Skip to main content
Question

Department-Level Segregation - Password Safe Use Case Validation

  • December 14, 2025
  • 1 reply
  • 11 views

Forum|alt.badge.img+3

Can BeyondTrust Password Safe support strict logical segregation between two departments (Network Division and IT Security Division) within the same Password Safe deployment, ensuring no visibility of assets, accounts, users, or sessions across divisions?

 

Component Network Division IT Security Division
PAM Admin Network PAM Admin Security PAM Admin
Assets Network devices Security infrastructure
Accounts Network privileged accounts Security privileged accounts
Users Network engineers Security engineers
Policies Network-specific Security-specific
Reports Network only Security only
Configuration Network Only Security Only

1 reply

Pulitros144
Forum|alt.badge.img+4
  • Rising Star
  • December 15, 2025

@AmilaK Yes, you just need to configure the Smart Rules and Groups to see only what they need and have acess to only the specified features