Imperva DDoS vs Qualys VMDR comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Imperva DDoS
Average Rating
8.8
Number of Reviews
74
Ranking in other categories
CDN (6th), Web Application Firewall (WAF) (19th), Distributed Denial of Service (DDOS) Protection (7th)
Qualys VMDR
Average Rating
8.2
Number of Reviews
77
Ranking in other categories
IT Asset Management (7th), Configuration Management Databases (3rd), Container Security (11th), Risk-Based Vulnerability Management (3rd)
 

Market share comparison

As of June 2024, in the Distributed Denial of Service (DDOS) Protection category, the market share of Imperva DDoS is 6.0% and it decreased by 35.5% compared to the previous year. The market share of Qualys VMDR is 0.1% and it increased by 12.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Distributed Denial of Service (DDOS) Protection
Unique Categories:
CDN
5.2%
Web Application Firewall (WAF)
1.2%
IT Asset Management
4.0%
Configuration Management Databases
1.9%
 

Featured Reviews

Syed Ubaid Ali Jafri - PeerSpot reviewer
Dec 13, 2016
I like the content monitoring feature which I haven't seen in other WAF solutions.
They could improve by minimizing false positive results. Although this occurs less with Imperva, we would like to see some further improvements. We have been using this product for last 1 years, it's result is very impressive. But due to the excessive load on the Web site where thousands of requests‎ are generated from legitimate users, however the request in which any sequential or specialised characters are requested would be directly blocked by impreva . Currently imperva blocks the special character request generated from the user, as I conduct a test where I am parsing the encoded html values of the same special characters to the input field, imperva bypasses these encoded values for example : ' i.e. %27 or / i.e %2F, the WAF bypasses these encoded characters. I hope that this device should have a capability to detect the pattern which is associated with Xss or Xsrf, rather then by not blocking the request which contains any special characters.
PranjalGargava - PeerSpot reviewer
May 5, 2023
Helps with vulnerability scanning and understanding of cyber security controls
We use the solution for vulnerability and policy scan.  The product has helped us understand cybersecurity controls.  I am impressed with the VMDR feature.  The tool needs to improve the adding assets and report generation features. I would like to see the policy scan of offline appliances in…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Scalability is pretty easy on the base platform. You just add another, and you're ready to go."
"Its unique interface for managing security performance and ease of use are the most valuable features of this solution."
"The technical support is excellent."
"The complete solution is valuable for everything it delivers and the protection it offers."
"They're quite easy to install and quite easy to set up. Clients really like that. Especially when you're dealing with the cloud, it's really easy."
"Incapsula takes care of the CDN infrastructure and bandwidth volume, providing several enterprise "load balancing" features."
"There is no need to have an appliance in house for the services because it is on the cloud."
"It's very pretty easy to onboard the URL."
"The most valuable features of Qualys VM are its ability to do proper vulnerability assessment. It has a lot of updates for all the vulnerability databases from all over the globe. It's an amazing solution when it comes to the versatility of the features it has. Additionally, the reports are very good. It generates very detailed reports about the vulnerabilities inside the environment"
"Qualys has a continuous endpoint monitoring feature for agent-based scanning. Once you deploy the solution, it monitors everything that is happening every 30 minutes. Then, if there are any vulnerabilities, they are reported."
"Qualys VM has allowed us to know the vulnerabilities we need to prioritize based on the threat levels and the possible impact if there's an intrusion."
"Performs automated, regular scans in the network."
"We also like the flexibility in their licensing."
"This is one of the best products I have worked with so far. I like the power of Qualys, and it's a better solution because you can scan a compact file, a BIT file, or batch files. The product already knows what's happening inside, and you don't need to expand the package. Tenable will do the same thing, but you need to have a package issuance claim. With Qualys, we can immediately understand the file, even a compact file. If there's some kind of discovery or incident, you will know what happened in the environment."
"I am impressed with the VMDR feature."
"Qualys VM had a recent upgrade and the newer version is supporting the cloud."
 

Cons

"I would like to have support for SSL management and secure DNS."
"Some maintenance must be performed by our IT team."
"Imperva now offers add-ons to add functionality, but I would like to see these included in the product, even if it would cost more."
"Certificate management could be improved."
"A limited tool if you're looking to customize."
"The rules surrounding the making of web applications could be improved."
"It's quite expensive."
"We would like them to hire people in Sweden because it's quite hard when people are sitting in the UK or Belgium because some of the customers really want them to be local."
"What we have found is that the solution is not closely tied with the patch management. It is okay with newer ones, like Windows 10 machines; it gives the correct patch. But for Windows 7 or Windows Server 2008, it does not give us the correct patch so we have to manually identify the patches. This is a major problem."
"Improve the API speed."
"The reporting and the GUI need improvements."
"I would like to see this solution simplified to work more easily in a multi-cloud environment."
"It's too early for me to say if there is any room for improvement since we're in the first couple of months of using this solution."
"Qualys VM's machine learning and artificial intelligence features could be improved."
"We are moving away from Qualys to Defender ATP because I find that Defender ATP is much better at prioritizing the vulnerabilities that I should be looking at."
"Integration could be better. When you think about scanning, it's not used just with this product alone but with other Qualys products. If you think about the bundle, the product itself is good. But integration with other products and packages has space for improvement. They should also offer a better price for bundles."
 

Pricing and Cost Advice

"Varies depending on the needs of the customer."
"On a scale from one to ten, where one is cheap and ten is expensive, I rate the solution's pricing a five out of ten."
"The cost is somewhere around $10,000 a site. For every site, you pay individually. For every DNS entry, you have you pay."
"Pricing could be more competitive."
"​Although the pricing can be a little high, it is worth the protection and security that it offers.​"
"It is not expensive compared to the other similar solutions in this category."
"There is a license or subscription renewal that our customers pay."
"It is expensive."
"Qualys VM is reasonably priced."
"There is a license for the use of this solution. We pay annually instead of monthly to receive a better discount on the price."
"We have an annual contract for Qualys VMDR. I believe it's for either two years or five years."
"The pricing and licensing for Qualys could be improved."
"An annual license for a single scanner costs around $3,000."
"It is a high cost product. Compared to the other solutions, it is around 15 to 20% higher in cost."
"The tool's pricing is expensive and I would rate the pricing a seven out of ten."
"The solution is costly."
report
Use our free recommendation engine to learn which Distributed Denial of Service (DDOS) Protection solutions are best for your needs.
787,061 professionals have used our research since 2012.
 

Comparison Review

it_user68487 - PeerSpot reviewer
Nov 6, 2013
CloudFlare vs Incapsula: Web Application Firewall
CloudFlare vs Incapsula: Round 2 Web Application Firewall Comparative Penetration Testing Analysis Report v1.0 Summary This document contains the results of a second comparative penetration test conducted by a team of security specialists at Zero Science Lab against two cloud-based Web…
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Financial Services Firm
16%
Manufacturing Company
7%
Comms Service Provider
6%
Educational Organization
33%
Computer Software Company
11%
Financial Services Firm
11%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Imperva Incapsula?
We use Imperva DDoS to stop DDoS attacks and reduce the amount of unwanted queries against web services or web scraping.
What is your experience regarding pricing and costs for Imperva Incapsula?
The solution is very affordable. It's based on the traffic utilization, the average traffic utilization, not the DDoS traffic. Therefore, if you're being DDoSed, you don't pay extra for the absorpt...
What needs improvement with Imperva Incapsula?
It’s hard to think of an improvement. The three-second service level agreement is already better than the competition. You would ordinarily say something like API protection. However, they've got t...
What is your primary use case for Qualys VM?
Qualys VM is used for vulnerability scans for the internet and applications using application exchange. There are many applications. We also use the solution for asset management per team, and the ...
What do you like most about Qualys VMDR?
I like that we have many scanners and channels that don't overload. It helps us scan and track easily. Also, the tagging system is good for tagging. We can still use QualysAgent task ID tools even ...
What is your experience regarding pricing and costs for Qualys VMDR?
We have an annual contract for Qualys VMDR. I believe it's for either two years or five years.
 

Also Known As

Imperva Incapsula
Qualys VM, QualysGuard VM, Qualys Asset Inventory, Qualys Container Security, Qualys Virtual Scanner Appliance
 

Learn More

 

Overview

 

Sample Customers

Hitachi, BNZ, Bitstamp, Moz, InnoGames, BTCChina, Wix, LivePerson, Zillow and more.
Agrokor Group, American Specialty Health, American State Bank, Arval, Life:), Axway, Bank of the West, Blueport Commerce, BSkyB, Brinks, CaixaBank, Cartagena, Catholic Health System, CEC Bank, Cegedim, CIGNA, Clickability, Colby-Sawyer College, Commercial Bank of Dubai, University of Utah, eBay Inc., ING Singapore, National Theatre, OTP Bank, Sodexo, WebEx
Find out what your peers are saying about Cloudflare, NETSCOUT, Akamai and others in Distributed Denial of Service (DDOS) Protection. Updated: May 2024.
787,061 professionals have used our research since 2012.