IT Central Station is now PeerSpot: Here's why

MetricStream vs RSA Archer comparison

Cancel
You must select at least 2 products to compare!
MetricStream Logo
1,186 views|672 comparisons
RSA Logo
5,167 views|3,287 comparisons
Featured Review
Buyer's Guide
GRC
June 2022
Find out what your peers are saying about RSA, MEGA International, OneTrust and others in GRC. Updated: June 2022.
610,229 professionals have used our research since 2012.
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"The interface is mobile-friendly and it is getting a good response from our customers."

More MetricStream Pros →

"The most valuable features are the advanced workflow and the dashboards. This tool can present data wonderfully to management, and it is easy for them to manage the risk plans.""The part I liked about Archer was the risk assessment for deficiencies and being able to use it there.""The Advance Workflow feature simplifies things.""Even non-technical people can be masters of the product.""The most valuable features of RSA Archer are the asset management, risk management, and vendor management.""Integration is another great aspect of RSA Archer. From the beginning, integration has been a central focus for RSA, and Archer has always integrated well with most tools on the market today.""Flexible record permissions and data import features.""It is enterprise-wide accessible. So, it is very helpful for all the employees in our bank. They can log in and do their risk management activities. It has a few inbuilt modules that are helpful for doing risk management activities, such as issue management, risk identification, risk assessment, and policy exception management. It also has some inbuilt workflows inside these modules. They are also helpful."

More RSA Archer Pros →

Cons
"I would like to see out-of-the-box integration with more security, it would be helpful."

More MetricStream Cons →

"There should be a way to export and get data from the system in PDF or PowerPoint presentation format. This would be a great addition.""The design and advanced workflow need to be improved.""Solution could use more inbuilt applications.""I find the tech support to be inadequately knowledgeable.""RSA Archer might be a bit expensive for small companies because it's a vast tool.""The first improvement I would suggest for RSA Archer is a better search feature. The search criteria needs to be improved. Sometimes I do a search and the search doesn't return the exact item I'm looking for. RSA Archer could also be improved by being more user-friendly. Maybe I have been using a limited version of RSA Archer, but I'm not sure whether it has ESG, environmental and social governance. In the next couple of years, ESG is the next feature that will be integrated into GRC tools. I would recommend RSA Archer adds ESG.""There are certain restrictions on API integrations, and it is not simple or straightforward.""It's resource-hungry, that's the best way of putting it."

More RSA Archer Cons →

Pricing and Cost Advice
  • "They are flexible in terms of customers' needs."
  • More MetricStream Pricing and Cost Advice →

  • "The price of RSA Archer is good. The price isn't too high considering it is a leading tool in the market."
  • "As I am a developer and responsible for providing production support, I do not have personal knowledge of the pricing. However, my colleagues claim that it is very expensive in comparison with other tools."
  • "It is not expensive. It is reasonable. We only pay for the licensing."
  • "I am not 100% familiar with that, especially with their new model. I just know that the way they've licensed per user to scale is good."
  • "The solution's price should be reduced. You only have to pay the license and there are no additional fees."
  • "At the higher end of the price scale, but provides better, more accessible functionality and customization than cheaper products."
  • "Fairly highly-priced, especially for smaller companies."
  • "RSA Archer's price is justifiable and not as expensive, compared to ServiceNow. I have heard that the licensing for ServiceNow is much more expensive. I'm unaware whether there are any additional costs after licensing fees."
  • More RSA Archer Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which GRC solutions are best for your needs.
    610,229 professionals have used our research since 2012.
    Questions from the Community
    Ask a question

    Earn 20 points

    Top Answer:Clear use with the NIST compliance framework, Archer IRM 6.9.sp3.p2, use of pre-processing out of Archer and now integration with agnostic tools.  FOSS or premium brands - all depends on your supply… more »
    Top Answer:The most valuable features are the advanced workflow and the dashboards. This tool can present data wonderfully to management, and it is easy for them to manage the risk plans.
    Top Answer:An area for improvement would be the user interface. They could also offer more on-demand applications free of cost.
    Ranking
    6th
    out of 62 in GRC
    Views
    1,186
    Comparisons
    672
    Reviews
    1
    Average Words per Review
    559
    Rating
    8.0
    1st
    out of 62 in GRC
    Views
    5,167
    Comparisons
    3,287
    Reviews
    26
    Average Words per Review
    765
    Rating
    8.0
    Comparisons
    Also Known As
    Archer
    Learn More
    Overview
    Provides advanced capabilities such as risk calculators and risk heat maps for risk analysis and monitoring.

    RSA Archer is a solution designed to help your organization manage policies, controls, risks, assessments, and deficiencies across your lines of business. RSA helps you manage your digital risk with a range of capabilities and expertise including integrated risk management, threat detection and response, identity and access management, as well as fraud prevention.

    The solution also allows you to adapt a broad range of solutions to your requirements and is a good option for both big and small companies.

    RSA Archer Features

    RSA Archer has many valuable key features. Some of the most useful ones include:

    • Application builder
    • Advanced business workflow
    • System integration
    • Search, reports, and dashboards
    • Access control
    • Globalization
    • Audit management
    • Privacy program management
    • Security incident management

    RSA Archer Benefits

    There are many benefits to implementing RSA Archer. Some of the biggest advantages the solution offers include:

    • Taxonomy and data structure: With RSA Archer, you can build and maintain an inventory of personal data processing activities and assets, utilizing a purpose-built taxonomy and data structure.
    • Easy tracking: RSA Archer enables you to track data retention schedules and execute a checklist as it relates to processing activities.
    • Smooth management: By using RSA Archer, you can manage activities related to notifications and consents linked to the processing activity inventory.
    • Improve information assurance programs: RSA Archer enables agencies to improve information assurance programs for continuous monitoring and assessment and authorization.
    • Compliance: By providing compliance management, RSA Archer allows you to consolidate information from multiple regulatory bodies and establish a sustainable, repeatable, and auditable regulatory compliance program.
    • Business continuity: With RSA Archer, you can automate business continuity and disaster recovery planning to protect your organization in the event of a crisis.

    Reviews from Real Users

    Below are some reviews and helpful feedback written by PeerSpot users currently using the RSA Archer solution.

    A Specialist, RSA Archer at a tech services company, says, “RSA Archer is a valuable tool because it can manage the end-to-end functioning of any enterprise GRC module, such as compliance and risk management or business continuity plans and the entire BCM module. RSA Archer also provides many out-of-the-box solutions, which are use cases derived from the standards for GRC or risk management, governance, and compliance. It provides an end-to-end mechanism for business users on a single platform. That includes reporting, managing workflow, creating documentation, or tracking a process where you need to get approval from the various levels within the organization's hierarchy.”

    PeerSpot user Krishnendu S., Vice President at a financial services firm, mentions, "It is enterprise-wide accessible. So, it is very helpful for all the employees in our bank. They can log in and do their risk management activities. It has a few inbuilt modules that are helpful for doing risk management activities, such as issue management, risk identification, risk assessment, and policy exception management. It also has some inbuilt workflows inside these modules. They are also helpful."

    A Sr. Internal Auditor at an energy/utilities company comments, "Its user interface is pretty neat, and there is flexibility in generating the data. You can customize reports at any level. You can directly get reports in Tableau format. If you want to generate statistical data, you can create reports with graphs. There is an adequate amount of flexibility for changing the format, the type of graphs, etc."

    Another PeerSpot user, Manash B., Technology Manager at a tech services company, explains, "RSA is a very rich application. I like its adaptive suggestion, where based on your users and the class of data, it can actually recommend you the proper control to choose. For example, we have been using PCI DSS as an NIST. So based on application feedback, it will provide you with a suggestion on which control objective needs to be set. Based on that, you can make a decision—you don't need to take the suggestion, but you can customize that particular provided suggestion. RSA Archer's workflow is also good, in terms of process automation."

    Offer
    Learn more about MetricStream
    Learn more about RSA Archer
    Sample Customers
    Federal Home Loan Bank of Chicago, ACCO Brands Corporation, AgFirst Farm Credit Bank, AIB International, Associated Banc-Corp, BAE Systems, Barclaycard, Dell Inc, DIRECTV, Energizer, Fresenius Kabi, Hasbro, Goodyear, HudsonCity Savings Bank, Infigen Energy, Kaydon, Leroy Merlin, Mountry Financial Corp., Nicholas Piramal, Pepco, Pfizer, Societe Generale, Whitney Bank
    T-Systems, Bridge Point, Equifax, First Data, Global Imaging Company, Manulife Financial
    Top Industries
    VISITORS READING REVIEWS
    Computer Software Company28%
    Comms Service Provider12%
    Financial Services Firm10%
    Energy/Utilities Company6%
    REVIEWERS
    Financial Services Firm43%
    Insurance Company14%
    Energy/Utilities Company14%
    Retailer14%
    VISITORS READING REVIEWS
    Computer Software Company22%
    Financial Services Firm16%
    Comms Service Provider8%
    Government7%
    Company Size
    VISITORS READING REVIEWS
    Small Business22%
    Midsize Enterprise11%
    Large Enterprise67%
    REVIEWERS
    Small Business24%
    Midsize Enterprise7%
    Large Enterprise69%
    VISITORS READING REVIEWS
    Small Business15%
    Midsize Enterprise12%
    Large Enterprise73%
    Buyer's Guide
    GRC
    June 2022
    Find out what your peers are saying about RSA, MEGA International, OneTrust and others in GRC. Updated: June 2022.
    610,229 professionals have used our research since 2012.

    MetricStream is ranked 6th in GRC with 1 review while RSA Archer is ranked 1st in GRC with 26 reviews. MetricStream is rated 8.0, while RSA Archer is rated 8.0. The top reviewer of MetricStream writes "Reasonably priced, stable, with out of the box deployment, and has good local support". On the other hand, the top reviewer of RSA Archer writes "Complete end-to-end solution that's easy to integrate and customize". MetricStream is most compared with IBM OpenPages, OneTrust GRC, Resolver GRC Suite and ARIS Risk and Compliance Manager, whereas RSA Archer is most compared with OneTrust GRC, IBM OpenPages, Telos Xacta IA Manager, Resolver GRC Suite and Galvanize HighBond.

    See our list of best GRC vendors, best IT Governance vendors, and best IT Vendor Risk Management vendors.

    We monitor all GRC reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.