Try our new research platform with insights from 80,000+ expert users

AWS Secrets Manager vs Azure Key Vault comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 29, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

AWS Secrets Manager
Ranking in Enterprise Password Managers
2nd
Average Rating
8.8
Reviews Sentiment
7.1
Number of Reviews
15
Ranking in other categories
No ranking in other categories
Azure Key Vault
Ranking in Enterprise Password Managers
1st
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
51
Ranking in other categories
Certificate Management Software (1st), Microsoft Security Suite (13th)
 

Mindshare comparison

As of September 2025, in the Enterprise Password Managers category, the mindshare of AWS Secrets Manager is 16.5%, down from 21.3% compared to the previous year. The mindshare of Azure Key Vault is 18.6%, down from 26.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Enterprise Password Managers Market Share Distribution
ProductMarket Share (%)
Azure Key Vault18.6%
AWS Secrets Manager16.5%
Other64.9%
Enterprise Password Managers
 

Q&A Highlights

NC
Nov 24, 2021
 

Featured Reviews

Mahadev Metre - PeerSpot reviewer
Consistent security and efficiency improvements optimize IT infrastructure with effective management
When creating AWS Secrets Manager, it should be automated using tools such as Terraform, Puppet, or Ansible. With Terraform code, you specify the encryption key, secret name, rotation policy, and secret replication. Human error occurs when feeding secret values manually, especially with large amounts of secrets to input. Secrets should never be protected only by IAM. They should be protected by multiple layers, such as IAM and one or two KMS keys. Additional security measures could be beneficial if necessary. The rotation policy is crucial because some secrets may become obsolete, require updates, or get compromised. With a weekly rotation policy, if unauthorized access occurs, the exposure is limited to seven days. The rotation policy can be customized according to needs.
Rajthilak BS - PeerSpot reviewer
Have addressed compliance challenges but still struggle with seamless integration of certificate issuance between environments
In terms of Azure Key Vault improvements, we have to compare the competitor. If we consider AWS, our bank has Microsoft PKI, which is a Microsoft product, for the entire digital certificate infrastructure. Even in the cloud, when it is AWS, the internal certificates are MS PKI. When we had a problem, users had to come to on-premise to get a certificate and import it to AWS Certificate Manager and assign it. We wondered why we could not issue the certificate directly from the cloud for cloud users. There was a simple way in AWS. They have a Private Certificate Authority (PCA) and Amazon Certificate Manager. Private Certificate Authority issues certificates to Amazon services. They also provide Amazon Certificate Manager to store and deploy certificates. These are two neat components - one is an issuer and another is storage and deployment solutions for certificates. With PCA, I can directly enable it and get certificates from AWS itself. AWS can issue SSL/TLS certificates if you enable it directly. If you consider Azure, it is not very clear. Even the naming convention, Key Vault, might not suggest that this is a PKI or certificate manager. You cannot issue certificates directly. They have app certificates and did not have a clear-cut certificate management solution in the cloud when I worked at that time. I am not sure whether they have updated Azure Key Vault as a full-fledged PKI solution now. From what I saw, it was not a full-fledged PKI solution. We are not majorly using Azure Key Vault because it is only for storing secrets. If some solutions can provide guidance on how we can maximize leverage, we can immediately look forward to doing that. We already have some business problems we want to solve. While our primary focus is AWS, many of the services such as ADO are running on Azure, and the secondary services are growing bigger.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature of AWS Secrets Manager is its seamless integration with various AWS services."
"I would highly recommend AWS Secrets Manager for secret management in AWS."
"The most valuable feature is usability, as it is quite user-friendly."
"It's highly scalable, so I'd rate it a ten out of ten."
"The solution is very scalable."
"AWS Secrets Manager is used for storing secret information that has to be a secret from your customer and your employees."
"AWS Secrets Manager plays a significant role in optimizing IT infrastructure security and efficiency."
"The API is fine and works well."
"Stability is very good."
"The most valuable feature is the ability to store secrets securely and encrypt them. It is pretty easy and straightforward to use."
"The security on offer seems to be quite good."
"Azure Key Vault is very affordable, with charges of less than a dollar for over ten thousand keys."
"The product’s advantageous feature is integration."
"Azure Key Vault's performance is excellent. It makes infrastructure management easier."
"The initial setup is very straightforward. It only took a few minutes."
"I would say it's granular controller who can access them."
 

Cons

"The sidecar feature has room for improvement."
"There is a need for better environmental implementation, such as having a security fund as a solution."
"There is room for improvement in the pricing model."
"If you don't have enterprise support, then you will not be able to get through to them to get the help. It is not only applicable to AWS Secrets Manager. It is also applicable to any service on AWS."
"We occasionally have problems with rate limits, although that is a problem more generally with AWS."
"There is a potential improvement in connecting AWS Secrets Manager to Jenkins CI/CD pipeline to automatically reflect changes in production."
"An area for improvement in AWS Secrets Manager could be expanding integration options beyond AWS services."
"It would be good if the AWS Secrets Manager were more customizable."
"Azure Key Vault takes time to fetch values while integrating it with the code written in .NET format."
"While it is reliable, enhancing security and protection should always be the priority."
"If the region where the Azure Key Vault data center is hosted goes down, it would be a cumbersome task since our company will have to come up with a different Azure Key Vault and migrate all the secrets or keys into it."
"Microsoft Azure Key Vault could improve by enhancing the security of credentials. Without the security or the use of key vaults, we would have to configure our credentials into the source code as plain text without the encryption or security."
"Inability to access the solution on the phone."
"While the solution already does a great job of managing keys, the solution could probably look at maybe expanding more into mobile devices and endpoints."
"The skill level of the support staff is also questionable."
"One area for improvement is the notification system for secret expiration. It would be beneficial if the service could handle this more autonomously, eliminating the need for additional integrations."
 

Pricing and Cost Advice

"The cost is somewhat high."
"The solution is expensive."
"We've observed that AWS Secrets Manager pricing is based on a per-secret-per-month model. As a result, we prefer to divide our secrets into individual pieces to increase security and grant specific access permissions to certain secrets, systems, or individuals. However, this approach results in higher costs. Therefore, we have been exploring ways to combine our secrets into groups to reduce expenses and simplify management. Nonetheless, we acknowledge that this issue may not be related to the secret manager's functionality."
"We purchase a monthly license for the product."
"I don't believe there is a license cost for the solution."
"We use a pay-as-you-go license for the solution, which is not very expensive."
"The product is inexpensive."
"The pricing is decent. It has a pretty low price. It is a straightforward cost based on usage."
"The product has good pricing."
"The price of the product is okay for my company."
"It is less expensive compared to other competitors."
"Key Vault, like every Azure service, has a cost associated with it, but you don't have to spend thousands of dollars to spin up an environment to build a key management system. It's already there."
"Pricing is quite reasonable and support is included, although premium support is available for an additional fee."
report
Use our free recommendation engine to learn which Enterprise Password Managers solutions are best for your needs.
867,676 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Financial Services Firm
13%
Manufacturing Company
8%
Government
6%
Financial Services Firm
13%
Computer Software Company
13%
Manufacturing Company
9%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business7
Large Enterprise8
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise11
Large Enterprise26
 

Questions from the Community

Which is better - Azure Key Vault or AWS Secrets Manager?
Azure Key Vault is a SaaS solution. You can easily store passwords and secrets securely and encrypt them. Azure Key Vault is a great solution to ensure you are compliant with security and governanc...
Which is better - HashiCorp Vault or AWS Secrets Manager?
HashiCorp Vault was designed with your needs in mind. One of the features that makes this evident is its ability to work as both a cloud-agnostic and a multi-cloud solution. As a cloud-agnostic sol...
What do you like most about AWS Secrets Manager?
The most valuable feature of AWS Secrets Manager is its seamless integration with various AWS services.
What do you like most about Microsoft Azure Key Vault?
With Azure Key Vault, we can generate our own keys and then import them inside the system, which provides a higher level of security than provider-managed keys.
What is your experience regarding pricing and costs for Microsoft Azure Key Vault?
The setup cost is low, as my usage is not extensive. I would classify it as low priced.
 

Also Known As

No data available
Microsoft Azure Key Vault, MS Azure Key Vault
 

Overview

 

Sample Customers

Autodesk, Clevy, Stackery
Adobe, DriveTime, Johnson Controls, HP, InterContinental Hotels Group, ASOS
Find out what your peers are saying about AWS Secrets Manager vs. Azure Key Vault and other solutions. Updated: July 2025.
867,676 professionals have used our research since 2012.