Ratings and Reviews 0 Ratings
Ratings and Reviews 0 Ratings
Alternatives to Consider
-
Securden Endpoint Privilege ManagerSecurden Endpoint Privilege Manager (EPM) enables enterprises to remove admin rights without impacting productivity across Windows, Mac, and Linux endpoints. It helps elevate applications for standard users and grants administrator privileges on a Just-in-Time (JIT) basis, eliminating standing privileges while ensuring uninterrupted user productivity. Organizations can enforce strong application control using allowlisting and blocklisting to prevent unauthorized or risky software execution while still enabling required business applications. Securden EPM supports on-demand application elevation and policy-based granular elevation control, allowing IT and security teams to precisely define which applications can run with elevated privileges and under what conditions. Privilege management continues even when endpoints are offline, ensuring protection for remote and traveling users. Temporary JIT local admin rights further minimize risk by granting elevation only when required and automatically revoking it afterward. The platform provides application usage tracking to help refine policies and optimize license usage, along with continuous monitoring of local administrator groups to prevent privilege creep and unauthorized privilege escalation. Built-in secure remote access enables IT helpdesk teams to troubleshoot endpoints without exposing credentials or granting permanent administrative access. Securden EPM also helps organizations meet compliance requirements including HIPAA, PCI-DSS, GDPR, and NERC-CIP. A highly scalable architecture supports enterprise-wide deployments, while a wide array of integrations enables seamless adoption within existing IT ecosystems. The solution also integrates tightly with ITSM platforms such as JIRA, GLPI, Zendesk, ServiceNow, and Freshdesk, allowing privilege elevation requests to be approved or rejected dynamically through existing service workflows, improving governance while maintaining operational efficiency.
-
ThreatLockerThreatLocker is a Zero Trust platform designed to prevent cyber threats by ensuring only trusted applications and processes are allowed to operate. It eliminates persistent admin privileges, applies least privilege controls, and gives organizations granular control over how software runs. Through application allowlisting, ringfencing, and storage controls, it blocks ransomware, zero day attacks, and unauthorized behavior before anything can execute. Built for today’s IT and security teams, ThreatLocker delivers centralized control and real time visibility across endpoints, users, and applications. It reduces attack surface, limits lateral movement, and supports compliance with detailed logging and audit trails. With rapid deployment, a continuously maintained application library, and efficient approval processes, organizations can enhance security while lowering operational complexity and maintaining uptime.
-
Securden Unified PAMAccess privileges and their corresponding credentials play a crucial role in safeguarding an organization's sensitive information. The nature of this sensitive data can differ widely depending on the sector; for instance, healthcare entities manage extensive patient records, while banks oversee financial and customer information. It is vital to secure access to these privileged accounts, as they are frequently unmanaged and scattered throughout the organization. A comprehensive Privileged Access Management solution, such as Securden Unified PAM, is essential for gathering all privileged identities and accounts into a centralized vault, simplifying management. By limiting access to these accounts and applying the Just-in-time access principle, organizations can enhance security. Users can initiate remote connections to authorized IT resources with a single click, while monitoring and managing these sessions for users, third-party vendors, and IT administrators through shadowing capabilities. Additionally, organizations should eliminate local admin rights on endpoints and implement application control policies to effectively uphold a Zero-Trust approach without hindering productivity. Furthermore, it is important to record and monitor all activities with thorough audit trails and actionable reports to maintain compliance with industry regulations, ultimately ensuring the protection of sensitive information.
-
ManageEngine Endpoint CentralManageEngine Endpoint Central is an enterprise-grade unified endpoint management and security solution that helps IT teams manage, secure, and support every device across their organization from a single centralized console. Endpoint Central provides the tools, automation, and intelligence needed to keep every endpoint secure, compliant, and productive. At its core, Endpoint Central automates the most time-consuming aspects of endpoint administration. Patch management covers Windows, macOS, Linux, and 1,000+ third-party applications with automated deployment policies, test-and-approve workflows, and rollback capabilities. Software deployment enables IT teams to install, update, and remove applications across thousands of endpoints simultaneously, while OS imaging workflows standardize device configurations for faster, consistent onboarding. On the security side, vulnerability assessment continuously prioritizes endpoint weaknesses using AI-powered risk scoring. Application control enforces a default-deny approach, blocking unauthorized software before execution. EDR delivers continuous behavioral monitoring and incident response, while NGAV neutralizes malware and ransomware before they cause damage. Device control, privilege management, browser security, and BitLocker and FileVault encryption complete the security stack. Remote support is built in no third-party tools required. IT technicians connect instantly to Windows, macOS, and Linux endpoints for real-time troubleshooting and diagnostics. Integrated MDM extends management to iOS and Android devices. DEX monitoring provides visibility into device performance and application reliability enabling IT teams to resolve issues before employees raise a ticket. Available as cloud or on-premises across five editions.
-
Admin By Request Endpoint Privilege ManagementAdmin By Request EPM lets users elevate only what a task needs, without keeping local admin rights switched on permanently. For longer work there's a time-limited Admin Session, and for a one-off there's Run As Admin, which elevates a single application and nothing else. Approvals go through the portal, mobile app, or API, and software you already trust can be waved through automatically with pre-approval and AI and Machine Learning auto-approval. Because privileges are set per user or group, a developer, an office worker, and an outside contractor each get an approach that suits them. It covers Windows, macOS, and Linux, comes with auditing and inventory as standard, and needs no extra infrastructure to run.
-
Airlock DigitalAirlock Digital provides application control and allowlisting, used by organizations worldwide to protect against ransomware, malware and other cyber threats. Our deny by default solution enables customers to run only the applications and files they trust, with all others blocked from executing. This approach minimizes attack surfaces and helps organizations align their cybersecurity strategies with government frameworks and standards. By securing endpoints running legacy and new versions of Windows, macOS and Linux, we extend protection across IT and operational technology environments. Airlock Digital delivers endpoint protection to financial services, government, healthcare, manufacturing and other industry organizations of all sizes.
-
IruIru AI is a next-generation, AI-native security and compliance platform designed to unify and automate enterprise protection in an increasingly complex digital landscape. Built from the ground up for the AI era, Iru integrates identity management, endpoint protection, and compliance automation within a single, context-aware system. Its proprietary Iru Context Model continuously interprets relationships between users, apps, and devices, enabling intelligent actions across authentication, threat detection, and audit workflows. The Identity module eliminates passwords with device-bound authentication, ensuring frictionless yet secure access to every enterprise app. The Endpoint suite consolidates management, detection, and vulnerability response into one lightweight agent, providing real-time visibility and cross-platform consistency. Meanwhile, the Compliance engine automates control mapping and evidence collection, reducing audit preparation time while maintaining continuous readiness. Unlike fragmented legacy tools, Iru’s unified approach minimizes security gaps, streamlines administration, and improves user experience across the organization. The platform’s scalability and AI automation have helped firms cut IT workloads in half while achieving stronger security postures and regulatory compliance. Trusted by global innovators like Airbus, Notion, McLaren, and BetterHelp, Iru is transforming how enterprises secure their digital ecosystems. With over 5,000 customers and top-tier ratings for usability and innovation, Iru empowers teams to focus on strategic growth rather than operational complexity.
-
ESET PROTECT AdvancedESET Protect Advanced delivers a robust cybersecurity solution tailored for organizations of various sizes. This platform provides cutting-edge endpoint security to combat ransomware and zero-day vulnerabilities effectively. It features full disk encryption to uphold legal standards and safeguard data integrity. The solution employs adaptive scanning, cloud sandboxing, and behavioral analysis to defend against emerging cloud-based threats proactively. Additionally, mobile threat protection encompasses anti-malware and anti-theft measures for both Android and iOS devices. Beyond this, it includes cloud application security, mail server protection, vulnerability assessment, patch management, and comprehensive cloud app safeguards. Enhancements such as multi-factor authentication and extended detection and response (XDR) bolster threat detection and response capabilities. The system offers a unified remote management interface that allows for seamless visibility into threats and user activities. Furthermore, it provides in-depth reporting and tailored notifications to keep users informed of potential risks and system status. This holistic approach ensures that businesses can maintain a strong security posture in an increasingly complex digital landscape.
-
NinjaOneNinjaOne streamlines the most challenging aspects of IT management, serving over 20,000 IT teams with enhanced capabilities. By delivering in-depth insights into endpoints, strong security protocols, and a unified control system, NinjaOne increases operational efficiency, protects sensitive information, and reduces IT costs. This all-encompassing platform provides a diverse set of tools for managing and securing endpoints, such as patch management, mobile device supervision, software deployment, remote assistance, backup solutions, and additional features, all made possible through its wide-ranging IT and security integrations. With its ability to adapt to various IT environments and needs, NinjaOne stands out as a vital resource for modern IT teams.
-
KitecyberKitecyber: Data & Gen AI Security, Built on the Endpoint Your most sensitive data—customer records, source code, financial data, IP, now leaves through browsers, Gen AI prompts, SaaS uploads, and the clipboard, faster than any network tool can react. Kitecyber stops that at the source, with a single lightweight agent that runs directly on the endpoint and acts the instant data is touched, not after it's already gone. Because it lives on the device, Kitecyber has full context: device posture, OS, process, data, user, and network activity together, in real time. That's the vantage point network- and cloud-only tools simply don't have. Data security that keeps up with your data. Kitecyber classifies sensitive information with LLM-powered, context-aware intelligence across 80+ categories — PII, PHI, PCI, source code, IP — at over 90% accuracy, not brittle keyword matching. It tracks data lineage through screenshots, encoding, and file conversion that defeat traditional scanners, and blocks violations inline, before data ever leaves the endpoint. Gen AI security for the age of AI agents. Kitecyber tracks sensitive data pasted or uploaded into tools like ChatGPT, Claude, and Gemini and stops it in real time. It discovers shadow AI reaching your devices and extends visibility to the AI agents now acting on your users' behalf, the blind spot identity- and network-based tools were never built to see. Trusted globally. Kitecyber protects fintech, SaaS companies, Gen AI companies, BFSI, manufacturing, healthcare and SMB organizations across the USA, Europe, the Middle East, and APAC, and partners with GRC leaders like Vanta and Scrut Automation to unify security and compliance. It's SOC 2 Type II compliant, deploys in about a day, and delivers enterprise-grade protection without enterprise complexity. See what full-context data and Gen AI security looks like. Learn more at kitecyber.com.
What is ManageEngine Application Control Plus?
Application Control Plus serves as a comprehensive enterprise solution that integrates both application control and privilege management functionalities to enhance the security of endpoints. It offers capabilities such as application discovery, rule-based whitelisting and blacklisting, management of privileges specific to applications, and just-in-time access to meet temporary needs, ensuring that it effectively addresses the complete range of application requirements for organizations. By leveraging these features, businesses can maintain a robust security posture while allowing for flexibility in their application usage.
What is Ivanti Application Control?
Ivanti Application Control enables organizations to manage and secure application usage across endpoints through dynamic whitelisting, granular privilege management, and policy-based access governance. We allow IT teams to authorize, restrict, or block applications based on set policies, reducing the attack surface without disrupting user productivity.
Integrations Supported
CloudNuro
Espressive Barista
HCL BigFix AEX
HivePro Uni5
Ivanti
Quickwork
Unframe
Integrations Supported
CloudNuro
Espressive Barista
HCL BigFix AEX
HivePro Uni5
Ivanti
Quickwork
Unframe
API Availability
Has API
API Availability
Has API
Pricing Information
Pricing not provided
Free Version
Free Trial Offered?
Pricing Information
Pricing not provided
Free Version
Free Trial Offered?
Supported Platforms
SaaS
Android
iPhone
iPad
Windows
Mac
On-Prem
Chromebook
Linux
Supported Platforms
SaaS
Android
iPhone
iPad
Windows
Mac
On-Prem
Chromebook
Linux
Customer Service / Support
Standard Support
24 Hour Support
Web-Based Support
Customer Service / Support
Standard Support
24 Hour Support
Web-Based Support
Training Options
Documentation Hub
Webinars
Online Training
On-Site Training
Training Options
Documentation Hub
Webinars
Online Training
On-Site Training
Company Facts
Organization Name
Zoho
Date Founded
1996
Company Location
India
Company Website
www.manageengine.com/application-control/
Company Facts
Organization Name
Ivanti
Company Location
United States
Company Website
www.ivanti.com/products/application-control
Categories and Features
Endpoint Protection
Activity Log
Antivirus
Application Security
Behavioral Analytics
Device Management
Encryption
Signature Matching
Web Threat Management
Whitelisting / Blacklisting