Elevating Secrets Security with Shared Safes and Cloud Integrations
Feb 5, 2025
In this blog, we’ll break down the latest enhancements to BeyondTrust Password Safe and explain why they matter for your organization.
Author:
Timothy Jester
Sr Manager, Product Marketing
Elevating Secrets Security with Shared Safes and Cloud Integrations
Timothy Jester
Sr Manager, Product Marketing
Discover What's New in Password Safe 24.3: Enhanced Cloud Support and Security Features
Link copied
As organizations continue to adopt and migrate to cloud, ensuring management of all identities has become more complex than ever before. Addressing secrets sprawl and access management across the entire estate to achieve compliance and maintain security is complicated and requires visibility into more areas than many organizations have bandwidth to achieve.
Further, DevOps teams are being tasked with deploying as quickly as possible and are often needing access to the same credentials across teams, while also ensuring least privilege access and operational efficiency is maintained.
BeyondTrust’s latest Password Safe release (version 24.3), introduces significant enhancements that improve privileged access security, cloud integrations, and administrative control. From Shared Safes that offer more streamlined secrets management to expanded support for Azure Government Cloud and Google Cloud Platform (GCP), this update brings powerful tools that advance security while simplifying IT operations.
In this blog, we’ll break down the key enhancements and why they matter for your organization. For a comprehensive overview of Password Safe’s newest features and improvements, please refer to the official release notes.
What’s New: Key Updates in Password Safe 24.3
Link copied
Password Safe 24.3 introduces several key features to solve the rapidly changing challenges that organizations see daily:
1. Shared Safes: A Smarter Way to Manage Secrets
The latest release implements a permissions and sharing model that enables least privilege access for increased security and operational productivity.
Shared Safes secures secrets across teams with granular and flexible permission sets that support multiple teams, each with varying levels of access, to the same set of secrets. This upgrade enhances flexibility and control by allowing both users and groups to co-own shared secrets, ensuring better collaboration and more secure access management. It also allows users to share access, while maintaining least privilege. This greatly reduces risk by delivering a secure audit trail of access, and it increases operational efficiency, while keeping within the organization’s guidelines for secrets access.
Key Benefits of Shared Safes:
Granular Access Control: Admins must be explicitly granted permissions to access specific safes, reinforcing security best practices.
Improved Visibility: A new "Show All Safes" toggle makes it easier to manage and oversee stored secrets.
Faster Retrieval: Users can now search for secrets by ID, streamlining access to critical credentials.
By implementing these enhancements, organizations can better protect sensitive credentials, while enabling efficient and secure collaboration across teams.
Shared Safes provides simple checkbox toggle options with granular permission sets and expiration dates to ensure least privilege and no standing access.
2. Expanded Cloud Support: Azure Government & Google Cloud Integration
As cloud adoption grows, BeyondTrust continues to expand its capabilities to support more cloud environments. Password Safe version 24.3 introduces new discovery, onboarding, and management for Google Cloud Platform (GCP), with integrations for Microsoft Azure Government Cloud and Google Cloud Platform (GCP), as well as AWS and Entra ID, empowering organizations with expanded privileged identity management capabilities in the cloud.
Azure Government Cloud Support: Azure Gov Discovery, Onboarding, and Management
Password Safe now offers support for Microsoft 365 Government Community Cloud (GCC), allowing organizations to discover and manage identities within highly regulated GCC environments and facilitating the deployment of Password Safe in these settings. This integration allows users to utilize GCC identities to access BeyondInsight/Password Safe seamlessly. Additionally, Entra ID (formerly Azure AD) hosted in Microsoft Azure US Government is now supported, enhancing identity management and security for government entities.
Google Cloud Platform (GCP) Integration: GCP Discovery, Onboarding, and Management
As part of BeyondTrust’s Advanced Cloud Management initiative, Password Safe now extends full support to Google Cloud Platform (GCP). This capability enables:
CGP account discovery and management
GCP credential management: automated password rotation and policy enforcement
Secure privileged access management (PAM) for GCP resources
Key Benefits of Expanded Cloud Support:
Enhanced Government Compliance: Enables discovery and management of identities within Microsoft 365 Government Community Cloud (GCC) environments.
Greater Cloud Flexibility: Supports Entra ID (Azure AD) in Microsoft Azure US Government, ensuring secure identity management in highly regulated industries.
Seamless Multicloud Security: Extends privileged identity management to Google Cloud Platform (GCP) with automated account discovery, password management, and security enforcement.
Discovery, onboarding, and management for GCP further reduces risk introduced by cloud platforms by driving visibility, and by securing cloud identities and privileged data within GCP. By enabling this functionality across GCP, AWS, and Azure, Password Safe is fully featured across the three main cloud platforms. These integrations ensure organizations leveraging multicloud, cloud native, and hybrid environments can enforce security policies consistently and easily across their infrastructure.
3. Active Directory Synchronization for Better Asset Management
Organizations using Active Directory (AD) to manage users and assets will benefit from new system description synchronization capabilities in Password Safe 24.3. Now, admins can manually create assets with descriptions, which are automatically synchronized from Active Directory into the Password Safe user portal through Directory Query-based Smart Rules.
This enhancement improves asset tracking and administration, ensuring IT teams have greater visibility and streamlined access to consistent, accurate, and up-to-date information on critical resources across systems.
Improved Compliance: Maintains accurate records for security audits and compliance requirements.
Why These Updates Matter
Link copied
Threat actors are increasingly targeting privileged identities and cloud environments, which means organizations need stronger, more flexible security solutions. The enhancements in Password Safe 24.3 offer:
Better protection for privileged credentials
Expanded multicloud security
Improved asset tracking and IT management
Greater security controls to prevent misconfigurations and accidental access issues.
By adopting these new features, security and IT teams can proactively manage privileged identities, reduce attack surfaces, and enhance compliance efforts.
“We’re excited to cover the big three cloud providers from a discovery and management capability and Shared Safes brings tremendous value to our customers with the ability to enable collaboration that moves at the speed of their business.”
--Jeff Kistler, Principal Product Manager
Next Steps
Link copied
Password Safe 24.3 brings critical advancements to identity security, cloud integrations, and privileged access management. Whether you’re looking to improve secrets management, strengthen cloud security, or enforce better administrative controls, this update provides the tools necessary to enhance your security posture.
To see how BeyondTrust can enable operational efficiency across any cloud platform, sign up for a demo today.
About the Author
Link copied
Timothy Jester
Sr Manager, Product Marketing
Timothy is a subject matter expert in credential security, hosts webinars and forums, and drives go-to-market messaging and strategy with a primary focus on Password Safe. Prior to joining BeyondTrust, he spent his career working for a range of organizations, from information security startups to global firms, and has experience in sales, consulting, and product marketing. In his personal time, Timothy enjoys running, dancing poorly at concerts, having his heart consistently broken by his favorite soccer team (Come on you Spurs!), and playing with his dog, Kodak.
Prefers reduced motion setting detected. Animations will now be reduced as a result.