Try our new research platform with insights from 80,000+ expert users

Cloudify vs Snyk comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 11, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cloudify
Ranking in Cloud Management
33rd
Average Rating
8.0
Reviews Sentiment
7.2
Number of Reviews
12
Ranking in other categories
No ranking in other categories
Snyk
Ranking in Cloud Management
11th
Average Rating
8.2
Reviews Sentiment
7.4
Number of Reviews
50
Ranking in other categories
Application Performance Monitoring (APM) and Observability (16th), Application Security Tools (7th), Static Application Security Testing (SAST) (8th), GRC (4th), Vulnerability Management (13th), Container Security (6th), Software Composition Analysis (SCA) (1st), Software Development Analytics (2nd), Cloud Security Posture Management (CSPM) (15th), DevSecOps (2nd), Application Security Posture Management (ASPM) (2nd), AI Security (11th)
 

Mindshare comparison

As of January 2026, in the Cloud Management category, the mindshare of Cloudify is 1.6%, down from 1.8% compared to the previous year. The mindshare of Snyk is 2.1%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Management Market Share Distribution
ProductMarket Share (%)
Snyk2.1%
Cloudify1.6%
Other96.3%
Cloud Management
 

Featured Reviews

Mark Wittling - PeerSpot reviewer
Cloud Architect at Cox communications
Works very well for advanced service chaining requirements and has extremely advanced engineers for support
We had a manager who thought that Cloudify could be used as a replacement for Horizon in OpenStack, but we found that Cloudify lacked the user interface or GUI for doing multitenancy and basic platform management tasks. Cloudify was really good at launching, for example, firewalls and configuring them and doing service chaining and rather advanced things like that, but it didn't meet the requirements for a basic platform management solution. It is something that seems to work better as a bolt-on or an augmented solution. It is a bit mis-marketed as a Cloud Management solution. It is not that. It is more of a service orchestration and automation tool. It is very good at doing that, but it fails to meet basic platform management requirements. Once you have it running, you can't really do anything with it without writing code and scripts. It requires a full-time DevOps person to use it. We deployed a Palo Alto firewall with it. That's basically what the project was for us, and it worked flawlessly once we got it finished, but it took another 12 weeks to get all of the automation and everything else coded, tested, and working. There is certainly a place for this technology, but when we got rid of OpenStack and moved to VMware, we either had to go with the vRealize Automation Suite to do this kind of automation, or we had to find an alternative solution to manage the private cloud. So, we put Cloudify in, but we really couldn't find it useful for basic platform administration tasks.
Abhishek-Goyal - PeerSpot reviewer
Software Engineer at a computer software company with 11-50 employees
Improves security posture by actively reducing critical vulnerabilities and guiding remediation
Snyk's main features include open-source vulnerability scanning, code security, container security, infrastructure as code security, risk-based prioritization, development-first integration, continuous monitoring and alerting, automation, and remediation. The best features I appreciate are the vulnerability checking, vulnerability scanning, and code security capabilities, as Snyk scans all open-source dependencies for known vulnerabilities and helps with license compliance for open-source components. Snyk integrates into IDEs, allowing issues to be caught as they appear in the code dynamically and prioritizes risk while providing remediation advice. Snyk provides actionable remediation advice on where vulnerabilities can exist and where code security is compromised, automatically scanning everything and providing timely alerts. Snyk has positively impacted my organization by improving the security posture across all software repositories, resulting in fewer critical vulnerabilities, more confidence in overall product security, and faster security compliance for project clients. Snyk has helped reduce vulnerabilities significantly. Initially, the repository had 17 to 31 critical and high vulnerabilities, but Snyk has helped manage them down to just five vulnerabilities, which are now lower and not high or critical.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"TOSCA model allows modeling the application rather than the automation. It is a machine-readable representation of the application and its infrastructure, which can be used for other things too, not just for the orchestration (e.g. enterprise architecture big picture, who connects to whom)."
"Extensible internal functions and plugins. Can implement custom plugins to fit your scenario. Python based plugins."
"Cloudify works in cases where you have very advanced service chaining requirements. It really works well there, and it fits the best. They have a standardized markup that's based on TOSCA, which is a standard. I like the fact that they're standards-based. Their solution works extremely well if you have the talent and the manpower to write TOSCA descriptors to deploy and interchange services or to automate the configuration and turn up of services."
"Cloudify provides the infrastructure-as-code, as well as operational action capabilities (orchestrated startups or upgrades, and more)."
"Product has given us the ability to catch early scaling issues that many companies hit on with private clouds."
"It enables a single platform to communicate with the entire infrastructure."
"You can use only what you need. You can remove certain Cloudify functions from the framework to create a "minified" version of what you need. This might only consist of the messaging delivery system, and the orchestration functions."
"The solution includes the option to run background scripts and processes from a connected API."
"The CLI feature is quite useful because it gives us a lot of flexibility in what we want to do. If you use the UI, all the information is there and you can see what Snyk is showing you, but there is nothing else that you can change. However, when you use the CLI, then you can use commands and can get the output or response back from Snyk. You can also take advantage of that output in a different way. For the same reason, we have been using the CLI for the hard gate in the pipeline: Obtain a particular CDSS score for vulnerability. Based on that information, we can then decide if we want to block or allow the build. We have more flexibility if we use the CLI."
"The best feature of Snyk is the integration with our ticketing system, which is Jira."
"The most valuable features include enriched information around the vulnerabilities for better triaging, in terms of the vulnerability layer origin and vulnerability tree."
"The advantage of Snyk is that Snyk automatically creates a pull request for all the findings that match or are classified according to the policy that we create. So, once we review the PR within Snyk and we approve the PR, Snyk auto-fixes the issue, which is quite interesting and which isn't there in any other product out there. So, Snyk is a step ahead in this particular area."
"They evolved their maturity because they could find the vulnerabilities before the pipeline runs."
"Snyk categorizes the level of vulnerability into high, medium, and low, which helps organizations prioritize which issues to tackle first."
"What is valuable about Snyk is its simplicity."
"Snyk helps me pinpoint security errors in my code."
 

Cons

"The upgrading process could be simplified."
"Unlike the Docker environment, Cloudify takes time for configuration and its learning curve."
"It lacked the user interface for multitenancy and basic platform management tasks. It is a leader in the niche area that they like to perform in, but it only does about 30% of top-tier advanced functions of platform management. It doesn't meet about 70% of what you need to manage a private cloud platform."
"Install of the product itself could be improved and I would like to see better event monitoring."
"Error handling could be improved; GUI is lacking with respect to user privileges and connectivity."
"Certainly the UI could use some intensive work, but nevertheless, overall, it’s a complete product with its 3.4 version and much better features are available with 4.0."
"The solution is a bit of a headache because mistakes happen in the blueprint every time we deploy and they require modifications."
"Offering API access in the lower or free open-source tiers would be better. That would help our customers. If you don't have an enterprise plan, it becomes challenging to integrate with the rest of the systems. Our customers would like to have some open-source integrations in the next release."
"The solution's reporting and storage could be improved."
"Snyk should improve the scanning capabilities for other languages. For example, Veracode is strong with different languages such as Java, C#, and others."
"We have to integrate with their database, which means we need to send our entire code to them to scan, and they send us the report. A company working in the financial domain usually won't like to share its code or any information outside its network with any third-party provider."
"I use Snyk alongside Sonar, and Snyk tends to generate a lot of false positives. Improving the overall report quality and reducing false positives would be beneficial. I don't need additional features; just improving the existing ones would be enough."
"Technically, we have better vulnerabilities detection in Checkmarx and Veracode. Both of them are more precise about vulnerabilities detection."
"They were a couple of issues which happened because Snyk lacked some documentation on the integration side. Snyk is lacking a lot of documentation, and I would like to see them improve this. This is where we struggle a bit. For example, if something breaks, we can't figure out how to fix that issue. It may be a very simple thing, but because we don't have the proper documentation around an issue, it takes us a bit longer."
"We use Bamboo for CI.CD, and we had problems integrating Snyk with it. Ultimately, we got the two solutions to work together, but it was difficult."
 

Pricing and Cost Advice

"I wasn't involved in the pricing of it because we were just doing prototype work with it, but I was told by the upper management team that it was quite expensive. That was another reason we switched to Morpheus."
"The product has good pricing."
"Despite Snyk's coverage, scalability, reliability, and stability, it is available at a very competitive price."
"Presently, my company uses an open-source version of the solution. The solution's pricing can be considered quite reasonable owing to the features they offer."
"With Snyk, you get what you pay for. It is not a cheap solution, but you get a comprehensiveness and level of coverage that is very good. The dollars in the security budget only go so far. If I can maximize my value and be able to have some funds left over for other initiatives, I want to do that. That is what drives me to continue to say, "What's out there in the market? Snyk's expensive, but it's good. Is there something as good, but more affordable?" Ultimately, I find we could go cheaper, but we would lose the completeness of vision or scope. I am not willing to do that because Snyk does provide a pretty important benefit for us."
"The price of the solution is expensive compared to other solutions."
"Pricing-wise, it is not expensive as compared to other tools. If you have a couple of licenses, you can scan a certain number of projects. It just needs to be attached to them."
"Cost-wise, it's similar to Veracode, but I don't know the exact cost."
"The pricing is acceptable, especially for enterprises. I don't think it's too much of a concern for our customers. Something like $99 per user is reasonable when the stakes are high."
report
Use our free recommendation engine to learn which Cloud Management solutions are best for your needs.
881,082 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Comms Service Provider
9%
Financial Services Firm
7%
Performing Arts
7%
Financial Services Firm
15%
Computer Software Company
11%
Manufacturing Company
10%
Comms Service Provider
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business3
Large Enterprise6
By reviewers
Company SizeCount
Small Business21
Midsize Enterprise9
Large Enterprise21
 

Questions from the Community

Ask a question
Earn 20 points
How does Snyk compare with SonarQube?
Snyk does a great job identifying and reducing vulnerabilities. This solution is fully automated and monitors 24/7 to find any issues reported on the internet. It will store dependencies that you a...
What do you like most about Snyk?
The most effective feature in securing project dependencies stems from its ability to highlight security vulnerabilities.
What needs improvement with Snyk?
There are a lot of false positives that need to be identified and separated. The inclusion of AI to remove false positives would be beneficial. So far, I've not seen any AI features to enhance vuln...
 

Comparisons

 

Also Known As

No data available
Fugue, Snyk AppRisk
 

Overview

 

Sample Customers

Proximus Partner Communications (Israel) VMware NTT Data Metaswitch Spirent Communications Lumina Networks Atos Fortinet
StartApp, Segment, Skyscanner, DigitalOcean, Comic Relief
Find out what your peers are saying about Cloudify vs. Snyk and other solutions. Updated: December 2025.
881,082 professionals have used our research since 2012.