All outcomes
    Outcome

    Stop insider threats & account takeover

    Spot rogue users, compromised accounts and risky behaviour.

    "I'm worried about malicious insiders or hijacked employee accounts."

    Categories that solve this

    Pick the angle you care most about, or scroll for the full vendor list.

    All 460 tools for this outcome

    Corma logoC
    Corma
    Identity Governance & Administration (IGA)

    Corma is a cloud based identity governance and SaaS access management platform for IT, security and finance teams at growing organizations. It centralizes visibility into the applications an organization uses, including unauthorized or shadow software, and automates the joiner mover leaver lifecycle so access is provisioned and revoked without manual tickets. Security teams use it to run access reviews and certification audits aligned to SOC 2 and ISO 27001, while finance and IT teams track software licenses and renewals from the same console. Employees can request access through a self service catalog with role based approval workflows. The platform targets companies of roughly 50 to 1000 employees and integrates with identity providers such as Google Workspace and Microsoft Entra ID.

    Shadow IT detectionZero touch provisioning+4
    Delinea (formerly ThycoticCentrify) logoD
    Delinea (formerly ThycoticCentrify)
    Privileged Access Management (PAM)

    Delinea, formed in 2021 from the merger of Thycotic and Centrify and backed by TPG Capital, provides privileged access management (PAM) solutions for securing privileged accounts, credentials, and access to servers, applications, databases, and cloud infrastructure. Available as cloud-native or on-premises deployments via a centralized dashboard, it supports hybrid enterprises with products including Secret Server for credential vaulting, Privilege Manager for endpoint controls, and Privileged Behavior Analytics for threat detection. Serves over half of Fortune 100 companies, financial institutions, and critical infrastructure, focusing on password rotation, session monitoring, and just-in-time access.

    Privileged account discovery and governance+10
    IDdriven logoI
    IDdriven
    Identity Governance & Administration (IGA)

    IDdriven provides Identity Governance and Administration (IGA) solutions focused on automating identity lifecycle management for mid-sized enterprises. Their platform consolidates identity data from on-premises directories, SaaS applications, and cloud services, enabling policy-based access provisioning, certification campaigns, and compliance reporting. Best suited for organizations in regulated industries like finance and healthcare seeking cost-effective IGA without extensive customization. IDdriven emphasizes quick deployment through pre-built connectors to Active Directory, SAP, and major HR systems, supporting role-based access control (RBAC) and separation of duties (SoD) enforcement.

    Identity lifecycle management and access governance
    ManageEngine PAM360 logoM
    ManageEngine Endpoint DLP Plus
    Data Loss Prevention (DLP)

    ManageEngine Endpoint DLP Plus is an enterprise-grade endpoint data loss prevention solution that scans network endpoints to discover and classify structured and unstructured sensitive data using pre-defined or customizable templates. It monitors data-in-use, data-at-rest, and data-in-motion across endpoints via a centralized web console, enforcing policies to block unauthorized uploads to cloud storage, email transmissions to unpermitted addresses, and peripheral device access like USBs and printers. Designed for large organizations with distributed setups including WAN and mobile users, it supports GDPR compliance through incident management, user behavior analytics, and detailed audit reports. Best suited for enterprises needing comprehensive endpoint DLP in Windows environments.

    Discover and classify sensitive data+11
    Miru Labs logoM
    Miru Labs
    Identity Threat Detection & Response (ITDR)

    Miru is an AI-native insider threat detection and prevention platform that protects organizations from data loss, Shadow AI risks, and malicious insider activity across SaaS environments and endpoints. Founded by cybersecurity veterans with deep expertise in counterintelligence and nation-state threat detection, Miru replaces legacy UEBA and SIEM tools with an identity-anchored architecture that automates investigation workflows and eliminates alert fatigue. The platform combines browser-based telemetry with integrations to identity providers, development platforms, and productivity suites to deliver real-time behavioral analytics and automated response capabilities. Miru enables security teams at high-growth technology companies and enterprises to detect anomalous access patterns, unauthorized data exfiltration, and policy violations without adding headcount, providing the investigation intelligence and endpoint protection modern distributed workforces require.

    ## Key Features **Browser-Based Endpoint Protection** Lightweight browser extension captures real-time user activity across SaaS applications
    One Identity logoO
    One Identity
    Identity Governance & Administration (IGA)

    One Identity provides Identity Manager, an enterprise-grade IGA platform unifying governance for users, applications, data, and privileged accounts across on-premises, hybrid, and cloud environments. It excels in automated identity lifecycle management, including provisioning and deprovisioning for SaaS and hybrid apps, with SAP-certified controls for SAP-centric organizations. Key strengths include attestation workflows, self-service access requests via shopping-cart interface, consolidated governance for regular and privileged accounts, and compliance reporting. Best suited for large enterprises needing visibility into access usage, behavior-driven policy insights, and regulatory audit support in complex hybrid IT landscapes.

    Identity lifecycle provisioning and deprovisioning
    Skyhigh Security CASB logoS
    Skyhigh Security CASB
    CASB (Cloud Access Security Broker)

    Skyhigh Security CASB is a cloud-based, multi-tenant Cloud Access Security Broker that deploys via forward and reverse proxy modes for real-time control over sanctioned and unsanctioned cloud services. It leverages the Cloud Registry for 50+ attribute risk assessments across 20,000+ services, enabling discovery, classification, and remediation. Key capabilities include DLP policy enforcement synced with endpoint DLP, machine learning-based UEBA for insider threat detection, malware analysis, configuration auditing against benchmarks with automated remediation, and contextual access controls. Best suited for enterprises needing comprehensive visibility and governance across hybrid cloud environments with SharePoint integration.

    Discover unsanctioned cloud services+11