Try our new research platform with insights from 80,000+ expert users

Check Point CloudGuard CNAPP vs Tenable Nessus comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Zafran Security
Sponsored
Ranking in Vulnerability Management
27th
Average Rating
9.6
Reviews Sentiment
8.1
Number of Reviews
3
Ranking in other categories
Continuous Threat Exposure Management (CTEM) (6th)
Check Point CloudGuard CNAPP
Ranking in Vulnerability Management
9th
Average Rating
8.6
Reviews Sentiment
7.4
Number of Reviews
71
Ranking in other categories
Cloud and Data Center Security (9th), Container Security (7th), Cloud Workload Protection Platforms (CWPP) (6th), Cloud Security Posture Management (CSPM) (5th), Cloud-Native Application Protection Platforms (CNAPP) (5th), Data Security Posture Management (DSPM) (4th), Compliance Management (6th)
Tenable Nessus
Ranking in Vulnerability Management
3rd
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
81
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2025, in the Vulnerability Management category, the mindshare of Zafran Security is 0.4%. The mindshare of Check Point CloudGuard CNAPP is 1.6%, up from 1.3% compared to the previous year. The mindshare of Tenable Nessus is 10.2%, down from 13.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Vulnerability Management
 

Featured Reviews

Israel Cavazos Landini - PeerSpot reviewer
Weekly insights and risk analysis facilitate informed security decisions
I appreciate the weekly insights Zafran provides, which include critical topics for networks and IT security, allowing us to evaluate which insights apply to our environment. The organization score feature is valuable to keep the leadership team updated on how our infrastructure fares security-wise. The applicable risk level versus base risk level feature is beneficial because prior to Zafran, we only used the base risk level, but now understand that risk depends on the asset itself. Zafran is an excellent tool.
Bart Coddens - PeerSpot reviewer
Evolved cloud security with active monitoring but needs interface consistency
The user interface needs work. Sometimes, it is a transition from the old tool to the new CNAPP Two that I currently have, and remnants of the old environment can still be detected. I require consistency in the user interface to ensure everything is streamlined into the same look and feel. More work is needed in fine-tuning the threat data towards your CSPM and activity logs, aligning them with business intelligence, which requires a cohesive console interface. My assessment of CloudGuard CDRs in intrusion detection and threat hunting capabilities is that it still needs some work. All the threat data that comes in, you need to fine tune it a bit.
HarshBhardiya - PeerSpot reviewer
Provided increased visibility across the organization's servers
The user interface of Tenable Nessus feels outdated and could be more user-friendly. Additionally, the documentation is not well-organized, which can be confusing when searching for solutions or specific information related to Tenable Nessus Professional. The reporting feature could be improved by allowing users to create their own templates instead of relying on predefined ones.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Zafran has become an indispensable tool in our cybersecurity arsenal."
"Zafran is an excellent tool."
"We are able to see the real risk of a vulnerability on our environment with our security tools."
"The feature that I value the most about Check Point CloudGuard CNAPP is the possibility of checking compliance with different standards. This compliance check can be performed for each subscription or service that we have on all the different cloud providers that we use."
"The dashboard is intuitive. You know if you're compliant or not, and then it gives you a remediation plan."
"I value the comfort and the ability to receive proper insights almost hands-off."
"CloudGuard's best feature is real-time detection. We can detect incidents and vulnerabilities in our code with one click."
"Check Point CloudGuard CNAPP's initial configuration is very easy. It is plug-and-play. It also gives regular updates."
"Assets Management as it provide complete visibility of our workload inkling EC2 instance or Serverless"
"The rulesets and the findings are valuable. The actual core functionality of it and the efficacy of events are great."
"The most valuable features of CloudGuard CNAPP are its compliance engine and auto-remediation features."
"I have found the vulnerability assessment and the reports to be useful."
"I like its ease of use. It has the script that is pre-built in it, and you just got to know which ones you're looking for."
"Scanners and reports using CIS templates ("de-facto" standard, easy to fix and to locate correction tips at documentation), tests against cloud providers, database profiles, several types of telecom devices, and others highly customizable scans."
"Tenable Nessus streamlines the process of scanning for our organization."
"The most valuable feature of Tenable Nessus is vulnerability assessments. There are a lot of threats around the world and this solution is the first to come out with detection rules."
"The most valuable feature of Tenable Nessus is vulnerability detection."
"It's scalable."
"It also has an executive report where you don't have to provide the client all the detail for them to sift though. But if they wish to dig through the detail they can."
 

Cons

"Initially, we were somewhat concerned about the scalability of Zafran due to our large asset count and the substantial amount of information we needed to process."
"The software configurations theory is complicated, and without proper planning and a well-skilled technical team, it cannot perform its tasks properly."
"We were demotivated by the lack of native automation modules for the Terraform and Ansible tools."
"Currently, this solution is somewhat expensive."
"I don't have any notes for improvements."
"We want to be able to customize the solution more in order to meet the needs of our company."
"Compliance checks on cloud resources against various industry standards and compliance framework templates need to be improved."
"The user interface needs work. Sometimes, it is a transition from the old tool to the new CNAPP Two that I currently have, and remnants of the old environment can still be detected."
"The price of this solution should be reduced so that it is more affordable to scale."
"The features are limited when it comes to scanning network devices for vulnerabilities."
"In terms of what could be improved, I would say its reporting portion."
"I would like to see an improvement in the ranking of high, medium and low vulnerability."
"The product could have unique features similar to one of its competitors."
"Tenable Nessus is not feasible for a large company."
"The user interface of Tenable Nessus feels outdated and could be more user-friendly."
"The accuracy of the vulnerability assessment is not up to par yet, as false alarms and false positives occur often."
"Multiple steps to create an actionable plan will be a great addition to Nessus."
 

Pricing and Cost Advice

Information not available
"CloudGuard is fairly priced."
"From a pricing perspective, they are pretty expensive."
"The license fee is high."
"We have the enterprise-level license and we renew it annually because it is worth the cost."
"Everything in this field is very expensive."
"Right now, we have licenses on 500 machines, and they are not cheap."
"I would advise taking into account the existing number of devices and add a forecast of the number of devices to be added in the coming year or two, to obtain better pricing."
"The license for CloudGuard Posture Management is about $80 a year, and it's based on your cloud footprint, not the number of users. So you could have a million users, and it doesn't matter."
"The solution is expensive."
"Nessus is affordable, but its licensing model could be improved with more flexibility for adding assets."
"The price is reasonable."
"The product pricing is dynamic and varies based on the specific needs of each project and customer."
"Nessus Manager is not an expensive product. It has its limitations, but the pricing reflects that. We have a yearly subscription."
"Cost-wise, it's an affordable tool."
"The solution has free options."
"I rate the product's price seven or eight on a scale of one to ten, where one is low price and ten is high price."
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
849,600 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Financial Services Firm
11%
Manufacturing Company
7%
Retailer
6%
Computer Software Company
15%
Financial Services Firm
14%
Manufacturing Company
8%
University
6%
Educational Organization
37%
Computer Software Company
9%
Financial Services Firm
7%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for Zafran Security?
I find that the pricing for Zafran aligns well with the comprehensive features it offers. The asset and user-based li...
What needs improvement with Zafran Security?
Zafran is a new startup. Features are continuously being added or improved. 1) Continued integrations with existing (...
What is your primary use case for Zafran Security?
We connect this to our vulnerability scanner as input, our security tools to better determine risk, and our change ma...
How would you choose between Rapid7 InsightVM and Tenable Nessus?
You have full visibility across cloud, network, virtual, and containerized infrastructures with Rapid7 Insight VM. Yo...
What's the difference between Tenable Nessus and Tenable.io Vulnerability Management?
Tenable Nessus is a vulnerability assessment solution that is both easy to deploy and easy to manage. The design of ...
What do you like most about Tenable Nessus?
We have around 500 virtual machines. Therefore, we conduct monthly scans and open tickets for our developers to addre...
 

Also Known As

No data available
Check Point CloudGuard Posture Management, Dome9, Check Point CloudGuard Workload Protection, Check Point CloudGuard Intelligence
No data available
 

Overview

 

Sample Customers

Information Not Available
Symantec, Citrix, Car and Driver, Virgin, Cloud Technology Partners
Bitbrains, Tesla, Just Eat, Crosskey Banking Solutions, Covenant Health, Youngstown State University
Find out what your peers are saying about Check Point CloudGuard CNAPP vs. Tenable Nessus and other solutions. Updated: April 2025.
849,600 professionals have used our research since 2012.