# AWS Secrets Manager vs CyberArk Conjur

**Leader by Vioscale score:** AWS Secrets Manager

| Attribute | AWS Secrets Manager | CyberArk Conjur |
|---|---|---|
| **Vioscale score** | 77.6 (73% (medium)) | 44.7 (30% (low)) |
| activity.commits_last_30d | - | 6 |
| adoption.dependent_repos | - | 0 |
| adoption.github_stars | - | 944 |
| deployment.options | `{"cloud":true}` | `{"self_hosted":true}` |
| description.long | A cloud-based service that stores and manages sensitive credentials, API keys, and other secrets for applications and services. It provides encryption at rest and in transit, fine-grained access control through IAM policies, automatic secret rotation, multi-region replication, and comprehensive audit logging. | Centralized secrets management platform for hybrid and multicloud environments that provides enterprise-grade storage, automated rotation, and lifecycle controls for application credentials and machine identities. |
| features.capabilities | `{"hosting":"cloud","tool_type":"store","audit_logging":true,"fips_validated":true,"secret_rotation":true,"fine_grained_policy":true}` | `{"hosting":"self","tool_type":"store","audit_logging":true,"dynamic_secrets":true,"secret_rotation":true,"open_source_core":true,"kubernetes_native":true,"fine_grained_policy":true}` |
| integrations.count | 30 | - |
| integrations.list | `[{"name":"Alexa for Business"},{"name":"AWS App2Container"},{"name":"Amazon AppFlow"},{"name":"AWS AppSync"},{"name":"Amazon Athena"},{"name":"AWS CodeBuild"},{"name":"AWS Direct Connect"},{"name":"AWS Directory Service"},{"name":"Amazon DocumentDB"},{"name":"Amazon RDS"},{"name":"Amazon Redshift"},{"name":"Salesforce"},{"name":"Snowflake"},{"name":"AWS Elemental MediaLive"},{"name":"AWS Elemental MediaConnect"},{"name":"AWS Elemental MediaConvert"},{"name":"Amazon CodeGuru Reviewer"},{"name":"AWS Elemental MediaPackage"},{"name":"AWS Elemental MediaTailor"},{"name":"Amazon EMR"},{"name":"Amazon EventBridge"},{"name":"Amazon FSx"},{"name":"AWS Glue DataBrew"},{"name":"AWS Glue Studio"},{"name":"AWS IoT SiteWise"},{"name":"Amazon Kendra"},{"name":"AWS Launch Wizard"},{"name":"Amazon Lookout for Metrics"},{"name":"Amazon Managed Streaming for Apache Kafka"},{"name":"Amazon Managed Workflows for Apache Airflow"}]` | - |
| language.primary | - | Ruby |
| market.availability | `{"hqCountry":"US","primaryMarkets":[],"availabilityScope":"global","availableCountries":[],"notAvailableCountries":[]}` | - |
| platform.support | `{"cli":true,"web":true}` | - |
| pricing | `{"type":"usage","plans":[{"free":false,"name":"Pay-as-you-go","summary":"Pay per secret stored per month and per 10,000 API calls","features":["Rotate secrets automatically","Replicate secrets for disaster recovery","Fine-grained IAM access control","Audit and monitor secret usage","Integration with AWS logging and monitoring services"],"contactSales":false}],"summary":"Usage-based pricing. Free tier available for 6 months with $200 credits for new customers. No upfront costs or contracts.","currency":"USD","freeTier":true,"sourceUrl":"https://aws.amazon.com/secrets-manager/","retrievedAt":"2026-08-01T09:07:13.027Z","billingPeriods":["month"]}` | - |
| pricing.free_tier | yes | - |
| pricing.model | freemium | commercial |
| pricing.price_level | low | - |
| pricing.transparent | yes | - |
| release.cadence_days | - | 49 |
| release.history | - | `[{"url":"https://github.com/cyberark/conjur/releases/tag/v1.27.0","date":"2026-06-16T16:00:40Z","type":"stable","version":"v1.27.0"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.24.0","date":"2025-11-20T20:24:03Z","type":"stable","version":"v1.24.0"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.22.3","date":"2025-09-24T21:09:35Z","type":"stable","version":"v1.22.3"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.21.6","date":"2025-09-24T21:08:17Z","type":"stable","version":"v1.21.6"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.22.2","date":"2025-07-23T18:34:26Z","type":"stable","version":"v1.22.2"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.22.1","date":"2025-07-15T18:36:50Z","type":"stable","version":"v1.22.1"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.22.0","date":"2025-04-30T17:07:19Z","type":"stable","version":"v1.22.0"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.21.3","date":"2025-02-19T20:39:44Z","type":"stable","version":"v1.21.3"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.21.2","date":"2024-11-22T15:40:40Z","type":"stable","version":"v1.21.2"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.21.0.1","date":"2024-09-18T15:07:34Z","type":"prerelease","version":"v1.21.0.1"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.21.1","date":"2024-09-18T21:14:23Z","type":"stable","version":"v1.21.1"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.20.1-4405","date":"2023-08-17T19:56:23Z","type":"prerelease","version":"v1.20.1-4405"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.20.0","date":"2023-08-04T21:07:07Z","type":"stable","version":"v1.20.0"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.19.6-4066","date":"2023-07-06T17:35:00Z","type":"prerelease","version":"v1.19.6-4066"},{"url":"https://github.com/cyberark/conjur/releases/tag/v0.0.5-13","date":"2023-07-18T12:47:35Z","type":"prerelease","version":"v0.0.5-13"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.19.3.1-6","date":"2023-07-13T23:25:29Z","type":"prerelease","version":"v1.19.3.1-6"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.19.5","date":"2023-05-17T19:48:54Z","type":"stable","version":"v1.19.5"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.19.3","date":"2023-01-26T20:38:30Z","type":"stable","version":"v1.19.3"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.19.2","date":"2023-01-18T15:57:47Z","type":"stable","version":"v1.19.2"},{"url":"https://github.com/cyberark/conjur/releases/tag/v1.19.1","date":"2022-12-08T16:24:04Z","type":"stable","version":"v1.19.1"}]` |
| reliability.status_page | yes | yes |
| security.disclosure_policy | yes | yes |
| security.fedramp | yes | - |
| security.gdpr | yes | - |
| security.hipaa | yes | - |
| security.iso27001 | yes | - |
| security.pci | yes | - |
| security.scorecard | - | 4.4 |
| security.soc2 | yes | - |
| security.vulnerabilities | - | `{"count":0,"source":"https://advisories.ecosyste.ms/api/v1/advisories?ecosystem=go&package_name=github.com%2Fcyberark%2Fconjur&per_page=100","last_12m":0,"max_severity":null}` |

## Capabilities (Secrets Management Tools)

| Capability | AWS Secrets Manager | CyberArk Conjur |
|---|:--:|:--:|
| **Core** |  |  |
| Tool type | Secret store / engine | Secret store / engine |
| Dynamic (short-lived) secrets | - | ✓ |
| **Deployment** |  |  |
| Hosting | Cloud only | Self-hosted only |
| **Lifecycle** |  |  |
| Automatic secret rotation | ✓ | ✓ |
| **Crypto** |  |  |
| Encryption as a service (transit) | - | - |
| **Compliance** |  |  |
| FIPS 140-2/3 validated crypto | ✓ | - |
| HSM support | - | - |
| **Access** |  |  |
| Fine-grained / identity-based policy | ✓ | ✓ |
| **Governance** |  |  |
| Audit logging | ✓ | ✓ |
| **Integration** |  |  |
| Kubernetes native (CRD / CSI / K8s auth) | - | ✓ |
| **Scope** |  |  |
| PKI / certificate authority | - | - |
| **Licensing** |  |  |
| Open-source core | - | ✓ |
| **Ecosystem** |  |  |
| CNCF maturity | - | - |

*Source: Vioscale. Generated 2026-09-01T15:44:01.931Z. "-" = undocumented, not absent.*
