No more typing reviews! Try our Samantha, our new voice AI agent.

Forcepoint CASB vs Qualys VMDR comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
21
Ranking in other categories
Secure Web Gateways (SWG) (5th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), ZTNA as a Service (8th), Secure Access Service Edge (SASE) (8th)
Forcepoint CASB
Average Rating
7.2
Reviews Sentiment
5.6
Number of Reviews
10
Ranking in other categories
Cloud Access Security Brokers (CASB) (16th)
Qualys VMDR
Average Rating
8.4
Reviews Sentiment
7.0
Number of Reviews
96
Ranking in other categories
IT Asset Management (3rd), Vulnerability Management (3rd), Configuration Management Databases (3rd), Container Security (9th), Risk-Based Vulnerability Management (1st)
 

Mindshare comparison

Cloud Access Security Brokers (CASB) Mindshare Distribution
ProductMindshare (%)
Forcepoint CASB1.4%
Prisma Access by Palo Alto Networks13.7%
Netskope13.7%
Other71.2%
Cloud Access Security Brokers (CASB)
Vulnerability Management Mindshare Distribution
ProductMindshare (%)
Qualys VMDR4.4%
Wiz5.5%
Tenable Nessus4.2%
Other85.9%
Vulnerability Management
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
AlexOgbalu - PeerSpot reviewer
Director at LiveFromSpace Limited
Improving support responsiveness has remained critical while access monitoring and compliance needs have been fully addressed
We have the enterprise licenses for the scanning of the codes, both at runtime and in development, and we also have access to Veracode's e-learning platform as well as a bundle from Veracode.All that has been mentioned is the main benefits Forcepoint CASB provides to us, and it helps us to meet compliance requirements that are necessary in our industry. It's important for enterprises considering Forcepoint to work with very good system integrators and value-added resellers because a lot of things needed go beyond just getting the licenses. You need someone skilled to do all those configurations, write all the rules, and make sure you achieve a very stable environment. I am giving this review an overall rating of eight.
Vaibhav Ghule - PeerSpot reviewer
Soc Lead & Edr Administration at Persistent Systems
Continuous risk-based monitoring has strengthened incident response and vulnerability prioritization
I haven't explored Qualys VMDR's vulnerability lifecycle automation yet. One of my analysts mentioned that queries lack grouping operators in Qualys VMDR. From my experience, I would appreciate improvements in the query options in Qualys VMDR, specifically in the query-building process where I would need more features and operators. Additionally, we have been facing issues with Qualys on the cloud level. We cannot download the configuration profile from the cloud agent, and it is showing a pending action for download. During 2025, we noticed outages of Qualys a couple of times. I want to mention that there is an issue with receiving timely RCA deliveries. While this is not necessarily about the tool, it relates to support. The support has not been very responsive, and we are receiving RCAs a little delayed whenever we raise support cases or communicate with the TAMs. Additionally, the UI has a slight latency, which I and my team have experienced. They have also reported this latency issue when navigating through different pages.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"iboss is definitely very good in terms of service."
"iboss is easy to use despite its complexity. Multiple engineers manage it, but it's significantly more straightforward to administer than traditional VPNs and web proxies."
"iboss has significantly lowered the number of security incidents. It is crazy how much it blocks and how much it is aware of the outside danger."
"Granular setup, which was able to set different levels of filters using the OUs in the AD."
"The iboss solution gives me the ability to scan the traffic through all the ports, through all the 131,000 PCP and UDP ports, and with this ability, we have the granularity also for consults over social media and applications on mobile, and this is an advantage that the customers are looking for right now."
"The security aspect of the solution, particularly the malware behind it, is excellent. That's something that really helped us out. It's not just a simple proxy that just blocks the insights of potential threats that come on behind it. They do malware detection and that helps us a lot."
"Iboss is a solution that prevents advanced persistent threats, and has a zero tolerance for attacks."
"This product is solid, fairly easy to use, and reliable."
"As it is based on AWS, it is not a problem."
"Generally, most of our customers are happy with it though."
"Most of the features are valuable, primarily for the firewalls, the proxy, and Forcepoint CASB products."
"Macro integration is a good feature."
"Generally, most of our customers are happy with it though."
"The most valuable aspect for us is the fact that the product seamlessly integrates with the Forcepoint DLP."
"As it is based on AWS, it is not a problem."
"It gives you value for your investment."
"There are fewer false positives when using this solution."
"In a world of the hybrid workforce and work from home, if you're looking for a more effective vulnerability management tool, you have to go to the agent-based vulnerability management tools that are out there, and we've been extremely happy with Qualys."
"They also have threat detection which maps threats. There is a feed that comes from Qualys when a new vulnerability is found. It tells us which machines are infected with that vulnerability."
"It is very easy to use and there are lots of options. We can usually easily go through it and all of the things we want to configure, and we can configure everything to our specifications very easily."
"I find Qualys VM very robust, and it's very useful for vulnerability management and patch management. The value that it brings to my environment is economies of scale. There is no limitation on adding any endpoints. You go by the rule, and it's added once another endpoint is added to our environment. It's automatically installed, and it's less work from our end. It frees up my license automatically if I don't need an endpoint or if my machine is decommissioned. I like the dashboard displays because I don't see any duplication. The most important part is vulnerability management and prioritization. Unlike Symantec, it shows the kind of vulnerability I would want to patch first. It provides a holistic view of the kind of vulnerabilities and the ones I should remediate first. I don't have to do a scan; it just brings up those critical kinds of vulnerabilities like zero-day vulnerabilities and tells me to prioritize them. You have to prioritize these vulnerabilities first and go on with the rest. The dashboard shows me the ones that have been fixed, so I don't have to complete an aging report. The user experience and the graphical interface are good. As it's user-friendly and understandable on an executive level, it brings real value. We also use this solution because it's robust and flexibile."
"I find the solution's dashboard interesting...The response time is fine. You can pull up reports without dragging or consuming bandwidth."
"The best features of Qualys VMDR are its patch management capabilities and the ability to mitigate vulnerabilities automatically."
"I like Qualys because it is a very complete product, more so than Tenable."
 

Cons

"I have heard they are doing DDoS filtering, but I am not certain if they are implementing it correctly."
"The dashboards for local use could be better."
"Its pricing could be better."
"The solution could be stronger on the integration side and offer more cloud applications like G Suite or Oracle."
"To scale up, a new iboss Node Blade Chassis must be purchased."
"Our biggest problem with their service was it did not recognize the device and filtering did not always work correctly."
"The area I would like to see improvement in is the ability within the reporter to navigate directly to the content the user is traversing."
"Our iboss subscription access should be more secure with an OTP or VPN etc. It is easy to gain access if, for example, hackers obtain my username and password."
"Lacks different ways to authenticate users."
"When using the Forcepoint CASB, and you are a remote worker, basically not in the office, you have to have an agent on your computer, a Forcepoint agent. However, with many other CASB solutions, they can integrate with MDM."
"Forcepoint removed the ability to scan for unsanctioned applications on the CASB."
"Integration is an area of the solution that needs to be improved."
"It could be more robust, especially around custom applications."
"The solution needs to be easier to install, and they need to clean up the backend, so stuff doesn't break."
"We are not happy with the solution."
"Forcepoint CASB is mature and performing its function, but it is not easy to manage and not as fully-featured as competitors."
"Qualys VM's machine learning and artificial intelligence features could be improved."
"Qualys VM's vulnerability scan could be improved, especially the number of CVE numbers it can manage at a time."
"It would be nice to have an all-in-one solution that was automated and could handle the scanning and reports as well as the patching and updating."
"It is a struggle to be able to pull our report and to be able to do onboarding using automated tools."
"Streamline PCI integration and attestation."
"There's a need to upgrade or fix the potential vulnerability rate. Around 20,000 potential vulnerabilities were showing in Qualys VMDR, but none of the other tools showed them. When we checked, it wasn't the case. Support explained that even small issues were being counted as vulnerabilities, causing issues in our audit. So, the security features could be improved to identify vulnerabilities accurately."
"It's quite complex in the way it is set up, so it takes a fair bit of time in order to get your head around it in order to deploy it."
"It's quite complex on the way it is set up, so it takes a fair bit of time in order to get your head around it in order to deploy it. Once you've deployed it, then you're never confident on the versions of the browsers and the SSL certificates, etc. You have to always go back into Qualys and check."
 

Pricing and Cost Advice

"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is expensive compared to one of its competitors."
"The overall pricing for iboss is very competitive and transparent."
"It is probably in line with other solutions, but I do not deal with the financial side."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"The pricing really depends on the size of the customer's business because it is price-relevant to the environment."
"The solution is not that expensive compared to Zscaler. Netskope is between Forcepoint CASB and Zscaler in terms of cost. Forcepoint CASB would be the first choice because it negotiates well and offers a perpetual license, though it may seem subscription-based. I rate its pricing a six out of ten."
"Qualys is a pay-as-you-go model, so there's flexibility to the pricing."
"There is a license for the use of this solution. We pay annually instead of monthly to receive a better discount on the price."
"The tool's pricing is expensive and I would rate the pricing a seven out of ten."
"I used to work there, so I never paid for the product. As an employee, we get a lifetime license for personal use, and that's what I'm using. It is a comprehensive platform, so there is a lot more to it. There could be other solutions that are probably a little bit cheaper, but it depends on what people need. Different people have different needs. It offers many things on the same platform. If you add all the things up, it should be cheaper, but I have not done any analysis specifically."
"Qualys is cheaper and more affordable than other solutions."
"The license is on a yearly basis."
"They have recently changed the pricing model, which is now better than it was before."
"The solution is costly."
report
Use our free recommendation engine to learn which Cloud Access Security Brokers (CASB) solutions are best for your needs.
890,071 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Computer Software Company
9%
Manufacturing Company
9%
Construction Company
7%
Manufacturing Company
14%
Comms Service Provider
8%
Computer Software Company
8%
Outsourcing Company
8%
Financial Services Firm
15%
Computer Software Company
8%
Manufacturing Company
7%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise7
Large Enterprise8
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise2
Large Enterprise3
By reviewers
Company SizeCount
Small Business20
Midsize Enterprise12
Large Enterprise70
 

Questions from the Community

What needs improvement with iboss?
iboss can increase security in cyberspace. I have heard they are doing DDoS filtering, but I am not certain if they a...
What is your primary use case for iboss?
I use iboss for corporate VPN and all the corporate VRF, with basically all user traffic proxying to the internet.
What is your experience regarding pricing and costs for iboss?
Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern. There are cheaper alte...
What is your experience regarding pricing and costs for Forcepoint CASB?
I would put the pricing of Forcepoint CASB at a five, closer to a four. I don't think it's very expensive, but it's a...
What needs improvement with Forcepoint CASB?
From a functionality perspective, I don't have any recommendations, but in terms of support, the speed of support is ...
What is your primary use case for Forcepoint CASB?
Forcepoint CASB ensures that access to cloud applications is properly vetted and monitored. We have a lot of remote a...
What do you like most about Qualys VMDR?
I like that we have many scanners and channels that don't overload. It helps us scan and track easily. Also, the tagg...
What is your experience regarding pricing and costs for Qualys VMDR?
My experience with pricing, setup cost, and licensing shows that we can consider both time and money saved.
What needs improvement with Qualys VMDR?
I haven't explored Qualys VMDR's vulnerability lifecycle automation yet. One of my analysts mentioned that queries la...
 

Also Known As

iBoss Cloud Platform
Imperva Skyfence
Qualys VM, QualysGuard VM, Qualys Asset Inventory, Qualys Container Security
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Zions Bank, GE Healthcare, HomeAway, Logitech, Universal, California National Resources Agency and many mor
Agrokor Group, American Specialty Health, American State Bank, Arval, Life:), Axway, Bank of the West, Blueport Commerce, BSkyB, Brinks, CaixaBank, Cartagena, Catholic Health System, CEC Bank, Cegedim, CIGNA, Clickability, Colby-Sawyer College, Commercial Bank of Dubai, University of Utah, eBay Inc., ING Singapore, National Theatre, OTP Bank, Sodexo, WebEx
Find out what your peers are saying about Palo Alto Networks, Cisco, Netskope and others in Cloud Access Security Brokers (CASB). Updated: March 2026.
890,071 professionals have used our research since 2012.