---
sourceDocument: Australia IT Operations Management
sourceDocumentLink: https://www.servicenow.com/docs/r/it-operations-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia IT Operations Management

ft:clusterId :

    - itom

bundleId :

    - itom

workflow :

    - Technology


---

# Certificate management with CyberArk Certificate Manager SaaS

# Certificate management with CyberArk Certificate Manager SaaS {#ariaid-title1}

* Release version: Australia
* 
* Updated December 19, 2024
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

The ServiceNow
Certificate Inventory and Management application has been integrated with CyberArk Certificate Manager SaaS for automated certificate life-cycle management, providing centralized certificate provisioning, renewal, and revocation capabilities.

## Integration overview {#cim-cyberark-venafi-integration__section_cyberark_venafi_overview}

The integration connects Certificate Inventory and Management with CyberArk Certificate Manager SaaS to automate certificate operations so you can use the certificate management capabilities of CyberArk while maintaining centralized visibility and control through Certificate Inventory and Management.{#cim-cyberark-venafi-integration__cim-cyberark-venafi-integration-para-1}  
Automated certificate requests, renewals, and revocations are handled through routing policies that direct certificate operations to the appropriate CyberArk certificate authority. Certificate life-cycle events are tracked and managed within Certificate Inventory and Management.  
Note:  
Automated certificate renewal for CyberArk is managed by the CyberArk Certificate Manager SaaS platform. Certificate Inventory and Management does not trigger auto-renewal for CyberArk-managed certificates from your instance.

## Key benefits {#cim-cyberark-venafi-integration__section_cyberark_venafi_benefits}

* Centralized certificate life-cycle management: Request, renew, and revoke certificates managed by CyberArk directly from Certificate Inventory and Management, without switching between platforms for certificate operations.
* Automated certificate provisioning: Automate certificate request and renewal workflows through routing policies, reducing manual effort and the risk of expired certificates causing service outages.
* Secure private key handling: CyberArk manages private key storage, so private keys aren't transferred to or stored in Certificate Inventory and Management.
* Change management governance: Certificate operations automatically generate change requests in Certificate Inventory and Management, providing audit trails and compliance documentation for certificate life-cycle events.
* Centralized visibility: Monitor all CyberArk managed certificates alongside certificates from other providers in the Certificate Management workspace.
{#cim-cyberark-venafi-integration__ul_qzf_nln_ljc}

## Certificate management workflow {#cim-cyberark-venafi-integration__section_cyberark_venafi_workflow}

Certificate operations follow this process:

1. Configure CyberArk credentials in Certificate Inventory and Management. For more information, see [Configure CyberArk Certificate Manager SaaS credentials](https://www.servicenow.com/docs/2BhperW9m9NfQhc7o0xRgA "Configure authentication credentials so Certificate Inventory and Management can communicate with CyberArk Certificate Manager SaaS for automated certificate life-cycle management.").
2. Create routing policies to direct certificate requests to CyberArk. For more information, see [Create routing policies for CyberArk Certificate Manager SaaS](https://www.servicenow.com/docs/cTuwUL81ZXFqZUf7tEAEXQ "Create routing policies to direct certificate requests to CyberArk Certificate Manager SaaS by matching attributes such as organization, domain, and certificate type to the Routing Policy [sn_disco_certmgmt_routing_policy] table.").
3. Submit certificate requests and monitor certificate life-cycle events through automated flows:
   * [Request certificates through CyberArk Certificate Manager SaaS](https://www.servicenow.com/docs/a0f2TbIrOAt9vd3DzJ0uXw "Submit a certificate request managed through CyberArk Certificate Manager SaaS using configured routing policies.")
   * [Renew certificates through CyberArk Certificate Manager SaaS](https://www.servicenow.com/docs/r9Q9FZ9KkSx0v3NZ7S7~lQ "Renew an existing certificate through the CyberArk Certificate Manager SaaS to extend its validity period before expiration.")
   * [Revoke certificates through CyberArk Certificate Manager SaaS](https://www.servicenow.com/docs/UHkcKOyCAgnnZv41KhHzCg "Revoke a certificate through the CyberArk Certificate Manager SaaS to invalidate it before its scheduled expiration date.")
   {#cim-cyberark-venafi-integration__ol_oxy_xmf_ljc}
{#cim-cyberark-venafi-integration__ol_d3f_bjn_ljc}

