Opens in a new tab
vmblog logo 2024 wht (updated)

Keeper Security Freshservice Workflow App Streamlines Vault and Privileged Access Request Process

Share: 

David Marshall | Published: October 1, 2026

Keeper Security, the leading zero-trust and zero-knowledge identity security and Privileged Access Management (PAM) platform, announces a Freshservice Workflow integration that connects vault and privileged access requests to the ticketing systems IT and security teams already use. The integration lets agents fulfill Keeper vault access and approval requests – including Endpoint Privilege Manager and Cloud SSO device approvals – directly from a Freshservice ticket. The workflow bottleneck experienced with other solutions is eliminated by removing the need for agents to leave tickets for approvals, log into a separate system or move decisions through unaudited side channels like email or chat.

Streamlining Ticket Management and Approval

Access approvals often stall after the initial request creation. A user submits a helpdesk ticket, but the person fulfilling it has to leave that ticket, log into a separate system, track down the right record or folder and manually grant permission before reporting back. Each handoff introduces delays and moves access decisions outside of the audit trail.

The Keeper Security Freshservice Workflow App removes that handoff. When an employee submits a request through a Freshservice service catalog item, the assigned agent can search through Keeper content, configure permissions and approve or deny the request from a Keeper Vault tab inside the ticket itself. Every action runs through a customer-hosted Keeper Commander ServiceMode endpoint, so Keeper’s zero-knowledge encryption and access controls stay intact, and Keeper never stores credentials inside Freshservice’s IT Service Management (ITSM) and Enterprise Service Management (ESM) platform.

“The cryptographic boundary cannot move outside Keeper,” said Craig Lurey, CTO and Co-founder of Keeper Security. “This integration processes every approval through Commander ServiceMode on infrastructure owned and controlled by the customer, so the attack surface doesn’t expand when you wire Freshservice into your approval workflow. Freshservice is the interface for the request, never the place where secrets are stored.”

“Every access request is an identity decision, and the further those decisions drift from a governed system, the weaker the audit trail becomes,” said Darren Guccione, CEO and Co-founder of Keeper Security. “Integrating Keeper into Freshservice keeps approval decisions inside a ticketing system that security teams already trust, which means zero standing privilege and full audit control stay intact. This becomes increasingly important in the agentic era, as access requests multiply across both human and machine identities.”

The integration also supports Endpoint Privilege Manager and Cloud SSO device approvals when paired with Keeper’s ITSM for Freshservice app, so security admins maintain a single ticketing interface for both incident-driven access requests and routine approval workflows.

Availability

The Keeper Security Freshservice Workflow App is available now in the Freshworks Marketplace for organizations with an active Keeper Commander deployment.