Alert icon Keyboard navigation enabled.
Alert icon TAB or Shift+TAB to navigate across. Down ↓ to open menu. ESC to close menu.
Alert icon Down ↓ to select section. Right → to activate. Up ↑ / Down ↓ / Tab to traverse all. ESC to exit.
BeyondTrust
Skip to content Use space or enter to skip.

What can we help you find today?

Instant Results
  • Website Results
  • Technical Documentation

Filter Options

Focus your search

Filtering by

Your recent searches:

Contact Us Chat with Sales Get Support
  • English
  • Deutsch
  • français
  • español
  • 한국어
  • português
  • Home
  • Resources
  • Blog
  • Privileged Session Management: When Monitoring Isn’t Enough current page
Link copied

Privileged Session Management: When Monitoring Isn’t Enough

Sep 6, 2017
Author:
Sgreen
Sandi Green
Product Marketing Manager, BeyondTrust
Blog banner default
Privileged Session Management: When Monitoring Isn’t Enough
Sgreen
Sandi Green
Product Marketing Manager, BeyondTrust
Privileged Session Management

There’s a series of TV commercials that advertise home security systems – they highlight how pointless it is to invest in something that only monitors, but can’t help you do anything to protect your home. When it comes to privileged session monitoring I bet IT teams can relate. Monitoring sessions to check for suspicious activity is a valuable feature, but what can you do when you see something suspicious and need to take action?

Many session management solutions allow you to terminate a live session if you see something suspicious. But the problem is that termination is destructive. While an RDP session may sometimes be reconnected, an SSH session is killed — and so are any processes or scripts that were running.

So, if watching isn’t enough, but killing everything is – overkill – what’s an IT pro to do?

BeyondTrust PowerBroker Password Safe has the unique capability to safely LOCK an administrator out without destruction– in fact it is currently the only product on the market with this capability. It does this by preventing the admin from interacting with their active session. A customizable message can be displayed to the admin, informing them that the session is locked – you might even add text to suggest the user calls a number for assistance. In this manner, there is no risk to blocking suspicious activity.

If the activity is deemed to be correct, the security manager simply selects an unlock option to allow the user to resume their session. Of course, there is also the option to terminate the active session, as well as terminate any active session the user may have started.

PowerBroker Password Safe provides secure privileged session management, with the ability to proxy access to RDP, SSH and Windows, Unix & Linux Applications. Dynamic assignment of just-in-time privileges, via Adaptive Workflow Control, allow organizations to lock down access to resources based upon the day, date, time, and location. By limiting the scope to specific runtime parameters, it narrows down the window of opportunity where someone might be exploiting misappropriated credentials.

With PowerBroker Password Safe, administrators can:

  • Request RDP/SSH access to authorized systems only
  • Start sessions instantly, or via workflow
  • View any active privileged session, and if required, pause or terminate the session
  • Use keystroke indexing and full text search to pinpoint data, and then log an acknowledgement of the review for audit purposes
  • Block list and alert when SSH commands are invoked, even on network devices such as routers and firewalls
  • Avoid Java – Password Safe is a client-less solution with no agents required on the server
  • Fully integrate with native tools (MSTSC, PuTTY, MobaXterm etc.)
  • Gain full video recording with 100% accountability
  • Realize greater flexibility – deploy as a hardened appliance, virtual appliance, as software or in the cloud via Amazon AWS, Microsoft Azure, or Google Cloud

If you’re ready to invest in a privileged access management solution that won’t blow your budget with add-ons and extra fees, then consider Password Safe. To help you figure out how Password Safe stacks up to the competition, check out our cost comparison page, or contact us for a no-risk demo today.

Latest Posts
  • Hooked on Identity (Part 2): Abusing OAuth Trust Boundaries in Okta
    Jun 12, 2026 Hooked on Identity (Part 2): Abusing OAuth Trust Boundaries in Okta
    Blog
    7m
  • Hooked on Identity: Abusing SAML Assertion Inline Hooks in Okta
    Jun 9, 2026 Hooked on Identity: Abusing SAML Assertion Inline Hooks in Okta
    Blog
    6m
  • Joining Project Glasswing: Securing the Privilege Backbone of the AI Era
    Jun 8, 2026 Joining Project Glasswing: Securing the Privilege Backbone of the AI Era
    Blog
    5m
  • The Most Common & Most Dangerous Types of Shadow IT
    Jun 5, 2026 The Most Common & Most Dangerous Types of Shadow IT
    Blog
    19m
  • 14 Password Management Best Practices
    May 28, 2026 14 Password Management Best Practices
    Blog
    12m
Related
  • It’s 10 O’clock, Do You Know Where Your Cloud and Virtual Assets Are?
    Aug 16, 2016 It’s 10 O’clock, Do You Know Where Your Cloud and Virtual Assets Are?
    Blog
    1m
  • OT/IT Convergence: How It Impacts Your Cybersecurity
    Jun 27, 2023 OT/IT Convergence: How It Impacts Your Cybersecurity
    Blog
    1m
Share this Article
  • Link
Stay up to Date
Get the latest news, ideas, and tactics from BeyondTrust. You may unsubscribe at any time.

Keep up with BeyondTrust

Customer Support Get Started
  • LinkedIn
  • X
  • Facebook
  • Instagram
  • Add BeyondTrust as a preferred source on Google
  • Privacy
  • Security
  • Manage Cookies
  • Do Not Sell My Data
  • WEEE Compliance

Copyright © 2003 — 2026 BeyondTrust Corporation. All rights reserved. Other trademarks identified on this page are owned by their respective owners. BeyondTrust Corporation is not a chartered bank or trust company, or depository institution. It is not authorized to accept deposits or trust accounts and is not licensed or regulated by any state or federal banking authority.

Prefers reduced motion setting detected. Animations will now be reduced as a result.