Policies and Platforms
Policies and Platforms
Policies and Platforms
Yan Nurindra
Network Engineer
Agenda
• Master Policy
• Platform
• Safe
• After CyberArk
• Cyberark Component
• Demo Lab
Master Policy
Master Policy
Master Policy
Contoh Privileged Account
Before CyberArk
Target Server
Administrator
Databases Security
Appliances
Potential Problem :
• Sharing Credential/Password Need :
IP + Credential
• Less controlling / No Tracking activity
• Password target server managed manually
• Account unmanage on Target Server
• Potential Backdoor Account
After PAM CyberArk
User Access
Target Server
PRIVILEGED ACCOUNTS
User
vault encryption Management
/Requestor
Databases Security
Appliances
Auditor
Network
Servers
Devices
Approver
Session isolation,
monitoring &
recording Privileged Threat Analytics
CyberArk Component
• Vault
– Vault Server (Private Ark Server)
– Vault Client (Private Ark Client)