Back to the registry
Agent passport

CyberArk MCP Server for Secure Cloud Access

CyberArk · Software Development

No attestation published

Certification per AWS Marketplace.

Provenance reach3 of 12 layers traced

Evidence tier Source Confirmed · 4 captures on record

User ratingNot rated0 reviews · G2 4
Runs onUnknownContainer
ProvenanceUnknown33% of the provenance layers this product can disclose
Evidence riskHighSign in to see the basis for this band.

What the publisher says

As described on AWS Marketplace.

CyberArk MCP Server for Secure Cloud Access enables secure, dynamic access control for cloud resources in developer and AI-driven workflows. Built for use with AI assistants such as Amazon Q Developer or Claude for Desktop, this solution helps to avoid standing access and enforces least privilege natively.

The CyberArk MCP Server allows developers and AI agents to elevate access directly from their CLI, IDE, or AI assistant while enforcing Zero Standing Privileges (ZSP) across multi-cloud environments.

Show the rest of the publisher’s description (15 more lines)

Designed to meet the needs of both platform and security teams, the CyberArk MCP Server helps to ensure that identities have only the access they need, and only when they need it. This potentially lowers the risk of credential misuse, privilege creep, and attack surface sprawl, especially in environments that leverage Infrastructure as Code (IaC), CI/CD pipelines, or agentic AI.

Usage instructions:

  • https://docs.cyberark.com/sca/latest/en/content/automation/sca-mcp-server.htm

Key capabilities:

  • Native CLI and AI assistant integration (Amazon Q Developer, Claude for Desktop, etc.)
  • Dynamic, policy-based ZSP enforcement across human and machine access
  • Real-time revocation and role-based access control
  • Detailed logging and audit trails for every access event
  • Built-in support for secure AI workflows and automated operations

AWS integration highlights:

  • Natively works with AWS IAM roles and cloud infrastructure
  • Optimized for the Amazon Q Developer CLI experience
  • Designed to scale across hybrid and multi-cloud AWS environments

With CyberArk MCP Server, organizations can accelerate AI and cloud innovation without compromising control, visibility, or security.

Please note: this feature is offered free-of-charge for download by SCA customers and is, therefore, subject to section 1.4 of CyberArk SaaS Terms of Use. By downloading this feature, you confirm that you agree.

Highlights

Highlighted by the publisher on AWS Marketplace.

Elevate access through natural language, the CLI, developer IDE, or AI assistant such as Amazon Q Developer.

Zero Standing Privileges dynamically enforced across human and machine identities - no embedded secrets or static credentials.

Improve audit readiness with visibility and logs of access events, tied to identity and action.

Agent build and provenance

See the full provenance

The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.

Refund terms

As stated by the publisher on AWS Marketplace.

Free offering

Sources

Marketplace listingaws.amazon.comSource
App certificationaws.amazon.comSource
CustomEulaCustomEulaSource

Linked repositories

RepositoriesUnknownUnknown

Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.

Pricing
Unknown
Not stated
Delivery
Container
Contact CyberArk for support-related questions: www.cyberark.com/customer-support/ Please note: this feature is offered free-of-charge for download by SCA customers and is, therefore, subject to section 1.4 of CyberArk SaaS Terms of Use. By downloading this feature, you confirm that you agree.
Open the source listing ↗

Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.