No more typing reviews! Try our Samantha, our new voice AI agent.

AWS Secrets Manager vs Azure Key Vault comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 11, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

AWS Secrets Manager
Ranking in Enterprise Password Managers
3rd
Ranking in Secrets Management Tools
3rd
Average Rating
9.0
Reviews Sentiment
6.8
Number of Reviews
17
Ranking in other categories
No ranking in other categories
Azure Key Vault
Ranking in Enterprise Password Managers
1st
Ranking in Secrets Management Tools
2nd
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
52
Ranking in other categories
Certificate Management Software (1st), Microsoft Security Suite (18th)
 

Mindshare comparison

As of September 2026, in the Enterprise Password Managers category, the mindshare of AWS Secrets Manager is 12.9%, down from 16.5% compared to the previous year. The mindshare of Azure Key Vault is 13.8%, down from 18.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Enterprise Password Managers Mindshare Distribution
ProductMindshare (%)
Azure Key Vault13.8%
AWS Secrets Manager12.9%
Other73.3%
Enterprise Password Managers
 

Q&A Highlights

NC
Content Manager at PeerSpot
Nov 24, 2021
 

Featured Reviews

Mahadev Metre - PeerSpot reviewer
Dev Ops Engineer at Paydoh
Consistent security and efficiency improvements optimize IT infrastructure with effective management
When creating AWS Secrets Manager, it should be automated using tools such as Terraform, Puppet, or Ansible. With Terraform code, you specify the encryption key, secret name, rotation policy, and secret replication. Human error occurs when feeding secret values manually, especially with large amounts of secrets to input. Secrets should never be protected only by IAM. They should be protected by multiple layers, such as IAM and one or two KMS keys. Additional security measures could be beneficial if necessary. The rotation policy is crucial because some secrets may become obsolete, require updates, or get compromised. With a weekly rotation policy, if unauthorized access occurs, the exposure is limited to seven days. The rotation policy can be customized according to needs.
Rajthilak BS - PeerSpot reviewer
Associate Vice President (Data Security & Protection - Confidential AI) at Standard Chartered Bank
Have addressed compliance challenges but still struggle with seamless integration of certificate issuance between environments
In terms of Azure Key Vault improvements, we have to compare the competitor. If we consider AWS, our bank has Microsoft PKI, which is a Microsoft product, for the entire digital certificate infrastructure. Even in the cloud, when it is AWS, the internal certificates are MS PKI. When we had a problem, users had to come to on-premise to get a certificate and import it to AWS Certificate Manager and assign it. We wondered why we could not issue the certificate directly from the cloud for cloud users. There was a simple way in AWS. They have a Private Certificate Authority (PCA) and Amazon Certificate Manager. Private Certificate Authority issues certificates to Amazon services. They also provide Amazon Certificate Manager to store and deploy certificates. These are two neat components - one is an issuer and another is storage and deployment solutions for certificates. With PCA, I can directly enable it and get certificates from AWS itself. AWS can issue SSL/TLS certificates if you enable it directly. If you consider Azure, it is not very clear. Even the naming convention, Key Vault, might not suggest that this is a PKI or certificate manager. You cannot issue certificates directly. They have app certificates and did not have a clear-cut certificate management solution in the cloud when I worked at that time. I am not sure whether they have updated Azure Key Vault as a full-fledged PKI solution now. From what I saw, it was not a full-fledged PKI solution. We are not majorly using Azure Key Vault because it is only for storing secrets. If some solutions can provide guidance on how we can maximize leverage, we can immediately look forward to doing that. We already have some business problems we want to solve. While our primary focus is AWS, many of the services such as ADO are running on Azure, and the secondary services are growing bigger.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"AWS Secrets Manager plays a significant role in optimizing IT infrastructure security and efficiency."
"It's highly scalable, so I'd rate it a ten out of ten."
"Secrets Manager helps in retrieving the enrollment variables used by the code."
"I would recommend everyone to use AWS Secrets Manager for their security and for storing their passwords, because I see that passwords nowadays are easily compromised."
"The most valuable feature is the management of credentials."
"AWS Secrets Manager has impacted my organization positively through security improvements because on that basis, I can rotate my keys and passwords at a certain time."
"All our workloads are running on AWS, so integration with our workload is much easier on AWS Secrets Manager than going with another solution such as Thycotic."
"The most valuable feature is usability, as it is quite user-friendly."
"The security on offer seems to be quite good."
"This solution speeds up the product development life cycle. That is, the time from the development of the product to the time to market is drastically reduced because of the CI/CD pipelines. You can have your code deployed within a matter of minutes."
"While Azure Key Vault is highly recommended due to its availability and ability to store confidential information, improvements are needed regarding access permissions and certification management."
"It provides a secure and centralized location for managing and protecting sensitive information, making it an essential component for enhancing the security."
"The product’s advantageous feature is integration."
"The GUI was quite easy for me to use."
"The solution can scale up as needed."
"The most valuable feature of the solution is the search for secrets feature that we use to store our passwords and connection strings."
 

Cons

"An area for improvement in AWS Secrets Manager could be expanding integration options beyond AWS services."
"The only concern with AWS Secrets Manager is its cost, which can be prohibitive for small organizations."
"There is room for improvement in terms of integrating with certain other platforms."
"If you add one more layer of security to AWS Secrets Manager, even the programmer will not be able to see the secrets."
"There is a need for better environmental implementation, such as having a security fund as a solution."
"If you don't have enterprise support, then you will not be able to get through to them to get the help. It is not only applicable to AWS Secrets Manager. It is also applicable to any service on AWS."
"The price of the solution could improve."
"AWS Secrets Manager could support hybrid infrastructure."
"One of my previous clients was one of the big banks here in the Netherlands and the EU courts have stated that Microsoft Azure Key Vault is not, according to their perspective, secure due to the fact that Microsoft has access to Key Vault."
"The solution needs to improve its cost."
"I would suggest making the user interface a bit more friendly."
"However, if you're not looking to have your application tied to one cloud provider, then you should stay away from this solution."
"We encountered a few problems where Azure had infrastructure problems like the DMS."
"They should improve its policies, which sometimes reapplied but don't sync properly between the Key vault and the role-based access. When I put some roles on the user side, it sometimes misses the end data to secure."
"Many times, the first round of support itself will fail, and they will bring some more competent people in the subsequent support. So it gets into a hierarchical mode. By then, we will lose a good amount of time. The technical support needs improvement."
"The big problem with Azure Key Vault is key rotation. We haven't found a good way to synchronize the credentials between the databases and Key Vault."
 

Pricing and Cost Advice

"The cost is somewhat high."
"We purchase a monthly license for the product."
"We've observed that AWS Secrets Manager pricing is based on a per-secret-per-month model. As a result, we prefer to divide our secrets into individual pieces to increase security and grant specific access permissions to certain secrets, systems, or individuals. However, this approach results in higher costs. Therefore, we have been exploring ways to combine our secrets into groups to reduce expenses and simplify management. Nonetheless, we acknowledge that this issue may not be related to the secret manager's functionality."
"The solution is expensive."
"I don't believe there is a license cost for the solution."
"The cost of the Azure Key Vault is very high and the pricing model is based on the number of keys that you store and retrieve."
"Pricing is quite reasonable and support is included, although premium support is available for an additional fee."
"The product has good pricing."
"Key Vault, like every Azure service, has a cost associated with it, but you don't have to spend thousands of dollars to spin up an environment to build a key management system. It's already there."
"The pricing is decent. It has a pretty low price. It is a straightforward cost based on usage."
"It is less expensive compared to other competitors."
"I rate the solution's pricing a four out of ten."
"I give the price of the solution a ten out of ten."
report
Use our free recommendation engine to learn which Enterprise Password Managers solutions are best for your needs.
912,753 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
12%
Comms Service Provider
9%
Manufacturing Company
8%
Computer Software Company
8%
Financial Services Firm
12%
Manufacturing Company
9%
Computer Software Company
8%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business8
Large Enterprise10
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise10
Large Enterprise28
 

Questions from the Community

Which is better - Azure Key Vault or AWS Secrets Manager?
Azure Key Vault is a SaaS solution. You can easily store passwords and secrets securely and encrypt them. Azure Key Vault is a great solution to ensure you are compliant with security and governanc...
Which is better - HashiCorp Vault or AWS Secrets Manager?
HashiCorp Vault was designed with your needs in mind. One of the features that makes this evident is its ability to work as both a cloud-agnostic and a multi-cloud solution. As a cloud-agnostic sol...
What needs improvement with AWS Secrets Manager?
AWS Secrets Manager could not be better because there has been no frustration with the product.
What needs improvement with Microsoft Azure Key Vault?
Based on my three years of experience, I believe there have been no updates to Azure Key Vault. I think the product needs upgrades in terms of access control and certification improvements. While A...
What is your primary use case for Microsoft Azure Key Vault?
Currently, I am not working in Azure cloud, as I work with different products. However, in my previous role, I worked extensively with Azure networking products including Azure Firewall, Virtual Ne...
 

Also Known As

No data available
Microsoft Azure Key Vault, MS Azure Key Vault
 

Overview

 

Sample Customers

Autodesk, Clevy, Stackery
Adobe, DriveTime, Johnson Controls, HP, InterContinental Hotels Group, ASOS
Find out what your peers are saying about AWS Secrets Manager vs. Azure Key Vault and other solutions. Updated: August 2026.
912,753 professionals have used our research since 2012.