We performed a comparison between Runecast and VMware Aria Automation based on real PeerSpot user reviews.
Find out what your peers are saying about Palo Alto Networks, Wiz, Microsoft and others in Cloud Security Posture Management (CSPM)."The solution is very user-friendly."
"I like Wiz's reporting, and it's easy to do queries. For example, it's pretty simple to find out how many servers we have and the applications installed on each. I like Wiz's security graph because you can use it to see the whole organization even if you have multiple accounts."
"The first thing that stood out was the ease of installation and the quick value we got out of the solution."
"The CSPM module has been the most effective. It was easy to deploy and covered all our accounts through APIs, requiring no agents. Wiz provides instant visibility into high-level risks that we need to address."
"The security baseline and vulnerability assessments is the valuable feature."
"The product supports out-of-the-box reporting with context about the asset and allows us to perform complex custom queries on UI."
"Our most important features are those around entitlement, external exposure, vulnerabilities, and container security."
"With Wiz, we get timely alerts for leaked data or any vulnerabilities already existing in our environment."
"Runecast is a good partner for VMware. Once we have installed it, we can see all the problems and issues. It also has VMware knowledge-based articles."
"The IT support for developers is nice as well because they are able to manage the environment themselves."
"If you do a deployment for a proof of concept, it is simple."
"The most valuable feature of VMware Aria Automation is the versatile automation and deployments."
"vRealize automation stability is pretty good. They are always fixing bugs. The product team is doing a great job of addressing any issues that we might have."
"We can connect between multiple VMs in a matter of seconds."
"Even with the virtualization, it would take us at least three or four days to create a VM. With vRA we have brought that down to seven minutes. The solution has helped increase infrastructure, agility, speed of provisioning, time to market, application agility. Everything got super fast."
"vRA helps automate deployment for developers. We do a lot of orchestration or customization within our environment so it will suit each of our customers. So, we have different business units who have their own templates."
"For repeated installations and provisioning of VMs, we now have a clear definition of what has been installed, and we can monitor all that stuff."
"The only thing that needs to be improved is the number of scans per day."
"The only small pain point has been around some of the logging integrations. Some of the complexities of the script integrations aren't supported with some of the more automated infrastructure components. So, it's not as universal. For example, they have great support for cloud formation and other services, but if you're using another type of management utility or governance language for your infrastructure-as-code automation components, it becomes a little bit trickier to navigate that."
"We wish there were a way, beyond providing visibility and automated remediation, to wait on a given remediation, due to a critical aspect, such as the cost associated with a particular upgrade... We would like to see preventive controls that can be applied through Wiz to protect against vulnerabilities that we're not going to be able to remediate immediately."
"The reporting isn't that great. They have executive summaries, but it's only a compliance report that maps all current issues to specific controls. Whether you look at one subscription or project, regardless of the size, you will get a multipage report on how the issues in that account map to that control. Our CSO isn't going to read through that. He won't filter that out or show that to his leadership and say, "Here's what we're doing." It isn't a helpful report. They're working on it, but it's a poor executive summary."
"The solution's container security could be improved."
"One significant issue is that the searches are case-sensitive, so finding a misconfigured resource can become very challenging."
"The remediation workflow within the Wiz could be improved."
"We would like to see improvements to executive-level reporting and data reporting in general, which we understand is being rolled out to the platform."
"The product lacks network assessment capabilities. We cannot view our network assets or scan switches, routers, or IPs for vulnerabilities and issues."
"I have not found this solution to be user-friendly. It's really complicated. The demo shows that you can automate anything but they only show basic scenarios. If you want to do anything more complicated than that, it becomes very complicated to set up."
"The initial setup was not straightforward. It was not simple, and we had a PoC. We had VMware help us deploy it, and it took them an exorbitant amount of time."
"The setup needs coding. It's not easy. It's not straightforward."
"I would like to see support for Google Cloud and Azure. Because they don't support Google and Azure today, we need something that's cohesive with our entire landscape. There is a gap right now with VMware. If you want support for these environments, you have to go elsewhere right now."
"Automation or scripting should be simplified so that administrators who are not experts can have a better grasp of automation."
"It needs to be more dynamic with variable customization to make new workloads more reliable. It also needs to be faster. We are exploring vRA version 8 right now and maybe what I'm requesting is available in the new version, but we haven't yet explored it fully."
"I don't find the solution to be intuitive and user- friendly. The GUI is really complicated. Tracking down logs and errors is very hard. Then, it takes a specialized JavaScript person to build. Also, I'm not sure how the upgrades are going now, but they definitely need to evolve the upgrade process. Finally, the logs are very generalized. Giving more of an indicator of what's actually going wrong, rather than just a generic error code, would help."
"There is an area of improvement. For example, you are migrating from a customer's existing data center to a new target data center. To facilitate this transition, you'll initially need to evaluate the customer's aging hardware hosting VMware, which is nearing the end of its operational life. The customer expresses the intention to upgrade to a newer version, necessitating an overhaul of everything in the new data center. As a Systems Integrator (SI), consultant, or architect, your recommendation would be to acquire the latest hardware with a specified configuration and then install VMware on top of it. However, there's a crucial aspect related to the infrastructure requirements for VMware to run seamlessly on that hardware. If there's an opportunity to potentially reduce these infrastructure prerequisites, it would be highly beneficial."
Runecast is ranked 24th in Cloud Security Posture Management (CSPM) with 1 review while VMware Aria Automation is ranked 15th in Cloud Security Posture Management (CSPM) with 133 reviews. Runecast is rated 9.0, while VMware Aria Automation is rated 8.0. The top reviewer of Runecast writes "Helps with risk assessments for containers, assessing security, and ensuring container compliance". On the other hand, the top reviewer of VMware Aria Automation writes "Allows for a lot of orchestration or customization within our environment to suit our customers". Runecast is most compared with VMware Aria Operations, whereas VMware Aria Automation is most compared with Red Hat Ansible Automation Platform, VMware Aria Operations, vCloud Director, Morpheus and vCenter Orchestrator.
See our list of best Cloud Security Posture Management (CSPM) vendors.
We monitor all Cloud Security Posture Management (CSPM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.