

BigFix and Qualys Patch Management compete in the patch management domain. BigFix is noted for its comprehensive endpoint management, while Qualys stands out for its integration with security tools.
Features: BigFix offers extensive automation, strong endpoint management, and versatile configurations. Qualys integrates seamlessly with security and compliance tools, provides robust security measures, and ensures efficient patching.
Room for Improvement: BigFix can enhance its reporting capabilities, simplify complex configurations, and improve usability. Qualys needs better scalability, faster patch deployment, and increased performance.
Ease of Deployment and Customer Service: BigFix is powerful but complex in deployment with responsive, though occasionally slow, customer service. Qualys offers smoother, less complex deployment and quick, efficient customer service.
Pricing and ROI: BigFix may have a costly initial setup, but its features justify the long-term ROI. Qualys has more competitive pricing with quicker ROI, aided by efficient patching.
With Qualys, we can save around 70 percent of time and between 30 to 40 percent of money.
We have a 50 percent return on investment due to reduced operational complexity and increased efficiency in patching and detection.
In the past, it took us seven to ten days to close critical patches, but now we manage to address them within forty-eight hours, while high-priority SLAs can often be resolved within seven days.
On a scale from one to ten, with ten being the highest quality, enterprise support provides timely responses, typically within four to eight hours.
Technical support from HCL is satisfactory unless there are customization requirements.
Whenever we need any kind of support, the BigFix team is present and available.
The support team is experienced and responsive.
The support team is responsive and provides detailed information.
Whenever we raise a request and mention the priority of the ticket, they respond immediately via email or call.
It supports approximately two to three hundred thousand endpoints, demonstrating significant scalability capabilities.
BigFix requires some minimum configuration requirements.
It scales efficiently across different machines globally, ensuring patches are deployed smoothly.
Qualys Patch Management is a globally scalable product, easily handling increasing workloads and users.
If a client has purchased licensing for ten thousand assets and exceeds that, Qualys continues to scan those additional assets, which ensures the client's coverage.
I would rate the stability of Qualys Patch Management nine point five out of ten.
The stability of Qualys Patch Management is impeccable.
Overall, it is reliable.
Building a management console is quick and simple, taking only one to two hours for setup.
The problem was related to the hardware configuration and hardware specifications.
In addition to reporting improvements, there should be a feature for application control to allow or disallow certain applications from being executed on endpoints.
There is a limitation where Qualys may not always offer solutions for remediation, particularly for end-of-life or end-of-service applications.
It would be better if Qualys Patch Management identifies whether the process has failed at the first instance and provides a retry button or retry mechanism, allowing retries for failed patches.
For critical options, they could make them red, green for medium, and blue for less significant options.
The pricing is pretty good and now follows a subscription model similar to SolarWinds, making it easier for customers to subscribe and unsubscribe.
I rate the price for BigFix as medium, neither low nor high.
We get many more features at the same price as other solutions such as Microsoft SCCM.
However, it can be a bit expensive sometimes, and I think clients can be shocked when they see the price.
The pricing is reasonable and less expensive than the previous tool.
Patching is the most preferable feature that users choose BigFix for, making it a very important component.
The BigFix features that have proven most effective include inventory, software delivery, software distribution, software catalog, and both software and hardware management.
I use this mainly to capture inventory for IBM products, and as BigFix was part of IBM, it gets easily integrated with IBM solutions.
We leverage this functionality to deploy scripts that adjust registry values, effectively patching vulnerabilities and enhancing the security of our machines.
We have been able to apply workarounds for zero-day vulnerabilities efficiently.
It provides insight into the organization's security posture and keeps databases updated with new CVEs.
| Product | Mindshare (%) |
|---|---|
| Qualys Patch Management | 2.8% |
| BigFix | 4.7% |
| Other | 92.5% |


| Company Size | Count |
|---|---|
| Small Business | 30 |
| Midsize Enterprise | 12 |
| Large Enterprise | 68 |
| Company Size | Count |
|---|---|
| Small Business | 17 |
| Midsize Enterprise | 9 |
| Large Enterprise | 33 |
OVERVIEW:
HCL BigFix is a Unified Endpoint Management (UEM) and automation platform that delivers secure, resilient operations by reducing risk, cost, and operational complexity across on-premises, hybrid, and multi-cloud environments through a centralized control plane.
Built on a single-agent, multi-platform architecture, HCL BigFix unifies infrastructure security, endpoint management, remediation, and digital employee experience automation within a single platform, enabling IT Operations and Security teams to manage more than 155 million endpoints. As AI-driven vulnerability discovery accelerates through frontier models such as Mythos, HCL BigFix helps organizations reduce exposure with near real-time remediation, automated compliance enforcement, and continuous risk reduction. It integrates with leading vulnerability management solutions, including Tenable, Qualys, and Rapid7, and leverages 600,000+ out-of-the-box remediation Fixlets, 50,000+ compliance checks, and a proven >98% first-pass patch success rate to help organizations close the gap between vulnerability detection and remediation.
What are BigFix's key features?
Automated Patch & Vulnerability Remediation: Automates patch deployment and vulnerability remediation across workstations, servers, virtual machines, and cloud workloads using 600,000+ out-of-the-box remediation Fixlets.
Compliance Enforcement: Supports continuous compliance through 50,000+ compliance checks, automated policy enforcement, and prebuilt remediation content.
Enterprise Scalability: Manages and secures more than 155 million endpoints across over 120 operating system variants.
Centralized Endpoint Management: Delivers unified visibility and control across distributed environments through a resilient single-agent architecture.
Digital Employee Experience: Powered by AEX, HCL BigFix's agentic AI platform, enabling proactive monitoring, self-healing workflows, intelligent automation, and natural-language interaction.
What are potential benefits and ROI factors?
Reduced Cyber Risk: Near real-time remediation shortens exposure windows as AI-driven vulnerability discovery compresses exploitation timelines.
Lower Operational Costs: Consolidates endpoint management, security, and automation into a single platform, reducing tool sprawl and administrative overhead.
Operational Resilience: Maintains continuous compliance and policy enforcement across distributed environments.
Improved IT Efficiency: Automates routine endpoint operations and vulnerability remediation, reducing manual effort and accelerating response times.
Higher End-User Productivity: Resolves endpoint issues proactively to minimize disruption and improve employee experience.
Organizations across government, financial services, telecommunications, healthcare, manufacturing, and other regulated industries use BigFix for endpoint management, patching, compliance, software distribution, and vulnerability remediation. Support for standards including SCAP 1.3 and NIAP makes BigFix well suited for highly regulated and public-sector environments.
Qualys Patch Management offers asset visibility, risk-based prioritization, and automation to enhance security. It integrates with VMDR for vulnerability prioritization, ensuring efficient patch deployment and reduced manual effort.
Qualys Patch Management focuses on automating patch deployment and bridging the gap between vulnerability identification and resolution. It supports Windows and Linux servers, providing real-time assessments and comprehensive reporting. The integration with VMDR prioritizes risks efficiently, promoting collaboration between IT and security teams. Organizations benefit from streamlined workflows, improved vulnerability response times, and enhanced remote management.
What are the key features of Qualys Patch Management?In industries like finance and healthcare, Qualys Patch Management is pivotal for maintaining stringent security standards. It helps organizations quickly address vulnerabilities, crucial in sectors that handle sensitive data. The ability to integrate with existing systems ensures minimal disruption and maximizes resource efficiency.
We monitor all Patch Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.