Try our new research platform with insights from 80,000+ expert users

Lacework FortiCNAPP vs Qualys VMDR comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 12, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
7.9
SentinelOne enhances vulnerability management, boosts productivity, reduces costs, and improves detection for a 25-30% ROI.
Sentiment score
6.9
Lacework FortiCNAPP enhances ROI by automating monitoring, integrating with Jira, reducing personnel needs, and improving security management.
Sentiment score
7.1
Qualys VMDR enhances security by detecting vulnerabilities, improving asset management, reducing breaches, and offering 30% time-cost savings.
The detailed information PingSafe gives about how to fix vulnerabilities reduces the time spent on remediation by about 70 to 80 percent.
After implementing SentinelOne, it takes about five to seven minutes.
Our ability to get in and review our vulnerability stance, whether daily, monthly, weekly, or whatever it might be, has drastically improved over our prior provider.
We saw a return on investment through significant savings in time, money, and resources.
 

Customer Service

Sentiment score
7.6
SentinelOne's Cloud Security support is praised for expertise and reliability, despite occasional slow responses and varied agent quality.
Sentiment score
7.8
Lacework FortiCNAPP's customer service is valued for proactive communication, Slack integration, and reliable technical support despite occasional delays.
Sentiment score
6.7
Qualys VMDR's customer service is responsive and efficient, though some users report delays in response speed and troubleshooting.
When we send an email, they respond quickly and proactively provide solutions.
They took direct responsibility for the system and could solve queries quickly.
Having a reliable team ready and willing to assist with any issues is essential.
The response time takes a while.
The technical support provided by Qualys is pretty good.
When reaching out via email, they reply quickly.
 

Scalability Issues

Sentiment score
8.1
SentinelOne Singularity Cloud Security is highly scalable and flexible, efficiently managing environments without server concerns, rated highly by users.
Sentiment score
8.0
Lacework FortiCNAPP is praised for scalability, adaptable across various environments, with minor licensing challenges noted by users.
Sentiment score
8.0
Qualys VMDR offers scalable, flexible cloud-based architecture, praised for efficiency despite potential cost increases with higher usage.
As soon as we need to add somebody, we just add them to NinjaOne, and then we have a script set up where it automatically deploys and adds them to whichever group we need.
I would rate it a 10 out of 10 for scalability.
Scalability is no longer a concern because Cloud Native Security is a fully cloud-based resource.
Scalability depends on the license and the number of assets being monitored.
Qualys VMDR can handle scalability, although increasing the inventory can raise the licensing costs.
 

Stability Issues

Sentiment score
8.3
SentinelOne Singularity Cloud Security is reliable with high ratings, minor issues, and effective AWS interoperability, outperforming previous solutions.
Sentiment score
7.4
Lacework FortiCNAPP demonstrates stable performance with minimal issues and rare non-disruptive delays, fostering user confidence in its capabilities.
Sentiment score
8.0
Qualys VMDR is praised for stability and reliability, efficiently managing large scans with minor issues quickly resolved.
In my experience, there has been 100 percent uptime.
SentinelOne Singularity Cloud is incredibly reliable.
The cloud console is very resilient.
 

Room For Improvement

SentinelOne needs better search, cost management, enhanced firewall, improved logging, third-party integration, and legacy system compatibility.
Lacework FortiCNAPP enhancements focus on visibility, IAM controls, usability, integration, and granularity in alert management and reporting.
Qualys VMDR needs better reporting, UI, integration, asset management, reduced false positives, faster support, and enhanced features.
If I had to ask for anything to make it easier, it would be signed images that are GPG signed and a public repository where we can get the bits from.
If they can merge Kubernetes Security with other modules related to Kubernetes, that would help us to get more modules in the current subscription.
As organizations move to the cloud, a cloud posture management tool that offers complete cloud visibility becomes crucial for maintaining compliance.
It does not automate patching unless the patch management module is purchased separately.
If AI features were integrated, it could enhance the capabilities significantly.
The response time of technical support takes a while.
 

Setup Cost

SentinelOne Singularity Cloud Security offers flexible pricing, perceived affordable for enterprises but potentially costly for smaller businesses.
Lacework FortiCNAPP offers stable, competitive pricing, starting at $80,000 annually, with a unique, refined licensing structure.
Qualys VMDR pricing is higher, flexible, and negotiable, with costs based on company size, assets, and features.
With very little negotiation involved, we just let them know what we could pay and they were willing to meet us at slightly above what we paid with Sophos, which was still very fair for what we were looking at.
The price was very, very important to us, and it came down to the price when we were doing our evaluations WatchGuard and SentinelOne.
Covering our 50,000 endpoints would have nearly bankrupted most security programs, even well-funded ones like ours.
I would rate the pricing between seven to eight out of ten.
I have a notion that Qualys might be more expensive than Rapid7.
 

Valuable Features

SentinelOne Singularity Cloud Security enhances efficiency with real-time threat detection, AI-driven responses, and seamless third-party integration for organizations.
Lacework FortiCNAPP excels with ease of use, machine learning anomaly detection, compliance reports, and seamless multi-cloud security integration.
Qualys VMDR excels in vulnerability management with automatic detection, seamless integration, real-time dashboards, and user-friendly deployment features.
The real-time detection and response capabilities of SentinelOne Singularity Cloud impressive because it is a platform that uses artificial intelligence to determine what is normal and what is abnormal and can lock down any virus it may encounter.
We were shown how ransomware can be immediately stopped in real-time. That was huge.
Our previous product took a lot of man hours to manage. Once we got Singularity Cloud Workload Security, it freed up our time to work on other tasks.
Qualys VMDR offers a one-stop solution for monitoring and reporting.
Qualys VMDR provides a real-time response and reporting feature, which is excellent.
I like the automated report generation and vulnerability report generation.
 

Categories and Ranking

SentinelOne Singularity Clo...
Sponsored
Ranking in Vulnerability Management
6th
Ranking in Container Security
3rd
Average Rating
8.6
Reviews Sentiment
7.8
Number of Reviews
103
Ranking in other categories
Cloud and Data Center Security (5th), Cloud Workload Protection Platforms (CWPP) (4th), Cloud Security Posture Management (CSPM) (4th), Cloud-Native Application Protection Platforms (CNAPP) (3rd), Compliance Management (3rd)
Lacework FortiCNAPP
Ranking in Vulnerability Management
16th
Ranking in Container Security
15th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
10
Ranking in other categories
Cloud Workload Protection Platforms (CWPP) (13th), Cloud Security Posture Management (CSPM) (15th), Cloud-Native Application Protection Platforms (CNAPP) (11th), Compliance Management (7th)
Qualys VMDR
Ranking in Vulnerability Management
2nd
Ranking in Container Security
12th
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
92
Ranking in other categories
IT Asset Management (4th), Configuration Management Databases (2nd), Risk-Based Vulnerability Management (3rd)
 

Mindshare comparison

As of January 2025, in the Vulnerability Management category, the mindshare of SentinelOne Singularity Cloud Security is 1.4%, up from 0.3% compared to the previous year. The mindshare of Lacework FortiCNAPP is 1.5%, down from 2.1% compared to the previous year. The mindshare of Qualys VMDR is 11.1%, down from 13.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Vulnerability Management
 

Featured Reviews

Andrew W - PeerSpot reviewer
Tells us about vulnerabilities as well as their impact and helps to focus on real issues
Looking at all the different pieces, it has got everything we need. Some of the pieces we do not even use. For example, we do not have Kubernetes Security. We are not running any K8 clusters, so it is good for us. Overall, we find the solution to be fantastic. There can be additional education components. This may not be truly fair to them because of what the product is going for, but it would be great to see additional education for compliance. It is not a criticism of the tool per se, but anything to help non-development resources understand some of the complexities of the cloud is always appreciated. Any additional educational resources are always helpful for security teams, especially those without a development background.
Carlos Vitrano - PeerSpot reviewer
Provides quick visibility and significantly reduces alerts
Its integrations with third-party SIEMs can be better. That is one of the things that we discussed with them. We have integrations, for instance, with Splunk. The data that we are receiving in Splunk is huge, and it is valid because Lacework has a bunch of data that they can provide to you. However, to be able to import the data and create alerts, we needed to do some work, so integration is one of the things that they can improve. For container security, how they scan images and how they provide results is something that they need to continue improving in terms of visibility. We already have visibility to several artifacts, but they can take that to the next level and see what else they can do. There can be better integrations with CI/CD pipelines. There can be improvements in terms of how we can take action or how we can report from the number of inventories they are providing to us.
Harold Jensen - PeerSpot reviewer
Good visibility but expensive and needs better support
Support: It's often overseas and often following a script, basically asking us to redo what we opened the case with. Multiple APIs: There seems to be a lack of easy onboarding into Qualys. We had to use manual inputs and some API calls to get items in place. Dashboard: It is very rudimentary with very little customization. The Qualys Scripting Language (QSL) works differently in different Qualys modules, so when you get it working in one area you have to modify the syntax in others. User account management: We often have to give users more rights than needed just to give them what they need. Integration with the various Qualys Modules: You can tell the UI is different based on of the different teams that created them. QSL syntax same in all modules Responsiveness of some of the components: They time out, you get a blank screen, etc. Backend updates between the various modules: You update connectors and information takes a few minutes to show in VMDR or Global Asset View Connectors: Connectors have a throttling issue with AWS which causes them to frequently fail unless you manually run them again.
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
831,020 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
19%
Financial Services Firm
15%
Manufacturing Company
9%
Government
5%
Computer Software Company
18%
Financial Services Firm
13%
Manufacturing Company
6%
Retailer
5%
Educational Organization
36%
Computer Software Company
10%
Financial Services Firm
10%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about PingSafe?
The dashboard gives me an overview of all the things happening in the product, making it one of the tool's best featu...
What is your experience regarding pricing and costs for PingSafe?
SentinelOne is relatively cheap. If ten is the most expensive, I would rate it a seven.
What needs improvement with PingSafe?
The areas with room for improvement include the cost, which is higher compared to other security platforms. The dashb...
What do you like most about Lacework?
Polygraph compliance is a valuable feature. In our perspective, it delivers significant benefits. The clarity it offe...
What is your experience regarding pricing and costs for Lacework?
My smaller deployments cost around 200,000 a year, which is probably not as expensive as Wiz.
What needs improvement with Lacework?
The solution lacks a cohesive data model, making extracting the necessary data from the platform challenging. It uses...
What is your primary use case for Qualys VM?
Qualys VM is used for vulnerability scans for the internet and applications using application exchange. There are man...
What do you like most about Qualys VMDR?
I like that we have many scanners and channels that don't overload. It helps us scan and track easily. Also, the tagg...
What is your experience regarding pricing and costs for Qualys VMDR?
For smaller enterprises, the pricing is on the pricier side. However, for larger enterprises, it's considered okay. I...
 

Also Known As

PingSafe
Polygraph, FortiCNP
Qualys VM, QualysGuard VM, Qualys Asset Inventory, Qualys Container Security, Qualys Virtual Scanner Appliance
 

Overview

 

Sample Customers

Information Not Available
J.Crew, AdRoll, Snowflake, VMWare, Iterable, Pure Storage, TrueCar, NerdWallet, and more.
Agrokor Group, American Specialty Health, American State Bank, Arval, Life:), Axway, Bank of the West, Blueport Commerce, BSkyB, Brinks, CaixaBank, Cartagena, Catholic Health System, CEC Bank, Cegedim, CIGNA, Clickability, Colby-Sawyer College, Commercial Bank of Dubai, University of Utah, eBay Inc., ING Singapore, National Theatre, OTP Bank, Sodexo, WebEx
Find out what your peers are saying about Lacework FortiCNAPP vs. Qualys VMDR and other solutions. Updated: January 2025.
831,020 professionals have used our research since 2012.