Verdict
CyberArk Conjur's vendor trust profile is mixed. The dimension scores below show where to negotiate hard and what to monitor across a multi-year contract.
Vendor Trust Score
Is CyberArk Conjur a trustworthy vendor?
6.8/10
Mixed
Pricing transparency
Published rates; no hidden fees
4.5
Contract fairness
Reasonable terms; no auto-renew traps
6.0
Incident response
How they handle outages and breaches
8.5
Post-acquisition behavior
Customer treatment after M&A or PE
7.0
Executive stability
Leadership churn over 24 months
8.0
Roadmap honesty
Public commitments held
7.0
Trust signal log
- 2017-05-04CyberArk acquired Conjur for $42MBrought secrets-management capability into the CyberArk platform.
- 2023-09-12Conjur folded fully into Identity Security PlatformBranding and packaging unified; standalone Conjur sales motion deprecated for new logos.
- 2024-10-01CyberArk Venafi acquisition closed for $1.54BMachine identity and certificate lifecycle added; Conjur positioning within machine-identity stack still being clarified.
Vendor Trust is scored independently of product quality. A great product from an unfair vendor still earns a low trust score.
How to read this score
- Trust is separate from product quality. A vendor can ship great software and treat customers badly — or vice versa. We score the two independently.
- 8.0+/10: strong. Few concerns at renewal or procurement.
- 6.5–7.9: mixed. Negotiate hard on the lowest dimensions; monitor across the contract term.
- 5.0–6.4: cautious. Add explicit mitigation language to the master agreement.
- Below 5.0: concerning. Treat this as a contracted-risk evaluation, not a product-fit evaluation.
- Updates: we re-verify scoring quarterly. Material trust events (acquisitions, breaches, leadership change, hostile contract terms) get logged on the timeline above.
Related editorial
Last updated 2026-05-10. Scoring methodology: editorial standards. Disagree? Tell us.