Endpoint Privilege Management
33.3%
62.7%
2%
0%
2%
Overall I am satisfied with this tool. It is a very capable tool that enables us to implement the "Principle of Least Privilege" in practice.
As we are using the cloud version for EPM, I like the Analytics tab. It gives us detailed insights into the applications/processes and shows us a complete picture of what's happening at the user's end. This function is impressive.
Also, the support provided is good. Very useful.
Their training is very costly. Unlike other vendors, their content is not available.
Being a niche tool, it requires an intermediate to advanced level of knowledge of the Windows OS platform. I believe BT should offer their training on a complimentary basis (at least to its paying customers, if not for all).
It gives us detailed insights into the applications/processes running on users' machines and helps us manage the appropriate privilege levels. The principle of least privilege can be achieved once this tool is deployed. Users can install software or elevate their rights without being given complete administrator rights. Simply superb.
Whitelisting the most common applications (used in our organization) which require admin privileges to install or run has made day to day operations really smooth. Users are able to work with the right amount of privilege access, there by not posing a security risk for our organization.
There are few nagging issues which we have been unable to totally resolve as of now. Like when user saves file directly on the C Drive (windows install directory), the files are being protected and beyond trust doesn't allow the user to delete or modify it. Few users have complained about system performance taking a hit after we deployed beyond trust on their machine.
Beyond Trust Privilege Access Management has been really good for our environment, many of our end users were having local admin access on their machines which posed a huge security risk. We have been able to successfully eliminate this and provide on demand token based admin rights. Has considerably reduced calls to helpdesk which has taken work load of the team.
We had to eliminate providing admin rights to end users as it was posing a security threat, beyond trust has been excellent in doing the same without compromising the ability of the users to work.
We have been using this product for about a year now. We upgraded from the on-prem PowerBroker to the cloud version. The cloud version is great, simple, and catches most of the requirements that are needed by your end-users. The ideas proposed by us are being worked upon so that's nice that the product team is listening and implementing new changes.
There are some minor bugs that we are working with the support team to address and get fixed. It's very hard to get the engineer from the product team to discuss a few things and show them the real issue so that's the only thing that we would suggest.
The need for providing admin rights to the 45K users is eliminated. It is very dangerous to provide the admin rights to all users so by using this we are avoiding all the risks involved incase of any incidents.
The granularity of the solution is what makes it great overall + the options of deployment based on the customer environments.
I haven't had a chance to review other EPM solutions however with what I have seen with BeyondTrust EPM-it is surely a good tool!
The tool/solution sometimes doesn't allow few applications to run for various reasons however figuring this out is difficult unless you are well versed with Windows as there is no pop message etc. that notifies it. It just flashes a cmd screen sometimes and sometimes doesn't even flash any thing. When you go onto the registry, eventlogs, task manager processes then you know what's happening...This anyways is rectified via BeyondTrust support through PGCaptcure config etc..
Solving the problem of introduction/usage of unlicensed,pirated,dangerous softwares in environment!!
Ensuring productivity with security. Earning Client Confidence!!
Avecto seems to do a pretty good job of not allowing users to access unapproved material through the company I work for.
When updates or scans are running in the background, it tends to slow the processing speeds way down.
Helps protect the company from users accessing sites prohibited by DHHS.
Avecto seems to do a pretty good job of not allowing users to access unapproved material through the company I work for.
When updates or scans are running in the background, it tends to slow the processing speeds way down.
Helps protect the company from users accessing sites prohibited by DHHS.
Gives lot of control to the System Admistrators and Desktop Sucurity teams.
It is user friendly and easy for monitoring as what your Users can install/run with elevated privileges.
Sometimes the interface is confusing and need luser education as a user you need to know the process to use it.
It gives the System Admins to provide elevated permissions thorough the Avecto Tools and access management made easy.
Gives lot of control to the System Admistrators and Desktop Sucurity teams.
It is user friendly and easy for monitoring as what your Users can install/run with elevated privileges.
Sometimes the interface is confusing and need luser education as a user you need to know the process to use it.
It gives the System Admins to provide elevated permissions thorough the Avecto Tools and access management made easy.
that we don't have to give administrator rights to every user that needs to just install software on their machine. Their support is great and has been able to solve all our problems in a timely manner. We can also give admin rights to open certain files. like open the host file, tns file for databases, etc.
It can get complicated when you have many rules. Right now we are 2 years into using the software and have many rules. You need to make sure you title the rules well in order to differentiate them
Make sure you try the produc tand see if it makes sense for your situation. Take your time, and make sure you talk to all departments that will be using this to make sure you can write the rules accordingly.
we used to give everyone who needed to install software full local administrator rights to their machine. This was posing a security risk where if their account was compromised they could get rights to that workstation. With this software we are able to inject admin rights when people needed by writing rules that match certain criteria (path, hash etc) and people can still get work done, install software, but they do not have full administrator rights.
Looking for the right SaaS
We can help you choose the best SaaS for your specific requirements. Our in-house experts will assist you with their hand-picked recommendations.
Want more customers?
Our experts will research about your product and list it on SaaSworthy for FREE.
BeyindTrust provides very good funtionality of smart rules as well as scripting for managing before/during/after execution I can do as much as I can from the script without interfaring Or affecting user, other feature that helps me in getting all the logs at one place and then on the basis of this we can have rule and fix most of the issues, by ourself.
The Radius and SNOW-Automation help alot and provides new security layer.
Only one thing as of now but I think this will be coveredup in upcoming updates, Radius setiing must have failober option so we can add two radius addres if one not working this will route the traffic to other, we can do this by poeershell script but this will be more helpful if web console has the feature to add and select two tunnels at once on the same setting.
Snow automation not only saved our time but also make our policy lightweight as now we can approve the reqest from snow instead of heaving most rules for everyone, and this snow will allow the rule for specific user if we approve specific request.