Skip to content

Colour theme

Region

Opens the same page on another regional site.

Search site

Search pages and articles

Ctrl+K · Search site
Menu

Keeper Security

Keeper Security is the password manager, secrets-management, and privileged-access platform Trucell deploys for Australian organisations that need vault-backed credential hygiene, shared-team access without "password.docx on SharePoint", and auditable privileged-account use aligned to ASD Essential Eight identity controls.

The Keeper modules we deploy and operate: Keeper Business and Keeper Enterprise password management with role-based access and team folders; Keeper KeeperPAM (privileged access management) for vault-backed credential rotation, session recording, and just-in-time elevation; Keeper Secrets Manager for application secrets and CI/CD pipeline credentials so secrets stop landing in source control or Confluence; Keeper Connection Manager for browser-based SSH, RDP, MySQL, and Kubernetes access without standing-up jump hosts; Keeper BreachWatch for credential-exposure monitoring against dark-web breach datasets.

What Trucell delivers beyond the install: Entra ID SCIM provisioning so vault membership tracks your identity source of truth, conditional access policies that pair Keeper with Microsoft authenticator MFA, role-based policy design (technician, manager, executive, contractor) so vault scoping matches real organisation structure, browser-extension rollout via Intune or NinjaOne, training for service-desk teams on the day-to-day workflow, and audit-log forwarding into Microsoft Sentinel or Adlumin when SIEM correlation is in scope.

Keeper complements Entra ID and endpoint controls rather than replacing them. The combination addresses Essential Eight Mitigation Strategy 4 (restrict admin privileges), Strategy 5 (multi-factor authentication), and Strategy 6 (patch operating systems) by removing the local-admin-with-shared-password antipattern that most managed-IT estates still rely on. Trucell runs it as part of managed security services so identity hardening stays operable for the service desk, not just a compliance bullet.