Try our new research platform with insights from 80,000+ expert users

Microsoft Defender Vulnerability Management vs Rapid7 InsightVM comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 6, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Defender Vulnerab...
Ranking in Risk-Based Vulnerability Management
6th
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
7
Ranking in other categories
Vulnerability Management (17th), Advanced Threat Protection (ATP) (21st), Microsoft Security Suite (25th)
Rapid7 InsightVM
Ranking in Risk-Based Vulnerability Management
4th
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
61
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of January 2025, in the Risk-Based Vulnerability Management category, the mindshare of Microsoft Defender Vulnerability Management is 8.5%, up from 4.2% compared to the previous year. The mindshare of Rapid7 InsightVM is 20.7%, up from 15.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Risk-Based Vulnerability Management
 

Featured Reviews

René-SylvainBédard - PeerSpot reviewer
The vulnerability assessment is very accurate because it runs directly into the vulnerability database
I have three years of experience with Microsoft Defender and Office 365 for eleven years. My company operates as a shop for Microsoft products, and we have always stayed with Microsoft. We intend to displace the competition when my company enters a new client environment. I have dealt with customers who were using Carbon Black and SentinelOne. My company's customers switched work from their previous products to Microsoft because the tools they were using were power-hungry solutions, which had an impact on production. Microsoft Office 365's premium licenses have many built-in services, which our customers used to use from some other products. With Microsoft products, there is no need for our company's customers to pay extra for licensing charges. The major difference between Carbon Black and Microsoft Defender Vulnerability Management revolves around areas like stability and integration capabilities within the operating systems, which are strong in Microsoft, especially compared to any of its competitors. The actual depth of knowledge that the platform offers is good because Microsoft has been very rigorous in documenting every single vulnerability that exists for its platform. Microsoft has the most complete list of vulnerabilities for its platform.
Shakeel Ahmad - PeerSpot reviewer
Brilliant audit report and scorecard but scans often get blocked by firewalls
The solution cannot scan third-party tools that have firewalls within them. The firewalls detect and block the solution. Conversely, Nexus is able to bypass firewalls because it has low detectability. We use Nexus when the solution cannot bypass a firewall. The solution can scan 60% of the time but Nexus can scan 90% of the time. The solution needs to improve its vulnerability design to include CVC results. Nexus has a good, long range and a good database for finding CVC numbers. We need this level of security detail but the solution does not seem to provide it.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"One valuable feature is the Microsoft Security Scorecard."
"The product’s most valuable features are compliance, recommendations, and inventories."
"The solution is up-to-date and helps prevent zero-day attacks."
"The recommendations, scores, and steps to remediate actions are highly useful."
"The most valuable aspect is the kind of assessment results I get, and the recommendations provided in Microsoft products really help in taking care of the resources."
"The product's stability is very high...The scalability of the product is amazing."
"The solution helps identify threats and vulnerabilities."
"The solution is highly scalable."
"The ease of deployment and configuration allows users to onboard quickly."
"The main functionality of identifying item endpoints that weren't properly patched or had vulnerabilities is the solution's most valuable feature."
"There are many integrations with things like the VMware NSX that are great, the reporting is really solid."
"It is stable and scalable."
"We are very satisfied with the reports, as they provide us with the information that is required for our management."
"It's very scalable."
"I like Rapid7's scan optimization options."
"Rapid7 InsightVM has given us a practical view of the vulnerabilities present in our organization."
 

Cons

"The general support could be improved."
"The setup phase of the product is not that easy and needs a person to have a certain level of expertise."
"Integration can be improved."
"It is challenging to extract and customize reports from the system."
"The automated remediations can be more specific."
"The technical support takes too much time to resolve tickets."
"The constant changes in the product configuration or the console setup can sometimes be challenging."
"The product's documentation could be enhanced with clearer and more detailed instructions."
"We are a registered reseller and a trusted partner. However, for us to get any support from them I can't log a call directly with Rapid7 InsightVM. I have to work with the distributor to log the call for me."
"The drawback is that it is still not a fully SaaS solution, so you must deploy a console."
"It is still not a fully cloud-based solution. It will be helpful for customers if it is a complete cloud solution. It is a hybrid solution at the moment."
"There are not enough templates, and the reporting is weak with this solution."
"The reporting is a little bit tricky because it can be difficult to exactly pinpoint some of the assets to filter them and generate a report."
"The solution could improve by being more secure."
"The integration with other solutions like JIRA could be better. Perhaps there could be some additional updates in the next phase that could integrate with it, so then you can proceed with the VT much easier."
 

Pricing and Cost Advice

"The tool is a bit costly."
"The licensing costs are reasonable."
"The product’s pricing is medium."
"The licensing model follows a per-user per-month structure."
"I rate the product's price a three on a scale of one to ten, where one is a low price, and ten is a high price."
"The license is annual and this is the optimal approach when it comes to most software."
"This solution is expensive, but it's fine for us as we have an open budget for security solutions. Protection and having the system secured is more important."
"In some cases, we procure the licenses. In some cases, the customers directly buy the license from Rapid7."
"The solution's pricing is better than Nexus which charges a high amount for very little use."
"It is less expensive compared to other competitors."
"Our licensing costs are somewhere around $40,000 annually. There are no additional fees."
"Pricing is reasonable because we pay according to asset usage. We can define our assets and sites according to our preference."
"It is pretty expensive. It depends on what you consider pricey, however, if you only look at vulnerability management solutions, such as within VM or VMDR, there are, I suppose the prices are almost the same. But I believe you will discover that for yourself."
report
Use our free recommendation engine to learn which Risk-Based Vulnerability Management solutions are best for your needs.
831,158 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Financial Services Firm
13%
Government
9%
Manufacturing Company
7%
Educational Organization
42%
Computer Software Company
10%
Financial Services Firm
7%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What is your experience regarding pricing and costs for Microsoft Defender Vulnerability Management?
We are aware of the pricing for some parts that we are using. Microsoft documentation helps figure out pricing and other aspects. Overall, every organization wishes for cheaper options, but we look...
What needs improvement with Microsoft Defender Vulnerability Management?
The automated remediations can be more specific. However, the score and recommendation aspects are good. Currently, I do not see any significant challenges.
How would you choose between Rapid7 InsightVM and Tenable Nessus?
You have full visibility across cloud, network, virtual, and containerized infrastructures with Rapid7 Insight VM. You can easily prioritize vulnerabilities using attacker analytics. Overall, Rapid...
What do you like most about Rapid7 InsightVM?
The product's initial setup phase was very easy.
What is your experience regarding pricing and costs for Rapid7 InsightVM?
Rapid7 InsightVM is expensive, possibly one of the highest in pricing among similar products.
 

Also Known As

No data available
InsightVM, NeXpose
 

Learn More

 

Overview

 

Sample Customers

Information Not Available
ACS, Acosta, AllianceData, amazon.com, biogen idec, CBRE, CATERPILLAR, Deloitte, COACH, GameStop, IBM
Find out what your peers are saying about Microsoft Defender Vulnerability Management vs. Rapid7 InsightVM and other solutions. Updated: December 2024.
831,158 professionals have used our research since 2012.