Digital transformation is reshaping how IT is delivered and governed: organizations must become more agile and innovative while simultaneously keeping up with expanding regulation, continuously improving security controls, and defending against a growing volume of attacks. Smart manufacturing and the Internet of Things further enlarge the attack surface, increasing the urgency of protecting high-value systems and data. Privilege Management is positioned as a central countermeasure because attackers frequently target privileged accounts, whose users have broad access to sensitive assets such as HR data, financial information, payroll, and intellectual property. Strengthening protections around these accounts can reduce the risk of major breaches and also helps detect long-running, previously undetected attacks that evade signature-based anti-malware; anomaly and outlier detection is emphasized as a necessary complement.
The text defines expected Privilege Management capabilities across shared account password management, privileged single sign-on, privileged account discovery and lifecycle management, and session monitoring/recording/analysis for both command-line and GUI sessions. Micro Focus, following its 2017 acquisition of HPE’s software division, expanded scale and scope to serve hybrid enterprises that must integrate on-premises and legacy environments with cloud assets for increasingly mobile users.
Micro Focus IAM offerings draw on Novell/NetIQ technology, with NetIQ Privileged Account Manager (PAM) as the core product. NetIQ’s strategy centers on centralization: privileged credentials are stored encrypted in a vault accessed through PAM, enabling comprehensive logging and policy enforcement down to commands/transactions. PAM supports credential checkout controls, post-use password changes, application-to-application password management via REST APIs, browser-based privileged SSO (including RDP relay), discovery via PAM Sniffer, and deep session capture including searchable video. Real-time alerting, color-coded risk flags, automated session termination, and compliance auditing are key strengths, while advanced analytics and strong authentication often require integration with other products, adding complexity.
See All Locations
See All Locations