🗂️ Navigation

CyberArk Conjur

Secrets Management for DevOps.

Visit Website →

Overview

CyberArk Conjur is an open-source project that provides secrets management and machine identity for DevOps workflows. It is designed to be platform-agnostic and excels at securing secrets for applications running in containers and on cloud platforms, with a strong focus on policy-based access control.

✨ Key Features

  • Open source
  • Secrets management for CI/CD tools, containers, and cloud platforms
  • Role-based access control (RBAC) defined as policy
  • Secret rotation and retrieval
  • Authentication using platform-native identities (e.g., AWS IAM, Kubernetes Service Accounts)
  • Detailed audit trails

🎯 Key Differentiators

  • Strong focus on machine identity and securing DevOps pipelines
  • Policy-as-code approach for managing permissions
  • Backed by CyberArk, a leader in Privileged Access Management (PAM)
  • Platform-agnostic design for containerized environments

Unique Value: Provides robust, policy-driven secrets management specifically designed for the ephemeral and automated nature of modern DevOps and cloud-native environments.

🎯 Use Cases (4)

Securing secrets for microservices and containerized applications Providing secrets to CI/CD pipelines Establishing machine-to-machine trust in automated environments Centralizing secrets management for DevOps teams

✅ Best For

  • Secrets management for large-scale container orchestration platforms like Kubernetes and OpenShift
  • Implementing policy-as-code for secret access control
  • Integrating with existing CyberArk PAM solutions

💡 Check With Vendor

Verify these considerations match your specific requirements:

  • Teams looking for a simple, managed SaaS solution without a learning curve
  • Organizations without a strong DevOps or security engineering team to manage the platform

🏆 Alternatives

HashiCorp Vault Akeyless Delinea Secret Server

Offers a more focused DevOps and container security solution compared to broader PAM tools, and provides an enterprise-backed open-source alternative to HashiCorp Vault.

💻 Platforms

API CLI Self-Hosted (Docker, Kubernetes)

🔌 Integrations

Kubernetes OpenShift Cloud Foundry Ansible Jenkins Puppet AWS Azure GCP

🛟 Support Options

  • ✓ Email Support
  • ✓ Phone Support
  • ✓ Dedicated Support (Enterprise tier)

🔒 Compliance & Security

✓ SOC 2 ✓ HIPAA ✓ BAA Available ✓ GDPR ✓ ISO 27001 ✓ SSO ✓ SOC 2 Type 2 ✓ ISO 27001 ✓ FedRAMP ✓ PCI DSS

💰 Pricing

Contact for pricing
Free Tier Available

Free tier: Open source version is free.

Visit CyberArk Conjur Website →