Try our new research platform with insights from 80,000+ expert users

OneTrust GRC vs RSA Archer comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 1, 2024
 

Categories and Ranking

OneTrust GRC
Ranking in GRC
2nd
Ranking in IT Vendor Risk Management
1st
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
14
Ranking in other categories
No ranking in other categories
RSA Archer
Ranking in GRC
1st
Ranking in IT Vendor Risk Management
2nd
Average Rating
8.0
Reviews Sentiment
6.9
Number of Reviews
38
Ranking in other categories
IT Governance (1st)
 

Mindshare comparison

As of December 2024, in the GRC category, the mindshare of OneTrust GRC is 8.5%, down from 9.0% compared to the previous year. The mindshare of RSA Archer is 16.5%, down from 18.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
GRC
 

Featured Reviews

Gerald Pegg - PeerSpot reviewer
Streamlined incident management with user-friendly automation tools and responsive support
I use OneTrust specifically for incident management. For my company, I helped to create the incident management program that we currently use, particularly with gathering the information and sending out assessments to different vendors to collect information for further research and discovery.  I…
Raviteja Nekkanti - PeerSpot reviewer
User-friendly, minimal learning curve and good for security assessment
My use case is for security assessment. It's my daily task. I use it for security assessment in Azure. We have tickets where users need to submit details about an application, computer, or server. For Archer, my direct task is to assess the security risk of an application, infrastructure, or…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The platform is especially useful in startup environments where we're typically starting from scratch."
"The most valuable feature of the solution is that it already has visibility about all the data protection regulations or other cybersecurity regulations related to several countries"
"Vendors can be assessed and rated out of the tool, and assessments can be scheduled for updates at certain intervals."
"One of the most beneficial features of the product has been its cloud-based IT and vendor risk management tools, along with built-in templates for GDPR and ISO compliance."
"One of the valuable features of this solution is it has the ability to review fourth and fifth parties to the nth degree."
"OneTrust GRC is stable."
"The simplicity of OneTrust GRC, particularly its user interface, is valuable as it makes it easy to use and not complex."
"The privacy impact assessment automation tool and the incident management tool are very user-friendly."
"The most valuable part of the product is the ease-of-use and the opportunity to create custom security applications easily."
"Archer has simplified our security audits. It's made it easier to raise and trigger questionnaires to customers."
"Easy to implement with a high level of automation."
"First of all, its access control feature where it provides application level access, solution level access, and even recall access, as well."
"Integration is another great aspect of RSA Archer. From the beginning, integration has been a central focus for RSA, and Archer has always integrated well with most tools on the market today."
"The part I liked about Archer was the risk assessment for deficiencies and being able to use it there."
"RSA Archer is a good tool and I have found performing the application, ISMS, and TPRM assessments beneficial."
"From my perspective, because I've always done it as a consultant, I do like the way it is configured. They've gone into changing the application builder interface, so it is even easier. When you're working with users, it is really easy to show them how to do things quickly and how to configure, change, and design stuff quickly."
 

Cons

"I haven't seen any return on investment using the solution. If I had the opportunity, I would use a different solution."
"There are limitations to customized workflow automation, and they need to increase both the available automation and the customized workflow."
"I wish there were more customization options, particularly within the privacy rights automation module."
"The Vendor Risk dashboard is quite basic today and not interactive, but improvements are in coming the next releases."
"They could enhance the product's functionalities like audit management and ensure consistency across modules."
"The platform was not built in a way that allowed multinational entities to use it seamlessly."
"The implementation of OneTrust could have been smoother, particularly in terms of scoping for those outside of governance, risk, and compliance."
"We encounter difficulties creating multiple platforms or interfaces and manual processes for changing certain settings."
"The design and advanced workflow need to be improved."
"The user interface needs work. There are many small text boxes, like credit card size's boxes, where we need to input a lot of text. You can't see what you're typing beyond the tiny window, so you have to scroll or type elsewhere and copy-paste it. It's very inconvenient."
"Slow turnaround time from support team."
"Its customization features could be better."
"Recently, we made a suggestion for cross references, like for one application to another. There were limitations there, so we're hoping that will be included in the next upgrade."
"I find the tech support to be inadequately knowledgeable."
"Some of the error reporting isn't very clear. When you're looking for information on error codes, you got to do a lot of digging."
"It would be useful for customers if COBIT 2019 could be translated into different languages."
 

Pricing and Cost Advice

"OneTrust GRC is an expensive solution."
"The platform is expensive."
"On a scale from one to ten, where one is cheap, and ten is too expensive, I rate the solution a seven since it falls under the pricey side."
"OneTrust GRC's licensing costs about $15,000 per module."
"The solution is expensive."
"I found the pricing and setup cost very reasonable."
"As I am a developer and responsible for providing production support, I do not have personal knowledge of the pricing. However, my colleagues claim that it is very expensive in comparison with other tools."
"The solution's price should be reduced. You only have to pay the license and there are no additional fees."
"The pricing is okay. The licensing costs are very reasonable; it is very affordable to us."
"RSA Archer's price is justifiable and not as expensive, compared to ServiceNow. I have heard that the licensing for ServiceNow is much more expensive. I'm unaware whether there are any additional costs after licensing fees."
"The initial purchase is cheap. You pay a nominal price to start then renew the license annually. You also must buy a license for each module. I'm not too fond of that aspect of the licensing model. You buy the elephant and then spend more money to feed the elephant."
"The price of RSA Archer is good. The price isn't too high considering it is a leading tool in the market."
"Fairly highly-priced, especially for smaller companies."
"The solution is not at all a cheap product."
report
Use our free recommendation engine to learn which GRC solutions are best for your needs.
824,052 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Computer Software Company
12%
Government
7%
Healthcare Company
7%
Educational Organization
54%
Financial Services Firm
12%
Computer Software Company
5%
Manufacturing Company
4%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about OneTrust GRC?
We have data from Jira regarding addiction related to Europe as well as California. Additionally, we have data related to the Indian Data Protection Bill. Therefore, GDPR compliance is highly benef...
What is your experience regarding pricing and costs for OneTrust GRC?
I don't have specifics on pricing. I know it's not very cheap, but the budget aspect is outside my wheelhouse.
What needs improvement with OneTrust GRC?
I wish there were more customization options, particularly within the privacy rights automation module. More customization on the backend would allow for adjusting specific category labels tailored...
What do you like most about RSA Archer?
It has various valuable features. For example, showing us if a control aligns with specific standards or frameworks helps us understand it better and verify its compliance.
What needs improvement with RSA Archer?
The user interface needs work. There are many small text boxes, like credit card size's boxes, where we need to input a lot of text. You can't see what you're typing beyond the tiny window, so you ...
What is your primary use case for RSA Archer?
We primarily use the system control module and specific IT control models for ongoing risk assessment activities. We use it on a day-to-day basis.
 

Comparisons

 

Also Known As

OneTrust Vendor Risk Management
Archer
 

Learn More

 

Overview

 

Sample Customers

randstand, into, halfbrick
T-Systems, Bridge Point, Equifax, First Data, Global Imaging Company, Manulife Financial
Find out what your peers are saying about OneTrust GRC vs. RSA Archer and other solutions. Updated: November 2024.
824,052 professionals have used our research since 2012.