We performed a comparison between Tenable Cloud Security and VMware Aria Automation based on real PeerSpot user reviews.
Find out in this report how the two Cloud Security Posture Management (CSPM) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The automation roles are essential because we ultimately want to do less work and automate more. The dashboards are easy to read and visually pleasing. You can understand things quickly, which makes it easy for our other teams. The network and infrastructure teams don't know as much about security as we do, so it helps to have a tool that's accessible and nice to look at."
"Our most important features are those around entitlement, external exposure, vulnerabilities, and container security."
"Out of all the features, the one item that has been most valuable is the fact that Wiz puts into context all the pieces that create an issue, and applies a particular risk evaluation that helps us prioritize when we need to address a misconfiguration, vulnerability, or any issue that would put our environment into risk."
"The security baseline and vulnerability assessments is the valuable feature."
"I like Wiz's reporting, and it's easy to do queries. For example, it's pretty simple to find out how many servers we have and the applications installed on each. I like Wiz's security graph because you can use it to see the whole organization even if you have multiple accounts."
"The CSPM module has been the most effective. It was easy to deploy and covered all our accounts through APIs, requiring no agents. Wiz provides instant visibility into high-level risks that we need to address."
"The solution is very user-friendly."
"The vulnerability management modules and the discovery and inventory are the most valuable features. Before using Wiz, it was a very manual process for both. After implementing it, we're able to get all of the analytics into a single platform that gives us visibility across all the systems in our cloud. We're able to correspond and understand what the vulnerability landscape looks like a lot faster."
"If you have multi-cloud tenancy using AWS and Azure, you can have a single dashboard where you can onboard all the cloud infrastructure and have visibility into it."
"The tool alerts us on depreciating performance or deficiencies of our web application. It helps us react on time."
"The key benefit lies in having the largest and most up-to-date database. When it comes to using any Tenable product, it excels in finding vulnerabilities and providing analytics."
"The product's visibility and remediation work fine for me."
"The solution’s vulnerability management feature has helped us identify and mitigate risks well."
"Ermetic can provide super visibility for our cloud environment (we are using AWS)."
"Our customers don't have to manage HVAC and space and cooling and all of those things that they used to have to do. Today, all they have to do is provision a server and manage their users."
"If you do a deployment for a proof of concept, it is simple."
"Aria Automation gives you the flexibility to deploy tenants with customized blueprints for permissions and policies. Version 7.8 consisted of multiple products, so you had to deploy a lot of virtual machines on one of the servers. Starting from 8.6, VMware consolidated all the components into one Linux appliance. This allows the option to use vRA or DevOps capabilities."
"VMware Aria Automation is a very scalable solution because it integrates well with a couple of leading products in the industry. For products that are not already integrated, there are plugins or adapters that can be used with customization."
"I can make a blueprint with an Active Directory deployment. With everything prepared, people can start installing our products."
"The product is very user-friendly."
"We have also found it to be intuitive and user-friendly. It's something that, because it has the workflows that are very easily graphed out - you can follow what it's doing, it's very picturesque, you can see what it's doing easily - it's something that you can hand over to a user who is not familiar with it and they can wrap their brain around it pretty quickly."
"Our time to deliver a fully unified three-tier app, at the right version, is one-twentieth what it was before. There is no manual intervention. No IP management. It just dramatically simplifies all of our processes."
"The only small pain point has been around some of the logging integrations. Some of the complexities of the script integrations aren't supported with some of the more automated infrastructure components. So, it's not as universal. For example, they have great support for cloud formation and other services, but if you're using another type of management utility or governance language for your infrastructure-as-code automation components, it becomes a little bit trickier to navigate that."
"Wiz's reporting capabilities could be refined a bit. They are making headway on that, but more executive-style dashboards would be nice. They just implemented a community aspect where you can share documents and feedback. This was something users had been requesting for a while. They are listening to customer feedback and making changes."
"The remediation workflow within the Wiz could be improved."
"The solution's container security could be improved."
"Given the level of visibility into all the cloud environments Wiz provides, it would be nice if they could integrate some kind of mechanism to better manage tenants on multiple platforms. For example, let's say that some servers don't have an application they need, such as an antivirus. Wiz could include an API or something to push those applications out to the servers. It would be great if you could remedy these issues directly from the Wiz platform."
"One significant issue is that the searches are case-sensitive, so finding a misconfigured resource can become very challenging."
"The reporting isn't that great. They have executive summaries, but it's only a compliance report that maps all current issues to specific controls. Whether you look at one subscription or project, regardless of the size, you will get a multipage report on how the issues in that account map to that control. Our CSO isn't going to read through that. He won't filter that out or show that to his leadership and say, "Here's what we're doing." It isn't a helpful report. They're working on it, but it's a poor executive summary."
"The only thing that needs to be improved is the number of scans per day."
"There is a need for the support team to improve their response time since it is one of the areas where the product's technical team has certain shortcomings."
"Ermetic needs to improve its security scanning. I would like to see more dynamic graphical forms."
"If Tenable Cloud Security offers a complete Cnapp solution with CWP, CIEM, and Waap security, it will be able to compete with other competitors."
"The product must provide more features."
"I do think there might be room for more integrations. This could allow for further customization and flexibility, essentially offering different functionality options to accommodate various budgets."
"I didn't find anything that wasn't useful or needed to be added."
"We would like them to improve the automation part. This is an upcoming area that we would like to focus on."
"With the workflow aspect, which has manual intervention, a policy needs to be approved by somebody. There could be better management of that piece with better templates. It is like a workflow engine, but does not have enough example templates to do certain things. A lot of people waste a lot of time trying to figure out the same thing, and everybody is trying to figure out the same thing, e.g., how to make a MySQL cluster in a Windows environment?"
"In terms of usability, It has had its challenges. It requires a lot of custom code to integrate into our environment. It can take a little while to get it to do what we want, takes some code instead of having built-in functionality. Part it is how we use it. It would be a lot easier to use in a greenfield scenario versus brownfield, which is the way we using it."
"The product's features for hybrid cloud integration could be better."
"I don't find it to be entirely user-friendly. There are a lot of complicated menus within menus within menus. Things move around from version to version."
"They should make it a little bit more dynamic, a little bit easier to deal with large-scale AD deployments. They need to make it a little more enterprise-ready. That is the one thing that kills us."
"It's not cheap."
"VMware needs to make it to where it is not as custom. Right now, you spend a lot of time making the services work. In order to get it up and running initially, that takes time."
Tenable Cloud Security is ranked 18th in Cloud Security Posture Management (CSPM) with 6 reviews while VMware Aria Automation is ranked 15th in Cloud Security Posture Management (CSPM) with 133 reviews. Tenable Cloud Security is rated 8.6, while VMware Aria Automation is rated 8.0. The top reviewer of Tenable Cloud Security writes "Provides excellent features and helps identify and mitigate risks". On the other hand, the top reviewer of VMware Aria Automation writes "Allows for a lot of orchestration or customization within our environment to suit our customers". Tenable Cloud Security is most compared with Orca Security, Prisma Cloud by Palo Alto Networks, Amazon Inspector, Tenable Security Center and Microsoft Defender for Cloud, whereas VMware Aria Automation is most compared with Red Hat Ansible Automation Platform, VMware Aria Operations, vCloud Director, Morpheus and vCenter Orchestrator. See our Tenable Cloud Security vs. VMware Aria Automation report.
See our list of best Cloud Security Posture Management (CSPM) vendors and best Cloud Infrastructure Entitlement Management (CIEM) vendors.
We monitor all Cloud Security Posture Management (CSPM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.