No more typing reviews! Try our Samantha, our new voice AI agent.

Rapid7 InsightVM vs VulnCheck comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
4.9
Qualys TotalCloud enhances efficiency, reduces costs by 30-40%, and increases ROI by 10-20%, significantly saving time and resources.
Sentiment score
6.5
Rapid7 InsightVM reduces cyber risks and incidents, enhancing security and cost-efficiency, with positive financial and risk reduction outcomes.
Sentiment score
6.7
VulnCheck enhances returns by streamlining vulnerability management, reducing remediation time, and improving operational efficiency with automated processes.
It has saved about 90% of our time.
Senior Consultant at a consultancy with 10,001+ employees
TotalCloud has generated overall savings of 30 to 40 percent across various departments.
Security Manager at a consultancy with 10,001+ employees
CallStream helps us integrate and automate tasks.
Senior Security Consultant at CyberNxt Solutions LLP
VulnCheck detects exploitable vulnerabilities days to weeks earlier than alternatives, with customer detection averaging just under six and a half days sooner than most competing products.
Partner Account Manager at a wholesaler/distributor with 51-200 employees
Since using VulnCheck, we see a significant return on investment as we no longer spend excessive time on scanning, which was an issue with Rapid7.
SPC L2 Analyst at a tech services company with 51-200 employees
We have seen a return on investment, observing a reduction of 20% to 30% in critical and high-risk vulnerabilities due to the automated end-to-end flow, which significantly enhances our efficiency.
Technical Lead at a tech vendor with 51-200 employees
 

Customer Service

Sentiment score
6.9
Qualys TotalCloud's customer support is praised for expertise and responsiveness but occasionally faces response delays and inefficiencies.
Sentiment score
6.9
Rapid7 InsightVM's customer service is praised for professionalism, though some experience delays; dedicated managers are preferred by some.
Sentiment score
7.0
VulnCheck customer support is praised for responsiveness, clear communication, and effective problem-solving with comprehensive documentation and updates.
They are helpful, respond to my queries, and can answer any question.
Developer at a consultancy with 10,001+ employees
Qualys's tech support is highly responsive, providing multiple ways to interact with them.
Service Manager, Security Operations at CDA IT SOLUTIONS
Qualys' customer service provides quality answers, but the response time is long, even though it is within the SLA.
Works at a consultancy with 10,001+ employees
Support is not available promptly, especially when issues are escalated to another region.
Head Of Cyber Security at Super Secure
Sometimes support requests coincide with holidays in their support region, causing slight delays.
Professional services team lead at a tech services company with 1,001-5,000 employees
I cannot comment specifically regarding the support part because I have never needed Rapid7 support for the InsightVM solution as it is very stable.
Senior Manager - Pre-Sales at Trillium Information Security Systems
Support for VulnCheck is very responsive, active, and helpful.
Manager at Cyvogenix
I find that customer support is good, and I'm impressed.
Senior Network & Security Engineer at a computer software company with 201-500 employees
 

Scalability Issues

Sentiment score
7.3
Qualys TotalCloud excels in scalability but may need skilled management, adaptable for varying environments and large-scale deployments.
Sentiment score
7.5
Rapid7 InsightVM is highly scalable, flexible, and well-suited for varied environments, accommodating growth without performance issues.
Sentiment score
7.1
VulnCheck efficiently scales with API integration, handling asset growth and vulnerabilities seamlessly, supporting enterprise workflows and dynamic deployment.
We started our organization about nine months back. We started with about 30 users, and we now have more than 100 users.
CIO at a venture capital & private equity firm with 11-50 employees
Our organization currently uses it to manage over 1200 web applications.
Analyst, Information Security at Infosys
It is absolutely scalable, and I would rate its scalability as nine out of ten.
retired at a consultancy with 10,001+ employees
Scalability in the Rapid7 InsightVM solution is straightforward.
Senior Manager - Pre-Sales at Trillium Information Security Systems
Rapid7 InsightVM is recommended for large-scale companies with more than 30,000 users.
Enterprise Security Architect at a energy/utilities company with 10,001+ employees
According to the environment requirements, we can scale the solution as needed.
Professional services team lead at a tech services company with 1,001-5,000 employees
VulnCheck scales exceptionally in our organization, regardless of size.
SPC L2 Analyst at a tech services company with 51-200 employees
 

Stability Issues

Sentiment score
8.3
Qualys TotalCloud is praised for stability, boasting 99.9% uptime with minimal downtime and quickly resolved minor bugs.
Sentiment score
8.1
Rapid7 InsightVM is reliable and stable, despite occasional communication issues, scoring highly in user satisfaction ratings.
Sentiment score
8.7
VulnCheck is praised for exceptional stability, reliable uptime, timely updates, and consistent performance in vulnerability assessments.
Overall, the support provided has been excellent.
Analyst, Information Security at Infosys
It is a stable solution, which is why we chose it.
CIO at a venture capital & private equity firm with 11-50 employees
Continuous monitoring is crucial to ensure system stability and avoid vulnerabilities or threats.
Developer at a consultancy with 10,001+ employees
We have not faced any issues with stability, and I would rate it a nine out of ten.
Professional services team lead at a tech services company with 1,001-5,000 employees
The stability of Rapid7 InsightVM is excellent.
0 at a tech vendor with 5,001-10,000 employees
There have been some challenges, especially with support response times, which affect stability.
Head Of Cyber Security at Super Secure
 

Room For Improvement

Users recommend enhancing compliance, UI, integration, and reporting, improving security features, and optimizing pricing and navigation for Qualys TotalCloud.
Rapid7 InsightVM users seek improved integration, reporting, and usability with better support, automation, cloud features, and secure ticketing.
VulnCheck requires improvements in dashboard customization, integration, reporting speed, AI, and navigation for enhanced management insights and usability.
Ideally, the scanner should automatically detect and scan all subdomains, even if not explicitly defined, ensuring comprehensive vulnerability assessment.
Analyst, Information Security at Infosys
Ideally, updates should be more immediate, enabling quicker implementation of solutions.
Project Lead at Persistent Systems
Our goal is to integrate all these functions into Qualys, creating a single dashboard for comprehensive security monitoring and management.
Senior Information Security Engineer at a consultancy with 10,001+ employees
Having the ability to build our own audit file, similar to a feature in Tenable, would be beneficial.
Professional services team lead at a tech services company with 1,001-5,000 employees
The major improvement needed is prompt support.
Head Of Cyber Security at Super Secure
The current process requires manually telling IT teams to remediate vulnerabilities, and then they update the status of these vulnerabilities in the platform.
Senior Manager - Pre-Sales at Trillium Information Security Systems
You will require other tools to act on the data that you find, which necessitates engineering time for API integration, data mapping, and tuning.
Partner Account Manager at a wholesaler/distributor with 51-200 employees
If VulnCheck works on the inventory of the software my organization uses, it would be really helpful.
Senior Network & Security Engineer at a computer software company with 201-500 employees
More customization in dashboards and reporting would be helpful for management-level insights.
Manager at Cyvogenix
 

Setup Cost

Qualys TotalCloud is costly but offers value and integration, ideal for enterprises despite higher pricing.
Rapid7 InsightVM's pricing is asset-based and flexible, with costs often high but valued for simplicity and included support.
VulnCheck offers fair pricing, flexible licensing, and affordable setup, providing transparency and value for comprehensive vulnerability management.
Qualys TotalCloud's pricing is currently acceptable, it is becoming increasingly expensive.
Senior Manager at a financial services firm with 10,001+ employees
Pricing is managed by our finance team; however, Qualys TotalCloud offers cost-effective licensing flexibility.
IT Manager at a consultancy with 10,001+ employees
Qualys TotalCloud is expensive, but it offers a premier solution with no headaches.
Vice President at Inspira Enterprise
Rapid7 InsightVM is expensive, possibly one of the highest in pricing among similar products.
0 at a tech vendor with 5,001-10,000 employees
Pricing is reasonable and competitive compared to other solutions in the market.
Head Of Cyber Security at Super Secure
I would rate the pricing for Rapid7 InsightVM as eight out of ten.
Enterprise Security Architect at a energy/utilities company with 10,001+ employees
Currently, I find the pricing of VulnCheck to be reasonable and not much expensive.
Senior Network & Security Engineer at a computer software company with 201-500 employees
The pricing is reasonable for the value VulnCheck provides, especially for threat intelligence.
Manager at Cyvogenix
 

Valuable Features

Qualys TotalCloud enhances risk management with misconfiguration detection, TruRisk integration, continuous monitoring, automation, and seamless integration for IaaS and SaaS.
Rapid7 InsightVM offers versatile modes, seamless integrations, user-friendly interface, effective scanning, and customizable dashboards for efficient vulnerability management.
VulnCheck optimizes vulnerability management with real-time intelligence, prioritization, and seamless integration, enhancing efficiency and reducing unnecessary efforts.
This view of risk helps reduce the work we would have to do to combine multiple sources to prioritize risk.
Works at a consultancy with 10,001+ employees
It will help cybersecurity professionals monitor the cloud and find vulnerabilities.
Developer at a consultancy with 10,001+ employees
We are enjoying the new feature, FlexScan, which is valuable for Internet-facing VMs.
Senior Consultant at a consultancy with 10,001+ employees
It's based on the CVSS risk scoring system, which is well-recognized and effective.
Professional services team lead at a tech services company with 1,001-5,000 employees
The dashboard is excellent as it helps in visualizing our vulnerability management data.
Manager at a financial services firm with 5,001-10,000 employees
We have integrated our SIEM solutions and antivirus with each other through Rapid7.
0 at a tech vendor with 5,001-10,000 employees
The main feature of VulnCheck is its ability to cut down all the noise and provide a scoring of how you are going to get attacked and breached.
Partner Account Manager at a wholesaler/distributor with 51-200 employees
VulnCheck helps us identify which vulnerabilities are being actively exploited or are listed as similar to known exploited vulnerabilities.
Manager at Cyvogenix
The detailed descriptions of all present vulnerabilities along with emerging threats, well-documented details, and frequent updates of threat intelligence contribute significantly to reducing the remediation workload by prioritizing the vulnerabilities that matter most.
SPC L2 Analyst at a tech services company with 51-200 employees
 

Categories and Ranking

Qualys TotalCloud
Sponsored
Ranking in Vulnerability Management
11th
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
43
Ranking in other categories
Container Security (12th), Cloud Workload Protection Platforms (CWPP) (8th), Cloud Security Posture Management (CSPM) (8th), SaaS Security Posture Management (SSPM) (2nd), Cloud-Native Application Protection Platforms (CNAPP) (7th)
Rapid7 InsightVM
Ranking in Vulnerability Management
13th
Average Rating
8.0
Reviews Sentiment
6.9
Number of Reviews
66
Ranking in other categories
Risk-Based Vulnerability Management (4th)
VulnCheck
Ranking in Vulnerability Management
36th
Average Rating
8.6
Reviews Sentiment
6.4
Number of Reviews
6
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2026, in the Vulnerability Management category, the mindshare of Qualys TotalCloud is 1.2%, up from 1.0% compared to the previous year. The mindshare of Rapid7 InsightVM is 1.9%, down from 4.2% compared to the previous year. The mindshare of VulnCheck is 0.4%, up from 0.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Vulnerability Management Mindshare Distribution
ProductMindshare (%)
Qualys TotalCloud1.2%
Rapid7 InsightVM1.9%
VulnCheck0.4%
Other96.5%
Vulnerability Management
 

Featured Reviews

RO
IT Security Expert at Alior Bank S.A.
Unified risk scoring has improved our cloud visibility and simplifies remediation priorities
Qualys TotalCloud provides unified vulnerability and threat assessment across both IAS and SaaS. This solution provides a single prioritized view of risk, which helps reduce the work I would have to do. We are no longer based on CVSS; we are based on Qualys risk scoring, which is based on CVSS plus internal findings made by Qualys, and then assigns its own score. The TruRisk insight feature has found a small number of assets with high vulnerability scores, though I am cautious since some information is classified. Qualys TotalCloud has positively impacted our bank's performance, and we have definitely seen benefits after implementing this solution.
reviewer2775840 - PeerSpot reviewer
Manager at a financial services firm with 5,001-10,000 employees
Manages vulnerabilities effectively over time but needs improvement in web coverage and dashboard flexibility
Most of the dynamic asset tagging we use is manual, not dynamic. To manage the assets, we employed the manual approach because we have a limitation regarding the license, so we don't use the dynamic approach much. I don't know how the configuration assessment has assisted with meeting compliance standards. The product that we use is the on-premise solution where we configure assets and dynamically scan them. However, we use the default policies more, the template, so Rapid7 InsightVM on-premise version is not that effective in the web-related systems. However, it is best on the OS to identify and discover the OS-related vulnerabilities, more of open ports and the discovery of vulnerable ports or services. It would be better to improve Rapid7 InsightVM by including or working better to add web-related templates because it's not that effective in regard to web. I don't know if they may have a separate product regarding the web, but for the on-premise type, they are not strong in this area. I would prefer to see web-related templates in addition to improving the dashboard-related things because the dashboard has been constant for a very long time. It would be better to see various kinds of, perhaps a flexible type of dashboard. If it's not customizable at all, I would want to see the risk and asset over time with more flexibility. The current dashboard is not flexible in this regard; I have to dig down every day, so they should work on this as well, in addition to the web.
reviewer2805510 - PeerSpot reviewer
Partner Account Manager at a wholesaler/distributor with 51-200 employees
Proactive exploit intelligence has transformed how we prioritize real-world vulnerability risks
VulnCheck needs improvement in terms of data. It is primarily an intelligence and data layering system and not a complete vulnerability management platform. This means that it lacks native patch workflows, so you do not have asset discovery as you would with Tenable or Qualys. You will require other tools to act on the data that you find, which necessitates engineering time for API integration, data mapping, and tuning. Additionally, not all exploit signs are clear; some can be noisy or ambiguous, so teams need to apply their judgment. Finally, the time to value is not instant; it requires integration, workflow changes, and team training. I think VulnCheck is an excellent tool and valuable data resource. However, if you wish to send alerts via an API to platforms like Rapid7 or Tenable VM, you will need to integrate that with a SIEM solution to perform any kind of risk management.
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
909,725 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
13%
Comms Service Provider
12%
Outsourcing Company
11%
Financial Services Firm
10%
Financial Services Firm
12%
Manufacturing Company
8%
Computer Software Company
7%
Comms Service Provider
6%
Outsourcing Company
33%
Construction Company
11%
Computer Software Company
8%
Insurance Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business12
Midsize Enterprise5
Large Enterprise31
By reviewers
Company SizeCount
Small Business29
Midsize Enterprise14
Large Enterprise25
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise2
Large Enterprise4
 

Questions from the Community

What needs improvement with Qualys TotalCloud?
To be totally honest, I do not have any best features because I have had a bad experience using this tool, especially...
What is your primary use case for Qualys TotalCloud?
My main use case for Qualys TotalCloud is vulnerability management and exposure management. I use this tool to evalua...
How would you choose between Rapid7 InsightVM and Tenable Nessus?
You have full visibility across cloud, network, virtual, and containerized infrastructures with Rapid7 Insight VM. Yo...
What is your experience regarding pricing and costs for Rapid7 InsightVM?
My experience with the pricing, setup cost, and licensing is that both the setup cost and licensing are great.
What needs improvement with Rapid7 InsightVM?
To improve Rapid7 InsightVM, I wish to have integration with patching systems, which would be useful to us. The usabi...
What needs improvement with VulnCheck?
Regarding improvements needed for VulnCheck, there are not many areas, as the pre-built integrations with common vuln...
What is your primary use case for VulnCheck?
VulnCheck serves as our primary vulnerability management platform for managing organizational vulnerabilities. VulnCh...
What advice do you have for others considering VulnCheck?
I have completed everything regarding my main use case and any unique ways I use VulnCheck in my environment. I have ...
 

Also Known As

Qualys TotalCloud with FlexScan
InsightVM, NeXpose
No data available
 

Overview

 

Sample Customers

Information Not Available
ACS, Acosta, AllianceData, amazon.com, biogen idec, CBRE, CATERPILLAR, Deloitte, COACH, GameStop, IBM
Information Not Available
Find out what your peers are saying about Rapid7 InsightVM vs. VulnCheck and other solutions. Updated: August 2026.
909,725 professionals have used our research since 2012.