Skip to content
BeyondTrust logo

BeyondTrust integration

Unifies privileged account management, session auditing, and credential workflows for secure access automation.

What it connects

  • Managed systems and the privileged accounts configured within them for centralized access discovery.
  • Workgroup organizational structures and asset inventory managed through Password Safe.
  • Infrastructure asset details including systems, DNS names, IP addresses, and operating system information.
  • Account metadata such as domain, description, release duration, and credential rotation policies.

What it automates

  • Request and release elevated credentials for approved access windows with full audit trails.
  • Check in released credentials and manage the credential lifecycle throughout an access request.
  • Rotate managed account passwords on demand or according to configured change frequency schedules.
  • Lock or terminate active sessions by account or system when containment and emergency response is needed.

In practice

When an engineer needs elevated database access for a production change, they request credentials through STLabs, which verifies an approved ticket exists before auto-releasing the account password.
A security incident involves suspicious activity on a privileged account; STLabs immediately terminates all active sessions for that account to stop the threat while preserving logs for investigation.
At shift change, expiring credentials are automatically rotated according to Password Safe policies, ensuring compliance with regulatory requirements without manual admin intervention.
A compliance report cross-references Password Safe credential checkouts with service tickets and workgroup assignments, flagging any releases that lack proper authorization or ticket linkage.

See how it connects.Every tool, one live map.

All integrations