Alert icon Keyboard navigation enabled.
Alert icon TAB or Shift+TAB to navigate across. Down ↓ to open menu. ESC to close menu.
Alert icon Down ↓ to select section. Right → to activate. Up ↑ / Down ↓ / Tab to traverse all. ESC to exit.
BeyondTrust
Skip to content Use space or enter to skip.

What can we help you find today?

Instant Results
  • Website Results
  • Technical Documentation

Filter Options

Focus your search

Filtering by

Your recent searches:

Contact Us Chat with Sales Get Support
  • English
  • Deutsch
  • français
  • español
  • 한국어
  • português
  • Home
  • Resources
  • Blog
  • BeyondTrust Extends Support for Securely Managing Cloud Infrastructure with Latest Release of DevOps Secrets Safe current page
Link copied

BeyondTrust Extends Support for Securely Managing Cloud Infrastructure with Latest Release of DevOps Secrets Safe

Dec 8, 2020
Author:
Alex Bw
Alex Leemon
Director, Product Marketing
Blog banner default
BeyondTrust Extends Support for Securely Managing Cloud Infrastructure with Latest Release of DevOps Secrets Safe
Alex Bw
Alex Leemon
Director, Product Marketing

With the release of v20.4, DevOps Secrets Safe builds on its secrets management capabilities by dynamically generating accounts to access APIs and enable DevOps engineers an automated way of managing cloud infrastructure. By brokering access to cloud environments through DevOps Secrets Safe, organizations can drastically reduce the security footprint of their automated workflows.

Every cloud service provider offers an extensive API that enables DevOps engineers with an automated way of managing their entire infrastructure. The accounts used to access these APIs are considered highly privileged, are primary targets for attackers, and, therefore, should be protected. Industry analysts have recommended securing these accounts with a centralized secrets management solution that can store these sensitive API keys used for access. In v20.4, DevOps Secrets Safe builds on its secrets management capabilities by dynamically generating these API accounts with a just-in-time model for privileged access.

Automated DevOps workflows typically need only a short window of access to accomplish a specific task. The persistence of a privileged account outside of this window represents a vulnerability for your infrastructure and introduces unnecessary risk. Now, your organization can leverage DevOps Secrets Safe to reduce your windows of vulnerability by eliminating persistent privileged access (i.e. standing privileges).

Other exciting new features in this release include:

Native 2FA Support

DevOps Secrets Safe already offered the protection of multi-factor authentication through 3rd-party integrations. In v20.4, we have introduced a built-in, time-based, one-time password (TOTP) 2FA workflow for all DevOps Secrets Safe users. This native 2FA capability ensures that every account can be protected, regardless of type or availability of other external dependencies.

Kubernetes Sidecar

The DevOps Secrets Safe integration with Kubernetes enables service accounts as identities for access to secrets. It also provides a simple init container for interacting directly with DevOps Secrets Safe on behalf of the application container at startup.

In some situations, the secrets provided to an application may need to be updated during the lifecycle of the applications container. For these instances, the BeyondTrust secrets agent container can be defined as a sidecar, retrieving secrets on a defined interval. This keeps your application up-to-date with the latest available secret.

Building on our Enterprise-level Secrets Management Solution

BeyondTrust continues to evolve the capabilities of DevOps Secrets Safe to meet a challenging privileged access management landscape and help customers advance their digital transformation projects.

DevOps Secrets Safe enables centralized secrets administration (create, store, access, and audit) designed for the high-volume and dynamic workloads found in DevOps environments. DevOps Secrets Safe helps organizations to secure credentials and other secrets (passwords, API keys, certificates, etc.) used by applications, automated processes, and other non-human identities in their continuous integration and continuous delivery (CI/CD) tool chain, runtime environments, and other automated processes.

DevOps Secrets Safe is designed for enterprise teams committed to DevOps security best practices and dedicated to applying secure solutions at every step of the process. The solution’s architecture leverages the full stack of Kubernetes as the DevOps deployment platform of choice. This allows our customers flexibility in deployment to meet their business needs (e.g., their preferred cloud provider or on-prem) and to cost-effectively meet enterprise security and compliance requirements.

Learn more here:

DevOps Secrets Safe Product Page

Putting the SECrets in DevSecOps Webcast

What’s New Doc

DevOps Secrets Safe v20.4 Release Notes

Latest Posts
  • Hooked on Identity (Part 2): Abusing OAuth Trust Boundaries in Okta
    Jun 12, 2026 Hooked on Identity (Part 2): Abusing OAuth Trust Boundaries in Okta
    Blog
    7m
  • Hooked on Identity: Abusing SAML Assertion Inline Hooks in Okta
    Jun 9, 2026 Hooked on Identity: Abusing SAML Assertion Inline Hooks in Okta
    Blog
    6m
  • Joining Project Glasswing: Securing the Privilege Backbone of the AI Era
    Jun 8, 2026 Joining Project Glasswing: Securing the Privilege Backbone of the AI Era
    Blog
    5m
  • The Most Common & Most Dangerous Types of Shadow IT
    Jun 5, 2026 The Most Common & Most Dangerous Types of Shadow IT
    Blog
    19m
  • 14 Password Management Best Practices
    May 28, 2026 14 Password Management Best Practices
    Blog
    12m
Related
  • Is Your Remote Access Strategy Adapted for the New Normal?
    Nov 30, 2020 Is Your Remote Access Strategy Adapted for the New Normal?
    Blog
    1m
  • Protecting the Government Workforce of the Future with Secure Remote Access
    Jan 14, 2021 Protecting the Government Workforce of the Future with Secure Remote Access
    Blog
    1m
Share this Article
  • Link
Stay up to Date
Get the latest news, ideas, and tactics from BeyondTrust. You may unsubscribe at any time.

Keep up with BeyondTrust

Customer Support Get Started
  • LinkedIn
  • X
  • Facebook
  • Instagram
  • Add BeyondTrust as a preferred source on Google
  • Privacy
  • Security
  • Manage Cookies
  • Do Not Sell My Data
  • WEEE Compliance

Copyright © 2003 — 2026 BeyondTrust Corporation. All rights reserved. Other trademarks identified on this page are owned by their respective owners. BeyondTrust Corporation is not a chartered bank or trust company, or depository institution. It is not authorized to accept deposits or trust accounts and is not licensed or regulated by any state or federal banking authority.

Prefers reduced motion setting detected. Animations will now be reduced as a result.