Vulnerability Management, Detection, and Response (VMDR) is a cornerstone product of the Qualys TruRisk Platform and a global leader in the enterprise-grade vulnerability management (VM) vendor space. With VMDR, enterprises are empowered with visibility and insight into cyber risk exposure - making it easy to prioritize vulnerabilities, assets, or groups of assets based on business risk. Security teams can take action to mitigate risk, helping the business measure their actual risk exposure over time.
Product | Market Share (%) |
---|---|
Qualys VMDR | 7.1% |
Wiz | 11.7% |
Tenable Nessus | 8.4% |
Other | 72.80000000000001% |
Type | Title | Date | |
---|---|---|---|
Category | Vulnerability Management | Aug 25, 2025 | Download |
Product | Reviews, tips, and advice from real users | Aug 25, 2025 | Download |
Comparison | Qualys VMDR vs Tenable Nessus | Aug 25, 2025 | Download |
Comparison | Qualys VMDR vs Wiz | Aug 25, 2025 | Download |
Comparison | Qualys VMDR vs Tenable Security Center | Aug 25, 2025 | Download |
Title | Rating | Mindshare | Recommending | |
---|---|---|---|---|
Wiz | 4.5 | 11.7% | 95% | 22 interviewsAdd to research |
ServiceNow | 4.2 | N/A | 91% | 223 interviewsAdd to research |
Company Size | Count |
---|---|
Small Business | 20 |
Midsize Enterprise | 9 |
Large Enterprise | 59 |
Company Size | Count |
---|---|
Small Business | 691 |
Midsize Enterprise | 430 |
Large Enterprise | 1704 |
Qualys VMDR offers an all-inclusive risk-based vulnerability management solution to prioritize vulnerabilities and assets based on risk and business criticality. VMDR seamlessly integrates with configuration management databases (CMDB), Qualys Patch Management, Custom Assessment and Remediation (CAR), Qualys TotalCloud and other Qualys and non-Qualys solutions to facilitate vulnerability detection and remediation across the entire enterprise.
With VMDR, users are empowered with actionable risk insights that translate vulnerabilities and exploits into optimized remediation actions based on business impact. Qualys customers can now aggregate and orchestrate data from the Qualys Threat Library, 25+ threat intelligence feeds, and third-party security and IT solutions, empowering organizations to measure, communicate, and eliminate risk across on-premises, hybrid, and cloud environments.
Qualys VMDR was previously known as Qualys VM, QualysGuard VM, Qualys Asset Inventory, Qualys Container Security.
Agrokor Group, American Specialty Health, American State Bank, Arval, Life:), Axway, Bank of the West, Blueport Commerce, BSkyB, Brinks, CaixaBank, Cartagena, Catholic Health System, CEC Bank, Cegedim, CIGNA, Clickability, Colby-Sawyer College, Commercial Bank of Dubai, University of Utah, eBay Inc., ING Singapore, National Theatre, OTP Bank, Sodexo, WebEx
Author info | Rating | Review Summary |
---|---|---|
Information Security Analyst at a tech services company with 51-200 employees | 4.0 | No summary available |
System Admin at a tech services company with 10,001+ employees | 4.5 | We used Qualys VMDR to monitor vulnerabilities in our systems, finding its user-friendly interface valuable for report generation and teamwork. While it lacks automated patching without an additional module, it significantly improved our efficiency compared to OpenVAS. |
Works at a comms service provider with 1-10 employees | 4.5 | We use Qualys VMDR for daily vulnerability management, benefiting from its user-friendly interface and accurate results. The tool’s integration and prioritization features enhance our remediation efforts, though the UI needs some improvement. Switching from Nessus and Rapid7, Qualys offers better pricing. |
Works at a tech consulting company with 10,001+ employees | 4.5 | I use Qualys VMDR for vulnerability management due to its clarity and customizability, offering value by tracking unused assets. It could improve with quicker issue resolution, user-friendly query options, and enhanced EDR features. |
Sr. Vice President Group Security at a financial services firm with 10,001+ employees | 4.0 | I primarily use Qualys VMDR for vulnerability management due to its ease of use, excellent reporting, integration capabilities, and efficient scanning. Although infrastructure scanning is strong, application security needs improvement. It's superior to competitors like Rapid7 and Nessus. |
Information & security engineer at Infosys | 3.5 | We schedule scans with Qualys VMDR using continuous monitoring to identify vulnerabilities in our web applications. While valuable features include Continuous Monitoring and SFU Connector, improvements are needed in consistent vulnerability reporting and URL crawling. |
Solutions Architect at a consultancy with 10,001+ employees | 4.5 | I work for an IT firm using Qualys VMDR for vulnerability detection and remediation. It excels in accurate vulnerability assessments, although reducing false positives would enhance its effectiveness. Despite using ZixSense, Qualys offers more comprehensive assessments, although ZixSense is more user-friendly. |
Senior Global IT Security Specialist at a manufacturing company with 1,001-5,000 employees | 4.0 | I use Qualys VMDR for real-time vulnerability detection and patching across network devices, firewalls, and web applications. Its asset discovery is crucial, but simplifying vulnerability management and enhancing patch management for third-party tools would improve usability. |