BeyondTrust - Secure Remote Access and Privileged Access Management
Announcement:
New Omdia Research: Download the report to explore the top agentic AI risks and how organizations are defending against them. Download Now
New: 2026 Microsoft Vulnerabilities Report
New: 2026 Microsoft Vulnerabilities Report
Access the report for expert analysis of Microsoft's vulnerability and security landscape, breaking down key trends, security shifts, emerging risks—and what it all means for you.
Get the Report

Starburst’s Journey to Zero Production Admins with Entitle

Introduction

Starburst, a pioneering software company based in Boston, offers a cutting-edge data lakehouse platform, integrating the best features of data lakes, data warehouses, and data virtualization. Their journey with Entitle showcases a transformative approach to managing cloud access.

The Challenge

Enable access to production as needed, without slowing down operations.

Traditionally, a subset of Starburst's production engineers had elevated roles within their AWS accounts which posed security risks and inefficiencies. The need was clear: to facilitate access to production environments only when necessary, without hindering operational speed.

The Solution

Adopting a read-only baseline, with engineers requesting access to make changes in prod.

Starburst adopted a radical shift to a read-only baseline model. Engineers requesting permissions to make changes in the production environment would go through Entitle. Crucially, for on-call engineers, automatic provisioning was set up, recognizing the urgency and unpredictable nature of incident handling.

Starburst before and after
Access to prod at Starburst

The Impact

No engineers have baseline admin access in production.

The implementation of Entitle led to a groundbreaking outcome: zero engineers with baseline admin access in production. Starburst successfully transitioned from perpetual access to a just-in-time (JIT) model, enhancing security without compromising efficiency.

Key outcomes:

  • Automated on-call escalation for incident handling

  • Zero standing admin privileges in production

  • Significant reduction in manual work

Starburst's ROI with Entitle

Eficiency orange
Quick time to value
Entitle's intuitive setup and operation allowed Starburst to quickly see the benefits.
Allhands
Attribute-based approvals
Leveraging job functions and group memberships for auto-approval.
Control 4 orange
Reduced manual workload
Automatic provisioning and de-provisioning of access rights significantly cut down manual efforts.
Zero Trust orange
Simplifying zero trust
Automating production network access through Cloudflare.
Tools orange
Enhanced Okta group management
Entitle made it easier for users to request and obtain access to specific tools via self-serve group changes.
Cloud orange
Just in Time (JIT) Access to AWS
Enabled just in time access to AWS for enhanced cloud security, reduced risk, and streamlined operations within their AWS environment.
"We initially considered building an in-house solution, but Entitle's affordability, ease of use, and comprehensive feature set made it the obvious choice. It not only saved us on additional staffing but also seamlessly integrated into our existing systems."

—Shane Dizer, Security Engineering Manager, Starburst

Conclusion

Entitle not only provided a robust solution for Starburst's unique challenges but also propelled them towards a more secure, efficient, and manageable cloud environment. This case study exemplifies how innovation in access management can fundamentally change how companies operate in the cloud.

Learn more about EntitleCircle Arrow Right