My primary use case of this solution is for scanning internal networks.
Senior Consultant at a tech company with 1,001-5,000 employees
Reduces the amount of time spent on finding vulnerabilities.
Pros and Cons
- "Tenable Nessus streamlines the process of scanning for our organization."
- "This is still a maturing product. Tenable is only a scanner for one ability, while other solutions like Rapid7 have more tools for verification. We still have to manually verify to see if the vulnerability is a false positive or not."
What is our primary use case?
How has it helped my organization?
We use Tenable Nessus for scanning. We find lots of vulnerabilities and then we reduce the time spent on finding inbox vulnerabilities. Of course, Tenable streamlines the process. It has been a positive experience overall.
Tenable can scan for missing patches for the endpoints. We can scan it and then, once we can support any endpoint without patching, we inform our users.
What is most valuable?
We wanted to do a lot of Hardening and we have to make sure that all endpoints are up to the certain Hardening standard and we propose the CIS benchmark to do this. That's why we use Tenable to do scanning frequency and to ensure the quality of the endpoints.
What needs improvement?
This is still a maturing product. Tenable is only a scanner for one ability, while other solutions like Rapid7 have more tools for verification. We still have to manually verify to see if the vulnerability is a false positive or not.
Buyer's Guide
Tenable Nessus
May 2025

Learn what your peers think about Tenable Nessus. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
856,874 professionals have used our research since 2012.
For how long have I used the solution?
Less than one year.
What do I think about the stability of the solution?
It is stable. We have not had any major issues. It performs as scheduled and scans as needed.
What do I think about the scalability of the solution?
In terms of scalability, there is an issue with cloud servers. You need the internet bandwidth to do the testing. They consume a lot of bandwidth and they use the cloud scanners for the scanning.
How are customer service and support?
I usually use the dashboard for support. It shows the critical vulnerabilities from low to high. They are very responsive when necessary.
How was the initial setup?
The implementation was straightforward. First, we noticed whether everything was ready, then we got a license key, set up some basic scanning using a default template, and finally, we scheduled time.
What's my experience with pricing, setup cost, and licensing?
The price of Tenable Nessus is much more competitive versus other solutions on the market.
Which other solutions did I evaluate?
We were manually scanning before using Tenable Nessus. We looked at Rapid7 but we are satisfied with Tenable Nessus.
What other advice do I have?
I would suggest that people considering this solution should choose the cloud-based solution versus the on-premise version.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Managing partner at a tech services company with 51-200 employees
We can deliver a high level of consulting using this product.
Pros and Cons
- "We looked at Tenable, Qualys and Rapid7. We found Tenable was the best of all three."
- "From my point of view the solution basically is not for the big enterprise."
How has it helped my organization?
This is something that allows us to quickly get a really important information context. We can now deliver highly professional consulting using the product.
What needs improvement?
From my point of view, the solution basically is not for large enterprises. I also think there should be built-in plugins for the public cloud vendors.
What do I think about the stability of the solution?
I'm happy with stability, there's no problem from my point of view.
What do I think about the scalability of the solution?
For an average sized company or for smaller enterprises, this solution is suitable. But, for large enterprises it's not a good choice. We have one customer with more than 5,000 servers. I do not think it will be suitable for that customer.
How are customer service and technical support?
We communicated via email to solve our issue. The experience was quite good for us.
Which solution did I use previously and why did I switch?
We switched because our previous solution was too expensive for us.
What's my experience with pricing, setup cost, and licensing?
My advice when choosing a vendor is to always consider:
- Trustworthiness
- Quality
- Price
Which other solutions did I evaluate?
We looked at Tenable, Qualys and Rapid7. We found Tenable was the best of all three.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Tenable Nessus
May 2025

Learn what your peers think about Tenable Nessus. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
856,874 professionals have used our research since 2012.
IT Manager at Medmen
Provides multiple recommendations towards the remedy of vulnerabilities
Pros and Cons
- "It provides multiple recommendations towards the remedy of vulnerabilities."
- "It allows me to prioritize efforts and utilize effective technical resources."
- "They should improve the I/O reporting and the customized spreadsheet export feature."
- "Multiple steps to create an actionable plan will be a great addition to Nessus."
What is our primary use case?
I use Tenable Nessus to evaluate the security posture of multiples acquisitions before integrating them to our network.
How has it helped my organization?
Tenable Nessus has helped us visualize the security posture of acquisitions. It provides actionable recommendations to the implementation team towards security remedies.
What is most valuable?
I have found the remedy recommendation feature helpful, as it:
- Provides multiple recommendations towards the remedy of vulnerabilities.
- Allows me to prioritize efforts and utilize effective technical resources.
What needs improvement?
- They should improve the I/O reporting and the customized spreadsheet export feature.
- Multiple steps to create an actionable plan will be a great addition to Nessus.
For how long have I used the solution?
One to three years.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Senior Cybersecurity Consultant at CIA Botswana
Helps to discover and patch vulnerabilities proactively
Pros and Cons
- "Nessus' most valuable feature is vulnerability management because it helps to discover vulnerabilities proactively and integrates with patch management solutions so you can push patches."
- "Nessus' reporting could be more user-friendly."
What is our primary use case?
I primarily use Nessus for vulnerability management, including scanning, identifying, and assessing risks.
What is most valuable?
Nessus' most valuable feature is vulnerability management because it helps to discover vulnerabilities proactively and integrates with patch management solutions so you can push patches.
What needs improvement?
Nessus' reporting could be more user-friendly.
For how long have I used the solution?
I've been using Nessus for more than three years.
What do I think about the stability of the solution?
I would rate Nessus' stable five out of five.
What do I think about the scalability of the solution?
Nessus is scalable.
How are customer service and support?
Tenable's technical support has a very good turnaround time.
How was the initial setup?
The initial setup is straightforward, and deployment takes up to five days.
What was our ROI?
The ROI from Nessus is good - it allows us to proactively discover vulnerabilities and deploy patches before the worst-case scenario happens. I would rate the ROI five out of five.
What's my experience with pricing, setup cost, and licensing?
Nessus is affordable, but its licensing model could be improved with more flexibility for adding assets.
What other advice do I have?
I would advise anybody thinking of implementing Nessus that they should be competent with risk management language and do some training on the solution, otherwise, they won't understand anything. I would rate Nessus ten out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Founder & CEO at a tech services company with 1-10 employees
Highly stable, easy to use, and useful self updating
Pros and Cons
- "The most valuable feature of Tenable Nessus is the self-updating engine."
- "Tenable Nessus could improve the reporting."
What is our primary use case?
Tenable Nessus can be deployed on the cloud and on-premise.
I use Tenable Nessus for an internal secured scale.
What is most valuable?
The most valuable feature of Tenable Nessus is the self-updating engine.
What needs improvement?
Tenable Nessus could improve the reporting.
For how long have I used the solution?
I have been using Tenable Nessus for approximately three years.
What do I think about the stability of the solution?
Tenable Nessus is highly stable.
What do I think about the scalability of the solution?
The scalability of Tenable Nessus is good.
I am the only one in cybersecurity using this solution in my organization.
How are customer service and support?
Tenable Nessus is very easy to support and manage and this is why I have not needed to contact support.
How was the initial setup?
The initial setup of Tenable Nessus is easy.
What's my experience with pricing, setup cost, and licensing?
The is a free version of Tenable Nessus available.
In Brazil, it is about $3,500 per year.
What other advice do I have?
My advice to others is for them to start using the free version to get used to the solution.
I rate Tenable Nessus an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Information Security Engineer at a tech services company with 11-50 employees
Easy to deploy and use, and integrates well with our systems
Pros and Cons
- "Tenable integrates well with other solutions such as SIEM and batch management."
- "Pricing is one of the most important features, and it is something that they can improve on."
What is our primary use case?
We are a solution provider and Tenable Nessus is one of the products that we implement for our clients.
The primary task that Tenable is focused on is vulnerability management.
What is most valuable?
This solution is easy to use.
It has a powerful set of features.
Tenable integrates well with other solutions such as SIEM and batch management. This is one of the things that we do to add value for our customers.
For how long have I used the solution?
I have been working with Tenable Nessus for approximately nine years. This included six years with my previous company and another three years in my current organization.
What do I think about the stability of the solution?
The stability is good.
What do I think about the scalability of the solution?
This is a scalable product.
How are customer service and support?
The support, as well as the portal, is very good.
How was the initial setup?
The deployment is very easy to do. It takes less than one hour to complete.
What's my experience with pricing, setup cost, and licensing?
Pricing is one of the most important features, and it is something that they can improve on.
Which other solutions did I evaluate?
In my region, our customers prefer Tenable over other products, like those offered by Qualys. They have approximately 80% of the market share.
What other advice do I have?
Tenable is the best vulnerability management product in the world, and I recommend it.
I would rate this solution a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Founder & CEO at a tech services company with 1-10 employees
Very user friendly and affordable
Pros and Cons
- "The trial version is very good for testing whether it will suit your needs."
- "The report for counters is too simple and would be improved by a dashboard."
What is our primary use case?
I'm currently using the Nessus essentials for testing, it's installed on my Notebook. My company has only been in operation for one month so as soon as I close with my first client, I will buy the professional version. I used the solution in my previous job.
What is most valuable?
I have chosen Nessus because it's very simple to use and install. Depending on the number of assets you scan, Nessus is also an affordable solution. Products such as Tenable IO and RapidLab, can become expensive depending on the number of IPs. So Nessus Pro is perfect for my needs right now.
What needs improvement?
I'd like to see a dashboard for this product because the report for counters is too simple. There needs to be something better for the client.
For how long have I used the solution?
I've been using this solution for five years.
What do I think about the stability of the solution?
This solution is stable.
What do I think about the scalability of the solution?
The solution is definitely scalable.
How are customer service and support?
I've never needed to contact Tenable support, I've been able to resolve any issues myself.
How was the initial setup?
The initial setup is very easy. Deployment takes less than two hours, it's simple.
What other advice do I have?
It's important to test the solution so you know that it works for your situation. They have a trial version so it's easy to test before you purchase it.
I rate this solution eight out of 10.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Infrastructure Engineer at IP Protocol INC
Provides good scalability, but there could be more learning documentation
Pros and Cons
- "The product's most valuable features are vulnerability and asset management. It can define the rules and validate the configuration."
- "There could be an integration between Tenable Nessus and other Tenable products. It will help us manage all the solutions using one dashboard."
What is our primary use case?
We use Tenable Nessus for asset and vulnerability management.
What is most valuable?
The product's most valuable features are vulnerability and asset management. It can define the rules and validate the configuration.
What needs improvement?
There could be an integration between Tenable Nessus and other Tenable products. It will help us manage all the solutions using one dashboard. Additionally, they should include more learning material to know about the product.
For how long have I used the solution?
We have been using Tenable Nessus for one year.
What do I think about the stability of the solution?
The product has good stability.
What do I think about the scalability of the solution?
We have more than 50 Tenable Nessus users in our organization. It is a scalable platform.
How was the initial setup?
Tenable Nessus is easy to deploy and manage.
What other advice do I have?
I recommend Tenable Nessus to others and rate it a seven out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Buyer's Guide
Download our free Tenable Nessus Report and get advice and tips from experienced pros
sharing their opinions.
Updated: May 2025
Product Categories
Vulnerability ManagementPopular Comparisons
Microsoft Defender for Cloud
SentinelOne Singularity Cloud Security
Qualys VMDR
Tanium
Tenable Security Center
Tenable Vulnerability Management
Orca Security
JFrog Xray
Acunetix
Claroty Platform
Microsoft Defender Vulnerability Management
Lacework FortiCNAPP
Skybox Security Suite
Trend Vision One - Cloud Security
Buyer's Guide
Download our free Tenable Nessus Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Qualys VM vs Tenable Nessus: Comparison
- How would you choose between Rapid7 InsightVM and Tenable Nessus?
- What's the difference between Tenable Nessus and Tenable.io Vulnerability Management?
- How does Tenable Nessus compare with Qualys VM?
- What are the main differences between Qualys VMDR and Tenable Nessus?
- How inadvisable is it to use a single vulnerability analysis tool?
- What are the benefits of continuous scanning for vulnerability management?
- When evaluating Vulnerability Management, what aspect do you think is the most important to look for?
- What is a more effective approach to cyber defense: risk-based vulnerability management or vulnerability assessment?
- What are the main KPIs that need to be implemented to have better posture in vulnerability projects?