Try our new research platform with insights from 80,000+ expert users

BMC Helix Cloud Security vs VMware Aria Operations comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

SentinelOne Singularity Clo...
Sponsored
Average Rating
8.6
Reviews Sentiment
7.7
Number of Reviews
114
Ranking in other categories
Vulnerability Management (4th), Cloud and Data Center Security (3rd), Container Security (3rd), Cloud Workload Protection Platforms (CWPP) (4th), Cloud Security Posture Management (CSPM) (3rd), Cloud-Native Application Protection Platforms (CNAPP) (3rd), Compliance Management (2nd), AI Software Development (1st), AI Observability (2nd)
BMC Helix Cloud Security
Average Rating
8.0
Reviews Sentiment
7.5
Number of Reviews
5
Ranking in other categories
Cloud Workload Protection Platforms (CWPP) (27th), Cloud Security Posture Management (CSPM) (40th)
VMware Aria Operations
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
376
Ranking in other categories
Cloud Management (2nd), Virtualization Management Tools (1st)
 

Mindshare comparison

Cloud Workload Protection Platforms (CWPP) Market Share Distribution
ProductMarket Share (%)
BMC Helix Cloud Security0.5%
Microsoft Defender for Cloud16.7%
AWS GuardDuty14.8%
Other68.0%
Cloud Workload Protection Platforms (CWPP)
Virtualization Management Tools Market Share Distribution
ProductMarket Share (%)
VMware Aria Operations27.1%
IBM Turbonomic11.9%
Nutanix Prism10.7%
Other50.3%
Virtualization Management Tools
 

Featured Reviews

SC
Information Security Engineer at DataVigilant Infotech
Enables us to prioritize and effectively address critical security issues
Evidence-based reporting helps us to prioritize and solve critical security issues. The new visualization feature demonstrates how an attacker can enter the system, highlighting the potential path that can be exploited and outlining all the steps the attacker could take. With that visibility, we can ensure the perimeter is strong and attackers cannot enter, thus reducing the risk. It has helped us prioritize issues. The visibility into how an attack could happen is valuable. For example, it highlights the system vulnerability and outlines where an attack could propagate. The visualization helps me to prioritize remediation, and if I don't know where to start, I can check to see the score that enables me to prioritize issues. I am using infrastructure-as-code scanning, and it's one of the useful features. In pre-production, it identifies embedded secrets and misconfigurations, including issues with Kubernetes or some privileged containers. This feature allows us to pass the audit and secure IaC code so that it isn't easily exploitable by attackers. We can more proactively work to identify and resolve vulnerabilities by using the dashboard and the alerting system that SentinelOne provides. It helps us with audits and compliance. We can show the compliance in percentage. We can confidently say that our company or infrastructure is very secure. It has improved our security posture by 30% to 35%. It has reduced our false positives by 30%. It has helped teams collaborate better. The security team manages SentinelOne Singularity Cloud Security, and when it flags vulnerabilities, they are forwarded to DevOps for remediation. Previously, we needed to identify and report the issues, but there would be lapses in communication. Now, there is a centralized dashboard that anyone can look at and see the open issues and work on them.
DG
Portfolio Manager/ Helix Administrator at Frontier Communications
A highly scalable and straightforward solution with a knowledgeable support team
We work on a third-party shared environment. It wouldn’t have been feasible for a smaller company. My company was actually the first one to do it. Just like any cloud security, it pays to do your research and have complimentary security involved. The product can’t be the be-all and end-all tool for your security. Overall, I rate the solution a nine out of ten.
AldoDomini - PeerSpot reviewer
Senior System Network Analyst at Net spa
Have faced limitations due to high costs but have maintained reliability over time
The primary issue is the pricing, which is very expensive for my company's budget. We cannot afford to pay such a large fee. We are not Microsoft or BMW; we are a small company. As a small company, I have no power to negotiate directly with VMware. Perhaps larger companies have more opportunity to contract directly with VMware, but I do not have that leverage. The only path I can follow is to change solutions. Net.spA is a company working in the field of waste management. We are not a technological company, so we do not have a large margin to justify purchasing and maintaining the VMware infrastructure at current costs.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I recommend SentinelOne due to its high-security capabilities, which are essential to safeguard data and systems from potential threats."
"It is fairly simple. Anybody can use it."
"The most valuable features of SentinelOne Singularity Cloud Security are cloud misconfiguration, Kubernetes, and IaC scanning."
"The agentless vulnerability scanning is great."
"The most valuable feature is the notification system, providing real-time alerts and comparisons crucial for maintaining security."
"SentinelOne Singularity Cloud Security has saved up to 50 percent in engineering time."
"The solution helped free other staff to work on other projects or other tasks. We basically just had to do a bunch of upfront configuring. With it, we do not have to spend as much time in the console."
"With SentinelOne Singularity Cloud Security, it's easy to onboard new accounts."
"Role-based security is a valuable feature."
"The most valuable aspects of BMC Helix Cloud Security are its security features and regulatory compliance capabilities."
"The cool feature of Helix Cloud Security is that you can do all that — understand and remediate issues — in one dashboard, based on the different policies that are available for security, out-of-the-box."
"It's also multi-cloud. You can look at several cloud providers: AWS, Azure, or GCP."
"The features that I've found most valuable are its container security aspect. I also like its vulnerability management tools."
"The best feature is time to value. With very minimal effort, you are able to have a cohesive view into your security posture on one or multiple cloud accounts, particularly if you are dealing with multicloud. If you have Azure and AWS deployments, you might have multiple subscriptions in Azure and usually multiple accounts in AWS. You may even be doing some GCP work (around Google Cloud Platform). It's very difficult to manage a common set of policies, even less reporting, across multiple subscriptions, accounts, and cloud environments. What BMC Helix Cloud Security does is provide a unified view or single pane of glass as to your baseline. Then, it also facilitates the ability for Level 1 or 2 operations support to take action and report on security vulnerabilities."
"The most valuable feature is the metrics, the ability to deep-dive into any issue we may be having from a virtual machine to a data store. Latency is a big thing - it's able to give us that metric pretty swiftly. And with our custom dashboards, it's all readily available."
"Their technical support is good. We haven't had too much use for them."
"It gives us a single pane of glass to look at whenever we're trying to troubleshoot issues, so we can go to one place as opposed to multiple places."
"For me, the most valuable feature of vROps is its reporting. We use the reports to send information to certain groups within our company to help forecast the use of resources."
"Some of the forecasting features give us a picture of, let's say, in six months I know that my storage will be full, or I'll be out of resources. It gives us a little bit of forecasting."
"It has made a big difference in the time to troubleshoot. It's significantly reduced it."
"All our capacity management and capacity planning processes are based on vROps. Without this tool, we are unable to predict what we need, at what time we need to purchase new hardware, whether we should upgrade, etc."
"It allows us better visibility into our virtual infrastructure than we could get through vCenter or other tools by providing us a lot of metrics. vROps is good at spotting problems."
 

Cons

"They can add more widgets to its dashboard. A centralized dashboard with numerous metrics would improve user understanding."
"The area of improvement is the cost, which is high compared to other traditional endpoint protections."
"A vulnerability alert would appear, and we'd fix it, but then the same alert would return the next day."
"They can add more widgets to its dashboard. A centralized dashboard with numerous metrics would improve user understanding."
"SentinelOne Singularity Cloud Security is on the costlier side."
"SentinelOne Singularity Cloud Security is an excellent CSSPM tool, but the CSC CWPP features need improvement."
"The main area for improvement I want to see is for the platform to become less resource-intensive. Right now, it can slow down processes on the machine, and it would be a massive improvement if it were more lightweight than it currently is."
"The resolution suggestions could be better, and the compliance features could be more customizable for Indian regulations. Overall, the compliance aspects are good. It gives us a comprehensive list, and its feedback is enough to bring us into compliance with regulations, but it doesn't give us the specific objects."
"BMC Helix Cloud Security has room for improvement in terms of integrating its various features."
"I want the role-based security feature to be improved."
"We've had some with issues connectors. The connectors have seemed to have caused a little bit of trouble, perhaps with the APIs trying to scan the environment. The only time I've had to reach out to tech support was for that. It seems it may not have been scanning correctly or I wasn't seeing data within a specific time. But we've set up a couple of connectors in the past couple of weeks and they actually scanned the AWS environment and we had data within about 10 minutes. It's working a lot faster and I think they're making improvements as they go."
"The UI could be more user-friendly."
"Every organization out there doesn't rely on just one control body. They use FISMA control. They may use HIPAA, CIS, PCI, or SOX, then blend them. One of the things that is now in big demand for BMC Helix Cloud Security is content. That's the next journey in its lifespan, making it easier for the community to share and collaborate on content for security controls that can be measured and remediated."
"There is room for improvement in asset management and resource usage."
"One way the solution could be improved, in my opinion: management packs, more native management packs with API."
"compare-to-competition; We had a lot of homegrown solutions and different products. We have Splunk, we're using Tableau, different reporting services that were based on gathering our own data, power CLI scripts, going out and individually running things against vCenters, pulling them back in, and then dumping them into something centrally that we could view for capacity. But it really was point-in-time, it wasn't real-time, it wasn't something that could even be predictive for us. We would look at it and say, "Well, that looked different last month so let me go look and see why," and then it was a lot more time-consuming to go about that method. It was more of a manual method. vROps is a tool that gathers that data every five minutes, or whatever the time duration is that you have set for collections. We're more up to the minute, more quick to respond. I think it's a smarter product than homegrown stuff. That's why we moved away from the homegrown stuff."
"The tool itself is not as scalable as we'd like it to be. We have seven or more data centers and we have collectors deployed throughout the whole environment, but we have capacity and performance issues with the tool. We'd like to expand the product so that we would have more capacity, but it has limitations."
"If I had to think of one thing that could be improved, I would probably lean towards making it easier to pull dashboards from vRealize Operations into other products, like a company-branded dashboard that would display in a NOC."
"Lacks sufficient training for a relatively complex solution."
"I would like to see more features, especially in the way of Flash to HTML5."
"Administration and growth can be improved."
 

Pricing and Cost Advice

"We have an enterprise license. It is affordable. I'm not sure, but I think we pay 150,000 rupees per month."
"PingSafe is cost-effective for the amount of infrastructure we have. It's reasonable for what they offer compared to our previous solution. It's at least 25 percent to 30 percent less."
"It's not expensive. The product is in its initial growth stages and appears more competitive compared to others. It comes in different variants, and I believe the enterprise version costs around $55 per user per year. I would rate it a five, somewhere fairly moderate."
"The pricing is somewhat high compared to other market tools."
"PingSafe's primary advantage is its ability to consolidate multiple tools into a single user interface, but, beyond this convenience, it may not offer significant additional benefits to justify its price."
"It is not that expensive. There are some tools that are double the cost of PingSafe. It is good on the pricing side."
"SentinelOne offers excellent pricing and licensing options."
"It's a fair price for what you get. We are happy with the price as it stands."
"It is a subscription model with term licensing that is usually yearly. This includes, not only the product, but support and maintenance. It is based on cloud assets. Therefore, if you have 100 cloud assets, those cloud assets are measured based on evaluation or transactions. For example, if I'm evaluating that cloud asset for CIS compliance, PCI compliance, and AWS best practices, that asset gets evaluated three times, as those are three transactions. However, the license model is based on peak asset usage. So, over a year, if you deploy 100, 1000, 500, and then 2000 assets, you will be charged for the 2000 peak of assets managed by Helix Cloud Security."
"The pricing is based on an annual subscription, upfront, and it's based on cloud assets. Whether your assets are in Azure and AWS combined, the tool tells you how many assets are being scanned and that's the number used for pricing."
"Get the right licensing and increase your licensing as you upgrade and grow. If you get the wrong licensing, it will be expensive, especially if you plan improperly."
"In terms of the pricing for VMware vRealize Operations (vROps), I can't remember exactly how much it costs, but it was included in the VMware vSphere enterprise plus licensing package my company paid for."
"There's a smaller category that stands out due to its affordability, especially for recent versions, which I rate as four or five in terms of value. However, if you're looking for a vCenter with older, more advanced features, it comes at a significantly higher cost, and I would rate it around ten. They provide us with a choice between a recent version and one integrated, and I lean towards the former."
"Five or six years ago, when we took it, it was a very good option. Now, I think I have to reevaluate, to be honest."
"Pricing could always be cheaper, but it's acceptable."
"vROps is a bit expensive and that's a reason that small clients say, 'No, I don't think we need this.' From a pricing perspective, it is quite steep. But 'expensive' is relative, depending on what you need. Others might say, 'It is expensive, but I think we can use it to better our environment.'"
"As we continue to implement it across multiple environments, it reduces costs as well."
"The price of the solution is expensive."
report
Use our free recommendation engine to learn which Cloud Workload Protection Platforms (CWPP) solutions are best for your needs.
879,768 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Financial Services Firm
14%
Manufacturing Company
10%
Government
5%
Performing Arts
14%
Financial Services Firm
12%
Manufacturing Company
8%
Comms Service Provider
8%
Financial Services Firm
11%
Computer Software Company
10%
Manufacturing Company
9%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business47
Midsize Enterprise20
Large Enterprise53
No data available
By reviewers
Company SizeCount
Small Business64
Midsize Enterprise62
Large Enterprise278
 

Questions from the Community

What do you like most about PingSafe?
The dashboard gives me an overview of all the things happening in the product, making it one of the tool's best featu...
What is your experience regarding pricing and costs for PingSafe?
I think the pricing of SentinelOne Singularity Cloud Security is a bit high.
What needs improvement with PingSafe?
We did not try to use the threat investigations feature from SentinelOne Singularity Cloud Security.Drift detection w...
Ask a question
Earn 20 points
What's the difference between VMware vRA (automation) and vROps (operations)?
vROP is a virtualization management solution from VMWare. It is efficient and easy to manage. You can find anything y...
Is VMware Aria Operations a user friendly solution?
In terms of user-friendliness, VMware Aria Operations is one of the best solutions out there. It is not overly compl...
What is the most useful new feature of VMware Aria Operations?
For me, the alerts features are the most unique part of this product, no matter the current name it uses. When they i...
 

Also Known As

PingSafe
TrueSight Cloud Security, SecOps Policy Service
VMware vRealize Operations (vROps), vCenter Operations Manager (VCOPS)
 

Overview

 

Sample Customers

Information Not Available
NHS, Vodafone, Kansas City Life, SKY Italia, Cybera
Science Applications International Corporation, Tribune Media, Heartland Payment Systems, Telkom Indonesia, Columbia Sportswear, iGATE, CSS Corp, Angel Broking, Adira Finance, Hipskind, Beiersdorf Shared Services, Innovate Mas Indonesia, Adobe, Cleveland Clinic Abu Dhabi , Join Experience S.A, Borusan Holdings, Department of Transport - Abu Dhabi
Find out what your peers are saying about Microsoft, Amazon Web Services (AWS), Wiz and others in Cloud Workload Protection Platforms (CWPP). Updated: December 2025.
879,768 professionals have used our research since 2012.