Try our new research platform with insights from 80,000+ expert users

Rapid7 InsightVM vs Skyhigh Security comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Zafran Security
Sponsored
Average Rating
9.4
Reviews Sentiment
8.2
Number of Reviews
5
Ranking in other categories
Vulnerability Management (27th), Continuous Threat Exposure Management (CTEM) (3rd)
Rapid7 InsightVM
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
64
Ranking in other categories
Risk-Based Vulnerability Management (4th)
Skyhigh Security
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
56
Ranking in other categories
Secure Web Gateways (SWG) (19th), Cloud Access Security Brokers (CASB) (10th), ZTNA as a Service (16th), Secure Access Service Edge (SASE) (14th)
 

Mindshare comparison

Risk-Based Vulnerability Management
Secure Access Service Edge (SASE)
 

Featured Reviews

Israel Cavazos Landini - PeerSpot reviewer
Weekly insights and risk analysis facilitate informed security decisions
I appreciate the weekly insights Zafran provides, which include critical topics for networks and IT security, allowing us to evaluate which insights apply to our environment. The organization score feature is valuable to keep the leadership team updated on how our infrastructure fares security-wise. The applicable risk level versus base risk level feature is beneficial because prior to Zafran, we only used the base risk level, but now understand that risk depends on the asset itself. Zafran is an excellent tool.
Anusha Sadasivani - PeerSpot reviewer
Rapid deployment and user-friendly architecture streamline vulnerability management but customer support response needs improvement
We are still using Rapid7 InsightVM I personally still use Rapid7 InsightVM. We use Rapid7 InsightVM for vulnerability scanning. It supports both agent-based and agentless scanning, which is part of our vulnerability management strategy. The agentless scan in Rapid7 InsightVM is effective and…
Santiago Gomez - PeerSpot reviewer
Has improved the organization's PCI compliance with data loss prevention
I use the solution on a Macintosh computer and it has issues and does not work when I try to log in from the Safari Browser, but it works fine when I log in from the Google Chrome browser. The console has issues when the login is done through a Safari Browser. The console has to be more competitive and the compatibility of the browser needs to be better. I want to know about Skyhigh's competitiveness with other brands and about the vulnerability assessment and micro segmentations. I know Skyhigh has other products, but right now, I am studying what this new product is about. They only have English support, so I would like for them to add some Spanish support.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We are able to see the real risk of a vulnerability on our environment with our security tools."
"Zafran has become an indispensable tool in our cybersecurity arsenal."
"Zafran is an excellent tool."
"Overall, we have seen about eighty-seven percent reduction of the number of vulnerabilities that require urgency to remediate, specifically the number of criticals."
"We saw benefits from Zafran Security almost immediately after deploying it."
"It is good and fits well with pretty much all of our use case needs."
"The most valuable feature for us is the different types of reporting it provides."
"The ease of deployment and configuration allows users to onboard quickly."
"We are very satisfied with the reports, as they provide us with the information that is required for our management."
"The solution scales well."
"The most valuable feature of the Rapid7 InsightVM solution is the Live Risk Score."
"The most valuable features of Rapid7 InsightVM are the accurate level of scanning and the workflows are good."
"I like Rapid7's scan optimization options."
"The stability is the most valuable feature. We haven't had any issues with the product."
"Tokenization."
"It help us monitor high risk services, blocking them, and also feeding them to our egress points."
"They were very, very aggressive in the market to get a new market share or to take over market share while other companies were being broken up."
"Skyhigh Security is user-friendly in terms of configuration and UI."
"The cloud security features are the most valuable."
"Shadow IT reporting capabilities."
"It is easy to configure rules."
 

Cons

"Initially, we were somewhat concerned about the scalability of Zafran due to our large asset count and the substantial amount of information we needed to process."
"The dashboarding and reporting functionality of Zafran Security is an area that definitely could use some improvements."
"I think the ability to have some enhanced reporting capabilities is something they can improve on, as they have good reports but we have asked for some specific reporting enhancements."
"We are a registered reseller and a trusted partner. However, for us to get any support from them I can't log a call directly with Rapid7 InsightVM. I have to work with the distributor to log the call for me."
"The InsightVM cannot scan if we connect to our customer by the VPN."
"Their customer support should be improved, and the effectiveness of scans also needs to be improved."
"There should be containerization within the VM."
"Rapid7 InsightVM should improve its threat intelligence."
"It would be nice to have an additional feature that would provide reports on who has logged onto the console or who did what on the console."
"It would be great to have a mobile application client. Currently, you have to use a mobile web browser on a device, but it is not similar to the desktop web browser in terms of user experience. It would be nice to have a mobile application to access the platform."
"The reporting is a little bit tricky because it can be difficult to exactly pinpoint some of the assets to filter them and generate a report."
"They could be integrated with CASB. I think normally McAfee has this solution in the cloud, but for us the best is on-premise."
"The services take some time to load. It would be helpful if the loading time was reduced."
"Its initial setup could be more straightforward."
"There isn't really any aspect that is lacking."
"It is an expensive solution."
"An area for improvement in Skyhigh Security is its UI. It needs to be enhanced and made more user-friendly. Right now, the UI of Skyhigh Security is sometimes confusing. For example, my company is deploying Skyhigh Security for a client and integrating it on the cloud, from an on-premises deployment to a hybrid deployment. Though the experience isn't bad, there needs to be more enhancements. Another room for improvement in Skyhigh Security is the limited training resources, especially when you compare it with Cisco, which has many study materials in the market, even free training resources. You'll get limited resources if you search for Skyhigh Security tutorials on Google and YouTube. Because of high-security requirements and the training material for Skyhigh Security not being available, most engineers and architects avoid the product because there'd be a lack of knowledge in configuring and achieving the goals you'd want to reach via the use of Skyhigh Security. The NOC team deploying the product is having difficulty getting training resources for Skyhigh Security. You'll be charged an enormous amount if you search the market for training because of the limited resources available. Skyhigh Security needs to work on marketing and awareness as an improvement to the product."
"I think that the User Interface could be improved."
"The biggest challenge we have with McAfee is their cross-cloud support."
 

Pricing and Cost Advice

Information not available
"The tool's price is neither too high nor too low. My company needs to pay 65,000 per year. There are no additional costs apart from the licensing fees attached to the solution."
"We have an annual license to use Rapid7 InsightVM and if we want to extend it, we will possibly choose more than one year."
"Licensing fees are paid on a yearly basis."
"In some cases, we procure the licenses. In some cases, the customers directly buy the license from Rapid7."
"InsightVM is an expensive product, especially compared to its competitors, at around a million NOK per year."
"It is pretty expensive. It depends on what you consider pricey, however, if you only look at vulnerability management solutions, such as within VM or VMDR, there are, I suppose the prices are almost the same. But I believe you will discover that for yourself."
"Our licensing costs are somewhere around $40,000 annually. There are no additional fees."
"The licensing is asset-based and very straightforward."
"There is an annual licensing cost to use McAfee Web Gateway. The purchasing of licensing can be difficult for the government sector."
"The tool is not expensive."
"The solution's hardware is expensive."
"Some of our clients have a perpetual license and pay additional support yearly."
"The price of the solution is good and we pay an annual license."
"Have a risk-based approach towards pricing."
"It's an expensive solution."
"Pricing for Skyhigh Security is okay, though there's always a scope for price improvements. Its pricing is okay compared to other products because other products have very expensive licensing costs. Along with the licensing, support is also provided for Skyhigh Security, so pricing is reasonable, but if there's proactive or better support, that will justify the pricing. I haven't interacted with the Skyhigh Security technical support team yet, so I'd give pricing a four out of five rating for now."
report
Use our free recommendation engine to learn which Risk-Based Vulnerability Management solutions are best for your needs.
853,960 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Financial Services Firm
12%
Manufacturing Company
6%
Government
6%
Educational Organization
31%
Computer Software Company
10%
Financial Services Firm
10%
Manufacturing Company
7%
Educational Organization
45%
Financial Services Firm
9%
Computer Software Company
6%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for Zafran Security?
I find that the pricing for Zafran aligns well with the comprehensive features it offers. The asset and user-based li...
What needs improvement with Zafran Security?
Zafran is a new startup. Features are continuously being added or improved. 1) Continued integrations with existing (...
What is your primary use case for Zafran Security?
We connect this to our vulnerability scanner as input, our security tools to better determine risk, and our change ma...
How would you choose between Rapid7 InsightVM and Tenable Nessus?
You have full visibility across cloud, network, virtual, and containerized infrastructures with Rapid7 Insight VM. Yo...
What do you like most about Rapid7 InsightVM?
The product's initial setup phase was very easy.
What is your experience regarding pricing and costs for Rapid7 InsightVM?
The customers are mostly SMBs, though some enterprise organizations have also deployed the solution. This is neither ...
What do you like most about McAfee Web Gateway?
Data loss prevention and user behavior analysis are two valuable features.
What needs improvement with McAfee Web Gateway?
The solution has room for improvement in its DDoS protection. Additionally, the documentation needs enhancement to pr...
What is your primary use case for McAfee Web Gateway?
The typical use case for our clients is cloud security.
 

Also Known As

No data available
InsightVM, NeXpose
McAfee MVISION Cloud, McAfee MVISION Unified Cloud Edge, McAfee Web Gateway, McAfee MVISION CNAPP, and Skyhigh Networks, McAfee Web Gateway
 

Interactive Demo

Demo not available
Demo not available
 

Overview

 

Sample Customers

Information Not Available
ACS, Acosta, AllianceData, amazon.com, biogen idec, CBRE, CATERPILLAR, Deloitte, COACH, GameStop, IBM
Western Union.Aetna.DirecTV.Adventist.Equinix.Perrigo.Goodyear.HP.Cargill.Sony.Bank of the West.Prudential.
Find out what your peers are saying about Qualys, Tenable, Rapid7 and others in Risk-Based Vulnerability Management. Updated: May 2025.
853,960 professionals have used our research since 2012.