Overview

Product video
Akeyless Identity Security Platform
Akeyless secures AI agents, machines, and human identities across hybrid and multi-cloud environments. The platform provides a unified control plane for access, credentials, and identity lifecycle - eliminating reliance on long-lived secrets while enforcing least-privilege access and real-time governance.
Built on AWS and powered by patented Distributed Fragments Cryptography (DFC) with a zero-knowledge architecture, Akeyless ensures encryption keys and secrets are never fully assembled or accessible - even to Akeyless. The platform is FIPS 140-3 validated and designed to protect sensitive material from current and post-quantum threats.
Platform Capabilities
-
Secrets Management - Centrally manage, rotate, and automate the entire secrets lifecycle. Move from static credentials to secretless runtime access with ephemeral identities and zero standing privileges.
-
AI Agent Identity Security - Secure autonomous AI agents with ephemeral, scoped access instead of embedding credentials in code, prompts, or workflows. The platform enforces intent-aware control by evaluating requested actions before granting access, issuing task-scoped short-lived credentials, and continuously inspecting execution.
-
Multi-Vault Governance - Unify visibility and policy control across AWS Secrets Manager and third-party vaults from a single pane of glass.
-
Privileged Access Management (PAM) - Enforce just-in-time, least-privilege access with granular role-based policies and centralized auditing.
-
Certificate Lifecycle Management - Automate certificate issuance, renewal, and rotation to eliminate manual processes and prevent outages caused by expired certificates.
-
Enterprise Password Manager - Securely manage and share workforce credentials with strong access controls.
All capabilities operate through a single policy and audit framework, helping eliminate credential sprawl while maintaining consistent governance across every environment.
How Akeyless Secures AI Agents
Instead of static API keys or tokens, AI agents receive policy-bound access only when needed. Every interaction is governed, auditable, and traceable from prompt to outcome. This approach supports MCP-based AI agent workflows and ensures autonomous agents operate within defined security boundaries.
Deep AWS Integration
Akeyless integrates natively with core AWS services to fit into your existing environment:
- Secure Amazon Bedrock AgentCore agents with just-in-time credentials for autonomous AI workloads
- Deploy alongside AWS Secrets Manager for unified multi-vault governance
- Extend Amazon EKS security with Kubernetes secrets injection
- Leverage AWS Key Management Service (KMS) for cryptographic operations and key storage
- Centralize audit logs in Amazon S3 for visibility and compliance
- Integrate with AWS IAM for identity-based authentication
Key Security Differentiators
- Zero-knowledge architecture - Your secrets remain under your control at all times
- Multi-cloud and hybrid extension - Apply a single control plane across AWS, other clouds, and on-premises estates
- Patented DFC technology - Encryption keys are split into fragments that are never combined in a single location
- Identity-based authentication - Replace static credentials with dynamic, identity-driven access
- Granular RBAC and access controls - Define precise policies across users, machines, and AI agents
- Post-quantum cryptography readiness - Protect sensitive material against emerging quantum computing threats
Get Started
A free trial is available directly through AWS Marketplace so you can evaluate the platform in your own environment. For enterprise pricing and Private Offers, contact the Akeyless cloud alliance team through AWS Marketplace. Visit the Pricing tab for details on available plans.
Highlights
- Patented Distributed Fragments Cryptography (DFC) and Zero-Knowledge Architecture: Akeyless uses a unique cryptographic foundation that keeps sensitive material under customer control at all times. The zero-knowledge design means Akeyless never has access to your secrets, and the platform is built to protect against post-quantum threats. FIPS 140-3 validated encryption and multi-cloud KMS support ensure compliance-ready key management across environments.
- AI Agent Identity Security and Secretless Runtime Access: Secure AI agents, machines, and human identities with ephemeral, scoped credentials and just-in-time access. Akeyless enables the transition from static credentials to secretless security through identity-based authentication, zero standing privileges, and intent-aware authorization. Integrations with cloud IAM, Kubernetes, CI/CD, and MCP-based AI agent workflows let teams adopt AI securely without expanding risk.
- Multi-Vault Governance and Unified Platform: Manage secrets, certificates, privileged access, and passwords from a single platform across cloud, on-prem, and hybrid environments. Multi-Vault Governance provides centralized visibility and policy enforcement across AWS and third-party vaults. Granular role-based access controls, centralized auditing, and automated certificate lifecycle management reduce operational complexity and eliminate secrets sprawl.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Free trial
Dimension | Cost/12 months |
|---|---|
Clients | $1,000.00 |
Dimensions summary
Top-of-mind questions for buyers
Vendor refund policy
All fees are non-cancellable and non-refundable except as required by law.
Custom pricing options
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Resources
Vendor resources
Support
Vendor support
Akeyless provides 24x7 support with dedicated customer success managers and account managers to help you at every stage of your journey.
Submit a Support Ticket For technical issues, troubleshooting, or general inquiries, submit a ticket at https://www.akeyless.io/submit-a-ticket/
Enterprise Support Enterprise customers can contact cloudalliance@akeyless.io to discuss tailored support options, request private offers, or address account-specific needs.
For questions about refunds or subscription management, please reach out through the support ticket portal or contact your dedicated account manager directly.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.


Standard contract
Customer reviews
Streamlined PAM with Unified Secrets Management
Centralized secrets management has strengthened security and simplifies credential rotation
What is our primary use case?
Akeyless Secrets Management is used to store secrets such as database credentials and TransUnion certificates for the production environment. For example, a team stores PostgreSQL usernames and passwords in Akeyless instead of in application.properties. A Spring Boot application authenticates to Akeyless at startup, retrieves the credentials at runtime, and uses them to connect to the database. Regarding certificates, a team stores TLS certificates and private keys securely in Akeyless. Application services retrieve them when needed, and administrators can rotate certificates centrally instead of manually replacing them on every server.
How has it helped my organization?
Akeyless Secrets Management has positively impacted our organization because it has improved security through simpler credential rotation policies. Passwords, API keys, and certificates can be updated centrally without manually changing every application. This has resulted in better access control through role-based permissions and enhanced auditability.
Specific outcomes include the reduction in secret rotation time from hours to minutes after automating rotation. Fewer secrets are now stored in source code or configuration repositories after migration to centralized secret management, which is very important for our company. Manual effort has been reduced significantly because of this. New applications' secrets are managed centrally now. Incident response is very fast because speed is everything in this context.
What is most valuable?
Akeyless Secrets Management offers centralized secret management that stores API keys, passwords, certificates, and SSH keys. It provides dynamic and rotated secrets, role-based access control that lets administrators define who or what can access specific secrets, and a zero-knowledge architecture that uses distributed fragments cryptography design. It also offers support for services like Kubernetes.
The feature I rely on the most in my daily work is centralized secret management, as it is often considered the core capability because it reduces the need to store credentials across multiple applications. Role-based access control is also very valuable and important in larger organizations, and because our organization is growing, it is very helpful. Dynamic secret storing is very valuable to me, and Kubernetes support is essential for our operations.
What needs improvement?
Akeyless Secrets Management could be improved in several areas. The initial setup was quite difficult for me. The documentation and tutorials must include end-to-end examples for Kubernetes and CI/CD integrations in general. The UI/UX can be enhanced, and they should offer clear pricing and feature comparisons between different service tiers.
Onboarding and documentation should be clearer for first-time users. Integration examples for different tools, such as integrating Kubernetes and CI/CD pipelines in general, can be improved.
For how long have I used the solution?
I have been using Akeyless Secrets Management for quite some time now in my company.
What do I think about the stability of the solution?
Akeyless Secrets Management is very stable.
What do I think about the scalability of the solution?
Akeyless Secrets Management supports thousands of applications, users, and secrets, which demonstrates that it is highly scalable. It provides support for multi-cloud and hybrid deployments as well.
How are customer service and support?
I do not think we have used customer support for Akeyless Secrets Management, as if used by anyone, it will be the higher authorities in our company. I have not had a single issue with Akeyless Secrets Management.
Which solution did I use previously and why did I switch?
As far as I can remember regarding Akeyless Secrets Management, I do not think we were using anything else before, though it may have been Google Secret Manager before we changed it.
There were other options that the company was looking forward to considering, such as AWS Secrets Manager. We were using Google Secret Manager as far as I can remember a couple of years back, but we chose Akeyless Secrets Management instead.
What was our ROI?
Common metrics regarding return on investment with Akeyless Secrets Management include time saved because of its secret rotation policies. Operational effort has been reduced as it automated credential management. I have hardly seen any security incidents, and overall it has been very beneficial.
What other advice do I have?
The advice that I would personally give regarding Akeyless Secrets Management is that before adopting any secrets management platform, you should define what your security and compliance requirements are. Identify your cloud environments and the DevOps tools that you are integrating with. Evaluate ease of deployment, pricing, rotation policies, access controls, logging, integrations for Kubernetes, and scalability. My overall rating for this product is eight out of ten.