Try our new research platform with insights from 80,000+ expert users

SAP BusinessObjects GRC vs Snyk comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 11, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

SAP BusinessObjects GRC
Ranking in GRC
12th
Average Rating
7.4
Reviews Sentiment
4.2
Number of Reviews
7
Ranking in other categories
Continuous Controls Monitoring (2nd)
Snyk
Ranking in GRC
4th
Average Rating
8.2
Reviews Sentiment
7.4
Number of Reviews
50
Ranking in other categories
Application Performance Monitoring (APM) and Observability (16th), Application Security Tools (7th), Static Application Security Testing (SAST) (8th), Cloud Management (11th), Vulnerability Management (13th), Container Security (6th), Software Composition Analysis (SCA) (1st), Software Development Analytics (2nd), Cloud Security Posture Management (CSPM) (15th), DevSecOps (2nd), Application Security Posture Management (ASPM) (2nd), AI Security (11th)
 

Mindshare comparison

As of January 2026, in the GRC category, the mindshare of SAP BusinessObjects GRC is 1.5%, down from 2.0% compared to the previous year. The mindshare of Snyk is 2.3%, up from 0.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
GRC Market Share Distribution
ProductMarket Share (%)
Snyk2.3%
SAP BusinessObjects GRC1.5%
Other96.2%
GRC
 

Featured Reviews

Vishal Guthula - PeerSpot reviewer
Sr Advanced Analytics Analyst at a manufacturing company with 10,001+ employees
Experienced security and easy understanding with advanced customization enhances efficiency
Regarding automation, they could enhance features for checking real-time data when someone attempts to access data without proper permissions. Currently, we do not receive immediate alerts; we only discover issues after something goes wrong. Having prevention alerts immediately when someone triggers unauthorized actions would allow us to address these situations proactively.
Abhishek-Goyal - PeerSpot reviewer
Software Engineer at a computer software company with 11-50 employees
Improves security posture by actively reducing critical vulnerabilities and guiding remediation
Snyk's main features include open-source vulnerability scanning, code security, container security, infrastructure as code security, risk-based prioritization, development-first integration, continuous monitoring and alerting, automation, and remediation. The best features I appreciate are the vulnerability checking, vulnerability scanning, and code security capabilities, as Snyk scans all open-source dependencies for known vulnerabilities and helps with license compliance for open-source components. Snyk integrates into IDEs, allowing issues to be caught as they appear in the code dynamically and prioritizes risk while providing remediation advice. Snyk provides actionable remediation advice on where vulnerabilities can exist and where code security is compromised, automatically scanning everything and providing timely alerts. Snyk has positively impacted my organization by improving the security posture across all software repositories, resulting in fewer critical vulnerabilities, more confidence in overall product security, and faster security compliance for project clients. Snyk has helped reduce vulnerabilities significantly. Initially, the repository had 17 to 31 critical and high vulnerabilities, but Snyk has helped manage them down to just five vulnerabilities, which are now lower and not high or critical.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The best features are the scalability and flexibility to implement applications on top of the BW."
"The tool helps create reports for projects, including the creation of any ad-hoc reports"
"The customization options in the dashboards inside SAP BusinessObjects GRC are highly valuable, and the real-time monitoring feature performs effectively, allowing teams to maintain data security by restricting domain visibility."
"The stability of SAP BusinessObjects GRC is acceptable."
"We have enterprise clients for the product."
"Initial setup was straightforward. It took maybe one week."
"It is wonderful from the control perspective. The GRC tools help you in knowing what are the risk controls, how to mitigate risks, and how to ensure that there are no conflicts between the roles. From the user perspective, you get to know what are the permission risks and access risks. You get a lot of useful information."
"There are many valuable features. For example, the way the scanning feature works. The integration is cool because I can integrate it and I don't need to wait until the CACD, I can plug it in to our local ID, and there I can do the scanning. That is the part I like best."
"I am impressed with the product's security vulnerability detection. My peers in security are praising the tool for its accuracy to detect security vulnerabilities. The product is very easy to onboard. It doesn't require a lot of preparation or prerequisites. It's a bit of a plug-and-play as long as you're using a package manager or for example, you are using a GitHub repository. And that is an advantage for this tool because developers don't want to add more tools to what they're currently using."
"A main feature of Snyk is that when you go with SCA, you do get properly done security composition, also from the licensing and open-source parameters perspective. A lot of companies often use open-source libraries or frameworks in their code, which is a big security concern. Snyk deals with all the things and provides you with a proper report about whether any open-source code or framework that you are using is vulnerable. In that way, Snyk is very good as compared to other tools."
"Snyk is a developer-friendly product."
"The advantage of Snyk is that Snyk automatically creates a pull request for all the findings that match or are classified according to the policy that we create. So, once we review the PR within Snyk and we approve the PR, Snyk auto-fixes the issue, which is quite interesting and which isn't there in any other product out there. So, Snyk is a step ahead in this particular area."
"The best feature of Snyk is the integration with our ticketing system, which is Jira."
"Snyk categorizes the level of vulnerability into high, medium, and low, which helps organizations prioritize which issues to tackle first."
"Snyk has positively impacted my organization by improving the security posture across all software repositories, resulting in fewer critical vulnerabilities, more confidence in overall product security, and faster security compliance for project clients."
 

Cons

"An additional feature I would like to see is the option to add wait time and integrate sources in wait time."
"I am working on features that are not functioning as expected, which creates significant difficulties in management."
"Currently, we do not receive immediate alerts; we only discover issues after something goes wrong."
"I think the old system is better than the new one. From an improvement perspective, the tool needs to ensure that the new technologies it offers are better than the old ones."
"Technical support could be better and faster."
"We cannot actively log in to the system. It should also improve support."
"BusinessObjects is very dated. It is not that user-friendly. It should be made more user-friendly. In addition, if they could make predictive analytics an embedded part of it where people get to know what is there to offer, it would be great."
"We have to integrate with their database, which means we need to send our entire code to them to scan, and they send us the report. A company working in the financial domain usually won't like to share its code or any information outside its network with any third-party provider."
"The tool should provide more flexibility and guidance to help us fix the top vulnerabilities before we go into production."
"The reporting mechanism of Snyk could improve. The reporting mechanism is available only on the higher level of license. Adjusting the policy of the current setup of recording this report is something that can improve. For instance, if you have a certain license, you receive a rating, and the rating of this license remains the same for any use case. No matter if you are using it internally or using it externally, you cannot make the adjustment to your use case. It will always alert as a risky license. The areas of licenses in the reporting and adjustments can be improve"
"Snyk has several limitations, including issues with Gradle, NPM, and Xcode, and trouble with AutoPR."
"DAST has shortcomings, and Snyk needs to improve and overcome such shortcomings."
"The documentation sometimes is not relevant. It does not cover the latest updates, scanning, and configurations. The documentation for some things is wrong and does not cover some configuration scannings for the multiple project settings."
"Compatibility with other products would be great."
"The feature for automatic fixing of security breaches could be improved."
 

Pricing and Cost Advice

"SAP BusinessObjects GRC is expensive."
"There is a yearly licensing cost. I would rate their pricing 4 out of 5."
"The product's licensing costs involve a one-time purchase. The tool also allows others to make annual payments towards the licensing charges of the product."
"The license is costly."
"Presently, my company uses an open-source version of the solution. The solution's pricing can be considered quite reasonable owing to the features they offer."
"The solution is less expensive than Black Duck."
"The license model is based on the number of contributing developers. Snyk is expensive, for a startup company will most likely use the community edition, while larger companies will buy the licensed version. The price of Snyk is more than other SLA tools."
"The price is good. Snyk had a good price compared to the competition, who had higher pricing than them. Also, their licensing and billing are clear."
"On a scale of one to ten, where one is cheap and ten is expensive, I rate the pricing a three. It is a cheap solution."
"I didn't think the price was that great, but it wasn't that bad, either. I'd rate their pricing as average in the market."
"With Snyk, you get what you pay for. It is not a cheap solution, but you get a comprehensiveness and level of coverage that is very good. The dollars in the security budget only go so far. If I can maximize my value and be able to have some funds left over for other initiatives, I want to do that. That is what drives me to continue to say, "What's out there in the market? Snyk's expensive, but it's good. Is there something as good, but more affordable?" Ultimately, I find we could go cheaper, but we would lose the completeness of vision or scope. I am not willing to do that because Snyk does provide a pretty important benefit for us."
"The price of the solution is expensive compared to other solutions."
report
Use our free recommendation engine to learn which GRC solutions are best for your needs.
881,082 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
15%
Computer Software Company
11%
Financial Services Firm
10%
Insurance Company
7%
Financial Services Firm
15%
Computer Software Company
11%
Manufacturing Company
10%
Comms Service Provider
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business1
Large Enterprise6
By reviewers
Company SizeCount
Small Business21
Midsize Enterprise9
Large Enterprise21
 

Questions from the Community

What do you like most about SAP BusinessObjects GRC?
The tool helps create reports for projects, including the creation of any ad-hoc reports
What needs improvement with SAP BusinessObjects GRC?
Regarding automation, they could enhance features for checking real-time data when someone attempts to access data without proper permissions. Currently, we do not receive immediate alerts; we only...
What is your primary use case for SAP BusinessObjects GRC?
I work with SAP, and currently I am working with other domains such as Power BI, Microsoft, and in the AI sector. When working with Microsoft, I utilize solutions such as Intune, Configuration Mana...
How does Snyk compare with SonarQube?
Snyk does a great job identifying and reducing vulnerabilities. This solution is fully automated and monitors 24/7 to find any issues reported on the internet. It will store dependencies that you a...
What do you like most about Snyk?
The most effective feature in securing project dependencies stems from its ability to highlight security vulnerabilities.
What needs improvement with Snyk?
There are a lot of false positives that need to be identified and separated. The inclusion of AI to remove false positives would be beneficial. So far, I've not seen any AI features to enhance vuln...
 

Comparisons

 

Also Known As

BusinessObjects GRC
Fugue, Snyk AppRisk
 

Overview

 

Sample Customers

INEOS Melamines GmbH, Banco Galicia
StartApp, Segment, Skyscanner, DigitalOcean, Comic Relief
Find out what your peers are saying about SAP BusinessObjects GRC vs. Snyk and other solutions. Updated: December 2025.
881,082 professionals have used our research since 2012.