L
Learning and Development Coordinator Intern
"Safe AI Interaction with Confidential Data Protection"
I can safely interact with AI agents without worrying about exposing confidential organizational data. However, I can't log into the company system from anywhere without notifying the administrator in advance, even during emergency travel. The Netskope One Platform protects our sensitive data across the network, ensuring I stay within data protection policies and reducing the risk of compromising data when using AI agents and LLMs.
N
Network & Security Engineer
"Solid Cloud Security and Visibility, Though Complex in Parts"
The platform offers strong cloud security with centralized policy management, real-time visibility, and effective protection for web and SaaS traffic. It's powerful, but some advanced configurations and troubleshooting feel complex, and the management console isn't as intuitive as it could be, making some tasks harder than necessary. Netskope helps secure internet and SaaS traffic, enforce consistent security policies, and provide better visibility into user activity. As a result, it improves overall security, reduces risk, and simplifies centralized management.
T
Technical Support Engineer
"Advanced AI Monitoring and Solid Performance with Integration Gaps"
Initial setup is complex and requires expertise. The UI is being rebuilt but isn't there yet; it's workable but not intuitive once live. Integrations: Strong native API integration with leading vendors and 30+ partner connectors, though there are clarity gaps with CrowdStrike and others—unclear what data flows where. Performance: Solid latency and connectivity, stable endpoint agent; it won't slow down your network or users. Pricing/ROI: Significantly higher than Zscaler; only makes sense if replacing 3+ tools. Consolidation saves money operationally, but not upfront. Support/Onboarding: Professional services handles activation; P1 response under 2 hours. Onboarding is demanding but well-managed once engaged. AI/Intelligence: Advanced UEBA with ML models for automated C2 beacon detection, continuous behavior monitoring for anomaly detection and AI tool misuse, and strong generative AI monitoring. This is a real differentiator where competitors lag. What doesn't work: The UI feels clunky and dated, and setup requires serious expertise—not for mid-market IT teams. You'll spend weeks getting it right. Multiple portals for different functions kills efficiency, and policy configuration remains tedious even after deployment. Pricing is aggressive—substantially higher than competitors like Zscaler for similar functionality, and you pay a premium without clear justification unless you're consolidating many tools, making budget discussions hard. Integration ambiguity: While integrations exist, they're unclear. For CrowdStrike, nobody really knows what telemetry flows; data enrichment between tools is murky, and you end up guessing if it's working. Onboarding friction: The initial config is brutal, requiring dedicated resources and Netskope's professional services. It takes months to get production-ready, not weeks. Your team will burn cycles on setup instead of security. Support inconsistency: Premium tiers are expensive, and basic support (5 business days) is too slow for real incidents. TAC quality varies—sometimes great, sometimes you must loop in your account manager to get traction. This is enterprise-grade; under 500 users, the overhead and cost don't justify benefits—it's overkill. AI features are still maturing: UEBA is good but not exceptional, and generative AI monitoring is new with unproven real-world effectiveness. You're partly beta testing their latest features. Problems it solves: It provides visibility into shadow SaaS and unauthorized AI apps, showing everything from personal ChatGPT to shadow Salesforce instances. You can't protect what you can't see, and it gives real control over data leakage into unsanctioned tools. Its DLP is granular—block data uploads to personal cloud storage while allowing work tools, capturing exactly what was pasted into ChatGPT or Gmail, ensuring compliance without crippling workflows. It replaces VPNs with zero trust network access, offering faster remote access and better control. It consolidates 5-6 separate tools into one platform with one policy engine, simplifying management and speeding incident response. It tracks AI app usage and data flows, flagging risky behavior so you know your AI risk. It detects malware, C2 beacons, and anomalies in real-time, catching threats before they become breaches.
"Unified Security Platform with Wide Visibility"
I appreciate the unified approach to security and networking. It provides comprehensive visibility into users, devices, and cloud apps and enforces consistent policies across web, SaaS, private applications, and data. The initial setup and policy configuration could be improved, as the extensive feature set feels complex and overwhelming for new admins. It has enhanced our visibility into user activity, strengthened data protection, and simplified policy management. By consolidating multiple security functions into one solution, we've reduced operational complexity, improved threat detection and response, and supported secure access for remote and hybrid users without sacrificing productivity.
S
Senior Customer Service Associate
"Netskope One: Robust Security, But Requires Considerable Effort"
It genuinely consolidates SWG, CASB, ZTNA, DLP, and FWaaS into a single management console with one endpoint agent. If you're looking to reduce vendor sprawl, it does that efficiently without adding unnecessary complexity. Performance is solid—it runs on NewEdge and commits to a 50ms round-trip SLA for TLS inspection. In daily use, most users don't notice the security layer affecting browsing or app access. However, this is absolutely not plug-and-play. The configuration options are deep, and getting DLP policies, CASB coverage, and zero-trust rules production-ready can take months. Teams often need dedicated SSE engineers or paid professional services to get everything running smoothly. It's also expensive and tailored for complex, multi-cloud enterprises. A mid-sized company needing only basic web filtering might pay a steep premium for capabilities they don't need. Netskope One is a top-tier platform for mature security teams managing complex environments, securing a hybrid cloud-heavy workforce without hurting user experience. But be prepared for a steep learning curve and a significant investment in budget and engineering time to deploy and configure properly.
"Powerful Security and Real-Time Control with Netskope"
What I appreciate most is the cloud-native console for the next-gen secure web gateway, offering deep visibility into web, cloud, and private app traffic. This enables efficient operations without the high latency associated with legacy VPNs or hardware proxies. Real-time policy enforcement is excellent, letting admins control risk down to specific user actions rather than just blocking domains. The ability to create policies that manage file downloads and restrict uploads is significant for protecting sensitive info. Onboarding, while structured and requiring planning, is made straightforward with deployment via MDM or GPU. The main area for improvement is the policy engine's complexity and initial troubleshooting. Managing intricate rule chains, exceptions, and block patterns for DLP across multiple steering configs can become overwhelming, and diagnosing why a specific rule acted as it did is tricky. Deployment planning is essential, but the policy design phase demands ample preparation. Overall, Netskope provides granular activity control, deep visibility, real-time enforcement, and secure remote access without latency.
"Reliable and Consistent Security for Remote and Office Access"
We run several internal apps and servers that employees must access securely both on-site and remotely. Before Netskope, maintaining secure remote access while enforcing uniform policies was becoming tough. With Netskope One, we offer secure access to internal resources without exposing them to the internet. Its zero trust model ensures users only access authorized applications, and features like SWG, CASB, and DLP help protect sensitive data. The centralized console gives our security team clear visibility into user actions and makes policy management much simpler. Overall, Netskope has improved our security posture and made remote access more reliable and easier to handle. That said, the initial deployment and policy setup can be time-consuming, especially for complex environments. New admins may face a learning curve, and detailed reporting on large data volumes can feel slow. I'd love to see more built-in templates and guided configuration to speed up onboarding and daily admin. But these challenges are manageable and are outweighed by the platform's security strengths. The big challenge we faced was providing secure access to internal servers and apps for remote workers. Traditional VPNs meant more overhead and limited visibility. Netskope moved us to a zero trust model, so employees safely access only what they're authorized for, lowering unauthorized access risk. The platform also centralizes visibility across web, cloud, and private app traffic, making it easier to spot risks and apply consistent policies. Our IT team spends less time managing multiple tools, remote users enjoy smoother access, and we feel more confident that sensitive data is protected.
E
Engineer.SGB TCS-FS CORE BANKING,Production
"Centralized Visibility and Strong Security Controls"
This platform shines with its centralized visibility and control over cloud apps, web traffic, and private applications. Unified policies and robust data protection features let us manage security from a single pane, avoiding the clutter of multiple separate tools. The initial setup and policy configuration can be a bit complex, especially for newcomers, and some advanced capabilities require time to master. But once everything is properly set up, the platform is generally intuitive and easy to manage. It helps secure our cloud applications, web traffic, and sensitive data in one place, providing better visibility, reducing risks, and simplifying policy management. As a result, our team saves time, and our daily security operations are more straightforward and manageable.
"Unified Cloud Security with Deep Visibility, Yet Challenging Onboarding"
The Netskope One Platform excels at bringing together security for cloud, web, and private applications in one integrated solution. Instead of juggling multiple disconnected tools, it offers a consolidated SASE approach that merges data protection, threat prevention, and zero trust access. The main downside is its complexity during initial setup and configuration. Because it covers so much ground, getting policies tuned can demand significant time and expertise, especially for teams unfamiliar with SASE. The platform addresses the modern challenge of securing a distributed, cloud-first environment where users, data, and applications exist beyond the traditional network perimeter. A key issue it tackles is the lack of visibility and control over SaaS and cloud usage. Employees accessing Microsoft 365, Google Workspace, and other cloud apps from various locations makes it hard to monitor how sensitive data is used or shared. Netskope provides deep visibility and real-time policy enforcement, helping prevent data leaks and maintain compliance.
"Granular Insights and Policy Enforcement via Cloud XD"
What sets Netskope apart is its Cloud XD engine. Unlike conventional security gateways that only note that a user accessed Google Drive or Box, Netskope can identify the specific action—like distinguishing between signing into a corporate versus a personal Box account or downloading a particular file type—and lets admins set precise policies based on those actions. However, because the platform provides such deep, detailed visibility and policy control, it's quite complicated to configure. Teams new to SASE often face a steep learning curve and need considerable time to adjust initial policies without disrupting key business processes. The built-in Data Loss Prevention is particularly robust, capable of scanning data at rest via APIs (e.g., finding sensitive files in Microsoft 365) and inspecting data in motion to prevent accidental leaks or malicious exfiltration.