


Wiz and Vanta compete in the cybersecurity platform market, with Vanta having an advantage in compliance features and Wiz strong in cloud security.
Features: Wiz offers advanced cloud workload protection, real-time visibility for threat detection, and Security Graph for risk prioritization. Vanta provides automated compliance management, prebuilt control frameworks, and real-time API integration for compliance integrity.
Room for Improvement: Wiz could improve on-demand scanning clarity and better explain scanner functions. Enhanced agentless operations would aid Wiz's multi-agent approach. Vanta would benefit from smoothing occasional API integration difficulties and expanding compliance support across more platforms.
Ease of Deployment and Customer Service: Vanta features efficient deployment and dedicated service for seamless compliance onboarding. Wiz offers flexible deployment with strong support for cloud configurations. Vanta's focus is compliance onboarding, differing from Wiz's cloud-centric approach.
Pricing and ROI: Wiz's competitive pricing suits complex cloud environments with positive ROI for cloud-focused companies. Vanta's higher costs align with its automation capabilities, yielding substantial ROI through resource efficiency and compliance upkeep.
It has saved about 90% of our time.
TotalCloud has generated overall savings of 30 to 40 percent across various departments.
CallStream helps us integrate and automate tasks.
doing everything manually would take a lot of work and effort, and Wiz reduces both the workload and the need for manual thinking and human feedback.
I think we're reaching the point where we'll see a return on investment, and we'll be there by the end of the year.
We estimate a cost reduction of around 35% to 50%, or even more, due to consolidating our security management into one platform.
They are helpful, respond to my queries, and can answer any question.
Qualys's tech support is highly responsive, providing multiple ways to interact with them.
Qualys' customer service provides quality answers, but the response time is long, even though it is within the SLA.
Every time I ask their customer success team, if I get a technical question and I've done this half a dozen times in the last year, they will respond within the next 24 hours.
The customer support from Vanta is good.
On a scale from 1 to 10, I would give Wiz's support a 10.
The vendor was readily available to assist us over calls, clarifying both technical aspects and theoretical insights.
If I were to put Wiz support on a scale from one to ten, I would give them a ten.
We started our organization about nine months back. We started with about 30 users, and we now have more than 100 users.
Our organization currently uses it to manage over 1200 web applications.
It is absolutely scalable, and I would rate its scalability as nine out of ten.
We have deployed Wiz in three organizations on AWS, each with approximately 70 to 80 accounts, totaling more than 120 accounts.
Scalability-wise, I rate the solution a ten out of ten.
Our environment quadrupled in size. We didn’t have to make any adjustments or configuration changes; it just accommodated the growth.
Overall, the support provided has been excellent.
It is a stable solution, which is why we chose it.
Continuous monitoring is crucial to ensure system stability and avoid vulnerabilities or threats.
Vanta is very stable; we haven't had any downtimes or weird behavior so far, which we really appreciate.
There are connection problems about 50% of the time because of the automated evidence collection.
The stability of Wiz has been good, with no downtime, bugs, or glitches.
The services were stable, and we did not experience any downtime.
Stability-wise, I rate the solution an eight to nine out of ten.
Ideally, the scanner should automatically detect and scan all subdomains, even if not explicitly defined, ensuring comprehensive vulnerability assessment.
Ideally, updates should be more immediate, enabling quicker implementation of solutions.
Our goal is to integrate all these functions into Qualys, creating a single dashboard for comprehensive security monitoring and management.
Vanta has been really nice, with a nice user experience, clear layout, and very reasonable recommendations compared to other platforms we've tried.
The UI is not super intuitive, but now that I've worked with it for a couple of years, I know how to navigate and get around.
I have to clear all CVEs before the test will pass.
One significant area for improvement would be increasing automation. While they excel at identifying issues, we need assistance in minimizing the human hours required for tasks.
Adding AI-driven features could significantly assist developers in addressing vulnerabilities more efficiently, thereby improving deployment times and adherence to deadlines.
I do not want to keep dealing with thousands of vulnerabilities and marking them under ignore rules or wasting time assessing everything only to find they are false positives.
Qualys TotalCloud's pricing is currently acceptable, it is becoming increasingly expensive.
Pricing is managed by our finance team; however, Qualys TotalCloud offers cost-effective licensing flexibility.
Qualys TotalCloud is expensive, but it offers a premier solution with no headaches.
Vanta's pricing for small businesses allows you to double that person's SOC/ISO compliance capabilities for less than the cost of another staff member.
In some cases, it has a very aggressive price, so very cheap.
I don’t think there’s anyone else out there offering the same level, scale, or efficiency.
Wiz is less expensive than Microsoft and Palo Alto.
This view of risk helps reduce the work we would have to do to combine multiple sources to prioritize risk.
It will help cybersecurity professionals monitor the cloud and find vulnerabilities.
We are enjoying the new feature, FlexScan, which is valuable for Internet-facing VMs.
Vanta has positively impacted my organization by helping us remediate a lot of vulnerabilities and bad practices, especially from vulnerable ECR repos, and enforced good behavior.
The best features Vanta offers in my opinion are the key performance indicators for framework compliance as well as integration into internal environments and accurate data provided towards compliance frameworks and metrics.
All our policy documents are organized so I always know where I can go to get the latest and greatest version of those.
The ability to scan every layer without agents is a huge selling point because we're multi-agent.
The feature leads to minimal false positives and a low volume of alerts, which is highly valuable for our operations.
Regarding compliance and governance, Wiz streamlines our vulnerability management to meet specific needs effectively.

| Company Size | Count |
|---|---|
| Small Business | 10 |
| Midsize Enterprise | 3 |
| Large Enterprise | 29 |
| Company Size | Count |
|---|---|
| Small Business | 9 |
| Midsize Enterprise | 3 |
| Large Enterprise | 1 |
| Company Size | Count |
|---|---|
| Small Business | 11 |
| Midsize Enterprise | 10 |
| Large Enterprise | 30 |
Qualys TotalCloud enhances security posture across cloud environments with continuous monitoring, vulnerability management, and risk visualization, ensuring efficient threat assessment and automated remediation for improved cyber risk reduction.
Qualys TotalCloud offers a robust suite of security tools essential for organizations managing multi-cloud infrastructures. By integrating cloud accounts and automating workflows, it supports AWS, Azure, and GCP, offering comprehensive vulnerability management and zero-day detection. The platform's user-friendly design, combined with its extensive risk management and unified threat assessment capabilities, enables organizations to prioritize and remediate vulnerabilities effectively. TruRisk Insights provides clear insights on cyber risks, while the automation options streamline patch management and scanning processes. API integration across IaaS and SaaS environments further enhances resource allocation efficiency and saves time, addressing misconfigurations across cloud environments.
What are the most important features of Qualys TotalCloud?Qualys TotalCloud is deployed in sectors needing rigorous vulnerability management, such as finance and healthcare. Companies utilize it to secure multi-cloud environments like AWS, Azure, and GCP, focus on compliance, and integrate security into CI/CD pipelines to detect and remedy threats pre-deployment.
Vanta offers real-time integration, automated compliance monitoring, and prebuilt control frameworks. It provides efficient reporting tools and KPI tracking, streamlining audit readiness and task management with a user-friendly interface and automated control testing.
Vanta is designed to enhance corporate risk analysis, evidence collection, and security posture. With seamless integration into internal environments, it optimizes policy compliance and audit readiness. Users rely on Vanta for compliance management with certifications like SOC 2, HIPAA, and ISO 27001. Additionally, its automation and continuous monitoring capabilities reduce manual effort and time, focusing on optimizing API interactions and data integrity in certification processes.
What are Vanta's Key Features?Vanta is widely used in industries requiring stringent compliance such as healthcare and finance. By supporting standards like HITRUST, it aids companies in managing certifications effectively. Expanded scalability and better user access functionalities remain key areas for further enhancement. Organizations value the task management capabilities and remediation guidance Vanta provides, making it a strategic tool in managing complex compliance requirements.
Wiz offers cloud security management with key capabilities in visibility, risk prioritization, and comprehensive analysis. It supports multi-cloud environments, ensuring robust integration and streamlining security tasks effectively.
Known for its advanced features like CSPM module, Security Graph, and Threat Intelligence, Wiz enables cloud integration while minimizing false positives. Its agentless deployment and high-risk analysis granularity improve operational efficiency. Users note desires for better reporting, more security features, enhanced integration, notably for APIs and cloud services like Kubernetes. Challenges include dashboard customization limits, remediation automation, scanning frequency, and cost concerns, particularly in Brazil. Users adopt Wiz for tasks including cloud security posture management, vulnerability identification, automated security measures, and integrating security tools, effectively managing security in AWS, Azure, and GCP.
What are the key features of Wiz?
What benefits should users expect?
Companies in industries with complex cloud architectures, like finance and healthcare, leverage Wiz for its multi-cloud support, managing risks and compliance efficiently. Its integration with container technologies aids sectors reliant on Kubernetes. Retailers benefit from visibility into misconfigurations, ensuring robust customer data protection.
We monitor all Compliance Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.