We performed a comparison between Broadcom Control Compliance Suite and RSA Archer based on real PeerSpot user reviews.
Find out what your peers are saying about RSA, IBM, MetricStream and others in IT Governance."I find the vulnerability assessment and asset prioritization feature valuable."
"I have found all the features to be valuable, including those involving reporting, the dashboard, notifications, email modules, the database and data input."
"It has various valuable features. For example, showing us if a control aligns with specific standards or frameworks helps us understand it better and verify its compliance."
"RSA is a very rich application. I like its adaptive suggestion, where based on your users and the class of data, it can actually recommend you the proper control to choose. For example, we have been using PCI DSS as an NIST. So based on application feedback, it will provide you with a suggestion on which control objective needs to be set. Based on that, you can make a decision—you don't need to take the suggestion, but you can customize that particular provided suggestion. RSA Archer's workflow is also good, in terms of process automation."
"This solution helped us with the centralization of our governance data, so we could house all of our controls in one place. We could use that central repository of all our controls to build our risk management strategy and our policy and governance. So we could use controls as a central library and build policy, and then build risk management around it."
"Archer has simplified our security audits. It's made it easier to raise and trigger questionnaires to customers."
"The last project was for an investment group that was using Excel. Shifting their records from one position to another took approximately 15 minutes. In Archer, we created a workflow for them to leverage it, and they could send the single record with one click to one person within seconds. The whole process went from 15 minutes to two minutes to get the approval for the records. The main purpose of Archer is to just make it easy."
"Makes auditing much more convenient."
"Good dashboards and reporting features; it's easy to gather reports quickly."
"The support mechanism can be improved."
"Some of the error reporting isn't very clear. When you're looking for information on error codes, you got to do a lot of digging."
"Archer could be improved by having more customization. I'm not sure if the backend processes have API calls and those kinds of seamless integrations, but from the front, some of the solutions are very out-of-the-box. It's not customizable, so that could be a little problematic since you have to use their features. In terms of the backend structure, I'm not too sure because I'm not a developer—I was an end user and product owner of Archer—and I don't quite know the backend and developmental features. But since it's an out-of-the-box solution, sometimes customization was challenging and support was a little problematic because we had to reach out to them all the time."
"The user interface needs work. There are many small text boxes, like credit card size's boxes, where we need to input a lot of text. You can't see what you're typing beyond the tiny window, so you have to scroll or type elsewhere and copy-paste it. It's very inconvenient."
"There are certain restrictions on API integrations, and it is not simple or straightforward."
"When we have to do formulas or some other type of calculation in Archer, it sometimes doesn't work correctly. The fields don't display right, and we have to contact RSA Archer support to fix things. I think the calculation components are a bit complicated."
"There should be a way to export and get data from the system in PDF or PowerPoint presentation format. This would be a great addition."
"There is no inbuilt alert in Archer to let us know that a data feed has failed or did not run for different reasons. So, we don't even get to know that a feed has not run until somebody reports it to us. This has been a problem all the time. Data feeds have always been a big headache for us because there is no feature to let us know if a feed has not run or has failed. If Archer had a feature to send us an email notification when a feed has failed, it would've been very helpful. This is the reason why our users are slowly moving away to another platform. Some of the modules that I have been managing are being moved to ServiceNow. Next year, a lot of our modules will be moved from RSA Archer to ServiceNow, and the data feed issue has been one of the main reasons."
"I would like to have the ability to build and maintain an inventory of personal data processing activities and assets utilizing a purpose-built taxonomy and data structure."
More Broadcom Control Compliance Suite Pricing and Cost Advice →
Earn 20 points
Broadcom Control Compliance Suite is ranked 8th in IT Governance while RSA Archer is ranked 1st in IT Governance with 38 reviews. Broadcom Control Compliance Suite is rated 8.0, while RSA Archer is rated 8.0. The top reviewer of Broadcom Control Compliance Suite writes "A good security tool for vulnerability assessment and asset prioritization". On the other hand, the top reviewer of RSA Archer writes "A rich application with good workflow, but search feature needs improvement". Broadcom Control Compliance Suite is most compared with , whereas RSA Archer is most compared with OneTrust GRC, IBM OpenPages, MetricStream, Workiva Wdesk and AuditBoard.
See our list of best IT Governance vendors.
We monitor all IT Governance reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.