No more typing reviews! Try our Samantha, our new voice AI agent.

BMC Helix Cloud Security vs VMware Aria Operations comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

SentinelOne Singularity Clo...
Sponsored
Average Rating
8.6
Reviews Sentiment
7.5
Number of Reviews
118
Ranking in other categories
Vulnerability Management (4th), Cloud and Data Center Security (3rd), Container Security (3rd), Cloud Workload Protection Platforms (CWPP) (4th), Cloud Security Posture Management (CSPM) (3rd), Cloud-Native Application Protection Platforms (CNAPP) (3rd), Compliance Management (2nd), AI Observability (2nd)
BMC Helix Cloud Security
Average Rating
8.0
Reviews Sentiment
7.5
Number of Reviews
5
Ranking in other categories
Cloud Workload Protection Platforms (CWPP) (26th), Cloud Security Posture Management (CSPM) (39th)
VMware Aria Operations
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
376
Ranking in other categories
Cloud Management (2nd), Virtualization Management Tools (1st)
 

Mindshare comparison

Cloud Workload Protection Platforms (CWPP) Mindshare Distribution
ProductMindshare (%)
BMC Helix Cloud Security0.6%
Microsoft Defender for Cloud16.5%
AWS GuardDuty14.2%
Other68.7%
Cloud Workload Protection Platforms (CWPP)
Virtualization Management Tools Mindshare Distribution
ProductMindshare (%)
VMware Aria Operations25.2%
IBM Turbonomic13.5%
SolarWinds Virtualization Manager11.5%
Other49.8%
Virtualization Management Tools
 

Featured Reviews

SC
Information Security Engineer at DataVigilant Infotech
Enables us to prioritize and effectively address critical security issues
Evidence-based reporting helps us to prioritize and solve critical security issues. The new visualization feature demonstrates how an attacker can enter the system, highlighting the potential path that can be exploited and outlining all the steps the attacker could take. With that visibility, we can ensure the perimeter is strong and attackers cannot enter, thus reducing the risk. It has helped us prioritize issues. The visibility into how an attack could happen is valuable. For example, it highlights the system vulnerability and outlines where an attack could propagate. The visualization helps me to prioritize remediation, and if I don't know where to start, I can check to see the score that enables me to prioritize issues. I am using infrastructure-as-code scanning, and it's one of the useful features. In pre-production, it identifies embedded secrets and misconfigurations, including issues with Kubernetes or some privileged containers. This feature allows us to pass the audit and secure IaC code so that it isn't easily exploitable by attackers. We can more proactively work to identify and resolve vulnerabilities by using the dashboard and the alerting system that SentinelOne provides. It helps us with audits and compliance. We can show the compliance in percentage. We can confidently say that our company or infrastructure is very secure. It has improved our security posture by 30% to 35%. It has reduced our false positives by 30%. It has helped teams collaborate better. The security team manages SentinelOne Singularity Cloud Security, and when it flags vulnerabilities, they are forwarded to DevOps for remediation. Previously, we needed to identify and report the issues, but there would be lapses in communication. Now, there is a centralized dashboard that anyone can look at and see the open issues and work on them.
DG
Portfolio Manager/ Helix Administrator at Frontier Communications
A highly scalable and straightforward solution with a knowledgeable support team
We work on a third-party shared environment. It wouldn’t have been feasible for a smaller company. My company was actually the first one to do it. Just like any cloud security, it pays to do your research and have complimentary security involved. The product can’t be the be-all and end-all tool for your security. Overall, I rate the solution a nine out of ten.
AldoDomini - PeerSpot reviewer
Senior System Network Analyst at Net spa
Have faced limitations due to high costs but have maintained reliability over time
The primary issue is the pricing, which is very expensive for my company's budget. We cannot afford to pay such a large fee. We are not Microsoft or BMW; we are a small company. As a small company, I have no power to negotiate directly with VMware. Perhaps larger companies have more opportunity to contract directly with VMware, but I do not have that leverage. The only path I can follow is to change solutions. Net.spA is a company working in the field of waste management. We are not a technological company, so we do not have a large margin to justify purchasing and maintaining the VMware infrastructure at current costs.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The ease of use of the platform is very nice."
"The user interface is well-designed and easy to navigate."
"SentinelOne's behaviour analytics are valuable because they detect anomalies and malicious behaviour that signature-based solutions might miss."
"The most valuable features of SentinelOne Singularity Cloud Security are cloud misconfiguration, Kubernetes, and IaC scanning."
"The most valuable feature is the easy-to-understand user interface, which allows even non-technical users to comprehend and resolve issues."
"The cloud misconfiguration feature and Offensive Security Engine, as well as their alerting process, are valuable."
"It is advantageous in terms of time-saving and cost reduction."
"We like the platform and its response time. We also like that its console is user-friendly as well as modern and sleek."
"Role-based security is a valuable feature."
"It is a good tool to make sure that your containers are safe and sound."
"The cool feature of Helix Cloud Security is that you can do all that — understand and remediate issues — in one dashboard, based on the different policies that are available for security, out-of-the-box."
"It's also multi-cloud. You can look at several cloud providers: AWS, Azure, or GCP."
"With very minimal effort, you are able to have a cohesive view into your security posture on one or multiple cloud accounts, particularly if you are dealing with multicloud."
"The most valuable aspects of BMC Helix Cloud Security are its security features and regulatory compliance capabilities."
"Using this solution is an eye-opener; having that holistic view is the biggest eye-opener because you understand, from any of your connected cloud accounts, what your vulnerabilities are with it."
"The features that I've found most valuable are its container security aspect. I also like its vulnerability management tools."
"It definitely has a better view and visibility for everything that's going on, and helps keep tabs and makes sure everything is running well."
"Do yourself a favor and look at vROps."
"For the business we are able to reduce cost by purchasing hardware because that data is showing us what needs to be and where it should be."
"The most valuable feature is how our metrics interact with each other. You can find what objects are needed and get all of the information about an object: How it works with the storage, CPUs, memory, and you can get an easy way to find the solution during troubleshooting."
"Troubleshooting is one of the most valuable features for us, because it identifies problems that other monitoring solutions give us, offers insight into the problem, then digs into it to find out what the actual problems are and addresses them."
"The system dashboards allow us to drill down into systems and find how they are talking to each other. They allow us to fix issues quickly and easily for the end user."
"I'd like to see the streamlining of more wizards, more tasks that are canned. And it would also be good to see some more features around building the Blueprints, just to make it a little easier."
"Reporting is a fantastic tool."
 

Cons

"SentinelOne Singularity Cloud Security is an excellent CSPM tool, but the CWPP features need to improve, and there is a scope for more application security posture management features. There aren't many ASPM solutions on the market, and existing ones are costly. I would like to see SentinelOne Singularity Cloud Security develop into a single pane of glass for ASPM, CSPM, and CWPP. Another feature I'd like to see is runtime protection."
"The Singularity Cloud Security console is experiencing delays in clearing resolved issues, which can take over an hour to be removed from the display."
"They can work on policies based on different compliance standards."
"There's an array of upcoming versions with numerous features to be incorporated into the roadmap. Customers particularly appreciate the service's emphasis on intensive security, especially the secret scanning aspect. During the proof of concept (POC) phase, the system is required to gather logs from the customer's environment. This process entails obtaining specific permissions, especially in terms of gateway access. While most permissions for POC are manageable, the need for various permissions may need improvement, especially in the context of security."
"There should be more documentation about the product."
"SentinelOne Singularity Cloud Security is an excellent CSPM tool, but its CWPP features need improvement, and there is scope for more application security posture management features."
"I personally use the SentinelOne Singularity Cloud Security daily, and I have noticed that the dashboard occasionally gets stuck, potentially due to internet issues. It could benefit from enhancements to be more robust and smoother."
"Cloud Native Security's reporting could be better. We are unable to see which images are impacted. Several thousand images have been deployed, so if we can see some application-specific information in the dashboard, we can directly send that report to the team that owns the application. We'd also like the option to download the report from the portal instead of waiting for the report to be sent to our email."
"I think its TOA interfaces are still not that comfortable. The UI could be more user-friendly, easier to use."
"The biggest challenge now, which is a good problem to have, with BMC Helix is content."
"Every organization out there doesn't rely on just one control body. They use FISMA control. They may use HIPAA, CIS, PCI, or SOX, then blend them. One of the things that is now in big demand for BMC Helix Cloud Security is content. That's the next journey in its lifespan, making it easier for the community to share and collaborate on content for security controls that can be measured and remediated."
"We've had some with issues connectors. The connectors have seemed to have caused a little bit of trouble, perhaps with the APIs trying to scan the environment. The only time I've had to reach out to tech support was for that. It seems it may not have been scanning correctly or I wasn't seeing data within a specific time. But we've set up a couple of connectors in the past couple of weeks and they actually scanned the AWS environment and we had data within about 10 minutes. It's working a lot faster and I think they're making improvements as they go."
"The UI could be more user-friendly."
"I want the role-based security feature to be improved."
"BMC Helix Cloud Security has room for improvement in terms of integrating its various features."
"We've had some issues with connectors; the connectors have seemed to cause a little bit of trouble, perhaps with the APIs trying to scan the environment."
"I get in to code whatever I need and then get out. So perhaps they could support different coding languages. I know that JavaScript is their primary "cash cow" but I'd like to see c#, personally. I'd like to see different capabilities for adding code."
"I'm a very core systems admin guy, so what I would like to look at, when I see DRS migrations, it would be interesting to see why it really migrated."
"I would like to see more functionality. I would also like to see better support, because the pack that we use, the Horizon, it's an additional pack. It's not currently actually built by VMware, it's built by a separate company. When they merge the two, there will be better support in the future."
"It is a bit complex, so you need to spend time with it."
"It could be a little bit quicker to drill into."
"It is a beast to deal with. To understand it really takes effort."
"We haven't found it to be intuitive or user-friendly. We're on version 6.0, it's gotten better since but there's a lot of things we have to do under the hood to make it work how we want it to work. It doesn't work out of the box very well until it's been fine-tuned."
"Technical support is good, once you pass the first level."
 

Pricing and Cost Advice

"The pricing tends to be high."
"The price depends on the extension of the solution that you want to buy. If you want to buy just EDR, the price is less. XDR is a little bit more expensive. There are going to be different add-ons for Singularity."
"I understand that SentinelOne is a market leader, but the bill we received was astronomical."
"The pricing for PingSafe in India was more reasonable than other competitors."
"I am not involved in the pricing, but it is cost-effective."
"Their pricing appears to be based simply on the number of accounts we have, which is common for cloud-based products."
"I would rate the cost a seven out of ten with ten being the most costly."
"The licensing is easy to understand and implement, with some flexibility to accommodate dynamic environments."
"The pricing is based on an annual subscription, upfront, and it's based on cloud assets. Whether your assets are in Azure and AWS combined, the tool tells you how many assets are being scanned and that's the number used for pricing."
"It is a subscription model with term licensing that is usually yearly. This includes, not only the product, but support and maintenance. It is based on cloud assets. Therefore, if you have 100 cloud assets, those cloud assets are measured based on evaluation or transactions. For example, if I'm evaluating that cloud asset for CIS compliance, PCI compliance, and AWS best practices, that asset gets evaluated three times, as those are three transactions. However, the license model is based on peak asset usage. So, over a year, if you deploy 100, 1000, 500, and then 2000 assets, you will be charged for the 2000 peak of assets managed by Helix Cloud Security."
"So, besides the license overall, you have to pay for the type of support you want. With the license, there is a support cost as well."
"If one is low price and ten is high price, I rate the product price a ten."
"I rate the solution's pricing a seven out of ten."
"It is an affordable solution that doesn't require any additional costs."
"The license is a one time cost, and you pay for support on a yearly basis. It is a bit expensive, but if you consider the product support and its reliability, it's justifiable."
"We have seen good ROI results. It has made our lives easier."
"Our manpower costs have been reduced due to the automation in conjunction with the usage of the dashboard."
"Don't overallocate! This means that you don't have to buy many hosts. You can save money that way."
report
Use our free recommendation engine to learn which Cloud Workload Protection Platforms (CWPP) solutions are best for your needs.
885,311 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Computer Software Company
11%
Manufacturing Company
10%
Government
6%
Construction Company
15%
Performing Arts
11%
Financial Services Firm
10%
Transportation Company
7%
Manufacturing Company
9%
Financial Services Firm
9%
Computer Software Company
7%
Marketing Services Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business49
Midsize Enterprise22
Large Enterprise55
No data available
By reviewers
Company SizeCount
Small Business65
Midsize Enterprise62
Large Enterprise278
 

Questions from the Community

What do you like most about PingSafe?
The dashboard gives me an overview of all the things happening in the product, making it one of the tool's best featu...
What is your experience regarding pricing and costs for PingSafe?
Regarding the pricing for SentinelOne Singularity Cloud Security, I do not think it is something I can compare.
What needs improvement with PingSafe?
I do not see room for improvement in SentinelOne Singularity Cloud Security. In the future, I would like to see the i...
Ask a question
Earn 20 points
What's the difference between VMware vRA (automation) and vROps (operations)?
vROP is a virtualization management solution from VMWare. It is efficient and easy to manage. You can find anything y...
Is VMware Aria Operations a user friendly solution?
In terms of user-friendliness, VMware Aria Operations is one of the best solutions out there. It is not overly compl...
What is the most useful new feature of VMware Aria Operations?
For me, the alerts features are the most unique part of this product, no matter the current name it uses. When they i...
 

Also Known As

PingSafe
TrueSight Cloud Security, SecOps Policy Service
VMware vRealize Operations (vROps), vCenter Operations Manager (VCOPS)
 

Overview

 

Sample Customers

Information Not Available
NHS, Vodafone, Kansas City Life, SKY Italia, Cybera
Science Applications International Corporation, Tribune Media, Heartland Payment Systems, Telkom Indonesia, Columbia Sportswear, iGATE, CSS Corp, Angel Broking, Adira Finance, Hipskind, Beiersdorf Shared Services, Innovate Mas Indonesia, Adobe, Cleveland Clinic Abu Dhabi , Join Experience S.A, Borusan Holdings, Department of Transport - Abu Dhabi
Find out what your peers are saying about Microsoft, Amazon Web Services (AWS), Wiz and others in Cloud Workload Protection Platforms (CWPP). Updated: March 2026.
885,311 professionals have used our research since 2012.