24 May 2023

CyberArk is a leading cybersecurity company that specialises in privileged access security. They offer various training and certification programmes to help professionals gain expertise in using their products and solutions. These programmes aim to enhance an individual's knowledge and skills in implementing and managing privileged access security within an organisation.

Introduction to the CyberArk and its functionalities

  1. CyberArk training provides a comprehensive platform for managing and securing privileged accounts throughout an organisation.
  2. It allows organisations to discover, onboard, and secure privileged accounts, including passwords, SSH keys, and database credentials.
  3. CyberArk’s solution automates password rotation, enforces strong access controls, and centralises the management of privileged account credentials in a secure vault.
  4. It enables secure remote access to privileged accounts through its Privileged Session Manager component.
  5. The PSM establishes secure connections between users and target systems, eliminating the need for users to directly access credentials.
  6. It provides granular session monitoring, recording, and auditing capabilities.
  7. Application Identity Manager focuses on securing the privileged access that applications and services use.
  8. It enables secure storage and retrieval of application credentials, such as API keys and service account passwords.

CyberArk Architecture and Components

  • Privileged Access Security (PAS) Server:
  • Central Policy Manager (CPM)
  • Privileged Session Manager (PSM)
  • Application Identity Manager (AIM)
  • CyberArk Privileged Threat Analytics (PTA)

Understanding the different server components of the CyberArk architecture and their roles

These server components work together to provide a comprehensive privileged access security solution. They handle different aspects of managing privileged accounts, enforcing security policies, securing access to sensitive systems, and facilitating secure communication between users, applications, and target systems.

  1. Application Identity Manager (AIM):
  • The Application Identity Manager focuses on managing privileged access used by applications and services.
  • It provides secure storage and retrieval of application credentials, such as API keys and service account passwords.
  • The AIM facilitates secure authentication and communication between applications, ensuring secure application-to-application interactions.
  • It collaborates with the PAS Server and other components to manage and protect application credentials.
  1. Vault Server:
  • The Vault Server is a crucial component that houses the CyberArk Vault.
  • It securely stores and manages privileged account credentials, SSH keys, API keys, and other sensitive information.
  • The vault server provides encryption, access controls, and auditing capabilities to protect the stored credentials.
  • It interacts with the PAS Server and other components to facilitate the secure retrieval and management of privileged account credentials.
  1. Privileged Session Manager (PSM):
  • The Privileged Session Manager enables secure remote access to privileged accounts.
  • It establishes a secure connection between users and target systems without exposing the credentials to users.
  • The PSM acts as a proxy between the user and the target system, allowing for monitoring and recording of privileged sessions.
  • It works in conjunction with the PAS Server and other components to ensure secure and controlled privileged access.

Installing and configuring CyberArk

  • Pre-Installation Planning:
  • Obtain the installation package:
  • CyberArk Vault Installation:
  • Privileged Access Security (PAS) Server Installation:
  • Component Configuration:
  • Post-Installation Tasks:
  • Ongoing maintenance and upgrades:

