Listing Thumbnail

    StrongDM: The Dynamic Access Management Platform

     Info
    Deployed on AWS
    StrongDM is a protocol aware proxy that manages and audits access to databases, servers, clusters, and web apps. StrongDM customers enjoy easy and secure infrastructure access regardless of tech stack or environment.
    4.5

    Overview

    StrongDM is a Dynamic Access Management platform that centralizes privileged access for all technical users to all critical infrastructure. Administrators gain precise controls, eliminating unauthorized and excessive access permissions. IT, Security, DevOps, and Compliance teams can easily answer who did what, where, and when with comprehensive audit logs. End users enjoy fast, intuitive, and auditable access to the resources they need. It seamlessly and securely integrates with every environment and protocol your team needs.

    For custom orders please contact AWS-Marketplace@strongdm.com .

    Highlights

    • StrongDM centralizes access control with authentication, authorization, networking, and observability in a single platform.
    • Least privilege access by default ensures just-right permissions every time.
    • Seamlessly and securely integrate with every database, environment, protocol and tool your team needs.

    Details

    Delivery method

    Deployed on AWS
    New

    Introducing multi-product solutions

    You can now purchase comprehensive solutions tailored to use cases and industries.

    Multi-product solutions

    Features and programs

    Trust Center

    Trust Center
    Access real-time vendor security and compliance information through their Trust Center powered by Drata or Vanta. Review certifications and security standards before purchase.

    Buyer guide

    Gain valuable insights from real users who purchased this product, powered by PeerSpot.
    Buyer guide

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    StrongDM: The Dynamic Access Management Platform

     Info
    Pricing is based on the duration and terms of your contract with the vendor, and additional usage. You pay upfront or in installments according to your contract terms with the vendor. This entitles you to a specified quantity of use for the contract duration. Usage-based pricing is in effect for overages or additional usage not covered in the contract. These charges are applied on top of the contract price. If you choose not to renew or replace your contract before the contract end date, access to your entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    12-month contract (2)

     Info
    Dimension
    Description
    Cost/12 months
    StrongDM Essentials
    Includes access to everything: DBs, servers, clusters, and web apps.
    $840.00
    StrongDM Enterprise
    Essentials plus enterprise features for mature tech stacks.
    $1,200.00

    Additional usage costs (2)

     Info

    The following dimensions are not included in the contract terms, which will be charged based on your usage.

    Dimension
    Cost/unit
    Additional StrongDM User
    $840.00
    Additional StrongDM Enterprise User
    $100.00

    Vendor refund policy

    For refund policy, visit <www.strongdm.com/tos-client >

    How can we make this page better?

    Tell us how we can improve this page, or report an issue with this product.
    Tell us how we can improve this page, or report an issue with this product.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Support

    Vendor support

    If you encounter any issues with StrongDM, you can refer to our documentation or contact the team. Email us at support@strongdm.com  or find documentation at

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    10
    In Network Infrastructure
    Top
    25
    In Continuous Integration and Continuous Delivery

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Protocol-Aware Proxy Architecture
    Protocol aware proxy that manages and audits access to databases, servers, clusters, and web apps across multiple environments.
    Centralized Access Control
    Centralizes privileged access management with integrated authentication, authorization, networking, and observability capabilities in a single platform.
    Least Privilege Access Enforcement
    Implements least privilege access by default to ensure just-right permissions and eliminate unauthorized and excessive access permissions.
    Comprehensive Audit Logging
    Provides comprehensive audit logs enabling tracking of user actions, resource access, and activities across infrastructure with detailed who, what, where, and when information.
    Multi-Protocol and Multi-Environment Integration
    Seamlessly integrates with multiple databases, environments, protocols, and tools regardless of technology stack or infrastructure type.
    Credential Management
    Discover, secure, and protect account passwords, SSH Keys, API keys, cloud console access, and other privileged credentials
    Session Monitoring and Control
    Isolate, monitor and control all privileged session activity across cloud and on-premises infrastructure with capability to suspend or terminate high-risk sessions
    Secrets Rotation
    Securely store and rotate application credentials based on policy without impacting application performance
    Multi-Environment Support
    Enforce privileged access security policies consistently across cloud, on-premises, and hybrid environments
    Cloud Deployment Automation
    Cloud automation tools simplify and accelerate deployment in cloud environments
    Zero Trust Network Access Architecture
    Cloud-native, unified, API-enabled solution implementing zero trust network access principles with one-to-one encrypted network segments for each user to explicitly granted resource locations
    Multi-Tunnel Encrypted Connectivity
    Delivers consistent secure multi-tunnel access across multi-cloud, on-premises, and legacy applications from any location or device
    Device-Agnostic Access Control
    Supports reliable secure access from managed and unmanaged devices across all makes and models without device-specific restrictions
    Automated Access Management
    Enables concurrent and automated access to multiple disparate environments with explicit resource grant mechanisms, eliminating manual access approval workflows
    Cross-Environment Resource Access
    Provides unified secure access to resources regardless of physical location or virtual segmentation across diverse infrastructure environments

    Contract

     Info
    Standard contract
    No
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    4.5
    110 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    75%
    23%
    2%
    0%
    0%
    4 AWS reviews
    |
    106 external reviews
    External reviews are from G2  and PeerSpot .
    reviewer2809026

    Centralized access has strengthened compliance and audits but integration and AI still need work

    Reviewed on Jun 16, 2026
    Review provided by PeerSpot

    What is our primary use case?

    My main use case for StrongDM  is to provide access to database credentials. I wanted to give users access to the database and also to the applications that I have built for testing. Providing privileged access to users through StrongDM  is the core use case I implemented.

    How has it helped my organization?

    StrongDM positively impacts my organization by helping with compliance and audit functions. Audits and compliance are areas where this tool helps significantly because it maintains records in such a way that whenever an investigation is needed on something particular or an incident occurs in the organization, it helps in obtaining information regarding the access given to users. This is one of the positive things, and the outcome it brings could lead to better usage of the product and a better running of the organization in giving access and managing licenses.

    If something goes wrong, such as when a user performs an action on a server they have been given access to that should not have been done, checking is easier because the session will be recorded by StrongDM. The session recording feature is useful for the audit and compliance team to investigate issues and rectify them in time so that they will not affect other users.

    What is most valuable?

    The best features that StrongDM offers include centralized access management, which I would say is the best feature provided.

    Centralized access management helps me by giving users access all in one place where they can easily access resources such as databases, internal applications, and VPN access. All of these resources can be managed at one centralized platform, giving unified access to users. Centralized access management is something I appreciate about StrongDM.

    What needs improvement?

    I would not say ease of use and integration are features to criticize because ease of use is something taken on by the user, so it is actually considerable. Integration, however, is something which admins configure with StrongDM, and in that area, it can be improved. Sometimes, if there is an architecture or infrastructure that is more complex, it would take extra time for integrations.

    I think something can be improved in AI, such as using AI for certain functions within StrongDM. Enhancing features with AI can help StrongDM grow significantly in its domain.

    I would say that reports can now be generated from the data StrongDM stores. For instance, if one user accessed a database or Kubernetes  cluster a long time ago and is not using it now, applying intelligence to that data can better inform the admin. The system could indicate that a particular user has accessed that resource in the past but is not using it currently. Better addressing least privilege access by removing unnecessary access would be valuable. Those AI capabilities that provide insights to admins regarding access could be very helpful.

    I have already mentioned that AI capabilities can be improved, and the remaining aspects such as recording queries, sessions, and SSH keys are already being managed well by StrongDM. I believe AI capabilities could be enhanced, and I would also suggest improvement in reporting and dashboard generation with the data available in StrongDM.

    Which solution did I use previously and why did I switch?

    There are no challenges because I already had knowledge in this area from using similar types of products other than StrongDM. The unique approach that StrongDM offers is centralized access where I can provide user access to all types of resources such as internal applications, which could be databases or Kubernetes  clusters. This is one of the features that StrongDM has, and it represents the unique value and the approach I have experienced while using StrongDM.

    What other advice do I have?

    I would assess StrongDM's effectiveness in closing breach paths in real-time as easy and effective, although I have not encountered this type of situation in my test case.

    Continuous authorization is more valuable than periodic checks from my perspective because if something goes wrong during the period of a periodic check, it could be a loss for the organization. Continuous authorization is better.

    My advice for others looking into using StrongDM is to plan everything before integrating it into their organization. It is not suitable for very small startups with fewer resources. It is more useful for organizations that have adopted Kubernetes, VPN access, databases, and manual applications for granting access. These resources can better benefit from StrongDM based on my experience.

    I have rated this review with a score of seven.

    AmitRathod

    Secure access has transformed our audits and weekend operations run smoothly

    Reviewed on Jun 03, 2026
    Review from a verified AWS customer

    What is our primary use case?

    StrongDM  eliminates our weekend outages by providing reliable infrastructure access and improving our user experience. Our engineers can use their preferred SQL clients like MySQL  Workbench  and MS-SQL. The platform simplifies our compliance by providing detailed session logs and query capture to SOC 2 and ISO 27001 audits, enabling seamless migration and allowing engineers to connect directly to internal resources without exposing the entire network or using cumbersome VPN.

    StrongDM  offers just-in-time access by automatically granting users temporary or time-bound access to privileged systems and revoking it when the task is complete, enforcing the principle of least privilege. StrongDM replaces our legacy PAM solution with a modern, lightweight platform that simplifies access management, enhances the user experience, and ensures robust security. It enables role-based access control, automates our workflows, eliminates the need for old license rotations, captures every query and keystroke, and ensures compliance following standard frameworks like SOC 2 and ISO 27001. Furthermore, it features an agentless architecture that supports users' preferred tools, reduces friction, and boosts productivity. It also enables centralized multi-cloud access, accelerates growth, eliminates VPN pain with zero-trust security, and secures and streamlines our database access.

    StrongDM provides just-in-time access by automatically granting users temporary or time-bound access; for example, if someone wants to use it for four hours or eight hours, it will specify that to the privileged system and revoke access when the task is complete. Another great feature is total session visibility, as StrongDM acts as a protocol-aware proxy that captures every query, keystroke, and server interaction, creating a comprehensive audit trail required for standard frameworks like SOC 2 and HIPAA. StrongDM eliminates credential sprawl by separating end-user authentication, typically via SSO , from the database's native credentials, so users never need to know or manage raw passwords.

    By adopting StrongDM, we have achieved benefits such as eliminating our weekend outages, streamlining ongoing on-call workflows, enabling seamless migration with POC transitions directly into production with minimal effort, allowing our engineers to use their preferred SQL clients like MySQL , PostgreSQL , and Workbench , and facilitating compliance through detailed session logs and query capture for SOC 2 and ISO audits.

    StrongDM connects a user to a database or server, but once the session is established, it treats the runtime as a black box and cannot natively enforce fine-grained or attribute-based access control, such as restricting raw column visibility. For a generic TCP resource, StrongDM only records metadata — who, when, and what — instead of capturing the actual commands or payloads executed within the session.

    What is most valuable?

    StrongDM connects a user to a database or server, but once the session is established, it treats the runtime as a black box and cannot natively enforce fine-grained or attribute-based access control, such as restricting raw column visibility. For a generic TCP resource, StrongDM only records metadata — who, when, and what — instead of capturing the actual commands or payloads executed within the session.

    StrongDM's continuous authorization is important for our organization; its scalability, role-based access management, and robust audit capabilities enable us to automate access workflows, retire shared SSH keys, and enhance security. Developers gain self-service access to scrubbed, production-like databases, simplifying testing and development. This is a great feature.

    Our impression of StrongDM's credential-less access control and its integration with existing vaults and secret managers is positive. We are integrated with AWS , have an integration team that captures all the configuration, and have added their process, exposing sensitive data while our AI agents help configure these things automatically, making it very easy to deploy.

    StrongDM unifies access across different systems in our organization by providing various policies that can trigger step-up multi-factor authentications or automated manager approvals when a user attempts to execute a risky operation. It builds and handles non-deterministic AI agents, logging every query, keystroke, and response to provide complete, searchable records satisfying compliance and governance. Whenever our engineers need access, administrators or our team admin can remove their standing access entirely, and users can request temporary access for a defined period via the StrongDM portal or apps like Slack, which automatically expires once the time limit is reached.

    What needs improvement?

    StrongDM does not support multi-port and distributed clusters, as the raw TCP resource type is strictly single-port and cannot handle protocols requiring multiple concurrent ports or distributed brokers like Kafka. Third-party client compatibility is another area for improvement, as StrongDM is designed to work with the standard Microsoft Remote  Desktop Connection on Windows but may not fully support alternative RDP clients like the Windows Store Remote  Desktop.

    Additionally, StrongDM has limited MFA and passwordless options, relying heavily on time-based one-time passwords (OTP) or Duo, lacking support for true passwordless setups like biometrics or hardware YubiKeys, and it does not support per-session MFA. These are the drawbacks that need improvement for StrongDM.

    For how long have I used the solution?

    I have been using StrongDM for the last nine months.

    What do I think about the stability of the solution?

    StrongDM is stable.

    What do I think about the scalability of the solution?

    StrongDM has very large and good scalability, capable of providing a million data in a second, showcasing its great scalability.

    How are customer service and support?

    Customer support is very good; whenever there is a query or issue, they provide support as needed. They also have very good documentation, where they often ask us to refer to a particular document but can provide excellent on-call support.

    What was our ROI?

    We need fewer employees now because StrongDM saves our time by eliminating manual work. While it is costly, the return on investment for this product is good overall.

    What's my experience with pricing, setup cost, and licensing?

    The pricing for StrongDM is moderate, but the setup cost and licensing are costly.

    Which other solutions did I evaluate?

    I have evaluated other options including Teleport , a strong competitor to StrongDM, but we chose StrongDM for its completeness of offering in terms of identity lifecycle management and context-based policies, not requiring installation on servers, providing multiple and concurrent vault support, very high availability, a high rate for disaster recovery, and actionable reporting. StrongDM provides greater features for unused privileged access, sensitive resource agents' access, and access reviews in terms of security.

    I would recommend using StrongDM when comparing it to Teleport  because it provides features including completeness of offering, lifecycle management, and context-based policies, along with great ease of use in installation and multiple vault support. I encourage other clients to choose StrongDM over Teleport.

    What other advice do I have?

    StrongDM uses AI in primary ways, including building and testing its security software with autonomous agents and controlling system access through AI agents. StrongDM has pioneered a unique software development pipeline in its software factory, where AI agents write, test, and deploy production software without human intervention. StrongDM also utilizes a digital twin universe, building virtual behavioral clones of third-party servers such as Okta, Jira , and Slack, allowing it to simulate thousands of customer edge cases and test system failure without risking the production environment. Regarding the guardians of agentics, it involves AI as a client, and there are AI access policies, ensuring the system watches what AI agents do in real time, instantly blocking or allowing their attempts to read files, connect to services, or make network calls based on human-readable policies.

    The accuracy of StrongDM's output is good, and for reliability, it allows attempts to read files, connect to services, or make network calls based on human-readable policies, which makes the reliability very good.

    I have provided a review rating of eight out of ten for StrongDM.

    Which deployment model are you using for this solution?

    Private Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Mohit X

    Centralized access has improved privileged control and now provides strong audit visibility

    Reviewed on May 27, 2026
    Review from a verified AWS customer

    What is our primary use case?

    My main use case for StrongDM  is privileged access management and infrastructure access that we cater to, as we were looking for alternatives and solutions to securely control and monitor our access to servers. We have been using different kinds of Kubernetes  clusters, databases, cloud infrastructure, and internal applications. Instead of giving direct access to our employees, the idea was a VPN-heavy access with shared keys for better usage. This is how I used it during my Kafka experience about three years ago, and also in my current team at GitLab .

    In one of those scenarios, my experience with StrongDM  while working with Kubernetes  in the Kafka team illustrates how we were initially looking for a better way to manage secure access to our infrastructure. Our teams scaled across different environments and regions, primarily Europe, including Sweden and India. Before using StrongDM, we relied on VPN access and manual permission handling, which became difficult to audit and maintain over time as our team grew. Our main use case was centralized privileged access management for Kubernetes clusters. We also considered using it for Linux servers on-premises for the same application but opted out at that time due to limited usage and some internal platforms running on AWS . We aimed for developers and operations teams to get the access they needed without exposing long-lived credentials.

    StrongDM is instrumental in unifying access across different systems in our organization, alleviating the complications from separate tools. In the Kafka team, we had AWS  infrastructure with Kubernetes clusters managing EC2  machines and internal services for different customers referring to our Kafka topics. StrongDM facilitated a centralized approach to access control, audit logging, and temporary authorization. For example, while working on the Kafka platform on EKS, developers and operations teams could utilize a unified access process across various environments, thus streamlining their work.

    What is most valuable?

    I find several best features in StrongDM, but our primary use case focuses on ensuring that we do not have long-lived credentials. The best features for us are the centralized access control and the detailed audit logging, which allow us to provide temporary privileged access without managing VPNs ourselves. I appreciate how well it integrates with Kubernetes and cloud environments on AWS. A significant advantage was simplifying onboarding and offboarding processes, taking away a lot of time and minimizing the risk of overlooking these tasks.

    The audit logging feature significantly helps my team during troubleshooting and internal security reviews. With multiple teams accessing Kubernetes clusters in our production environments, it provides clear visibility into who accessed what and when. While we could use CloudTrail , fetching details from it requires complex SQL queries, making it challenging. StrongDM simplifies this, reducing manual tracking efforts and improving accountability, especially important for compliance with specific regulations we need to follow.

    StrongDM positively impacts our organization in many ways, mainly in cost savings from the time saved. It has significantly improved both security and operational efficiency for us. Previously, access management across AWS and Kubernetes was manual and highly coordinated, relying on VPNs. With StrongDM, onboarding and temporary privileged access processes became much faster and more standardized, enhancing our security posture while maintaining necessary compliance.

    What needs improvement?

    I believe StrongDM can improve its initial setup and onboarding experience for larger enterprise environments like Scania, where we have a lot of processes. Integrating different teams, access policies, and existing identity workflows requires substantial planning. Additionally, I think the dashboard customization and reporting could be more flexible for operational teams, though new teams find it manageable. Once the platform is fully integrated, it provides significant value.

    Apart from the onboarding experience, I would also mention that the templates for enterprise onboarding and policy setup could benefit from innovative thinking tailored to organizations managing large AWS and Kubernetes workloads. Enhanced customization in dashboards and reporting would further ease operations and provide better insights.

    For how long have I used the solution?

    I have been using StrongDM for about five years.

    What do I think about the stability of the solution?

    StrongDM is very stable; I cannot recall experiencing a glitch. It has consistently performed well for us.

    What do I think about the scalability of the solution?

    StrongDM's scalability is impressive; it is highly available, and we never perceived any latency issues. It operates almost autonomously without the need for our management.

    How are customer service and support?

    I would rate customer support at StrongDM nine out of ten because we experienced exceptional support during both pre-sales and post-sales. They responded quickly to issues and were readily available for calls rather than waiting for email confirmations. I rate customer support a solid nine out of ten.

    Which solution did I use previously and why did I switch?

    Before StrongDM, we explored different options but primarily relied on traditional VPN access and manual SSH key management, along with some AWS native workflows. Those methods worked initially but as our Kubernetes clusters expanded, they proved difficult to maintain consistently across teams, prompting us to seek alternative centralized access solutions.

    How was the initial setup?

    Concerning pricing, setup cost, and licensing, our experience was very smooth as we chose not to go through the AWS Marketplace  but arranged meetings directly with StrongDM. Their team was prompt, and I can say that the pricing and licensing appeared reasonable for complex cloud management. We needed a good product and solid sales service post-purchase, which they provided efficiently and adequately. We compared their offerings with other tools in the market, agreeing on an annual license basis. The setup cost was free, with technical staff aiding our onboarding, requiring us only to cover the license fee.

    What was our ROI?

    I have definitely observed a return on investment through the operational efficiency gains and streamlined access management. The onboarding of temporary privileged access accelerated significantly, allowing us to release consultants much faster than before, saving considerable money. We also reduced reliance on manual VPN workflows, cutting high network costs linked to repetitive approval processes. While it is challenging to quantify with a single figure, the time savings and reduced operational overhead were certainly impactful.

    What's my experience with pricing, setup cost, and licensing?

    Concerning pricing, setup cost, and licensing, our experience was very smooth as we chose not to go through the AWS Marketplace  but arranged meetings directly with StrongDM. Their team was prompt, and I can say that the pricing and licensing appeared reasonable for complex cloud management. We needed a good product and solid sales service post-purchase, which they provided efficiently and adequately. We compared their offerings with other tools in the market, agreeing on an annual license basis. The setup cost was free, with technical staff aiding our onboarding, requiring us only to cover the license fee.

    Which other solutions did I evaluate?

    I evaluated other options, including Teleport  for centralized access management and AWS native tools like Session Manager and CloudShell  using AWS Vaults. However, they were mainly services without the complete product offerings needed at an enterprise level. StrongDM distinguished itself by providing a simpler user experience, robust auditability, and alignment with our enterprise requirements.

    What other advice do I have?

    Continuous authorization is significantly more important for us; periodic checks alone might not suffice. In AWS and Kubernetes environments, access needs fluctuate rapidly due to various incidents or operational tasks. Periodic checks only offer visibility at specific points in time, while continuous authorization ensures we retain real-time control, diminish unnecessary standing access, and improve overall security posture.

    StrongDM's credential-less access control was a primary reason for our choice, as managing credentials for various employees and moving consultants was increasingly challenging. The credential-less approach reduces the need to distribute or manage long-lived credentials, enhancing security and operational simplicity. Its integration with existing secrets managers in AWS was particularly beneficial, aligning securely with our centralized authentication and governance processes, matching our zero-trust practices.

    My advice for others considering StrongDM is that it greatly depends on individual use cases; however, for enterprise organizations seeking end-to-end identity solutions, this is an excellent tool. Many options in the market may lack certain features that StrongDM provides as a comprehensive package. StrongDM excels in compliance management and identity management, so I recommend considering them. I would rate this review as an eight point five overall.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Amazon Web Services (AWS)
    Vlad Gust

    Access management has become intuitive and just-in-time onboarding now saves months of effort

    Reviewed on May 04, 2026
    Review provided by PeerSpot

    What is our primary use case?

    At this point, we are using StrongDM  solely as a PAM solution. We are looking into ways to expand that and to use other features of the product to meet other demands we have in security, but that is a work in progress.

    What is most valuable?

    I absolutely would say that the best features of StrongDM  and what I appreciate about the solution is that time to onboard is absolutely minimal. The timeframe it takes from no StrongDM to having StrongDM in the organization was swift. The product is very intuitive and easy to use for developers, which was one of the criteria that we felt was really important. The security features, as in the expected features of StrongDM, work flawlessly. Just-in-Time Access is the primary feature that works well and makes life easier for us here at LivePerson .

    The impression of the credential-less access control is positive. It is painless, positive, and fast, but mainly it has reduced our time to onboard developers and to maintain any credentials to a minimum. Previously we had to issue a bunch of tickets and grant access, which was IT work and could take days. Now it is instantaneous.

    What needs improvement?

    With StrongDM, I think there are areas that may have room for improvement. That is a tough position because I have never had a vendor that I had so little feedback on. They are truly good. The only thing is with recent happenings, they have been acquired by a company, but nothing changed for the worse. I cannot provide any feedback to improve on anything.

    For how long have I used the solution?

    I have been using StrongDM for two years.

    What do I think about the stability of the solution?

    Regarding stability, I would rate it a nine.

    What do I think about the scalability of the solution?

    StrongDM is a scalable solution, and it depends on the deployment. For scalability from zero to ten, I would rate it a seven.

    How are customer service and support?

    From one to ten, I rate their technical support as an eight.

    Which solution did I use previously and why did I switch?

    In comparing StrongDM with other solutions, the only other points of reference I have are CyberArk and SailPoint. SailPoint is not a PAM solution, so we will not include that. Compared to CyberArk, StrongDM is far more modern. It is far less clunky. It requires less maintenance of infrastructure. I would say it is plain better. I am also very biased against CyberArk because I absolutely dislike that product.

    How was the initial setup?

    The initial setup was on Google Cloud  Platform. The deployment was straightforward and easy. As with any deployment, you do have some minor quirks here and there, but compared to whatever we had before, that was an absolute breeze. Mean time to deployment is negligible.

    What about the implementation team?

    We are a customer.

    What was our ROI?

    When it comes to return on investment, questions of that nature are really difficult to quantify. I have not done a dollar to time saved assessment. I can definitely say that it saved us time, and a lot of it. Probably months worth of time in engineering and IT support. Return of investment in two years, we perhaps broke even.

    What's my experience with pricing, setup cost, and licensing?

    My thoughts on the pricing of StrongDM is that it is expensive. Coming from knowing the landscape of the market, it is not that they are not competitive. They are still very expensive. That does not mean they are not expensive. Their pricing model is per seat, so that is per user, and it is pretty steep. I do not think that it is any different from any other PAM provider of this caliber.

    What other advice do I have?

    My advice for others looking into StrongDM is to do incredibly thorough due diligence on use cases and scenarios for your own internal use before you begin a proof of concept. You need to be crystal clear about what you want to achieve, how you want to achieve it, and when. Additionally, communication with your own engineers is critical, because that is a major overhaul to how engineers access their infrastructure. I cannot overstate this enough: you need to communicate with your own engineers to understand their needs before you do a proof of concept with StrongDM or any other PAM solution. I would rate this product an eight overall.
    Shri Padmanaban R.

    Efficient Privileged Account Management

    Reviewed on Apr 30, 2026
    Review provided by G2
    What do you like best about the product?
    I really like using StrongDM for server and database logins. It's quite easy to set up, and we've successfully onboarded 2000 users to it.
    What do you dislike about the product?
    Customized reporting should be improved.
    What problems is the product solving and how is that benefiting you?
    I use StrongDM for managing and creating privilege accounts, streamlining server, and DB logins.
    View all reviews