BeyondTrust

BeyondTrust

PAM, vulnerability, and endpoint security solutions

Overview

BeyondTrust provides cybersecurity software for organizations. Its products include Privileged Access Management (PAM), which controls and monitors access to critical systems; Vulnerability Management, which finds and helps remediate security weaknesses; and Endpoint Protection, which secures devices from threats. The offerings are delivered as software and managed services, and the company works with large enterprises, government agencies, and partners to provide an integrated security platform. Its goal is to reduce cyber risk by preventing unauthorized access, detecting and fixing weaknesses, and protecting endpoints for safer IT operations.

Significant Headcount Growth

About BeyondTrust

Simplify's Rating
Why BeyondTrust is rated
B-
Rated B on Competitive Edge
Rated B on Growth Potential
Rated C on Differentiation

Industries

Enterprise Software

Cybersecurity

Company Size

1,001-5,000

Company Stage

Acquired

Total Funding

$12.1M

Headquarters

Johns Creek, Georgia

Founded

1985

Get referred to BeyondTrust

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • July 2026 NHI Governance attacks AI agents, service accounts, API keys, and OAuth clients.
  • Black Hat 2026 launch expands Pathfinder early access before competitors standardize non-human identity control.
  • BeyondTrust says 20,000 customers and 75 Fortune 100s validate enterprise demand and cross-sell potential.

What critics are saying

  • August 2026 EPM flaws CVE-2026-40144 and CVE-2026-40145 expose customers to privilege escalation.
  • February 2026 Remote Support bug CVE-2026-1731 was exploited in the wild.
  • Another appliance compromise could hit BeyondTrust's credibility and trigger customer churn during 2026 renewals.

What makes BeyondTrust unique

  • BeyondTrust owns privilege-centric identity security, spanning humans, workloads, and AI agents.
  • September 2026 CrowdStrike Falcon SIEM integration embeds privilege telemetry into SOC workflows.
  • Pathfinder turns identity relationships into attack-path intelligence, not just inventory and audit logs.

Help us improve and share your feedback! Did you find this helpful?

Funding

Total Funding

$12.1M

Below

Industry Average

Funded Over

4 Rounds

Acquisition funding comparison data is currently unavailable. We're working to provide this information soon!
Acquisition Funding Comparison
Coming Soon

Benefits

Flexible Work Hours

Hybrid Work Options

Growth & Insights and Company News

Headcount

6 month growth

↑ 17%

1 year growth

↑ 17%

2 year growth

↑ 21%
TechDay
Sep 24th, 2026
BeyondTrust links privilege data to CrowdStrike Falcon.

BeyondTrust links privilege data to CrowdStrike Falcon. Thu, 24th Sep 2026 (Today) BeyondTrust has introduced new integrations between its Pathfinder Platform and CrowdStrike Falcon Next-Gen SIEM, bringing BeyondTrust identity and privilege data into the Falcon platform. The integrations are designed to give joint customers a single view of privilege risk and threat activity by combining identity relationships and privilege exposure data with Falcon security telemetry. Security teams face growing pressure to detect attacks that rely on compromised credentials rather than malware. BeyondTrust's Phantom Labs research found that about 75% of modern attack paths exploit identity relationships rather than software vulnerabilities alone. The new integrations cover several Pathfinder Platform products, including Endpoint Privilege Management, Password Safe and Privileged Remote Access. Endpoint Privilege Management sends policy changes, privilege elevation requests and blocked execution events into Falcon. Password Safe adds privileged access information to the Falcon console, while Privileged Remote Access shares configuration changes, console authentications and session activity tied to cloud and network infrastructure. Identity focus The announcement reflects a wider shift in cybersecurity towards identity and privilege as central indicators of risk. As organisations manage a growing mix of human users, service accounts and AI agents, security teams are under pressure to understand how those identities relate to access rights and potential attack paths. The integrations are intended to close the gap between prevention and detection by adding identity context to incident investigation. In practice, analysts using Falcon can see not only threat signals but also the privileges and relationships attached to the identities involved. That visibility matters because attackers often move through an organisation by abusing legitimate access. Correlating telemetry with privilege exposure can help security teams determine whether an alert is tied to a highly privileged account, a remote session or a recent policy change. David Manks, Vice President of Strategic Alliances at BeyondTrust, commented on the trend behind the launch. "Attackers increasingly exploit legitimate identities and privileges to move through enterprise environments, making identity context critical to understanding and responding to threats," said David Manks, Vice President of Strategic Alliances at BeyondTrust. "By bringing BeyondTrust's identity and privilege intelligence into CrowdStrike Falcon, joint customers can connect privilege risk with threat activity, bringing identity threat prevention and detection together to accelerate investigation and response." Broader platform The integrations also extend BeyondTrust's Pathfinder strategy, which centres on identifying, prioritising and reducing privilege risk across different classes of identity. The company has increasingly emphasised non-human and AI-linked identities as more software agents and automated processes gain access to systems and data. For buyers, the launch points to continued consolidation across cybersecurity tools, as vendors seek to feed more specialised data into broader detection and response platforms. SIEM products have become a focal point for that effort because they serve as central hubs for alerting, investigation and response workflows. BeyondTrust says its customer base includes more than 20,000 organisations, including 75 of the Fortune 100. The company positions privilege as the key risk factor in identity security, arguing that the issue is not simply who or what an identity is, but what access it holds. The CrowdStrike integration gives customers another way to use that data within an existing security operations environment. It also underlines the commercial importance of partnerships between specialist identity security providers and larger platform vendors that already sit at the centre of many enterprise security teams.

VMblog
Sep 23rd, 2026
BeyondTrust launches new integrations with CrowdStrike Falcon Next-Gen SIEM.

BeyondTrust launches new integrations with CrowdStrike Falcon Next-Gen SIEM. BeyondTrust announced new integrations between solutions on the BeyondTrust Pathfinder Platform and CrowdStrike Falcon(R) Next-Gen SIEM. The integrations bring BeyondTrust's identity and privilege intelligence directly into the CrowdStrike Falcon(R) platform. By correlating identity relationships and privilege exposure insights across human, non-human, and AI agent identities with Falcon threat telemetry, joint customers can bring additional identity and privilege context into Falcon to accelerate investigation and response. Identity and privilege have become critical security signals. Security teams are increasingly confronting attackers who gain access using legitimate, compromised credentials rather than traditional malware, making identity and privilege two of the most consequential risk surfaces in the enterprise. Recent BeyondTrust Phantom Labs research has found that approximately 75% of modern attack paths exploit identity relationships rather than software vulnerabilities alone, underscoring the need to correlate identity intelligence with threat activity. "Attackers increasingly exploit legitimate identities and privileges to move through enterprise environments, making identity context critical to understanding and responding to threats," said David Manks, Vice President, Strategic Alliances at BeyondTrust. "By bringing BeyondTrust's identity and privilege intelligence into CrowdStrike Falcon, joint customers can connect privilege risk with threat activity, bringing identity threat prevention and detection together to accelerate investigation and response." Closing the gap between identity prevention and detection. The integrations connect several BeyondTrust Pathfinder Platform solutions with Falcon Next-Gen SIEM, including: * BeyondTrust Endpoint Privilege Management (EPM), which surfaces policy changes, privilege elevation requests, and blocked execution events within Falcon alongside other threat indicators. * BeyondTrust Password Safe(R), which brings privileged access insights into the Falcon console to enrich threat detection with privileged credential context. * BeyondTrust Privileged Remote Access (PRA), which shares configuration changes, console authentications, and session activity to extend visibility into cloud and network infrastructure. The integrations build on BeyondTrust's broader vision for privilege-centric identity security across human, non-human, workload, and AI identities. David Marshall is the founder of VMblog.com, one of the industry's longest-running independent publications covering modern data center technologies. What began as a focus on virtualization and cloud computing has expanded to cover the full spectrum of enterprise IT, including AI, security, and DevOps, making VMblog a trusted destination for vendor news, technology analysis, and industry commentary.Beyond publishing, David has spent his career at the intersection of technology and business, inventing, marketing, and launching a number of successful software companies and products, and building a reputation as a skilled marketing executive in the enterprise IT space.David is also a published author, having written two well-regarded books on virtualization and served as technical editor for two "For Dummies" titles covering virtualization and cloud computing. He co-founded CloudCow.com, a publication focused on cloud computing, and has been named a VMware vExpert every year since 2009, one of the longest continuous honoree streaks in the program's history.Connect with David on LinkedIn: https://www.linkedin.com/in/davidmarshall/

GBHackers
Aug 19th, 2026
BeyondTrust Endpoint Privilege Management flaws enable local privilege escalation.

BeyondTrust Endpoint Privilege Management flaws enable local privilege escalation. August 19, 2026 BeyondTrust has revealed two high-severity vulnerabilities in its Endpoint Privilege Management (EPM) Windows Deployment product, which could lead to local privilege escalation and bypasses of anti-tamper protections on affected devices. Discover more Cybersecurity training platform Cyberattack prevention software Data recovery services These vulnerabilities are tracked as CVE-2026-40144 and CVE-2026-40145 and affect all versions of Endpoint Privilege Management for Windows before version 26.1.2. The company has released fixes in version 26.1.2 and is urging customers to upgrade their affected endpoints as soon as possible. BeyondTrust Endpoint Privilege Management flaws. The vulnerabilities are detailed in BeyondTrust advisory BT26-04, which was issued and updated on August 17, 2026. BeyondTrust identified both issues internally during security assessments utilizing advanced AI models alongside proprietary testing harnesses. Cloud security services The company has stated that there is no evidence suggesting that either vulnerability was exploited before being addressed. The more severe vulnerability, CVE-2026-40144, has a CVSS v4 score of 7.3 and is classified as a high-severity out-of-bounds read flaw, mapped to CWE-125. This issue exists in a kernel-mode component of the BeyondTrust Endpoint Privilege Management for Windows. According to the advisory, the component fails to validate input sufficiently, which could allow the software to access memory outside its designated bounds. Discover more Computer Security Security Products & Services A local attacker with standard, non-administrative privileges could potentially exploit this flaw to corrupt kernel memory and elevate their privileges. Successful exploitation could lead to arbitrary code execution in kernel mode, thereby giving the attacker control over one of the most privileged levels of the Windows operating system. The CVSS vector for CVE-2026-40144 is: CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N Although exploitation requires local access and low-level privileges on the endpoint, successful exploitation could compromise the confidentiality, integrity, and availability of the affected Windows device. The second vulnerability, CVE-2026-40145, has a CVSS v4 score of 7.1 and is categorized under CWE-1220, which refers to insufficient granularity of access control. Vulnerability scanning tool This vulnerability affects the interaction between an EPM Windows support utility and the product's anti-tamper controls. Under certain circumstances, protections designed to limit the support utility process may not function as intended. An attacker who has already gained elevated privileges could manipulate the support utility process and execute code outside the intended boundaries of the EPM anti-tamper protections. Discover more Ethical hacking course Malware removal tool Crime & Justice This vulnerability does not serve as an initial access or direct low-privilege escalation vector; it requires local access, an elevated process context, and additional endpoint-specific conditions. Its CVSS vector is: CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N Organizations using BeyondTrust Endpoint Privilege Management Windows Deployment should identify any endpoints running versions earlier than 26.1.2 and prioritize upgrading them. The fixes for these vulnerabilities are included in version 26.1.2 and later. Because EPM products are designed to enforce privilege controls and restrict unauthorized administrative activity, kernel-level weaknesses or anti-tamper bypasses can pose significant risks in enterprise environments. Security teams should validate the versions of deployed agents, review local administrator access, and monitor for abnormal interactions with EPM support utilities during remediation. Prevent incidents due to slow investigations. Power your Tier 1 with threat intelligence from 15K SOCs: Integrate TI Lookup in your SOC Divya is a Senior Journalist at GBhackers covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world. Hot this week

GlobeNewswire
Aug 11th, 2026
BeyondTrust recognized on the 2026 Inc. 5000 list of America's fastest growing private companies.

BeyondTrust recognized on the 2026 Inc. 5000 list of America's fastest growing private companies. * Independent privilege-centric identity security leader recognized for sustained growth amid a consolidating cybersecurity market * Growth supported by sustained investment in identity security innovation throughout the 2022-2025 measurement period, alongside continued recognition from leading industry analysts "The ecosystem is changing fast. Organizations need a platform that treats privilege, not just identity, as the real point of control." ATLANTA, Aug. 11, 2026 (GLOBE NEWSWIRE) - BeyondTrust, the global leader in privilege-centric identity security protecting Paths to Privilege(TM), today announced it has been named on the prestigious 2026 Inc. 5000 list, which recognizes the fastest-growing private companies in America. "Being named to the Inc. 5000 for another year reflects the trust our customers place in us to secure their most critical identity security challenges, as well as the commitment of our employees and partners who make it possible to support our customers and sustain growth" said Janine Seebeck, CEO of BeyondTrust. "Identity has always been the front line of cybersecurity, but the ecosystem is changing fast, with non-human identities and AI agents multiplying inside organizations faster than security teams can track them. Organizations need a platform that treats privilege, not just identity, as the real point of control, and that's the problem we've built our platform to solve." BeyondTrust protects over 20,000 customers worldwide, including more than 75 of the Fortune 100, with a privilege-centric platform that reduces risk, simplifies compliance, and scales with the demands of a rapidly evolving identity landscape. That leadership continues to be validated across the industry's leading analyst reports and award programs, including: This year's Inc. 5000 recognizes a new class of companies redefining what growth looks like. From AI and advanced manufacturing to healthcare, consumer products, and professional services, these businesses are expanding their impact, creating jobs and proving that entrepreneurial ambition continues to fuel the U.S. economy. Among the 5,000 companies on the list, the median three-year revenue growth rate was 130%, and those companies have collectively added more than 627,208 jobs to the U.S. economy over the past three years. Platform Innovation Supporting Sustained Growth Throughout the 2022-2025 Inc. 5000 evaluation period, BeyondTrust continued to invest in expanding its identity security portfolio and addressing the evolving ways organizations manage and protect privileged access. Significant milestones included: * The launch of Identity Security Insights(R)(2023), expanding BeyondTrust's capabilities to provide visibility into identity threats and the Paths to Privilege(TM) attackers can exploit. * The acquisition of Entitle (2024), extending BeyondTrust's identity security platform with just-in-time access management and cloud permissions management capabilities. * The release of the True Privilege(TM) Graph (2025), advancing BeyondTrust's ability to reveal the true privilege of identities and uncover hidden attack paths across complex identity environments. Building on that trajectory, BeyondTrust has continued to accelerate investment in innovation since the close of the Inc. 5000 evaluation period, responding to the rapidly evolving identity security landscape and the emergence of AI agents, non-human identities, and workloads as critical new areas of privilege risk. Recent investments include PathfinderAI & MCP Server, AI Agent Security, NHI Governance, the expanded Identity Security Risk Assessment, and the preview of Workload Credentials, extending BeyondTrust's innovation across human, non-human, workload, and AI identities. "Every company on the Inc. 5000 has a story of perseverance, smart decision making, and a refusal to sit still," says Mike Hofman, editor-in-chief of Inc. "Their growth reflects more than strong financial performance-it reflects creativity, resilience, and the customer focus required to build companies that make a lasting impact. We congratulate all honorees on this significant achievement." * Organizations looking to uncover hidden identity and privilege risk can request a free Identity Security Risk Assessment at: https://www.beyondtrust.com/products/identity-security-insights/assessment * To learn more about BeyondTrust's latest innovations and request early access to capabilities like PathfinderAI, AI Agent Security, and NHI Governance, visit: https://www.beyondtrust.com/pathfinder * For the full Inc. 5000 list, honoree company profiles, and a searchable database by industry and location, visit: www.inc.com/inc5000 About BeyondTrust BeyondTrust is the global leader in privilege-centric identity security protecting Paths to Privilege(TM). Identity alone doesn't create risk. Privilege does. As human, non-human, and AI agent identities explode across every environment, BeyondTrust is the only company built to discover, control, and secure privilege across all of them from a single platform. Trusted by 20,000+ customers, including 75 of the Fortune 100, and recognized as a multi-category leader by top industry analysts, BeyondTrust reframes identity security from a management problem into a strategic advantage. About Inc. 5000 Companies on the 2026 Inc. 5000 are ranked according to percentage revenue growth from 2022 to 2025. To qualify, companies must have been founded and generating revenue by March 31, 2022. They must be U.S.-based, privately held, for-profit, and independent - not subsidiaries or divisions of other companies - as of December 31, 2025. (Since then, some on the list may have gone public or been acquired.) The minimum revenue required for 2022 is $100,000; the minimum for 2025 is $2 million. As always, Inc. reserves the right to decline applicants for subjective reasons. About Inc. Inc. is the leading media brand and playbook for the entrepreneurs and business leaders shaping its future. Through its journalism, Inc. aims to inform, educate, and elevate the profile of its community: the risk-takers, the innovators, and the ultra-driven go-getters who are creating the future of business. Inc. is published by Mansueto Ventures LLC, along with fellow leading business publication Fast Company. For more information, visit www.inc.com. For BeyondTrust: BeyondTrust Public Relations P: (516)-521-5582

iTWire
Aug 5th, 2026
BeyondTrust showcases the first wave of native Pathfinder capabilities for every identity at Black Hat USA 2026.

BeyondTrust showcases the first wave of native Pathfinder capabilities for every identity at Black Hat USA 2026. * Marks a major milestone in the evolution of the BeyondTrust Pathfinder platform as it advances BeyondTrust's vision for redefining privilege management * Further extends BeyondTrust's privilege-centric approach to secure every human, machine, workload, and AI identity that can hold or exercise privileged access * Combines visibility, intelligence, and protection to reduce the standing privilege attackers depend on * Brings together four native Pathfinder capabilities: PathfinderAI & MCP Server, AI Agent Security, NHI Governance, and the newly announced Workload Credentials capability BeyondTrust, the global leader in privilege-centric identity security protecting Paths to Privilege(TM), today announced its Black Hat USA 2026 showcase of the first wave of native capabilities built on the BeyondTrust Pathfinder platform, extending the identity visibility and intelligence already delivered through Identity Security Insights(R), while adding new context and telemetry that make those insights even more powerful. Together, these capabilities further extend privilege management beyond traditional human administrators to every identity that can hold or exercise privileged access, advancing BeyondTrust's vision for redefining privilege management. PathfinderAI & MCP Server, AI Agent Security, NHI Governance, and Workload Credentials are the first native Pathfinder capabilities designed to help organisations discover, prioritise, govern, and protect privileged access wherever it exists. Together, these capabilities bring human and non-human identities, including AI agents and workloads, onto a single platform that combines identity visibility, intelligence, and protection to help organisations uncover, understand, and reduce the standing privilege attackers depend on. "We are not a privileged access company adding AI," said Marc Maiffret, Chief Technology Officer, BeyondTrust. "We are the company that has long defined how to secure privileged action. For twenty years, that meant people with administrative rights, and we built the category for securing them. Today, that actor is just as likely to be an AI agent or autonomous workload. The actor has changed. Our job has not." The Problem: Privilege Now Lives Everywhere Recent research from BeyondTrust Phantom Labs(R) found enterprise AI agents grew more than 460% year over year, while security researchers continue to document the rapid expansion of machine and non-human identities across enterprise environments. These identities often have no clearly assigned owner. Their access evolves faster than organisations can review it, and credentials intended to be temporary often persist indefinitely. Attackers have taken notice. They're increasingly abusing trusted identity relationships, from OAuth integrations to workload credentials, to move laterally and access sensitive data without triggering traditional security controls. Excessive privilege has become one of the easiest paths into modern environments. The Response: The Next Evolution of the Pathfinder Platform The following native capabilities expand the Pathfinder platform with new ways to discover, prioritize, govern, and protect privileged access across every identity. * PathfinderAI & MCP Server: PathfinderAI lets security analysts investigate identity risk using natural-language queries across identity relationships, privileges, and hidden Paths to Privilege(TM), natively inside the Pathfinder platform. A new Pathfinder MCP Server extends that intelligence outward, letting AI agents, such as Microsoft Copilot, OpenAI, and Claude, securely connect to BeyondTrust's privilege-centric identity intelligence through the open Model Context Protocol. * AI Agent Security: AI Agent Security enforces what AI coworkers and autonomous agents, including Claude Code, Microsoft Copilot, Cursor, and OpenAI Codex, are allowed to do on the endpoint, in real time, before they act. It helps organisations discover, inventory, and govern AI agents on endpoints across the enterprise, providing visibility into AI identities, shadow AI, associated privileges, and paths to privilege separate from the human identities. The solution enables security teams to understand where AI agents exist, what they can access, and how to reduce unnecessary privilege before it becomes exploitable. * NHI Governance: NHI Governance extends privileged access management to the service accounts, API keys, OAuth clients, workload identities, and AI agents that now outnumber employees in nearly every organisation - and remain largely ungoverned. It moves organisations beyond simply discovering non-human identities to actively governing the privilege they hold. Organisations can establish ownership, review privileged access, automate lifecycle management, and apply governance controls to identities that have traditionally operated outside standard identity governance processes. * Workload Credentials: Workload Credentials is a new cloud-native secrets management capability on the Pathfinder platform, purpose-built to secure the non-human identities behind CI/CD pipelines, Kubernetes services, containers, and AI agents. Rather than vaulting and rotating static secrets, Workload Credentials replaces them with short-lived, auto-expiring credentials that are generated on demand and discarded after use, so there is nothing left to leak. A workload authenticates with an OIDC identity token, a policy engine evaluates the request, a scoped credential is issued, and it expires automatically - no manual rotation required. Availability & Early Access PathfinderAI, the Pathfinder MCP Server, AI Agent Security, and NHI Governance are available now through the BeyondTrust Early Access program. Workload Credentials early access opens soon. Organisations can request access at the links below, contact their BeyondTrust account teams, or stop by booth #4720 at BlackHat to learn more.

Recently Posted Jobs

Sign up to get curated job recommendations

BeyondTrust is Hiring for 39 Jobs on Simplify!

Find jobs on Simplify and start your career today

Don't see your dream role? Check out thousands of other roles on Simplify. Browse all jobs →