No more typing reviews! Try our Samantha, our new voice AI agent.

Pentera vs XM Cyber comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Seemplicity
Sponsored
Ranking in Continuous Threat Exposure Management (CTEM)
17th
Average Rating
9.0
Reviews Sentiment
7.4
Number of Reviews
2
Ranking in other categories
Vulnerability Management (133rd), Cloud Security Remediation (4th)
Pentera
Ranking in Continuous Threat Exposure Management (CTEM)
1st
Average Rating
8.0
Reviews Sentiment
6.1
Number of Reviews
13
Ranking in other categories
Penetration Testing Services (4th), Breach and Attack Simulation (BAS) (2nd)
XM Cyber
Ranking in Continuous Threat Exposure Management (CTEM)
5th
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
6
Ranking in other categories
Continuous Controls Monitoring (4th), Vulnerability Management (39th), Cloud Security Posture Management (CSPM) (30th)
 

Mindshare comparison

As of July 2026, in the Continuous Threat Exposure Management (CTEM) category, the mindshare of Seemplicity is 2.3%, up from 2.3% compared to the previous year. The mindshare of Pentera is 10.2%, down from 27.1% compared to the previous year. The mindshare of XM Cyber is 10.0%, down from 14.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Continuous Threat Exposure Management (CTEM) Mindshare Distribution
ProductMindshare (%)
Pentera10.2%
XM Cyber10.0%
Seemplicity2.3%
Other77.5%
Continuous Threat Exposure Management (CTEM)
 

Featured Reviews

Yaron Blachman - PeerSpot reviewer
Member And Investor at OpenWeb
Centralized security workflows have reduced alert noise and now prioritize critical remediation
In recent months, we have started to use Seemplicity's investigations and analysts feature, and it also appears to be a good capability. It is not fully utilized yet, but it does show potential. We see many instances where based on the original data from security systems, Seemplicity determines that a certain ticket is of high priority and should be addressed, but when we handle it, we often find that some information is missing or it is not really such a high priority. The analysts feature brings in additional AI capabilities where they investigate the topic in depth. So far, we have found that their findings are very accurate. If we decide to implement it and turn it on for all cases, or at least for all high-critical and high-risk issues, it will probably reduce the workload on our human analysts. Seemplicity offers three best features. One is the option to deduplicate alerts between security platforms, which is something we do not have the capability for anywhere else. The second is managing the remediation queues, which is truly useful; it ensures that developers and the security team receive the right tickets in the right amount, with the right priority and right details, and then tracking them is very useful. It is a single point to manage all our security activity. The deduplication feature helps my team day-to-day by reducing the amount of work. When we examine security incidents, usually one security flaw—a new zero-day vulnerability in a library we use—triggers alerts across different systems, from our vulnerability management platforms to our real-time runtime monitoring systems to our Wiz platform, showing us the same issue across multiple instances. This might generate hundreds of different alerts. Seemplicity allows us to deduplicate them into one single action that a security person or developer needs to perform to fix all of these alerts. Instead of having 100 or 200 different tickets opened to different teams, we have a very specific team that receives one single ticket to solve it all. When we started with Seemplicity, we saw an 85% reduction in the number of tickets through deduplication, and that is significant for our teams who are swamped with issues. Seemplicity has positively impacted our organization overall by reducing the number of tickets that are opened, allowing the team to really focus on what is important. We have less noise, so we are very focused, and using this tool has helped us reduce the number of vulnerabilities and issues we address. We are at the point where we have zero critical issues and probably less than ten high-risk issues, which we are constantly addressing and will likely resolve soon. We are also beginning to tackle medium and low-risk issues, which we never could before. Having this deduplication reduction helps us really focus on advancing our security posture.
reviewer1460223 - PeerSpot reviewer
Ai Expert at a educational organization with 1,001-5,000 employees
Automated testing has reduced manual effort and improves remediation of critical vulnerabilities
The biggest friction point with Pentera is the need for more granular control or the ability to exclude specific sensitive systems, as well as the necessity for the cloud environment to mature. While Pentera excels in on-premises and hybrid setups, its AWS and Azure attack path simulation is not as deep compared to others.If I could change one thing in Pentera to improve my workflow the most, it would be the platform UI because some security team members are not penetration testing specialists, making it difficult for them to navigate. I would make it easier with more guided workflows.
Stephen Owen - PeerSpot reviewer
Group CISO at a insurance company with 51-200 employees
Has significantly improved risk visibility and optimized remediation efforts across dynamic environments
We tightly integrate with APIs, consuming feeds and open source data. We have integrated with XM Cyber, and we are elevating ourselves with AI and MCP tools as we view this as a forerunner to reducing the workload for our agents and IT staff. We're pushing all our security partners to provide AI and MCP tools. Our vision is for them to offer a chat interface where a junior IT or an experienced infrastructure engineer can ask for what needs to be patched next without using an interface. Their current interface is very usable and professional, ranking in the top tier of applications. Their reporting is good, offering custom reports, and their API integration is a new capability that serves us well. We have high expectations for the next generation, such as a chat interface to ask questions. However, everything has been very good. We push the boundaries with digital twins; I understand XM Cyber uses a similar concept of graph databases to map environments. I would like access to that and querying languages, enabling more informed business decisions. XM Cyber sees much of our estate, which is beneficial for making informed decisions, and we can harness those insights and data for business analytics. For instance, it could help us gain insights into change management—if a particular server impacts another and that server is supported by yet another server, we could glean significant insights for change management meetings.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We have seen improvements in remediation rates, as initially a lot of our metrics were in the red, but now all are in the green or yellow."
"When we started with Seemplicity, we saw an 85% reduction in the number of tickets through deduplication, and that is significant for our teams who are swamped with issues."
"The vulnerability scanner, exploit achievements, and remediation actions are all great."
"The most valuable feature of Pentera is that you can do continuous vulnerability assessment, which is automated."
"Pentera has many authentic features."
"Pentera has significantly affected our organization by dropping our mean time to remediate critical vulnerabilities because the remediation team can clearly evidence the exploit instead of debating CVSS scores, and our security posture has improved."
"The product is easy to use."
"What I like the most about Pentera is its solution-oriented approach."
"The best features of Pentera are the dashboard and security, with the dashboard being excellent as I can see everything, and it is really simple and easy to work with, which has made my team faster, more efficient, and improved teamwork significantly."
"The tool showed us that our ransomware protection wasn’t working on some machines."
"It saves you money while making you more secure."
"Since implementing XM Cyber, we have improved the way we are doing patching, focusing on the choke points in our patching cycle, and it improves the way we assess the risk."
"XM Cyber made it clear that browser vulnerabilities were the top priority because the platform was able to examine how vulnerabilities within our estate could be exploited and what the path would be from some bad actor in order to exploit those vulnerabilities."
"XM Cyber permits us to identify if a zero-day vulnerability can affect our infrastructure; it helps me understand the company's total risk that we have in our infrastructure and workstation vulnerability, and it permits us to identify the real impact when we have a vulnerability."
"Six weeks into using XM Cyber, we saw a compelling return on investment—primarily in risk reduction, with a specific issue our other security tooling did not pick up but XM Cyber did, reducing IT remediation time and saving over 60,000 US dollars per year while significantly lowering our loss exposure amount."
"What I personally like very much, from my experience, is that it is very reliable."
"The platform's most valuable feature is attack simulation."
 

Cons

"Every tool, including Seemplicity, can improve, and I think it needs to further enhance its deduplication capabilities and understand how to integrate with more security tools, especially as new AI security tools emerge."
"Seemplicity could be improved with some of the aggregation accessibility. Currently, it is a bit of a black box and can be a bit of a bottleneck."
"The price could be improved."
"There is room for improvement in virtualization compatibility."
"The biggest frustration or friction point I have had with Pentera is that the navigation seems slower."
"The biggest frustration I have had with Pentera is the navigation, which seems slower."
"Maybe scalability. I know that the Pentera right now is high level in order to scan big deals over 500 IPs and not less, and not less. That can be more granular. This will be useful."
"The main challenge currently is the commercial aspect, as the product has become very expensive."
"The enterprise pricing is a big investment."
"They need to offer support for a new graphic card."
"They could improve support because when we need to create a super case and escalate to resolve with technical support, they resolve our ticket in approximately two weeks."
"We have high expectations for the next generation, such as a chat interface to ask questions."
"There are many interesting things about XM Cyber, but the part that can be improved is the mobile exposure and the IBM i specific equipment."
"We have not saved any time or effort, but we can prove that the effort involved around vulnerability management has been better spent to greater effect, and we've been able to demonstrate that vulnerabilities that do represent a high risk have been remediated more rapidly and more effectively."
"We'd like to see a cheaper price."
"XM Cyber could identify all areas of vulnerability. They could expand the identification span for different areas."
 

Pricing and Cost Advice

Information not available
"The product's cost is reasonable. I rate the pricing a three out of ten."
"The tool is relatively cheap."
"We have to pay a yearly licensing cost for Pentera."
"It's not that expensive, but it could be more cost-effective."
"We have to pay standard licensing fees."
report
Use our free recommendation engine to learn which Continuous Threat Exposure Management (CTEM) solutions are best for your needs.
904,973 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
29%
Legal Firm
10%
Outsourcing Company
10%
Hospitality Company
6%
Manufacturing Company
13%
Financial Services Firm
11%
Computer Software Company
8%
Government
6%
Financial Services Firm
11%
Manufacturing Company
10%
Computer Software Company
8%
Retailer
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise1
Large Enterprise5
No data available
 

Questions from the Community

Ask a question
Earn 20 points
What needs improvement with Pentera?
Cloud testing capabilities need enhancement. The core product was built for on-premises internal network validation.
What is your primary use case for Pentera?
Continuous automated security validation across our internal network and external attack surface was necessary. The p...
What is your experience regarding pricing and costs for XM Cyber?
My experience with pricing, setup cost, and licensing was that we have a large, complicated estate, and in the licens...
What needs improvement with XM Cyber?
The roadmap is a disadvantage because this kind of technology should incorporate AI. At the moment, we don't have any...
What is your primary use case for XM Cyber?
My major use case for XM Cyber is managing the services in our company, Prosegur Iberia, for Spain and Portugal. We d...
 

Comparisons

 

Interactive Demo

Demo not available
Demo not available
 

Overview

 

Sample Customers

Information Not Available
Blackstone Group Caterpillar Apria Healthcare Taylor Vinters Sandler Capital Management Drawbridge BNP Paribas British Red Cross
Hamburg Port Authority, Plymouth Rock Corporation
Find out what your peers are saying about Pentera vs. XM Cyber and other solutions. Updated: June 2026.
904,973 professionals have used our research since 2012.