

Snyk and Harness are competing products in the DevOps ecosystem. Snyk has the upper hand in security features, while Harness offers superior delivery automation capabilities, making it appealing for organizations prioritizing delivery.
Features: Snyk provides excellent vulnerability scanning, open-source dependency management, and container security, appealing to security-focused teams. Harness offers robust continuous delivery and deployment automation, feature flagging, and pipeline templatization, ideal for streamlining delivery pipelines.
Room for Improvement: Snyk could enhance its integration capabilities and expand its vulnerability database's comprehensiveness. Improving user interface intuitiveness and adding more customization options could be beneficial. Harness could improve cost-effectiveness and simplify its initial setup process. More advanced analytics and reporting features would enhance its offerings.
Ease of Deployment and Customer Service: Snyk offers a straightforward deployment process with integrations into popular development environments, supported by solid customer service. Harness provides a smooth deployment experience with comprehensive onboarding support, including personalized guidance, appealing to organizations seeking detailed implementation support.
Pricing and ROI: Snyk offers competitive pricing models with attractive ROI due to its cost-efficient vulnerability management features. Harness may have higher initial setup costs but justifies its investment with transformative benefits in deployment efficiency, offering higher ROI for organizations focused on maximizing DevOps efficiency.
By adopting templates and various different pipelines across our own IDP platform, we have saved upwards of 30 to 40% of development time.
Time is saved because we now save engineering time. Before, it required two to three engineers actively monitoring production during deployments, but after starting to use Harness, there is zero or minimal manual monitoring.
With Harness, the release process decreased from three or four hours to one or two hours, making deployments much quicker.
I can see that Snyk saves the costs of hiring security developers for vulnerability scanning and security checks, as that responsibility is now managed by Snyk.
We have rarely faced issues with Harness tech support.
Harness customer support is really helpful anytime I try to reach out; they are available to assist with any issues I am facing.
We have been receiving incident reports whenever an incident occurs on Harness, and they are usually quick to respond.
Our long-standing association has ensured smooth communication, resulting in favorable support experiences and satisfactory issue resolution.
Their response time aligns with their SLA commitments.
We could understand the implementation of the product and other features without the need for human interaction.
Our entire organization uses it with hundreds of applications, and it supports this scale effectively.
It is able to work on our infrastructure side, which is EKS, and we are able to handle our organization growth effectively for an enterprise use case.
When I integrated Harness to more than 20 applications in one place, it becomes less stable.
Snyk allows for scaling across large organizations, accommodating tens of thousands of applications and over 60,000 repositories.
Snyk is very scalable and can handle my organization's growth and changing needs.
We have rarely faced issues with Harness tech support.
Harness is decently stable.
There is not a lot of good support for pipeline as code, and I often find myself not using pipeline as code the way other platforms such as GitHub Actions or Jenkins integrate pipeline as code.
An improvement idea is better guided onboarding with more opinionated defaults and examples.
Previously, when deploying a version that had been deployed successfully before, it sometimes failed upon trying again, which seems to be an intermittent issue about stability.
It lacks the ability to select branches on its Web UI, forcing users to rely on CLI or CI/CD for that functionality.
The inclusion of AI to remove false positives would be beneficial.
As we are moving toward GenAI, we expect Snyk to leverage AI features to improve code scanning findings.
From what I understand with respect to Harness, licensing and setup costs were relatively low for an enterprise, and the pricing was more catered toward enterprises who would invest in the technology.
Snyk is recognized as the cheapest option we have evaluated.
After negotiations, we received a special package with a good price point.
Snyk is less expensive.
Harness uses AI to suggest errors in case of deployment failures.
Meantime to recovery (MTTR) improved from 30 to 60 minutes before Harness to 5 to 10 minutes now.
The best features in Harness are its user-friendliness and setup configuration.
Our integration of Snyk into GitHub allows us to automatically scan codebases and identify issues, which has improved efficiency.
Snyk helps detect vulnerabilities before code moves to production, allowing for integration with DevOps and providing a shift-left advantage by identifying and fixing bugs before deployment.
Snyk has positively impacted my organization by improving the security posture across all software repositories, resulting in fewer critical vulnerabilities, more confidence in overall product security, and faster security compliance for project clients.
| Product | Market Share (%) |
|---|---|
| Snyk | 5.3% |
| Harness | 0.6% |
| Other | 94.1% |

| Company Size | Count |
|---|---|
| Large Enterprise | 7 |
| Company Size | Count |
|---|---|
| Small Business | 21 |
| Midsize Enterprise | 9 |
| Large Enterprise | 21 |
Harness offers a comprehensive toolset for automating deployment processes and enhancing software update efficiency. It's lauded for its CI/CD capabilities, feature flagging, and real-time deployment monitoring. Key features include an intuitive UI, secret management, and robust rollback functionalities, all contributing to improved productivity and reduced errors in DevOps environments.
Snyk excels in integrating security within the development lifecycle, providing teams with an AI Trust Platform that combines speed with security efficiency, ensuring robust AI application development.
Snyk empowers developers with AI-ready engines offering broad coverage, accuracy, and speed essential for modern development. With AI-powered visibility and security, Snyk allows proactive threat prevention and swift threat remediation. The platform supports shifts toward LLM engineering and AI code analysis, enhancing security and development productivity. Snyk collaborates with GenAI coding assistants for improved productivity and AI application threat management. Platform extensibility supports evolving standards with API access and native integrations, ensuring comprehensive and seamless security embedding in development tools.
What are Snyk's standout features?Industries leverage Snyk for security in CI/CD pipelines by automating checks for dependency vulnerabilities and managing open-source licenses. Its Docker and Kubernetes scanning capabilities enhance container security, supporting a proactive security approach. Integrations with platforms like GitHub and Azure DevOps optimize implementation across diverse software environments.
We monitor all Static Application Security Testing (SAST) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.