Computer Identity Management by EmpowerID inventories servers to discover, monitor, and control local users and groups, including local administrators. It uses role and attribute-based access control (RBAC and ABAC) policies. It automates the rotation of passwords for privileged identities, resetting passwords and updating vaulted information across connected systems. It discovers and manages local privileged accounts and groups on server systems, including Windows, Linux, Unix, and VMware ESXi. Once identified, privileged identities can be recertified, assigned to owners, and managed throughout their lifecycle. Passwords can be set to rotate on a schedule, reducing the opportunity for hackers to compromise them. It can inventory and manage identities used for Windows Services and IIS Application Pools, which are often undermanaged and use static passwords. It automates the handling of special identities and challenges by updating systems each time a password is rotated. Admins can assign vaulted privileged identities to Services and IIS App Pools through web-based workflows and set them on a rotation schedule. All privileged identities can be assigned to policies that automate password rotation. It can automatically reset passwords across your managed system and update vaulted information. It helps maintain compliance by ensuring users have appropriate access for their roles amidst numerous systems and apps. It enables access certification and governance, auditing of critical systems and users, recertification, and revocation fulfillment. It automatically discovers computers and virtual machines wherever they reside. The most popular platforms for running virtual workloads are supported including: Amazon AWS, Azure, and VMware VCenter. Computer objects can be automatically discovered from Active Directory or registered manually in web-based workflows. Server discovery allows admins to maintain an up-to-date inventory of assets and simplifies configuring servers for PSM access. It helps maintain compliance by ensuring users have appropriate access for their roles amidst numerous systems and apps. It enables access certification and governance, auditing of critical systems and users, recertification, and revocation fulfillment.