Qualys VMDR vs Rapid7 InsightVM comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 20, 2023
 

Categories and Ranking

Qualys VMDR
Ranking in Risk-Based Vulnerability Management
3rd
Average Rating
8.2
Number of Reviews
77
Ranking in other categories
IT Asset Management (7th), Configuration Management Databases (3rd), Container Security (11th)
Rapid7 InsightVM
Ranking in Risk-Based Vulnerability Management
4th
Average Rating
8.0
Number of Reviews
55
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of June 2024, in the Risk-Based Vulnerability Management category, the mindshare of Qualys VMDR is 18.4%, up from 17.8% compared to the previous year. The mindshare of Rapid7 InsightVM is 16.1%, up from 14.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Risk-Based Vulnerability Management
Unique Categories:
IT Asset Management
4.0%
Configuration Management Databases
1.9%
No other categories found
 

Featured Reviews

MN
Jan 5, 2023
The solution is efficient, with easy implementation, and simple to use
Qualys VM is used for vulnerability scans for the internet and applications using application exchange. There are many applications. We also use the solution for asset management per team, and the network scan to discover the devices on our network We have an excellent relationship with the…
AP
Apr 25, 2022
Provides good assessment, but the effectiveness of scans can be better
We implemented it to scan all the assets. In terms of deployment, in my previous organization, it was deployed on-prem, but in my current organization, it is on the cloud The assessment is most valuable. Their customer support should be improved, and the effectiveness of scans also needs to be…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Monitors workstations and servers for vulnerabilities and creates reports."
"Technical support is great and we've never really had a problem."
"Vulnerability management is the most valuable one and it’s a must in every organization."
"There are fewer false positives when using this solution."
"It's stable and quite reliable."
"Qualys VM has allowed us to know the vulnerabilities we need to prioritize based on the threat levels and the possible impact if there's an intrusion."
"I find Qualys VM very robust, and it's very useful for vulnerability management and patch management. The value that it brings to my environment is economies of scale. There is no limitation on adding any endpoints. You go by the rule, and it's added once another endpoint is added to our environment. It's automatically installed, and it's less work from our end. It frees up my license automatically if I don't need an endpoint or if my machine is decommissioned. I like the dashboard displays because I don't see any duplication. The most important part is vulnerability management and prioritization. Unlike Symantec, it shows the kind of vulnerability I would want to patch first. It provides a holistic view of the kind of vulnerabilities and the ones I should remediate first. I don't have to do a scan; it just brings up those critical kinds of vulnerabilities like zero-day vulnerabilities and tells me to prioritize them. You have to prioritize these vulnerabilities first and go on with the rest. The dashboard shows me the ones that have been fixed, so I don't have to complete an aging report. The user experience and the graphical interface are good. As it's user-friendly and understandable on an executive level, it brings real value. We also use this solution because it's robust and flexibile."
"The solution is easy to use."
"Rapid7 have a good distribution network with good support and market presence."
"When it comes to the process, installation is very easy and does not take long."
"I rate InsightVM eight out of 10 for ease of setup. It takes two or three engineers to deploy. The solution requires some maintenance. It's mainly cleaning up data."
"The performance is good."
"I really love the new platform. It is really easy to understand, use, and deploy."
"It is good and fits well with pretty much all of our use case needs."
"We are very satisfied with the reports, as they provide us with the information that is required for our management."
"It's a relevant management tool."
 

Cons

"It is more expensive vs. other products on the market."
"Improve the user interface."
"Its integration with ServiceNow and other similar products is complicated and can be improved. It should also have virtual batching. They should support more standards and compliance requirements and more customizations. For policy compliance, they can add the standards required by the countries in the Middle East. Each country generates its own standards and frameworks, and those frameworks should be there in all products, not only in Qualys. The market here is huge, especially in the cybersecurity field. Qatar has a framework for Qatar 2022, and each and every company in the public or private sector has to follow the Qatar 2022 framework."
"The customer support is very bad."
"It would be nice to have an all-in-one solution that was automated and could handle the scanning and reports as well as the patching and updating."
"When tested on Zero day, there were errors."
"I would like to see this solution simplified to work more easily in a multi-cloud environment."
"The reporting in this solution can be improved."
"There needs to be much clearer instructions surrounding scanning."
"The InsightVM cannot scan if we connect to our customer by the VPN."
"The product does not have the capability to do dynamic scanning of non-web applications."
"The reporting is a little bit tricky because it can be difficult to exactly pinpoint some of the assets to filter them and generate a report."
"Their customer support should be improved, and the effectiveness of scans also needs to be improved."
"There is a significant learning curve, that non-technical individuals, especially those not specialized in computer science or the information security industry, might face."
"They should improve the cybersecurity feature of the solution."
"Rapid7 InsightVM could be easier to use for those who are using it for the first time."
 

Pricing and Cost Advice

"The solution is costly."
"It is a high cost product. Compared to the other solutions, it is around 15 to 20% higher in cost."
"We have an annual contract for Qualys VMDR. I believe it's for either two years or five years."
"Qualys VM is quite expensive. It's a subscription-based license, and it's yearly. Right now, it's open for me, and I don't have any limitations or caps on the licenses. They are seeing if the product is viable for 4500 users. I can add as much as I want, and at the end of the subscription, they'll let me know how many licenses were actually used and bill me accordingly. On a scale from one to five, I would give their pricing a three. It's still expensive."
"Qualys VM is reasonably priced."
"They have recently changed the pricing model, which is now better than it was before."
"The product is more expensive than that of any other vendor."
"The solution is expensive."
"The license is IP based. How many IPs you are using to scan is the amount of the license you have to buy. The number of users doesn't matter; many users can use it or only person. It depends on the culture of the organization."
"I do not have experience with the pricing of the solution."
"It is pretty expensive. It depends on what you consider pricey, however, if you only look at vulnerability management solutions, such as within VM or VMDR, there are, I suppose the prices are almost the same. But I believe you will discover that for yourself."
"InsightVM is an expensive product, especially compared to its competitors, at around a million NOK per year."
"A full license for the solution is expensive because it is at the organizational level and not by individual users."
"It is less expensive compared to other competitors."
"The license is annual and this is the optimal approach when it comes to most software."
"Its price is too high. My only concern or issue with Rapid7 is its pricing."
report
Use our free recommendation engine to learn which Risk-Based Vulnerability Management solutions are best for your needs.
787,779 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
33%
Computer Software Company
11%
Financial Services Firm
11%
Manufacturing Company
6%
Educational Organization
35%
Computer Software Company
11%
Financial Services Firm
8%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What is your primary use case for Qualys VM?
Qualys VM is used for vulnerability scans for the internet and applications using application exchange. There are many applications. We also use the solution for asset management per team, and the ...
What do you like most about Qualys VMDR?
I like that we have many scanners and channels that don't overload. It helps us scan and track easily. Also, the tagging system is good for tagging. We can still use QualysAgent task ID tools even ...
What is your experience regarding pricing and costs for Qualys VMDR?
We have an annual contract for Qualys VMDR. I believe it's for either two years or five years.
How would you choose between Rapid7 InsightVM and Tenable Nessus?
You have full visibility across cloud, network, virtual, and containerized infrastructures with Rapid7 Insight VM. You can easily prioritize vulnerabilities using attacker analytics. Overall, Rapid...
What do you like most about Rapid7 InsightVM?
The product's initial setup phase was very easy.
What is your experience regarding pricing and costs for Rapid7 InsightVM?
The product is cheaper than the other similar tools available in the market.
 

Also Known As

Qualys VM, QualysGuard VM, Qualys Asset Inventory, Qualys Container Security, Qualys Virtual Scanner Appliance
InsightVM, NeXpose
 

Learn More

 

Overview

 

Sample Customers

Agrokor Group, American Specialty Health, American State Bank, Arval, Life:), Axway, Bank of the West, Blueport Commerce, BSkyB, Brinks, CaixaBank, Cartagena, Catholic Health System, CEC Bank, Cegedim, CIGNA, Clickability, Colby-Sawyer College, Commercial Bank of Dubai, University of Utah, eBay Inc., ING Singapore, National Theatre, OTP Bank, Sodexo, WebEx
ACS, Acosta, AllianceData, amazon.com, biogen idec, CBRE, CATERPILLAR, Deloitte, COACH, GameStop, IBM
Find out what your peers are saying about Qualys VMDR vs. Rapid7 InsightVM and other solutions. Updated: May 2024.
787,779 professionals have used our research since 2012.