Cisco Duo provides the only security-first Identity and Access Management (IAM) solution to protect organizations from identity-based threats. Duo integrates all necessary components to serve as the sole IAM platform, while operating as a unified defense layer across your existing identity infrastructure.
Duo Premier is our most comprehensive security-first IAM solution. Get complete zero trust access for every application and enable VPN-less remote access to private resources. Includes everything in Duo Essentials and Advantage, plus:
Duo Network Gateway: provide VPN-less remote access to private applications hosted on-premises or in multi-cloud environments while enforcing zero trust security principles. Enable secure, seamless SSO access to internal web applications (HTTPS) and servers via SSH, RDP, and SMB.
Endpoint Agent Verification: Limit device access to applications based on presence of an endpoint protection product (CrowdStrike, SentinelOne, Cisco Secure Endpoint, etc.).
Before subscribing, you are required to sign up on the Duo website https://signup.duo.com to create a Duo ID.
For questions related to product, pricing or private offers, reach out to our team at sales@duo.com
Highlights
Duo Premier is a comprehensive, security-first IAM solution that delivers unified protection against identity-based threats, leveraging AI and Identity Intelligence for continuous monitoring and proactive response across all authentication events.
Provide seamless, VPN-less remote access to private, on-premises, and cloud applications through Duo Network Gateway, enforcing zero trust security principles and providing secure SSO for internal resources.
Duo Premier strengthens access control by performing endpoint protection checks, ensuring only devices with approved security products can access applications, while simplifying management and reducing overall costs.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
This listing has one pricing dimension: Duo Premier (Users). You buy access in blocks of 50 users. Pricing scales with the number of user blocks you need. To cover more people, you add more 50-user blocks. This is a contract model, so you commit to a set quantity for the term. There are no separate tiers or instance sizes to choose from. Your cost is driven entirely by user count.
Top-of-mind questions for buyers
What counts as one user for billing in the Duo Premier (Users) dimension?
A user is one person whose identity and device you protect when they access your applications. You buy access in blocks of 50 users. Each individual who authenticates through Duo counts toward that total. To cover more people, you add more 50-user blocks.
What happens to my cost if my user count crosses a block boundary?
Access is sold in blocks of 50 users. If your headcount rises past a block limit, you add another 50-user block to stay covered. Cost scales with the number of blocks you hold. This is a contract model, so you commit to a set quantity for the term.
Does cost depend on data volume or number of devices instead of users?
No. Cost is driven entirely by user count in blocks of 50. Data volume and device count do not change the price. Each protected person counts as one user, regardless of how many devices they use or how much they authenticate.
Request a private offer to receive a custom quote.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Cisco Duo provides the only security-first Identity and Access Management (IAM) solution to protect organizations from identity-based threats. Duo integrates all necessary components to serve as the sole IAM platform, while operating as a unified defense layer across your existing identity infrastructure
Cisco Duo provides the only security-first Identity and Access Management (IAM) solution to protect organizations from identity-based threats. Duo integrates all necessary components to serve as the sole IAM platform, while operating as a unified defense layer across your existing identity infrastructure.
Our team of CX consultants are CDI-qualified conversational designers, AI trainers and award-winning copywriters, who design on-brand, human-centric omni-channel digital and voice conversations. Our aim is to improve AWS Lex performance, humanise automated conversations and build user trust, whilst delivering an impressive ROI!
Multi-factor access has strengthened our VPN security and reassured users after attacks
Reviewed on Oct 09, 2026
Review from a verified AWS customer
What is our primary use case?
We are using Cisco Duo in our company. Our primary use cases for Cisco Duo are mainly for our VPN connectivity for multi-factor authentication, and we are looking at extending it to other areas within our infrastructure for MFA deployment as well.
Before implementing Cisco Duo, we were concerned about phishing or credential-based attacks, especially since we experienced a ransomware attack, so we needed to ensure that we put in additional authentication for our platform. We started with that for our VPN connectivity where it will no longer be just a matter of username and password, but then we needed to step up with another layer of security.
When evaluating our identity strategy, we initially were looking for a standalone MFA tool, but then we wanted to extend Cisco Duo to our other environments because, for instance, our ERP system, we want to extend that authentication aspect to that area and then also other areas within our infrastructure. It is going to be a comprehensive solution for us, but we are still in the deployment stage. The first thing that we started with was the VPN aspect, but then we are extending it to other areas as well.
What is most valuable?
Cisco Duo's visibility into identity-based risks has improved our ability to manage security very well. Over the past four or five months that we started using it, we have noticed that it is really helping us.
Cisco Duo has helped us manage the security of both human users and non-human identities across our environment very well.
Cisco Duo has improved our operational efficiency, because we had attacks and were looking at getting another layer of security in terms of our infrastructure. Earlier on, you would only need to have your username and password to be able to connect to our VPN. But with another layer of Cisco Duo, it is helping us in terms of securing our users. Our users are now more comfortable after the attack in terms of being able to use that connectivity access, which is a key thing for us. It has really been very helpful.
What needs improvement?
I do not have a straight answer for how Cisco Duo can be improved at this time.
With the implementation that we are going through right now, I was asking a question about how we can use Cisco Duo on an application that is using its own internal authentication. I think it is more or less about us making sure that that kind of application is using perhaps our AD for the authentication, and that is where we would be able to implement Cisco Duo. I was just looking to find out whether it is possible to use it on a third-party application that is using its own internal authentication.
For how long have I used the solution?
Cisco Duo has been in use for less than a year. I would estimate approximately four to five months, which is not very long.
What do I think about the stability of the solution?
Cisco Duo is a stable product.
What do I think about the scalability of the solution?
Cisco Duo is scalable enough for our needs.
Currently, the number of people using Cisco Duo in our company is about fifteen, consisting of our management team and our executive team.
How are customer service and support?
Regarding the technical support by Cisco, I would say their products are very good. We have been using Cisco products for so many years, so we do not really have any issue with using Cisco products. They have been very secure, and in terms of performance, everything is very good for us.
I would rate their technical support a nine.
For response time, there may be a little bit of improvement needed because sometimes you have to wait a little bit, not too long, but sometimes you really want a quick response, and it is not always like that. There are also times when you need to understand some of these things.
Which solution did I use previously and why did I switch?
Before Cisco Duo, we were not using anything at all for MFA.
How was the initial setup?
The deployment process for Cisco Duo is straightforward for us and is not a difficult thing. It is not an issue.
What was our ROI?
I would not be able to talk much about cost reduction concerning Cisco Duo because since we deployed it, we have not engaged in any additional cost or anything like that, so I would not say that it has really helped us in terms of reduction of cost or an increase in expenditure. However, it is a product that is really helping us, so I think the cost-benefit of having it is something that we really appreciate.
What's my experience with pricing, setup cost, and licensing?
Regarding the pricing, what actually happened was that we got the product purchased through our HQ, so the costing aspect and all those things sit with our HQ. I do not have much information in terms of the costing when it comes to the procurement of it.
Which other solutions did I evaluate?
Before choosing Cisco Duo, all those evaluations were done from our HQ, so we were given the product to integrate into our system.
What other advice do I have?
Overall, I would give Cisco Duo a rating of nine out of ten.
Mike B.
Duo Makes Secure Logins Simple for Clients
Reviewed on Oct 05, 2026
Review provided by G2
What do you like best about the product?
Best thing about Duo is our clients find it easy to use. Just install the app on their smartphone and allow expected pushes and denies the others. Simple.
What do you dislike about the product?
Since the buyout with Cisco the product development seems to have stopped, while the support and documentation are great I'm not sure about the software development
What problems is the product solving and how is that benefiting you?
Identity management. Users can prove they are who they say they are and keeps their logins secure and logged. Having a 3rd party MFA is important to security
Rajdeep G.
Secure MFA and SSO with Duo: Push, Device Trust, and Adaptive Access
Reviewed on Sep 21, 2026
Review provided by G2
What do you like best about the product?
MFA via push, single sign on, device trust, adaptive access policies, password authentication, duo directory... and some similar features... duo mobile app
What do you dislike about the product?
Additional user step, dependence on mobile devices, internet service dependencies, deployment complexity, user enrollment can require administration, offline access limited, possible authentication description and cost
What problems is the product solving and how is that benefiting you?
Its application-wide integration gives us flexibility to integrate Microsoft 365, VPN, SSO applications, cloud applications, and also our own enterprise applications. Its centralized administration also helps us; it gives us good visibility and reporting needs and works with existing identity systems with a password-less option also benefits us.
Daniel L.
Easy Setup, Robust MFA Features
Reviewed on Sep 18, 2026
Review provided by G2
What do you like best about the product?
I find Cisco Duo is really easy to set up, and it integrates smoothly with all of our Active Directories, whether on-prem or intracompany, acting as a second layer of authentication. I appreciate the multiple methods of authentication, including app notifications, phone calls, and messages, which add to the security. The on-prem Active Directory integration allows us to secure our systems well. I also like the direct app authentication methods that make interception much harder from a security perspective. Overall, it's set up well considering the price point.
What do you dislike about the product?
The logging in the portal could be improved. It's an on-prem application for when it's AD integrated, but figuring out why authentication is failing can be tricky. It would be better if those logs were placed in the polls, making them more accessible and understandable.
What problems is the product solving and how is that benefiting you?
I use Cisco Duo to enable multifactor authentication on Windows login devices and folders, securing them more effectively. It's really easy to set up and integrates seamlessly with Active Directory, providing multiple authentication methods that enhance security against interception.
Aditya P.
Painless MFA with Clear Policy Enforcement
Reviewed on Sep 15, 2026
Review provided by G2
What do you like best about the product?
For the most part, the push notifications make MFA painless and easy. Setting up single sign-on with MS 365 and Google Workspace was pretty straightforward. I also appreciate how clean and clear the policy enforcement rules are; they let me manage conditional access by user role without having to jump through too many hoops.
What do you dislike about the product?
The main drawback for me is the pricing jump whenever I need enterprise features such as advanced policy controls. Could be relooked for smaller teams. Also, while the basic navigation is fine, finding specific security settings in the admin portal can feel a bit scattered. A few options are buried two or three sub-menus deep, which makes them harder to locate quickly
What problems is the product solving and how is that benefiting you?
It solves the constant worry of account compromise by adding a quick, reliable layer of security to my everyday logins. I use it to access my work email and internal tool dashboards safely. Biggest benefit for me is sheer convenience. Getting a simple push notification on my phone means I stay secure without losing time (messing around with manual SMS codes or security tokens)