No more typing reviews! Try our Samantha, our new voice AI agent.

BMC Cloud Lifecycle Management vs Snyk comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 11, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

BMC Cloud Lifecycle Management
Ranking in Cloud Management
42nd
Average Rating
7.8
Reviews Sentiment
5.3
Number of Reviews
5
Ranking in other categories
Cloud Monitoring Software (45th)
Snyk
Ranking in Cloud Management
13th
Average Rating
8.2
Reviews Sentiment
7.3
Number of Reviews
51
Ranking in other categories
Application Performance Monitoring (APM) and Observability (21st), Application Security Tools (7th), Static Application Security Testing (SAST) (6th), GRC (5th), Vulnerability Management (20th), Container Security (7th), Software Composition Analysis (SCA) (1st), Software Development Analytics (2nd), Cloud Security Posture Management (CSPM) (18th), DevSecOps (3rd), Application Security Posture Management (ASPM) (2nd), AI Security (11th)
 

Mindshare comparison

As of June 2026, in the Cloud Management category, the mindshare of BMC Cloud Lifecycle Management is 1.6%, up from 0.7% compared to the previous year. The mindshare of Snyk is 1.8%, up from 0.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Management Mindshare Distribution
ProductMindshare (%)
Snyk1.8%
BMC Cloud Lifecycle Management1.6%
Other96.6%
Cloud Management
 

Featured Reviews

VB
Enterprise Solution Architect at a computer software company with 5,001-10,000 employees
Helps design blueprints in a cloud environment but the support is a major problem
One of the major problems is that support is not so good. I used to have a support expert in Spain but they left two years ago. BMC doesn't invest a lot in network automation but network automation is a major point in CLM. There aren't any experts here in Europe, maybe they have in America, I don't know. The main problem is the support in Europe. We had a lot of problems with the people who got put on our cases. The agents that we were assigned to were not so capable. They wanted to replicate the problem. If you have an incident, it takes a lot of time to troubleshoot the problem. The incident support is not so good. The technicians don't know the platform well. BMC doesn't want to invest in CLM. Two years ago we had a lot of problems. Maybe BMC realized that CLM is an end of life product.
Abhishek-Goyal - PeerSpot reviewer
Software Engineer at a computer software company with 11-50 employees
Improves security posture by actively reducing critical vulnerabilities and guiding remediation
Snyk's main features include open-source vulnerability scanning, code security, container security, infrastructure as code security, risk-based prioritization, development-first integration, continuous monitoring and alerting, automation, and remediation. The best features I appreciate are the vulnerability checking, vulnerability scanning, and code security capabilities, as Snyk scans all open-source dependencies for known vulnerabilities and helps with license compliance for open-source components. Snyk integrates into IDEs, allowing issues to be caught as they appear in the code dynamically and prioritizes risk while providing remediation advice. Snyk provides actionable remediation advice on where vulnerabilities can exist and where code security is compromised, automatically scanning everything and providing timely alerts. Snyk has positively impacted my organization by improving the security posture across all software repositories, resulting in fewer critical vulnerabilities, more confidence in overall product security, and faster security compliance for project clients. Snyk has helped reduce vulnerabilities significantly. Initially, the repository had 17 to 31 critical and high vulnerabilities, but Snyk has helped manage them down to just five vulnerabilities, which are now lower and not high or critical.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It's helped us with our automation."
"Automates Java EE Application Deployment from an SCM system."
"Supports unattended installs and image-based, script-based, or template-based provisioning."
"Integrates role-based access control with pre-configured policies for CIS, DISA, HIPAA, PCI, SOX, NIST, and SCAP documentation and remediation."
"Assesses change impact or completes an audit using multiple dashboard views."
"You can tie together your public and private cloud infrastructure into a "single pane of glass"."
"CLM has a multi-cloud portal because they have the resources to implement in various environments in various ports."
"We have many regions where more than 10000 servers are deployed, so it helps in patching and hardening of servers."
"Snyk's ability to scan all of those every time we build, and keep a running status of them and recheck them daily, is extremely valuable for making us aware of what's going on."
"Static code analysis is one of the best features of the solution."
"We feel more secure because we do have a way to measure the security and the risk factors of projects."
"The product's most valuable features are an open-source platform, remote functionality, and good pricing."
"From this perspective, Snyk looks like the most promising solution."
"Snyk allows for scaling across large organizations, accommodating tens of thousands of applications and over 60,000 repositories, making it suitable for wide-scale deployment."
"Snyk provides a lot of information on vulnerabilities, the packages being used, and their dependencies, giving good insight into the security of those packages."
"The advantage of Snyk is that Snyk automatically creates a pull request for all the findings that match or are classified according to the policy that we create. So, once we review the PR within Snyk and we approve the PR, Snyk auto-fixes the issue, which is quite interesting and which isn't there in any other product out there. So, Snyk is a step ahead in this particular area."
 

Cons

"Going to BMC for PS is not at all recommended from my experience."
"The installation and configuration can be tricky due to it being built on Remedy."
"It was complex as it does not include a good, extensive feasibility and compatibility guide."
"Needs integrations with other providers to provide a custom public cloud environment."
"One of the major problems is that support is not so good."
"Snyk has several limitations, including issues with Gradle, NPM, and Xcode, and trouble with AutoPR."
"I think they could improve the feature for automatic fixing of security breaches."
"Right now, we receive too many high vulnerabilities. If we enable notifications, then we just get a lot of spam message."
"I think Snyk should add more of a vulnerability protection feature in the tool since it is an area where it lacks."
"We would like to have upfront knowledge on how easy it should be to just pull in an upgraded dependency, e.g., even introduce full automation for dependencies supposed to have no impact on the business side of things. Therefore, we would like some output when you get the report with the dependencies. We want to get additional information on the expected impact of the business code that is using the dependency with the newer version. This probably won't be easy to add, but it would be helpful."
"The tool needs improvement in license compliance. I would like to see the integration of better policy management in the product's future release. When it comes to the organization that I work for, there are a lot of business units since we are a group of companies. Each of these companies has its specific requirements and its own appetite for risk. This should be able to reflect in flexible policies. We need to be able to configure policies that can be adjusted later or overridden by the business unit that is using the product."
"Compatibility with other products would be great."
"I would like to give further ability to grouping code repositories, in such a way that you could group them by the teams that own them, then produce alerting to those teams. The way that we are seeing it right now, the alerting only goes to a couple of places. I wish we could configure the code to go to different places."
 

Pricing and Cost Advice

Information not available
"The pricing is reasonable."
"Cost-wise, it's similar to Veracode, but I don't know the exact cost."
"It is pretty expensive. It is not a cheap product."
"We do have some missing licenses issues, especially with non-SPDX compliant one, but we expect this to be fixed soon"
"Despite Snyk's coverage, scalability, reliability, and stability, it is available at a very competitive price."
"The price of the solution is expensive compared to other solutions."
"The product's price is okay."
"The product has good pricing."
report
Use our free recommendation engine to learn which Cloud Management solutions are best for your needs.
900,644 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
17%
Insurance Company
8%
Financial Services Firm
8%
Comms Service Provider
7%
Financial Services Firm
13%
Manufacturing Company
11%
Computer Software Company
10%
Comms Service Provider
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business20
Midsize Enterprise10
Large Enterprise23
 

Questions from the Community

Ask a question
Earn 20 points
How does Snyk compare with SonarQube?
Snyk does a great job identifying and reducing vulnerabilities. This solution is fully automated and monitors 24/7 to find any issues reported on the internet. It will store dependencies that you a...
What needs improvement with Snyk?
There are a lot of false positives that need to be identified and separated. The inclusion of AI to remove false positives would be beneficial. So far, I've not seen any AI features to enhance vuln...
What is your primary use case for Snyk?
I use Snyk ( /products/snyk-reviews ) in the DevOps pipeline to identify vulnerabilities before deploying the application. It integrates with Jenkins ( /products/jenkins-reviews ).
 

Also Known As

BMC CLM
Fugue, Snyk AppRisk
 

Overview

 

Sample Customers

JDA Software, Morningstar, Orange Business Services, Wipro
StartApp, Segment, Skyscanner, DigitalOcean, Comic Relief
Find out what your peers are saying about BMC Cloud Lifecycle Management vs. Snyk and other solutions. Updated: June 2026.
900,644 professionals have used our research since 2012.