Zero Trust Access Management Platform Frequently Asked Questions

General Questions

What is CyberQP?

CyberQP redefines Zero Trust Access Management with leading-edge Privileged Access Management (PAM) and End-User Access Management (EUAM) solutions. Our platform enables secure elevated access for both IT Professionals and end-users, along with robust self-serve and identity verification capabilities. Backed by SOC 2 Type 2 certification, we empower IT professionals to reduce or eliminate risks stemming from social engineering attacks, standing privilege, and over-privileged accounts, enforce compliance, and enhance operational efficiency. Our mission is simple: “Empowering Access, Redefining Privilege” for security-focused IT professionals around the globe.

Did you previously go by Quickpass?

Yes, CyberQP was formerly known as Quickpass.

Who can benefit from CyberQP's Platform?

CyberQP is built for Enterprise IT Teams and Managed Service Providers (MSPs).

Is there a free trial?

Yes, CyberQP offers both free trials and Proof of Concepts (POC). Please contact sales to request a free trial at [email protected]

Product Questions

What services does CyberQP offer?

CyberQP offers a Zero Trust Access Management platform with leading-edge Privileged Access Management (PAM) named QGuard and End-User Access Management (EUAM) solution named QDesk.

What Identity Platforms and Operating Systems do you support?

CyberQP currently supports the entire Microsoft stack, including Microsoft Active Directory, Microsoft 365, Microsoft Entra ID, and Microsoft Windows Local Accounts.

What RMMs and MDMs do you integrate with?

CyberQP does not directly integrate with RMMs and MDMs but includes pre-built deployment scripts for the CyberQP agent for the most popular RMMs, including ConnectWise Automate, DattoRMM, NinjaOne, N-Able RMM and N-Able N-Central as well as Microsoft Intune MDM. PowerShell and Command Line scripts are also available to be used with Group Policy and any other RMM or MDM platform.

Does CyberQP integrate with third party Password Managers?

CyberQP provides its own Technician Vault to store privileged credentials and also integrates with the Password Vaults for IT Glue and Hudu Documentation Systems.

Do you have a knowledge base for your integrations?

Our knowledge base includes detailed step-by-step guides for setting up and configuring 3rd party integrations here

What Service Ticket and PSA platforms does CyberQP Integrate with?

CyberQP currently integrates with ConnectWise PSA, Datto Autotask PSA, and Halo PSA.

What features are available in the QDesk PSA integrations?

Currently, end-user identity verification, sending a password reset link, manual password resets, unlocking accounts, and enabling/disabling an account are available for end-user accounts within the QDesk PSA integrations. More capabilities will be added in the future to add additional functionality.

Does CyberQP store my passwords?

Passwords and credentials are stored in CyberQP’s encrypted Technician Vault and optionally stored in password vaults for IT Glue or Hudu if these integrations are enabled.

How often can Privileged Account Passwords be Rotated?

Privileged Account passwords can be scheduled to automatically rotate as often as every day or can be configured to rotate in any number of days up to every 1 year.

Can you rotate Service account passwords?

Yes, QGuard can rotate both Windows Service accounts and Scheduled task passwords. After rotating a password for a Windows Service account, CyberQP will locate the windows service, update the password, and restart the service to ensure the change is processed. For Scheduled tasks CyberQP will locate the scheduled task and update the password.

What type of passwords can CyberQP rotate?

CyberQP QGuard can rotate any Microsoft Active Directory, Microsoft 365, Entra ID, or Windows Local Account that you specify.

Does CyberQP have a Chrome Extension to access credentials?

CyberQP is currently developing a Chrome Extension to access Just-in-Time access and, later on, any credential in the CyberQP Vault with an estimated release of Q3/Q4 2025.

Does Endpoint Privilege Management elevate processes or end users to the local admin rights?

QDesk Endpoint Privilege Management allows technicians to choose to elevate a single process or an end user with local admin rights.

Can Endpoint Privilege Management detect and remediate local admins and UAC Settings?

Yes, QDesk Endpoint Privilege Management can both detect all the local administrators on an endpoint, in addition to the current UAC settings, and also remove local admin rights and enforce stricter UAC settings.

What systems does the QGuard Passwordless Technician Login work for?

QGuards Passwordless Technician login works for Windows endpoints, including Windows Servers and workstations.

Does QGuard Passwordless Technician Login include MFA?

Yes, QGuards Passwordless Technician login includes number matching MFA that is registered with the QTech mobile app that runs on iOS and Android.

Does QGuard Just-in-Time access work with Passwordless Technician Logins?

Yes, QGuard Passwordless Technician logins by default use Just-in-Time accounts for a seamless experience when logging into Windows Endpoints. When logging into Microsoft 365 or Entra ID, you can leverage Temporary Access Passwords, OTP, or Microsoft Authenticator Passwordless login flows.

Does QGuard Just-in-Time Access include role based access policies?

Yes, in order for a technician to use Just-in-Time Access, a policy must be created that allows the technician to use a Just-in-Time account with a specific customer, a specific account type, the privileges allowed, and the time frames permitted.

Are QGuard Just-in-Time Access passwords rotated after every use?

Yes, passwords for Just-in-Time accounts are rotated after every use.

How many different ways can an End-User Identity be verified?

CyberQP offers multiple methods to verify the identity of an end-user contacting the service desk, including sending a 6-digit code via SMS and Email or sending a push notification via the CyberQP mobile or Microsoft Authenticator mobile app.

What features are available for the QDesk SSPR App?

QDesk Self-Serve Password Reset app includes the ability for an end-user to reset their password, unlock their account, and be notified before their password expires.

Does CyberQP have control mappings for Compliance Frameworks?

Yes, CyberQP offers compliance framework control mappings to a number of frameworks, including CIS V8, CMMC 2.0, ISO 27001:2022, NIST 800-53, SOC2, and HIPAA.

Pricing Questions

Do you give volume discounts?

Yes, we offer discounts based on the number of licenses purchased per sku. 

Do you offer discounts for bundling products?

Purchasing the CyberQP Zero Trust Access Management bundle will save you 10% off vs purchasing QGuard and QDesk separately.

Is there any preferred pricing for peer groups?

We have agreements with many industry peer groups. Check with your group or a member of the CyberQP team to see if an agreement is in place with your peer group.  

What currencies do you accept?

Our prices are in USD and CAD. 

What forms of payment do you accept?

We accept credit card for monthly billing. If you would like to pay annual up-front, we will accept bank transfer and can often provide a discount for doing so. 

Platform Fundamentals

What is a Zero Trust Helpdesk?

A Zero Trust Helpdesk protects organizations from internal and external threats by verifying the identities of individuals who call into the help desk in less than 30 seconds. 

What is a Standing Privilege?

Standing Privilege refers to admin accounts that are always enabled, even when not in use. These accounts provide persistent, always-on privileged access. 

What are some examples of Privileged Accounts?
  • Active Directory Domain Administrator Accounts
  • Entra ID Global Administrator Accounts
  • Windows Local Administrator Accounts
What is Just-In-Time (JIT) Privileged Access?

JIT Privileged Access is a use case of Zero Standing Privilege. It involves creating admin accounts on the fly with the least privilege necessary for the job and disabling them when not in use. Typically, this includes: 

  • A reason for access 
  • A time frame for access 
  • The least privilege necessary to perform the task 
What are the best practices for managing privileged accounts?
  • Rotate passwords frequently 
  • Enforce Multi-Factor Authentication (MFA) with device registration 
  • Minimize the number of accounts with standing privilege 
  • Implement the principle of least privilege 
  • Use dedicated privileged accounts for each technician 
  • Avoid shared accounts where possible 
  • Maintain a process to grant/revoke privilege access 
  • Keep an inventory of all privileged accounts 
What is Endpoint Privileged Management?

Eliminate Local Admin Rights Without Sacrificing Productivity: By removing always-on local admin privileges from endpoints while allowing just-in-time, policy-controlled elevation, Endpoint Privilege Management dramatically reduces the attack surface for malware, ransomware, and insider threats, without disrupting users’ ability to perform legitimate tasks.

What does the Principle of Least Privilege (PoLP) entail?

The Principle of Least Privilege (PoLP) ensures that users are granted the minimum levels of access necessary to perform their job functions. 

What is a Just-in-Time Account?

Just-in-Time Accounts are created and provisioned on-demand when technicians need them, utilizing leading-edge security measures and eliminating standing privilege. 

How can MSPs manage privileged admin accounts across environments?

MSPs can automate tasks and manage privileged, admin, and service accounts across various environments to enhance security and efficiency. 

How does Privileged Access Management empower IT Teams?

QGuard Privileged Access Management (PAM) eliminates standing privileges and reduces attack surfaces while streamlining access. Technicians are granted just-in-time access without the need for standing privilege or credentials access. Break-glass and shared accounts are automatically rotated to prevent static credential risk. PAM also helps IT teams identify and uncover account-related risks such as unused, misconfigured, or over-privileged accounts, enabling proactive access control and automation to help your security posture.

What is End to End Help Desk Automation?

End to End Help Desk Automation helps MSPs eliminate their most costly help desk tickets and empowers technicians of all skill levels to resolve tickets quickly. 

How can organizations monitor changes to critical accounts?

Organizations can gain full transparency into privileged accounts, including account creation, disabling, deletion, and password changes. 

What is Self-Service Password Reset?

Self-Service Password Reset enables end users to quickly, easily, and securely reset their passwords, potentially eliminating up to 95% of password reset tickets. 

What is Cyber Grade Vault?

Cyber Grade Vault allows IT teams to store, share, and access sensitive credentials with strict permissions and audit log tracking.

Experience the #1 Zero Trust Platform

Reduce Risk

Enhance Efficiency

Simplify Compliance