No more typing reviews! Try our Samantha, our new voice AI agent.

Aikido Security vs Orca Security comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
5.5
Qualys TotalCloud boosts efficiency, reduces manual effort, decreases risk, and offers significant cost savings with a notable ROI.
Sentiment score
8.5
Aikido Security boosted productivity by 32%, reduced costs, improved efficiency, enhanced security, and saved on subscription expenses.
Sentiment score
4.0
Orca Security offers immediate benefits with cost savings, easy adoption, enhanced efficiency, and improved visibility for risk mitigation.
It has saved about 90% of our time.
Senior Consultant at a consultancy with 10,001+ employees
TotalCloud has generated overall savings of 30 to 40 percent across various departments.
Security Manager at a consultancy with 10,001+ employees
CallStream helps us integrate and automate tasks.
Senior Security Consultant at CyberNxt Solutions LLP
Aikido Security caught a critical remote code execution vulnerability in my Python machine learning pipelines before it reached production.
Product Manager at Zidio development
Since we got rid of that, our productivity has increased, I believe, by thirty-two percent.
SecOps Engineer at IriusRisk
We were expecting to complete the compliance in a month, but I figured out Aikido Security could do it within a week for all our 13 repositories.
Co-Founder & CTO at Mango Giraffe
Orca Security significantly improved our visibility from 30% to 100%, enabling better security posture improvements rather than just general cost savings.
Cloud Security Automation Engineer at a financial services firm with 10,001+ employees
This is because you do not need a team of five persons to install and update the agents in thousands of servers.
Cybersecurity Recruitment Specialist at a tech services company with 51-200 employees
I see the benefits of Orca Security immediately because you can see the issues right after deployment, and you can correct the critical issues, so the proof of value is immediate.
Cybersecurity Architect Lead at a consultancy with 11-50 employees
 

Customer Service

Sentiment score
7.4
Qualys TotalCloud support is praised for efficiency and staff knowledge but criticized for delays and inconsistent quality.
Sentiment score
7.3
Aikido Security offers fast, responsive support with detailed onboarding and clear documentation, earning high praise from users.
Sentiment score
5.6
Orca Security's support is valued for responsiveness and expertise, but consistency and skills need improvement according to user feedback.
They are helpful, respond to my queries, and can answer any question.
Developer at a consultancy with 10,001+ employees
Qualys's tech support is highly responsive, providing multiple ways to interact with them.
Service Manager, Security Operations at CDA IT SOLUTIONS
Qualys' customer service provides quality answers, but the response time is long, even though it is within the SLA.
Works at a consultancy with 10,001+ employees
Aikido Security was the easiest to use, the easiest to onboard, and the one with the most active customer support.
SecOps Engineer at IriusRisk
Their team proactively reached out after signup to ensure we were set up correctly.
Product Manager at Zidio development
Most issues were resolved through documentation links, configuration guidance, or clarification around findings.
Software Developer at Bisag-N
I would rate the quality of support as nine stars out of ten due to their quick and helpful responses.
Senior Information Security Engineer at a computer software company with 10,001+ employees
The expertise levels could be improved.
Cloud Security Automation Engineer at a financial services firm with 10,001+ employees
The support team assists with issues and provides information on new updates.
Vulnerability Assessment Analyst at a computer software company with 501-1,000 employees
 

Scalability Issues

Sentiment score
7.8
Qualys TotalCloud excels in scalability, efficiently supporting diverse environments and business sizes, though it may require skilled management.
Sentiment score
7.8
Aikido Security scales well with minor peak delays and outdated data issues, praised for integration stability despite organizational challenges.
Sentiment score
8.0
Orca Security is praised for its scalable, agentless architecture, enabling seamless deployment and integration across diverse cloud environments.
We started our organization about nine months back. We started with about 30 users, and we now have more than 100 users.
CIO at a venture capital & private equity firm with 11-50 employees
Our organization currently uses it to manage over 1200 web applications.
Analyst, Information Security at Infosys
It is absolutely scalable, and I would rate its scalability as nine out of ten.
retired at a consultancy with 10,001+ employees
That kind of reliability becomes invisible when it works well, which is exactly what you want from a security tool running in your CI/CD pipelines.
Product Manager at Zidio development
Scalability with Aikido Security has been good, as new teams continue to be added without significant performance issues.
Software Developer at Bisag-N
Aikido Security scales well by supporting multiple projects, repositories, and development teams on a single platform.
Full Stack Developer at Sri Krishna Arts and Science College
Orca Security provides a highly scalable architecture for us.
Senior Specialist at a tech vendor with 10,001+ employees
When you onboard an organization, Orca will find new projects, folders, and resources without any additional effort required.
Senior Information Security Engineer at a computer software company with 10,001+ employees
The seamless integration allows us to automatically reflect any connected project from our cloud into the console.
Vulnerability Assessment Analyst at a computer software company with 501-1,000 employees
 

Stability Issues

Sentiment score
8.3
Qualys TotalCloud is highly stable with reliable support, 99.9% uptime, minimal bugs, and effective maintenance communication.
Sentiment score
8.7
Aikido Security is stable and reliable, offering continuous, accurate security assessments with occasional minor scan update delays.
Sentiment score
8.2
Orca Security is praised for high stability and reliability, with rare brief downtime and responsive support handling minor issues.
Overall, the support provided has been excellent.
Analyst, Information Security at Infosys
It is a stable solution, which is why we chose it.
CIO at a venture capital & private equity firm with 11-50 employees
Continuous monitoring is crucial to ensure system stability and avoid vulnerabilities or threats.
Developer at a consultancy with 10,001+ employees
The platform has been reliable and provides accurate security findings.
Full Stack Developer at Sri Krishna Arts and Science College
Aikido Security has been stable, and there have been no major outages affecting workflow.
Software Developer at Bisag-N
When I need any support, it's very fast to get an answer from the support team.
Cyber Security Analyst Ii at Grupo PRIMO
I personally have not encountered any bugs or issues with the console.
Vulnerability Assessment Analyst at a computer software company with 501-1,000 employees
I have experienced very little downtime.
Works at Ultraviolet Cyber
 

Room For Improvement

Users suggest enhancing Qualys TotalCloud with clearer reports, better integration, intuitive UI, AI risk assessments, and improved documentation.
Aikido Security needs improved integrations, deeper insights, and enhanced user guidance for better efficiency and customization in security management.
Users recommend improving Orca Security's automation, private cloud support, vulnerability detection, integration, and reducing scan times and costs.
Ideally, the scanner should automatically detect and scan all subdomains, even if not explicitly defined, ensuring comprehensive vulnerability assessment.
Analyst, Information Security at Infosys
Ideally, updates should be more immediate, enabling quicker implementation of solutions.
Project Lead at Persistent Systems
Our goal is to integrate all these functions into Qualys, creating a single dashboard for comprehensive security monitoring and management.
Senior Information Security Engineer at a consultancy with 10,001+ employees
Deeper customization around policies and reporting would be beneficial, since some organizations have specific compliance requirements and the customization can feel limited compared to larger, enterprise-focused platforms.
Software Developer at Bisag-N
I would love to see a Terraform module for Aikido Security.
SecOps Engineer at IriusRisk
I had a certain object with a UUID that was being considered as a private secret key or API key, which was not the case.
Co-Founder & CTO at Mango Giraffe
Another improvement is in handling alerts for multiple files with the same CVE; it should provide an option to manage each file separately without affecting others.
Senior Information Security Engineer at a computer software company with 10,001+ employees
Orca Security could improve in reporting OS package vulnerabilities, such as missing MS patches or Linux patches.
Vulnerability Assessment Analyst at a computer software company with 501-1,000 employees
Security in today's age is important, and if a company can afford it, they should get it as it's the most valuable protection against threats.
Software Developer at a tech vendor with 1,001-5,000 employees
 

Setup Cost

Qualys TotalCloud's pricing is high yet justified by comprehensive features and flexibility, benefiting larger enterprises seeking robust security.
Orca Security offers competitive, flexible pricing per workload, appealing to enterprises with comprehensive features and strategic discounts.
Qualys TotalCloud's pricing is currently acceptable, it is becoming increasingly expensive.
Senior Manager at a financial services firm with 10,001+ employees
Pricing is managed by our finance team; however, Qualys TotalCloud offers cost-effective licensing flexibility.
IT Manager at a consultancy with 10,001+ employees
Qualys TotalCloud is expensive, but it offers a premier solution with no headaches.
Vice President at Inspira Enterprise
I used the free trial, which was sufficient for evaluating the platform and its core features.
Full Stack Developer at Sri Krishna Arts and Science College
The initial price seemed high, however, after negotiation, the final price was ideal.
Senior Information Security Engineer at a computer software company with 10,001+ employees
Orca Security's pricing is known to be a bit high.
Works at Ultraviolet Cyber
Its license is a bit expensive.
enterprise architect at a tech services company with 1-10 employees
 

Valuable Features

Qualys TotalCloud offers comprehensive vulnerability detection, cloud security management, and automation with insightful dashboards for efficient threat management.
Aikido Security enhances productivity by consolidating vulnerability insights, offering automatic fixes, and simplifying security management with intuitive tools.
Orca Security offers agentless cloud integration with automated threat detection and AI-driven insights, enhancing security without impacting performance.
This view of risk helps reduce the work we would have to do to combine multiple sources to prioritize risk.
Works at a consultancy with 10,001+ employees
It will help cybersecurity professionals monitor the cloud and find vulnerabilities.
Developer at a consultancy with 10,001+ employees
We are enjoying the new feature, FlexScan, which is valuable for Internet-facing VMs.
Senior Consultant at a consultancy with 10,001+ employees
We were able to get all codebase vulnerability fixes within a week for all our 13 or 14 repositories that we had.
Co-Founder & CTO at Mango Giraffe
Security shifted left, meaning issues were caught during development rather than after deployment.
Product Manager at Zidio development
My favorite feature is the dependency vulnerability scanning because it quickly identifies the risk in third-party packages, which saves me time in finding vulnerabilities.
Full Stack Developer at Sri Krishna Arts and Science College
Additionally, it covers a large scope of vulnerabilities, CVEs, malware, and misconfiguration.
Senior Information Security Engineer at a computer software company with 10,001+ employees
It provided us with visibility from a central point, increasing our view from the previous thirty percent to a full one hundred percent of our cloud environment.
Cloud Security Automation Engineer at a financial services firm with 10,001+ employees
This technology allows for coverage of almost all cloud assets without interrupting their operations.
Vulnerability Assessment Analyst at a computer software company with 501-1,000 employees
 

Categories and Ranking

Qualys TotalCloud
Sponsored
Ranking in Container Security
11th
Ranking in Cloud Security Posture Management (CSPM)
8th
Average Rating
8.6
Reviews Sentiment
7.3
Number of Reviews
39
Ranking in other categories
Vulnerability Management (11th), Cloud Workload Protection Platforms (CWPP) (8th), SaaS Security Posture Management (SSPM) (1st), Cloud-Native Application Protection Platforms (CNAPP) (6th)
Aikido Security
Ranking in Container Security
30th
Ranking in Cloud Security Posture Management (CSPM)
23rd
Average Rating
8.6
Reviews Sentiment
7.8
Number of Reviews
5
Ranking in other categories
Application Security Tools (20th), Static Application Security Testing (SAST) (15th), Web Application Firewall (WAF) (27th), Software Composition Analysis (SCA) (12th), Static Code Analysis (9th), Dynamic Application Security Testing (DAST) (9th), DevSecOps (9th), Application Security Posture Management (ASPM) (11th)
Orca Security
Ranking in Container Security
8th
Ranking in Cloud Security Posture Management (CSPM)
6th
Average Rating
8.8
Reviews Sentiment
7.0
Number of Reviews
35
Ranking in other categories
Vulnerability Management (10th), Cloud Workload Protection Platforms (CWPP) (6th), API Security (3rd), Cloud-Native Application Protection Platforms (CNAPP) (5th), Data Security Posture Management (DSPM) (7th), Cloud Detection and Response (CDR) (2nd), AI Security (3rd)
 

Mindshare comparison

As of June 2026, in the Container Security category, the mindshare of Qualys TotalCloud is 1.4%, up from 0.9% compared to the previous year. The mindshare of Aikido Security is 1.2%, up from 0.2% compared to the previous year. The mindshare of Orca Security is 4.0%, down from 4.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Container Security Mindshare Distribution
ProductMindshare (%)
Orca Security4.0%
Qualys TotalCloud1.4%
Aikido Security1.2%
Other93.4%
Container Security
 

Featured Reviews

RO
IT Security Expert at Alior Bank S.A.
Unified risk scoring has improved our cloud visibility and simplifies remediation priorities
Qualys TotalCloud provides unified vulnerability and threat assessment across both IAS and SaaS. This solution provides a single prioritized view of risk, which helps reduce the work I would have to do. We are no longer based on CVSS; we are based on Qualys risk scoring, which is based on CVSS plus internal findings made by Qualys, and then assigns its own score. The TruRisk insight feature has found a small number of assets with high vulnerability scores, though I am cautious since some information is classified. Qualys TotalCloud has positively impacted our bank's performance, and we have definitely seen benefits after implementing this solution.
B Goswami - PeerSpot reviewer
Product Manager at Zidio development
Security has shifted left and now catches vulnerabilities early in our development workflow
There are a few areas for improvement. The first is scan speed. For large repositories, initial scans can be slow. Incremental scanning helps, but full scans still take considerable time. The second thing is the false positive rate. While Auto-Triage is good, it is not perfect. Occasionally, genuine issues get filtered out and real false positives slip through. The third one is remediation guidance. Aikido Security tells you what is vulnerable, but sometimes the fix suggestions are generic. More specific, actionable remediation steps would save developer time. The fourth one is IDE integrations. It currently works best in CI/CD pipelines. A proper VS Code or JetBrains plugin for real-time scanning while coding would be a significant improvement. From a customer point of view, the following things could change. The first thing is documentation for custom rules. Aikido Security allows you to create custom scanning rules, but the documentation for this feature is surprisingly thin. I spent considerable time in community forums and with trial and error just to configure basic custom rules. Step-by-step guides with real-world examples would make this feature much more accessible. The second thing is better Slack and communication integrations. Currently, security alerts come through email and dashboard notifications, but our team lives in Slack. A more configurable Slack integration that sends contextual alerts directly to the relevant developer, not just a generic channel notification, would dramatically improve response time. The third one is historical trend reporting. While Aikido Security shows current vulnerability status well, generating historical reports showing security posture improvement over time is limited. For presenting security progress to management or stakeholders, better exportable trend reports would be very valuable.
reviewer2800203 - PeerSpot reviewer
Assistant Manager at a manufacturing company with 10,001+ employees
Cloud posture management has improved remediation and optimizes costs with contextual risk insights
Since I have not used Orca Security for 10 months, I am uncertain what areas still need improvement, as they may have rolled out features that addressed issues I faced in the past. However, I can say the tool is good. A few things could potentially be improved, particularly regarding false positives and the UI. What I observed is that they release updates to the platform without notifying the customer. Every time the UI is upgraded, they release something without notification. This could be a slight improvement. If they released some kind of notification to just inform the customer about UI changes, the customer would be aware of the changes that Orca Security is making in the backend.
report
Use our free recommendation engine to learn which Container Security solutions are best for your needs.
899,324 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
19%
Financial Services Firm
13%
Comms Service Provider
7%
Construction Company
7%
Comms Service Provider
12%
Manufacturing Company
11%
Financial Services Firm
10%
Computer Software Company
8%
Financial Services Firm
15%
Computer Software Company
11%
Manufacturing Company
10%
Construction Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise3
Large Enterprise28
By reviewers
Company SizeCount
Small Business5
Midsize Enterprise1
Large Enterprise2
By reviewers
Company SizeCount
Small Business16
Midsize Enterprise8
Large Enterprise11
 

Questions from the Community

What needs improvement with Qualys TotalCloud?
Areas that need improvement in every solution include the remediation part. The remediation steps should be simple en...
What is your primary use case for Qualys TotalCloud?
Our use case involves the assets that we have under cloud, the assets exposed to the internet, and the internal appli...
What needs improvement with Aikido Security?
I think Aikido Security could be improved by addressing its Jira integration, which I feel needs a bit of work. For m...
What is your primary use case for Aikido Security?
My main use case for Aikido Security is to utilize it as part of our vulnerability management program, where we also ...
What advice do you have for others considering Aikido Security?
Since switching to Aikido Security, I have noticed a positive impact on my team's productivity with measurable result...
What needs improvement with Orca Security?
Orca Security could benefit from more agentic workflows, where agentic workflows could be integrated with Orca Securi...
What is your primary use case for Orca Security?
Orca Security serves as a centralized solution within our organization that offers scanning of all issues found in ou...
What advice do you have for others considering Orca Security?
The advice I would give is that you can make good use of the issues depending on different organizational use cases. ...
 

Also Known As

Qualys TotalCloud with FlexScan
No data available
No data available
 

Overview

 

Sample Customers

Information Not Available
FinTech GoCardless ZIP CertifID HealthTech Dental Intelligence PE & Group Techstars Cronos Group Security Tech Human Security Tines HR Tech Simployer Recruitee Agency November Five Other Lighthouse (Hospitality Tech) Smokeball (LegalTech) Runna (B2C Tech) GEA Group (Manufacturing) Community fibre (Telecom) n8n (Software Development)
BeyondTrust, Postman, Digital Turbine, Solarisbank, Lemonade, C6 Bank, Docebo, Vercel, and Vivino
Find out what your peers are saying about Wiz, Palo Alto Networks, SentinelOne and others in Container Security. Updated: June 2026.
899,324 professionals have used our research since 2012.