Veza (ServiceNow)
The authorization graph: who — human or not — can do what, where. Group: NHI discovery, posture & governance.
Compiled from published analyses — principally the Aembit vendor guide and the 2026 NHI tools survey — and the vendor's own materials. Date verified: 18 August 2026. Not a hands-on assessment; capabilities and pricing move monthly and corrections are welcome via comms.
What it does
Veza builds an authorization graph of effective permissions: identity discovery, entitlement analysis, excessive-access identification, ownership, and least-privilege governance, extended with AI agent controls. Acquired by ServiceNow.
Key capabilities
- Authorization graph of effective permissions
- Identity discovery and entitlement analysis
- Excessive-access identification
- Ownership and least-privilege governance
- AI agent controls
Which part of the question it answers
Access intelligence over the whole estate — closest of the category to computing the authorization closure this site's Hope section describes. The cited analysis notes it shows the permission landscape but needs separate systems for workload authentication and live enforcement.
And for rented agents?
Mapping what a rented agent's credential actually reaches is exactly the closure/delta exercise — visibility of the blast radius, not a new identity for the agent.
Pricing
Not published; enterprise sales.