

Idira Privileged Access Manager, CyberArk, and HashiCorp Vault compete in the privileged access management sector. CyberArk appears to have an edge with its comprehensive session management and integration capabilities that align well with enterprise needs.
Features: Idira Privileged Access Manager offers strong session monitoring with real-time control, enhancing user oversight. CyberArk provides full session recording, robust API/application integration, and security intelligence, meeting enterprise-level compliance needs. HashiCorp Vault specializes in dynamic secrets management, key lifecycle management, and encryption, ensuring secure access across various environments.
Room for Improvement: Idira could benefit from more plugin connectors and simplified integration with systems like AWS. Enhancing session recording search and expanding password management platform support would also be advantageous. CyberArk's complex interface and high pricing are drawbacks; addressing deployment issues and documentation challenges is necessary. HashiCorp Vault could improve its user interface and integration with advanced tools and policies.
Ease of Deployment and Customer Service: Idira's deployment across on-premises and hybrid cloud is flexible but complex, with inconsistent support experiences. CyberArk's on-premises and hybrid cloud presence is noted, yet deployment complexity and cost remain concerns, and mixed feedback on technical support exists. HashiCorp Vault's deployment can be intricate, with generally positive customer service, although response time improvements are needed. Its adaptability through hybrid cloud adds complexity for new users.
Pricing and ROI: Idira's cost may be high for small environments, but its configurations aim to balance cost with organization size. CyberArk's pricing is significant, yet its security benefits justify expenses, especially for large enterprises focusing on long-term security ROI. HashiCorp Vault's pricing is high at scale; however, its cloud-agnostic approach and open-source version offer accessibility. Enterprise pricing requires examination due to high-availability requirements.
HashiCorp Vault is good for maintaining secrets, credentials, and certificates without any complexity.
It increased our security score and made many of our applications follow a standard security compliance.
I have seen a return on investment regarding time saved for the APK signing because the main issue we faced was we were looking for a solution that standardizes it within one repository and allows us to generate different APK artifacts from the same repository.
The return on investment lies in improved security infrastructure, addressing over-privileged access, and reducing the risk of credential compromise, which is a major source of data breaches.
The end users have the authority to reconcile the password or verify it before using session isolation, which is one of the unique features that can be enabled through Privileged Session Manager, preventing any attacks from happening within the organization when connected with sessions through CyberArk Privileged Access Manager.
CyberArk Privileged Access Manager has helped customers save on costs primarily by reducing the number of engineering and information security personnel.
The customer support for HashiCorp Vault is very good, and its documentation is also very good; the documentation for other HashiCorp tools as well is very good, so I have no complaints.
Their support is quite responsive and they are focused on solving any issues that we are facing.
CyberArk has been exceptional in coming back to us with immediate responses.
It could be forever until you talk to someone who knows what they are doing.
Based on the issue resolution and support quality, I rate the support 10 out of 10.
If ten colleagues out of ten have access to HashiCorp Vault, we can use it in parallel with no downtime and high productivity, reflecting its scalability.
HashiCorp Vault has more scalability because we vault secrets more efficiently and with more reliability.
You could run it on a cluster which you have numerous machines which are large sizes, making it as big as you want or as small as you want.
The CPM can reportedly handle up to 50,000 accounts independently without issue.
I would rate it a ten out of ten for scalability.
They had 40,000 passwords in this one safe, and it was saving the last ten iterations of each password object. That means they had 400,000 password objects in this safe. They exceeded the limit.
HashiCorp Vault is a highly stable solution.
HashiCorp Vault has proven stable in my experience, showing no downtime or reliability issues.
The performance issues I experienced were not a HashiCorp Vault issue; it was an issue with a team that was not using it properly.
Proper fine-tuning and expertise ensure the product performs well.
Overall, the stability of the solution is high.
It has a large customer base and positive feedback within my network.
A search function would make it easier for teams to locate and manage their secrets in HashiCorp Vault.
There should be an inbuilt option for automatic initialization rather than running it manually.
It requires other solutions for monitoring as users need to rely on tools that constantly monitor the system, especially database activity.
They want everything to be on the cloud, but even in the SaaS version of CyberArk Privileged Access Manager, they need to deploy some servers on-premises.
We cannot generate a plug-in for web-based applications.
If they want clients to move to the cloud, they need to support them in real-time.
We did not feel any hidden costs inside this HashiCorp Vault component.
The advantage with Vault is that it is cloud agnostic.
The pricing setup cost for HashiCorp Vault is quite expensive, especially if you consider it against native, cloud-native equivalent tooling.
CyberArk is expensive compared to other products I know.
CyberArk is comparatively expensive compared to other PAM solutions, such as Delinea, especially during renewal.
CyberArk's SaaS solution is particularly expensive.
Vault keeps my secrets safe and encrypted.
HashiCorp Vault is used to perform secret rotation automatically, which has made the work significantly easier.
HashiCorp Vault has positively impacted my organization by streamlining access and secret management.
CyberArk Privileged Access Manager helps ensure data privacy because we now know who is using which credentials and at what time.
It keeps a record of activities, allowing me to easily fetch screen recordings to detect any misuse and see who did what and what happened.
It can integrate with Splunk, SNMP, and other solutions and technologies.
| Product | Mindshare (%) |
|---|---|
| CyberArk Privileged Access Manager | 6.5% |
| HashiCorp Vault | 5.6% |
| Other | 87.9% |


| Company Size | Count |
|---|---|
| Small Business | 7 |
| Midsize Enterprise | 4 |
| Large Enterprise | 16 |
| Company Size | Count |
|---|---|
| Small Business | 59 |
| Midsize Enterprise | 42 |
| Large Enterprise | 174 |
HashiCorp Vault is a powerful tool for managing secrets across cloud platforms. It enhances security through efficient integration with APIs and various cloud services, providing users with dynamic secrets, encryption, and access management.
Focusing on security, HashiCorp Vault offers dynamic secret generation, key revocation, and audit logging to enable efficient secret management. It supports identity-based access control, ensuring compliance and automation of secrets across platforms. Despite challenges like integration with service meshes and complex interfaces, Vault is beneficial for managing data integrity and security lifecycle improvements.
What are the key features of HashiCorp Vault?In industries like finance, healthcare, and technology, HashiCorp Vault is used to centralize the management of secrets and facilitate secure communication in environments such as Kubernetes and OpenShift. It supports compliance demands and reduces the complexity of credential storage and access, catering to diverse industry needs with its cloud-agnostic nature and tool compatibility.
CyberArk Privileged Access Manager safeguards privileged accounts through password management, credential rotation, and session recording. With seamless integration and real-time monitoring, it ensures robust security across platforms.
CyberArk Privileged Access Manager is recognized for its extensive capabilities in managing and securing privileged accounts. It offers vital functionalities such as automatic password rotation, real-time session monitoring, and cross-platform integration through APIs and custom connectors. Users find the flexibility in workflows and granular access controls beneficial, particularly in protecting access across cloud and on-prem infrastructures. However, improvements in its interface, installation process, plugin support, and integration with third-party tools are often suggested. Pricing is a concern for many, along with the need for better dashboard reporting, user provisioning, and enhanced documentation. Organizations leverage this tool for encrypting and monitoring critical account activities and automating password management to bolster security.
What are the key features of CyberArk Privileged Access Manager?
What benefits or ROI should users expect?
CyberArk Privileged Access Manager finds substantial use in industries such as finance, healthcare, and technology, where the protection of privileged accounts is critical. These sectors rely on its capabilities to manage application credentials securely and provide safe access for developers, administrators, and vendors across various infrastructures.
We monitor all Enterprise Password Managers reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.