Streamed Access Management Battle Card
| Key Competitive | Excalibur (Modern) | WALLIX (Traditional) |
|---|---|---|
| Platform | ✅ Unified Platform, Passwordless-first, visual streaming isolation | ⚠️ Proxy-based gateway, traditional credential vaulting |
| Deployment | ✅ Low: Cloud-native, deploys in hours | ⚠️ Medium: Appliance-based, longer deployment |
| Total Cost (TCO) | ✅ Lower, streamlined licensing | ⚠️ Moderate, add-ons increase cost |
| NIS2 Readiness | ✅ Full coverage out of the box, single platform | ⚠️ Good coverage but requires add-ons |
| Data Sovereignty | ✅ 100% EU owned & operated, zero US footprint | ⚠️ French HQ but international presence raises questions |
| Architecture | ✅ Isolation by Design, resilient to Zero-Day Threats | ⚠️ Proxy-Based, Limited Zero-Day Resilience |
| AI & Governance Model | ✅ Pre-Execution (Pre-Emptive) | ⚠️ Post-Execution (Reactive) |
| Web Access & RBI | ✅ Native DOM-streaming RBI with WAF, bi-directional protection | ❌ No inherent RBI-WAF, resource protection only, no user-side protection |
| MFA Integration | ✅ Built-in, Passwordless | ⚠️ External MFA providers, password-based |
| 📝 Audit Security | ✅ Cryptographically Signed Audits | ⚠️ Standard Audit Logging |
| Endpoint Agents | ✅ Fully agentless, HTML5 browser only | ⚠️ Requires plugins for advanced features |
Nobody buys security because they want to — only because they have to
Regulations like NIS2, DORA, and the EU Cyber Resilience Act are what drive purchasing decisions. The winning vendor is the one that covers all requirements, deploys easily, and costs less. With upcoming EU digital sovereignty rules, being a truly European vendor with zero US footprint is no longer optional — it's a decisive advantage.
| Sovereignty Dimension | Excalibur SAM | WALLIX |
|---|---|---|
| Company Ownership | ✅ 100% EU owned, zero US footprint | ⚠️ French HQ, but international operations |
| US CLOUD Act | ✅ Not subject — zero US presence | ⚠️ Verify US footprint — potential exposure |
| NIS2 Coverage | ✅ Full coverage — single platform | ⚠️ Partial — lacks built-in passwordless MFA |
| EU Vendor Qualification | ✅ Qualifies for upcoming EU vendor-preference regulations | ⚠️ International presence may create jurisdictional risk |
Excalibur's air gap architecture creates complete isolation between endpoints and resources — eliminating the attack path that WALLIX's proxy-based approach cannot close.
Excalibur's bi-directional RBI-WAF protects both users and web applications, addressing a critical gap in WALLIX's security model.
Excalibur's built-in passwordless MFA eliminates credential vulnerabilities and simplifies deployment compared to WALLIX's external MFA dependencies.
Kubernetes-based deployment provides superior scalability and reduced operational overhead compared to WALLIX's appliance-based approach.
While WALLIX is French-headquartered, Excalibur's zero US footprint provides categorically stronger sovereignty guarantees. As EU regulations tighten, having zero foreign jurisdictional exposure is a decisive advantage.
Compliance drives purchasing — NIS2, DORA, and CRA create the mandate. Excalibur covers all requirements in one platform that deploys via cloud tunnels in hours. When coverage is comparable, price, speed, and sovereignty decide — and we win all three.