BeyondTrust Password Safe vs LastPass comparison

Cancel
You must select at least 2 products to compare!
BeyondTrust Logo
3,178 views|2,046 comparisons
78% willing to recommend
LastPass Logo
2,887 views|2,687 comparisons
78% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between BeyondTrust Password Safe and LastPass based on real PeerSpot user reviews.

Find out what your peers are saying about Microsoft, HashiCorp, Amazon Web Services (AWS) and others in Enterprise Password Managers.
To learn more, read our detailed Enterprise Password Managers Report (Updated: March 2024).
768,415 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"The best aspect of the product is the ability to onboard devices. You can scan the IP subnets and onboard all the devices. You can then segregate them if it's a network device or a firewall. If it's a Windows server or a UNIX, you can basically scan your IT infrastructure and onboard the efforts, which should be managed. Once they have been onboarded, then the session management and password management are easy and nicely configurable.""The solution protects organizations from internal and external threats.""The CI/CD and REST API are also satisfactory; the solution has a full PAM feature set and they all work well.""The performance is good.""The actual innovations offered by the vendor stand out to me. They are quick to respond to market demands and the changing environment of privileged access management.""I like the session recording feature. I also like the analytics and reports. You can pull up a report, and the UI is fantastic. The system is recording when nobody's there, so we have a record of what's happening.""It provides integrated password and session management in one solution, which is important for us because, from an auditing standpoint, we are accountable for the type of access being used. We need to ensure that accounts are securely stored and there is the right type of accountability around who is gaining the access. After gaining it, how they're using it, where they're using it, etc.""Smart Rules is a nice feature in BeyondTrust. It is a unique feature that BeyondTrust has as compared to other vendors such as CyberArk. With Smart Rules, you can do automatic onboarding of accounts. There are a lot of options and features. For example, you can do onboarding based on different AD attributes. It is a nice feature in BeyondTrust that some of the other PAM vendors don't have. With other vendors, we have to create our own scripts, whereas, with BeyondTrust, we can just use the in-built Smart Rules."

More BeyondTrust Password Safe Pros →

"Increased security around password management for teams and collaborative efforts with external vendors.""One feature that is really important to us is the ability to create secure notes.""Until now, I haven't found anything like the dashboard. It gives you a security score. I find that to be really great. The Sharing Center is really great as well. And the Security Challenge is really great too.""Off-boarding of people is easy without changing shared account passwords.""It's improved security; we don't have to worry about people storing password loosely and secure them.""The initial setup for this process is straightforward and extremely easy. It just works.""The most valuable feature is the liberty of keeping encrypted passwords and elevated information in a sealed vault.""It's always hard to put a value on return on investment. You avoid one breach and it's paid for a million times over. We got a penetration test company internally, just to see how secure our network is, and there happened to be one bit of software that had been overlooked by an external company that managed it. It hadn't been upgraded so that managed to get them into the network. They would've been able to access through the test thing a file that we had previously. If that was a real-life scenario they would have been able to get into our network and get full access to our organization's passwords. If they did get in, they would have gotten access to the cloud. The ROI we see is that we are completely secured compared to what we had previously where there was a vulnerability."

More LastPass Pros →

Cons
"Documentation is the primary area of improvement.""The database instance onboarding should be simplified. The problem is that you can scan the assets and databases inside a server, but you cannot onboard them or manage them with the smart tools. It has to be done manually. I think they should try to include more custom platforms.""I think that BeyondTrust Password Safe could be improved with more testing. In the beginning, they were practically using customers as beta testers. Maybe the product has evolved since I last used it, but if you look at PAM, privileged access management, whatever's out there has already been done. I don't see there being any other enhancements that are being made regarding PAM, except to support more cloud-based applications.""We don't have much control over the appliance. When anything happens in the backend, we have to depend on the support team. We need to raise a case so that they can update the appliance. If we have control over it, we would be able to troubleshoot easily.""Named accounts don't work well in this solution. If you use named accounts for your administrative access, the way Smart Rules work is that it takes your SAM account name and matches it to the account name of your privileged ID, which creates limitations on size and how big those names can be because the directory has a 20-character limit.""The product needs to have better integration with SAP products.""The integration with Secure Remote Access must be improved.""We face screensaver timeout issues and problems with the server. I would like the product to include a server visibility feature."

More BeyondTrust Password Safe Cons →

"Right now we have two products; there is the password manager and there is the authenticator app. Ideally, these should be fully integrated and support better handling of two-factor authentication or any other authenticator data.""I also don't like the add-in for Internet Explorer and Google Chrome, because when you do the add-in, you can actually save that to your credentials in your IE, and the problem is, if I left my screen open, or any of the IT people leave their screen open someone could come up and access all their credentials in LastPass without having to put a password in within your own network. I don't like that functionality. We've banned that from any of our staff adding that as an add-in because we see that as a security risk.""Our biggest issue over the years was around the stability of the LDAP sync to AD.""Its user interface should be better, and there should probably be more information about scalability.""I struggle a little bit with the mobile app. As a browser extension, it works really well, and we are able to get to what we need to. However, on the phone, it's not quite as easy to navigate.""The ability to set up an account expiration limit/date would be very useful.""I would like to be able to reduce the log out time of the session.""One thing I wish LastPass had is an integration with Active Directory, not for synchronizing users but to actually manage, in some way, privileged accounts by replacing the password of LastPass itself."

More LastPass Cons →

Pricing and Cost Advice
  • "It has subscription-based licensing. BeyondTrust is three times less expensive than CyberArk."
  • "This solution is not cheap—it's a very expensive solution. Very, very expensive compared to the features and functions that they offer."
  • "We just pay for Password Safe. Session management is included, but we don't use it. There aren't any additional costs besides the standard licensing fees. We pay for an annual license."
  • "The pricing of BeyondTrust is very good as compared to other products. That was the main reason we decided to go with BeyondTrust at first."
  • "At the time, BeyondTrust was significantly cheaper than CyberArk. Pricing-wise, if I remember correctly, it goes by assets. The pricing was negotiated for our instances based on the number of assets that we onboard into the system. It is a little different from CyberArk, where the pricing is by users. So, it depends. If you have a lot of assets, it can get very expensive."
  • "When you buy Password Safe and perform your initial Discovery, you have all these servers that are added to your assets in BeyondTrust, but you're not using a license until you actually start managing the systems. BeyondTrust's licensing is based on the systems when they're managed, which means when an administrator is able to connect to the server through BeyondTrust with a managed account. There would be a privileged account on the endpoint when the licensing starts. A significant advantage to that is that there are many organizations that want to evaluate their environment prior to automatic management."
  • "The pricing structure is better than the competitors. It's much cheaper than CyberArk. They do the licensing on the basis of assets, not on the number of users. For CyberArk, they base the licensing on the number of users, and they have an expensive model of pricing. BeyondTrust has a cheaper model."
  • "The product is quite affordable."
  • More BeyondTrust Password Safe Pricing and Cost Advice →

  • "If you import from sources like XML, keepass, CSV files be sure to clean the import files, this reduces the adjustments in the slow tool itself."
  • "You do not have to purchase licenses for your entire organization. You can scale as adoption grows."
  • "The previous pricing was of good value. I don't really know, as of now, whether the new pricing is. The Enterprise license is $48 per license per year now. That is a steep increase of $24, which is what it was when we first signed up."
  • "It would be nice to do a quarterly true-up process with them versus having to buy 50 licenses at a time when we realize we're out, then we have to buy more. So far, they have been nice about letting us exceed our allotment and just letting us true-up on our own, but a more robust quarterly true-up process would be good."
  • "The pricing and licensing are okay. Basically, at the last contract negotiation, they attempted to jack the rate up and we just said, "No." We still did negotiations with them, but they bumped everything up quite a bit."
  • "LastPass was cheap as chips. It was very cheap, hence one of the reasons we went with it. If you're a small organization and you're after something that'll do 90% of your requirements, it's very good. Licensing and all that was really cheap and simple to understand."
  • "I have been involved with many password managers. Passportal, Secret Server, CyberArk, and BeyondTrust. I chose LastPass for our organization because of the pricing. The organization didn't want to implement something really expensive. LastPass, for what it's offering, for the price that it's offering the service, is unbeatable."
  • "In terms of pricing, my feeling is that they are all roughly the same. LastPass is in line with its competitors, plus or minute a dollar or two per month."
  • More LastPass Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Enterprise Password Managers solutions are best for your needs.
    768,415 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:The pricing is nice. It is a yearly basis license. I would rate the pricing a seven out of ten, where one is cheap and ten is expensive.
    Top Answer:The pricing is not cheap, but it could be better.
    Top Answer:The use cases are essentially the same as those for any PAM solution. Like addressing security compliance, securing the network against threats, and protecting all identities with intelligence and… more »
    Ask a question

    Earn 20 points

    Ranking
    Views
    3,178
    Comparisons
    2,046
    Reviews
    15
    Average Words per Review
    1,168
    Rating
    8.0
    Views
    2,887
    Comparisons
    2,687
    Reviews
    0
    Average Words per Review
    0
    Rating
    N/A
    Comparisons
    Also Known As
    BeyondTrust PowerBroker Password Safe
    LastPass Business, LastPass Enterprise, Lastpasss
    Learn More
    Overview

    Beyond Trust Password Safe is an automated solution that combines password and privileged session management into a single platform. Password Safe delivers secure access control, auditing, alerting, recording, and monitoring.

    This free and open-source password manager supports Windows and Linux, and some ports are available for other platforms as well. Their proprietary algorithm, Twofish, is considered highly secure, with the advantage that it is not affiliated with NIST. The Twofish algorithm secures the data while keys are delivered using SHA-256 authentication.

    The application is easy to use, and you can download the Windows app from several sites. Additionally, the application is available in 14 languages.

    Beyond Trust Password Safe Key Features

    • Continuous automated account discovery: Scan, identify and profile assets with the discovery engine. The solution has dynamic categorization that enables the automated onboarding of assets into groups.

    • Application-to-application password management: Password Safe offers an adaptable API interface including an unlimited number of password caches, therefore providing scalability and redundancy.

    • Secure SSH key management: The system automatically rotates SSH keys to enforce granular access control and workflow. Private keys securely log users onto systems without exposing them.

    • Adaptive access control: Evaluates context and provides access requests by considering factors such as time of access and location to determine the user’s authorization level.

    • Enhanced privileged session management: Admins can record, lock, and document suspicious behavior without disrupting productivity by managing sessions live.

    • Advanced privileged threat analytics: Password Safe monitors assets and user behavior every day, analyzing what are normal patterns and detecting deviations.

    • Multi-factor authentication: Password Safe supports 2FA (two-factor authentication) using Yubikey 4, Nano, or Neo.

    What can you do with Password Safe?

    • Cross-device and cross-platform syncing: You can safely store encrypted password files online, where you can access them via Password Safe-compatible apps.

    • Drag and drop password: Password Safe has a “Dragbar,” which you can use to complete forms by dragging and dropping icons over the form - for example, passwords, usernames, design tiles, and emails.

    • Autotype: With Password Safe, when you click on a web page or login box, the autotype feature will try to fill in your credentials automatically for you.

    • Import and export: You can import passwords from text, XML, or CSV fails. You can also export passwords in text, XML, and the PSAFE format.

    • Password generator: Generate secure passwords by using the algorithm. You can also define your password rules.

    Beyond Trust Password Safe Benefits

    • Controls third-party access: Password Safe secures the connection and automatically checks privileged credentials. The solution records all sessions.

    • Uses context to determine access: Password Safe considers risk factors like location, day, or time of access and uses them to adjust the permissions and privileges of each user.

    • Manages access for privileged and non-privileged accounts: By integrating with SailPoint IdentityIQ, Password Safe effectively manages user access for privileged as well as non-privileged accounts.

    • Reduces cloud risk: Password Safe simplifies secure storage and session management. It supports major cloud providers such as Azure, Amazon, Google, Rackspace, and GoGrid. It also supports social networks - Facebook, LinkedIn, and Twitter.

    • Integrates password and privilege management: Integrates with Endpoint Privilege Management to control the resources users can access and the actions they are allowed to take

    Reviews from Real Users

    A PAM Architect at a tech services company says, "BeyondTrust Password Safe's features that I have found most valuable are really those that are knitted in. That is their Smart Rules and Smart Groups, where you design your administration model so you create your AD groups and your asset groups, and configure Password Safe."

    An I.S. Architect at a insurance company mentions that "Session recording, password rotation, and password vaulting are the most valuable features."

      "One of the most valuable features is that this is a product designed with enterprises in mind," adds a Cybersecurity Architect at a tech vendor.

          Auto-pilot for all your passwords

          LastPass removes obstacles, letting you get back to the things you love most.

          Log in and go

          Once you save a password in LastPass, you'll always have it when you need it; logging in is fast and easy.

          Passwordless login

          Gain instant access to your LastPass vault by using the LastPass Authenticator instead of your master password.

          Generate strong passwords

          The built-in password generator creates long, randomized passwords that protect against hacking.

          Store digital records

          Insurance cards, memberships, Wi-Fi passwords... keep all your notes safe and easy to find.

          Share effortlessly

          Some things shouldn't be sent in a text. Conveniently and safely share passwords and notes with anyone.

          Dark web monitoring

          Stop worrying about data breaches. Get alerts if your personal information is at risk.

          Sample Customers
          Aera Energy LLC, Care New England, James Madison University
          Deakin University, Duke University, Code.org, Influitive, PeopleKeys, SMA Technologies, Skynamo
          Top Industries
          REVIEWERS
          Financial Services Firm50%
          Insurance Company20%
          Security Firm10%
          Government10%
          VISITORS READING REVIEWS
          Financial Services Firm15%
          Computer Software Company14%
          Manufacturing Company9%
          Government6%
          REVIEWERS
          Retailer13%
          Engineering Company13%
          Non Tech Company13%
          Legal Firm13%
          VISITORS READING REVIEWS
          Computer Software Company14%
          Insurance Company10%
          Financial Services Firm9%
          Comms Service Provider6%
          Company Size
          REVIEWERS
          Small Business50%
          Midsize Enterprise15%
          Large Enterprise35%
          VISITORS READING REVIEWS
          Small Business18%
          Midsize Enterprise12%
          Large Enterprise70%
          REVIEWERS
          Small Business53%
          Large Enterprise47%
          VISITORS READING REVIEWS
          Small Business27%
          Midsize Enterprise13%
          Large Enterprise60%
          Buyer's Guide
          Enterprise Password Managers
          March 2024
          Find out what your peers are saying about Microsoft, HashiCorp, Amazon Web Services (AWS) and others in Enterprise Password Managers. Updated: March 2024.
          768,415 professionals have used our research since 2012.

          BeyondTrust Password Safe is ranked 5th in Enterprise Password Managers with 19 reviews while LastPass is ranked 17th in Enterprise Password Managers. BeyondTrust Password Safe is rated 7.6, while LastPass is rated 7.4. The top reviewer of BeyondTrust Password Safe writes "Allows us to automatically rotate passwords, set the complexity, and enforce password policies on privileged accounts". On the other hand, the top reviewer of LastPass writes "Straightforward to set up, good support, intuitive to use, and offers good value for the cost". BeyondTrust Password Safe is most compared with HashiCorp Vault, Azure Key Vault, BeyondTrust Privileged Remote Access, Delinea Secret Server and CyberArk Enterprise Password Vault, whereas LastPass is most compared with Azure Key Vault, HashiCorp Vault, Keeper, CyberArk Enterprise Password Vault and Delinea Secret Server.

          See our list of best Enterprise Password Managers vendors.

          We monitor all Enterprise Password Managers reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.