Listing Thumbnail

    StrongDM: The Dynamic Access Management Platform

     Info
    Deployed on AWS
    StrongDM is a protocol aware proxy that manages and audits access to databases, servers, clusters, and web apps. StrongDM customers enjoy easy and secure infrastructure access regardless of tech stack or environment.
    4.5

    Overview

    StrongDM is a Dynamic Access Management platform that centralizes privileged access for all technical users to all critical infrastructure. Administrators gain precise controls, eliminating unauthorized and excessive access permissions. IT, Security, DevOps, and Compliance teams can easily answer who did what, where, and when with comprehensive audit logs. End users enjoy fast, intuitive, and auditable access to the resources they need. It seamlessly and securely integrates with every environment and protocol your team needs.

    For custom orders please contact AWS-Marketplace@strongdm.com .

    Highlights

    • StrongDM centralizes access control with authentication, authorization, networking, and observability in a single platform.
    • Least privilege access by default ensures just-right permissions every time.
    • Seamlessly and securely integrate with every database, environment, protocol and tool your team needs.

    Details

    Delivery method

    Deployed on AWS
    New

    Introducing multi-product solutions

    You can now purchase comprehensive solutions tailored to use cases and industries.

    Multi-product solutions

    Features and programs

    Trust Center

    Trust Center
    Access real-time vendor security and compliance information through their Trust Center powered by Drata or Vanta. Review certifications and security standards before purchase.

    Buyer guide

    Gain valuable insights from real users who purchased this product, powered by PeerSpot.
    Buyer guide

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    StrongDM: The Dynamic Access Management Platform

     Info
    Pricing is based on the duration and terms of your contract with the vendor, and additional usage. You pay upfront or in installments according to your contract terms with the vendor. This entitles you to a specified quantity of use for the contract duration. Usage-based pricing is in effect for overages or additional usage not covered in the contract. These charges are applied on top of the contract price. If you choose not to renew or replace your contract before the contract end date, access to your entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    12-month contract (2)

     Info
    Dimension
    Description
    Cost/12 months
    StrongDM Essentials
    Includes access to everything: DBs, servers, clusters, and web apps.
    $840.00
    StrongDM Enterprise
    Essentials plus enterprise features for mature tech stacks.
    $1,200.00

    Additional usage costs (2)

     Info

    The following dimensions are not included in the contract terms, which will be charged based on your usage.

    Dimension
    Cost/unit
    Additional StrongDM User
    $840.00
    Additional StrongDM Enterprise User
    $100.00

    Vendor refund policy

    For refund policy, visit <www.strongdm.com/tos-client >

    How can we make this page better?

    Tell us how we can improve this page, or report an issue with this product.
    Tell us how we can improve this page, or report an issue with this product.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Support

    Vendor support

    If you encounter any issues with StrongDM, you can refer to our documentation or contact the team. Email us at support@strongdm.com  or find documentation at

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    10
    In Network Infrastructure
    Top
    25
    In Continuous Integration and Continuous Delivery

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Protocol-Aware Proxy Architecture
    Protocol aware proxy that manages and audits access to databases, servers, clusters, and web apps across multiple environments.
    Centralized Access Control
    Centralizes privileged access management with integrated authentication, authorization, networking, and observability capabilities in a single platform.
    Least Privilege Access Enforcement
    Implements least privilege access by default to ensure just-right permissions and eliminate unauthorized and excessive access permissions.
    Comprehensive Audit Logging
    Provides comprehensive audit logs enabling tracking of user actions, resource access, and activities across infrastructure with detailed who, what, where, and when information.
    Multi-Protocol and Multi-Environment Integration
    Seamlessly integrates with multiple databases, environments, protocols, and tools regardless of technology stack or infrastructure type.
    Credential Management
    Discover, secure, and protect account passwords, SSH Keys, API keys, cloud console access, and other privileged credentials
    Session Monitoring and Control
    Isolate, monitor and control all privileged session activity across cloud and on-premises infrastructure with capability to suspend or terminate high-risk sessions
    Secrets Rotation
    Securely store and rotate application credentials based on policy without impacting application performance
    Multi-Environment Support
    Enforce privileged access security policies consistently across cloud, on-premises, and hybrid environments
    Cloud Deployment Automation
    Cloud automation tools simplify and accelerate deployment in cloud environments
    Zero Trust Network Access Architecture
    Cloud-native, unified, API-enabled solution implementing zero trust network access principles with one-to-one encrypted network segments for each user to explicitly granted resource locations
    Multi-Tunnel Encrypted Connectivity
    Delivers consistent secure multi-tunnel access across multi-cloud, on-premises, and legacy applications from any location or device
    Device-Agnostic Access Control
    Supports reliable secure access from managed and unmanaged devices across all makes and models without device-specific restrictions
    Automated Access Management
    Enables concurrent and automated access to multiple disparate environments with explicit resource grant mechanisms, eliminating manual access approval workflows
    Cross-Environment Resource Access
    Provides unified secure access to resources regardless of physical location or virtual segmentation across diverse infrastructure environments

    Contract

     Info
    Standard contract
    No
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    4.5
    113 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    75%
    23%
    2%
    0%
    0%
    6 AWS reviews
    |
    107 external reviews
    External reviews are from G2  and PeerSpot .
    Dmitryg Ginsburg

    Access to cloud and Kubernetes resources has been unified and is securely audited for developers

    Reviewed on Jul 21, 2026
    Review provided by PeerSpot

    What is our primary use case?

    I have been using StrongDM for around one year as a client. My main use case for StrongDM is to authenticate my user to get access to the cloud environment.

    A specific example of how I use StrongDM to access my cloud environment is that I typically need to access Kubernetes resources, and to do that, I use StrongDM to find the resource inside SDM and connect to it. This is the only use case I have.

    What is most valuable?

    The best feature StrongDM offers is that it is easy to integrate with a command line.

    The command line integration helps me in my day-to-day work because our DevOps team created a script that automatically connects StrongDM to the correct cloud resource, and it works all the time.

    I find the ability to integrate StrongDM via command line and UI that allows me to connect or disconnect specific resources useful and unique; the ease of it stands out for me.

    StrongDM has positively impacted my organization by ensuring that every developer has access to cloud resources, which are audited by the organization, allowing us to keep track of who accesses what and control the access.

    What do I think about the stability of the solution?

    StrongDM is very stable in my experience.

    What do I think about the scalability of the solution?

    Regarding StrongDM's scalability, since I am using the StrongDM client that runs on my laptop, I cannot assess much about its scalability, but the response time is very fast, so I assume the scalability is good.

    Which solution did I use previously and why did I switch?

    I did not use any different solutions; this is my first time using it in this company.

    What other advice do I have?

    I am not aware of StrongDM's AI capabilities, including its governance and security.

    I don't know about StrongDM's AI capabilities regarding its accuracy and reliability of output since I don't use this feature.

    I would say that StrongDM is deployed on-premises in my organization, but I am not certain because I am not involved in those details.

    I assess StrongDM's effectiveness in closing breach paths in real time as a very effective way.

    I don't have an opinion on the importance of StrongDM's continuous authorization versus periodic checks for my organization.

    I am not aware of how StrongDM's credential-less access control integrates with existing vaults and secret managers, but I am getting access to cloud resources and have not explored those features.

    I assess StrongDM's ability to unify access across different systems in my organization as effective; we mostly use access to our cloud resources and work with different cloud providers.

    I am not involved in the pricing, setup cost, or licensing, as it is managed by different DevOps teams.

    I have not interacted with StrongDM's customer support, so I cannot comment on it.

    It is difficult for me to give any advice because I am using StrongDM as a regular user, but I am very satisfied. I give StrongDM an overall rating of ten out of ten.

    reviewer2872911

    Just-in-time access has strengthened zero trust and reduces long-standing privileged accounts

    Reviewed on Jul 15, 2026
    Review from a verified AWS customer

    What is our primary use case?

    My main use case for StrongDM is Just-In-Time access for connecting to Windows or Linux machines through RDP or SSH.

    A specific example of how I use StrongDM for Just-In-Time access is that we have implemented StrongDM as a PAM tool which enhanced the Just-In-Time access for a customer. We did a one-to-one resource mapping with respect to the target systems in each data center. Once we added the resource into StrongDM, with the help of dynamic rules, we can provide access to the relevant users or groups. The users can access StrongDM using the Just-In-Time access and establish a connection via the StrongDM client.

    What is most valuable?

    The best features that StrongDM offers include a proxy-based system that aids in Just-In-Time access, ultimately helping to remove long-standing access, which every organization looks for to reduce high privilege accounts. Every user gets access based on their required need.

    StrongDM has impacted my organization positively by being user-friendly with automation and command-line utilities, which have reduced effort. Customers can access it via browser or client, offering many options for utilization.

    StrongDM's ability to unify access across different systems is significant; it allows for individual resource mapping and ensures users can connect through appropriate proxy clusters for target machines.

    I see the importance of StrongDM's continuous authorization as having periodic checks enabled by identity governance tools, ensuring that access is necessary for a certain period according to access review processes.

    What needs improvement?

    StrongDM lacks the capability for web application injections or password injections, so we need to rely on other tools such as HashiCorp for non-human accounts or DevOps scenarios. This is a limitation that hopefully will be addressed in the future.

    Improvements are needed for StrongDM, particularly in web session handling and service account management, similar to HashiCorp or DevOps pipeline requirements.

    People using StrongDM may have to rely on Terraform or Bash scripts for command-line utilization. It is user-friendly if a user is knowledgeable; otherwise, they may need to use the UI.

    For how long have I used the solution?

    I have been using StrongDM for more than one year, specifically for Just-In-Time access.

    What do I think about the stability of the solution?

    StrongDM is stable.

    What do I think about the scalability of the solution?

    StrongDM's scalability requires some configuration tweaks on our part.

    How are customer service and support?

    The customer support for StrongDM is really good. They help a lot with any issues we face.

    Which solution did I use previously and why did I switch?

    Previously, we used Centrify but switched to StrongDM due to its advancements and capabilities.

    How was the initial setup?

    We did not purchase StrongDM through the AWS Marketplace; we had a direct contact with StrongDM for this configuration.

    What was our ROI?

    I have seen a return on investment; whatever amount we spend saves us time and ensures a high level of security with zero trust.

    What's my experience with pricing, setup cost, and licensing?

    I cannot disclose the pricing details, but I find it competitive compared to other solutions.

    Which other solutions did I evaluate?

    Before choosing StrongDM, I evaluated it alongside other options such as HashiCorp. StrongDM has proven to be comparatively better, despite some feature gaps.

    What other advice do I have?

    StrongDM integrates with Dell Secret Server, and we can also integrate it with other PAM solutions. It fetches credentials from the other vaulting tool and establishes connections. It also manages non-human accounts and can establish connections through direct or proxied connections. Credential rotation is handled by the other vaulting tool, so StrongDM acts as a proxy tool over it.

    Removing long-standing access has significantly impacted my security posture by ensuring that no user has high privilege accounts or long-standing access without necessity. Access is only provided for a certain stipulated period when needed, which helps prevent hacking.

    Since using StrongDM, I estimate around a 60% reduction in effort compared to other PAM tools. The integration allows for user-friendly mapping, even in disaster recovery scenarios, making it straightforward to configure and highly useful for those needing strong disaster recovery solutions.

    StrongDM's approach to credential-less access control aligns with zero trust principles based on Just-In-Time access, ensuring no long-standing privilege exists without necessity, reducing the risk of credential leaks.

    StrongDM's AI capabilities increase security posture effectively.

    The accuracy and reliability of StrongDM's output are very good. I can fully rely on the output without needing to validate it.

    We use AWS for our private cloud.

    We assess the effectiveness of StrongDM in closing breach paths in real time through proof of concept and analyzing the use case with respect to requirement and capability mapping.

    I would rate this solution an 8 out of 10.

    Which deployment model are you using for this solution?

    Private Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Amazon Web Services (AWS)
    reviewer2871399

    User-friendly access controls have streamlined audits and saved significant review time

    Reviewed on Jul 14, 2026
    Review from a verified AWS customer

    What is our primary use case?

    My main use case for StrongDM is to assess identity and authentication and authorization access control reviews. When I conduct internal audits or assessments to check the presence of security controls, I use StrongDM to navigate to the configuration settings panel to check what flags and features are enabled or disabled. I appreciate the UI of the overall tool and its functionality.

    There was a situation where I had to check whether the privileged account credentials maintained in StrongDM PAM tool are actually encrypted. I configured and opened StrongDM and checked the settings in the configuration window where I was able to verify that StrongDM contains controls and features which enable it to encrypt privileged account credentials. Additionally, it has features for auditing, generating audit trails, and log trails for all activities conducted by any user who is using privileged accounts. Apart from that, there is a database active monitoring tool embedded within StrongDM. These are certain cases where I have navigated this tool and found the UI to be very user-friendly.

    What is most valuable?

    The best features StrongDM offers include the JIT access and workflows, which is the Just-in-Time access provided by StrongDM. Apart from that, there are features like the context-aware policy engine, which helps this tool integrate with endpoint security providers like CrowdStrike and SentinelOne. It also offers comprehensive session visibility and auditing, which helps in session recording and captures all the SSH and RDP terminal sessions as replayable video files. Additionally, it has the ability to navigate with SIEM tools, such as Splunk or DataDog, used to capture all the logs of the servers or cloud storage tools such as Amazon S3 bucket or EC2 instances. Those features are very handy and can integrate very easily with StrongDM. It also offers infrastructure-wide protocol support, whether it talks about PostgreSQL, MySQL, or any database tool. It has secrets management and offers a secret vault agnostic feature through which it can be integrated with any encryption key management tool such as HashiCorp or AWS Secrets Manager. The best thing about it is that it offers a developer-friendly deployment, which is very straightforward and simple with StrongDM PAM tool.

    StrongDM has positively impacted my organization by saving me a lot of time as a security auditor, because I have to navigate settings and configurations to check the presence of certain security controls in place. When I am auditing StrongDM, it obviously helps me. It has a very user-friendly UI, with which any auditor or any security professional will find it easier to navigate different options to check the presence of security controls. Apart from that, it also offers dynamic access control, enforcing restrictions based on user role, time of the day, location, and device context. These features help auditors significantly.

    What needs improvement?

    I think StrongDM could improve by focusing more on network device management by allowing the addition of PAM for network devices, managing legacy network equipment, or helping to initiate enterprise onboarding where a lot of complex environments and initial setup are required. I think that would be a good area for StrongDM to work on.

    Apart from that, integration with SIEM and SOAR tools, regarding the logs generated by any privileged user account in these SIEM or SOAR tools, and how to ensure these logs are encrypted, are areas that if StrongDM focuses on, will help it gain advantage over other products in the market right now because they do not have it.

    Another area for improvement is the client-side footprint. If StrongDM can provide an installation for user workstations in strict or heavily lockdown environments, maintaining and deploying these desktop clients across thousands of machines can pose a logistical challenge for IT teams. If StrongDM can work on that area as well, it will be a great product.

    For how long have I used the solution?

    I have been using StrongDM for approximately three or four months.

    What do I think about the stability of the solution?

    I have not noticed any issues with StrongDM's stability or reliability.

    What do I think about the scalability of the solution?

    StrongDM's continuous authorization is advanced, and using credential-less accounts offers a lot of flexibility to the users within the company. I believe it is a great initiative.

    StrongDM works best to unify access across different systems.

    How are customer service and support?

    I have not personally interacted with StrongDM's customer support, but I have not heard any complaints from any vendors who are using StrongDM.

    What other advice do I have?

    I can share that in terms of the number of hours, as an auditor, if I require 30 hours to audit a PAM tool, with the help of StrongDM, when I am auditing the tool, it will help me to audit the whole thing within 10 hours or maybe 15 hours. This amounts to approximately 50% of the time saved for me as an auditor.

    My advice for others looking into using StrongDM includes its user flexibility, good scalability, and providing advanced features. If they are looking for these things, they should proceed with StrongDM. My overall rating for this product is 9 out of 10.

    reviewer2809026

    Centralized access has strengthened compliance and audits but integration and AI still need work

    Reviewed on Jun 16, 2026
    Review provided by PeerSpot

    What is our primary use case?

    My main use case for StrongDM is to provide access to database credentials. I wanted to give users access to the database and also to the applications that I have built for testing. Providing privileged access to users through StrongDM is the core use case I implemented.

    How has it helped my organization?

    StrongDM positively impacts my organization by helping with compliance and audit functions. Audits and compliance are areas where this tool helps significantly because it maintains records in such a way that whenever an investigation is needed on something particular or an incident occurs in the organization, it helps in obtaining information regarding the access given to users. This is one of the positive things, and the outcome it brings could lead to better usage of the product and a better running of the organization in giving access and managing licenses.

    If something goes wrong, such as when a user performs an action on a server they have been given access to that should not have been done, checking is easier because the session will be recorded by StrongDM. The session recording feature is useful for the audit and compliance team to investigate issues and rectify them in time so that they will not affect other users.

    What is most valuable?

    The best features that StrongDM offers include centralized access management, which I would say is the best feature provided.

    Centralized access management helps me by giving users access all in one place where they can easily access resources such as databases, internal applications, and VPN access. All of these resources can be managed at one centralized platform, giving unified access to users. Centralized access management is something I appreciate about StrongDM.

    What needs improvement?

    I would not say ease of use and integration are features to criticize because ease of use is something taken on by the user, so it is actually considerable. Integration, however, is something which admins configure with StrongDM, and in that area, it can be improved. Sometimes, if there is an architecture or infrastructure that is more complex, it would take extra time for integrations.

    I think something can be improved in AI, such as using AI for certain functions within StrongDM. Enhancing features with AI can help StrongDM grow significantly in its domain.

    I would say that reports can now be generated from the data StrongDM stores. For instance, if one user accessed a database or Kubernetes cluster a long time ago and is not using it now, applying intelligence to that data can better inform the admin. The system could indicate that a particular user has accessed that resource in the past but is not using it currently. Better addressing least privilege access by removing unnecessary access would be valuable. Those AI capabilities that provide insights to admins regarding access could be very helpful.

    I have already mentioned that AI capabilities can be improved, and the remaining aspects such as recording queries, sessions, and SSH keys are already being managed well by StrongDM. I believe AI capabilities could be enhanced, and I would also suggest improvement in reporting and dashboard generation with the data available in StrongDM.

    Which solution did I use previously and why did I switch?

    There are no challenges because I already had knowledge in this area from using similar types of products other than StrongDM. The unique approach that StrongDM offers is centralized access where I can provide user access to all types of resources such as internal applications, which could be databases or Kubernetes clusters. This is one of the features that StrongDM has, and it represents the unique value and the approach I have experienced while using StrongDM.

    What other advice do I have?

    I would assess StrongDM's effectiveness in closing breach paths in real-time as easy and effective, although I have not encountered this type of situation in my test case.

    Continuous authorization is more valuable than periodic checks from my perspective because if something goes wrong during the period of a periodic check, it could be a loss for the organization. Continuous authorization is better.

    My advice for others looking into using StrongDM is to plan everything before integrating it into their organization. It is not suitable for very small startups with fewer resources. It is more useful for organizations that have adopted Kubernetes, VPN access, databases, and manual applications for granting access. These resources can better benefit from StrongDM based on my experience.

    I have rated this review with a score of seven.

    AmitRathod

    Secure access has transformed our audits and weekend operations run smoothly

    Reviewed on Jun 03, 2026
    Review from a verified AWS customer

    What is our primary use case?

    StrongDM eliminates our weekend outages by providing reliable infrastructure access and improving our user experience. Our engineers can use their preferred SQL clients like MySQL Workbench and MS-SQL. The platform simplifies our compliance by providing detailed session logs and query capture to SOC 2 and ISO 27001 audits, enabling seamless migration and allowing engineers to connect directly to internal resources without exposing the entire network or using cumbersome VPN.

    StrongDM offers just-in-time access by automatically granting users temporary or time-bound access to privileged systems and revoking it when the task is complete, enforcing the principle of least privilege. StrongDM replaces our legacy PAM solution with a modern, lightweight platform that simplifies access management, enhances the user experience, and ensures robust security. It enables role-based access control, automates our workflows, eliminates the need for old license rotations, captures every query and keystroke, and ensures compliance following standard frameworks like SOC 2 and ISO 27001. Furthermore, it features an agentless architecture that supports users' preferred tools, reduces friction, and boosts productivity. It also enables centralized multi-cloud access, accelerates growth, eliminates VPN pain with zero-trust security, and secures and streamlines our database access.

    StrongDM provides just-in-time access by automatically granting users temporary or time-bound access; for example, if someone wants to use it for four hours or eight hours, it will specify that to the privileged system and revoke access when the task is complete. Another great feature is total session visibility, as StrongDM acts as a protocol-aware proxy that captures every query, keystroke, and server interaction, creating a comprehensive audit trail required for standard frameworks like SOC 2 and HIPAA. StrongDM eliminates credential sprawl by separating end-user authentication, typically via SSO, from the database's native credentials, so users never need to know or manage raw passwords.

    By adopting StrongDM, we have achieved benefits such as eliminating our weekend outages, streamlining ongoing on-call workflows, enabling seamless migration with POC transitions directly into production with minimal effort, allowing our engineers to use their preferred SQL clients like MySQL, PostgreSQL, and Workbench, and facilitating compliance through detailed session logs and query capture for SOC 2 and ISO audits.

    StrongDM connects a user to a database or server, but once the session is established, it treats the runtime as a black box and cannot natively enforce fine-grained or attribute-based access control, such as restricting raw column visibility. For a generic TCP resource, StrongDM only records metadata — who, when, and what — instead of capturing the actual commands or payloads executed within the session.

    What is most valuable?

    StrongDM connects a user to a database or server, but once the session is established, it treats the runtime as a black box and cannot natively enforce fine-grained or attribute-based access control, such as restricting raw column visibility. For a generic TCP resource, StrongDM only records metadata — who, when, and what — instead of capturing the actual commands or payloads executed within the session.

    StrongDM's continuous authorization is important for our organization; its scalability, role-based access management, and robust audit capabilities enable us to automate access workflows, retire shared SSH keys, and enhance security. Developers gain self-service access to scrubbed, production-like databases, simplifying testing and development. This is a great feature.

    Our impression of StrongDM's credential-less access control and its integration with existing vaults and secret managers is positive. We are integrated with AWS, have an integration team that captures all the configuration, and have added their process, exposing sensitive data while our AI agents help configure these things automatically, making it very easy to deploy.

    StrongDM unifies access across different systems in our organization by providing various policies that can trigger step-up multi-factor authentications or automated manager approvals when a user attempts to execute a risky operation. It builds and handles non-deterministic AI agents, logging every query, keystroke, and response to provide complete, searchable records satisfying compliance and governance. Whenever our engineers need access, administrators or our team admin can remove their standing access entirely, and users can request temporary access for a defined period via the StrongDM portal or apps like Slack, which automatically expires once the time limit is reached.

    What needs improvement?

    StrongDM does not support multi-port and distributed clusters, as the raw TCP resource type is strictly single-port and cannot handle protocols requiring multiple concurrent ports or distributed brokers like Kafka. Third-party client compatibility is another area for improvement, as StrongDM is designed to work with the standard Microsoft Remote Desktop Connection on Windows but may not fully support alternative RDP clients like the Windows Store Remote Desktop.

    Additionally, StrongDM has limited MFA and passwordless options, relying heavily on time-based one-time passwords (OTP) or Duo, lacking support for true passwordless setups like biometrics or hardware YubiKeys, and it does not support per-session MFA. These are the drawbacks that need improvement for StrongDM.

    For how long have I used the solution?

    I have been using StrongDM for the last nine months.

    What do I think about the stability of the solution?

    StrongDM is stable.

    What do I think about the scalability of the solution?

    StrongDM has very large and good scalability, capable of providing a million data in a second, showcasing its great scalability.

    How are customer service and support?

    Customer support is very good; whenever there is a query or issue, they provide support as needed. They also have very good documentation, where they often ask us to refer to a particular document but can provide excellent on-call support.

    What was our ROI?

    We need fewer employees now because StrongDM saves our time by eliminating manual work. While it is costly, the return on investment for this product is good overall.

    What's my experience with pricing, setup cost, and licensing?

    The pricing for StrongDM is moderate, but the setup cost and licensing are costly.

    Which other solutions did I evaluate?

    I have evaluated other options including Teleport, a strong competitor to StrongDM, but we chose StrongDM for its completeness of offering in terms of identity lifecycle management and context-based policies, not requiring installation on servers, providing multiple and concurrent vault support, very high availability, a high rate for disaster recovery, and actionable reporting. StrongDM provides greater features for unused privileged access, sensitive resource agents' access, and access reviews in terms of security.

    I would recommend using StrongDM when comparing it to Teleport because it provides features including completeness of offering, lifecycle management, and context-based policies, along with great ease of use in installation and multiple vault support. I encourage other clients to choose StrongDM over Teleport.

    What other advice do I have?

    StrongDM uses AI in primary ways, including building and testing its security software with autonomous agents and controlling system access through AI agents. StrongDM has pioneered a unique software development pipeline in its software factory, where AI agents write, test, and deploy production software without human intervention. StrongDM also utilizes a digital twin universe, building virtual behavioral clones of third-party servers such as Okta, Jira, and Slack, allowing it to simulate thousands of customer edge cases and test system failure without risking the production environment. Regarding the guardians of agentics, it involves AI as a client, and there are AI access policies, ensuring the system watches what AI agents do in real time, instantly blocking or allowing their attempts to read files, connect to services, or make network calls based on human-readable policies.

    The accuracy of StrongDM's output is good, and for reliability, it allows attempts to read files, connect to services, or make network calls based on human-readable policies, which makes the reliability very good.

    I have provided a review rating of eight out of ten for StrongDM.

    Which deployment model are you using for this solution?

    Private Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Amazon Web Services (AWS)
    View all reviews