No more typing reviews! Try our Samantha, our new voice AI agent.

The NodeZero Platform by Horizon3.ai vs VulnCheck comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 8, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
5.3
Qualys TotalCloud enhances efficiency, reduces costs by 30-40%, and increases ROI by 10-20%, significantly saving time and resources.
Sentiment score
3.8
NodeZero Platform reduces pen testing costs and time while enhancing security, saving up to 20% and improving efficiency.
Sentiment score
6.7
VulnCheck enhances returns by streamlining vulnerability management, reducing remediation time, and improving operational efficiency with automated processes.
It has saved about 90% of our time.
Senior Consultant at a consultancy with 10,001+ employees
TotalCloud has generated overall savings of 30 to 40 percent across various departments.
Security Manager at a consultancy with 10,001+ employees
CallStream helps us integrate and automate tasks.
Senior Security Consultant at CyberNxt Solutions LLP
A reduction in remediation time has been seen because it is finding things before they happen.
Director of Enterprise Security at a energy/utilities company with 51-200 employees
Being able to find them because there have been no eyes on that particular section so far ever, and fixing those potentially prevented those companies from getting breached.
IT Security Consultant at Systemhaus for you GmbH
So far, I have seen a return on investment with The NodeZero Platform by Horizon3.ai, as we managed to save a lot of time and effort with this because this is an autonomous tool, and our manual effort is significantly reduced because of a product of this type.
Senior Manager | Manager Security Services at RISK ASSOCIATES
VulnCheck detects exploitable vulnerabilities days to weeks earlier than alternatives, with customer detection averaging just under six and a half days sooner than most competing products.
Partner Account Manager at a wholesaler/distributor with 51-200 employees
Since using VulnCheck, we see a significant return on investment as we no longer spend excessive time on scanning, which was an issue with Rapid7.
SPC L2 Analyst at a tech services company with 51-200 employees
We have seen a return on investment, observing a reduction of 20% to 30% in critical and high-risk vulnerabilities due to the automated end-to-end flow, which significantly enhances our efficiency.
Technical Lead at a tech vendor with 51-200 employees
 

Customer Service

Sentiment score
7.0
Qualys TotalCloud's customer support is praised for expertise and responsiveness but occasionally faces response delays and inefficiencies.
Sentiment score
7.3
NodeZero Platform provides excellent support with fast responses and knowledgeable staff, achieving high satisfaction ratings from users.
Sentiment score
7.0
VulnCheck customer support is praised for responsiveness, clear communication, and effective problem-solving with comprehensive documentation and updates.
They are helpful, respond to my queries, and can answer any question.
Developer at a consultancy with 10,001+ employees
Qualys's tech support is highly responsive, providing multiple ways to interact with them.
Service Manager, Security Operations at CDA IT SOLUTIONS
Qualys' customer service provides quality answers, but the response time is long, even though it is within the SLA.
Works at a consultancy with 10,001+ employees
Overall, when it comes to The NodeZero Platform's tech support, you can reach them via a chat message on their website, and they respond almost immediately.
Director of IT Security at a manufacturing company with 1,001-5,000 employees
Previously, with time-sensitive engagements, I would worry about resolving issues before deadlines. That concern has diminished as they've become more responsive and require less escalation to engineering.
Principal Consultant at JTI Cybersecurity
The vast majority of times they are able to resolve the exact questions my team has on the first attempt, which is really good for customer or technical support.
Chief Information Officer at a construction company with 1,001-5,000 employees
Support for VulnCheck is very responsive, active, and helpful.
Manager at Cyvogenix
I find that customer support is good, and I'm impressed.
Senior Network & Security Engineer at a computer software company with 201-500 employees
 

Scalability Issues

Sentiment score
7.5
Qualys TotalCloud excels in scalability but may need skilled management, adaptable for varying environments and large-scale deployments.
Sentiment score
7.4
NodeZero by Horizon3.ai offers scalable, flexible, and efficient deployment across networks, supporting extensive coverage and multiple concurrent tests.
Sentiment score
7.1
VulnCheck efficiently scales with API integration, handling asset growth and vulnerabilities seamlessly, supporting enterprise workflows and dynamic deployment.
We started our organization about nine months back. We started with about 30 users, and we now have more than 100 users.
CIO at a venture capital & private equity firm with 11-50 employees
Our organization currently uses it to manage over 1200 web applications.
Analyst, Information Security at Infosys
It is absolutely scalable, and I would rate its scalability as nine out of ten.
retired at a consultancy with 10,001+ employees
We have conducted pen tests in environments with hundreds of thousands of IP addresses without any scalability issues.
CEO at cybovate
We currently scan approximately 1,500-2,000 assets and haven't encountered any scaling or throughput issues.
Information Security Manager at a non-profit with 51-200 employees
The platform offers various insider threats, segmentation tests, phishing tests, and PCI DSS tests.
Head Dig IT Al And Response/ Consultant at a tech services company with 11-50 employees
VulnCheck scales exceptionally in our organization, regardless of size.
SPC L2 Analyst at a tech services company with 51-200 employees
 

Stability Issues

Sentiment score
8.3
Qualys TotalCloud is praised for stability, boasting 99.9% uptime with minimal downtime and quickly resolved minor bugs.
Sentiment score
8.3
The NodeZero Platform is stable, reliable, and performs well, with occasional external scan delays and minor optimizations needed.
Sentiment score
8.7
VulnCheck is praised for exceptional stability, reliable uptime, timely updates, and consistent performance in vulnerability assessments.
Overall, the support provided has been excellent.
Analyst, Information Security at Infosys
It is a stable solution, which is why we chose it.
CIO at a venture capital & private equity firm with 11-50 employees
Continuous monitoring is crucial to ensure system stability and avoid vulnerabilities or threats.
Developer at a consultancy with 10,001+ employees
We have not encountered any issues on the platform regarding accessibility, performance, or stability.
CEO at cybovate
Regarding stability, it has never crashed, and there has not been any lagging from deployment or running.
Director of Enterprise Security at a energy/utilities company with 51-200 employees
I would rate the stability of The NodeZero Platform by Horizon3.ai as a ten.
Senior Manager | Manager Security Services at RISK ASSOCIATES
 

Room For Improvement

Users recommend enhancing compliance, UI, integration, and reporting, improving security features, and optimizing pricing and navigation for Qualys TotalCloud.
Users want better flexibility, integration, scalability, testing efficiency, visibility, and reporting in vulnerability management and notification systems.
VulnCheck requires improvements in dashboard customization, integration, reporting speed, AI, and navigation for enhanced management insights and usability.
Ideally, the scanner should automatically detect and scan all subdomains, even if not explicitly defined, ensuring comprehensive vulnerability assessment.
Analyst, Information Security at Infosys
Ideally, updates should be more immediate, enabling quicker implementation of solutions.
Project Lead at Persistent Systems
Our goal is to integrate all these functions into Qualys, creating a single dashboard for comprehensive security monitoring and management.
Senior Information Security Engineer at a consultancy with 10,001+ employees
This service reveals which credentials and email addresses are available on the deep web, as well as which domains have been set up using typo-squatting techniques.
Information Security Manager at a non-profit with 51-200 employees
The one thing that is very much asked from us as a service provider is DAST testing, so when a company is building a software, they could see their current security status while they are building the application.
Offensive Security Analyst at a tech services company with 201-500 employees
If that pen test could be load balanced on more than one system, I believe The NodeZero Platform by Horizon3.ai could leverage that system and complete penetration tests in a much quicker time frame, providing quicker results to customers.
Lead Security Engineer at a healthcare company with 10,001+ employees
You will require other tools to act on the data that you find, which necessitates engineering time for API integration, data mapping, and tuning.
Partner Account Manager at a wholesaler/distributor with 51-200 employees
If VulnCheck works on the inventory of the software my organization uses, it would be really helpful.
Senior Network & Security Engineer at a computer software company with 201-500 employees
More customization in dashboards and reporting would be helpful for management-level insights.
Manager at Cyvogenix
 

Setup Cost

Qualys TotalCloud is costly but offers value and integration, ideal for enterprises despite higher pricing.
Enterprise users appreciate Horizon3.ai's competitive pricing and flexible IP-based licensing as cost-efficient compared to traditional methods.
VulnCheck offers fair pricing, flexible licensing, and affordable setup, providing transparency and value for comprehensive vulnerability management.
Qualys TotalCloud's pricing is currently acceptable, it is becoming increasingly expensive.
Senior Manager at a financial services firm with 10,001+ employees
Pricing is managed by our finance team; however, Qualys TotalCloud offers cost-effective licensing flexibility.
IT Manager at a consultancy with 10,001+ employees
Qualys TotalCloud is expensive, but it offers a premier solution with no headaches.
Vice President at Inspira Enterprise
The pricing is much more affordable than traditional penetration tests.
Manager, Information Technology at a performing arts with 11-50 employees
It's a bit cheaper than manual penetration testing because manual testing typically allows you to scan only a few subnets.
Works at a hospitality company with 201-500 employees
Usually, manual penetration test scans take considerable time and money.
Security Engineer at Herjavec Group
Currently, I find the pricing of VulnCheck to be reasonable and not much expensive.
Senior Network & Security Engineer at a computer software company with 201-500 employees
The pricing is reasonable for the value VulnCheck provides, especially for threat intelligence.
Manager at Cyvogenix
 

Valuable Features

Qualys TotalCloud enhances risk management with misconfiguration detection, TruRisk integration, continuous monitoring, automation, and seamless integration for IaaS and SaaS.
The NodeZero Platform offers automated, user-friendly penetration testing, providing instant vulnerability insights and enhancing cybersecurity efficiency.
VulnCheck optimizes vulnerability management with real-time intelligence, prioritization, and seamless integration, enhancing efficiency and reducing unnecessary efforts.
This view of risk helps reduce the work we would have to do to combine multiple sources to prioritize risk.
Works at a consultancy with 10,001+ employees
It will help cybersecurity professionals monitor the cloud and find vulnerabilities.
Developer at a consultancy with 10,001+ employees
We are enjoying the new feature, FlexScan, which is valuable for Internet-facing VMs.
Senior Consultant at a consultancy with 10,001+ employees
When a new vulnerability, such as a zero-day exploit, is identified, they review your previous scans to determine if you might be vulnerable to it, and they proactively notify you.
Director of IT Security at a manufacturing company with 1,001-5,000 employees
The detailed reports not only list the vulnerabilities that matter, but they also include direct links to patches.
Information Security Manager at a non-profit with 51-200 employees
The NodeZero Platform's real attack capabilities help in identifying vulnerabilities on our on-prem systems because it provides actual vulnerabilities by attacking our systems.
Chief Information Security Officer at a construction company with 1,001-5,000 employees
The main feature of VulnCheck is its ability to cut down all the noise and provide a scoring of how you are going to get attacked and breached.
Partner Account Manager at a wholesaler/distributor with 51-200 employees
VulnCheck helps us identify which vulnerabilities are being actively exploited or are listed as similar to known exploited vulnerabilities.
Manager at Cyvogenix
The detailed descriptions of all present vulnerabilities along with emerging threats, well-documented details, and frequent updates of threat intelligence contribute significantly to reducing the remediation workload by prioritizing the vulnerabilities that matter most.
SPC L2 Analyst at a tech services company with 51-200 employees
 

Categories and Ranking

Qualys TotalCloud
Sponsored
Ranking in Vulnerability Management
11th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
43
Ranking in other categories
Container Security (12th), Cloud Workload Protection Platforms (CWPP) (8th), Cloud Security Posture Management (CSPM) (8th), SaaS Security Posture Management (SSPM) (2nd), Cloud-Native Application Protection Platforms (CNAPP) (7th)
The NodeZero Platform by Ho...
Ranking in Vulnerability Management
9th
Average Rating
8.8
Reviews Sentiment
6.1
Number of Reviews
26
Ranking in other categories
Advanced Threat Protection (ATP) (13th), Penetration Testing Services (1st), Breach and Attack Simulation (BAS) (1st), Risk-Based Vulnerability Management (2nd), AI-Powered Penetration Testing (1st)
VulnCheck
Ranking in Vulnerability Management
36th
Average Rating
8.6
Reviews Sentiment
6.4
Number of Reviews
6
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2026, in the Vulnerability Management category, the mindshare of Qualys TotalCloud is 1.2%, up from 1.0% compared to the previous year. The mindshare of The NodeZero Platform by Horizon3.ai is 1.3%, up from 1.0% compared to the previous year. The mindshare of VulnCheck is 0.4%, up from 0.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Vulnerability Management Mindshare Distribution
ProductMindshare (%)
The NodeZero Platform by Horizon3.ai1.3%
Qualys TotalCloud1.2%
VulnCheck0.4%
Other97.1%
Vulnerability Management
 

Featured Reviews

RO
IT Security Expert at Alior Bank S.A.
Unified risk scoring has improved our cloud visibility and simplifies remediation priorities
Qualys TotalCloud provides unified vulnerability and threat assessment across both IAS and SaaS. This solution provides a single prioritized view of risk, which helps reduce the work I would have to do. We are no longer based on CVSS; we are based on Qualys risk scoring, which is based on CVSS plus internal findings made by Qualys, and then assigns its own score. The TruRisk insight feature has found a small number of assets with high vulnerability scores, though I am cautious since some information is classified. Qualys TotalCloud has positively impacted our bank's performance, and we have definitely seen benefits after implementing this solution.
Brent Hamlin - PeerSpot reviewer
Infrastructure Manager at a construction company with 501-1,000 employees
Continuous threat scanning has improved remediation time and strengthened executive reporting
The best features that The NodeZero Platform by Horizon3.ai offers include the automated scans, which are great to use; you set it, scope it, and let it go, which works really well. The executive reporting feature is impactful for me as a manager, providing a strong foundation to give quarterly and yearly reports to our executives and board to see the state of our infrastructure from a security standpoint. The level of detail and clarity in the executive reports from The NodeZero Platform by Horizon3.ai absolutely helps me communicate effectively with leadership. They are detailed enough for me to extract the necessary information tailored for the executives and to provide a broader perspective on our mitigation efforts or accepted risk stance and where additional controls exist. The NodeZero Platform by Horizon3.ai has positively impacted my organization by giving us a better continuous picture of our security posture, what's exploitable, and what can be used against the organization. It allows us to run scans whenever needed, unlike a single third-party system that only provides a snapshot in time; our processes must be ongoing as the security landscape is dynamic. NodeZero's endpoint security effectiveness feature impacts my understanding of potential security threats by providing a clear picture of both the external and internal landscapes within my organization, enabling me to prioritize and adjust as needed for vulnerabilities such as WordPress plugin issues or user enumerations and software code version assessments. I have built The NodeZero Platform by Horizon3.ai into our weekly and monthly workflows for security CI/CD, and we scan our externally accessible assets every week to address anything quickly if it comes up. That includes our firewalls, websites, and anything that is an external web server, which we scan weekly, while the monthly scans are for internal systems that feed our security CI/CD pipeline, enabling us to action across and prioritize any vulnerabilities caught by The NodeZero Platform by Horizon3.ai.
reviewer2805510 - PeerSpot reviewer
Partner Account Manager at a wholesaler/distributor with 51-200 employees
Proactive exploit intelligence has transformed how we prioritize real-world vulnerability risks
VulnCheck needs improvement in terms of data. It is primarily an intelligence and data layering system and not a complete vulnerability management platform. This means that it lacks native patch workflows, so you do not have asset discovery as you would with Tenable or Qualys. You will require other tools to act on the data that you find, which necessitates engineering time for API integration, data mapping, and tuning. Additionally, not all exploit signs are clear; some can be noisy or ambiguous, so teams need to apply their judgment. Finally, the time to value is not instant; it requires integration, workflow changes, and team training. I think VulnCheck is an excellent tool and valuable data resource. However, if you wish to send alerts via an API to platforms like Rapid7 or Tenable VM, you will need to integrate that with a SIEM solution to perform any kind of risk management.
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
909,725 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
13%
Comms Service Provider
11%
Outsourcing Company
11%
Financial Services Firm
10%
Comms Service Provider
9%
Manufacturing Company
8%
Government
7%
Outsourcing Company
7%
Outsourcing Company
33%
Construction Company
11%
Computer Software Company
8%
Insurance Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business12
Midsize Enterprise5
Large Enterprise31
By reviewers
Company SizeCount
Small Business14
Midsize Enterprise5
Large Enterprise9
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise2
Large Enterprise4
 

Questions from the Community

What needs improvement with Qualys TotalCloud?
To be totally honest, I do not have any best features because I have had a bad experience using this tool, especially...
What is your primary use case for Qualys TotalCloud?
My main use case for Qualys TotalCloud is vulnerability management and exposure management. I use this tool to evalua...
What needs improvement with Horizon3.ai?
The NodeZero Platform by Horizon3.ai could greatly improve their feature request and product suggestions process. The...
What is your primary use case for Horizon3.ai?
My main use case for The NodeZero Platform by Horizon3.ai is to run automated penetration tests and remediate finding...
What advice do you have for others considering Horizon3.ai?
The advice I would give to others looking into using The NodeZero Platform by Horizon3.ai is to assess their environm...
What needs improvement with VulnCheck?
Regarding improvements needed for VulnCheck, there are not many areas, as the pre-built integrations with common vuln...
What is your primary use case for VulnCheck?
VulnCheck serves as our primary vulnerability management platform for managing organizational vulnerabilities. VulnCh...
What advice do you have for others considering VulnCheck?
I have completed everything regarding my main use case and any unique ways I use VulnCheck in my environment. I have ...
 

Also Known As

Qualys TotalCloud with FlexScan
Horizon3.ai
No data available
 

Overview

 

Sample Customers

Information Not Available
Government agencies, Defense Industrial Base organizations, and enterprises in regulated industries such as finance, healthcare, manufacturing, and criticalinfrastructure rely on NodeZero to meet rigorous security and compliance requirements with continuous, scheduled, and on-demand testing.
Information Not Available
Find out what your peers are saying about The NodeZero Platform by Horizon3.ai vs. VulnCheck and other solutions. Updated: August 2026.
909,725 professionals have used our research since 2012.