By HumanAudit Inc. editorial teamLast reviewed 5 August 2026
VerifiedLast reviewed 5 August 2026 by the HumanAudit Inc. editorial team.Corrections logEditorial policy
On this page
  1. At a glance
  2. What they do
  3. Differentiators
  4. Where the category context matters
  5. Practical notes
  6. When Entro makes sense
  7. What we don't know

Ownership change. SailPoint

Entro Security has been acquired by SailPoint. The acquisition completed on 29 June 2026 at a reported value of approximately $200M. SailPoint states Entro is available to its customers as a standalone offering while native platform integration continues. Evaluate Entro as part of a SailPoint identity-security decision. Reviewed 5 August 2026.

At a glance

Founded2022
FoundersItzik Alvas (CEO), Adam Cheriki (CTO)
HeadquartersBoston, MA / Tel Aviv
CategoryNHI security platform (secrets-first)
Reported funding~$24M Series A (Dell Technologies Capital to led, 2024), total raised in the ~$30M range
Position in categorySecrets-telemetry to first NHI platform

What they do

Entro's mental model begins with the credential. Each secret, a token, a key, a password, is tied to the NHI that uses it and tracked through its full lifecycle: where it lives (vaults, config stores, code, CI logs, developer laptops), how it's used (which workloads call which APIs), and what risk it represents (overprivilege, staleness, exposure). The platform layers ownership, posture, and remediation on top of that telemetry.

The capability bands map to:

  • Secrets discovery. Find secrets across vaults, code, CI/CD, collaboration tools, and cloud config.
  • Usage telemetry. Observe which workloads, users, and agents are calling which APIs using which credentials.
  • NHI context. Resolve each secret to an NHI, owning team, privilege scope, and exposure surface.
  • Remediation. Rotation, revocation, vaulting workflows with approval flows.

Differentiators

  • Secrets depth. Among the NHI platforms, Entro's detection and telemetry around credentials themselves, not just the identities that hold them, tends to be the most detailed.
  • Usage-based posture. Overprivilege detected against actual observed usage, not just against declared policy, produces fewer false positives.
  • Vault-adjacent positioning. Fits well in environments that already have HashiCorp Vault, AWS Secrets Manager, or similar, Entro observes and governs rather than replacing the vault.

Where the category context matters

Entro's shape is closest to a fusion of "NHI platform" and "secrets-security platform." That's an asset when the buyer's pain is concrete (credentials sprawled across the estate, rotation impossible, no clear ownership) and a positioning challenge when the buyer has internalised a pure "we need an NHI platform" frame and is comparing feature grids against Astrix and Oasis without appreciating the secrets-telemetry depth.

In practice, the three vendors often appear together in RFPs; the question is which origin story best matches the buyer's actual problem.

Practical notes

  • Deployment is agent-less; integration with vaults, source control, and CI systems is the high-value surface.
  • Time to useful inventory depends materially on how instrumented the secrets estate already is, well-vaulted environments are faster.
  • Rotation actions require coordination with the systems of record (vaults, cloud IAM), Entro orchestrates but doesn't replace them.
  • Pricing is enterprise-negotiated.

When Entro makes sense

Entro is a reasonable shortlist candidate when the driver is:

  • "Our pain is secrets, they're everywhere, we can't rotate them, we can't tell which are exposed."
  • "We have a vault but no observability into how secrets are used outside it."
  • "We need posture grounded in observed usage, not just declared policy."

Less obvious fit when the driver is:

  • "We need SaaS OAuth discovery first and foremost", Astrix is more oriented to that surface.
  • "We need lifecycle workflow as our primary organising principle", Oasis foregrounds this.
  • "We need a secrets manager", Entro is not one; Vault, Conjur, and cloud-native services are.

What we don't know

  • Customer count and ARR, not publicly disclosed.
  • Funding posture beyond the 2024 Series A is not always up to date in public sources, confirm before quoting.

Assess your own NHI programme.

Run the free maturity assessment or the OWASP NHI Top 10 self-audit, get your score in the browser, and unlock the full written report.