Threat Stack Cloud Security Platform vs VMware Aria Automation comparison

Cancel
You must select at least 2 products to compare!
Wiz Logo
Read 11 Wiz reviews
15,070 views|11,203 comparisons
100% willing to recommend
Threat Stack Logo
688 views|482 comparisons
88% willing to recommend
VMware Logo
142 views|113 comparisons
93% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Threat Stack Cloud Security Platform and VMware Aria Automation based on real PeerSpot user reviews.

Find out what your peers are saying about Palo Alto Networks, Wiz, Microsoft and others in Cloud Security Posture Management (CSPM).
To learn more, read our detailed Cloud Security Posture Management (CSPM) Report (Updated: April 2024).
771,157 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"The solution is very user-friendly.""The first thing that stood out was the ease of installation and the quick value we got out of the solution.""The CSPM module has been the most effective. It was easy to deploy and covered all our accounts through APIs, requiring no agents. Wiz provides instant visibility into high-level risks that we need to address.""Out of all the features, the one item that has been most valuable is the fact that Wiz puts into context all the pieces that create an issue, and applies a particular risk evaluation that helps us prioritize when we need to address a misconfiguration, vulnerability, or any issue that would put our environment into risk.""The security baseline and vulnerability assessments is the valuable feature.""With Wiz, we get timely alerts for leaked data or any vulnerabilities already existing in our environment.""The product supports out-of-the-box reporting with context about the asset and allows us to perform complex custom queries on UI.""Our most important features are those around entitlement, external exposure, vulnerabilities, and container security."

More Wiz Pros →

"We're using it on container to see when activity involving executables happens, and that's great.""The most valuable feature is the SecOps because they have our back and they help us with the reports... It's like having an extension of your team. And then, it grows with you.""An important feature of this solution is monitoring. Specifically, container monitoring.""The rules are really great. They give us more visibility and control over what's being triggered. There's a large set of rules that come out-of-the-box. We can customize them and we can create our own rules based on the traffic patterns that we see.""With Threat Stack, we quickly identified some AWS accounts which had services that would potentially be exposed and were able to remediate them prior to release of products.""We like the ability of the host security module to monitor the processes running on our servers to help us monitor activity.""There has been a measurable decrease in the meantime to remediation... because we have so many different tech verticals already collated in one place, our ability to respond is drastically different than it used to be.""The number-one feature is the monitoring of interactive sessions on our Linux machines. We run an immutable environment, so that nothing is allowed to be changed in production... We're constantly monitoring to make sure that no one is violating that. Threat Stack is what allows us to do that."

More Threat Stack Cloud Security Platform Pros →

"The most valuable features are that it's multi-tenant and the ability for scale.""The DevOps for infrastructure capabilities has saved time for our developers by automating processes and reducing provisioning time. Task time has been reduced by 40 percent.""The extensibility of the solution when it comes to writing your own ABX actions is a valuable feature. You can write it in PowerShell, JavaScript, or Python, which is great.""value; It has provided my development team a pure self-service portal. We deploy thousands of machines and reclaim. So, their time to business, and their time to market has been improved exponentially.""The most valuable feature is vRA’s ability to integrate whether with additional VMware vRealize suites or other vendors' cloud products.""Upgrades have been extremely simple with their Lifecycle Manager product.""The customer can set up multiple machine blueprints. Therefore, we are able to customize the template of three machines, then the customer can deploy without knowing anything about the IT business.""compare-to-competition; Citrix was on our short list. But over the last ten years, we have been a big VMware shop. We wanted to continue with VMware because we are confident that VMware can address any kind of problem situation, any challenges. But with Citrix, we didn't find that kind of credibility when we did solution testing, a PoC."

More VMware Aria Automation Pros →

Cons
"The only small pain point has been around some of the logging integrations. Some of the complexities of the script integrations aren't supported with some of the more automated infrastructure components. So, it's not as universal. For example, they have great support for cloud formation and other services, but if you're using another type of management utility or governance language for your infrastructure-as-code automation components, it becomes a little bit trickier to navigate that.""Given the level of visibility into all the cloud environments Wiz provides, it would be nice if they could integrate some kind of mechanism to better manage tenants on multiple platforms. For example, let's say that some servers don't have an application they need, such as an antivirus. Wiz could include an API or something to push those applications out to the servers. It would be great if you could remedy these issues directly from the Wiz platform.""The solution's container security could be improved.""The remediation workflow within the Wiz could be improved.""The reporting isn't that great. They have executive summaries, but it's only a compliance report that maps all current issues to specific controls. Whether you look at one subscription or project, regardless of the size, you will get a multipage report on how the issues in that account map to that control. Our CSO isn't going to read through that. He won't filter that out or show that to his leadership and say, "Here's what we're doing." It isn't a helpful report. They're working on it, but it's a poor executive summary.""We're looking at some of the data compliance stuff that they've got Jon offer. I know they're looking at container security, which we gonna be looking at next.""We wish there were a way, beyond providing visibility and automated remediation, to wait on a given remediation, due to a critical aspect, such as the cost associated with a particular upgrade... We would like to see preventive controls that can be applied through Wiz to protect against vulnerabilities that we're not going to be able to remediate immediately.""We would like to see improvements to executive-level reporting and data reporting in general, which we understand is being rolled out to the platform."

More Wiz Cons →

"The API - which has grown quite a bit, so we're still learning it and I can't say whether it still needs improvement - was an area that had been needing it.""Some features do not work as expected.""The user interface can be a little bit clunky at times... There's a lot of information that needs to be waded through, and the UI just isn't great.""The solution’s ability to consume alerts and data in third-party tools (via APIs and export into S3 buckets) is moderate. They have some work to do in that area... The API does not mimic the features of the UI as far as reporting and pulling data out go. There's a big discrepancy there.""I would like further support of Windows endpoint agents or the introduction of support for Windows endpoint agents.""They could give a few more insights into security groups and recommendations on how to be more effective. That's getting more into the AWS environment, specifically. I'm not sure if that's Threat Stack's plan or not, but I would like them to help us be efficient about how we're setting up security groups. They could recommend separation of VPCs and the like - really dig into our architecture. I haven't seen a whole lot of that and I think that's something that, right off the bat, could have made us smarter.""It shoots back a lot of alerts.""The one thing that we know they're working on, but we don't have through the tool, is the application layer. As we move to a serverless environment, with AWS Fargate or direct Lambda, that's where Threat Stack does not have the capacity to provide feed. Those are areas that it's blind to now..."

More Threat Stack Cloud Security Platform Cons →

"The setup is difficult. You need a technical person to help you set it up.""Stability has gotten a lot better. However, the vRO aspect, when you have a multi vRA head, is a little bit finicky still. vRO still needs to stay on one appliance and be one application, because, when you have two, you can't see runs on the other one that are happening when you're not logged into that one.""In terms of additional features, I would like it to be able to poll my vCenter infrastructure more rapidly and adapt to changes quickly. It should alert me and let me know when there are broken components, as a result of underlying infrastructure changes. It needs to be more stringent.""It is not intuitive or user-friendly. It's complicated as heck. We actually hired VMware Professional Services to come in. I understand the newer version, which we're not quite on yet, is easier and that the interface is better. But the product is really a profession unto itself. The user interface could be improved on.""I would like them to improve the product training.""The initial setup is complex. There are too many components to integrate, especially when we integrated with different storage types and backup vendors. All the integration made it more complex.""They can improve on the dashboard representations and the options for non-technical people. I would like to see the ability to customize that and maybe provide them with helpful guides to what subscriptions they have. Sometimes, I find that I have to do more explanation to people who do approvals. I would really like to customize the display to the terms they use in their particular business unit. So a little bit more of a nod to the customization of the UI for non-technical users would be helpful.""Automation or scripting should be simplified so that administrators who are not experts can have a better grasp of automation."

More VMware Aria Automation Cons →

Pricing and Cost Advice
  • "The pricing seems pretty simple. We don't have to do a lot of calculations to figure out what the components are. They do it by enabling specific features, either basics or advanced, which makes it easy to select."
  • "The pricing is fair. Some of the more advanced features and functionalities and how the tiers are split can be somewhat confusing."
  • "The pricing is fair and comparable to their competitors. The cost seems to be going up, which is a concern. There are potential savings from consolidating tools, but we're uncertain how Wiz's pricing will change over time."
  • "I wish the pricing was more transparent."
  • "The cost of the other solutions is comparable to Wiz."
  • "Wiz is a moderately priced solution, where it is neither cheap nor costly."
  • More Wiz Pricing and Cost Advice →

  • "It is a cost-effective choice versus other solutions on the market."
  • "Pricing seems to be in line with the market structure. It's fine."
  • "It is very expensive compared to some other products. The pricing is definitely high."
  • "I'm happy with the amount that we spend for the product that we get and the overall service that we get. It's not cheap, but I'm still happy with the spend."
  • "We find the licensing and pricing very easy to understand and a good value for the services provided."
  • "It came in cheaper than Trend Micro when we purchased it a few years ago."
  • "What we're paying now is somewhere around $15 to $20 per agent per month, if I recall correctly. The other cost we have is SecOps."
  • More Threat Stack Cloud Security Platform Pricing and Cost Advice →

  • "From the customer perspective, the value was worth it."
  • "I'm very interested in the integration with Puppet. However, my organization doesn't have the funding for something like Puppet right now. If VMware would integrate that feature set (Puppet) into vRA. That would be very awesome."
  • "Better pricing is always handy, but I feel it's at the right price point."
  • "We have seen significant ROI. We used to have physical servers, it took 90 days to get a server, order it, buy it, and get it in. We have it down to 10 minutes, building a server with virtualization, and now that's too slow. So, we let the customer do it at their speed. Therefore, it is pretty much up in a couple of minutes and they have a server."
  • "The solution has helped to increase infrastructure, agility, speed, and provisioning in the time to market."
  • "There is confusion between licensing levels. There are three different licensed versions of vRealize Automation, and there are different things which can happen in each of them."
  • "vRealize automation really should be a front door to the whole VMware suite of products."
  • "As far as value is concerned, it has been essential to our environment. We have been able to deploy VMs quickly and the developers have their own sandbox, so they can spin up and destroy VMs at their own will."
  • More VMware Aria Automation Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Cloud Security Posture Management (CSPM) solutions are best for your needs.
    771,157 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:Wiz and Lacework sucks... Buy Orca. 
    Top Answer:Whether or not the cost of third-party Cloud Security tools is justified would depend on your specific needs and budget… more »
    Top Answer:With Wiz, we get timely alerts for leaked data or any vulnerabilities already existing in our environment.
    Top Answer:It is reported that an option exists to customize the dashboard in the Threat Stack Cloud Security Platform. You may be… more »
    Top Answer:vROP is a virtualization management solution from VMWare. It is efficient and easy to manage. You can find anything you… more »
    Top Answer:When it comes to VMware Aria Automation, you have three choices for free runs Hands-on Lab (HOL) Advanced lab A free… more »
    Top Answer:I was looking at VMware Aria Automation case studies recently and I got the impression that three main kinds of… more »
    Comparisons
    Also Known As
    Threat Stack, CSP,
    VMware vRealize Automation, vRA, VMware DynamicOps Cloud Suite
    Learn More
    Threat Stack
    Video Not Available
    Overview

    Wiz is a highly efficient solution for data security posture management (DSPM), with a 100% API-based approach that provides quick connectivity and comprehensive scans of platform configurations and workloads. The solution allows companies to automatically correlate sensitive data with relevant cloud context, such as public exposure, user identities, entitlements, and vulnerabilities.This integration enables them to understand data accessibility, configuration, usage, and movement within their internal environments.

    Wiz's Security Graph delivers automated alerts whenever risks emerge, allowing teams to prioritize and address the most critical issues before they escalate into breaches. Furthermore, Wiz ensures rapid and agentless visibility into critical data across various repositories, enabling organizations to easily determine the location of their data assets.

    Wiz Features

    Wiz provides various features in the following categories:

    • Agentless Scanning: The solution can scan every layer of a cloud environment without requiring agents, managing the entire process and providing comprehensive visibility.

    • Workflow Integration: Users can create customized workflows within Wiz to identify and assign actions based on urgency, integrating them with ticketing systems for quick and efficient remediation.

    • Vulnerability Management: Wiz's vulnerability management modules provide detailed analytics and visibility across cloud systems, streamlining the manual process of vulnerability discovery. The automated attack path analysis helps identify risks and trace potential points of exposure, allowing users to understand and mitigate them effectively and proactively.

    • CSPM (Cloud Security Posture Management): Wiz's CSPM module offers instant visibility into high-level risks to an enterprise’s cloud environment, covering all accounts without the need for agents.

    • Out-of-the-Box Reporting and Custom Queries: The service supports comprehensive reporting with asset context, allowing users to perform complex custom queries on the solution’s user-friendly interface.

    • Automation Roles and Dashboards: The solution facilitates automation by providing essential roles and dedicated dashboards that enable teams to understand security information quickly, even those with limited expertise.

    • Contextual Risk Evaluation: The service contextualizes the various components contributing to an issue, providing a risk evaluation framework that helps prioritize remediation efforts.

    • Security Graph and Visibility: Wiz's security graph offers visibility across the entire organization, even with multiple accounts, enabling users to understand their environment and assets effectively.

    The Benefits of Wiz

    Wiz offers the following benefits:


    • Comprehensive agentless scanning

    • Effective identification and mitigation of vulnerabilities

    • Streamlined vulnerability management

    • Robust reporting capabilities and customizable queries

    • Enhanced automation and role-based access control

    • Prioritized risk evaluation for efficient remediation

    • Security posture across multiple accounts

    Reviews from Real Users

    Kamran Siddique, VP Information Security at boxed.com, remarks his company has seen a ROI while using Wiz, as it simplifies the process by integrating multiple useful tools into one solution.

    According to a Senior Security Architect at Deliveroo, Wiz has given their company a fresh approach to vulnerability management, as Wiz's native integrations are extremely useful and paramount to the operational success of their platform.



    Get a demo | Wiz

    Threat Stack Cloud Security Platform is a CWPP (Cloud Workload Protection Platform) that provides your organization with comprehensive security for modern applications and APIs. It is designed specifically for monitoring cloud environments, vulnerabilities, covering workloads, infrastructure, and compliance. The solution offers application infrastructure protection for all layers of your infrastructure stack and delivers the necessary observability for proactive and targeted remediation action. In addition, it is platform-independent and easily adapts to various environments. Threat Stack Cloud Security Platform works best for companies who want real-time protection against active external threats and need to reduce alert investigation time. It is ideal for small, medium, or large-sized organizations.

    Threat Stack Cloud Security Platform Features

    Threat Stack Cloud Security Platform has many valuable key features. Some of the most useful ones include:

    • High-efficacy threat detection
    • App deployment speed
    • Increased visibility
    • Remediation integration
    • Security and compliance telemetry
    • Built-in and configurable rules
    • ML and advanced analytics
    • Integrations with third-party SecOps tools
    • File integrity monitoring
    • Host-based intrusion detection
    • Vulnerability assessment
    • Fully integrated IDS functionality
    • Real-time alerts and threat response

    Threat Stack Cloud Security Platform Benefits

    There are many benefits to implementing Threat Stack Cloud Security Platform. Some of the biggest advantages the solution offers include:

    • All-in-one solution: Because Threat Stack Cloud Security Platform offers everything you need in one solution, you don’t need to integrate multiple security solutions in the cloud or spend time manually tweaking the desired functionality.
    • Continuous proactive monitoring: Threat Stack Cloud Security Platform provides continuous proactive monitoring across your full infrastructure stack. It monitors your web application, can track risky behavior from the point of deployment, can scan your operating system, detect any unusual patterns in file hosting, and analyze other server events in real time.
    • Real-time protection: The solution offers protection from active intrusion attempts and gives you visibility into ongoing events on the server so you can discover data breaches before it’s too late.
    • Flexibility: The Threat Stack Cloud Security Platform is tailored to your server’s specific operating system deployment and remains accessible to you no matter how your infrastructure changes or scales over time.
    • Quick threat detection: Because Threat Stack Cloud Security Platform can quickly isolate problems, issues are less likely to cause damage and can be remediated faster.
    • Monitoring for reactive, proactive, and interactive threats: The solution is designed to detect even the most evasive discrepancies in your server events.

    Reviews from Real Users

    Below are some reviews and helpful feedback written by PeerSpot users currently using the Threat Stack Cloud Security Platform solution.

    Skyler C., Software Development Manager at Rent Dynamics, says, “The most valuable feature is the SecOps because they have our back and they help us with the reports. We jump on calls monthly to set goals and roadmaps internally for how we can secure our platform more. Their SecOps program is absolutely amazing when you do not have a dedicated resource for security.”

    An IT Engineer at a consultancy mentions, “The platform has a good threat and vulnerability manager with very helpful technical support. The scalability is great.”

    VMware Aria Automation is a cloud management tool that allows companies to simplify their cloud experience through a modern automation platform. The solution is designed to deliver self-service clouds, multi-cloud automation with governance, and DevOps-based security and infrastructure management. It helps organizations improve IT agility, efficiency, and productivity through its various features. 

    VMware Aria Automation has multiple use cases that include the following:

    • Self-service multi-cloud: VMware Aria Automation can be used to deliver consistent self-service consumption. Another use case in this area is for delivering infrastructure across VMware Clouds as well as public clouds.

    • Multi-cloud governance: The solution can be used to manage cost, performance, networking, configuration, and security at scale for multi-cloud environments. VMware Aria Automation offers all this with an everything-as-code approach.

    • DevOps for infrastructure: Through VMware Aria Automation, companies can enable a powerful infrastructure as code platform with support for iterative development and infrastructure pipelining.

    • Kubernetes automation: Users can utilize VMware Aria Automation to automate the management of Kubernetes clusters and namespaces with support for vSphere with Tanzu.

    • Security operations: VMware Aria Automation facilitates event-driven automation to deliver full-service IT system compliance enforcement and vulnerability remediation.

    VMware Aria Automation Features

    VMware Aria Automation has various features that allow users to easily perform operations. Some of the solution's capacities include:

    • VMware Cloud agnostic template: This feature allows organizations to use a single cloud template to deploy with Infrastructure as a Code. Deployment options include VMware Cloud as well as major public cloud platforms such as Amazon AWS, Microsoft Azure, Google Cloud, and more.

    • Extensibility and customization: This VMware Aria Automation feature allows users to get full extensibility and customization. This can be achieved through Aria Automation Orchestrator, Action-Based Extensibility (ABX), and built-in integrations with common third-party tools.

    • Self-service multi-cloud: This feature enables users to request and provision infrastructure resources. It can be done across clouds using a unified and consistent Infrastructure as a Service (IaaS) consumption layer, idempotent REST API, and self-service catalog.

    • Centralized policies and governance: VMware Aria Automation offers a feature for users to manage multiple clouds with templatized cloud and policy definition, automated remediation, and cloud environment visibility.

    • Configuration management: Through this feature of the product, day 1 and 2 control can be achieved for virtualized and cloud environments. This can be done with intuitive configuration automation, compliance enforcement, and vulnerability remediation.

    • Infrastructure pipelining: Through this feature, organizations can access user-friendly release automation pipelines. They can be specifically tailored for CI/CD in infrastructure use cases.

    VMware Aria Automation Benefits

    VMware Aria Automation offers its users various benefits. Some of the biggest advantages that the solution brings to companies that utilize it include:

    • VMware Aria Automation provides faster time to market for companies through offloading manual tasks with advanced workflows and agile templating.

    • The solution offers high levels of security and control.

    • This product is suitable for beginners, as it offers a self-service consumption experience for users.

    • VMware Aria Automation accelerates innovation through Infrastructure as Code and DevOps principles.

    • The product provides users with flexibility, as it is compatible with the most popular public cloud solutions.

    • The solution offers fast deployment because of all natively integrated functions.

    Reviews from Real Users

    Awais J., CTO/CEO at a tech services company, likes VMware Aria Automation because it saves a lot of time, provides more visibility, and has extensive automation capabilities.

    An IT consultant at a government rates VMware Aria Automation highly because the product gives you flexibility to analyze and consume resources.

    Sample Customers
    Wiz is the fastest growing software company ever - $100M ARR in 18 months: Wiz becomes the fastest-growing software company ever | Wiz Blog  Discover why companies, including Salesforce, Morgan Stanley, Fox, and Bridgewater choose Wiz as their cloud security partner. Read their success stories here: Customers | Wiz
    StatusPage.io, Walkbase, Spanning, DNAnexus, Jobcase, Nextcapital, Smartling, Veracode, 6sense
    Rent-a-Center, Amway, Vistra Energy, Liberty Mutual
    Top Industries
    REVIEWERS
    Computer Software Company33%
    Retailer11%
    Outsourcing Company11%
    Manufacturing Company11%
    VISITORS READING REVIEWS
    Computer Software Company16%
    Financial Services Firm14%
    Manufacturing Company9%
    Government6%
    VISITORS READING REVIEWS
    Computer Software Company24%
    Financial Services Firm13%
    University7%
    Government6%
    REVIEWERS
    Financial Services Firm18%
    Healthcare Company15%
    Comms Service Provider11%
    Government9%
    VISITORS READING REVIEWS
    Financial Services Firm15%
    Computer Software Company14%
    Government9%
    Manufacturing Company8%
    Company Size
    REVIEWERS
    Small Business15%
    Midsize Enterprise23%
    Large Enterprise62%
    VISITORS READING REVIEWS
    Small Business21%
    Midsize Enterprise15%
    Large Enterprise65%
    REVIEWERS
    Small Business22%
    Midsize Enterprise56%
    Large Enterprise22%
    VISITORS READING REVIEWS
    Small Business26%
    Midsize Enterprise12%
    Large Enterprise62%
    REVIEWERS
    Small Business12%
    Midsize Enterprise9%
    Large Enterprise79%
    VISITORS READING REVIEWS
    Small Business18%
    Midsize Enterprise14%
    Large Enterprise69%
    Buyer's Guide
    Cloud Security Posture Management (CSPM)
    April 2024
    Find out what your peers are saying about Palo Alto Networks, Wiz, Microsoft and others in Cloud Security Posture Management (CSPM). Updated: April 2024.
    771,157 professionals have used our research since 2012.

    Threat Stack Cloud Security Platform is ranked 31st in Cloud Security Posture Management (CSPM) while VMware Aria Automation is ranked 15th in Cloud Security Posture Management (CSPM) with 133 reviews. Threat Stack Cloud Security Platform is rated 8.2, while VMware Aria Automation is rated 8.0. The top reviewer of Threat Stack Cloud Security Platform writes "SecOps program for us, as a smaller company, is amazing; they know what to look for". On the other hand, the top reviewer of VMware Aria Automation writes "Allows for a lot of orchestration or customization within our environment to suit our customers". Threat Stack Cloud Security Platform is most compared with Darktrace, AWS GuardDuty, Palo Alto Networks URL Filtering with PAN-DB, Qualys VMDR and Prisma Cloud by Palo Alto Networks, whereas VMware Aria Automation is most compared with Red Hat Ansible Automation Platform, VMware Aria Operations, vCloud Director, Morpheus and vCenter Orchestrator.

    See our list of best Cloud Security Posture Management (CSPM) vendors.

    We monitor all Cloud Security Posture Management (CSPM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.