TrustRadius: an HG Insights company

Archer

Score8.4 out of 10

49 Reviews and Ratings

What is Archer?

Archer offers a platform for holistic integrated risk management solutions that empower enterprise organizations to more effectively manage risk, ensure compliance, and address emerging challenges.

Top Performing Features

  • Risk management

    Risk management capabilities including alert engine to warn of trending risk exposure and risk visualizations like heat maps, dashboards, etc.

    Category average: 7.5

  • Incident management

    System captures risk-related incidents, including cause and result

    Category average: 7.3

  • GRC policy management

    Support for policy lifestyle changes including creation, approval, communication etc.

    Category average: 7.4

Areas for Improvement

  • Integration with Corporate Performance Management (CPM) systems

    Ability to integrate with external CPM software

    Category average: 6.7

  • Common repository of GRC items

    A common repository linking all GRC elements such as policies, risks, regulations, etc.) to give a 360 degree view

    Category average: 7.6

RSA Archer-- eGRC Tool

Pros

  • The auditing feature is amazing and, also, it is the basis to opt for RSA Archer.
  • One can configure and create processes as the department needs.
  • In disaster recovery exercises, it is one of the best tools available in the market.

Cons

  • They release time to time updates, which causes issues in the GUI. However, one has to be careful while installing the update.
  • There is no open and free academy to learn more about the tool.
  • One cannot stay to a particular product version, they have to move to the next version to keep up with the changes.

Return on Investment

  • RSA Archer is giving the needed support to departments to fulfill their tasks.
  • The security department manages its policy via the RSA Archer application.
  • The business continuity department manages all of its department's BCP (Business Continuity Plans) from the application.

Other Software Used

GitHub, Team Foundation Server, Pega RPA

Archer - Risk Manager

Use Cases and Deployment Scope

RSA - Archer Integrated Risk Management Platform used for security PIN to login into the secure firm network, to avoid any data breaches or unauthorized access to the systems.

Pros

  • Verify User Authenticity
  • Quanitfies the business risks presented on a clear dashboards
  • Eliminates the use of multiple third party software's to address risk parameters.

Cons

  • Online Help system & monthly updates available for users
  • Option to link all the firm standards software's to be launched through SSO
  • Risk Patches to be embedded in firms custom built applications.

Most Important Features

  • Confirming Authenticity of the User
  • Access to role specified services or products
  • Data Protection to comply with Data Governance regulations.

Return on Investment

  • Data is the main source and protection is paramount for the success of the firm.
  • Reputation of the firm will be at stake, in case of data breaches
  • Proper authentication of users eliminates unnecessary access to restricted users.

Other Software Used

Aversafe, Agiloft Contract Lifecycle Management, OpenTable

Make GRC experience great with RSA Archer

Pros

  • Integration capabilities to multiple enterprise systems
  • Control standards and Procedures to address multiple regulatory/authoritative sources, standards and frameworks enabling test once satisfy many requiremnts
  • Rapid application development and User friendly tool with configuration capability to customize easily without user requiring programming or coding skills

Cons

  • Periodic Updates to contents on controls standards and procedures based on updates additions authoritative source and standards
  • Effectively handle changes in advanced workflow to inflight records

Return on Investment

  • Helps accomplish Business driven risk and compliance management and achieve business objectives
  • Risk based decision making helps business to focus on what is priority and what is important
  • Continuous monitoring and improvement help sustain the business operations and continuous growth

Alternatives Considered

ServiceNow and IBM OpenPages

Other Software Used

ServiceNow Governance, Risk, and Compliance, IBM OpenPages

Third Party Relationship Records and Due Diligence

Pros

  • RSA Archer provides robust ad-hoc reporting.
  • RSA Archer provides very detailed control over workflows and their customization.
  • RSA Archer provides multiple systems for the different needs of corporate governance.

Cons

  • RSA Archer scripts run particularly slow.
  • RSA Archer doesn't leverage calculated fields efficiently.
  • RSA Archer doesn't have pop-up windows or peek windows into hyperlinks.

Return on Investment

  • RSA Archer has been a great asset in demonstrating compliance to regulators
  • RSA Archer provides whole company coverage, no management of 'seats'
  • RSA Archer has unified all Risk and Compliance team reviews for a cohesive risk outlook.

Usability

Other Software Used

Microsoft Dynamics 365 (formerly Microsoft Dynamics CRM)

A strong and effective governance, risk and compliance solution

Pros

  • Visibility into key risks areas help manage budgets in addition to better decision making capability.
  • Policy management reduces workload of HR and Compliance and providing them better visibility in the system.
  • Automation of various processes including policy management, internal audit and contractual compliance is helping internal functions to reduce human factor and also to increase efficiency.
  • Dashboard view for management now helps review risks in real time.

Cons

  • User interface has improved over last few versions but it still has a room to improve.

Return on Investment

  • We were able to achieve approx 63% gain in operational efficiency.
  • Reduce the number of findings and exceptions during an Internal audit to almost zero.
  • Get compliance to all client contracts tracked through the tool thus increasing the confidence of clients in our systems and processes.

Alternatives Considered

MetricStream IT Risk Management App