Try our new research platform with insights from 80,000+ expert users

Qualys Enterprise TruRisk Platform vs Zscaler Zero Trust Exchange Platform comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Apr 20, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

SentinelOne Singularity Clo...
Sponsored
Ranking in Cloud-Native Application Protection Platforms (CNAPP)
3rd
Average Rating
8.8
Reviews Sentiment
7.9
Number of Reviews
112
Ranking in other categories
Vulnerability Management (6th), Cloud and Data Center Security (5th), Container Security (3rd), Cloud Workload Protection Platforms (CWPP) (4th), Cloud Security Posture Management (CSPM) (3rd), Compliance Management (2nd)
Qualys Enterprise TruRisk P...
Ranking in Cloud-Native Application Protection Platforms (CNAPP)
20th
Average Rating
8.0
Number of Reviews
2
Ranking in other categories
Cloud and Data Center Security (15th)
Zscaler Zero Trust Exchange...
Ranking in Cloud-Native Application Protection Platforms (CNAPP)
10th
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
63
Ranking in other categories
Data Loss Prevention (DLP) (3rd), Cloud Access Security Brokers (CASB) (3rd), Application Control (3rd), ZTNA as a Service (1st), Secure Access Service Edge (SASE) (2nd), Cloud Security Posture Management (CSPM) (13th), Remote Browser Isolation (RBI) (1st)
 

Mindshare comparison

As of May 2025, in the Cloud-Native Application Protection Platforms (CNAPP) category, the mindshare of SentinelOne Singularity Cloud Security is 3.4%, up from 1.2% compared to the previous year. The mindshare of Qualys Enterprise TruRisk Platform is 0.1%, down from 0.1% compared to the previous year. The mindshare of Zscaler Zero Trust Exchange Platform is 1.2%, down from 1.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud-Native Application Protection Platforms (CNAPP)
 

Featured Reviews

Andrew W - PeerSpot reviewer
Tells us about vulnerabilities as well as their impact and helps to focus on real issues
Looking at all the different pieces, it has got everything we need. Some of the pieces we do not even use. For example, we do not have Kubernetes Security. We are not running any K8 clusters, so it is good for us. Overall, we find the solution to be fantastic. There can be additional education components. This may not be truly fair to them because of what the product is going for, but it would be great to see additional education for compliance. It is not a criticism of the tool per se, but anything to help non-development resources understand some of the complexities of the cloud is always appreciated. Any additional educational resources are always helpful for security teams, especially those without a development background.
VivekSaini - PeerSpot reviewer
Comprehensive vulnerability management improves security assessments
The platform scans the entire environment and IP range, providing comprehensive vulnerability reports along with solutions to address these vulnerabilities. Its features are extensive and it produces proper results, although there may be occasional false positives. It also categorizes risks based on severity, though further evaluation is necessary for our specific environment.
Sumit Bhanwala - PeerSpot reviewer
Cloud-based platform simplifies device and data center management
I find it to be good. The solution is cloud-based with the latest inspection engines, which I find to be amazing. We are less dependent on data centers and device management, which reduces our efforts significantly. It improves our device management, data center management, and updating devices. We need fewer engineers for this management, and it reduces time and efforts for data center management, device upgrades, and IT support.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"They're responsive to feature requests. If I suggest a feature for Prisma, I will need to wait until the next release on their roadmap. Cloud Native Security will add it right away."
"SentinelOne Singularity Cloud Security can integrate all your cloud accounts and resources you create in the AWS account, We have set it up to scan the AWS transfer services, EC2, security groups, and GitHub."
"The monitoring tool has comprehensive monitoring features."
"The compliance monitoring feature of SentinelOne Singularity Cloud Security gives us a report with a compliance score to ensure we meet certain regulatory standards."
"SentinelOne's behaviour analytics are valuable because they detect anomalies and malicious behaviour that signature-based solutions might miss."
"I recommend SentinelOne due to its high-security capabilities, which are essential to safeguard data and systems from potential threats."
"It's positively affected the communication between cloud security, application developers, and AppSec teams."
"SentinelOne stands out with its responsiveness to feature requests for Singularity Cloud Security."
"Qualys Enterprise TruRisk Platform is considered a good leader in its field."
"Qualys offers versatility. It can function both with and without agents, offering flexibility in deployment. Furthermore, it provides comprehensive support for various systems such as Windows Server, Unix servers, and databases, including SQL, Oracle, and others for development."
"The most valuable features of Zscaler Private Access are reliability, scalability, and availability."
"Yes, it is very stable. I have never seen it go down, not once."
"I like its ease of use. It has a single pane of glass for the ZIA and ZPA pieces. It is very manageable. It is also very easy to deploy for secure access, and it gives half-decent coverage for visibility in terms of what the users use and what data is being proxied through the access gateway."
"The most valuable features of Zscaler SASE include web filtering, application control, and the private access configuration."
"The most valuable feature is its ability to establish connectivity for remote users and remote endpoints. It offers a high level of granularity compared to typical VPNs, which also encapsulate a lot of I/O."
"The most valuable feature is the manageability of the micro tunnels."
"It is a very scalable solution. Scalability-wise, I rate the solution a ten out of ten."
"Has a good zero trust feature."
 

Cons

"I export CSV. I cannot export graphs. Restricting it to the CSV format has its own disadvantages. These are all machine IP addresses and information. I cannot change it to the JSON format. The export functionality can be improved."
"The SentinelOne customer support needs improvement, as they are sometimes late in responding, which is critical in a production issue."
"With Cloud Native Security, we can't selectively enable or disable alerts based on our specific use case."
"Currently, we would have to export our vulnerability report to an .xlsx file, and review it in an Excel spreadsheet, and then we sort of compile a list from there. It would be cool if there was a way to actually toggle multiple applications for review and then see those file paths on multiple users rather than only one user at a time or only one application at a time."
"If something happens in our infrastructure, the alert appears on the dashboard, but I have to log in to the dashboard and refresh it. I would prefer it to provide better alerting and notifications so that I can resolve issues on priority."
"We are experiencing problems with Cloud Native Security reporting."
"Sometimes the Storyline ID is a bit wacky."
"Crafting customized policies can be tricky."
"The report sometimes inaccurately identifies the corresponding operating system version."
"The customers would benefit from more robust documentation and conversations around configurations, as it is slightly complex."
"Setup is a bit complex because there are many steps that need to be taken before onboarding and activating the solution."
"SCMP support would be one of the biggest improvements in my opinion. More speed improvements are also required."
"We faced certain migration and implementation challenges in executing the tasks, so I would suggest improvement related to the stability of the solution."
"It has massive room for improvement. The Zscaler product itself is okay, but it doesn't give enough granularity for us as an organization to stipulate rules or processes, especially for data-driven services. For instance, we can stick on SSL inspection, but it's just a click box. It doesn't allow us to go any further into the detail of the SSL inspection. We also can't pull it out without having an additional logging server. It just doesn't give us enough granularity. They should give us more control over the interfaces because it is all backend. They weren't very open to discussing their backend architecture with us in terms of their own data centers. They can maybe a little bit more open about what components are there and how the backend infrastructure works alongside Zscaler. Its licensing can be better. Some of the additional licensing costs are quite high, and they should have certain features ready and available as a baseline rather than having to purchase additional licenses for it. Their support should also be improved. I initially had a consultant from Zscaler for its deployment, but the support that I had throughout the deployment of the project wasn't the best."
"We often face performance and latency issues with Zscaler SASE."
"They should work on a replica account. There could be alerts and replica files sent to the DLP team during data collection."
"Zscaler Private Access's reporting is poor. We should have more insight into the reports regarding what is blocked and allowed."
 

Pricing and Cost Advice

"It's not expensive. The product is in its initial growth stages and appears more competitive compared to others. It comes in different variants, and I believe the enterprise version costs around $55 per user per year. I would rate it a five, somewhere fairly moderate."
"SentinelOne is relatively cheap. If ten is the most expensive, I would rate it a seven."
"PingSafe falls within the typical price range for cloud security platforms."
"It was reasonable pricing for me."
"PingSafe's primary advantage is its ability to consolidate multiple tools into a single user interface, but, beyond this convenience, it may not offer significant additional benefits to justify its price."
"It is a little expensive. I would rate it a four out of ten for pricing."
"PingSafe is fairly priced."
"SentinelOne is quite costly compared to other security platforms."
Information not available
"The product has reasonable pricing."
"The pricing is expensive and on the higher end. Honestly, in my opinion, it is not worth the price."
"It's an affordable solution"
"There is definitely an ROI."
"The price is competitive."
"Zscaler CASB is an expensive solution."
"In the long run, cloud services are not inherently costly."
"Pricing for Zscaler Private Access is moderate. It's acceptable, though I can't give you the exact price currently. It's not too expensive, and on a scale of one to five, I would rate it a four out of five in terms of pricing."
report
Use our free recommendation engine to learn which Cloud-Native Application Protection Platforms (CNAPP) solutions are best for your needs.
850,028 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
17%
Financial Services Firm
15%
Manufacturing Company
9%
Government
6%
No data available
Computer Software Company
16%
Financial Services Firm
13%
Manufacturing Company
10%
Insurance Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about PingSafe?
The dashboard gives me an overview of all the things happening in the product, making it one of the tool's best featu...
What is your experience regarding pricing and costs for PingSafe?
It is cost-effective compared to other solutions in the market.
What needs improvement with PingSafe?
SentinelOne Singularity Cloud Security is an excellent CSPM tool, but its CWPP features need improvement, and there i...
What needs improvement with Qualys Enterprise TruRisk Platform?
Support could be improved. Contacting support is a lengthy process for raising a case. Recently, while attempting to ...
What is your primary use case for Qualys Enterprise TruRisk Platform?
I am using all the modules on Qualys. It is a vulnerability and risk management platform. Additionally, we are using ...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What do you like most about Zscaler SASE?
The most valuable features of Zscaler Private Access are reliability, scalability, and availability.
What is your experience regarding pricing and costs for Zscaler SASE?
Zscaler SASE is quite expensive compared to other solutions. The price is not fixed and it does not include all of th...
 

Also Known As

PingSafe
Qualys Cloud Platform
Zscaler SASE, Zscaler DLP, Zscaler CASB, Zscaler CSPM, Zscaler Browser Isolation, Zscaler Posture Control
 

Overview

 

Sample Customers

Information Not Available
Information Not Available
Siemens, AutoNation, GE, NOV
Find out what your peers are saying about Palo Alto Networks, Wiz, SentinelOne and others in Cloud-Native Application Protection Platforms (CNAPP). Updated: April 2025.
850,028 professionals have used our research since 2012.