Overview

The CyberArk integration monitors your privileged access management platform: privileged accounts, vaults, and audit logs. LowerPlane uses read-only access via the CyberArk API to collect compliance evidence automatically.

Prerequisites

You need CyberArk Vault Admin permissions to create an API key with the required access.

How to Connect

1

Log in to CyberArk

Log in to your CyberArk PVWA (Password Vault Web Access) console.
2

Generate an API Key

Navigate to Administration > API Keys and create a new read-only API key.
3

Copy your PVWA URL

Note your PVWA URL (e.g., https://your-company.cyberark.cloud).
4

Connect in LowerPlane

Go to Settings > Integrations in LowerPlane, find CyberArk, enter your API Key and PVWA URL, then click Connect.

What LowerPlane Monitors

Privileged Accounts

Privileged account inventory, status, and access policies.

Vaults

Vault configurations, safe memberships, and access controls.

Audit Logs

Activity logs for privileged sessions and credential access.

Frameworks Supported

FrameworkWhat It Proves
SOC 2Privileged access controls are enforced
ISO 27001Access control and privileged access management are implemented
HIPAAAccess to sensitive systems is controlled and audited
PCI-DSSPrivileged access to cardholder data environments is managed