Try our new research platform with insights from 80,000+ expert users

Sysdig Secure vs VMware Aria Automation comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Sysdig Secure
Ranking in Cloud Security Posture Management (CSPM)
22nd
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
12
Ranking in other categories
Container Security (17th), Cloud-Native Application Protection Platforms (CNAPP) (15th), Cloud Detection and Response (CDR) (6th), AI Observability (72nd)
VMware Aria Automation
Ranking in Cloud Security Posture Management (CSPM)
20th
Average Rating
8.0
Reviews Sentiment
6.8
Number of Reviews
171
Ranking in other categories
Cloud Management (3rd), Configuration Management (7th), Network Automation (6th), Cloud Infrastructure Entitlement Management (CIEM) (5th)
 

Mindshare comparison

As of February 2026, in the Cloud Security Posture Management (CSPM) category, the mindshare of Sysdig Secure is 2.3%, up from 1.8% compared to the previous year. The mindshare of VMware Aria Automation is 0.6%, up from 0.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Security Posture Management (CSPM) Market Share Distribution
ProductMarket Share (%)
VMware Aria Automation0.6%
Sysdig Secure2.3%
Other97.1%
Cloud Security Posture Management (CSPM)
 

Featured Reviews

MM
DevSecOps Engineer at a outsourcing company with 1,001-5,000 employees
Runtime threat detection has improved and security teams prioritize real Kubernetes risks
The best feature Sysdig Secure offers is threat detection. The threat detection feature on Sysdig Secure stands out compared to other solutions I have seen or used because Sysdig sees the actual behavior inside the container or kernel and correlates it with Kubernetes infrastructure, which makes detection both earlier and more precise in a cloud-native environment. Sysdig Secure has positively impacted our organization by improving visibility into our Kubernetes environment and focusing on real risk, which has reduced alert noise, improved threat detection at runtime, and made vulnerability management more efficient by prioritizing issues that actually affect running workloads.
reviewer2597814 - PeerSpot reviewer
IT Infrastructure Manager at a insurance company with 501-1,000 employees
Compliance is maintained effectively and automation boosts productivity but further improvements in full-time reduction are desired
I am still using VMware tools. In fact, I have to migrate to a new alternative. I do not deal with vCenter or vSphere as or other VMware products yet. I do not deal with vSphere either. I do not use the Horizon Cloud yet or Horizon Desktop. We use VMware Workstation and vRealize. I use vRealize. VMware Aria Automation is compliant. It is not difficult for them. The regulations request us to perform or to have some security managed ways, and the regulations are clear about that, including authentication and everything related to security. Based on my experience, I rate VMware Aria Automation an eight out of ten.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature is the level of support that we get. Our solutions or customer success representative is very valuable. I see them as an extension of our security team."
"The tool has the capability to conduct scans initially. It can perform scans on your virtual machines, physical machines, containers, and container images. A standout feature is its ability to scan offline container images stored in your container registry. Additionally, it can scan runtime images in your cluster or on your host machine. This allows for the detection of vulnerabilities in running containers, including loaded libraries. Notably, the tool can identify which library vulnerabilities are already present in your system. An added advantage is its capacity to take action beyond threat detection. It has the ability to block access and respond to encountered threats."
"We appreciate this feature, especially when combined with CD monitoring. The implementation of requested features has been remarkable, such as scanning for compliance in CRM processes for the US government. We heavily rely on this feature to assess compliance with federal requirements."
"Sysdig Secure has positively impacted our organization by improving visibility into our Kubernetes environment and focusing on real risk, which has reduced alert noise, improved threat detection at runtime, and made vulnerability management more efficient by prioritizing issues that actually affect running workloads."
"The proactiveness of the support has been fantastic. Every time we mention something in a meeting that we're trying to do, he proactively takes that as an investigation topic and looks into it. He'll provide the solution even though we might not have asked him to investigate it."
"From a container-based standpoint, it offers excellent scalability to its users...I would tell those planning to use the solution that, from a container standpoint, it's excellent."
"In terms of measurable outcomes, I have seen a reduction in vulnerabilities, as Sysdig Secure can tell us how many vulnerabilities are present on a day-to-day report basis, which has improved our efficiency by more than 50% and helps us stay compliant with necessary regulations."
"Sysdig Secure has many strong foundational features like compliance and benchmark, security, network access management, and vulnerability management."
"The infrastructure has helped us to greatly increase our agility."
"Our time to deliver a fully unified three-tier app, at the right version, is one-twentieth what it was before. There is no manual intervention. No IP management. It just dramatically simplifies all of our processes."
"The automation part is most valuable. Because it is a VMware product, the automation capabilities that come with vRA are pretty extensive. We can integrate and build a lot of features on top of it, which makes it extremely useful for us."
"A lot of its DevOps for infrastructure capabilities improve reliability. Much effort was put in by some customers, like a large automobile manufacturer, a large telecom, and two large banks, to achieve a certain level of capabilities in this space. These DevOps for infrastructure capabilities have saved time for developers. In one use case for a large marketplace, a typical release cycle took about 80 hours and was brought down to three hours by automating deployment for developers. The quicker that deployments happen, the faster that they can do their product release cycles."
"value; It has provided my development team a pure self-service portal. We deploy thousands of machines and reclaim. So, their time to business, and their time to market has been improved exponentially."
"It provides visibility into the VM space."
"The automation function itself and how to group and publish those groupings is quite easy for customers to learn with Aria."
"Using the VMware vRealize self-service portal, we can better manage the lifecycle."
 

Cons

"There was a security concern related to a specific feature. While the feature itself was promising, it posed a challenge. The situation revolved around code scanning. If your source code is hosted within your own premises, say on Bitbucket, you naturally wouldn't want your code to be accessible to external parties beyond your company. Keeping your code base private is a standard practice. However, in the case of code scanning using Sysdig Secure, they copy your code to their SaaS platform. This posed an issue for us. When we inquired about this, their response acknowledged the concern. In an upcoming release, they plan to enable code scanning within your on-premises environment through the assistance of an agent. This change is already in progress. While this tool stands out compared to existing solutions in the market, it's important to note that there are still some limitations to consider. Another drawback we encountered relates to our expertise with Kubernetes. The tool can monitor Kubernetes audit logs, triggering alerts and notifications. However, it falls short in terms of taking direct action based on these alerts. There are different methods of event capture, including through system labels and system calls, as well as via Kubernetes audit events. Notably, at the system level, Sysdig Secure can both detect and respond to events, allowing actions like blocking and warning. This proactive approach is effective at the system call level. However, when it comes to monitoring Kubernetes audit events, Sysdig Secure can only notify without being able to execute any further actions. It can't block access or containers. The vendor likened their role to that of a monitoring camera, observing events and sending notifications without the capacity to intervene. This limitation applies to Kubernetes audit events. Given that everything operates within our system, there is a workaround available: configuring system-level policies to block containers as necessary."
"I give it an eight because of the bugs, specifically the fix version bug where sometimes there is no fix version shown, and I wish Sysdig Secure would create a customizable UI that orders features by importance to enhance user experience."
"Sysdig Secure works well for us, but there are a few areas for improvement, such as the alerting and notification system being more flexible for complex workflows, and some dashboard and reporting features could be more customizable to match specific team needs."
"Reporting can definitely be better. Live dashboards should be configurable for a longer period of time rather than 30 days. Being able to go back in time to compare six months ago to today would be valuable."
"The solution needs to improve overall from a CSPM standpoint since they can't compete with Wiz or Orca."
"They should make it specific with a couple of features only."
"Banks and financial institutions cannot use Sysdig Secure because it doesn't sell SaaS-hosted versions for under two hundred working nodes."
"Sysdig Secure needs to scale more for complete cloud-native coverage."
"The most important thing that we missed in vRanger was the possibility to mount several images instantaneously and present it so we can run it immediately."
"One of the features that's a struggle today is some of the public cloud extensibility. Some of the plugins that are native to vRA and vRO, I'd like to see them come out earlier for vRO. I understand that in vRA, the plugins are a little bit more polished because the VRA is the GUI. But we'd like to see them released earlier in vRO, prior to a GUI being released. Azure, for example, is a public cloud provider but we have some instability issues with the plugin in vRO. It's okay for us if we separate the vRA from vRO plugin releases. So I'd like to see some increased stability in some of those public cloud plugins."
"VMware needs to make it to where it is not as custom. Right now, you spend a lot of time making the services work. In order to get it up and running initially, that takes time."
"The initial setup is very complex because we have a bunch of customization workflows. They were built-in features that we had to program as code with Orchestration."
"vRealize Automation on the back-end is still a little complicated. It has a lot of moving pieces, simplifying that from a pure infrastructure point of view would be a good thing. I would then like to have more out-of-the-box functionality and integrations with VMware components."
"Technical support could be improved. I definitely feel that the product is accelerating faster than the support engineers are able to keep up with the knowledge needed to know what's going on. The developers maintaining vRealize Automation are doing a great job improving it, but VMware is not doing a great job of training the people who we call to get support for it."
"The stability needs a lot of work. The troubleshooting component of vRealize is a pain. The administration and the upgrades are not up to the mark. If they were able to improve on that, that would be the best thing and would make it much easier to run it in the enterprise."
"It is complex to use for new users. It should have automated tools or drag-and-drop functionality."
 

Pricing and Cost Advice

"It is quite costly compared to other tools."
"In comparison to other cloud solutions, it's reasonably priced. However, when compared to in-house built open-source projects, it might be considered somewhat costly. The cost depends on whether someone sees the support provided by Sysdig as an advantage or if it's deemed unnecessary. Personally, I find the support to be excellent and consider it a good value."
"Sysdig is competitive. The quality matches the pricing. Obviously, everyone wants things to be cheaper, but if you're realistic, you acknowledge that quality service comes with a price. Sysdig is the gold standard for Kubernetes, and I wouldn't choose anything else. We live in Kubernetes. Everything is containerized, so that means a lot to us, and we're willing to make an investment."
"The solution's pricing depends on the agents...In short, the price depends on the environment of its user."
"I am always going to say that it could be a little bit cheaper. I do feel that it is a little bit on the expensive side."
"The pricing is very high."
"It is pricey for what you get."
"We have seen significant ROI. We used to have physical servers, it took 90 days to get a server, order it, buy it, and get it in. We have it down to 10 minutes, building a server with virtualization, and now that's too slow. So, we let the customer do it at their speed. Therefore, it is pretty much up in a couple of minutes and they have a server."
"The solution is pretty expensive but provides good workload management."
"VMware Aria Automation is expensive."
"SaltStack is an open-source product."
"The pricing for this solution is roughly 20% lower than the competitive products in the market."
"So much can be done with the Open Source side, and especially for smaller shops. I personally think the pricing for Enterprise is hard to justify."
report
Use our free recommendation engine to learn which Cloud Security Posture Management (CSPM) solutions are best for your needs.
881,707 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
21%
Computer Software Company
13%
Manufacturing Company
7%
Comms Service Provider
6%
Financial Services Firm
11%
Manufacturing Company
10%
Computer Software Company
9%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise2
Large Enterprise5
By reviewers
Company SizeCount
Small Business32
Midsize Enterprise24
Large Enterprise130
 

Questions from the Community

What do you like most about Sysdig Secure?
The proactiveness of the support has been fantastic. Every time we mention something in a meeting that we're trying to do, he proactively takes that as an investigation topic and looks into it. He'...
What needs improvement with Sysdig Secure?
Sysdig Secure works well for us, but there are a few areas for improvement, such as the alerting and notification system being more flexible for complex workflows, and some dashboard and reporting ...
What is your primary use case for Sysdig Secure?
Our primary use case for Sysdig Secure is runtime threat detection and vulnerability management.
What's the difference between VMware vRA (automation) and vROps (operations)?
vROP is a virtualization management solution from VMWare. It is efficient and easy to manage. You can find anything you need from the software interface. It provides complete visibility over applic...
Is there any way to try VMware Aria Automation for free?
When it comes to VMware Aria Automation, you have three choices for free runs: Hands-on Lab (HOL) Advanced lab A free trial I cannot describe in detail the second and third options as my company ...
Which sectors can benefit the most from VMware Aria Automation?
I was looking at VMware Aria Automation case studies recently and I got the impression that three main kinds of companies were using it most often: Social organizations Financial institutions and ...
 

Also Known As

No data available
VMware vRealize Automation, vRA, VMware DynamicOps Cloud Suite, SaltStack
 

Overview

 

Sample Customers

SAP Concur, Goldman Sachs, Worldpay, Experian, BigCommerce, Arkose Labs, Calendly, Noteable, Bloomreach. More here: https://sysdig.com/customers/
Rent-a-Center, Amway, Vistra Energy, Liberty Mutual
Find out what your peers are saying about Sysdig Secure vs. VMware Aria Automation and other solutions. Updated: December 2025.
881,707 professionals have used our research since 2012.