Archer offers a platform for holistic integrated risk management solutions that empower enterprise organizations to more effectively manage risk, ensure compliance, and address emerging challenges.
N/A
Hyperproof
Score 9.3 out of 10
N/A
Hyperproof is a platform for doing work in the security assurance, privacy and corporate compliance realms. Hyperproof helps users get started with a compliance framework and gauge audit-preparedness posture in real-time.
RSA Archer is fantastic at cataloguing, personalizing assessments, raw reporting, and capacity to add custom fields. It is a little clunky around adding contextual information to notifications, peeking into data before attempting to load pages, quick navigation or determining linked (or sub-linked) relationships. These are all concerns that can either be worked around with an appropriate data scheme or with careful administration of the sub-routines.
Hypeproof is great for large organisations with mature InfoSec & Compliance teams. It helps streamline compliance activities and decentralize evidence collection to ensure that business teams take ownership. It may not be suitable for extremely small companies with not very mature compliance & infosec teams
Integration capabilities to multiple enterprise systems
Control standards and Procedures to address multiple regulatory/authoritative sources, standards and frameworks enabling test once satisfy many requiremnts
Rapid application development and User friendly tool with configuration capability to customize easily without user requiring programming or coding skills
Good tool to get the information communicated, approval workflow, and easy to add new findings/questionnaires. Seems to be compatible with different browsers and little downtime. Only request for improvement is to add an export feature with fewer clicks. Maybe batch export.
Hyperproof is generally intuitive once configured, with clear workflows, labels, and search that make it easy for control owners and HR to find and maintain evidence in our SOX / SOC2 Audits. Some nuances in how tags are used for evidence mean auditors occasionally miss tagged items or do not naturally look in the right tag, which can cause extra back‑and‑forth during audits.
Our RSA Archer team is dedicated to finding solutions for our organization. They haven't mentioned any issues with receiving support with deployment or bug fixes, and generally the platform is very dependable. They are always very excited about delivering a version upgrade and presenting any new features that provide more dashboards or chart types.
It has been roughly 5 years since I have seen Securevue, so a lot can change, but to me it felt like several products were purchased and an attempt was made to piece them all together into a single solution (and I believe that may have been true). It also required agents on endpoints which did not fit the model I believed customers were looking for. MetricStream appeared to be difficult to install as it took their own engineers some time to get it installed in my lab environment. I did not think their web interface was as intuitive as RSA Archer. Customization to the platform was possible to some degree, but required a lot more work and technical skills than required by Archer. I did like the landing page for MetricStream which called out the important action items for the current user, but Archer v6.X now has this feature.
As mentioned previously, it won't compare to the market leaders where you'll be paying 5 times the price. It compares nicely against OneTrust and offers greater usability.