

BeyondTrust Password Safe and HashiCorp Vault are strong contenders in the enterprise security software market. BeyondTrust seems to have the upper hand due to its comprehensive feature set, session management capabilities, and cost-effectiveness.
Features: BeyondTrust Password Safe offers password vaulting, session recording, and Smart Rules for automated account onboarding. It supports integration of assets, databases, and applications, offering detailed analytics and reporting, high scalability, and effective session management. HashiCorp Vault focuses on secret management with features like token sharing, dynamic secrets, and key revocation. It also excels in encryption management, secrets engine integration, and cloud compatibility.
Room for Improvement: BeyondTrust Password Safe needs enhancements in documentation, error reporting, and deployment simplicity. Users experience issues with database onboarding and RDP access, and desire better application integration. HashiCorp Vault could improve its graphical user interface and documentation, particularly for public cloud service integrations. Simplifying implementation and providing better pricing transparency are also necessary improvements.
Ease of Deployment and Customer Service: BeyondTrust supports various deployment environments, including Private Cloud, On-premises, and Hybrid Cloud. Customer service is responsive but occasionally slow to resolve issues. HashiCorp Vault, available for On-premises and Hybrid Cloud, benefits from a supportive community and documentation. Users find the system straightforward to deploy, though some support interactions could improve.
Pricing and ROI: BeyondTrust Password Safe is considered cost-effective with its asset-based pricing model, delivering rapid ROI. HashiCorp Vault, though initially costly due to scalability needs, offers an open-source version that reduces basic costs. Organizations with extensive needs may find Vault's pricing in line with its advanced capabilities, realizing ROI more quickly.
Next year, we may add another BeyondTrust element because the overall experience has been good.
HashiCorp Vault is good for maintaining secrets, credentials, and certificates without any complexity.
It increased our security score and made many of our applications follow a standard security compliance.
I have seen a return on investment regarding time saved for the APK signing because the main issue we faced was we were looking for a solution that standardizes it within one repository and allows us to generate different APK artifacts from the same repository.
The tickets for minor issues have been resolved efficiently.
One person gets aligned for troubleshooting and maintenance activities during their downtime, and within an hour, they complete these tasks.
The support and maintenance from BeyondTrust are commendable.
The customer support for HashiCorp Vault is very good, and its documentation is also very good; the documentation for other HashiCorp tools as well is very good, so I have no complaints.
Their support is quite responsive and they are focused on solving any issues that we are facing.
If using the built-in database, it requires good knowledge in Microsoft SQL, which could complicate scalability.
BeyondTrust Password Safe is scalable and stable from my perspective, as if you increase your CPU and RAM, you can use as many user licenses as you want on a single platform.
In my experience, the scalability of BeyondTrust Password Safe is also a nine.
If ten colleagues out of ten have access to HashiCorp Vault, we can use it in parallel with no downtime and high productivity, reflecting its scalability.
HashiCorp Vault has more scalability because we vault secrets more efficiently and with more reliability.
You could run it on a cluster which you have numerous machines which are large sizes, making it as big as you want or as small as you want.
In BeyondTrust Password Safe, the upgrade activity can take longer, and I have occasionally experienced being stuck during appliance version upgrades.
The solution is very stable.
HashiCorp Vault is a highly stable solution.
HashiCorp Vault has proven stable in my experience, showing no downtime or reliability issues.
The performance issues I experienced were not a HashiCorp Vault issue; it was an issue with a team that was not using it properly.
This feature would allow PAM to check the credentials of privileged accounts, indicating if they are correct or not, showing if the heartbeat has failed if they are wrong.
This would help in identifying suspicious activities immediately when users log in.
There are limitations when accessing or creating connectors for each application.
A search function would make it easier for teams to locate and manage their secrets in HashiCorp Vault.
There should be an inbuilt option for automatic initialization rather than running it manually.
It requires other solutions for monitoring as users need to rely on tools that constantly monitor the system, especially database activity.
The pricing model is more affordable with the option of going for either unlimited devices or users.
Pricing is managed by a different team, however, I know it's less expensive than CyberArk Privilege Access.
My experience with the pricing, setup cost, and licensing of BeyondTrust Password Safe is good because we have an asset-based license, not a user-based one, allowing us to add many clients with privilege access.
We did not feel any hidden costs inside this HashiCorp Vault component.
The advantage with Vault is that it is cloud agnostic.
The pricing setup cost for HashiCorp Vault is quite expensive, especially if you consider it against native, cloud-native equivalent tooling.
BeyondTrust JIT (Just-in-Time) Access helps minimize risks in the organization by allowing privileged accounts to be provisioned temporarily, granting users elevated access only for the required duration.
The flexibility of the licensing model is significantly better as it offers both unlimited users and unlimited devices, unlike Delinea, which is based on the number of users.
The features I find valuable in Password Safe include password retention and management, session privilege monitoring, live monitoring and recording, and the use of PS automation scripts for creating connections.
Vault keeps my secrets safe and encrypted.
HashiCorp Vault is used to perform secret rotation automatically, which has made the work significantly easier.
HashiCorp Vault has positively impacted my organization by streamlining access and secret management.
| Product | Mindshare (%) |
|---|---|
| HashiCorp Vault | 6.0% |
| BeyondTrust Password Safe | 3.0% |
| Other | 91.0% |


| Company Size | Count |
|---|---|
| Small Business | 13 |
| Midsize Enterprise | 5 |
| Large Enterprise | 10 |
| Company Size | Count |
|---|---|
| Small Business | 7 |
| Midsize Enterprise | 4 |
| Large Enterprise | 16 |
BeyondTrust Password Safe is a robust Privileged Access Management tool designed to secure access to servers, databases, and applications. It automates onboarding, rotation, and integration processes, enhancing efficiency and compliance with advanced security measures.
BeyondTrust Password Safe offers a comprehensive approach to managing privileged accounts, integrating smoothly into organizational frameworks to bolster security protocols. Its standout capabilities include session recording, Smart Rules for onboarding automation, and sophisticated auditing tools that support compliance and real-time monitoring. While it exhibits high availability and facilitates seamless usability, enhancements are needed in management console integration, documentation, and installation processes. Users benefit from its password rotation and policy enforcement, despite facing challenges with authentication sync times and session disconnects.
What are the core features of BeyondTrust Password Safe?In industries with stringent security demands, BeyondTrust Password Safe is employed to safeguard privileged accounts, ensuring compliance with regulatory requirements. It is crucial for sectors like finance and healthcare, where access to sensitive data must be tightly controlled and monitored.
HashiCorp Vault is a powerful tool for managing secrets across cloud platforms. It enhances security through efficient integration with APIs and various cloud services, providing users with dynamic secrets, encryption, and access management.
Focusing on security, HashiCorp Vault offers dynamic secret generation, key revocation, and audit logging to enable efficient secret management. It supports identity-based access control, ensuring compliance and automation of secrets across platforms. Despite challenges like integration with service meshes and complex interfaces, Vault is beneficial for managing data integrity and security lifecycle improvements.
What are the key features of HashiCorp Vault?In industries like finance, healthcare, and technology, HashiCorp Vault is used to centralize the management of secrets and facilitate secure communication in environments such as Kubernetes and OpenShift. It supports compliance demands and reduces the complexity of credential storage and access, catering to diverse industry needs with its cloud-agnostic nature and tool compatibility.
We monitor all Enterprise Password Managers reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.