

RSA Archer and Snyk compete in the realm of governance, risk, and compliance management. RSA Archer stands out for its advanced customization and robust security, though Snyk has an edge with simpler integration into developer workflows and extensive development environment support.
Features: RSA Archer is known for its high configurability, offering enterprise-wide governance, risk, and compliance management with robust security and enterprise module integration. It provides excellent automation for business processes and comprehensive data integration. Snyk offers powerful tools aimed at vulnerability management and emphasizes simplicity, making it easy to incorporate into existing developer workflows. It provides real-time notifications and a comprehensive vulnerability database.
Room for Improvement: RSA Archer is often seen as expensive with intuitive improvements needed in dashboarding and reporting. Users desire enhanced integration and customization capabilities. Snyk lacks static and dynamic analysis features and could benefit from more programming language support and refined notification filtering.
Ease of Deployment and Customer Service: RSA Archer primarily supports on-premises and hybrid deployments and is backed by a strong support community, though tech support experiences vary. Snyk predominantly provides cloud deployment options, simplifying scalability and integration, supported by a robust community and effective technical assistance.
Pricing and ROI: RSA Archer is considered high-priced, potentially deterring smaller enterprises, but offers substantial ROI through streamlined compliance processes. Snyk, although also perceived as costly, provides competitive pricing tailored for developers, offering significant value and efficiency in managing code vulnerabilities. Both solutions justify their costs through the benefits provided, with Archer focusing on larger organizations and Snyk on a developer-centric model.
It relates to the effectiveness of employees and the time taken to complete tasks manually versus using the RSA system.
I can see that Snyk saves the costs of hiring security developers for vulnerability scanning and security checks, as that responsibility is now managed by Snyk.
They are responsive and perform well in technical support.
The response time from RSA Archer's support team is not an issue; usually, there's no problem getting a timely response, but there could be more knowledgeable agents available.
Our long-standing association has ensured smooth communication, resulting in favorable support experiences and satisfactory issue resolution.
Their response time aligns with their SLA commitments.
We could understand the implementation of the product and other features without the need for human interaction.
Scalability depends on the number of servers, including web and service servers.
The level of scalability depends on customization and how skillful our customization team is.
Snyk allows for scaling across large organizations, accommodating tens of thousands of applications and over 60,000 repositories.
Snyk is very scalable and can handle my organization's growth and changing needs.
Till now, we did not face any scaling issues and I did not hear of any.
Performance issues arise mainly since it is not a core service for most organizations, so the resources provided are fewer.
The tool has stability, and it allows me to automate whatever process I have.
While the AI features are emerging and the cost is comparatively low, it's not yet up to the market standard.
A remaining area for improvement is integration. There should be built-in integration mechanisms, for example, for organizations switching from platforms like ServiceNow to Archer, instead of custom integrations for each client.
It would be helpful if RSA Archer had the capability for two-way integration because, in any information technology area, having the ability to provide feedback is beneficial.
It lacks the ability to select branches on its Web UI, forcing users to rely on CLI or CI/CD for that functionality.
The inclusion of AI to remove false positives would be beneficial.
As we are moving toward GenAI, we expect Snyk to leverage AI features to improve code scanning findings.
after comparing it with other products in the market, I would rate it around six or seven out of ten, as the price is relative.
Snyk is recognized as the cheapest option we have evaluated.
After negotiations, we received a special package with a good price point.
Snyk is less expensive.
In the banking sector, Archer has been used to automate processes such as business continuity management, transitioning from manual processes to automated systems.
This allows us to show end users and management where the issues lie and effectively demonstrate accountability and visibility in compliance.
The tool has stability, and it allows me to automate whatever process I have.
Our integration of Snyk into GitHub allows us to automatically scan codebases and identify issues, which has improved efficiency.
Snyk helps detect vulnerabilities before code moves to production, allowing for integration with DevOps and providing a shift-left advantage by identifying and fixing bugs before deployment.
Snyk has positively impacted my organization by improving the security posture across all software repositories, resulting in fewer critical vulnerabilities, more confidence in overall product security, and faster security compliance for project clients.
| Product | Mindshare (%) |
|---|---|
| RSA Archer | 5.9% |
| Snyk | 1.8% |
| Other | 92.3% |

| Company Size | Count |
|---|---|
| Small Business | 9 |
| Midsize Enterprise | 6 |
| Large Enterprise | 25 |
| Company Size | Count |
|---|---|
| Small Business | 20 |
| Midsize Enterprise | 9 |
| Large Enterprise | 23 |
RSA Archer provides robust risk management, compliance, and vendor management with intuitive features for customizable and streamlined governance tasks.
RSA Archer delivers integrated solutions supporting risk management and compliance tasks. Its adaptive interface and customizable options enhance workflows, making it valuable for organizations requiring automation, advanced workflows, and easy integration capabilities. While offering flexibility and configuration power, users note potential enhancements for integration, reporting, and interface updates.
What are the key features of RSA Archer?In the finance, public, and IT sectors, RSA Archer is utilized for managing risk and compliance. Organizations leverage its capabilities for third-party risk, policy management, and security assessments, providing tailored solutions for regulatory compliance and operational risk management. Integration with platforms like ServiceNow enhances its utility within enterprise environments.
Snyk excels in integrating security within the development lifecycle, providing teams with an AI Trust Platform that combines speed with security efficiency, ensuring robust AI application development.
Snyk empowers developers with AI-ready engines offering broad coverage, accuracy, and speed essential for modern development. With AI-powered visibility and security, Snyk allows proactive threat prevention and swift threat remediation. The platform supports shifts toward LLM engineering and AI code analysis, enhancing security and development productivity. Snyk collaborates with GenAI coding assistants for improved productivity and AI application threat management. Platform extensibility supports evolving standards with API access and native integrations, ensuring comprehensive and seamless security embedding in development tools.
What are Snyk's standout features?
What benefits can users expect?
Industries leverage Snyk for security in CI/CD pipelines by automating checks for dependency vulnerabilities and managing open-source licenses. Its Docker and Kubernetes scanning capabilities enhance container security, supporting a proactive security approach. Integrations with platforms like GitHub and Azure DevOps optimize implementation across diverse software environments.
We monitor all GRC reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.