No more typing reviews! Try our Samantha, our new voice AI agent.

CrowdStrike Falcon Cloud Security vs Rapid7 InsightCloudSec comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
5.3
Qualys TotalCloud enhances efficiency and automation, achieving up to 40% cost savings and over 50% improved asset scanning.
Sentiment score
4.9
CrowdStrike Falcon Cloud Security offers cost-effective threat detection, integration, and faster remediation, with significant ROI and risk mitigation.
Sentiment score
6.0
Rapid7 InsightCloudSec saves costs, reduces risks, automates tasks, and streamlines compliance, enhancing security and operational efficiency.
We are able to scan all our assets with less human intervention and achieve overall effective outcomes.
Dns architect at a tech consulting company with 1,001-5,000 employees
It has saved about 90% of our time.
Senior Consultant at a consultancy with 10,001+ employees
TotalCloud has generated overall savings of 30 to 40 percent across various departments.
Security Manager at a consultancy with 10,001+ employees
More than 12 million vulnerabilities have been identified and resolved while working with CrowdStrike Falcon Cloud Security over the past 10 years.
Windows Security Patching Operation III (Cyber Operations) at CBTS
We have seen a return on investment through time saved and managed employee workload.
Senior Cybersecurity Engineer at Kyndryl
It is an expense we are willing to pay to conform to Cyber Essentials Plus and demonstrate responsibility in protecting our data and that of our partners.
Chief Executive Officer at a consultancy with 1-10 employees
By catching issues early, Rapid7 InsightCloudSec helps us prevent costly breaches or regulatory fines; for example, automating patching and misconfiguration audits can save thousands in operational overhead.
Site Reliability Engineer at a comms service provider with 501-1,000 employees
It provides a good security posture and helps handle misconfigurations and day-to-day remediations.
Senior Cloud Security Engineer at a educational organization with 10,001+ employees
I can confirm money and time savings with Rapid7 InsightCloudSec, as we can scan the entire IP range simultaneously instead of manually checking each asset for vulnerabilities.
Junior systems engineer at a tech services company with 11-50 employees
 

Customer Service

Sentiment score
6.7
Qualys TotalCloud's customer service is praised for responsiveness despite occasional delays, with ratings from seven to ten.
Sentiment score
6.6
CrowdStrike Falcon Cloud Security's support is praised for efficiency and responsiveness, though basic support can be slower.
Sentiment score
4.9
Rapid7 InsightCloudSec customer service receives mixed reviews, excelling in responsiveness but needing improvement in communication and local presence.
They are helpful, respond to my queries, and can answer any question.
Developer at a consultancy with 10,001+ employees
Qualys's tech support is highly responsive, providing multiple ways to interact with them.
Service Manager, Security Operations at CDA IT SOLUTIONS
Qualys' customer service provides quality answers, but the response time is long, even though it is within the SLA.
Works at a consultancy with 10,001+ employees
Based on my experience with CrowdStrike Falcon Cloud Security's technical support, I would rate them a solid 10 out of 10.
Windows Security Patching Operation III (Cyber Operations) at CBTS
Technical support is quite good.
Senior Engineer at Indocement
I have contacted customer service, and they are fast.
Security Engineer at ebryx
On a scale of 1 to 10, the customer support would be rated a 10, as responses are typically received within about half an hour to an hour when creating a ticket.
Senior Platform Engineer Lead at a tech services company with 1,001-5,000 employees
They have excellent support with internal Slack channels and are directly reachable through Teams.
Senior Cloud Security Engineer at a educational organization with 10,001+ employees
I interacted with customer support after an endpoint compromise incident, and they responded quickly and provided clear insights that were essential for resolving the situation.
Platform Engineer at Cedar Gate Technologies, LLC
 

Scalability Issues

Sentiment score
7.4
Qualys TotalCloud is highly scalable and adaptable, efficiently supporting varied environments and large-scale deployments with robust performance.
Sentiment score
5.8
CrowdStrike Falcon Cloud Security is scalable for all company sizes, efficiently managing large infrastructures and thousands of endpoints.
Sentiment score
5.8
Rapid7 InsightCloudSec is a scalable, adaptable SaaS tool providing reliable cloud visibility but may require specific configurations.
We started our organization about nine months back. We started with about 30 users, and we now have more than 100 users.
CIO at a venture capital & private equity firm with 11-50 employees
Our organization currently uses it to manage over 1200 web applications.
Analyst, Information Security at Infosys
It is absolutely scalable, and I would rate its scalability as nine out of ten.
retired at a consultancy with 10,001+ employees
It is deployed across multiple departments and multiple locations.
Security Engineer at ebryx
CrowdStrike Falcon Cloud Security is indeed highly scalable, ideally for enterprises with a minimum of 2,000 servers to ensure cost efficiency and easier setup.
Windows Security Patching Operation III (Cyber Operations) at CBTS
The scalability of CrowdStrike Falcon Cloud Security is good, and it can easily scale up to over 20,000 or 30,000 endpoints.
Senior Cybersecurity Engineer at Kyndryl
I have not experienced performance issues as I add more assets, and everything operates smoothly within one console.
Junior systems engineer at a tech services company with 11-50 employees
 

Stability Issues

Sentiment score
8.4
Qualys TotalCloud is stable and reliable, offering 99.9% uptime with quick support for minor issues and transparent maintenance updates.
Sentiment score
7.4
CrowdStrike Falcon Cloud Security is highly stable, with rare disruptions, minimal issues, and excellent integration with cloud services.
Sentiment score
8.0
Users are pleased with Rapid7 InsightCloudSec's stability, though some experience slight slowness due to its SaaS platform.
Overall, the support provided has been excellent.
Analyst, Information Security at Infosys
It has a lot of scanning mechanisms, which are agentless APIs, eBPF, and cloud agents, that are highly reliable.
Sr Security Engineer at a tech vendor with 5,001-10,000 employees
It is a stable solution, which is why we chose it.
CIO at a venture capital & private equity firm with 11-50 employees
Occasionally, when the workload increases, it slows down considerably and sometimes becomes unresponsive.
Security Engineer at ebryx
When evaluating the stability of CrowdStrike Falcon Cloud Security, their partnerships with all major cloud service providers ensure their servers are optimally positioned.
Windows Security Patching Operation III (Cyber Operations) at CBTS
Rapid7 InsightCloudSec works without any stability issues so far.
Junior Security Analyst at a financial services firm with 51-200 employees
 

Room For Improvement

Qualys TotalCloud requires UI improvements, better cloud integration, enhanced support, and optimized reporting, onboarding, and vulnerability detection.
CrowdStrike Falcon Cloud needs UI simplicity, better integration, customization, and enhanced support, scalability, and pricing to improve functionality.
Rapid7 InsightCloudSec needs UI/UX improvements, better third-party integration, enhanced reporting, and refined risk prioritization and detection capabilities.
Ideally, the scanner should automatically detect and scan all subdomains, even if not explicitly defined, ensuring comprehensive vulnerability assessment.
Analyst, Information Security at Infosys
Ideally, updates should be more immediate, enabling quicker implementation of solutions.
Project Lead at Persistent Systems
Our goal is to integrate all these functions into Qualys, creating a single dashboard for comprehensive security monitoring and management.
Senior Information Security Engineer at a consultancy with 10,001+ employees
If CrowdStrike Falcon Cloud Security could implement pushing out remediation from the sensor installed on machines, that would be beneficial.
Security Engineer at a tech services company with 11-50 employees
The user interface needs improvement as it's sometimes difficult to locate specific dashboards or reports.
Chief Executive Officer at a consultancy with 1-10 employees
Another issue is the lack of proper documentation.
Security Engineer at ebryx
Rapid7 InsightCloudSec already provides us real-time feedback loops, but if it also provides real-time feedback to the developers, then it would help the application shift left, meaning the security will shift left as well.
Site Reliability Engineer at a comms service provider with 501-1,000 employees
Rapid7 InsightCloudSec needs improvements such as AI-driven risk prioritization, proactive cloud risk modeling, advanced IAM privilege analysis, multi-cloud attack path mapping, pre-built automated hardening, defining stronger policy as code support, better container and serverless coverage, and cost optimization insight along with safe auto-remediation with rollback improvements.
Cybersecurity analyst at Cornerstone OnDemand
If you can improve the traditional detection rules to reflect current detection rules, it would make it significantly easier for us to manage, as we constantly need to check legacy rules to update or possibly turn them off. Updating the legacy rules should be a priority.
SOC analyst at a media company with 1,001-5,000 employees
 

Setup Cost

Qualys TotalCloud is costly but justified for large companies due to features, flexibility, and VMware integration efficiencies.
Enterprise users find CrowdStrike Falcon's pricing justified by its scalability and features, though high for limited budgets.
Rapid7 InsightCloudSec offers competitive, cost-efficient cloud security management with reasonable pricing, seamless licensing, and straightforward setup.
Qualys TotalCloud's pricing is currently acceptable, it is becoming increasingly expensive.
Senior Manager at a financial services firm with 10,001+ employees
Pricing is managed by our finance team; however, Qualys TotalCloud offers cost-effective licensing flexibility.
IT Manager at a consultancy with 10,001+ employees
Qualys TotalCloud is expensive, but it offers a premier solution with no headaches.
Vice President at Inspira Enterprise
The pricing for CrowdStrike Falcon Cloud Security is reasonable, especially for small companies with limited budgets.
Chief Executive Officer at a consultancy with 1-10 employees
No additional cost for maintenance or support; it's all included in the quotation.
Senior Engineer at Indocement
However, the main point is that even though it is expensive, it provides a huge capability to the organization.
Security Engineer at ebryx
It is cheaper.
Senior Cloud Security Engineer at a educational organization with 10,001+ employees
The more numbers you have, the less costly the product becomes, as licensing operates on volume.
Junior systems engineer at a tech services company with 11-50 employees
While it was not overly expensive, I do wish for more discounts for bulk purchases since we have implemented it widely across our cloud security posture.
Platform Engineer at Cedar Gate Technologies, LLC
 

Valuable Features

Qualys TotalCloud offers efficient asset discovery, security posture management, and vulnerability management with excellent integration and threat intelligence features.
CrowdStrike Falcon Cloud Security excels in threat detection, real-time response, and AI-driven analytics for comprehensive protection.
Rapid7 InsightCloudSec enhances security with frameworks, threat detection, automation, and AI log searches, boosting efficiency and response speed.
This view of risk helps reduce the work we would have to do to combine multiple sources to prioritize risk.
Works at a consultancy with 10,001+ employees
It will help cybersecurity professionals monitor the cloud and find vulnerabilities.
Developer at a consultancy with 10,001+ employees
We are enjoying the new feature, FlexScan, which is valuable for Internet-facing VMs.
Senior Consultant at a consultancy with 10,001+ employees
It automatically blocks duplication and activities that could result in data loss, effectively preventing unintended copying of data to personal devices.
Windows Security Patching Operation III (Cyber Operations) at CBTS
The threat detection capability of CrowdStrike Falcon Cloud Security has always been the major seller, and it works effectively.
Security Engineer at a tech services company with 11-50 employees
CrowdStrike Falcon plays a crucial role in our environment and gives us a clear point where we can focus our efforts rather than hunting down what is happening.
senior DevOps engineer at a tech services company with 10,001+ employees
Using Rapid7 InsightCloudSec alongside our ManageEngine patch management module positively impacts my organization by scanning assets deeply and providing all identified vulnerabilities, from zero-day to any vulnerabilities on an asset, addressing those that ManageEngine might not identify.
Junior systems engineer at a tech services company with 11-50 employees
Rapid7 InsightCloudSec has helped us save thirty percent time in our log retrievals, and it completely changed log searching, making it really fast when we search for logs, with no prior knowledge required.
Site Reliability Engineer at a comms service provider with 501-1,000 employees
Rapid7 InsightCloudSec positively impacts my organization by integrating tightly with my existing vulnerability management process and workflows, particularly in creating a new project and implementing trigger-based scanning.
Assistant Vice President for Security Operation Center at Sohar International Bank
 

Categories and Ranking

Qualys TotalCloud
Sponsored
Ranking in Cloud Security Posture Management (CSPM)
8th
Ranking in Cloud-Native Application Protection Platforms (CNAPP)
7th
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
46
Ranking in other categories
Vulnerability Management (11th), Container Security (11th), Cloud Workload Protection Platforms (CWPP) (8th), SaaS Security Posture Management (SSPM) (2nd)
CrowdStrike Falcon Cloud Se...
Ranking in Cloud Security Posture Management (CSPM)
9th
Ranking in Cloud-Native Application Protection Platforms (CNAPP)
8th
Average Rating
8.2
Reviews Sentiment
6.4
Number of Reviews
34
Ranking in other categories
Application Security Tools (12th), Container Security (8th), Cloud Workload Protection Platforms (CWPP) (9th), Cloud Infrastructure Entitlement Management (CIEM) (1st), Application Security Posture Management (ASPM) (7th)
Rapid7 InsightCloudSec
Ranking in Cloud Security Posture Management (CSPM)
19th
Ranking in Cloud-Native Application Protection Platforms (CNAPP)
16th
Average Rating
7.8
Reviews Sentiment
6.3
Number of Reviews
13
Ranking in other categories
Cloud Management (19th), AI Observability (15th)
 

Mindshare comparison

As of September 2026, in the Cloud Security Posture Management (CSPM) category, the mindshare of Qualys TotalCloud is 2.0%, up from 1.4% compared to the previous year. The mindshare of CrowdStrike Falcon Cloud Security is 3.4%, down from 5.1% compared to the previous year. The mindshare of Rapid7 InsightCloudSec is 1.3%, down from 1.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Security Posture Management (CSPM) Mindshare Distribution
ProductMindshare (%)
Qualys TotalCloud2.0%
CrowdStrike Falcon Cloud Security3.4%
Rapid7 InsightCloudSec1.3%
Other93.3%
Cloud Security Posture Management (CSPM)
 

Featured Reviews

reviewer2859021 - PeerSpot reviewer
Sr Security Engineer at a tech vendor with 5,001-10,000 employees
Risk-based triage has transformed container security and now prioritizes high-impact threats
The best features Qualys TotalCloud offers currently include managing cloud infrastructure and container security while facing major challenges such as alert fatigue. Traditional vulnerability scanners flag hundreds of CVEs on short-lived Kubernetes containers, some of which have no internet exposure or are gone before we can even triage them. I leverage Qualys TotalCloud to move beyond static CVSS. I use it to implement runtime exposure, correlation risk reprioritization, and shift-left integration. This notifies developers to fix a base image upstream rather than patching live ephemeral instances. In my work with cloud and container security, the biggest operational hurdle was alert fatigue. I use Qualys to shift left from static CVSS severity to context-aware risk prioritization. I correlated raw vulnerability data with real-time risk factors such as public network exposure, active runtime execution, or overly permissive IAM roles. This allows us to immediately drop the priority of isolated containers and escalate lower-severity CVEs that sit on an exposed, high-risk path. We can map these findings directly back to our CI/CD pipelines so developers can patch the root base images upstream. We have drastically cut down the signal-to-noise ratio, saved a lot of manual hours doing triage work, and ensured engineering effort goes directly towards high-impact risk reduction.
Manish Indupuri - PeerSpot reviewer
senior DevOps engineer at a tech services company with 10,001+ employees
Provides centralized visibility and real-time threat detection across multiple cloud accounts
Regarding how CrowdStrike Falcon Cloud Security can be improved, I would say they can improve their support. There were a couple of cases where we needed to escalate issues in order to get proper support. That part could use some tweaking on their end. Additionally, the recent incident during the last summer literally impacted our systems. We had some of our workloads that affected the business, and it was a difficult experience. Apart from that, it is a good tool and the experience with CrowdStrike Falcon Cloud Security has been excellent. We did not find any kind of issues, but if they could improve their response to security-related incidents and provide on-time support or better understand our concerns and address them accordingly, it could be very helpful. Regarding needed improvements, I think they should enhance automatic alerting with CI/CD scanning and reporting capabilities. Additionally, it would be better to implement Falcon sensor health monitoring so agents are always active. We could know how it is behaving and how it is treating our environment. That could be a little helpful.
Arun Babu - PeerSpot reviewer
SOC analyst at a media company with 1,001-5,000 employees
Daily endpoint monitoring has improved investigations and saved time but detection rules still need tuning
It is important to note that Rapid7 InsightCloudSec's features are not 100% precise, but I find about 70% of the time it is satisfactory. I would like to suggest that you improve it to be more precise, ideally making it 100% if possible. Some cases in Rapid7 InsightCloudSec indicate that the log is not enough, as they mostly just generate alerts, and the synchronization between data connectors is often problematic, particularly in terms of not being in sync always, especially between the AD and Rapid7 alerts, which generates numerous false positives. Additionally, the traditional rules should be updated, as this is a main point worth mentioning since we spend a lot of time fine-tuning these traditional rules. I suggest improving the legacy detection rules. If there are any authentication cases, such as impossible travel activity where a user has their SharePoint hosted in a different location, Rapid7 can often trigger alerts, creating confusion as we cannot fine-tune it properly. Another issue is with honeypot access. We sometimes lack necessary logs because Defender's advanced threat protection scanning gets detected as honeypot activity by Rapid7, leading to annoying and noisy alerts that we need to constantly close. If you can improve the traditional detection rules to reflect current detection rules, it would make it significantly easier for us to manage, as we constantly need to check legacy rules to update or possibly turn them off. Updating the legacy rules should be a priority.
report
Use our free recommendation engine to learn which Cloud Security Posture Management (CSPM) solutions are best for your needs.
913,806 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
16%
Outsourcing Company
12%
Manufacturing Company
11%
Financial Services Firm
10%
Financial Services Firm
11%
Computer Software Company
7%
Manufacturing Company
7%
Comms Service Provider
6%
Outsourcing Company
10%
Financial Services Firm
10%
Comms Service Provider
10%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business14
Midsize Enterprise5
Large Enterprise34
By reviewers
Company SizeCount
Small Business14
Midsize Enterprise6
Large Enterprise16
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise4
Large Enterprise8
 

Questions from the Community

What needs improvement with Qualys TotalCloud?
In terms of improvement, remediation still belongs to the cloud team, which is one of the issues we faced with Qualys...
What is your primary use case for Qualys TotalCloud?
My main use case for Qualys TotalCloud is regarding the cloud visibility that we were not having previously. Previous...
What is your experience regarding pricing and costs for CrowdStrike Falcon ASPM?
I believe that CrowdStrike Falcon Cloud Security is not expensive for United States-based companies. For Brazil, howe...
What needs improvement with CrowdStrike Falcon ASPM?
I am aware that just as we have a one-click sensor for faster deployment of the agent, there is probably a tool that ...
What is your primary use case for CrowdStrike Falcon ASPM?
We use cloud security comprehensively, including CSPM, DSPM, AISPM, and CDR, not just for our organization, but becau...
What is your experience regarding pricing and costs for Rapid7 InsightCloudSec?
The pricing, setup cost, and licensing for Rapid7 InsightCloudSec are reasonable, and since our organization is growi...
What needs improvement with Rapid7 InsightCloudSec?
I would say that because Rapid7 InsightCloudSec does not have automatic patching capabilities, it provides recommenda...
What is your primary use case for Rapid7 InsightCloudSec?
In my role, my main use case for Rapid7 InsightCloudSec is for vulnerability management, where I scan my machines to ...
 

Also Known As

Qualys TotalCloud with FlexScan
CrowdStrike Falcon ASPM
DivvyCloud
 

Overview

 

Sample Customers

Information Not Available
Information Not Available
Fannie Mae, 3M, PizzaHut, Spotify, Autodesk, Discovery
Find out what your peers are saying about CrowdStrike Falcon Cloud Security vs. Rapid7 InsightCloudSec and other solutions. Updated: August 2026.
913,806 professionals have used our research since 2012.