For the best web experience, please use IE11+, Chrome, Firefox, or Safari

One Identity Safeguard Privilege Manager for Windows

Comprehensive least-privileged administration and application control. Help your end users elevate and manage their own user and administrative rights while maintaining a least-privilege, GDPR-compliant environment with One Identity Safeguard Privilege Manager for Windows. Leverage pre-packaged and community elevation rules to address the most common needs. Applying the elevation rules is more effective with the integration of Quest’s patented and powerful Validation Logic targeting technology. Privilege Manager works seamlessly with Active Directory and Group Policy Objects. You won’t find an easier or more affordable way to maintain security while allowing users more self-help capabilities in a locked-down PC environment. One Identity Safeguard Privilege Manager for Windows is easy to deploy and manage.
KACE Privilege Manager


Allow end-users to easily elevate and manage their own user and administrator rights, while maintaining a least-privileged environment.


Avoid the pain of managing each user and desktop individually by automatically elevating permissions with privilege elevation rules.


Discover applications that require administrative privileges and apply pre-defined privilege elevation rules.


Delegate privilege management responsibilities to OU-level admins in organizations of all sizes.


Control user-level access to unwanted or suspect applications.


Seamlessly integrate with Active Directory and Group Policy Objects.

Key Features

Elevation on-demand

Take advantage of myriad options for end-user admin access to optimize productivity and security.

Digital certificate verification

Save time by automatically elevating all the applications from a specific publisher

Validation Logic

Use our Validation Logic technology to target access rights to any combination of users, user groups, platforms or applications.


Stay apprised of what’s happening on your Windows desktops with reports that provide a quick and simple status of elevation and rules activity.

Community rules exchange

Maximize your investment by using or adding to the more than 100 pre-existing rules in the Community Rules Exchange.


Deny user access to unnecessary or unwanted applications for increased security and efficiency.


Privilege elevation and blacklisting
Find all admin accounts
Application discovery and elevation
Self-service elevation
Privilege elevation and blacklisting

Privilege elevation and blacklisting

Elevate or deny permissions at the application level.


Operating systems

  • .NET Framework 4.0
  • PDF reader to open the Privilege Manager guides
  • Microsoft Group Policy Management Console
  • Screen resolution of 1024x768 or higher
  • Windows Server 2008
  • Windows 7 Enterprise, Professional, or Ultimate Editions
  • Windows Server 2008 R2
  • Windows Server 2012
  • Windows 8.1
  • Windows Server 2012 R2
  • Windows 10
  • Windows Server 2016
  • Windows Server 2019

Get started now

Straightforward and effective Windows privilege management