Digital transformation is expanding organizations’ attack surfaces through initiatives like digital workplace, DevOps, security automation, and IoT, creating new risks that must be assessed and managed without disrupting business operations. Privileged Access Management (PAM) is positioned as a critical set of controls to reduce risks tied to privileged access, which includes both privileged business users (accessing sensitive information like HR, payroll, finance, and intellectual property) and privileged IT users (administering infrastructure via system, software, or operational accounts). Because privileged accounts often provide broad, sometimes shared and unmonitored access, they undermine least privilege and weaken accountability, making them a high-impact threat vector. Traditional IAM tools focus on standard identities and generally lack capabilities for shared accounts, privileged activity monitoring, and controlled elevation, which PAM tools address through vaulting, rotation, session control, and increasingly analytics and risk-based monitoring.
CA Technologies’ CA Privileged Access Management Suite consolidates a long-standing PAM lineage (eTrust Server Access Control/ControlMinder) with Xceedium-derived capabilities into an integrated platform comprising CA Privileged Access Manager, Server Control, and Threat Analytics. The suite supports physical/virtual appliances, strong virtualization controls (including VMware vSphere and NSX), broad protocol coverage, flexible auto-discovery, and extensive session recording. It offers granular Unix/Linux elevation via agents enabling OS-kernel-level command control, plus A2A password management to reduce hard-coded credentials. Integrations via REST APIs and out-of-the-box connectors support SIEM, IT service management, CMDBs, and identity governance, enabling closed-loop remediation and governance against issues like orphaned accounts and privilege creep. Strengths center on heterogeneous and virtualized environments, mainframe support, and deep command control for regulated industries, while challenges include higher cost for Server Control, early DevSecOps maturity, limited mid-market focus, and frequent bundling with CA IAM Suite.
See All Locations
See All Locations