Try our new research platform with insights from 80,000+ expert users

NinjaOne vs Tenable Nessus comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Zafran Security
Sponsored
Ranking in Vulnerability Management
18th
Average Rating
9.6
Reviews Sentiment
7.8
Number of Reviews
6
Ranking in other categories
Continuous Threat Exposure Management (CTEM) (3rd)
NinjaOne
Ranking in Vulnerability Management
26th
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
21
Ranking in other categories
Network Monitoring Software (24th), Server Monitoring (6th), IT Service Management (ITSM) (8th), Remote Access (14th), Mobile Device Management (MDM) (5th), IT Alerting and Incident Management (9th), Remote Monitoring and Management (RMM) (1st), Patch Management (7th), MSP Backup (2nd), Unified Endpoint Management (UEM) (6th)
Tenable Nessus
Ranking in Vulnerability Management
2nd
Average Rating
8.4
Reviews Sentiment
6.0
Number of Reviews
87
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of January 2026, in the Vulnerability Management category, the mindshare of Zafran Security is 1.1%, up from 0.2% compared to the previous year. The mindshare of NinjaOne is 0.9%, up from 0.4% compared to the previous year. The mindshare of Tenable Nessus is 5.2%, down from 10.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Vulnerability Management Market Share Distribution
ProductMarket Share (%)
Tenable Nessus5.2%
Zafran Security1.1%
NinjaOne0.9%
Other92.8%
Vulnerability Management
 

Featured Reviews

Reviewer6233 - PeerSpot reviewer
Works at a healthcare company with 10,001+ employees
Has become an indispensable tool in our cybersecurity arsenal
While Zafran Security is already a powerful tool, there are areas where it could be further improved to provide even greater value. One key area for enhancement is the searching capabilities within its vulnerabilities module. By incorporating the ability to create Boolean searches, users would gain the ability to apply more complex filters and customize their search criteria. This would greatly enhance the precision and efficiency with which security teams can identify and prioritize vulnerabilities. Having such tailored search capabilities would save time and resources by narrowing down vast lists of vulnerabilities to those that meet specific parameters relevant to our unique risk environment. Additionally, integrating more robust reporting and visualization tools would be advantageous. Enhanced dashboards that offer customizable visual representations of risk configurations and threat landscapes would facilitate better communication with stakeholders, making it easier to explain vulnerabilities and the rationale behind certain security measures. This would also aid in demonstrating the improvements and value derived from existing security investments to leadership and non-technical team members.
Not Joseph Pearson - PeerSpot reviewer
Assistant Vice President, Tech Solutions at LPL Financials
Has simplified remote software delivery and script management but needs improved reporting flexibility and better Mac support
NinjaOne's best features include ease of use regarding enablement and deployment, a broad selection and ability of software enablement, and API deliveries. Using CrowdStrike, we are able to tie in NinjaOne's API to have these automatically deliver to endpoints upon addition of those devices to a group with that policy deployed to it. NinjaOne has positively impacted our organization by making delivery easier for our end users and improving the ability to create scripts, manage scripts, and check status of devices and their compliance. This easier delivery with NinjaOne gives us oversight on devices without having to be on the call or remoted in directly to a device.
MohammedJaffir - PeerSpot reviewer
Founder at Cipheroot
Has enabled me to reduce false positives and perform deep credential auditing with seamless integrations
I mostly use the configuration audit feature for the audit configuration as a scan policy, and I will use it for credential audit, which helps me scan credentials access such as local administrator or root access, performing a deeper and more accurate check of local configuration settings and file systems, making it a highly recommended feature. Regarding integration capabilities, we can integrate Tenable Nessus with SIM tools such as Splunk, IBM QRadar, and Azure Sentinel, as well as with ticketing systems such as ServiceNow, Jira, and Slack. There is no complexity as it is very easy to integrate everything. In terms of the reporting feature, while vulnerability scanning can throw some false positives, Tenable Nessus has very few, achieving a reduction of 75% to 80% false positives with manual analysis needed. We can generate standard Nessus reports that typically include host summaries and vulnerabilities by host and plugin, alongside solutions and remediation recommendations. The main benefits I get from Tenable Nessus are complete asset inventory and comprehensive attack surface management, allowing us to prioritize vulnerabilities based on risk, focusing on true risk and threat path analysis.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"With Zafran Security, it integrates with your security controls, allowing you to take that risk score and reduce it based on the controls in place or increase the risk based on different factors, such as if the issue is internet reachable or if there's an exploit in the wild."
"Overall, we have seen about eighty-seven percent reduction of the number of vulnerabilities that require urgency to remediate, specifically the number of criticals."
"We are able to see the real risk of a vulnerability on our environment with our security tools."
"We saw benefits from Zafran Security almost immediately after deploying it."
"Zafran is an excellent tool."
"Zafran has become an indispensable tool in our cybersecurity arsenal."
"The most valuable features of NinjaOne include remote desktop management, support and assistive tools, and screen sharing."
"The installation is easy, it only took two minutes."
"NinjaOne has a feature where we can create custom scripts that we can run on devices remotely."
"NinjaOne saves me time and improves my troubleshooting process by providing information automatically so I don't have to search for it."
"The tool's most valuable feature is third-party application updates."
"The standout feature of NinjaOne is that we do not have to open any ports for access, which is great for security."
"The best feature of NinjaOne is the SLA system. Every IT person can check their performance, how long it takes to resolve an issue, and how many SLAs are breached."
"The most important aspect of this tool is the security it provides our company."
"I like this solution because it is complete. It can scan and check many types of vulnerabilities. It can also check for compliance."
"Tenable Nessus is one of the best vulnerability assessment tools, that I know."
"With the Tenable Nessus enterprise edition, you have unlimited licenses to scan the device."
"The support has been really cooperative."
"We looked at Tenable, Qualys and Rapid7. We found Tenable was the best of all three."
"The product's most valuable features are vulnerability and asset management. It can define the rules and validate the configuration."
"The most valuable feature of Tenable Nessus is the dashboard. They are convenient to use."
"I find the features that are most valuable are the policies that help us identify the vulnerabilities. These policies are then used for scanning instabilities and then identifying the particular vulnerabilities."
 

Cons

"Initially, we were somewhat concerned about the scalability of Zafran due to our large asset count and the substantial amount of information we needed to process."
"The dashboarding and reporting functionality of Zafran Security is an area that definitely could use some improvements."
"I think the ability to have some enhanced reporting capabilities is something they can improve on, as they have good reports but we have asked for some specific reporting enhancements."
"NinjaOne's reporting module is cumbersome."
"The inclusion of XENServer and Proxmox as virtual platforms in NinjaOne is currently missing."
"I want NinjaOne to improve the reports."
"I would like to see the software reduced to focus on inventory or remote help tools since many of its current functionalities are not needed."
"There was a lot of delay with NinjaOne's ticketing system. For example, when a user creates a ticket and raises an issue, it would take 30 to 40 minutes to appear on the IT side. So the time delay issue is the main point."
"The solution could improve by optimizing the internet connection being used."
"The graphical user interface could be improved."
"The inclusion of XENServer and Proxmox as virtual platforms in NinjaOne is currently missing."
"I have found it is sometimes difficult to control the Zoom meeting sessions. For example, it is difficult to know who is talking and when trying to mute everyone but the speaker you end up muting everyone. When using multiple screens it is laborious to find the control buttons, such as to start a session. Additionally, when a recording is done I have found it difficult to find them, there should be an easier way to retrieve them."
"EQA's and dashboards should be addressed in the next release."
"The reporting is a bit cumbersome."
"To be honest, I haven't used it much to tell you that these are the things that should be improved. But I believe the UI should be enhanced somewhat. For example, there are two ways to find a report, and people are frequently confused as to which is the correct method for locating a full report. Sometimes they go in the opposite direction, so this is an area that may be improved."
"Nessus' reporting could be more user-friendly."
"One area that has room for improvement is the reporting. I'm preparing reports for Windows and Linux machines, etc. Currently, I'm collecting three or four reports and turning them into one report. I don't know if it is possible to combine all of them in one report, but that would be helpful."
"The tool needs to upgrade asset tracking."
"The problems I faced with Tenable Nessus were related to its dashboard's customization capabilities and its ability to provide data to third-party sources."
 

Pricing and Cost Advice

Information not available
"NinjaRMM uses a subscription model."
"NinjaOne's price is fine since my workplace is an educational institution, so we get the product at a really good price considering that we do not pay taxes, making the prices very fair and worth the product."
"The pricing is reasonable and cheaper than ConnectWise."
"It roughly costs $400 a month. It provides a good value because of the number of tools that you get in the solution. I would rate it a four out of five in terms of pricing. There are no additional costs other than the standard licensing fees."
"I rate the solution’s pricing a five out of ten, where one is the lowest and ten is the most expensive."
"Its pricing is great."
"NinjaOne is a little expensive but is still cheaper than competitors like Acronis or Veeam."
"The product's pricing depends on the number of PCs or devices."
"I think the price is fairly affordable. It provides a license that is fair."
"One problem with Tenable is its pricing policy. Optimal results can be achieved with Greenbone Solutions which has much more friendly pricing policies."
"Our organization is huge so our license costs $30,000."
"The price of the solution is reasonable."
"Nowadays, your vulnerability applications are going to be kind of pricey because lots of them, including Rapid7, are based upon a base price, but then they add in the nodes. That's where they get you. If you're a big network, obviously, you need to scan everything. Therefore, it's going to be costly. The risk and insurance money associated with having ransomware on my networks is going to cost me more money, time, and marketing than the price of the tool. That's why I'm speaking only as an information security officer to security operations. This is the tool that is there in my toolbox to say whether we vulnerable or not. At this point, I don't care about how much it costs my company to have it because if I wasn't able to report it and we got ransomware, then who cares? I'm probably going to be out of business because it happened. That's why I don't care about the price. I have it, and I could use it effectively and do my report. At the end of the day, even if we get ransomware, as long as I reported it, followed my protocol, and put in the change, irrespective of whether it was ignored or denied, I did my job."
"Nessus is affordable, but its licensing model could be improved with more flexibility for adding assets."
"The price of Tenable Nessus is much more competitive versus other solutions on the market."
"The product is free."
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
880,685 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
8%
Computer Software Company
7%
Outsourcing Company
6%
Computer Software Company
12%
Government
8%
Manufacturing Company
7%
Financial Services Firm
7%
Financial Services Firm
10%
Computer Software Company
10%
Manufacturing Company
10%
Government
10%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business17
Midsize Enterprise3
Large Enterprise2
By reviewers
Company SizeCount
Small Business39
Midsize Enterprise19
Large Enterprise35
 

Questions from the Community

What is your experience regarding pricing and costs for Zafran Security?
Since we stood Zafran Security up in our private cloud, we handle the maintenance on our side. As we opted not to use...
What needs improvement with Zafran Security?
In terms of areas for improvement, Zafran Security is doing a really great job as a new and emerging company. Oftenti...
What is your primary use case for Zafran Security?
My use cases for Zafran Security revolve around two primary areas. One is around vulnerability management and priorit...
What is your experience regarding pricing and costs for NinjaOne?
My experience with pricing, setup cost, and licensing for NinjaOne is fairly cheap and easy.
What needs improvement with NinjaOne?
One challenge I face with NinjaOne is that when remoting in, sometimes the end user has a resolution with very tiny t...
What is your primary use case for NinjaOne?
My main use case for NinjaOne is ticketing. I use NinjaOne for ticketing in my daily work to keep track of all the co...
How would you choose between Rapid7 InsightVM and Tenable Nessus?
You have full visibility across cloud, network, virtual, and containerized infrastructures with Rapid7 Insight VM. Yo...
What's the difference between Tenable Nessus and Tenable.io Vulnerability Management?
Tenable Nessus is a vulnerability assessment solution that is both easy to deploy and easy to manage. The design of ...
What do you like most about Tenable Nessus?
We have around 500 virtual machines. Therefore, we conduct monthly scans and open tickets for our developers to addre...
 

Overview

 

Sample Customers

Information Not Available
Status Pros, Mitchell and Company
Bitbrains, Tesla, Just Eat, Crosskey Banking Solutions, Covenant Health, Youngstown State University
Find out what your peers are saying about NinjaOne vs. Tenable Nessus and other solutions. Updated: December 2025.
880,685 professionals have used our research since 2012.