No more typing reviews! Try our Samantha, our new voice AI agent.

CyberArk Certificate Manager vs RSA SecurID comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Mar 15, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

CyberArk Certificate Manager
Ranking in Authentication Systems
8th
Average Rating
8.2
Reviews Sentiment
6.0
Number of Reviews
19
Ranking in other categories
Certificate Management Software (2nd)
RSA SecurID
Ranking in Authentication Systems
10th
Average Rating
7.8
Reviews Sentiment
7.2
Number of Reviews
9
Ranking in other categories
Multi-Factor Authentication (MFA) (4th)
 

Mindshare comparison

As of May 2026, in the Authentication Systems category, the mindshare of CyberArk Certificate Manager is 1.8%, up from 1.0% compared to the previous year. The mindshare of RSA SecurID is 2.8%, down from 6.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Authentication Systems Mindshare Distribution
ProductMindshare (%)
CyberArk Certificate Manager1.8%
RSA SecurID2.8%
Other95.4%
Authentication Systems
 

Featured Reviews

Karthik Kashyap T H - PeerSpot reviewer
Lead Engineer at a retailer with 10,001+ employees
Eliminates certificate expiration outages and offers good customization and reporting capabilities
Even though it allows for email editing, until version 23.1, you had to log on to the server, and the console itself used to take a lot of time. That has changed from the last release onwards. When you're defining the flow, there are some areas that can probably cause confusion to the users. If you want to rename the default field, you cannot rename it, which caused a lot of confusion during the initial days until everyone got settled in. Allowing the renaming or updating of the default field is something Certificate Manager can improve on. Certificate Manager has both the on-prem and the cloud versions, but the on-prem version is far more mature than the cloud version, which lacks a lot of features that the on-prem version offers, at least when we did the POC and evaluated the product. The maturity of the cloud version needs improvement. Additionally, when considering the on-prem version, there is a minor glitch in the system. When an administrator makes changes, they have flexibility regarding the approval flow. When dealing with a certificate that requires approval from several different teams, there is a minor glitch in the system where the name of the approver does not appear. This is a bug that we are currently addressing. Additionally, there is room for improvement in key management. Changing the default account name is not a straightforward process; it can be quite tedious. This is an area where improvements could be made. If there is a particular workflow that we want to tweak, right now, we can achieve it only via a PowerShell script. It would be great if they could also support a small Python script or anything to expand their scripting or adaptable workflow code base. Even though we can call another script from a PowerShell script, if someone doesn't have knowledge of PowerShell, that would be challenging.
Santhosh Rajamanickam - PeerSpot reviewer
Senior Consultant - Principal SOC Security at Royal Technology Solutions LLC
Enhanced security, reliable, helpful technical support, and easy to install
RSA SecurID Access is a scalable solution. I would rate the scalability of RSA SecurID Access a nine out of ten. Initially, our organization had around 250 users for whom we were aware of the usage of the solution. However, there were certain users for whom we were not notified due to the nature of their job, and hence we were not aware of their usage. Eventually, we decided to scale the solution for all our 4,000 users. Currently, we are using it for 250 users only. There is a high likelihood that we will expand our usage in the future.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The feature that I have found most valuable is their certificate discovery."
"Automating anything, whether on-prem or cloud, is possible."
"The support is definitely great. What I like best about Venafi is that it's very easy to get somebody on a call and get any of my questions answered. That's probably the biggest thing. Besides the fact that it's a mature product and it works, the support is a big deal."
"CyberArk Certificate Manager is doing its best with multiple layers of security, and while they face challenges with legacy applications, they can still connect to web applications, rich applications, desktop applications, and cloud-native applications."
"The most important feature for us is the ease of use. If something is not available, we can develop our own scripts for it. We can create change management around this tool."
"So, from the perspective of risk reduction, it can be directly quantified in the value for the customer."
"Venafi solved the issue of many misplaced internal certificates, as we know that at one place we can get all the information, and the problem of notifications about expiring certificates is resolved, improving our overall system for Expedia."
"CyberArk Certificate Manager has positively impacted my organization by automating the credential process, allowing users to rotate and share passwords with no human intervention required."
"It is easy to set up and reliable."
"I would say that the two-factor authentication and the ease of installation and configuration are the most valuable features of this solution."
"In house applications access via weblink can be locked down to specific groups or criteria."
"All of its features work well with the cloud authentication manager and the tokens — the authentication manager is good."
"The most valuable features of RSA SecurID Access are push notifications, multifactor authentication, and ease of integration and deployment."
"One of the most valuable feature is the ID soft token and hard token."
"Encryption random key generation and making it available for the user on the fly without any knowledge of the user regarding the keys."
"With the SSO RSA technology, we simplify the login and authorization process for dozens of web sites with high load traffic."
 

Cons

"For Java applications, we currently convert the certificate in JKS manually. It would be helpful to have the capability to download certificates in JKS automatically."
"Currently lacks the capability to automatically download certificates in JKS."
"Venafi's overall installation could be made easier."
"The product was really good when it was a Venafi product. However, since its acquisition by CyberArk, there has been a lack of significant innovations. They are pushing for cloud adoption, but we prefer on-premises solutions due to regulatory concerns."
"Venafi excels in automating certificate rotation and deployment but could enhance its offering by improving support for hardware security modules like Fortanix and providing more advanced, out-of-the-box integrations with public certificate authorities for DNS re-verification."
"I would like to see included in the next release of Venafi integration with the cloud HSM's, Hardware Security Module. Additionally, I would say other cloud services, because it's not only cloud that's essential. If you have a customer that has a lot of their IT moved into cloud, integration with different cloud services is always an area to improve."
"The initial setup is complex. You need third-party support or support from CyberArk Certificate Manager if you do not have a lot of skillset inside your own company."
"Venafi could enhance its offerings by providing more automation features."
"There are different compliances across the globe; RSA SecurID Access could be more complaint-based."
"There are different compliances across the globe; RSA SecurID Access could be more complaint-based."
"I would really rate the technical support as 4 (in a scale of 1-10). My interaction with the technical support was never good."
"We are currently migrating to CA Site Minder due to RSA not having a viable SSO solution at this time."
"The interface needs to improve a lot. It should be easier to manage and navigate."
"It doesn't offer an agent-based or reverse-proxy-based approach to integration, which could enhance its flexibility."
"Sometimes, we encounter issues with other applications that are not compatible with RSA SecurID Access and require expert troubleshooting. At those times, we need additional support from an implementation perspective. This is an area where Oracle can improve as there is no substitute for reliable and efficient support."
 

Pricing and Cost Advice

"Venafi's pricing appears to be competitive within the market."
"The pricing model is complex, considering factors beyond the number of certificates. This complexity can make our payments to Venafi challenging if costs continue to rise. It is good but more expensive than the competitors."
"I think the price of this solution is reasonable compared to YubiKey and Duo given that it offers the same similar features."
"RSA SecurID Access is expensive."
report
Use our free recommendation engine to learn which Authentication Systems solutions are best for your needs.
894,668 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
16%
Computer Software Company
9%
Insurance Company
7%
Government
7%
Financial Services Firm
16%
Government
11%
Manufacturing Company
7%
Healthcare Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business8
Large Enterprise19
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise1
Large Enterprise4
 

Questions from the Community

What is your experience regarding pricing and costs for Venafi?
In terms of pricing, they are a little costly, but they are the best in the market today, so I would say they are worth every penny, rating them again at seven or eight.
What needs improvement with Venafi?
CyberArk Certificate Manager can be improved, particularly in terms of integrations with other tools. I would like to see improvements in integrations with ID, Kerberos, or with other companies for...
What advice do you have for others considering Venafi?
Since using CyberArk Certificate Manager, I have seen specific outcomes such as a reduction in incidents because I can work with CyberArk Certificate Manager, where digital certificates are everywh...
Ask a question
Earn 20 points
 

Also Known As

Venafi
RSA SecurID Access, RSA Access Manager
 

Overview

 

Sample Customers

Surescripts, CME Group, TD Bank Group, Aetna, MoneyGram, Zions Bancorp, Cisco
Milliman, Geisinger Health System, Advanced Micro Devices
Find out what your peers are saying about CyberArk Certificate Manager vs. RSA SecurID and other solutions. Updated: April 2026.
894,668 professionals have used our research since 2012.