PAM360 brings AI-driven capabilities that help administrators quickly analyze key activity patterns and identify potential risks associated with privileged access. By offering AI capabilities for critical functions, PAM360 helps reduce manual effort, improve access governance, and adapt to evolving security demands across diverse environments. This document outlines the detailed steps to integrate PAM360 with AI providers (BYOK) or self-hosted LLMs (BYO-LLM), and leverage their capabilities to generate intelligent insights that enhance privileged access management. It covers the following topics:
By default, users with the administrator type user role can manage AI integrations and generate AI insights for the supported functionalities in PAM360. Additionally, PAM360 allows administrators to configure custom user roles with the following privileges to manage the AI integrations and generate AI insights using the integrated AI platform:

PAM360 integrates with AI providers or self-hosted LLMs to offer intelligent insights into various aspects of privileged access management. The integration offers the following AI capabilities to enhance privileged access management through contextual decision-making:
PAM360 leverages AI models capabilities to automatically generate concise summaries of recorded RDP, SSH, and Telnet sessions. These summaries offer a quick overview of all the commands executed by the user and help administrators quickly understand the intent and actions carried out during each session without manually reviewing the full-length session recordings. This capability saves time and highlights any suspicious activity or deviation from standard access behavior, aiding faster incident response and forensic analysis.
Explore this link for more details about generating session summaries for recorded sessions using AI.
In cloud environments, where identities are often assigned excessive privileges, PAM360 uses AI models to provide intelligent insights to remediate the risks associated with cloud identities. Alongside PAM360’s built-in remediation suggestions, AI-based remediation suggestions are now available, offering additional flexibility and context-driven recommendations. The integration offers IAM policy recommendations that help revoke excessive privileges to remediate these risks, thereby allowing administrators to enforce least-privilege access policies more effectively to improve the security posture and reduce the attack surface on cloud identities.
Administrators can also generate policy remediation summaries for excessive privilege risks associated with an identity, based on IAM policy recommendations provided by PAM360 and integrated AI models. These summaries highlight the differences in the currently attached and recommended IAM policies and specify how the suggested policy ensures a least privilege approach.
Explore this link for more details about generating IAM policy suggestions to remediate the risks associated with the Identity and to generate policy remediation summaries that highlights how the recommended policy remediates the risk of excessive privileges to the identity using AI.
PAM360 supports integration with the following AI providers (BYOK) or self-hosted LLMs (BYO-LLM):

Follow these steps to integrate the desired AI providers with PAM360 to unlock AI-powered insights across various functionalities within the application:
Additional Detail
AI integrations in PAM360 can be enabled by configuring enterprise API keys obtained from the respective platforms.

Additional Detail
The currently attached policy and identity usage behavior of the selected identity will be analyzed by AI model to suggest a least-privilege policy.
Additional Detail
The selected AI model compares the previously attached and currently suggested AWS inline policies to summarize key differences and highlight how excessive privileges are remediated to ensure that only just enough permissions are granted.
Caution
The recordings may include system events, user inputs, outputs, keystrokes, and actions performed by the user, which will be analyzed by the AI model to generate an insightful summary.
You have successfully integrated an AI provider with PAM360 to generate intelligent insights for your preferred features. After integration, you can edit the configuration at any time, disable the integration, or replace it with a new AI provider or self-hosted LLM directly from the AI-Powered Insights page.
Caution
Follow these steps to integrate your self-hosted LLM with PAM360 to unlock AI-powered insights across various functionalities within the application:
Caution
PAM360 only supports HTTPS-based communication. Ensure that your LLM endpoint is configured to use HTTPS before providing the URL.

Additional Detail
The currently attached policy and identity usage behavior of the selected identity will be analyzed by AI model to suggest a least-privilege policy.
Additional Detail
The selected AI model compares the previously attached and currently suggested AWS inline policies to summarize key differences and highlight how excessive privileges are remediated to ensure that only just enough permissions are granted.
Caution
The recordings may include system events, user inputs, outputs, keystrokes, and actions performed by the user, which will be analyzed by the AI model to generate an insightful summary.
You have successfully integrated a self-hosted LLM with PAM360 to generate intelligent insights for your preferred features. After integration, you can edit the configuration at any time, disable the integration, or replace it with a new self-hosted LLM or AI provider directly from the AI-Powered Insights page.
Additional Detail
When you integrate a self-hosted LLM to generate intelligent insights for the supported PAM360 features, only the essential data required for the selected AI-powered functionality is shared with the LLM.