Truth in IT
    • Sign In
    • Register
        • Videos
        • Channels
        • Pages
        • Galleries
        • News
        • Events
        • All
Truth in IT Truth in IT
  • Data Management ▼
    • Converged Infrastructure
    • DevOps
    • Networking
    • Storage
    • Virtualization
  • Cybersecurity ▼
    • Application Security
    • Backup & Recovery
    • Data Security
    • Identity & Access Management (IAM)
    • Zero Trust
    • Compliance & GRC
    • Endpoint Security
  • Cloud ▼
    • Hybrid Cloud
    • Private Cloud
    • Public Cloud
  • Webinar Library
  • TiPs
  • DRAW

Privileged Access Management in ScreenConnect

Connectwise
05/11/2026
16
0 (0%)
Share
  • Comments
  • Download
  • Transcript
Report Like Favorite
  • Share/Embed
  • Email
Link
Embed

Transcript


TL;DR

  • ScreenConnect PAM intercepts Windows UAC prompts and allows remote approval/denial with VirusTotal scanning integration for security validation before elevation
  • Automated rule creation enables conditional auto-approval of trusted applications, reducing manual intervention while maintaining security controls and audit trails
  • Ephemeral local admin accounts use 256-character AES-encrypted passwords that are automatically removed after session completion, enforcing least privilege access
  • Administrative dashboard tracks elevation patterns and identifies automation opportunities, helping teams optimize approval workflows based on application usage data

UAC Elevation Automation and Control

This demonstration walks through ScreenConnect's Privileged Access Management (PAM) capabilities, focusing on User Account Control (UAC) elevation handling. The system injects itself into Windows UAC prompts, allowing technicians to approve or deny elevation requests remotely. A key feature is the VirusTotal integration that scans executables against approximately 80 antivirus engines before approval. The platform enables rule creation based on conditions, automating future approvals for trusted applications. This eliminates repetitive manual approvals while maintaining security oversight through detailed logging and notification systems.

Ephemeral Admin Access and Security Dashboard

The second component creates temporary local administrator accounts using 256-character AES-encrypted passwords for technician access. This passwordless administrative logon appears on the Windows lock screen and requires approval before granting access, adhering to least privilege principles. Credentials are automatically removed after session completion. The administrative dashboard provides analytics on elevation prompts, admin logons, PAM-enabled endpoints, and application-level approval patterns. This data helps identify opportunities for rule automation, such as creating auto-approval rules for frequently requested applications like Adobe Creative Cloud.

Chapters

0:00 - Introduction to PAM
0:42 - UAC Elevation Demo
2:16 - VirusTotal Integration
2:36 - Rule Creation Workflow
3:29 - Temporary Admin Access
4:43 - Analytics Dashboard Overview

Key Quotes

0:25 "... allowing you to automate the entire process as well as, from a security standpoint, setting users up with an ephemeral local admin for just operating by the principle of least privilege access and really locking down your security environment ..."
2:23 "... this will run it against, I believe it's about 80 antivirus, to see if there's any known threats ..."
4:24 "... it's creating a temporary, long tail password. It's like 256 character AES encrypted, so very secure ..."
5:29 "... let's say you see 100 requests for Adobe Creative Cloud, and they're mostly manual approvals, then it's like, okay, well, maybe it's time to set up a rule for that, save my team a bunch of time ..."

Categories:
  • » Cybersecurity » Endpoint Security
  • » Data Protection
Channels:
News:
Events:
Tags:
  • Identity & Access
  • Endpoint Management
  • Security Operations
  • Demo
  • Technical Deep Dive
  • Privileged Access Management
  • UAC Elevation Control
  • Ephemeral Admin Accounts
  • Least Privilege Access
  • Remote Access Security
  • Automation Rules
  • VirusTotal Integration
Show more Show less

Browse videos

  • Related
  • Featured
  • By date
  • Most viewed
  • Top rated
  •  

              Video's comments: Privileged Access Management in ScreenConnect

              Upcoming Webinar Calendar

              • 06/10/2026
                11:00 AM
                06/10/2026
                Action1: Vulnerability Digest--Patch Tuesday & Other Updates
                https://www.truthinit.com/index.php/channel/1997/action1-vulnerability-digest-patch-tuesday-other-updates/
              • 06/10/2026
                02:00 PM
                06/10/2026
                Understanding the True Costs of DIY Data Classification vs. Buying Solutions
                https://www.truthinit.com/index.php/channel/1985/understanding-the-true-costs-of-diy-data-classification-vs-buying-solutions/
              • 06/23/2026
                10:00 AM
                06/23/2026
                Stay Informed on the Latest Keepit Partner Developments – June 23
                https://www.truthinit.com/index.php/channel/1990/stay-informed-on-the-latest-keepit-partner-developments-–-june-23/
              • 06/25/2026
                01:00 PM
                06/25/2026
                Generative AI Security: Preventing AI from Becoming a Data Breach Multiplier
                https://www.truthinit.com/index.php/channel/1998/generative-ai-security-preventing-ai-from-becoming-a-data-breach-multiplier/

              Upcoming Events

              • Jun
                10

                Action1: Vulnerability Digest--Patch Tuesday & Other Updates

                06/10/202611:00 AM ET
                • Jun
                  10

                  Understanding the True Costs of DIY Data Classification vs. Buying Solutions

                  06/10/202602:00 PM ET
                  • Jun
                    23

                    Stay Informed on the Latest Keepit Partner Developments – June 23

                    06/23/202610:00 AM ET
                    • Jun
                      25

                      Generative AI Security: Preventing AI from Becoming a Data Breach Multiplier

                      06/25/202601:00 PM ET
                      More events
                      Truth in IT
                      • Sponsor
                      • About Us
                      • Terms of Service
                      • Privacy Policy
                      • Contact Us
                      • Preference Management
                      Desktop version
                      Standard version