Try our new research platform with insights from 80,000+ expert users

Prevasio vs VMware Aria Automation comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Prevasio
Ranking in Cloud Security Posture Management (CSPM)
39th
Average Rating
8.8
Reviews Sentiment
7.2
Number of Reviews
10
Ranking in other categories
Container Monitoring (11th), Cloud-Native Application Protection Platforms (CNAPP) (28th)
VMware Aria Automation
Ranking in Cloud Security Posture Management (CSPM)
17th
Average Rating
8.0
Reviews Sentiment
6.8
Number of Reviews
170
Ranking in other categories
Cloud Management (1st), Configuration Management (7th), Network Automation (3rd), Cloud Infrastructure Entitlement Management (CIEM) (6th)
 

Mindshare comparison

As of May 2025, in the Cloud Security Posture Management (CSPM) category, the mindshare of Prevasio is 0.1%, down from 0.1% compared to the previous year. The mindshare of VMware Aria Automation is 0.3%, up from 0.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Security Posture Management (CSPM)
 

Featured Reviews

Reviewer75941 - PeerSpot reviewer
An excellent, intelligent tool that is helpful for finding duplicate rules
AFA is helpful when finding duplicate rules, subnets, and policies for your ports that have not been used in the last six months. It also helps to find out which ports have been opened for all firewalls. After that, we run the reports and share them with the customer. After getting approval from the customer, if there is a block on a particular port or ports not used in a current environment, Analyzer is helpful when placing the change request of the users. In this case, AlgoSec provides the link to the user who raises the request though the automation, which is the change request. From that change request, it comes through our ticketing tools, e.g., BMC Remedy. Then, we have to check and approve it. Once it gets approved, we deploy the particular policies, as per the user's request. It provides visibility for the risk. Whenever unnecessary ports have been opened in our environment, whether by mistake or human error, a support ticket gets opened so we can find out about it in an easy way. After that, we can implement or block the particular ports if they are not necessary for the organization's production. The solution has become more helpful during the cleanup rules for the firewall, when we do those activities twice a month. For example, if a user raises a request two to three months ago, then we forget to block the particular port by human error. During the client's cleanup workshop, we can make things clearer, which is more useful for us when cleaning up unnecessary rules and ports from the firewall. AlgoSec enables us to manage these hybrid environments in a single pane of glass. It is an excellent, intelligent tool. The console is user-friendly for understanding and implementing things on firewalls. It is helpful for finding duplicate rules.
Le Quang Long - PeerSpot reviewer
Significantly streamlined operations with good automation that helps with simplifying workflows
It helps me build a big catalog and provide it to my end users. It helps us automate the workflow of creating many VMs and the TensorFlow key method. I do not meet many people to operate it live beforehand. It operates for both of my products, but as a product, it is complicated to integrate and automate with other products.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The workflow and the fact that I can follow up on a request that I've created and clearly see the status it is in are the most valuable features of this solution. When I need things to move on, for example, if the security guys didn't look at the request or the implementation is not going as it should, then I can contact people. There is a mechanism in there that clearly indicates the service level agreement we have for implementation. We can see if it is being attained."
"The firewall policy summarization is the most valuable feature. It helps us to cross-check the firewall ruleset. That's the main purpose of it. And of course, it monitors changes of the firewall policy. It provides full visibility into the risk involved in firewall change requests. It helps us to check for any integrity issues and conflicts with other rulesets, and of course the compliance."
"We have used the solution to implement and manage microsegmentation initiatives. That is the whole point of modeling towards, "Hey, how will this work for a specific situation in the end?" I think it's a great solution because a lot of companies are not just going to the cloud, but microsegmentation and service-delivered products. So, I feel like it is very capable and comparatively better than its peers, if not equal."
"We have Check Point, Palo Alto, and FortiGate firewalls, and it integrates pretty seamlessly with these firewalls. We have had no issues so far."
"The most unique feature is the ability to help fix any gaps or mismatches in the configuration of the firewall."
"The most valuable feature is the automation that can be accomplished by using scripts. If we didn't have AlgoSec, I would have to do everything manually."
"Because we get about 60 to 70 rules to deploy a week during the firewall maintenance window, we might create some duplicate rules or open duplicate ports. AlgoSec has become very helpful whenever we need to find out the nodes or subnets that have already been created, then we don't need to create the duplicate subnet of that particular IP address."
"The optimizations are the most useful aspect because most customers have a very unmanaged network with a lot of rules. We use a lot of the optimizations in our reports for improving firewall rules."
"The extensibility of the solution when it comes to writing your own ABX actions is a valuable feature. You can write it in PowerShell, JavaScript, or Python, which is great."
"The infrastructure has helped us to greatly increase our agility."
"SaltStack has given us the ability to deal with systems at scale and rectify issues at scale."
"We provided the ability to request virtual machines to our end users. Before, this was a very manual process, which took engineers to do. Now, it's an automated process."
"We have integrated our CICD pipeline into an automatic catalog request through some API calls. It can request and provision new virtual machines behind the NSX load balancer, straight out of the CIDC pipeline and add those nodes to the load balancer, request SSL certs, do SSL termination at the load balancer so that it's not encrypted behind the scenes, all of which has really been helpful."
"The most valuable feature is the consistency it delivers, at the end of the day. We know that we have consistent images based off consistent Blueprints, check-pointed or QA'ed in a consistent manner."
"Our speed of provisioning has improved. We used to build systems manually, which would take four hours or a day. Nowadays we're able to spin something up off a template... and it takes about 20 minutes."
"We can connect between multiple VMs in a matter of seconds."
 

Cons

"AlgoSec cannot be integrated with solutions that require two-step or multi-factor authentication. Embedding multi-factor authentication capability into the solution would be a valuable feature."
"There is a little bit of scope for improvement in the risk profiles that come with the AlgoSec Firewall Analyzer module. Currently, AlgoSec provides only three standard zones within a risk profile. These standard zones are external, internal, and DMZ. Everybody's network is divided into different zones within a data center, but AlgoSec only provides three zones. This is a limitation that I see for the risk profile analysis. If there was an option to customize these zones, it would be great."
"Integration with Oracle on the cloud is not supported. I would also like to see integrations with network devices in Layer 2."
"The analysis part can be improved when I make a flow request. There should be a clear analysis of which metric part needs to be opened and which firewalls will be opened. It should give you a bit more graphical visibility about these."
"Now that we've moved to the VM it is more stable and independent of hardware."
"In the new version H32, there are many, many bugs."
"When we send multiple requests across at once, sometimes it causes errors and FireFlow gets stuck. In cases like this, we have to go back in and fix it."
"The technical support response time is low. This might be due to the coronavirus pandemic situation, but I am not getting full support when working with them."
"vCenter and vRA, I believe they share two different databases so sometimes you have to somehow sync them up. I wish there was only one database between the two or, somehow, one database would rule over the other one, so if you have both products, the vCenter might use the vRA database. Otherwise, when you do stuff in vCenter, you have to write a command on vRA to update the databases."
"The initial setup was complex from beginning to delivery. The current version is a bit more complex than version 7 to deploy."
"in general, it took us a long time to get it off the ground. We had a lot of issues upfront and we determined that we just needed to scrap it. I think we scrapped it two or three times before we actually got it built the way we wanted, and we're still not where we need to be. We have had downtime. There have been some issues, but we're also two iterations behind on version."
"They could extend the ability to use vRealize Orchestrator Automation for organizations with multiple tenants. It should be easier to operate and extend different capabilities from vRealize Orchestrator. Currently, it's difficult to build advanced services in Aria Automation because you need to use the vRealize Orchestrator."
"When it comes to the orchestration workflow, you're on your own. The documentation and resources are very limited, and you have to learn everything on your own."
"We still struggle a little bit with the configuration as far as making sure that we have all the endpoints where they need to be, because that's not as agile as we'd like in the back-end. We're working towards that with our DevOps teams to make sure that we're touching the right endpoints and getting the right data."
"In terms of usability, It has had its challenges. It requires a lot of custom code to integrate into our environment. It can take a little while to get it to do what we want, takes some code instead of having built-in functionality. Part it is how we use it. It would be a lot easier to use in a greenfield scenario versus brownfield, which is the way we using it."
"The product's features for hybrid cloud integration could be better."
 

Pricing and Cost Advice

"For the South American market, the prices are very high."
"I heard that the licensing was around $100,000 a year."
"The solution is free of cost."
"So much can be done with the Open Source side, and especially for smaller shops. I personally think the pricing for Enterprise is hard to justify."
"Better pricing is always handy, but I feel it's at the right price point."
"The pricing is very high."
"We do plan to see ROI with any new implementation of new technologies being implemented within our environment."
"The solution is pretty expensive but provides good workload management."
"The solution has helped to increase infrastructure, agility, speed, and provisioning in the time to market."
"This is an expensive product and the high price is starting to become an issue for us."
report
Use our free recommendation engine to learn which Cloud Security Posture Management (CSPM) solutions are best for your needs.
850,028 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
No data available
Financial Services Firm
14%
Computer Software Company
13%
Government
9%
Manufacturing Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Ask a question
Earn 20 points
What's the difference between VMware vRA (automation) and vROps (operations)?
vROP is a virtualization management solution from VMWare. It is efficient and easy to manage. You can find anything you need from the software interface. It provides complete visibility over applic...
Is there any way to try VMware Aria Automation for free?
When it comes to VMware Aria Automation, you have three choices for free runs: Hands-on Lab (HOL) Advanced lab A free trial I cannot describe in detail the second and third options as my company ...
Which sectors can benefit the most from VMware Aria Automation?
I was looking at VMware Aria Automation case studies recently and I got the impression that three main kinds of companies were using it most often: Social organizations Financial institutions and ...
 

Also Known As

No data available
VMware vRealize Automation, vRA, VMware DynamicOps Cloud Suite, SaltStack
 

Overview

 

Sample Customers

Information Not Available
Rent-a-Center, Amway, Vistra Energy, Liberty Mutual
Find out what your peers are saying about Prevasio vs. VMware Aria Automation and other solutions. Updated: April 2025.
850,028 professionals have used our research since 2012.