Skip to main content
Veza logo
Risk & ComplianceEstablished · 5 yrs on market

Veza

Reveal, visualize, and secure your identity entitlements everywhere

By Veza · 4.2/5 Value-Position score (estimate)

Positioning guardrails

Best for

  • Enterprise security teams needing end-to-end visibility into who can take what action on what data across cloud, SaaS and on-prem
  • Identity and IGA teams running large-scale access reviews and certifications across hundreds of applications
  • Organizations enforcing least privilege and Zero Trust on human, machine and third-party identities
  • Data teams governing access to Snowflake, data lakes, shared drives and unstructured data
  • Compliance teams that need audit-ready access evidence and continuous regulatory alignment

Ideal size: 500+ employees people · Enterprise with an established IdP, cloud and SaaS estate

Not for

  • Small businesses without a dedicated identity or security function
  • Buyers who need published, self-serve per-seat pricing
  • Teams looking only for a password manager or SSO tool
  • Organizations with few connected systems and a minimal cloud or SaaS footprint

Value metrics scorecard

Time-to-Value

2-6 weeks

~30 days to first production value

Total Cost of Ownership

On request

Enterprise, quote-based pricing; no list price published on the vendor site

Implementation Friction

2/5

Engineering + admin effort required

Value-Position score

4.2

out of 5 · model estimate

Full cost breakdown

Mandatory implementation fee

None

Seat tiers

Not listed

Add-on costs

  • None

Company & support

Who is behind Veza, and how your team gets help once it is live.

Company

Founded
Not recorded
Headquarters
Not recorded

How you get support

  • PhoneNot listed
  • EmailNot listed
  • Live chatNot listed
  • Support portal / ticketsPlan not stated
  • Community forumNot listed
  • Help centre / docsNot listed
  • Dedicated account managerNot listed
  • In person / on-siteNot listed
Hours
Not recorded
Response time
Not stated

The vendor /support page is a contact form offering a 'Talk with support' option. No support hours, SLA or named support channels are published in the supplied sources.

“Not listed” means the vendor’s public pages don’t mention that channel, not that it is unavailable. Ask about it during evaluation.

Market position

Where Veza sits against its closest alternatives. Pick any two of cost, speed, friction and buyer score, and up to 9 companies to compare.

Quadrant view

Typical annual cost × Time-to-value

$0/yr$1/yr12d20d30d38d48dAnnual TCO ← betterDays to value better →Quick & CheapQuick & PriceySlow & CheapSlow & PriceyVezaAppOmniBritiveZluriFlagrightQualio

The lines cross at the median of the solutions shown, so about half sit on each side of each line. A dashed ring marks an outlier pinned to the edge; hover for its value.

Veza is outlined. Click any dot to open its dossier.

Companies on the chart 6 / 10

  • Veza
  • AppOmni
  • Britive
  • Zluri
  • Flagright
  • Qualio
Add or change companies

Up to 10 companies including Veza. Listed closest first.

Stack fit signal

Compatibility with standard B2B ecosystems.

MCPNot supported

No supported MCP path today, so it cannot be driven from an AI client.

SalesforceIntegration
AWSIntegration
SnowflakeIntegration
HubSpotIntegration
Google WorkspaceIntegration
Microsoft 365Integration
SAPIntegration
SlackIntegration

AI & MCP readiness

What Veza ships in AI, and what it asks of your ecosystem.

AI features shipped

AI added to an existing product
AI governance tooling

Veza markets 'Access AI' and Agentic AI Protection, giving visibility and control over access to LLMs, AI applications and the infrastructure they rely on, including AWS Bedrock, OpenAI and Microsoft Copilot. No supplied source documents model choice, AI audit logging, or training-data policy.

Your data & models

Trains on your data
Not recorded — ask the vendor
Runs on
Not recorded
AI pricing
Not recorded

In your ecosystem

AI connection
Not supported
Model key
Not recorded
AI usage audit
Not recorded

Compliance attestations

SOC 2 — not listedISO 27001 — not listedGDPR — not listedHIPAA — not listedFedRAMP — not listedISO 42001 — not listedIAPP AIGP* — not listed

* IAPP AIGP certifies individuals, not products. It means named staff hold the credential — not that the platform does.

Bottom line

Veza is an identity security platform built on an access graph that unifies identities and entitlements across people, machines and third parties, from SaaS and cloud to on-prem and data systems. It powers access search, automated access reviews, privileged access monitoring, non-human identity governance and least-privilege enforcement, and extends governance to AI and LLM access. It is enterprise-focused with quote-based pricing.

Frequently asked questions

What does Veza actually do?

Veza maps the permissions and entitlements across your identity, cloud, SaaS, on-prem and data systems so you can answer who can take what action on what data. Core capabilities include access search, actionable access intelligence, automated access reviews and certifications, privileged access monitoring, SaaS and cloud access security, non-human identity governance, and governance over AI and LLM access.

How quickly can we get value from Veza?

Veza publishes customer evidence of very fast time to insight, including a customer reporting identification of privilege escalation issues within a day of use, and another describing visualising Okta-to-AWS-to-database links in roughly 30 seconds. Realistically, plan for a few weeks to connect your key identity, cloud and data systems and stand up the first access reviews; time to full value scales with the number of systems in scope.

How is Veza priced?

Veza does not publish list pricing on its website. The supplied pages show only a free trial and a request-a-demo motion, with no seat tiers or add-on prices. Expect an enterprise, quote-based annual subscription sized by the number of connected systems and identities or entitlements under management. Confirm current pricing, packaging and any implementation fees directly with the vendor.

How does Veza connect to our existing stack?

Veza publishes a broad connector catalog covering identity providers (Okta, Azure AD, Ping, CyberArk, Auth0), cloud platforms (AWS, Azure, GCP, Oracle Cloud, Kubernetes), data systems (Snowflake, Databricks, MongoDB, PostgreSQL, S3, Azure Data Lake), SaaS apps (Salesforce, ServiceNow, Slack, Workday, GitHub) and HR systems. It also offers an Open Authorization API for custom apps, plus generic CSV, LDAP and SCIM connectors.

Does Veza replace our existing IGA or PAM tools?

Veza positions itself as a unified access platform that can streamline access governance, privileged access and access management, and customers describe using it for access reviews and certifications and as a modern access review platform. It is most often deployed alongside existing identity providers and PAM tools, using them as sources of truth, rather than as a directory or credential vault.

Can Veza govern AI and non-human identities?

Yes, per the vendor site. Veza describes non-human identity protection and governance for service accounts and machine identities, and an Agentic AI Protection and Governance offering that gives visibility and control over AI-driven systems, LLM access and the infrastructure behind them, including AWS Bedrock, OpenAI and Microsoft Copilot. Note that the supplied sources do not document model choice, AI audit logging or training-data handling.