No more typing reviews! Try our Samantha, our new voice AI agent.

Certificate Lifecycle Manager vs RSA SecurID comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 2, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Certificate Lifecycle Manager
Ranking in Authentication Systems
5th
Average Rating
8.2
Reviews Sentiment
6.0
Number of Reviews
19
Ranking in other categories
Certificate Management Software (2nd)
RSA SecurID
Ranking in Authentication Systems
10th
Average Rating
7.8
Reviews Sentiment
7.2
Number of Reviews
9
Ranking in other categories
Multi-Factor Authentication (MFA) (4th)
 

Mindshare comparison

As of June 2026, in the Authentication Systems category, the mindshare of Certificate Lifecycle Manager is 1.8%, up from 1.1% compared to the previous year. The mindshare of RSA SecurID is 2.5%, down from 6.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Authentication Systems Mindshare Distribution
ProductMindshare (%)
CyberArk Certificate Manager1.8%
RSA SecurID2.5%
Other95.7%
Authentication Systems
 

Featured Reviews

Karthik Kashyap T H - PeerSpot reviewer
Lead Engineer at a retailer with 10,001+ employees
Eliminates certificate expiration outages and offers good customization and reporting capabilities
Even though it allows for email editing, until version 23.1, you had to log on to the server, and the console itself used to take a lot of time. That has changed from the last release onwards. When you're defining the flow, there are some areas that can probably cause confusion to the users. If you want to rename the default field, you cannot rename it, which caused a lot of confusion during the initial days until everyone got settled in. Allowing the renaming or updating of the default field is something Certificate Manager can improve on. Certificate Manager has both the on-prem and the cloud versions, but the on-prem version is far more mature than the cloud version, which lacks a lot of features that the on-prem version offers, at least when we did the POC and evaluated the product. The maturity of the cloud version needs improvement. Additionally, when considering the on-prem version, there is a minor glitch in the system. When an administrator makes changes, they have flexibility regarding the approval flow. When dealing with a certificate that requires approval from several different teams, there is a minor glitch in the system where the name of the approver does not appear. This is a bug that we are currently addressing. Additionally, there is room for improvement in key management. Changing the default account name is not a straightforward process; it can be quite tedious. This is an area where improvements could be made. If there is a particular workflow that we want to tweak, right now, we can achieve it only via a PowerShell script. It would be great if they could also support a small Python script or anything to expand their scripting or adaptable workflow code base. Even though we can call another script from a PowerShell script, if someone doesn't have knowledge of PowerShell, that would be challenging.
Chandan Tripathi - PeerSpot reviewer
Identity and Access Management Principal at Mobily
Useful for making logins more secure by using multifactor authentication but extremely expensive
There is room for improvement in a few areas. Firstly, it lacks support for OIDC and OS capabilities, making it less versatile for integrating various applications. Secondly, there are some limitations in the number of supported applications. Lastly, it doesn't offer an agent-based or reverse-proxy-based approach to integration, which could enhance its flexibility.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The reporting analysis is what I liked the most about it; that was the nicest thing about it—it helped keep track of certificates and their status and where we needed to make improvements, update, replace things."
"It's definitely worth the money to have Venafi as a tool; it's definitely miles away from the competition, in my opinion."
"The best feature I appreciate about Venafi is its user interface, which allows me to search for any particular certificate and immediately see the certificate details and expiry."
"Automating anything, whether on-prem or cloud, is possible."
"Venafi's automation capabilities were significant, as they allowed us to automate certificate rotation and deployment effectively."
"CyberArk Certificate Manager has positively impacted my organization by automating the credential process, allowing users to rotate and share passwords with no human intervention required."
"The feature that I have found most valuable is their certificate discovery."
"The support is definitely great. What I like best about Venafi is that it's very easy to get somebody on a call and get any of my questions answered. That's probably the biggest thing. Besides the fact that it's a mature product and it works, the support is a big deal."
"One of the most valuable feature is the ID soft token and hard token."
"With the SSO RSA technology, we simplify the login and authorization process for dozens of web sites with high load traffic."
"Encryption random key generation and making it available for the user on the fly without any knowledge of the user regarding the keys."
"I would say that the two-factor authentication and the ease of installation and configuration are the most valuable features of this solution."
"All of its features work well with the cloud authentication manager and the tokens — the authentication manager is good."
"It is easy to set up and reliable."
"The most valuable features of RSA SecurID Access are push notifications, multifactor authentication, and ease of integration and deployment."
"I think it is really good when it comes to the hard token side of things."
 

Cons

"The product was really good when it was a Venafi product. However, since its acquisition by CyberArk, there has been a lack of significant innovations. They are pushing for cloud adoption, but we prefer on-premises solutions due to regulatory concerns."
"I would like to see included in the next release of Venafi integration with the cloud HSM's, Hardware Security Module. Additionally, I would say other cloud services, because it's not only cloud that's essential. If you have a customer that has a lot of their IT moved into cloud, integration with different cloud services is always an area to improve."
"In terms of scalability, given that we were in the situation where it was on-prem, there were certain limitations there."
"The product was really good when it was a Venafi product. However, since its acquisition by CyberArk, there has been a lack of significant innovations."
"Currently lacks the capability to automatically download certificates in JKS."
"The initial setup is complex. You need third-party support or support from CyberArk Certificate Manager if you do not have a lot of skillset inside your own company."
"Venafi excels in automating certificate rotation and deployment but could enhance its offering by improving support for hardware security modules like Fortanix and providing more advanced, out-of-the-box integrations with public certificate authorities for DNS re-verification."
"For Java applications, we currently convert the certificate in JKS manually. It would be helpful to have the capability to download certificates in JKS automatically."
"It doesn't offer an agent-based or reverse-proxy-based approach to integration, which could enhance its flexibility."
"There are different compliances across the globe; RSA SecurID Access could be more complaint-based."
"Sometimes, we encounter issues with other applications that are not compatible with RSA SecurID Access and require expert troubleshooting. At those times, we need additional support from an implementation perspective. This is an area where Oracle can improve as there is no substitute for reliable and efficient support."
"There are different compliances across the globe; RSA SecurID Access could be more complaint-based."
"The interface needs to improve a lot. It should be easier to manage and navigate."
"I would really rate the technical support as 4 (in a scale of 1-10). My interaction with the technical support was never good."
"We are currently migrating to CA Site Minder due to RSA not having a viable SSO solution at this time."
 

Pricing and Cost Advice

"Venafi's pricing appears to be competitive within the market."
"The pricing model is complex, considering factors beyond the number of certificates. This complexity can make our payments to Venafi challenging if costs continue to rise. It is good but more expensive than the competitors."
"I think the price of this solution is reasonable compared to YubiKey and Duo given that it offers the same similar features."
"RSA SecurID Access is expensive."
report
Use our free recommendation engine to learn which Authentication Systems solutions are best for your needs.
896,692 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
17%
Computer Software Company
9%
Insurance Company
7%
Government
7%
Financial Services Firm
16%
Government
11%
Manufacturing Company
7%
Educational Organization
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business8
Large Enterprise19
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise1
Large Enterprise4
 

Questions from the Community

What is your experience regarding pricing and costs for Venafi?
In terms of pricing, they are a little costly, but they are the best in the market today, so I would say they are worth every penny, rating them again at seven or eight.
What needs improvement with Venafi?
CyberArk Certificate Manager can be improved, particularly in terms of integrations with other tools. I would like to see improvements in integrations with ID, Kerberos, or with other companies for...
What advice do you have for others considering Venafi?
Since using CyberArk Certificate Manager, I have seen specific outcomes such as a reduction in incidents because I can work with CyberArk Certificate Manager, where digital certificates are everywh...
Ask a question
Earn 20 points
 

Also Known As

Venafi
RSA SecurID Access, RSA Access Manager
 

Overview

 

Sample Customers

Surescripts, CME Group, TD Bank Group, Aetna, MoneyGram, Zions Bancorp, Cisco
Milliman, Geisinger Health System, Advanced Micro Devices
Find out what your peers are saying about Certificate Lifecycle Manager vs. RSA SecurID and other solutions. Updated: April 2026.
896,692 professionals have used our research since 2012.