No more typing reviews! Try our Samantha, our new voice AI agent.

LevelBlue USM Anywhere vs Xops comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 24, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Qualys TotalCloud
Sponsored
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
46
Ranking in other categories
Vulnerability Management (10th), Container Security (11th), Cloud Workload Protection Platforms (CWPP) (9th), Cloud Security Posture Management (CSPM) (8th), SaaS Security Posture Management (SSPM) (2nd), Cloud-Native Application Protection Platforms (CNAPP) (7th)
LevelBlue USM Anywhere
Average Rating
8.4
Reviews Sentiment
7.0
Number of Reviews
115
Ranking in other categories
Log Management (29th), Security Information and Event Management (SIEM) (27th), Endpoint Detection and Response (EDR) (37th), Compliance Management (12th)
Xops
Average Rating
9.0
Number of Reviews
4
Ranking in other categories
Cloud Cost Management (28th), Compliance Management (13th), AI Security (26th)
 

Featured Reviews

reviewer2859021 - PeerSpot reviewer
Sr Security Engineer at a tech vendor with 5,001-10,000 employees
Risk-based triage has transformed container security and now prioritizes high-impact threats
The best features Qualys TotalCloud offers currently include managing cloud infrastructure and container security while facing major challenges such as alert fatigue. Traditional vulnerability scanners flag hundreds of CVEs on short-lived Kubernetes containers, some of which have no internet exposure or are gone before we can even triage them. I leverage Qualys TotalCloud to move beyond static CVSS. I use it to implement runtime exposure, correlation risk reprioritization, and shift-left integration. This notifies developers to fix a base image upstream rather than patching live ephemeral instances. In my work with cloud and container security, the biggest operational hurdle was alert fatigue. I use Qualys to shift left from static CVSS severity to context-aware risk prioritization. I correlated raw vulnerability data with real-time risk factors such as public network exposure, active runtime execution, or overly permissive IAM roles. This allows us to immediately drop the priority of isolated containers and escalate lower-severity CVEs that sit on an exposed, high-risk path. We can map these findings directly back to our CI/CD pipelines so developers can patch the root base images upstream. We have drastically cut down the signal-to-noise ratio, saved a lot of manual hours doing triage work, and ensured engineering effort goes directly towards high-impact risk reduction.
Kris Nawani - PeerSpot reviewer
Co-Founder/Director at Bangkok MSP Company Limited
Offers complete coverage without the need to install additional software
USM Anywhere is used for threat detection and investigation. It provides a solution with built-in threat intelligence and various other investigation tools The solution offers complete coverage without the need to install additional software, as it is maintained by the vendor. It helps in saving…
SS
CEO at Rexha Technologies
User interface needs refinement while providing robust security and cost management
Xops helps me with cloud finance management by allowing me to monitor my spending, and just a couple of months ago, I noticed that my AWS bill, which usually hovers around 50k monthly, spiked unexpectedly. I received an alert on the dashboard and via email about a sudden increase in usage, enabling me to rectify the actual problem and bring things back to normal. The best features of Xops, in my experience, include the FinOps component for checking unnecessary spending trends, the cloud security features, and the cybersecurity and workload security features that allow me to frequently check for vulnerabilities on images and websites. The cloud security feature of Xops stands out to me because it helps maintain compliance status by providing multiple compliance checks, including ISO and CIS benchmarks, and it is not limited to AWS, as it also includes Azure cloud scans and O365 cloud scans, allowing me to monitor security across various platforms. Other useful features of Xops include asset management tools and automation scripts, which help me check what assets I have across all regions, giving me a global view whenever I need it. Xops has positively impacted my organization by enabling me to save money and proactively detect issues, especially related to cloud spending, while also improving my routine security checks for any misconfigurations. While some metrics are difficult to quantify, I regularly run scans to catch security vulnerabilities that may arise due to changing user settings.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"TruRisk Insights is the most important innovation they've released this year."
"Qualys TotalCloud has significantly reduced our workload in terms of managing risks, helping us to be more efficient and save substantial resources."
"TotalCloud has been excellent in providing us with immediate access to all the products and features we need, such as CSPM, TruRisk Insights, and compliance reports, including CIS and HIPAA."
"The best features in Qualys TotalCloud include the total asset management of the cloud environment. It is very easy to export the report and see the vulnerabilities related to the cloud specifically."
"By integrating TotalCloud, we have significantly reduced vulnerabilities in our deployment pipeline."
"Qualys TotalCloud has improved our security posture."
"Qualys TotalCloud's most valuable feature is its ability to link clusters of assets, providing a clear model of deployments, vulnerabilities, and statuses."
"The scalability is good as well. I would rate it ten out of ten."
"Its powerful correlation engine helps reduce time in manually correlating events."
"The asset management functionality (active and passive scans) is also really important. You can't protect what you do not know about, so having an inventory of all your devices and software is critical to a security management program."
"Reports are customized, so you can present them to executives or engineers.​"
"Monitoring customer's critical network is now almost a one man job."
"The feature that I liked the most is that they have a vulnerability assessment package that comes along with the SIEM solution. So, whenever I find any threat or alert for any of the devices or servers, I could immediately initiate a vulnerability assessment scan on that machine. That is one of a kind. The price at which AlienVault operates is also valuable."
"AlienVault has streamlined our security functions by combining several different functions into one package."
"AlienVault provides excellent visibility into your network by combining centralized logging, host-based IDS and network IDS."
"AlienVault provides us with a very easy to use, central spot to view log files, and take appropriate action."
"Xops helped us mitigate the frequent external attacks that we have been trying to curb for a long time now, and more importantly, it helps with an easy-to-understand dashboard where I can monitor the services in use, optimizations, and ultimately the costs."
"The AWS cost optimization features have been game-changing - particularly the automated detection of idle EC2 instances and unattached EBS volumes that were silently draining our budget."
"The most valuable aspects of the solution include the Cloud FinOps Dashboards and the vulnerability scans."
"X-Ops has significantly improved our organization by streamlining cloud cost governance and enhancing the security posture across our AWS trading environment."
"The automated compliance monitoring reduced our manual security audits by 60%, allowing our team to focus on strategic initiatives rather than repetitive checks."
"Xops has positively impacted my organization by enabling me to save money and proactively detect issues, especially related to cloud spending, while also improving my routine security checks for any misconfigurations."
 

Cons

"In TotalCloud, I would suggest improvements in policy checks to cater to various inventory types like VPCs, subnets, S3 buckets, or IAMs. There is a lack of data segregation according to criticality or inventory."
"An area for improvement would be to focus on risks related to AI, such as large language models and potential data leakage."
"The main area needing improvement is integration. Although the team is strengthening TotalCloud, integration can be enhanced with SIEM, SOAR, ITSM, and other sources."
"The support is not up to the mark and seems to be overburdened."
"In a future release, I suggest that zero-day vulnerabilities should be predicted in advance using AI technologies. The system is not 100% secure yet, so proactive threat hunting could be enhanced to be more proactive than the current system."
"The cost of Qualys TotalCloud is high and could be more competitive."
"A feature improvement could be the inclusion of Windows OS support for container security, as it is currently only supported for Linux."
"We encountered challenges identifying the correct resource category for certain items, such as those in containers or storage."
"For creating new rules, you have to be familiar with regular expressions. I feel there could be something built-in to make sure that process is easier."
"AlienVault must improve their correlation feature. Some of the events do not match with the correlation rules and some of the correlation events are false-positive."
"It can still be difficult to feed products that are not supported out-of-the-box."
"Some customizations with the integration between AlienVault components have room for improvement and enabling users with WebUI interfaces instead of having to edit configuration files on the system to achieve certain actions would be a good improvement."
"Those tools could be improved because AlienVault is a SIEM, and it added all these other features."
"Search performance can be slow. The Raw Logs feature is painfully slow. And if we're talking about the newer, the Anywhere product, you can't even schedule reports on the thing. There are probably a dozen other features I'd really like to see there, but that would be one of the biggies."
"There are scalability issues due to a 60 TB limit, which restricts its use for large customers like banks."
"The only complex area of the setup was writing the custom scripts."
"While Xops delivers on core functionality, the platform could benefit from more mature AI models for anomaly detection."
"I chose four out of five because I believe more UI enhancements and a cleaner UX navigation could elevate it to a perfect five."
"I do not have notes for improvements."
 

Pricing and Cost Advice

"Qualys TotalCloud is expensive, but it offers a premier solution with no headaches."
"The pricing for TotalCloud is attractive and competitive in the market. Given the features, especially the dashboard, I have no concerns regarding pricing."
"The cost is high, but it meets our organizational needs."
"TotalCloud's price is about right where I would expect it to be."
"Although Qualys TotalCloud is relatively expensive due to its unique automation features, its cost-effectiveness is rated an eight out of ten, with ten being the most costly."
"The pricing is comparable. It is built into our other product, so I cannot piecemeal it. It is a part of our subscription."
"Qualys TotalCloud is expensive."
"Qualys TotalCloud offers good pricing that is affordable and competitive with the market. Our partnership also provides us with additional benefits."
"Use the AlienVault team. They are helpful and the documentation that they provide is second to none."
"So far, it has been a good solution for a tight budget."
"AT&T AlienVault USM is an expensive solution and we pay for the license and the support separately. We paid for the license and support for three years."
"I rate the price of AT&T AlienVault USM a four out of five."
"It's affordable for most customers."
"It has good pricing."
"I don't know exactly, but I know it is based on the number of logs and the retention duration, such as 30 days or something like that. So, the smallest package is about 500 a month for 30 days of logs. There is a virtual machine. You need resources for it. It is a log collecting VM. They provide the software, and you just have to load a virtual machine. So, you're going to incur some CPU RAM and storage for wherever this log collecting appliance is running, which typically is in our cloud and on our platform for the customer."
"It's very reasonably priced. It was one of the lowest among the ones I looked at. Licensing is pretty flexible. They can do a two-year or a three-year, even a one-year, perhaps."
Information not available
report
Use our free recommendation engine to learn which Compliance Management solutions are best for your needs.
915,341 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
16%
Outsourcing Company
12%
Manufacturing Company
11%
Financial Services Firm
10%
Construction Company
19%
Outsourcing Company
18%
Comms Service Provider
9%
Manufacturing Company
8%
Construction Company
36%
Comms Service Provider
11%
Manufacturing Company
10%
Healthcare Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business14
Midsize Enterprise6
Large Enterprise35
By reviewers
Company SizeCount
Small Business65
Midsize Enterprise29
Large Enterprise25
No data available
 

Questions from the Community

What needs improvement with Qualys TotalCloud?
In terms of improvement, remediation still belongs to the cloud team, which is one of the issues we faced with Qualys...
What is your primary use case for Qualys TotalCloud?
My main use case for Qualys TotalCloud is regarding the cloud visibility that we were not having previously. Previous...
What needs improvement with AT&T AlienVault USM?
There are scalability issues due to a 60 TB limit, which restricts its use for large customers like banks. It is also...
What is your primary use case for AT&T AlienVault USM?
USM Anywhere is used for threat detection and investigation. It provides a solution with built-in threat intelligence...
What is your experience regarding pricing and costs for Xops?
I recommend ensuring you fully understand the pricing tiers and the features included at each level. You should evalu...
What needs improvement with Xops?
I would like to see built-in anomaly detection for trading patterns using machine learning. It would also be helpful ...
What is your primary use case for Xops?
I use X-Ops to monitor and optimize AWS infrastructure costs for our trading workloads. It helps me ensure continuous...
 

Also Known As

Qualys TotalCloud with FlexScan
AT&T AlienVault USM, AlienVault, AlienVault USM, Alienvault Cybersecurity
No data available
 

Overview

 

Sample Customers

Information Not Available
Abel & Cole, Bank of Ireland, Bluegrass Cellular, CareerBuilder, Claire's, Hays Medical Center, Hope International, McCurrach, McKinsey & Company, Party Delights, Pepco Holdings, Richland School District, Ricoh, SaveMart, Shake Shack, Steelcase, TaxAct, Taylor Morrison, Vonage and Zoom
Information Not Available
Find out what your peers are saying about LevelBlue USM Anywhere vs. Xops and other solutions. Updated: September 2026.
915,341 professionals have used our research since 2012.