Identity & Access
Privileged Access Management PAM
A system that keeps admin (administrator, root, service) account passwords in a vault, records sessions and grants privileges "only as much as needed, only as long as needed".
When you need it
- If you have dozens of servers and admin passwords are shared
- If suppliers connect to your servers as administrators
- If you go through BDDK (Turkish banking regulator), PCI DSS or ISO 27001 audits
When you do not need it
- For a small number of servers, take the free steps first: Windows LAPS, separate admin accounts, removing users' local admin rights.
As a jump host between admins and servers; network rules are written so that all admin connections go through PAM.



