VOOZH about

URL: https://thenewstack.io/from-it-to-devops-evolution-of-privileged-access-management/

⇱ From IT to DevOps: Evolution of Privileged Access Management - The New Stack


TNS
SUBSCRIBE
Join our community of software engineering leaders and aspirational developers. Always stay in-the-know by getting the most important news and exclusive content delivered fresh to your inbox to learn more about at-scale software development.
REQUIRED
It seems that you've previously unsubscribed from our newsletter in the past. Click the button below to open the re-subscribe form in a new tab. When you're done, simply close that tab and continue with this form to complete your subscription.
The New Stack does not sell your information or share it with unaffiliated third parties. By continuing, you agree to our Terms of Use and Privacy Policy.
Welcome and thank you for joining The New Stack community!
Please answer a few simple questions to help us deliver the news and resources you are interested in.
REQUIRED
REQUIRED
REQUIRED
REQUIRED
REQUIRED
Great to meet you!
Tell us a bit about your job so we can cover the topics you find most relevant.
REQUIRED
REQUIRED
REQUIRED
REQUIRED
REQUIRED
Welcome!

We’re so glad you’re here. You can expect all the best TNS content to arrive Monday through Friday to keep you on top of the news and at the top of your game.

What’s next?

Check your inbox for a confirmation email where you can adjust your preferences and even join additional groups.

Follow TNS on your favorite social media networks.

Become a TNS follower on LinkedIn.

Check out the latest featured and trending stories while you wait for your first TNS newsletter.

PREV
1 of 2
NEXT
VOXPOP
As a JavaScript developer, what non-React tools do you use most often?
Angular
0%
Astro
0%
Svelte
0%
Vue.js
0%
Other
0%
I only use React
0%
I don't use JavaScript
0%
Thanks for your opinion! Subscribe below to get the final results, published exclusively in our TNS Update newsletter:
NEW! Try Stackie AI
From clobbered drafts to real-time sync
Apr 14th 2026 10:00am, by David Moore
TypeScript 6.0 RC arrives as a bridge to a faster future
Mar 14th 2026 9:00am, by Darryl K. Taft
Mastra empowers web devs to build AI agents in TypeScript
Jan 28th 2026 11:00am, by Loraine Lawson
2023-10-30 12:00:26
From IT to DevOps: Evolution of Privileged Access Management
sponsor-apono,sponsored-post-contributed,
DevOps / Operations

From IT to DevOps: Evolution of Privileged Access Management

Each PAM solution has its benefits and drawbacks, but there are three major considerations for DevOps teams.
Oct 30th, 2023 12:00pm by Sharon Kisluk
👁 Featued image for: From IT to DevOps: Evolution of Privileged Access Management
Image from greenbutterfly on Shutterstock.
Apono sponsored this post.

Privileged access management (PAM) has always been a critical aspect of ensuring the security and integrity of an organization’s most sensitive assets. Traditionally, this responsibility has fallen on the shoulders of information technology (IT) teams, who controlled and monitored access to sensitive resources. However, as more organizations migrate to the cloud, the complexities and challenges of managing privileged access have increased exponentially, and the stringent regulations surrounding data privacy and security have raised the stakes for access control.

DevOps teams, well-versed in the intricacies of their environments, became the obvious choice when handing down the responsibility of managing privileged access as they have a clear understanding of which resources they require and when they need them.

However, the challenge lay in translating this intuitive understanding into a practical and regulation-compliant solution. DevOps teams had to find a way to strike a balance between providing efficient access to resources for development and operational tasks while ensuring that the organization remained secure and compliant with regulations.

Apono keeps organizations secure with simple and precise just-in-time permissions across the DevOps domain. Completely self serve and taking minutes to deploy, Apono helps DevOps teams view existing permissions and easily enable dynamic contextual access workflows directly from Slack, Teams, or CLI.
Learn More
The latest from Apono

Two Options for DevOps Teams

DevOps teams seemingly have two options when considering how to manage privileged access: build a bespoke, in-house tool or adapt an existing legacy solution to align with their unique needs.

Creating an in-house tool offers unparalleled advantages in optimizing both user experience and security. This approach enables complete customization, ensuring that every permission request workflow is meticulously tailored and that resource integration reaches the precise level of granularity required to meet stringent security prerequisites. The result is a solution that harmonizes seamlessly with the organization’s specific demands.

However, this option demands significant labor and resources, often making it impractical for most organizations. Developing such a tool entails a substantial investment in development time on top of existing daily operational requirements.

Consequently, the alternative of adapting an existing solution frequently becomes the more pragmatic choice.

Rather than embarking on the task of creating a privileged access tool from scratch, DevOps teams can harness the existing capabilities of another solution and incorporate them into their workflows and resources. Nevertheless, these legacy solutions were not originally designed to meet the demands of modern DevOps environments. This adaptation may necessitate compromising on certain aspects, such as security, user experience and visibility.

The Three Factors to Consider When Evaluating PAM Solutions

Each PAM solution has its benefits and drawbacks, but there are three major considerations for DevOps teams.

  1. Granularity: Nearly every PAM provider provides access controls for identities and accounts, but their out-of-the-box offerings are typically less fine-grained when it comes to managing access to cloud, Kubernetes or databases. Whether through premium options or customization, granularity is an important aspect of compliance and usually a strict requirement.
  2. User experience: Adding little to no additional friction to end users is crucial to meeting productivity goals and deterring users from creative and dangerous shortcuts. Choose a solution that allows your team to keep working with their native tools and clients of choice.
  3. Unified control plane: Visibility is critical for both a compliance and security standpoint. While most PAM solutions won’t be able to give out-of-the-box visibility into infrastructure entitlement and access architecture, ensure that you can custom-fit this capability across your resources.

For a complete list of nine questions to ask any PAM vendor, check out this guide.

The Bottom Line

The transition of privileged access management from IT to DevOps reflects the dynamic nature of the modern IT landscape. DevOps teams are well-equipped to understand their resource needs, but the challenges of managing privileged access in complex, regulated environments are significant.

As organizations continue to evolve in the cloud era, it is essential to recognize the critical role that traditionally defined IT security solutions play for DevOps teams. The collaboration between DevOps and PAM solutions holds the key to a secure and agile future for privileged access management.

About Apono

Apono is a granular permission control solution that offers fine-grained access policies to cloud assets. Apono integrates directly with the specific service or resource type. This allows us to change the permissions at the resource level itself, for example a specific collection or table in your data repository instead of the entire cluster. Our solution allows for control of specific roles and permissions of each resource type and service from one central tool, bringing a unified privilege control plane to the admin, with workflows and audit capabilities on top.

Apono keeps organizations secure with simple and precise just-in-time permissions across the DevOps domain. Completely self serve and taking minutes to deploy, Apono helps DevOps teams view existing permissions and easily enable dynamic contextual access workflows directly from Slack, Teams, or CLI.
Learn More
The latest from Apono
TRENDING STORIES
Sharon Kisluk is the lead product manager at Apono, responsible for the company’s short- and long-term strategic product initiatives. She brings over 10 years of experience as a technologist and product builder. Prior to Apono, Sharon was held numerous product...
Read more from Sharon Kisluk
Apono sponsored this post.
SHARE THIS STORY
TRENDING STORIES
TNS owner Insight Partners is an investor in: Pragma.
SHARE THIS STORY
TRENDING STORIES
TNS DAILY NEWSLETTER Receive a free roundup of the most recent TNS articles in your inbox each day.
The New Stack does not sell your information or share it with unaffiliated third parties. By continuing, you agree to our Terms of Use and Privacy Policy.