CyberArk Launches New Machine Identity Security Platform to Protect Cloud Workloads

Unlike other solutions that focus on specific machine identity types, CyberArk’s approach secures all machine identities with a layered strategy.

Reading Time: 2 Min 

Topics

  • [Image source: Krishna Prasad/MITSMR Middle East]

    As organizations increasingly adopt cloud-native architectures and hybrid cloud environments, securing machine identities has become a critical priority for IT and security teams. With the growing complexity of cloud workloads, safeguarding non-human identities has never been more essential to prevent credential-based attacks and mitigate risks. 

    In response to these challenges, CyberArk has unveiled its new CyberArk Secure Workload Access Solution, designed to provide comprehensive protection for machine identities across multi-cloud environments.

    Machine identities are critical in cloud-native architectures, where they proliferate within applications, workloads, and automated processes. Unlike other solutions that focus on specific machine identity types, CyberArk’s approach secures all machine identities with a layered strategy. This helps organizations enforce least-privilege access, mitigate risks, and prevent credential-based attacks across their infrastructure.

    The new solution also enhances discovery and context capabilities, enabling security teams to assess and mitigate risks related to unprotected machine identities. Automated features help teams inventory secrets, certificates, and other critical data, allowing them to better understand and prioritize potential vulnerabilities.

    Kurt Sand, General Manager of Machine Identity Security at CyberArk, highlighted the growing risks of fragmented authentication in cloud environments. “Fragmented authentication creates an unprotected attack surface that increases breach risks. High-profile attacks have shown the need for a modern, identity-first approach to secure workloads across hybrid and multi-cloud environments,” he said.

    A key component of the solution is the CyberArk Workload Identity Manager, a cloud-native, distributed machine identity issuer. This solution goes beyond traditional Public Key Infrastructure (PKI) systems, which struggle to scale with the dynamic nature of cloud workloads. Workload Identity Manager integrates seamlessly with CyberArk Secrets Manager, ensuring secure access across cloud-native and containerized environments.

    The solution allows for the secure connection of on-premises and cloud workloads using unique SPIFFE2 identities. It also integrates with existing secrets management systems and helps organizations discover, assess, and mitigate risks, providing comprehensive security for dynamic workloads like Kubernetes and service meshes.

    Topics

    More Like This

    You must to post a comment.

    First time here? : Comment on articles and get access to many more articles.