AWS Secrets Manager vs Keywhiz vs Vault

Need advice about which tool to choose?Ask the StackShare community!

AWS Secrets Manager

128
154
+ 1
5
Keywhiz

12
50
+ 1
3
Vault

780
792
+ 1
71
Get Advice from developers at your company using StackShare Enterprise. Sign up for StackShare Enterprise.
Learn More
Pros of AWS Secrets Manager
Pros of Keywhiz
Pros of Vault
  • 5
    Managed Service
  • 3
    Fuse FS
  • 17
    Secure
  • 13
    Variety of Secret Backends
  • 11
    Very easy to set up and use
  • 8
    Dynamic secret generation
  • 5
    AuditLog
  • 3
    Privilege Access Management
  • 3
    Leasing and Renewal
  • 2
    Easy to integrate with
  • 2
    Open Source
  • 2
    Consol integration
  • 2
    Handles secret sprawl
  • 2
    Variety of Auth Backends
  • 1
    Multicloud

Sign up to add or upvote prosMake informed product decisions

- No public GitHub repository available -

What is AWS Secrets Manager?

AWS Secrets Manager helps you protect secrets needed to access your applications, services, and IT resources. The service enables you to easily rotate, manage, and retrieve database credentials, API keys, and other secrets throughout their lifecycle.

What is Keywhiz?

Keywhiz is a secret management and distribution service that is now available for everyone. Keywhiz helps us with infrastructure secrets, including TLS certificates and keys, GPG keyrings, symmetric keys, database credentials, API tokens, and SSH keys for external services — and even some non-secrets like TLS trust stores. Automation with Keywhiz allows us to seamlessly distribute and generate the necessary secrets for our services, which provides a consistent and secure environment, and ultimately helps us ship faster.

What is Vault?

Vault is a tool for securely accessing secrets. A secret is anything that you want to tightly control access to, such as API keys, passwords, certificates, and more. Vault provides a unified interface to any secret, while providing tight access control and recording a detailed audit log.

Need advice about which tool to choose?Ask the StackShare community!

Jobs that mention AWS Secrets Manager, Keywhiz, and Vault as a desired skillset
Postman
Berkeley, United States OR San Francisco, United States
What companies use AWS Secrets Manager?
What companies use Keywhiz?
What companies use Vault?
    No companies found

    Sign up to get full access to all the companiesMake informed product decisions

    What tools integrate with AWS Secrets Manager?
    What tools integrate with Keywhiz?
    What tools integrate with Vault?
      No integrations found

      Sign up to get full access to all the tool integrationsMake informed product decisions

      Blog Posts

      What are some alternatives to AWS Secrets Manager, Keywhiz, and Vault?
      AWS Key Management Service
      AWS Key Management Service (KMS) is a managed service that makes it easy for you to create and control the encryption keys used to encrypt your data, and uses Hardware Security Modules (HSMs) to protect the security of your keys. AWS Key Management Service is integrated with other AWS services including Amazon EBS, Amazon S3, and Amazon Redshift. AWS Key Management Service is also integrated with AWS CloudTrail to provide you with logs of all key usage to help meet your regulatory and compliance needs.
      CyberArk
      It is the only security software company focused on eliminating cyber threats using insider privileges to attack the heart of the enterprise.
      Azure Key Vault
      Secure key management is essential to protect data in the cloud. Use Azure Key Vault to encrypt keys and small secrets like passwords that use keys stored in hardware security modules (HSMs). For more assurance, import or generate keys in HSMs, and Microsoft processes your keys in FIPS 140-2 Level 2 validated HSMs (hardware and firmware). With Key Vault, Microsoft doesn’t see or extract your keys. Monitor and audit your key use with Azure logging—pipe logs into Azure HDInsight or your security information and event management (SIEM) solution for more analysis and threat detection.
      Doppler
      Doppler’s developer-first security platform empowers teams to seamlessly manage, orchestrate, and govern secrets at scale.
      Docker Secrets
      A container native solution that strengthens the Trusted Delivery component of container security by integrating secret distribution directly into the container platform.
      See all alternatives