Consultant at a media company with 51-200 employees
Real User
Enables us to check the validity of legacy applications, infrastructure, and simple data operating systems
Pros and Cons
  • "The initial setup was good. We didn't have any problems with it."
  • "The ability to manage user accounts and give rights to the operator to know about abnormalities of applications is something that needs improvement."

What is our primary use case?

I use Qualys to review the validity of legacy applications, infrastructure, and simple data operating systems.

What needs improvement?

The ability to manage user accounts and give rights to the operator to know about abnormalities of applications is something that needs improvement. 

The pricing is also expensive.

For how long have I used the solution?

I have been using Qualys for four years. 

What do I think about the stability of the solution?

It's stable.

Buyer's Guide
Qualys VMDR
April 2024
Learn what your peers think about Qualys VMDR. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
769,334 professionals have used our research since 2012.

How are customer service and support?

I haven't needed to use technical support. 

How was the initial setup?

The initial setup was good. We didn't have any problems with it. 

What other advice do I have?

I would rate Qualys VM a ten out of ten. 

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
IT Consultant Supervisor at a financial services firm with 5,001-10,000 employees
Consultant
Scans our security posture and has very good scalability
Pros and Cons
  • "It's a good product. After the scan our internet works well. It scans our security posture."
  • "The reporting needs improvement. It should generate much more stuff like field reports."

What is our primary use case?

We use Qualys to check the status of our security posture.

How has it helped my organization?

Qualys help identifies the weakness in our critical infrastructure and provides guidelines how to address them.

What is most valuable?

maybe compliance monitoring.

What needs improvement?

Reporting can be improved more. It should generate much more stuff like field reports. Though the reports generally meet our need we hope we can customize it better.

For how long have I used the solution?

2 years

What do I think about the stability of the solution?

very satisfactory

What do I think about the scalability of the solution?

Its scalability is a four or five out of five. 

How are customer service and technical support?

We haven't had problems up until this point that required technical support. The solution can run by itself and generate reports. We didn't have any issues that would need us to call technical support.

Which solution did I use previously and why did I switch?

None

How was the initial setup?

Simple and straightforward

What about the implementation team?

in-house.

What was our ROI?

acceptable.

What's my experience with pricing, setup cost, and licensing?

I would give the pricing three out of five.

Which other solutions did I evaluate?

No.

What other advice do I have?

I would like for Qualys to have the ability to scan OT operation technology assets as well. 

If it can I would rate it 8 out of 10. 

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Qualys VMDR
April 2024
Learn what your peers think about Qualys VMDR. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
769,334 professionals have used our research since 2012.
it_user247242 - PeerSpot reviewer
Consultant with 501-1,000 employees
Vendor
Using the vulnerability management module you can track the list of vulnerabilities.

What is most valuable?

I have mostly used vulnerability management so I would recommend it for the same.

How has it helped my organization?

Most of my clients uses it for the vulnerability scanning of their internal & external network devices. Using the vulnerability management module you can track the list of vulnerabilities and can take action to remediate them. You can also see the list of vulnerability by severities and various other stuff.

What needs improvement?

I can't say as I have worked mostly on its vulnerability management module.

For how long have I used the solution?

I've used it for two years.

What was my experience with deployment of the solution?

I didn't work on the deployment.

What do I think about the stability of the solution?

No issues encountered.

What do I think about the scalability of the solution?

No issues encountered.

Which solution did I use previously and why did I switch?

I didn't use a previous solution, but the vulnerability management helped me to find out about it.

Which other solutions did I evaluate?

I have seen other products like Nessus, Nmap, iDefense and so on but I found this one much better.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Consultant at a tech services company with 11-50 employees
Reseller
Provides excellent security for scanning, flexible with good integration
Pros and Cons
  • "Great web application security for scanning."
  • "Could use additional security for the app."

What is our primary use case?

We are consultants and resellers of Qualys VM. 

What is most valuable?

I like the solution's web application security for scanning, the solution is flexible with good integration. 

What needs improvement?

I'd like to see additional security for the app. The product lacks integrations for third party solutions or automation integration for other tools.

For how long have I used the solution?

I've been using this solution for six months. 

What do I think about the stability of the solution?

The product is 100% stable. There are five users in the company who deal with operations and security analysis. There are four people in the company who deploy and provide support.

How are customer service and technical support?

I've never used the technical support. Documentation is simple and complete. 

Which solution did I use previously and why did I switch?

I've previously worked with Tenable IO and Rapid 7. We switched because of Qualys's web application feature.

How was the initial setup?

The initial setup is straightforward. Initial deployment takes between two and four hours. We did it ourselves. 

What other advice do I have?

I would recommend this solution. 

I would rate this solution a 10 out of 10. 

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Microsoft Azure
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
PeerSpot user
it_user347139 - PeerSpot reviewer
Sr. Analyst- Security Testing with 1,001-5,000 employees
Vendor
The reports it generates give us a detailed description of and solution for all network and compliance-related violations, though I'd like an exploitation framework.

Valuable Features

QualysGuard provides a solution for network security, web application security and compliance.

Vulnerability management and policy/PCI compliance are the features that I have used which I think are the most valuable.

Improvements to My Organization

We use QualysGuard to identify all network and compliance-related violations of the assets. The report generated by the product will have a detailed description and solution. This has helped us to provide a certificate of compliance or a clean sheet for our vendors.

Room for Improvement

I'm looking forward to having an exploitation framework, a platform/framework that helps to cross verify the vulnerabilities like Metasploit.

Use of Solution

I've used it for four years.

Deployment Issues

No issues encountered.

Stability Issues

No issues encountered.

Scalability Issues

No issues encountered.

Customer Service and Technical Support

Customer Service:

7/10

Technical Support:

7/10

Other Solutions Considered

I have evaluated multiple products that include commercial as well as open source. There are different solutions available with other products, but I feel this is the integrated product which covers information security and compliance comprehensively.

Also, the results provided by the product are accurate and precise.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free Qualys VMDR Report and get advice and tips from experienced pros sharing their opinions.
Updated: April 2024
Buyer's Guide
Download our free Qualys VMDR Report and get advice and tips from experienced pros sharing their opinions.