Overview
Secure Cloud Access is a CyberArk Identity Security Platform service that provisions access Just-in-Time with zero standing privileges to cloud management consoles and services running in AWS, Azure and GCP environments. CyberArk Secure Cloud Access elevates access just-in-time to roles scoped with just enough permissions to adhere to the principle of least privilege and meet the risk reduction benefits of having zero standing privileges.
By elevating access just-in-time, the service enables technical teams with the permissions to do their job while reducing the risks of credential theft and excessive access. Secure Cloud Access allows users to launch sessions that are protected and monitored natively removing the need to go through a jump server. This enables seamless access while reducing risk and keeping visibility of end user behavior to satisfy audit. In the event of a critical situation, Engineers can request On-Demand elevation of access, enabling them to securely request and rapidly receive the elevated entitlements needed to save the day.
CyberArk Secure Cloud Access provides extensive controls to secure native access to every layer of a cloud environment-from cloud-native services to dynamic workloads running on the cloud to lift-and-shift workloads and SaaS applications. CyberArk Secure Cloud Access provides Just-in-time (JIT) access with Zero Standing Privileges. The solution analyzes cloud entitlements and offers an Insight to Action framework to accelerate risk reduction and time to value through migration to safer access policies-all with integrations into operations tooling for great developer and user experiences.
The solution provides native user experience as an end-user can work with the native tools they are used to (SSH client, web browser, future - DB client) while CyberArk secures the identity, the access, and the session. The solution also copes with the dynamic nature of the cloud by providing real-time discovery of VMs and cloud roles, to reduce the need to keep changing access policies or on-board new targets.
IT and development teams can also elevate access to workloads just-in-time using attribute-based access control (ABAC).
CyberArk Secure Cloud Access provides temporary elevated access management and has full integration with both AWS IAM Identity Center and AWS IAM. Access workflows can be integrated with common ChatOps Tools like Slack or ITSM Platforms such as ServiceNow. These integrations drive operational efficiency.
For custom pricing, EULA, or a private contract, please contact AWS-Marketplace@cyberark.com , for a private offer.
Highlights
- Provide Temporary Elevated Access, Just-in-Time with Zero Standing Privileges to Resources across your cloud estate
- Secure, Native access requiring no change in workflow, tooling or configuration for end users. This is provided to accelerate adoption
- Access workflows provide a rapid and clear route to elevated entitlements with close integration to ITSM and ChatOps tooling
Details
Features and programs
Financing for AWS Marketplace purchases
Pricing
Dimension | Description | Cost/12 months |
---|---|---|
SCA_SVC | Secure Access to Cloud Services - 20 users | $14,400.00 |
SCA_SVC_WKLD | Secure Access to Cloud Services and workload - 20 users | $20,160.00 |
Vendor refund policy
Contact CyberArk for support related questions: www.cyberark.com/customer-support/
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Resources
Vendor resources
Support
Vendor support
Contact CyberArk for support related questions: www.cyberark.com/customer-support/
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.