Try our new research platform with insights from 80,000+ expert users

Delinea Secret Server vs HashiCorp Vault comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 16, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Delinea Secret Server
Ranking in Enterprise Password Managers
5th
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
51
Ranking in other categories
Privileged Access Management (PAM) (2nd)
HashiCorp Vault
Ranking in Enterprise Password Managers
4th
Average Rating
8.2
Reviews Sentiment
7.2
Number of Reviews
16
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of January 2025, in the Enterprise Password Managers category, the mindshare of Delinea Secret Server is 5.4%, down from 5.8% compared to the previous year. The mindshare of HashiCorp Vault is 15.0%, down from 17.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Enterprise Password Managers
 

Featured Reviews

Avinash Gopu. - PeerSpot reviewer
Effective for password rotation policies triggered by audit requirements, it helps maintain compliance standards and seamless integration with third-party tools
The "App to App" feature has been most impactful. It allows secure communication between applications without requiring direct user access, which is crucial for several applications. Additionally, working in the finance department, we are heavily focused on enhancing audit reporting and compliance. So, the GRC (Governance, Risk & Compliance) capabilities of Delinea Secret Server have also been crucial for us. We implemented a custom reporting system that can automatically send reports to auditors daily, weekly, or according to your organization's needs. We also upgraded the audit role within Secret Server, allowing auditors to access and analyze the reports directly. Additionally, Secret Server provides comprehensive logging capabilities. Auditors can see what data users access, their access levels, and their activities, including check-in and check-out times. Furthermore, Secret Server helped us manage privileged, elevated access, which we call "K2K." As the lead for this project, I could identify users with the highest access levels and implement specific policies to monitor their activity on servers.
KishoreKumar1 - PeerSpot reviewer
Useful for machine-to-machine communication and has secret engine feature
The feature I find most beneficial in HashiCorp Vault is the secret engine. It integrates smoothly with many applications, making it easy to set up and implement quickly. This allows you to test it easily and see good results rapidly. When you integrate an internal API or application, it quickly manages that application's secrets. The access management feature in HashiCorp is great, especially if you are considering situations where users are getting onboarded. They can manage their passwords themselves, and it integrates well with Active Directory or any other directory services. This is particularly useful for user management and applications that communicate with each other without human intervention.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I like the one-way hash, as well as the ability to store it in the cloud and access it from anywhere."
"We implemented the product for our privileged identities. We have configured them in check-in/check-out rotation. Delinea Secret Server rotates the password each time a privileged identity is checked in, making the password valid only for some time."
"The ease of granting access to a secret without having to share the actual password and the password rotation were the main features I found effective for password management."
"Technical support is pretty good."
"It works for us."
"The surveillance is most valuable."
"Provides us with the ability to control access [to secrets] by groups."
"Number one is the password vault; it's very good. Number two, they have a feature for remote desktops that are created on a per session basis, which is very good for security."
"This solution is easy to use and to integrate."
"The feature I find most beneficial in HashiCorp Vault is the secret engine. It integrates smoothly with many applications, making it easy to set up and implement quickly. This allows you to test it easily and see good results rapidly. When you integrate an internal API or application, it quickly manages that application's secrets."
"It can still be configured by a separate team other than developers. That's why I think it's more secure."
"We were using it because we have compliance requirements around secret management. Having a secure vault and encrypting data was an additional requirement. When we looked at it first, we were just looking for a vault, like a lockbox. The greatest benefit of HashiCorp is its ability to manage encryption on the fly. It provides encryption of data at rest, in use, in transit, on the fly, and linked with applications, which was really attractive."
"It is user-friendly and easy to implement from any application point."
"The product is free and easy to use. It is well documented with an easy implementation process."
"The most valuable feature of HashiCorp Vault is that it's an open source solution. Second, it's cloud agnostic, so it's very easy to maintain and control, which is why we prefer HashiCorp."
"The most valuable feature of HashiCorp Vault is the management of tickets in the pipeline."
 

Cons

"The tool should integrate additional features like OCR."
"This product is excellent in every way except minor details in handling extremely large environments."
"I'd prefer a better commercial model that includes partners and options for consulting around it. Where I've worked with my customers, we've only been able to use their professional services, and that has been a risk and constraint."
"When Delinea upgrades the tool, it rejects our password, saying that it is not compliant and strong."
"It is expensive compared to other solutions in this category and for what it does."
"Cybersecurity is constantly evolving, so there will be features needed in the future."
"One thing that I wish they would do is to have a Kubernetes or container-based deployment supported, but they're not quite there yet. Containerization or support for containerization would be fantastic."
"Having more detailed reporting would improve this solution."
"The onboarding is a challenge. It should be more self-service, but it involves reviews and approvals."
"I would like to see better integration of HashiCorp Vault with SAP products."
"We could use more documentation, primarily to do with integrations."
"A drawback for some clients who have to be PCI compliant is that they still need to use and subscribe to an HSM (Hardware Security Module) solution."
"The technical support was hard to get a hold of and lacking in service."
"The solution could be much easier to implement."
"There could be a plugin for the database to change the secret automatically. It would be an efficient feature for password security."
"In terms of features, the only thing that I found a little bit hinky was that there was no revocation or deletion on the model we were using. Once in a financial year, a client interacts, and you pay for that client for the year. So, there are just little things like that in the pricing. There should be more clarity around the end of the key. I know there is no system like this. They all are the same. I tested Microsoft, Google, and some others, and none of them really want you to delete a key, which makes sense. You delete a key, and you lose everything that it has wrapped or encrypted, but it's actually just a language. Deletion isn't really deletion. It's really revocation, but overall, HashiCorp Vault ticked all the boxes for us, and I couldn't fault it."
 

Pricing and Cost Advice

"The tool's pricing is expensive."
"There is an annual license needed to use Delinea Secret Server."
"I would give the price a four on a scale from one to ten, with one being the cheapest and ten being the most expensive. We pay for the license on a yearly basis, and we paid for three years. It costs around 5000 a year."
"Its price is okay. We don't compete on pricing. We seldom use price to win over our competitors. We prefer it this way because if we can sustain the price, we make more margin as well. We don't want the price to go down to the bottom where despite the win, there's no margin at all."
"The price of this solution is good."
"The solution is low-cost than other vendors."
"It is very expensive, and its price should be lower."
"There are different plans and additional licensing costs that can be instituted for add-ons."
"The product is expensive."
"The AWS version is much cheaper than HashiCorp Vault."
"I am using the open-source version of Vault and I would have to buy a license if I want to get support."
"It could do everything we wanted it to do and it is brilliant, but it is super pricey. To be fair to HashiCorp, we drove the price up with our requirements around resiliency. Because of the nature of our company, we don't really operate in the cloud."
"The solution's cost is reasonable."
"In my case, the open-source version works well. It's advisable for small to medium-scale organizations, but for large-scale organizations, you should go with the enterprise version."
report
Use our free recommendation engine to learn which Enterprise Password Managers solutions are best for your needs.
830,633 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
39%
Computer Software Company
11%
Financial Services Firm
7%
Government
6%
Financial Services Firm
19%
Computer Software Company
15%
Manufacturing Company
8%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Looking for recommendations and a pros/cons template for software to detect insider threats
This is an inside-out --- outside-in --- inside-in question, as an insider can be an outsider as well. There is no short answer other than a blend of a PAM tool with Behavioral Analytics and Endpo...
What do you like most about Delinea Secret Server?
The privileged access management module is the most reliable feature.
What is your experience regarding pricing and costs for Delinea Secret Server?
If you're requesting licenses or pricing, then you have to fill out a questionnaire that they try to gain insight into what your environment is like, what you're trying to discover, and what you're...
Which is better - HashiCorp Vault or AWS Secrets Manager?
HashiCorp Vault was designed with your needs in mind. One of the features that makes this evident is its ability to work as both a cloud-agnostic and a multi-cloud solution. As a cloud-agnostic sol...
What do you like most about HashiCorp Vault?
The feature I find most beneficial in HashiCorp Vault is the secret engine. It integrates smoothly with many applications, making it easy to set up and implement quickly. This allows you to test it...
What is your experience regarding pricing and costs for HashiCorp Vault?
The enterprise version would require considering factors like the level of support needed, the amount of secret data being stored, and replication needs. But in my case, the open-source version wor...
 

Also Known As

Thycotic Secret Server, Delinea Password Reset Server
No data available
 

Learn More

 

Overview

 

Sample Customers

Secure-24, University of San Diego, International Rescue Committee, San Francisco Ballet, Perkins Coie, University of San Diego, D.S.S. Limited, Turbo's Hoet, Eclipse Computing, Cathay Bank, Stellarise, J&R Consulting
Adobe, SAP Ariba, Citadel, Spaceflight, Cruise
Find out what your peers are saying about Delinea Secret Server vs. HashiCorp Vault and other solutions. Updated: December 2024.
830,633 professionals have used our research since 2012.