Delivers reliable policy control and improves data protection across cloud and endpoints
What is our primary use case?
My main use case for Forcepoint ONE is delivering data loss prevention and data protection to help customers comply with corporate or regulatory data protection requirements such as PII protection, and I also use it to prevent data leaks through web uploads, cloud storage, and email, while monitoring and controlling sensitive data transfer from managed endpoints.
From a vendor perspective, Forcepoint ONE helps us deliver centralized data protection for multiple clients under a single management framework, reducing operational overhead and providing visibility into how sensitive data moves across different channels, and it is essential for compliance and data governance.
No other use case for Forcepoint ONE comes to mind.
What is most valuable?
The best features Forcepoint ONE offers include the DLP engine with predefined policies for common data types that help us determine and use it directly, as well as cloud app control to protect SaaS platforms like Microsoft 365 and Google Workspace. We are also helped by the Incident Management Dashboard for quick review and policy tuning, along with integration with Forcepoint Endpoint DLP, allowing us consistent enforcement across devices.
The DLP engine and Incident Management Dashboard have made our work much more efficient in daily operations, as detection accuracy reduces the need for manual review, and the centralized dashboard helps us quickly identify which incidents need escalation or policy adjustment. It shortens response time for our clients, allowing their security team to view incidents in real-time, classify them easily, and focus on genuine risks instead of sorting through false positives, and it simplifies reporting and audit preparation since all the relevant data is consolidated in one place.
One feature that really stands out for us and our client is the seamless integration between Forcepoint ONE and the on-premise Forcepoint DLP, as it allows consistent data protection policy across both cloud and endpoint environments, making it much easier to manage.
Forcepoint ONE has positively impacted our organization by streamlining DLP policy management and reducing time spent on troubleshooting and manual reviews, providing faster compliance reporting for internal needs and compliance with local regulation, and improving visibility into how sensitive data moves across cloud and endpoint environments. Overall, it helps our customers operate more efficiently and confidently in enforcing data protection controls.
What needs improvement?
Overall, Forcepoint ONE performs well, but I think the dashboard could be made more intuitive, and the policy synchronization between cloud and on-prem components could also be faster and more transparent, alongside having more flexible reporting and alert customization to tailor insights for different clients and compliance needs.
It would be more helpful to have better integration documentation for complex hybrid deployments.
For how long have I used the solution?
I have been working in my current field for five months, and for Forcepoint ONE specifically, my hands-on experience is two months.
What do I think about the stability of the solution?
I think Forcepoint ONE is pretty stable, as the connection and agent synchronization are reliable, but it can still be improved.
What do I think about the scalability of the solution?
Forcepoint ONE offers good scalability overall, as it is a cloud-native SSE platform built on a multi-tenant architecture. It can easily scale to support thousands of users and devices without requiring major infrastructure changes, and from what I've seen while supporting clients, performance remains stable as the environment grows, whether that's adding more endpoints, expanding DLP coverage, or integrating with additional SaaS apps.
How are customer service and support?
Customer support has been responsive and professional in my experience, as the Forcepoint support team usually replies within a reasonable timeframe and provides clear guidance for troubleshooting. Having a local principal support available also helps speed up communication and coordination, especially for urgent or region-specific cases.
I would rate customer support 8 out of 10, as they are generally responsive and helpful when we open tickets, and having a local principal team really helps with faster issue resolution. There is still room for improvement in response time during complex cases, but overall, the experience has been positive and reliable.
How would you rate customer service and support?
What was our ROI?
Since I'm on the technical side, I don't handle ROI or financial metrics directly, but based on client feedback, many have seen improvements in operational efficiency mainly through centralized policy management and reduced manual investigation time, resulting in time savings and better visibility across their environments.
What other advice do I have?
My advice would be to clearly define your data protection goals before deployment and take time to properly configure policies that match your organization workflows. Forcepoint ONE is a powerful platform, especially when integrated with DLP and CASB capabilities, but it works best when you plan your deployment architecture early, whether for endpoints, cloud apps, or web channels, and also ensure to involve both IT, security, and business teams so the protection policies don't interfere with productivity.
On a scale of 1-10, I rate Forcepoint ONE an 8.
Which deployment model are you using for this solution?
Hybrid Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Amazon Web Services (AWS)
Has supported flexible policy setup but needs improved domain limits and streamlined configuration
What is our primary use case?
My main use case for Forcepoint ONE is deploying Force for customers, so I help them to configure policies according to my customer environment; what they mainly want to do is use it from a content filtering perspective, where they would want to block users from accessing the internet or certain parts of the URL or anything like that.
A quick specific example of how I've set up Forcepoint ONE for a customer is that they were trying to port over from an on-prem Forcepoint Content Gateway to a cloud one. As a deployment team, I receive a purchase order where my pre-sales and sales size the customer environment and suggest going with Forcepoint ONE, and what we did was port over certain parts of the policies, so it's more of a migration where we migrated the URLs that can be allowed and cannot be allowed to the particular Forcepoint ONE portal.
I have nothing unique to add about how my customers use Forcepoint ONE; they mainly use it for the content filtering perspective of it.
What is most valuable?
From my experience, the best features Forcepoint ONE offers include that most of their URLs are quite updated and it's easy to reclassify certain URLs or certain domains, making it quite user-friendly. I don't have much experience with other solutions because I've been working with Forcepoint most of the time, but I can say that compared to their on-prem or even cloud Content Gateway, Forcepoint ONE is a bit less easy to configure the policies due to certain limitations or the number of domains that can be added for one particular policy, whereas for the cloud one and the on-prem one, there are no such limits.
I feel that the on-prem one is more user-friendly apart from Forcepoint ONE, but I understand that Forcepoint ONE's main focus is not on content filtering; it has other features as well.
Their RBI is pretty useful as well as CASB, allowing certain people to access the app, and their ZTNA is also quite helpful; all those are actually pretty useful features in Forcepoint ONE.
Forcepoint ONE has positively impacted my organization and my customers, as it pretty much meets the expectations because they migrated from an on-prem one to a cloud one.
What needs improvement?
I believe that Forcepoint ONE could be improved when configuring certain policies; for content filtering, when trying to whitelist or blacklist certain domains, you can only do up to about 50 domains or URLs, which is a limitation that could be addressed.
Additionally, the administrating portion is quite messy in the sense that there are multiple places that need to be changed in order to reach one particular goal, so streamlining this could be much better. They could take example from their current tools, which are their cloud proxy as well as the on-prem proxy, to use as a baseline.
For how long have I used the solution?
I have been using Forcepoint ONE specifically for close to six months.
What do I think about the stability of the solution?
There have been some specific outcomes since switching to Forcepoint ONE. I did hear customer feedback that says it was slower in their portion, but I believe it's not due to Forcepoint ONE, it's due to their bandwidth issue. Other than that, there are no complaints because we didn't actually receive any particular feedback or any positive or negative feedback on this.
What about the implementation team?
We did not purchase Forcepoint ONE through the AWS Marketplace; it was purchased through Forcepoint.
What other advice do I have?
My advice for others looking into using Forcepoint ONE is that if you're solely getting it for content filtering, I wouldn't recommend it; however, if you're aiming for ZTNA or CASB, as an all-in-one solution, then I would recommend it. If it's only for specific tools, I wouldn't recommend it, but for a wholesome approach, I would recommend it.
There are areas for improvement as mentioned previously, so focusing on that could yield better results.
On a scale of 1-10, I rate Forcepoint ONE a 7.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Comprehensive Security Made Simple, but Setup Can Be Challenging
What do you like best about the product?
Forcepoint ONE is great because it puts all your security tools in one place, making it easier to protect users, data, and apps no matter where people work. It’s simple to manage and helps stop threats before they cause problems.
What do you dislike about the product?
One downside of Forcepoint ONE is that it can be complex to set up at first, especially for smaller teams. Some users also find the interface a bit overwhelming until they get used to it.
What problems is the product solving and how is that benefiting you?
Forcepoint ONE solves the problem of managing security across many apps, devices, and locations by putting everything into one cloud-based platform. It protects data, users, and apps from threats—whether people are in the office or working remotely. This makes security easier to manage and reduces the risk of data breaches.
I'm not entirely convinced
What do you like best about the product?
ZTNA is not only highly functional and effective, but it is also quite practical to implement.
What do you dislike about the product?
It has many problems, with DLP, also with ZTNA. It is very complicated to repair them, and sometimes we have to redeploy the appliances.
What problems is the product solving and how is that benefiting you?
It took them quite a while to fix the ZTNA issue, but once they did, for me, it's the best One module.
Effective data security platform with strong policy controls
What do you like best about the product?
Forcepoint ONE provides robust data security with strong DLP policy enforcement. It helps in identifying, monitoring, and protecting sensitive data across endpoints and networks. The centralized console makes it easier to manage incidents, apply policies, and ensure compliance with organizational security needs.
What do you dislike about the product?
The interface can be a bit complicated for new users, and some policy configurations require extra steps. Report customization is limited, which sometimes makes it harder to extract the exact insights needed. Occasional slow performance is also observed during policy or patch updates.
What problems is the product solving and how is that benefiting you?
Forcepoint ONE is helping our organization prevent sensitive data leakage by monitoring and controlling endpoints, email, and network traffic. It reduces the risk of insider threats and accidental data loss through automated policy enforcement. The solution also simplifies compliance with regulatory requirements by providing detailed incident tracking and reporting, which saves time for the security team and improves overall data protection.