Try our new research platform with insights from 80,000+ expert users

Qualys Policy Compliance vs STREAM Integrated Risk Manager comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Qualys Policy Compliance
Average Rating
8.8
Reviews Sentiment
7.3
Number of Reviews
8
Ranking in other categories
IT Governance (3rd)
STREAM Integrated Risk Manager
Average Rating
0.0
Number of Reviews
0
Ranking in other categories
GRC (113th), IT Vendor Risk Management (39th)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. Qualys Policy Compliance is designed for IT Governance and holds a mindshare of 3.6%, up 2.8% compared to last year.
STREAM Integrated Risk Manager, on the other hand, focuses on GRC, holds 0.3% mindshare, up 0.0% since last year.
IT Governance Market Share Distribution
ProductMarket Share (%)
Qualys Policy Compliance3.6%
RSA Archer24.6%
IBM OpenPages17.8%
Other54.0%
IT Governance
GRC Market Share Distribution
ProductMarket Share (%)
STREAM Integrated Risk Manager0.3%
RSA Archer5.2%
AuditBoard3.7%
Other90.8%
GRC
 

Featured Reviews

reviewer1906245 - PeerSpot reviewer
Information Security Analyst at a tech services company with 11-50 employees
Facilitates continuous compliance monitoring and simplifies vulnerability tracking for distributed cloud assets
Regarding improvements I would like to see in Qualys Policy Compliance, there are a couple of vulnerabilities where the metrics that are already there and the way Qualys measures those metrics and labels them as critical, high, or low does not align with my understanding from a user standpoint. Every time, I have to put in a false positive. Since I have been doing that for the past one year, the same vulnerability tends to pop up and they mark it as critical. Qualys needs to update and rediscover those weaknesses and re-label them. I understand what the company design and what the tool does, but it takes some time for us to manage those things. In terms of missing features that I would like to see included in Qualys Policy Compliance, I do not think there are any. The feature does what we require and does the job. If there were some sort of reporting that fulfills auditor's requirements, particularly if there is an external audit and they ask us for any historical data like how long we have been compliant to the PCI framework, that would be valuable. Having reporting that shows historical data that we have been compliant from the date of inception, for example, from 2023 to 2025 onwards, would bring value to what we are reporting.
Use STREAM Integrated Risk Manager?
Leave a review
report
Use our free recommendation engine to learn which IT Governance solutions are best for your needs.
881,757 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Marketing Services Firm
13%
Healthcare Company
13%
Government
10%
Outsourcing Company
8%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise2
Large Enterprise4
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for QualysGuard Policy Compliance?
I was involved in the purchasing of Qualys Policy Compliance in my previous company, where the costs are based on the number of devices and features, with enterprise level pricing which I cannot sp...
What needs improvement with QualysGuard Policy Compliance?
Regarding improvements I would like to see in Qualys Policy Compliance, there are a couple of vulnerabilities where the metrics that are already there and the way Qualys measures those metrics and ...
What is your primary use case for QualysGuard Policy Compliance?
I have been working with Qualys Policy Compliance for the past four years. Our complete infrastructure is on cloud and we have assets distributed across Asia and North America. We have a couple of ...
Ask a question
Earn 20 points
 

Overview

 

Sample Customers

PDX, Cigna
Midland states bank, Zeiss, gtt, HM Government, Telkom, ATPI, LanguageLine Solutions, CGI, UN, Giesecke & Devrient, Konica Minolta, Channel 4, NHS Wales
Find out what your peers are saying about RSA, IBM, Qualys and others in IT Governance. Updated: January 2026.
881,757 professionals have used our research since 2012.