Try our new research platform with insights from 80,000+ expert users

Snyk vs VMware Aria Operations for Applications comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Snyk
Ranking in Application Performance Monitoring (APM) and Observability
16th
Average Rating
8.2
Reviews Sentiment
7.4
Number of Reviews
50
Ranking in other categories
Application Security Tools (7th), Static Application Security Testing (SAST) (8th), GRC (4th), Cloud Management (11th), Vulnerability Management (13th), Container Security (6th), Software Composition Analysis (SCA) (1st), Software Development Analytics (2nd), Cloud Security Posture Management (CSPM) (15th), DevSecOps (2nd), Application Security Posture Management (ASPM) (2nd), AI Security (10th)
VMware Aria Operations for ...
Ranking in Application Performance Monitoring (APM) and Observability
19th
Average Rating
8.0
Reviews Sentiment
6.3
Number of Reviews
14
Ranking in other categories
IT Infrastructure Monitoring (16th), Container Monitoring (5th), Cloud Monitoring Software (15th)
 

Mindshare comparison

As of January 2026, in the Application Performance Monitoring (APM) and Observability category, the mindshare of Snyk is 1.0%, up from 0.1% compared to the previous year. The mindshare of VMware Aria Operations for Applications is 1.2%, up from 0.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Application Performance Monitoring (APM) and Observability Market Share Distribution
ProductMarket Share (%)
Snyk1.0%
VMware Aria Operations for Applications1.2%
Other97.8%
Application Performance Monitoring (APM) and Observability
 

Featured Reviews

Abhishek-Goyal - PeerSpot reviewer
Software Engineer at a computer software company with 11-50 employees
Improves security posture by actively reducing critical vulnerabilities and guiding remediation
Snyk's main features include open-source vulnerability scanning, code security, container security, infrastructure as code security, risk-based prioritization, development-first integration, continuous monitoring and alerting, automation, and remediation. The best features I appreciate are the vulnerability checking, vulnerability scanning, and code security capabilities, as Snyk scans all open-source dependencies for known vulnerabilities and helps with license compliance for open-source components. Snyk integrates into IDEs, allowing issues to be caught as they appear in the code dynamically and prioritizes risk while providing remediation advice. Snyk provides actionable remediation advice on where vulnerabilities can exist and where code security is compromised, automatically scanning everything and providing timely alerts. Snyk has positively impacted my organization by improving the security posture across all software repositories, resulting in fewer critical vulnerabilities, more confidence in overall product security, and faster security compliance for project clients. Snyk has helped reduce vulnerabilities significantly. Initially, the repository had 17 to 31 critical and high vulnerabilities, but Snyk has helped manage them down to just five vulnerabilities, which are now lower and not high or critical.
AS
Consultant at HCLTech
Automation and insightful diagnostics elevate operations while improvements are welcome
The new version 8.18 has brought significant improvements. The main purpose of using this tool is having a single console to manage all entities. The cloud integration capabilities, including private, public, and hybrid, are already well-implemented. The ability to manage multiple vCenters across different geographical locations is very effective. The new Skyline health feature and certificate and licensing management are particularly useful improvements. The dashboard's overview tab provides comprehensive information about current vCenter status, resizable amounts, reclamation opportunities, anomalies, diagnostics, licensing, and certificates. However, there is room for improvement in application analysis. The current functionality lacks detailed monitoring at the kernel level, focusing mainly on CPU, memory, and storage matrices. Enhanced application monitoring capabilities, including tracking downtime for specific types of applications such as transactional or e-commerce applications, would be beneficial.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The dependency checks of the libraries are very valuable, but the licensing part is also very important because, with open source components, licensing can be all over the place. Our project is not an open source project, but we do use quite a lot of open source components and we want to make sure that we don't have surprises in there."
"We use Snyk to check vulnerabilities and rectify potential leaks in GitHub."
"Snyk is a developer-friendly product."
"Snyk has positively impacted my organization by improving the security posture across all software repositories, resulting in fewer critical vulnerabilities, more confidence in overall product security, and faster security compliance for project clients."
"I find SCA to be valuable. It can read your libraries, your license and bring the best way to resolve your problem in the best scenario."
"Snyk has positively impacted my organization by improving the security posture across all software repositories, resulting in fewer critical vulnerabilities, more confidence in overall product security, and faster security compliance for project clients."
"Its reports are nice and provide information about the issue as well as resolution. They also provide a proper fix. If there's an issue, they provide information in detail about how to remediate that issue."
"We have integrated it into our software development environment. We have it in a couple different spots. Developers can use it at the point when they are developing. They can test it on their local machine. If the setup that they have is producing alerts or if they need to upgrade or patch, then at the testing phase when a product is being built for automated testing integrates with Snyk at that point and also produces some checks."
"People are very pleased with the implementation."
"I gladly recommend VMware Aria Operations for Applications because it is cost effective and has commendable AI response capabilities."
"The most valuable aspects of the solution are its ease of use and its ease of implementation."
"VMware comes with a support team, and if you have trouble, you can easily create a ticket, and VMware will help you. Therefore, the best aspect is the support."
"For us, the ease of deployment in combination with TMZ was the most important part because we don't have to manually deploy a complex monitoring solution. We can more or less do that with the click of a button, and we are not dependent on the developers to provide us with all the necessary features and functions to make that work. We can just deploy it on a workload cluster and monitor at least a good part of the workload. If we want to go into detail, we clearly need to make changes, but for a good part of application monitoring, it gives us good insights."
"No issues with stability."
"VMware Aria Operations for Applications offers significant features such as real-time statistics, the ability to identify possible issues within the VM environment, and helpful heat maps."
"This solution allows me to have true visibility for any metrics when it comes to my cloud, and private."
 

Cons

"A feature we would like to see is the ability to archive and store historical data, without actually deleting it. It's a problem because it throws my numbers off. When I'm looking at the dashboard's current vulnerabilities, it's not accurate."
"It would be ideal if there was customization with a focus on specific cybersecurity areas or capabilities."
"The way Snyk notifies if we have an issue, there are a few options: High vulnerability or medium vulnerability. The problem with that is high vulnerabilities are too broad, because there are too many. If you enable notifications, you get a lot of notifications, When you get many notifications, they become irrelevant because they're not specific. I would prefer to have control over the notifications and somehow decide if I want to get only exploitable vulnerabilities or get a specific score for a vulnerability. Right now, we receive too many high vulnerabilities. If we enable notifications, then we just get a lot of spam message. Therefore, we would like some type of filtering system to be built-in for the system to be more precise."
"We have seen cases where tools didn't find or recognize certain dependencies. These are known issues, to some extent, due to the complexity in the language or stack that you using. There are some certain circumstances where the tool isn't actually finding what it's supposed to be finding, then it could be misleading."
"We were using Microsoft Docker images. It was reporting some vulnerabilities, but we were not able to figure out the fix for them. It was reporting some vulnerabilities in the Docker images given by Microsoft, which were out of our control. That was the only limitation. Otherwise, it was good."
"Snyk should improve the scanning capabilities for other languages. For example, Veracode is strong with different languages such as Java, C#, and others."
"One area where Snyk could improve is in providing developers with the line where the error occurs."
"The reporting mechanism of Snyk could improve. The reporting mechanism is available only on the higher level of license. Adjusting the policy of the current setup of recording this report is something that can improve. For instance, if you have a certain license, you receive a rating, and the rating of this license remains the same for any use case. No matter if you are using it internally or using it externally, you cannot make the adjustment to your use case. It will always alert as a risky license. The areas of licenses in the reporting and adjustments can be improve"
"Its billing model is consumption-based. I understand the consumption-based model, but it is not necessarily easy to estimate and guess how many points or how much we are going to consume on a specific application up until we get to that point. So, for us, it would be helpful to have more insights or predictability into what we can expect from a cost perspective if we are starting to use specific features. This can potentially also drive our consumption a bit more."
"The main problem I have is that the license cost is very high."
"The return on investment is best suited for organizations that do not have the resources for a dedicated VM environment team. However, the cost of the product doesn't show significant benefits."
"An area for improvement would be more in-depth reporting, such as analyzing disk IO during business hours compared to after hours."
"I find that there could be improvements in the support service response time, as the urgency varies unless specified as Priority 2 or 1 cases."
"They could make it more easy to plug-in data so that a nontechnical person will be able to use it, like accountants or finance people. That way they don't have to ask us."
"The initial setup should be easier and more seamless."
"The documentation and integration with Kubernetes could be improved."
 

Pricing and Cost Advice

"The solution is less expensive than Black Duck."
"Pricing-wise, it is not expensive as compared to other tools. If you have a couple of licenses, you can scan a certain number of projects. It just needs to be attached to them."
"Snyk is a premium-priced product, so it's kind of expensive. The big con that I find frustrating is when a company charges extra for single sign-on (SSO) into their SaaS app. Snyk is one of the few that I'm willing to pay that add-on charge, but generally I disqualify products that charge an extra fee to do integrated authentication to our identity provider, like Okta or some other SSO. That is a big negative. We had to pay extra for that. That little annoyance aside, it is expensive. You get a lot out of it, but you're paying for that premium."
"Presently, my company uses an open-source version of the solution. The solution's pricing can be considered quite reasonable owing to the features they offer."
"The product's price is okay."
"I didn't think the price was that great, but it wasn't that bad, either. I'd rate their pricing as average in the market."
"Snyk is an expensive solution."
"The price is good. Snyk had a good price compared to the competition, who had higher pricing than them. Also, their licensing and billing are clear."
"The licensing costs are very high, particularly when you consider that we have to purchase a level 1 license for every integration, such as the load balancer, HAProxy, and the MSSP. And if you want to use vSAN, that's another license. Then, of course, Tanzu Observability has its own separate license."
"I would rate the pricing as three out of five."
"I don't have the details. In our case, there is a mixture in place. We have production usage, and we are also doing training for VMware. So, we also have a training instance. It is worth the money you would spend on it. That's because if you were to build all of this yourself by using some of the open source tools, then you would need a lot of time."
"Different locations require different setups. In your terms, around 300 to around 400K USD."
report
Use our free recommendation engine to learn which Application Performance Monitoring (APM) and Observability solutions are best for your needs.
879,422 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Computer Software Company
12%
Manufacturing Company
10%
Insurance Company
6%
Financial Services Firm
12%
Manufacturing Company
11%
Computer Software Company
8%
Government
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business21
Midsize Enterprise9
Large Enterprise21
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise1
Large Enterprise10
 

Questions from the Community

How does Snyk compare with SonarQube?
Snyk does a great job identifying and reducing vulnerabilities. This solution is fully automated and monitors 24/7 to find any issues reported on the internet. It will store dependencies that you a...
What do you like most about Snyk?
The most effective feature in securing project dependencies stems from its ability to highlight security vulnerabilities.
What needs improvement with Snyk?
There are a lot of false positives that need to be identified and separated. The inclusion of AI to remove false positives would be beneficial. So far, I've not seen any AI features to enhance vuln...
What is your experience regarding pricing and costs for VMware Tanzu Observability by Wavefront?
The solution includes cost drivers that can be configured according to your environment. You can input server-wise, CPU-wise, storage, and memory costs per hour or day. Once cost drivers are provid...
What needs improvement with VMware Tanzu Observability by Wavefront?
The new version 8.18 has brought significant improvements. The main purpose of using this tool is having a single console to manage all entities. The cloud integration capabilities, including priva...
What is your primary use case for VMware Tanzu Observability by Wavefront?
I have been involved in several projects where I had to implement automation and monitoring alerting. I performed automation using VMware Aria Operations for Applications. There is an automation ta...
 

Also Known As

Fugue, Snyk AppRisk
Tanzu Observability, Wavefront, Wavefront by VMware, VMware Tanzu Observability
 

Overview

 

Sample Customers

StartApp, Segment, Skyscanner, DigitalOcean, Comic Relief
1. Atlassian 2. Cisco 3. Databricks 4. DigitalOcean 5. Equinix 6. Fidelity Investments 7. Google 8. Hewlett Packard Enterprise 9. Honeywell 10. IBM 11. Intel 12. JetBlue Airways 13. LinkedIn 14. Lyft 15. Mastercard 16. Microsoft 17. MongoDB 18. Netflix 19. Nvidia 20. Oracle 21. PayPal 22. Pinterest 23. Qualcomm 24. Red Hat 25. Salesforce 26. SAP 27. Spotify 28. Square 29. TMobile 30. Twitter 31. Uber 32. VMware
Find out what your peers are saying about Snyk vs. VMware Aria Operations for Applications and other solutions. Updated: December 2025.
879,422 professionals have used our research since 2012.