing company-approved use policies.

    Category average: 8.8

  • Network Data Encryption

    Encrypting data so that only the network users with the proper privileges may see and access the data.

    Category average: 8.8

  • Multi-Factor Authentication

    Using multiple, independent components to gain access

    Category average: 8.8

Areas for Improvement

  • Automated Threat Identification

    Leveraging multiple sources of information (such as threat intelligence databases) to automatically identify threats.

    Category average: 8.4

  • Automated Alerts and Reporting

    Systems in place to automatically alert, report, or notify of issues that may need timely remediation.

    Category average: 8.2

  • Threat Intelligence Reporting

    Generates reports that display information on threats (such as name, type, frequency of attack, area affected, etc.)

    Category average: 8.4

Zscaler Private Access Review

Use Cases and Deployment Scope

We use it for both users on site and off site as a way to reach the internal applications of our environment. The tool provides some microsegmentation and also grants us insight into what and when users are connecting to applications. It also provides a consistent user experience that is based upon user roles rather than that of IP.

Pros

  • Microsegmentation
  • Scalability
  • Simplicity

Cons

  • Would prefer to do L7 filtering instead of L4
  • Would love to have a global find (how does this App Segment tie in everywhere)
  • Sometimes error messages don't really provide much information
  • PCAPs are the second step when traditionally that was the ace in the hole.

Return on Investment

  • It allows for allowing entire groups access to applications, allowing for consistent experiences between the teams.
  • Create a level of Microsegmentation organically in our environment where the only Microsegmentation done was at the network level. This goes to the user level to allow two users on the same network to have different levels of access
  • With onboarding - the growing pains of new applications makes onboarding new things to the environment slightly painful and a task that traditionally didn't require much network involvement very network dependent.

Usability

Alternatives Considered

Zscaler Digital Experience (ZDX) and Zscaler Internet Access

Other Software Used

Palo Alto Networks Next-Generation Firewalls - PA Series, Zscaler Internet Access, Zscaler Digital Experience (ZDX), HPE Aruba Networking ClearPass Policy Manager, HPE Aruba Networking Switches, HPE Aruba Networking EdgeConnect SD-WAN

VPN client like a networking tool

Use Cases and Deployment Scope

We use Zscaler Private Access for remote access. One of the main problem is precious tool was instability, it broken down quite often. The User Interface wasn't too intuitive and needed a bit of time to get used to. Our primary use case is to allow users work remotely. Zscaler Private Access solved all the problems listed above.

Pros

  • Fast Authentication
  • Ability to authenticate early
  • Provides inbuilt capture

Cons

  • Packet capture live view
  • Warning before expiring

Return on Investment

  • User friendly UI
  • Fast authentication saves user time
  • Since Zscaler Private Access only works with url, we ended up generating FQDN for all our servers

Usability

Alternatives Considered

Ivanti Connect Secure

Other Software Used

Cisco Nexus Dashboard Fabric Controller, Elasticsearch, Splunk Enterprise

Lateral Movement Prevention - The main security benefit

Use Cases and Deployment Scope

Zscaler Private Access (ZPA) is used for securely accessing Internal Application. From both onprem and cloud. With ZPA its possible to access application without giving visibility to any other network or even same network. Helped in segmentation, users can access from anywhere with Security and Reliability. The Zscaler zero trust cloud exchange hiding internal application behind its cloud exchange which gives confidence for being protected.

Pros

  • Securing Access to Internal Applications
  • Segmentation for Applications
  • Strict enforcement policy implementations

Cons

  • Granularity and Complexity of Policy Enforcement
  • Application Segmentation and Listener Configuration - The way applications are defined and listened for is fundamental to ZPA, but can be a source of frustration, especially when dealing with legacy or non-HTTP protocols
  • The ZCC is the user's primary gateway, but its control over local system network behavior can sometimes clash with enterprise requirements.

Return on Investment

  • Definitely rely on ZIA or ZPA
  • No security breaches scene so far

Usability

Other Software Used

Fortinet FortiGate, CheckPoint, Palo Alto Networks Prisma Access

Zscaler Private Access

Use Cases and Deployment Scope

We use Zscaler Private Access for replacing 3 of our legacy VPN applications from the different mergers and aquisitions we have done. We needed a solution that could handle the growth for over 65,000+ employees that our other solutions could not handle.

Pros

  • easier way to keep employees connected while remote
  • better way to secure our data with browser isolation
  • easy way to route traffic back on site that's needed.

Cons

  • VOiP needs major improvements. that is where its lacking.
  • Also Public service edge Datacenters need to be built in the middle of the US to handle more business - Denver is the only location. I feel one is SLC, UT would be a good location.

Return on Investment

  • negative issue is that we did not force people to use Zscaler Private Access more in the beginning then then 2 years in.
  • we are still having to use our other VPN to be able to use our VOiP solution Avaya.

Usability

Alternatives Considered

Cisco Secure Access, Cisco AnyConnect and Ivanti Secure Unified Client

Zscaler Private Access Value

Use Cases and Deployment Scope

Immediate need to phase out a legacy VPN and provide secure access to employees, contractors, and third party vendors to internal applications. In addition, Zscaler Private Access is used to phase out legacy Citrix VDI and Remote Desktop functionality.

Pros

  • Private App Access
  • Eliminating VPN
  • Eliminating Citrix

Cons

  • Easier implementation
  • Less Complexity

Return on Investment

  • Significantly reduced the need for VPN - less hardware and licenses
  • Reduced Citrix infrastructure - less hardware and licenses

Usability

Alternatives Considered

Palo Alto Networks Prisma Access