Try our new research platform with insights from 80,000+ expert users
Cyber ​​Security Analyst at a tech services company with 1-10 employees
Real User
Dec 5, 2022
You can scan a network, and receive recommendations to address vulnerabilities with the click of a button
Pros and Cons
  • "The most valuable feature is the vulnerability scan."
  • "In order to be able to properly test the solution and make a decision, I would like to receive the test license code instantly and eliminate the wait time."

What is our primary use case?

The primary use case of the solution is for network monitoring.

What is most valuable?

The most valuable feature is the vulnerability scan. All you need to do is enter the IP address and the solution provides details about the machines, provides the vulnerabilities, and gives recommendations to address those vulnerabilities.

What needs improvement?

In order to be able to properly test the solution and make a decision, I would like to receive the test license code instantly and eliminate the wait time. If I have to wait a week to test the solution it may force me to move on to another solution.

For how long have I used the solution?

I have used the solution for three weeks.

Buyer's Guide
Rapid7 InsightVM
December 2025
Learn what your peers think about Rapid7 InsightVM. Get advice and tips from experienced pros sharing their opinions. Updated: December 2025.
879,422 professionals have used our research since 2012.

What do I think about the stability of the solution?

The solution is stable.

What do I think about the scalability of the solution?

The free trial was able to monitor over 500 machines on the network. I believe the solution is scalable.

How was the initial setup?

The initial setup is straightforward. All you need to do is install the solution on your device and connect to the cloud service.

What about the implementation team?

The implementation was done in-house.

What's my experience with pricing, setup cost, and licensing?

A full license for the solution is expensive because it is at the organizational level and not by individual users. I used a free trial licensing by providing my email. For the free trial, you require a new license code each time and if you don't use a new email address it can take over a week to receive that code.

What other advice do I have?

I give the solution eight out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Chamindu Pramodya - PeerSpot reviewer
Network and Security engineer at a university with 1,001-5,000 employees
Real User
Top 10
Aug 15, 2024
Gives reliable information, risk management, including prioritization

What is our primary use case?

We'll use Rapid7 InsightVM for on-premises scanning and the virtual machine option for cloud-based environments.

How has it helped my organization?

It is a good tool for comprehensive risk management, including prioritization and remediation.

What is most valuable?

It is a great endpoint agent. It gives you reliable information about that infrastructure and offers strong accuracy for risk management. However, unlike other management tools that have improved precision testing, InsightVM requires an additional purchase for full access to some of its advanced features.

What needs improvement?

Other solutions, like Cisco, have strengths, but Rapid7 InsightVM has some solid features, such as the RapidServer Active Response, the ability to create endpoint agents, and a live dashboard. However, the main concern is the system's reliability. For instance, during a scan on an Ubuntu machine, the system mistakenly identified the OS as Windows. This kind of inaccuracy is problematic.

For how long have I used the solution?

I have been using Rapid7 InsightVM for a year. 

What do I think about the scalability of the solution?


How are customer service and support?

The response takes some time.

How would you rate customer service and support?

Neutral

What's my experience with pricing, setup cost, and licensing?

Rapid7 is a bit expensive.

Which other solutions did I evaluate?

Tenable has 20% lower pricing and includes built-in web application testing, which gives it an advantage over Rapid7 InsightVM.

What other advice do I have?

I recommend Tennable for small and Rapid for big enterprises.

Overall, I rate the solution an eight out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Rapid7 InsightVM
December 2025
Learn what your peers think about Rapid7 InsightVM. Get advice and tips from experienced pros sharing their opinions. Updated: December 2025.
879,422 professionals have used our research since 2012.
Defense protection study manager at a government with 10,001+ employees
Real User
Top 20
Apr 10, 2023
Simple to use and scalable while installing scan engines in various network zones
Pros and Cons
  • "The solution works well."
  • "They should integrate the solution with multiple products."

What is our primary use case?

We use the solution for vulnerability management. We perform scanning and security patching in selected network zones utilizing it.

What is most valuable?

The solution's most valuable features are the simplicity of use, identifying vulnerable assets, and the ability to create remediation projects.

What needs improvement?

They should integrate the solution with multiple products along with ServiceNow.

For how long have I used the solution?

We have been using the solution for two or three months.

What do I think about the stability of the solution?

I rate the solution's stability as an eight.

What do I think about the scalability of the solution?

We have a few tens of users of the solution. They include IT specialists, engineers, and administrators. We can easily install scan engines in different zones of our network. But, we face difficulties pairing the scan engines to the management console. 

I rate the solution's scalability as an eight.

What about the implementation team?

The vendor team helps us install the solution.

What's my experience with pricing, setup cost, and licensing?

The solution's pricing depends on the number of users per month as per our contract. We have a limit of scanning around 4000 appliances. It covers a sufficient scope regarding our requirements.

What other advice do I have?

The solution works well. I recommend it to others and rate it as an eight.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1043379 - PeerSpot reviewer
Chief Executive Officer at a outsourcing company with 11-50 employees
Reseller
Nov 6, 2022
A single pane of glass with good functionality, and is easy to manage
Pros and Cons
  • "The cost is what is most valuable. Compared to the other products on the market, the cost is more palatable."
  • "We are a registered reseller and a trusted partner. However, for us to get any support from them I can't log a call directly with Rapid7 InsightVM. I have to work with the distributor to log the call for me."

What is our primary use case?

The main purpose for using Rapid7 InsightVM is vulnerability management and visibility.

What is most valuable?

The cost is what is most valuable. Compared to the other products on the market, the cost is more palatable. Also the functionality. 

It is a single pane of glass that I can do most things.

What needs improvement?

I see ongoing progress constantly. There isn't much opportunity to make recommendations for improvement from our end. Technology does what we want it to do.

The only issue I have with their business plan is how they interact with South African enterprises. 

They have one singular distributor that I must work with, and that is where my two points go. 

I can't interact with Rapid7 directly. I must work via the local incumbent, the distributor. And working with this third party can be tiresome at times.

Rapid7 InsightVM doesn't work with us directly. I have to work with a  distributor. If I need quotes or technical support, for example, I have to work with the distributor rather than Rapid7 InsightVM directly.

We are a registered reseller and a trusted partner. However, for us to get any support from them I can't log a call directly with Rapid7 InsightVM. I have to work with the distributor to log the call for me.

For how long have I used the solution?

I have been working with Rapid7 InsightVM for two to three years.

We are using the latest version.

What do I think about the stability of the solution?

Rapid7 InsightVM is very stable. I would rate the stability a five out of five.

What do I think about the scalability of the solution?

Rapid7 InsightVM is a scalable product. I would rate the scalability a five out of five.

We have approximately 1, 500 endpoints in our company.

It's not users, but endpoints, because the model is built around the endpoints you want to monitor. We run on around 1,500 endpoints. It is not user-specific.

One person can easily manage this solution, but we have a team of four engineers to manage our environment.

How are customer service and support?

I have not contacted technical support directly.

Which solution did I use previously and why did I switch?

We also use Tenable Nessus.

How was the initial setup?

I am not involved with the initial setup. I have a support team that is managing that.

We deploy it depending on our client's requirements. We use it as well as our clients.

What about the implementation team?

The deployment was done in-house. We do it ourselves.

We had four, and all four worked on the project. This is not to say that there is just one primary job or four main jobs. Our engineers all work as a team.

What was our ROI?

I can definitely see a return on investment.

It's good. We get the value from the product.

What's my experience with pricing, setup cost, and licensing?

We purchase annual licenses.

We provide our own support. We have resources that have been certified to work on the product. It is purely the license fee.

In terms of affordability, I would rate it a three out of five.

What other advice do I have?

I believe they see us as resellers because we resell it, but when we use it for professional services, they regard us as partners. They use both terms in the same sentence.

We support it.

I strongly recommend it. It's a good product. 

It's only the backend support that needs to be improved. However, there isn't very much that has room for improvement in the product right now.

They are not flawless. We have had problems here and there, but overall, I would rate Rapid7 InsightVM an eight out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)
Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
PeerSpot user
MuhammadMurtaza - PeerSpot reviewer
Information security engineer at a tech vendor with 1-10 employees
Real User
Top 5
Feb 2, 2024
Comprehensive vulnerability management with robust set of features, making it highly effective for enhancing security posture and mitigating risks
Pros and Cons
  • "The most valuable features are its reporting capabilities and the host discovery functionality."
  • "There is a significant learning curve, that non-technical individuals, especially those not specialized in computer science or the information security industry, might face."

What is our primary use case?

It's a vulnerability scanning tool utilized within the vulnerability management process. We employ it to conduct internal vulnerability assessments of company or organizational host IPs.

How has it helped my organization?

It aids in enhancing the overall security posture within our organization. It uncovered numerous vulnerabilities that had been overlooked, which was quite beneficial.

What is most valuable?

The most valuable features are its reporting capabilities and the host discovery functionality.

What needs improvement?

The primary issue I encountered initially with this tool was related to configuration. There is a significant learning curve, that non-technical individuals, especially those not specialized in computer science or the information security industry, might face.

For how long have I used the solution?

I have been working with it for six months.

What do I think about the stability of the solution?

I am satisfied with the stability provided.

How was the initial setup?

The initial setup went smoothly, but after completing it, I encountered difficulties when attempting to use features like the dashboard and the scan now option. Specifically, I faced challenges with scanning the host, which proved to be quite frustrating.

What about the implementation team?

The initial setup wasn't overly difficult, so it took me around one to two days due to troubleshooting issues. Overall deployment took about two to three days in total.

What other advice do I have?

I highly recommend Rapid7 as my experience with it is very positive. Overall, I would rate it eight out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Information Technology Security Specialist at a consultancy with 201-500 employees
Reseller
Top 5Leaderboard
Mar 29, 2023
Easy to use with good dashboards and decent reporting
Pros and Cons
  • "We can create our own templates."
  • "The authentication scan is not working."

What is our primary use case?

We primarily use the solution for scanning. It will support the agent and collect scanning information on particular hotspots. 

What is most valuable?

We like that you can create your own inputs using the chat.

The integration capabilities are good.

It has good reporting.

We can create our own templates.

The dashboard is very easy to use for customers. 

What needs improvement?

The firewall could be better.

We've had struggles with new scanning on Cisco routers. We have to do a lot of troubleshooting. The authentication scan is not working. 

We'd like better risk levels for assets in terms of reporting. 

For how long have I used the solution?

I've been using the solution since 2019. I've only used it for a few years at this point. 

What do I think about the stability of the solution?

The solution is quite stable. It's reliable. There are no bugs or glitches. It doesn't crash or freeze. I'd rate the stability eight out of ten. 

What do I think about the scalability of the solution?

The solution is scalable. It offers pretty high scalability. I'd rate it nine out of ten. 

Our clients are medium to large-scale businesses. 

How was the initial setup?

The initial setup is very easy. It is very customizable and easy to understand. 

I'm not sure how long the deployment took. The POC took about 30 days to allow the clients to try it out. We requested a POC to test out some use cases. 

What other advice do I have?

I'm a reseller. 

I'm not sure which version of the solution I'm using. It might be version six or seven. 

I'd recommend the solution to others. 

I would rate the solution eight out of ten. 

Which deployment model are you using for this solution?

Private Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
PeerSpot user
Cyber Security Architect at a healthcare company with 11-50 employees
Real User
Dec 11, 2022
Easily exposes misconfigurations, flaws, or security risks
Pros and Cons
  • "The solution is automatically scheduled so it runs by itself."
  • "The solution should include a tighter integration with third-party threat modeling and threat intelligence tools."

What is our primary use case?

Our company uses the solution to discover, identify, and patch vulnerabilities or disable certain services. The solution provides the patch recommendations that we implement via another tool. 

Four team members manage the solution internally and for various clients who each have fifty users. 

What is most valuable?

The solution helps to identify lots of misconfigurations, flaws, or security risks. Anything insecure is exposed easily. 

The solution is automatically scheduled so it runs by itself. 

What needs improvement?

The solution should include a tighter integration with third-party threat modeling and threat intelligence tools. Rapid7 is the solution's own threat intelligence platform but third-party platforms would be a great addition. 

It would be nice to have patching capabilities built within the solution rather than using third-party products. 

For how long have I used the solution?

I have been using the solution for three years. 

What do I think about the stability of the solution?

The solution is extremely stable. 

What do I think about the scalability of the solution?

The solution is easily scalable with the purchase of additional licenses. 

How are customer service and support?

Technical support is extremely good and we get support quite fast. Technical support is rated a ten out of ten. 

How would you rate customer service and support?

Positive

How was the initial setup?

The setup is very straightforward so I rate it a ten out of ten. 

What about the implementation team?

We implement the solution for customers. 

What's my experience with pricing, setup cost, and licensing?

The solution is a bit more reasonably priced than other products. 

Which other solutions did I evaluate?

Most products in this category are similar with no real difference so it all comes down to price. 

What other advice do I have?

It is important to have a strong patch management plan that prioritizes what and how you need to patch. 

The solution does the vast majority of work but you need a proper system so you can take output to your operations team for patching. A good workflow between teams is important. 

I rate the solution a ten out of ten. 

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Agustinus DWIJOKO - PeerSpot reviewer
Network & Security Engineer at a comms service provider with 11-50 employees
Reseller
May 21, 2022
Reliable, easy to set up, and has good active scan capabilities
Pros and Cons
  • "It's very scalable."
  • "We'd like the agent to cover more compliance issues."

What is our primary use case?

There are so many cases for InsightVM. It's used for customers that need the ICS compiler or if they need users to work from home right now. It allows them to manage assets from anywhere. 

What is most valuable?

Using active scan is good.

If you have a history with the solution, the initial setup is easy.

The solution is stable and reliable.

It's very scalable.

What needs improvement?

The agent must be covered if the customer wants to do a combined thing. InsightVM cannot do that if they are using an agent. We'd like the agent to cover more compliance issues.

For how long have I used the solution?

I've been using the solution for three or four years. 

What do I think about the stability of the solution?

The product is stable. There aren't bugs or glitches. It doesn't crash or freeze. It's reliable and the performance is good.

What do I think about the scalability of the solution?

If you want to scan more than 1,000 assets, then we need to show the requirement first. It will use the server with maximum CPU, and maximum RAM. The scalability is quite higher than on the previous one we used. It keeps getting better.

How was the initial setup?

Typically, the initial setup is easy. If a user has the experience, it is straightforward. However, if we work together with an organization that has never used it before, there's more configuration that needs to be done.

What other advice do I have?

We're working with the latest version of the solution, however, I cannot recall the exact version number.

While our clients are using a hybrid cloud, the customers still need to install on-premise. Your console right now is like a dashboard; it's moved to the cloud.

I'd advise users to try the solution. If they are using InsightVM they will be able to quickly understand what the vulnerabilities are on their assets.

I'd rate the solution eight out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Google
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Rapid7 InsightVM Report and get advice and tips from experienced pros sharing their opinions.
Updated: December 2025
Buyer's Guide
Download our free Rapid7 InsightVM Report and get advice and tips from experienced pros sharing their opinions.