We performed a comparison between ARIS Risk and Compliance Manager and RSA Archer based on real PeerSpot user reviews.
Find out what your peers are saying about RSA, AuditBoard, Trend Micro and others in GRC."The most valuable feature is the risk testing, where you can attach your processes to the risk, and automatically generate all of the tests."
"RSA is a very rich application. I like its adaptive suggestion, where based on your users and the class of data, it can actually recommend you the proper control to choose. For example, we have been using PCI DSS as an NIST. So based on application feedback, it will provide you with a suggestion on which control objective needs to be set. Based on that, you can make a decision—you don't need to take the suggestion, but you can customize that particular provided suggestion. RSA Archer's workflow is also good, in terms of process automation."
"The solution has improved my organization by having everything combined to a single platform."
"With RSA Archer, an admin can set permissions for a normal user to go directly to the tool they need to input some data. Admins can then go through that and approve some requests. Also, they can log in based on these kinds of permissions, including ticketing, service patches, or upgrades."
"The most valuable features are the advanced workflow and the dashboards. This tool can present data wonderfully to management, and it is easy for them to manage the risk plans."
"The Advance Workflow feature simplifies things."
"Good dashboards and reporting features; it's easy to gather reports quickly."
"Flexible record permissions and data import features."
"The product is very flexible."
"I would like to see the modeling less strict so that connectors can be more flexible."
"There should be a way to export and get data from the system in PDF or PowerPoint presentation format. This would be a great addition."
"Archer could be improved by having more customization. I'm not sure if the backend processes have API calls and those kinds of seamless integrations, but from the front, some of the solutions are very out-of-the-box. It's not customizable, so that could be a little problematic since you have to use their features. In terms of the backend structure, I'm not too sure because I'm not a developer—I was an end user and product owner of Archer—and I don't quite know the backend and developmental features. But since it's an out-of-the-box solution, sometimes customization was challenging and support was a little problematic because we had to reach out to them all the time."
"The solution can be a little slow due to the Silverlight feature."
"In terms of what can be improved, our client always says their user experience, IU/UX in RSA Archer. They found it is not as user friendly as other tools."
"The user interface needs work. There are many small text boxes, like credit card size's boxes, where we need to input a lot of text. You can't see what you're typing beyond the tiny window, so you have to scroll or type elsewhere and copy-paste it. It's very inconvenient."
"Some areas are not truly automated but are only scheduled."
"The design and advanced workflow need to be improved."
"Solution could use more inbuilt applications."
Earn 20 points
ARIS Risk and Compliance Manager is ranked 27th in GRC while RSA Archer is ranked 1st in GRC with 38 reviews. ARIS Risk and Compliance Manager is rated 8.0, while RSA Archer is rated 8.0. The top reviewer of ARIS Risk and Compliance Manager writes "Risk testing feature enables you to attach your processes to the risk, and automatically generate all of the tests". On the other hand, the top reviewer of RSA Archer writes "A rich application with good workflow, but search feature needs improvement". ARIS Risk and Compliance Manager is most compared with , whereas RSA Archer is most compared with OneTrust GRC, IBM OpenPages, MetricStream, Workiva Wdesk and AuditBoard.
See our list of best GRC vendors.
We monitor all GRC reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.