Privileged Access Management (PAM) is positioned as a core control within access risk management and identity security because privileged accounts remain a primary path for attackers to gain entry, steal data, or damage infrastructure. Digital transformation—hybrid IT, cloud adoption, DevOps acceleration, and regulatory pressure such as GDPR—has expanded both the number of “business critical/confidential” systems and the population of humans and applications needing privileged access. This widens the attack surface and increases the need for dedicated PAM capabilities beyond traditional administrator account management. Privileged users now span IT administrators managing system, software, and service accounts, as well as business users accessing sensitive assets like HR, payroll, financial data, intellectual property, and even social media accounts.
WALLIX, a France-based cybersecurity vendor, offers PAM via WALLIX Bastion, complemented by adjacent capabilities such as IDaaS and MFA. The 2021 Bastion platform is organized into five components—Session Manager, Password Manager (Vault), Access Manager, Privilege Elevation and Delegation Manager (PEDM), and Application-to-Application Password Manager (AAPM)—and is now compatible with WALLIX BestSafe to address Endpoint Privilege Management (EPM), a need intensified by large-scale remote work. Bastion emphasizes agentless deployment and a web-based administrative interface, with robust session monitoring and recording. Enhancements include shared-session collaboration extending the four-eye principle, rapid session termination with reconnection prevention, and remote monitoring of internal privileged sessions.
Bastion integrates with SIEM and Vulnerability Management tools, supports detailed recording for both graphical and command-line sessions (including OCR-based video search), and scales via multiple appliances, centralized management, and jump servers. AAPM targets non-human access and DevOps/RPA use cases by delivering vaulted credentials via REST APIs to tools like Terraform and Ansible, reducing hard-coded secrets. Strengths include mature PSM, multi-tenancy, high availability options, and strong roadmap execution, while challenges include dated UX areas, product overlap between Access Manager and BestSafe, limited penetration outside EMEA, and a need for more native DevOps integrations.
See All Locations
See All Locations