Cloud Identity offers a free subscription option as well as a premium option with additional enterprise features for larger organizations.
Choose between free & premium service
- Cloud Identity FreeâCore identity and endpoint management for users who donât need Google Workspace services, such as Gmail and Google Calendar.
- Cloud Identity PremiumâAdditional enterprise security, application management, and device management services.
Compare instead: Google Workspace editions
- Billing & support
- Endpoint management
- Directory
- Security & data protection
- 3rd-party app integration
- Reports & log events
- Drive and Docs editors
- Chrome browser
Billing & support
Cloud Identity Free |
Cloud Identity Premium | ||
---|---|---|---|
Subscription & license management | â | â | |
Support | Find support with other Google Cloud & Google Workspace users in Google Cloud Communities. | 24x7 Email, Phone, Chat | |
SLA | 99.9% | ||
Billing | â |
Endpoint management
License requirements are by user, not by device. Any users who want to sign in to a managed device must have a supported license for a feature to apply.
Device security settings
Cloud Identity Free | Cloud Identity Premium | |
---|---|---|
Fundamental endpoint management | ||
Basic passcode enforcement (mobile) | â | â |
Google Credential Provider for Windows (standalone) | â | â |
Network management (ChromeOS, Meet hardware) | â | â |
Advanced endpoint management* | ||
Strong passcode enforcement | â | |
Network management (mobile) | â | |
Mobile device security policies | â | |
Android work profiles | â | |
Enterprise endpoint management* | ||
iOS data protection | â | |
Mobile device certificates | â | |
Control access based on user and device context (Context-Aware Access) |
â |
* Feature set requires enabling advanced mobile management.
Device management
Cloud Identity Free | Cloud Identity Premium | |
---|---|---|
Fundamental endpoint management | ||
Basic mobile device management | â | â |
Fundamental management for computers | â | â |
Endpoint verification | â | â |
Company-owned device inventory (endpoints) | â | â |
Remote account sign-out | â | â |
Remote account wipe (mobile) | â | â |
Block devices | â | â |
Drive for desktop | â | â |
Advanced endpoint management* | ||
Advanced mobile management | â | |
Zero-touch enrollment for Android devices | â | |
Admin approval of devices | â | |
Remote device wipe | â | |
Windows device management | â | |
Enterprise endpoint management* | ||
Company-owned device inventory (Android & iOS) | â | |
Mobile device management rules | â | |
BeyondCorp Alliance partner integrations | â |
* Feature set requires enabling advanced mobile management.
Mobile app management
Cloud Identity Free | Cloud Identity Premium | |
---|---|---|
Fundamental endpoint management | ||
Public and private app management (Android) | â | â |
Advanced endpoint management* | ||
Public app management (iOS) | â | |
Android app runtime permissions | â | |
Selectively distribute mobile apps to users | â | |
Publish private Android web apps | â | |
Managed Android app settings configurations | â | |
Enterprise endpoint management* | ||
Private iOS app management | â |
* Feature set requires enabling advanced mobile management.
Device details
Cloud Identity Free | Cloud Identity Premium | |
---|---|---|
Fundamental endpoint management | ||
Basic device details (mobile) | â | â |
Basic endpoint details (computer & smart home devices) |
â | â |
Basic device reports (ChromeOS & mobile) | â | â |
Advanced endpoint management* | ||
Advanced device reports (mobile) | â | |
Enterprise endpoint management* | ||
Device log events | â |
* Feature set requires enabling advanced mobile management.
Directory
Cloud Identity Free | Cloud Identity Premium | |
---|---|---|
Basic directory management | â | â |
Organizational units & groups | Unlimited | Unlimited |
User lifecycle management | â * | â |
Manage groups for your organization | â | â |
Groups for Business | â | â |
Google Cloud Directory Sync (Synchronize Active Directory & LDAP directories with Google) |
â | â |
Admin roles & privileges | â | â |
Google Admin app for Android | â | â |
Google Admin app for iOS | â | â |
Automate tasks with Apps Script & APIs | â | â |
Secure LDAP: Connect LDAP-based apps & services | â |
* Cloud Identity Free increases your user cap by 50. To learn more, go to Your Cloud Identity free edition user cap.
Security & data protection
Cloud Identity Free | Cloud Identity Premium | |
---|---|---|
2-Step Verification | â | â |
Security keys for 2-Step Verification | â | â |
Password monitoring & strength control | â | â |
Collaboration with trusted external domains | â | â |
Self-service password recovery | â | â |
Set session length for Google Cloud services | â | â |
Data exports | â | â |
Data loss prevention (DLP) | â* | |
Control access based on user & device context (Context-Aware Access) | â | |
Set session length for Google services | â | |
Security center: Security dashboard | â** | |
Security center: Security investigation tool | â** | |
Security center: Security health page | â** |
* DLP for Drive is available to Cloud Identity Premium users who are also licensed for Google Workspace editions that include Drive log events.
** Some Security center features are not available in Cloud Identity Premium. For example, data related to Gmail and Google Drive.
3rd-party app integration
Cloud Identity Free |
Cloud Identity Premium | |
---|---|---|
Set up SSO using Google as an IdP to access third-party SAML apps | â | â |
Set up SSO using Google as an IdP to access custom SAML apps | â | â |
Set up SSO using a third-party IdP with Google as a service provider | â | â |
Automated user provisioning | â |
Reports & log events
Cloud Identity Free |
Cloud Identity Premium | |
---|---|---|
Admin log events | â | â |
User log events | â | â |
User reports: Security | â | â |
SAML log events | â | â |
Groups log events | â | â |
OAuth log events | â | â |
Apps reports | â | â |
User reports: Accounts | â | â |
Device log events | â | |
Automatically export log events to BigQuery | â |
Drive and Docs editors
Cloud Identity Free |
Cloud Identity Premium | |
---|---|---|
Storage per user | None, but users can use Google Workspace pooled storage | 15 GB times the number of End Users (pooled) |
Drive sharing permissions | â | â |
Google Drive for desktop | â | â |
Connected Sheets | â | â |
Advanced Drive auditing and reports (Drive audit log) | â | â |
Turn Docs creation on or off | â | â |
Shared drives | Viewer only* | Viewer only* |
Smart chip data extraction | â | |
Drive inventory export | â |
* They can comment on and edit files that are directly shared with them from shared drives.
Chrome browser
Cloud Identity Free |
Cloud Identity Premium |
|
---|---|---|
User policies & reporting | â | â |
Chrome sync | â | â |
Google, Google Workspace, and related marks and logos are trademarks of Google LLC. All other company and product names are trademarks of the companies with which they are associated.