RSA Archer and Snyk compete in the governance, risk, and compliance management category. Snyk appears to have an edge due to its simplicity, precise real-time vulnerability analysis, and compatibility with DevOps environments.
Features: RSA Archer offers a configurable platform with integration capabilities and various out-of-the-box solutions. Users value the tool for managing governance, risk, and compliance information, automating data and process management, and simplifying business continuity plans. Snyk is simple to use, integrates easily with modern development tools, and provides accurate vulnerability detection. It offers seamless integration with development environments and real-time vulnerability management.
Room for Improvement: RSA Archer requires improvements in user interface customization, data management, and dashboard graphics. It should also reduce complexity in workflow design and expand cloud integration support. Snyk could enhance language support, static analysis features, and notifications. Users request better granularity in security notifications and improved reporting speed and sophistication.
Ease of Deployment and Customer Service: RSA Archer is suitable for on-premises and private cloud deployments, providing robust technical support but sometimes suffering from slow response times. Snyk, ideal for public cloud environments, offers easy deployment and strong community support but can lack depth in enterprise-scale technical support.
Pricing and ROI: RSA Archer is expensive for smaller companies, though large enterprises see value in its comprehensive features. Although Snyk’s price is premium and based on the number of committers, it offers good value with comprehensive coverage, contributing to cost efficiency in the long run. Users mention the potential reconsideration of additional charges for specific services.
It relates to the effectiveness of employees and the time taken to complete tasks manually versus using the RSA system.
The response time from RSA Archer's support team is not an issue; usually, there's no problem getting a timely response, but there could be more knowledgeable agents available.
They are responsive and perform well in technical support.
We could understand the implementation of the product and other features without the need for human interaction.
Our long-standing association has ensured smooth communication, resulting in favorable support experiences and satisfactory issue resolution.
Their response time aligns with their SLA commitments.
Scalability depends on the number of servers, including web and service servers.
The level of scalability depends on customization and how skillful our customization team is.
Snyk allows for scaling across large organizations, accommodating tens of thousands of applications and over 60,000 repositories.
Performance issues arise mainly since it is not a core service for most organizations, so the resources provided are fewer.
The tool has stability, and it allows me to automate whatever process I have.
A remaining area for improvement is integration. There should be built-in integration mechanisms, for example, for organizations switching from platforms like ServiceNow to Archer, instead of custom integrations for each client.
While the AI features are emerging and the cost is comparatively low, it's not yet up to the market standard.
It would be helpful if RSA Archer had the capability for two-way integration because, in any information technology area, having the ability to provide feedback is beneficial.
As we are moving toward GenAI, we expect Snyk to leverage AI features to improve code scanning findings.
It lacks the ability to select branches on its Web UI, forcing users to rely on CLI or CI/CD for that functionality.
The inclusion of AI to remove false positives would be beneficial.
after comparing it with other products in the market, I would rate it around six or seven out of ten, as the price is relative.
Snyk is less expensive.
After negotiations, we received a special package with a good price point.
Snyk is recognized as the cheapest option we have evaluated.
In the banking sector, Archer has been used to automate processes such as business continuity management, transitioning from manual processes to automated systems.
The tool has stability, and it allows me to automate whatever process I have.
This allows us to show end users and management where the issues lie and effectively demonstrate accountability and visibility in compliance.
Our integration of Snyk into GitHub allows us to automatically scan codebases and identify issues, which has improved efficiency.
Snyk helps detect vulnerabilities before code moves to production, allowing for integration with DevOps and providing a shift-left advantage by identifying and fixing bugs before deployment.
I appreciate the UI. It is simple, fast, and I value the precision in the tests.
Product | Market Share (%) |
---|---|
RSA Archer | 12.8% |
Snyk | 1.4% |
Other | 85.8% |
Company Size | Count |
---|---|
Small Business | 9 |
Midsize Enterprise | 6 |
Large Enterprise | 25 |
Company Size | Count |
---|---|
Small Business | 20 |
Midsize Enterprise | 9 |
Large Enterprise | 21 |
RSA Archer is a solution designed to help your organization manage policies, controls, risks, assessments, and deficiencies across your lines of business. RSA helps you manage your digital risk with a range of capabilities and expertise including integrated risk management, threat detection and response, identity and access management, as well as fraud prevention.
The solution also allows you to adapt a broad range of solutions to your requirements and is a good option for both big and small companies.
RSA Archer Features
RSA Archer has many valuable key features. Some of the most useful ones include:
RSA Archer Benefits
There are many benefits to implementing RSA Archer. Some of the biggest advantages the solution offers include:
Reviews from Real Users
Below are some reviews and helpful feedback written by PeerSpot users currently using the RSA Archer solution.
A Specialist, RSA Archer at a tech services company, says, “RSA Archer is a valuable tool because it can manage the end-to-end functioning of any enterprise GRC module, such as compliance and risk management or business continuity plans and the entire BCM module. RSA Archer also provides many out-of-the-box solutions, which are use cases derived from the standards for GRC or risk management, governance, and compliance. It provides an end-to-end mechanism for business users on a single platform. That includes reporting, managing workflow, creating documentation, or tracking a process where you need to get approval from the various levels within the organization's hierarchy.”
PeerSpot user Krishnendu S., Vice President at a financial services firm, mentions, "It is enterprise-wide accessible. So, it is very helpful for all the employees in our bank. They can log in and do their risk management activities. It has a few inbuilt modules that are helpful for doing risk management activities, such as issue management, risk identification, risk assessment, and policy exception management. It also has some inbuilt workflows inside these modules. They are also helpful."
A Sr. Internal Auditor at an energy/utilities company comments, "Its user interface is pretty neat, and there is flexibility in generating the data. You can customize reports at any level. You can directly get reports in Tableau format. If you want to generate statistical data, you can create reports with graphs. There is an adequate amount of flexibility for changing the format, the type of graphs, etc."
Another PeerSpot user, Manash B., Technology Manager at a tech services company, explains, "RSA is a very rich application. I like its adaptive suggestion, where based on your users and the class of data, it can actually recommend you the proper control to choose. For example, we have been using PCI DSS as an NIST. So based on application feedback, it will provide you with a suggestion on which control objective needs to be set. Based on that, you can make a decision—you don't need to take the suggestion, but you can customize that particular provided suggestion. RSA Archer's workflow is also good, in terms of process automation."
Snyk excels in integrating security within the development lifecycle, providing teams with an AI Trust Platform that combines speed with security efficiency, ensuring robust AI application development.
Snyk empowers developers with AI-ready engines offering broad coverage, accuracy, and speed essential for modern development. With AI-powered visibility and security, Snyk allows proactive threat prevention and swift threat remediation. The platform supports shifts toward LLM engineering and AI code analysis, enhancing security and development productivity. Snyk collaborates with GenAI coding assistants for improved productivity and AI application threat management. Platform extensibility supports evolving standards with API access and native integrations, ensuring comprehensive and seamless security embedding in development tools.
What are Snyk's standout features?Industries leverage Snyk for security in CI/CD pipelines by automating checks for dependency vulnerabilities and managing open-source licenses. Its Docker and Kubernetes scanning capabilities enhance container security, supporting a proactive security approach. Integrations with platforms like GitHub and Azure DevOps optimize implementation across diverse software environments.
We monitor all GRC reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.