Try our new research platform with insights from 80,000+ expert users
Qualys Web Application Scanning Logo

Qualys Web Application Scanning pros and cons

Vendor: Qualys
3.8 out of 5

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the report

Prominent pros & cons

PROS

QualysGuard provides fast and assured results for external and PCI scans.
It easily scales without major challenges and offers comprehensive cloud-based and easily deployable features.
It integrates well with other tools and creates comprehensive reports, making remediation easy.
Its single console provides consolidated reporting from on-prem to cloud compliance, covering multiple security aspects.
It ensures accurate scans with minimal false positives and provides valuable features like patch and vulnerability management.

CONS

Qualys Web Application Scanning has issues with false positives, which could be reduced with algorithm improvements.
Pricing for Qualys Web Application Scanning is considered expensive and should be more competitive.
Qualys Web Application Scanning lacks full platform coverage for the Policy Compliance model, which needs enhancement.
Concurrent scan capabilities in Qualys Web Application Scanning are limited, making scalability challenging.
Qualys Web Application Scanning does not support automatic crawling and deep testing compared to competitors like IBM AppScan.
 

Qualys Web Application Scanning Pros review quotes

it_user700140 - PeerSpot reviewer
Ex Senior Security Analyst and Onsite consultant at Paladion Networks
Feb 18, 2018
​QualysGuard web-based scanner is very useful for performing external penetration and PCI scans from remote locations.​
CybSec9734 - PeerSpot reviewer
Cyber Security Consultant at a tech services company with 10,001+ employees
May 15, 2018
Key features include: Cloud-based, so the installation is not so tedious. Easily deployed. Highly scalable. Comprehensive reporting.
Reviewer32192 - PeerSpot reviewer
Delivery Manager at a tech vendor with 1,001-5,000 employees
Aug 2, 2018
We can do scanning and submit reports straight to the customers when there are new vulnerabilities, then tell them whether they are affected or not.
Learn what your peers think about Qualys Web Application Scanning. Get advice and tips from experienced pros sharing their opinions. Updated: December 2025.
879,422 professionals have used our research since 2012.
Daniel_Ndiba - PeerSpot reviewer
Assistant Manager - Cyber & Cloud Security at a financial services firm with 1,001-5,000 employees
Aug 16, 2018
It combines both web application vulnerability management and internal vulnerability management on one platform and dashboard. Usually, you have to purchase separate tools.
Consultab6ea - PeerSpot reviewer
Consultant at a tech services company with 1,001-5,000 employees
Aug 22, 2019
The most valuable feature is that we are able to scan the services and put credentials like a user ID password. We can verify the vulnerability level.
it_user1015101 - PeerSpot reviewer
Lead Security Architect at a financial services firm with 501-1,000 employees
Aug 26, 2019
With our vulnerabilities under control, it's putting our services in compliance and minimizing our risk for exposure.
reviewer1254240 - PeerSpot reviewer
CEO at a tech services company with 51-200 employees
Jan 12, 2020
The simplicity of exporting reports and the simplicity and clarity of the reports included with the product are good.
SubhajitAich - PeerSpot reviewer
Security Consultant at Cognizant
Jan 29, 2020
The interface is user-friendly and easy to understand.
reviewer1387992 - PeerSpot reviewer
Senior Software Developer at a tech vendor with 1,001-5,000 employees
Aug 11, 2020
The feature that I have found most valuable is the progressive scan. It is good. It's done in 24 hours.
HJ
Data Specialist at CHUN SHIN LIMITED
Sep 27, 2020
It is easy to use.
 

Qualys Web Application Scanning Cons review quotes

it_user700140 - PeerSpot reviewer
Ex Senior Security Analyst and Onsite consultant at Paladion Networks
Feb 18, 2018
They should try to include business logic vulnerabilities in the scanner testing.
CybSec9734 - PeerSpot reviewer
Cyber Security Consultant at a tech services company with 10,001+ employees
May 15, 2018
The GUI could be a little less complicated as it opens a lot of new windows for creating search lists, templates, reports, or for scanning purposes.
Reviewer32192 - PeerSpot reviewer
Delivery Manager at a tech vendor with 1,001-5,000 employees
Aug 2, 2018
In terms of the Policy Compliance model which they currently have, not all the platforms are being covered. If they could improve on the Policy Compliance model, since there are policies which are benchmarked against it, this will be helpful for us.
Learn what your peers think about Qualys Web Application Scanning. Get advice and tips from experienced pros sharing their opinions. Updated: December 2025.
879,422 professionals have used our research since 2012.
Daniel_Ndiba - PeerSpot reviewer
Assistant Manager - Cyber & Cloud Security at a financial services firm with 1,001-5,000 employees
Aug 16, 2018
The area of false positives could be improved. There are quite a number of false positives as compared to other solutions. They could probably fine tune the algorithm to be able to reduce the number of false positives being detected.
Consultab6ea - PeerSpot reviewer
Consultant at a tech services company with 1,001-5,000 employees
Aug 22, 2019
It should have better automatic reporting.
it_user1015101 - PeerSpot reviewer
Lead Security Architect at a financial services firm with 501-1,000 employees
Aug 26, 2019
The solution needs to adjust its pricing. They should make it more affordable.
reviewer1254240 - PeerSpot reviewer
CEO at a tech services company with 51-200 employees
Jan 12, 2020
The pricing does not seem to be competitive.
SubhajitAich - PeerSpot reviewer
Security Consultant at Cognizant
Jan 29, 2020
The scanner reports a lot of false positives, which is something that needs to be improved.
reviewer1387992 - PeerSpot reviewer
Senior Software Developer at a tech vendor with 1,001-5,000 employees
Aug 11, 2020
The UI is not user-friendly and you don't have a yearly reporting facility where you can slice and dice in different jobs.
HJ
Data Specialist at CHUN SHIN LIMITED
Sep 27, 2020
The reporting contains too many false positives.