


Prisma Cloud by Palo Alto Networks and BigID Next compete in the cloud and data security category. Prisma Cloud appears to have the upper hand due to its comprehensive cloud security capabilities, offering a broader range of security functions than BigID Next, which specializes in data discovery and classification.
Features: Prisma Cloud provides comprehensive cloud security for multi-cloud environments, in-depth vulnerability scanning, and security automation. It includes functionalities like cloud security posture management, cloud workload protection, and cloud infrastructure entitlement management. BigID Next excels in advanced data discovery and classification, data correlation, mapping features, and predefined classifiers for managing sensitive data.
Room for Improvement: Prisma Cloud users seek better API security, improved UI navigation, clearer policy documentation, and smoother integration of add-ons. Users of BigID Next desire improved UI responsiveness, reliable scan functions, and better automation capabilities for scanning and workflows. Both products could enhance integration efficiency and user experience.
Ease of Deployment and Customer Service: Prisma Cloud supports hybrid, public, and private cloud environments, with favorable deployment experiences and proactive technical support. However, some users report variable support quality for complex issues. BigID Next focuses on private and hybrid settings, providing data governance with efficient support and setup assistance. Both products have responsive support teams.
Pricing and ROI: Prisma Cloud's pricing is competitive for CSPM, with some users noting it as relatively high, but justified by its feature scope. Its ROI is visible through enhanced security and efficiency. BigID is regarded as expensive, with pricing scaling to data management needs; its ROI is seen in managing large, complex data environments, particularly in finance and healthcare. Both solutions have high costs, but users find value in their robust security and compliance offerings.
It has saved about 90% of our time.
TotalCloud has generated overall savings of 30 to 40 percent across various departments.
CallStream helps us integrate and automate tasks.
It is one of the best tools in the market.
We have seen returns across all three aspects: fewer employees needed, money saved, and time saved with BigID.
I have seen a return on investment from using BigID, particularly as it is a regulatory and compliance tool that helps avoid potential penalties for non-compliance.
It eliminates the need for additional hardware, making it a financially and technically sound investment.
Reputation and data security are the two most important things to a financial institution.
We may have prevented a security breach with remediation of the findings.
They are helpful, respond to my queries, and can answer any question.
Qualys's tech support is highly responsive, providing multiple ways to interact with them.
Qualys' customer service provides quality answers, but the response time is long, even though it is within the SLA.
BigID has one of the best technical support teams.
I would rate the customer support a six because you cannot directly reach out to L3 or L2 support if there's a major issue.
developing the custom connectors was relatively easy because of the courses I attended at BigID University and the support given by the BigID engineering team.
They can respond with technical documentation or pass on the case to the next level because it requires the development of a new feature or changing a feature due to a bug.
Anywhere we raise a tech case, they revert back within an hour.
I would give them 10 out of 10.
We started our organization about nine months back. We started with about 30 users, and we now have more than 100 users.
Our organization currently uses it to manage over 1200 web applications.
It is absolutely scalable, and I would rate its scalability as nine out of ten.
I have added very large data sources to the BigID environment, and it remains stable.
BigID is scalable, allowing you to purchase as many scanners as you want.
Scalability-wise, I rate the solution a nine out of ten.
We haven't had any issues scaling the solution.
There aren't any limits to Prisma Cloud's scalability.
Overall, the support provided has been excellent.
It is a stable solution, which is why we chose it.
Continuous monitoring is crucial to ensure system stability and avoid vulnerabilities or threats.
BigID is generally stable, however, there is a noted issue with bulk tagging that can affect scan results.
I would rate it a ten out of ten for stability.
Most of the time, when the client requires data, it is not available.
The cloud environment is dynamic, so the tool must be dynamic.
Ideally, the scanner should automatically detect and scan all subdomains, even if not explicitly defined, ensuring comprehensive vulnerability assessment.
Ideally, updates should be more immediate, enabling quicker implementation of solutions.
Our goal is to integrate all these functions into Qualys, creating a single dashboard for comprehensive security monitoring and management.
There is also an issue with incident tagging, where all objects get tagged without an option to untag specific ones, and reverting changes is only possible through MongoDB Central, which can lead to data loss for certain periods.
I want them to focus on data mapping, assessment, automation workflow, and privacy incident management.
BigID deserves recognition for the data discovery part, which has been wonderful and quite accurate, along with the confidence level process that allows us to fine-tune results for better accuracy from the database.
Prisma Cloud is an excellent tool.
We could have deployed the runtime monitoring with Prisma Cloud by Palo Alto Networks, but within our organization at our company, it was very difficult to find who would be the owner for the alerts.
Even though documentation was available, it took a while for a new person to understand what integration meant, what will be achieved after the integration, or how the integration needed to be done on the Azure or AWS side.
Qualys TotalCloud's pricing is currently acceptable, it is becoming increasingly expensive.
Pricing is managed by our finance team; however, Qualys TotalCloud offers cost-effective licensing flexibility.
Qualys TotalCloud is expensive, but it offers a premier solution with no headaches.
BigID might be expensive as it involves various paid services, like data retention and graphic rights management.
The pricing is competitive in the market, however, I need to ask for the right price.
The cost was not on the higher side.
If you are using a single tool like Prisma Cloud, with a single license, you can monitor all environments, such as Google Cloud, Azure, AWS, and Oracle Cloud.
The pricing for what we are using is pretty good.
This view of risk helps reduce the work we would have to do to combine multiple sources to prioritize risk.
It will help cybersecurity professionals monitor the cloud and find vulnerabilities.
We are enjoying the new feature, FlexScan, which is valuable for Internet-facing VMs.
One of the best features of BigID is its strength in data discovery and governance.
BigID simplifies things by integrating both data protection and data privacy in one environment, making it easier for end users.
The most valuable feature of BigID is its large number of classifiers, which allow us to scan for specific data such as SSN numbers.
If I want to check how many of my S3s have encryption, I can write a Lambda function in Prisma Cloud and get that report.
Overall, the most valuable features for us in Prisma Cloud are those that provide visibility, ensure compliance with regulations, and help us align our on-premises servers and cloud environments with mandated security standards.
The solution offers very good configuration capabilities. It can show you how to resolve and remediate issues, and you can pull reports that will show you everything you need to know.

| Company Size | Count |
|---|---|
| Small Business | 10 |
| Midsize Enterprise | 3 |
| Large Enterprise | 29 |
| Company Size | Count |
|---|---|
| Small Business | 5 |
| Large Enterprise | 11 |
| Company Size | Count |
|---|---|
| Small Business | 37 |
| Midsize Enterprise | 21 |
| Large Enterprise | 57 |
Qualys TotalCloud enhances security posture across cloud environments with continuous monitoring, vulnerability management, and risk visualization, ensuring efficient threat assessment and automated remediation for improved cyber risk reduction.
Qualys TotalCloud offers a robust suite of security tools essential for organizations managing multi-cloud infrastructures. By integrating cloud accounts and automating workflows, it supports AWS, Azure, and GCP, offering comprehensive vulnerability management and zero-day detection. The platform's user-friendly design, combined with its extensive risk management and unified threat assessment capabilities, enables organizations to prioritize and remediate vulnerabilities effectively. TruRisk Insights provides clear insights on cyber risks, while the automation options streamline patch management and scanning processes. API integration across IaaS and SaaS environments further enhances resource allocation efficiency and saves time, addressing misconfigurations across cloud environments.
What are the most important features of Qualys TotalCloud?Qualys TotalCloud is deployed in sectors needing rigorous vulnerability management, such as finance and healthcare. Companies utilize it to secure multi-cloud environments like AWS, Azure, and GCP, focus on compliance, and integrate security into CI/CD pipelines to detect and remedy threats pre-deployment.
BigID Next offers advanced data discovery, classification, and governance tools, streamlining compliance with privacy laws while integrating seamlessly with Microsoft platforms.
BigID Next provides comprehensive data management through machine learning-enhanced capabilities, supporting data discovery and classification for both structured and unstructured data. By simplifying processes for GDPR and CCPA compliance, and facilitating data scanning and mapping across databases, it optimizes data management. Automation is central to its design, with solutions for DSAR requests, organizing data with security labels, and ensuring a holistic organizational data view. Improvements in navigation, bug fixes, and scan reliability remain essential, along with enhancing classifiers for broader region coverage.
What features does BigID Next offer?BigID Next is commonly implemented in industries needing robust data governance, such as finance and healthcare, where data privacy and compliance with regulations are critical. It aids in scanning and classifying extensive data volumes, helping businesses maintain regulatory compliance while managing data risks effectively.
Prisma Cloud by Palo Alto Networks provides comprehensive cloud-native security solutions. It covers dynamic workload identity, automated forensics, and multi-cloud protection, ensuring robust security across diverse cloud platforms.
Prisma Cloud delivers advanced capabilities for managing cloud security across AWS, Azure, and GCP platforms. It offers dynamic workload identity creation, real-time monitoring, and seamless integration into CI/CD pipelines. With automation, centralized dashboards, and enhanced visibility, users effectively manage security misconfigurations and vulnerabilities. While optimizing cloud environments through runtime protection and compliance, Prisma Cloud faces challenges with its navigation, pricing, and limited automation capabilities. Users seek improvements in API security, role-based access controls, and documentation quality, emphasizing the need for enhanced customization and reporting features.
What are the important features of Prisma Cloud?
What benefits or ROI should users consider in reviews?
Industries like finance and telecom rely on Prisma Cloud for managing cloud security posture and container security. Teams utilize its capabilities across hybrid and multi-cloud settings to ensure compliance and robust threat protection. Features like misconfiguration detection and runtime monitoring are critical in promoting security objectives in these sectors.
We monitor all Data Security Posture Management (DSPM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.