No more typing reviews! Try our Samantha, our new voice AI agent.

AWS Certificate Manager vs Azure Key Vault comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 8, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

AWS Certificate Manager
Ranking in Certificate Management Software
3rd
Average Rating
9.8
Reviews Sentiment
8.7
Number of Reviews
5
Ranking in other categories
No ranking in other categories
Azure Key Vault
Ranking in Certificate Management Software
1st
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
52
Ranking in other categories
Enterprise Password Managers (1st), Microsoft Security Suite (20th), Secrets Management Tools (2nd)
 

Mindshare comparison

As of June 2026, in the Certificate Management Software category, the mindshare of AWS Certificate Manager is 12.1%, down from 30.2% compared to the previous year. The mindshare of Azure Key Vault is 16.8%, down from 31.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Certificate Management Software Mindshare Distribution
ProductMindshare (%)
Azure Key Vault16.8%
AWS Certificate Manager12.1%
Other71.1%
Certificate Management Software
 

Featured Reviews

SK
Senior IT Auditor at Ernst & Young
Have experienced several challenges while managing certificate lifecycle processes
The renewal function and automated certificate renewal are very helpful for our operations. AWS Certificate Manager provides central control of certificate lifecycle management, which helps to improve security. It streamlines the process and reduces human error. I use ACM Private Certificate Authority for additional security measures. I see benefits of using AWS Certificate Manager in integration with AWS for secure data transmission. I see a positive impact in managing SSL and TLS certificates, which simplifies compliance and reduces risk.
Rajthilak BS - PeerSpot reviewer
Associate Vice President (Data Security & Protection - Confidential AI) at Standard Chartered Bank
Have addressed compliance challenges but still struggle with seamless integration of certificate issuance between environments
In terms of Azure Key Vault improvements, we have to compare the competitor. If we consider AWS, our bank has Microsoft PKI, which is a Microsoft product, for the entire digital certificate infrastructure. Even in the cloud, when it is AWS, the internal certificates are MS PKI. When we had a problem, users had to come to on-premise to get a certificate and import it to AWS Certificate Manager and assign it. We wondered why we could not issue the certificate directly from the cloud for cloud users. There was a simple way in AWS. They have a Private Certificate Authority (PCA) and Amazon Certificate Manager. Private Certificate Authority issues certificates to Amazon services. They also provide Amazon Certificate Manager to store and deploy certificates. These are two neat components - one is an issuer and another is storage and deployment solutions for certificates. With PCA, I can directly enable it and get certificates from AWS itself. AWS can issue SSL/TLS certificates if you enable it directly. If you consider Azure, it is not very clear. Even the naming convention, Key Vault, might not suggest that this is a PKI or certificate manager. You cannot issue certificates directly. They have app certificates and did not have a clear-cut certificate management solution in the cloud when I worked at that time. I am not sure whether they have updated Azure Key Vault as a full-fledged PKI solution now. From what I saw, it was not a full-fledged PKI solution. We are not majorly using Azure Key Vault because it is only for storing secrets. If some solutions can provide guidance on how we can maximize leverage, we can immediately look forward to doing that. We already have some business problems we want to solve. While our primary focus is AWS, many of the services such as ADO are running on Azure, and the secondary services are growing bigger.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It offers encryption with specific algorithms for better management."
"The most valuable features are definitely the alerts."
"AWS Certificate Manager provides central control of certificate lifecycle management, which helps to improve security."
"It is easy to generate, easy to use, easy to integrate, and very cost-effective."
"The solution has an import dashboard where we can import the certificates or create new certificates."
"One of the most valuable features of Microsoft Azure Key Vault is its ease of use."
"Once we got Microsoft Azure Key Vault set up and injected into our code, we have had pretty good success storing our secrets and passwords for our integrations and applications."
"The platform provides straightforward integration with most of the other Azure services."
"The security on offer seems to be quite good."
"Overall, it's a great product."
"It is a managed service in Azure, you do not have to worry about security other than the access, and the vaults themselves are inherently secure."
"With Azure Key Vault, we can generate our own keys and then import them inside the system, which provides a higher level of security than provider-managed keys."
"While Azure Key Vault is highly recommended due to its availability and ability to store confidential information, improvements are needed regarding access permissions and certification management."
 

Cons

"Better reporting features would be beneficial."
"Currently, there is no option to customize beyond the default settings, and it would be beneficial to have the ability to customize certificates to fit specific requirements."
"One potential improvement could be enabling the extraction of the certificate as a file to be used outside of AWS, even with an additional charge."
"Maybe more integration with third-party certificate authorities would be useful."
"The AWS Certificate Manager's technical support team is sometimes unavailable."
"The solution does not allow you to integrate with XML parties if it is not inside Azure itself."
"I can see that other people are doing the infrastructure as code, they are able to easily manage and cycle their passwords as needed using their own interface they created. It would be nice if Microsoft provided more guidance in that area."
"The whole problem of password rotation could be improved. My security area wants to rotate passwords every day, every week, or every month, depending on the services."
"It needs to offer dynamic secrets management."
"However, if you're not looking to have your application tied to one cloud provider, then you should stay away from this solution."
"The response time can be improved."
"Azure Key Vault is only available for Microsoft services, and it should be exposed to non-Microsoft cloud services, like GCP and Amazon."
"I would like more code examples."
 

Pricing and Cost Advice

Information not available
"There are no extra costs beyond the standard fees, beyond maybe data transfer charges. It's $0.025 per 10,000 data transactions, so it is quite cheap."
"Currently, the solution's pricing is based on the number of transactions, which is very high in some cases."
"The price of the solution is reasonable for what we are using it for."
"The pricing is decent. It has a pretty low price. It is a straightforward cost based on usage."
"The product costs much less compared to other vendors."
"The price of the product is okay for my company."
"The product is affordable, in my opinion."
"Key Vault, like every Azure service, has a cost associated with it, but you don't have to spend thousands of dollars to spin up an environment to build a key management system. It's already there."
report
Use our free recommendation engine to learn which Certificate Management Software solutions are best for your needs.
900,747 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
16%
Computer Software Company
14%
Manufacturing Company
10%
Comms Service Provider
7%
Financial Services Firm
13%
Manufacturing Company
9%
Computer Software Company
9%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise11
Large Enterprise27
 

Questions from the Community

What needs improvement with AWS Certificate Manager?
While AWS Certificate Manager works well within AWS, one limitation is that it is tightly coupled with AWS services. Exporting certificates for use outside AWS is not straightforward unless you use...
What is your primary use case for AWS Certificate Manager?
My primary use case for AWS Certificate Manager is to manage SSL/TLS certificates for securing applications running on AWS services like Application Load Balancer, CloudFront, and API Gateway. In d...
What advice do you have for others considering AWS Certificate Manager?
My advice would be to use AWS Certificate Manager if you are already operating within AWS, as it simplifies certificate management significantly. I would also recommend using Route 53 for DNS valid...
Which is better - Azure Key Vault or AWS Secrets Manager?
Azure Key Vault is a SaaS solution. You can easily store passwords and secrets securely and encrypt them. Azure Key Vault is a great solution to ensure you are compliant with security and governanc...
What needs improvement with Microsoft Azure Key Vault?
Based on my three years of experience, I believe there have been no updates to Azure Key Vault. I think the product needs upgrades in terms of access control and certification improvements. While A...
 

Also Known As

No data available
Microsoft Azure Key Vault, MS Azure Key Vault
 

Overview

 

Sample Customers

Expedia, Intuit, Royal Dutch Shell, Brooks Brothers
Adobe, DriveTime, Johnson Controls, HP, InterContinental Hotels Group, ASOS
Find out what your peers are saying about AWS Certificate Manager vs. Azure Key Vault and other solutions. Updated: June 2026.
900,747 professionals have used our research since 2012.