Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

Ensure the protection, storage, and stringent management of tokens, passwords, certificates, and encryption keys that are essential for safeguarding sensitive information, utilizing options like a user interface, command-line interface, or HTTP API. Strengthen applications and systems through machine identity while automating the processes of credential issuance, rotation, and additional tasks. Facilitate the attestation of application and workload identities by using Vault as a reliable authority. Numerous organizations often find credentials embedded within source code, dispersed across configuration files and management tools, or kept in plaintext within version control systems, wikis, and shared storage. It is crucial to protect these credentials from being exposed, and in the event of a leak, to ensure that the organization can swiftly revoke access and remedy the situation, making it a multifaceted challenge that requires careful consideration and strategy. Addressing this issue not only enhances security but also builds trust in the overall system integrity.

Description

Keywhiz serves as a robust solution for the management and distribution of sensitive information, making it particularly compatible with service-oriented architectures (SOA). This presentation provides a concise overview of its functionalities. Traditional methods often involve placing secrets within configuration files adjacent to the source code, or transferring files to servers through out-of-band methods; both approaches pose significant risks of exposure and complicate tracking efforts. In contrast, Keywhiz enhances the security and ease of secret management by allowing secrets to be centrally stored in a clustered environment, with all data encrypted in a database. Clients securely access their authorized secrets using mutually authenticated TLS (mTLS), ensuring a high level of security during transmission. Administrators can manage Keywhiz through a command-line interface (CLI), facilitating user-friendly operations. To support various workflows, Keywhiz offers automation APIs that utilize mTLS for secure communication. Every organization invariably has services or systems that necessitate the safeguarding of secrets, including items such as TLS certificates, GPG keys, API tokens, and database credentials. While Keywhiz is dependable and actively used in production environments, it is worth noting that occasional updates may disrupt backward compatibility of the API. As such, organizations should remain vigilant about testing changes before deployment.

API Access

Has API Yes 

API Access

Has API Yes 

Screenshots View All

Screenshots View All

Integrations

AWS Marketplace Yes 
Anitian FedRAMP Comprehensive Yes 
Atom Yes 
AtomicJar Yes 
Clutch Yes 
Coder Yes 
Devolutions Remote Desktop Manager Yes 
Elastic Observability Yes 
Harness Yes 
JupiterOne Yes 
Keyfactor Command for IoT Yes 
Microsoft Azure Yes 
Nirmata Yes 
Opsera Yes 
Protegrity Yes 
QSE Yes 
TeamCity Yes 
Tectia Yes 
Worldr Yes 

Integrations

AWS Marketplace No 
Anitian FedRAMP Comprehensive No 
Atom No 
AtomicJar No 
Clutch No 
Coder No 
Devolutions Remote Desktop Manager No 
Elastic Observability No 
Harness No 
JupiterOne No 
Keyfactor Command for IoT No 
Microsoft Azure No 
Nirmata No 
Opsera No 
Protegrity No 
QSE No 
TeamCity No 
Tectia No 
Worldr No 

Pricing Details

No price information available.
Free Trial No 
Free Version Yes 

Pricing Details

No price information available.
Free Trial No 
Free Version Yes 

Deployment

Web-Based No 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows Yes 
Mac Yes 
Linux Yes 
Chromebook No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Customer Support

Business Hours Yes 
Live Rep (24/7) No 
Online Support No 

Customer Support

Business Hours No 
Live Rep (24/7) No 
Online Support Yes 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) No 
In Person No 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) No 
In Person No 

Vendor Details

Company Name

HashiCorp

Founded

2012

Country

United States

Website

www.vaultproject.io

Vendor Details

Company Name

Keywhiz

Founded

2015

Website

square.github.io/keywhiz/

Product Features

Data Security

Alerts / Notifications No 
Antivirus/Malware Detection No 
At-Risk Analysis No 
Audits No 
Data Center Security No 
Data Classification No 
Data Discovery No 
Data Loss Prevention No 
Data Masking No 
Data-Centric Security No 
Database Security No 
Encryption No 
Identity / Access Management No 
Logging / Reporting No 
Mobile Data Security No 
Monitor Abnormalities No 
Policy Management No 
Secure Data Transport No 
Sensitive Data Compliance No 

Encryption

Central Policy Enforcement No 
Drag & Drop UI No 
Email Encryption No 
Encryption Key Management Yes 
Endpoint Encryption No 
File Compression No 
File Encryption Yes 
Full Disk Encryption Yes 
Public Key Cryptography Yes 
Tokenization / Data Masking Yes 

Product Features

Privileged Access Management

Application Access Control No 
Behavioral Analytics No 
Credential Management No 
Endpoint Management No 
For MSPs No 
Granular Access Controls No 
Least Privilege No 
Multifactor Authentication No 
Password Management No 
Policy Management No 
Remote Access Management No 
Threat Intelligence No 
User Activity Monitoring No 

Alternatives

Alternatives

Knox Reviews

Knox

Pinterest