For the complete documentation index, see /llms.txt. Markdown version of this page: /en/products/cyberark/endpoint-privilege-manager.md.

Human Identities

Endpoint Privilege Manager

Endpoint Privilege Manager reduces risk on user devices by limiting standing local admin rights. It lets users do their work while keeping powerful permissions in check.

What it is

Endpoint Privilege Manager removes excess local administrator rights from endpoints. It controls which applications are allowed to run. When elevated rights are needed, it can grant them just in time for a specific task. It supports Windows, macOS, and Linux devices.

Key capabilities

  • Removal of unnecessary local admin rights.
  • Control over which applications can run.
  • Just-in-time elevation for approved tasks.
  • Consistent policy across Windows, macOS, and Linux.

Who it’s for

It suits organizations that want to cut down on broad local admin access. It fits teams that need users to stay productive without permanent elevated rights. It helps reduce the attack surface on everyday devices.

Read more on Idira (CyberArk)

Questions or inquiry? [email protected] Contact us →