BeyondTrust, Beyond Identity Partner for Zero Trust PAM

Beyond Identity announced a technical partnership and integration that advances zero trust for the most sensitive accounts. The combined solution integrates Beyond Identity’s unphishable, passwordless multi-factor authentication with BeyondTrust’s Endpoint Privilege Management and Privileged Password Management solutions, ensuring that only authorized users and secure devices can gain privileged access to critical systems.

The BeyondTrust and Beyond Identity integration offer customers these benefits:

  • Out-of-the-box zero trust multi-factor authentication and access controls for PAM accounts.
  • Only devices that meet company security policy have access to PAM accounts.
  • When privileges on endpoints are elevated, the combined solution immediately requires end users to authenticate and then checks the endpoint meets policy.

When a user attempts to run an executable on a managed device, BeyondTrust Endpoint Privilege Management pauses the action and engages Beyond Identity to perform a passwordless, multi-factor authentication to ensure the user has the necessary privileges and that the device meets security policy before proceeding.

BeyondTrust makes an OIDC (OpenID Connect) call to Beyond Identity, which authenticates the user and checks the device meets security policy. Once the identity and device are authenticated, and the device passes security checks, Beyond Identity asserts the identity to BeyondTrust’s Endpoint Privilege Management to allow the action to proceed.

For more information on Beyond Identity, visit www.beyondidentity.com.