There is no question that a large part of being an Information Security professional is using your judgement to keep your organization secure. And, as with any profession, that means using and evaluating products (once they’re installed, they’re “tools”).
Sometimes, you get asked about such things.
See the link.
http://healthitsecurity.com/2013/02/11/how-a-healthcare-ciso-uses-his-iam-product/