Akeyless secures AI, machine, and human identities with a unified platform that eliminates long-lived secrets, enforces least-privilege access, and delivers ephemeral, policy-based credentials.
Akeyless Identity Security Platform secures AI agents, machines, and human identities across hybrid and multi-cloud environments. It provides a unified control plane for access, credentials, and identity lifecycle, eliminating reliance on long-lived secrets while enforcing least-privilege access and real-time governance.
The platform combines:
-Secrets management to centrally manage and rotate credentials
-Multi-Vault Governance to unify visibility and control across AWS and third-party vaults
-Privileged access management with just-in-time, least-privilege access
-Certificate lifecycle management to automate issuance, renewal, and rotation
-Enterprise password manager to securely manage workforce credentials
-AI agent identity security to secure autonomous agents with ephemeral, scoped access
All capabilities operate through a single policy and audit framework, helping eliminate credential sprawl while maintaining consistent governance across environments.
Akeyless secures AI agents without embedding credentials in code, prompts, or workflows. Instead of static API keys or tokens, agents receive ephemeral, policy-bound access only when needed. The platform enforces intent-aware control by evaluating requested actions before access is granted, issuing task-scoped, short-lived credentials, and continuously inspecting execution. This ensures every interaction is governed, auditable, and traceable from prompt to outcome.
The Akeyless platform is FIPS 140-3 validated and powered by patented Distributed Fragments Cryptography (DFC) and a zero-knowledge architecture, ensuring encryption keys and secrets are never fully assembled or accessible, even to Akeyless.
Akeyless is built on AWS and integrates natively with core services. It can be deployed alongside AWS Secrets Manager, extend Amazon EKS security with Kubernetes secrets injection, and support AWS Key Management Service (KMS) for cryptographic operations and key storage. Audit logs can be centralized in Amazon S3 for visibility and compliance. Enterprise customers can contact cloudalliance@akeyless.io to request a Private Offer through AWS Marketplace.
Highlights
Cost efficient platform that does not need dedicated engineering resources to start, scale and operate
Enterprise Scale platform that is fast and easy to deploy and maintain
24x7 support that meets and exceeds expectations, including dedicated customer success managers and account managers.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
This listing bills on a single contract dimension: Clients. A Client is any human user, application, or server that starts a remote session with the service. Multiple instances of the same application count as one Client. A single user with several authentication methods also counts once. You purchase an annual quota of Clients under a 12-month contract. The platform tracks distinct Clients at the end of each month. If your use exceeds the annual quota, any overage is invoiced at the end of the contract term based on actual usage.
Top-of-mind questions for buyers
Do stopped or paused applications and servers still count toward my Client quota?
The platform counts distinct Clients at the end of each month. A Client is a human user, application, or server that starts a remote session with the service. Multiple instances of the same application count as one Client. Items that never initiate a session in a given period are not counted.
How is a single user with several login methods counted for billing?
A single user with multiple authentication methods counts as one Client. Likewise, multiple running instances of the same application count as one Client. Only distinct human users, applications, or servers that initiate a remote session add to your total.
What happens if my Client usage grows past my purchased annual quota?
If usage is projected to reach or exceed your annual Client quota, you receive written notice. Any overage is invoiced at the end of the 12-month contract period, based on actual usage. There is no automatic mid-term tier change; reconciliation happens at term end.
www.akeyless.io
Helpful?
Vendor refund policy
All fees are non-cancellable and non-refundable except as required by law.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Centrally manages and rotates credentials across hybrid and multi-cloud environments with automated lifecycle management
Privileged Access Management
Provides just-in-time, least-privilege access with intent-aware control that evaluates requested actions before granting access and issues task-scoped, short-lived credentials
Multi-Vault Governance
Unifies visibility and control across AWS and third-party vaults through a single policy and audit framework
Cryptographic Security
FIPS 140-3 validated platform powered by Distributed Fragments Cryptography (DFC) and zero-knowledge architecture that ensures encryption keys and secrets are never fully assembled or accessible
AI Agent Identity Security
Secures autonomous agents with ephemeral, policy-bound access without embedding credentials in code, prompts, or workflows, with continuous execution inspection and audit trails
Centralized Secrets Management
Centrally secures, rotates, and manages secrets across multi-cloud and hybrid environments with a unified view across multiple AWS accounts and AWS Secrets Manager instances.
Multi-Platform Integration
Offers REST APIs and integrates with a wide range of DevOps tools, container platforms, vulnerability scanners, RPA, and automation tools for credential delivery.
Secrets Rotation and Lifecycle Management
Automatically rotates secrets in AWS Secrets Manager and across enterprise environments without requiring changes to developer workflows or applications.
Audit and Access Control
Provides centralized control and comprehensive auditing of how applications, DevOps tools, and automation platforms authenticate and access sensitive resources including databases and cloud environments.
Enterprise-Scale Architecture
Designed to support massive scalability with data sovereignty requirements for large global enterprises and eliminates vault sprawl across distributed environments.
Centralized Key Lifecycle Management
Centralized key lifecycle management with role-based access control to encryption keys and policies across the data security platform.
Hardware Security Module Integration
Integration with FIPS 140-2 validated Thales Luna and third-party hardware security modules (HSMs) for secure key storage with highest root of trust.
Developer-Friendly APIs
Support for multiple API protocols including REST, KMIP, and NAE XML for easier integration with applications and systems.
Audit and Compliance Logging
Enterprise key management activity logs provided in non-repudiatable audit trail that can be forwarded to security information management (SIEM) platforms.
Multi-Environment Data Discovery and Classification
Unified management console for discovery, classification, and protection of sensitive data across file systems, databases, applications, containers, big data, and virtualized environments.
I appreciate how Akeyless Identity Security Platform simplifies the traditionally complex and resource intensive task of PAM implementation and maintenance. Features such as Secure Remote Access, dynamic credentials, large number of out of the box integrations, and the REST API based custom connector alternative helps reduce adoption and operational effort while supporting strong security controls. The SRA capability for hardened SSH and browser based access is straightforward to adopt and helps accelerate the implementation. The unified PAM and Secrets Management capabilities provide a single pane of glass, reducing the effort needed to manage separate platforms. The initial setup was intuitive and easy to complete, which helped us realize value quickly.
What do you dislike about the product?
I believe consistent and thorough testing of new feature rollouts, patches, and enhancements is required, along with improved communication to customers.
What problems is the product solving and how is that benefiting you?
I find Akeyless Identity Security Platform simplifies my PAM implementation and maintenance easy resource onboarding. The unified PAM and Secrets Management provide a single overview, reducing effort in setting up connectivity and configuration, enhancing security with SRA for SSH and browser based access for privileged sessions.
Ayush Shukla
Centralized secrets management has strengthened security and simplifies credential rotation
Reviewed on Jul 21, 2026
Review provided by PeerSpot
What is our primary use case?
Akeyless Secrets Management is used to store secrets such as database credentials and TransUnion certificates for the production environment. For example, a team stores PostgreSQL usernames and passwords in Akeyless instead of in application.properties. A Spring Boot application authenticates to Akeyless at startup, retrieves the credentials at runtime, and uses them to connect to the database. Regarding certificates, a team stores TLS certificates and private keys securely in Akeyless. Application services retrieve them when needed, and administrators can rotate certificates centrally instead of manually replacing them on every server.
How has it helped my organization?
Akeyless Secrets Management has positively impacted our organization because it has improved security through simpler credential rotation policies. Passwords, API keys, and certificates can be updated centrally without manually changing every application. This has resulted in better access control through role-based permissions and enhanced auditability.
Specific outcomes include the reduction in secret rotation time from hours to minutes after automating rotation. Fewer secrets are now stored in source code or configuration repositories after migration to centralized secret management, which is very important for our company. Manual effort has been reduced significantly because of this. New applications' secrets are managed centrally now. Incident response is very fast because speed is everything in this context.
What is most valuable?
Akeyless Secrets Management offers centralized secret management that stores API keys, passwords, certificates, and SSH keys. It provides dynamic and rotated secrets, role-based access control that lets administrators define who or what can access specific secrets, and a zero-knowledge architecture that uses distributed fragments cryptography design. It also offers support for services like Kubernetes.
The feature I rely on the most in my daily work is centralized secret management, as it is often considered the core capability because it reduces the need to store credentials across multiple applications. Role-based access control is also very valuable and important in larger organizations, and because our organization is growing, it is very helpful. Dynamic secret storing is very valuable to me, and Kubernetes support is essential for our operations.
What needs improvement?
Akeyless Secrets Management could be improved in several areas. The initial setup was quite difficult for me. The documentation and tutorials must include end-to-end examples for Kubernetes and CI/CD integrations in general. The UI/UX can be enhanced, and they should offer clear pricing and feature comparisons between different service tiers.
Onboarding and documentation should be clearer for first-time users. Integration examples for different tools, such as integrating Kubernetes and CI/CD pipelines in general, can be improved.
For how long have I used the solution?
I have been using Akeyless Secrets Management for quite some time now in my company.
What do I think about the stability of the solution?
Akeyless Secrets Management is very stable.
What do I think about the scalability of the solution?
Akeyless Secrets Management supports thousands of applications, users, and secrets, which demonstrates that it is highly scalable. It provides support for multi-cloud and hybrid deployments as well.
How are customer service and support?
I do not think we have used customer support for Akeyless Secrets Management, as if used by anyone, it will be the higher authorities in our company. I have not had a single issue with Akeyless Secrets Management.
Which solution did I use previously and why did I switch?
As far as I can remember regarding Akeyless Secrets Management, I do not think we were using anything else before, though it may have been Google Secret Manager before we changed it.
There were other options that the company was looking forward to considering, such as AWS Secrets Manager. We were using Google Secret Manager as far as I can remember a couple of years back, but we chose Akeyless Secrets Management instead.
What was our ROI?
Common metrics regarding return on investment with Akeyless Secrets Management include time saved because of its secret rotation policies. Operational effort has been reduced as it automated credential management. I have hardly seen any security incidents, and overall it has been very beneficial.
What other advice do I have?
The advice that I would personally give regarding Akeyless Secrets Management is that before adopting any secrets management platform, you should define what your security and compliance requirements are. Identify your cloud environments and the DevOps tools that you are integrating with. Evaluate ease of deployment, pricing, rotation policies, access controls, logging, integrations for Kubernetes, and scalability. My overall rating for this product is eight out of ten.
Dan C.
Rock-Solid Akeyless Secrets Management with Simple Day-to-Day Use
Reviewed on Jul 14, 2026
Review provided by G2
What do you like best about the product?
Availability is critical for secrets management. We've been running Akeyless for a few years now, and it has been rock solid. Day to day usage is really simple, and we field very few issues from our users.
What do you dislike about the product?
Initial setup and deployment is painful. I'm not sure if much has changed since we initially deployed, but getting every thing setup and functioning properly in our environment was complex and initially left us feeling unsure about the purchase decision we made.
What problems is the product solving and how is that benefiting you?
secrets injection at deploy time. We've been able easy keep source code clean and ease the setup of multi-environment configurations.
Computer & Network Security
Easy to Manage, Intuitive Interface for Multiple Accounts
Reviewed on Jul 14, 2026
Review provided by G2
What do you like best about the product?
Easy to manage and understand. I like the interface for multiple accounts.
What do you dislike about the product?
Not much to dislike. Maybe configuration can be difficult sometimes.
What problems is the product solving and how is that benefiting you?
It solves the problem of having to write down or transfer a password to a colleague.
Internet
Easy to Use, Replaces Multiple Apps, and Backed by Great Support
Reviewed on Jul 14, 2026
Review provided by G2
What do you like best about the product?
I like the ease of use as it replaces multiple apps I really like this also they have great customer support
What do you dislike about the product?
the UI could be more intuitive and I dont like that your app sometimes fills in text boxes or logins where I dont need your app to work
What problems is the product solving and how is that benefiting you?
Less multi-cloud complexity. It also integrates easily with most software and programs.