Try our new research platform with insights from 80,000+ expert users

NAVEX One vs Rapid7 InsightVM comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

NAVEX One
Average Rating
7.0
Reviews Sentiment
7.3
Number of Reviews
1
Ranking in other categories
GRC (18th), IT Governance (7th), IT Vendor Risk Management (16th)
Rapid7 InsightVM
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
61
Ranking in other categories
Risk-Based Vulnerability Management (4th)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. NAVEX One is designed for GRC and holds a mindshare of 1.2%, down 1.4% compared to last year.
Rapid7 InsightVM, on the other hand, focuses on Risk-Based Vulnerability Management, holds 14.2% mindshare, up 14.0% since last year.
GRC
Risk-Based Vulnerability Management
 

Featured Reviews

EV
Useful for risk assessment and has customization capability
The tool helps us with security incidents, policies, business continuity, disaster recovery, and internal audits. The feature I like the most is its customization capability. It acts like a blank canvas where you can construct forms and workflows according to your needs. You can configure and customize a lot yourself, whether starting from scratch or using some out-of-the-box options. The solution has impacted our operations by helping us manage and prioritize environmental risks. It also assists in establishing ownership of risks and enables us to mitigate or mediate existing risks. Additionally, it facilitates tracking risks throughout their entire lifecycle.
Mahmoud Elhamaymy - PeerSpot reviewer
Reliable scanning and integration strengthen security infrastructure
InsightVM has a very organized GUI with ease of use. The vulnerability scans are reliable, and the credential scan is a beneficial feature. The solution is efficient and trustworthy. It's based on the CVSS risk scoring system, which is well-recognized and effective. The integration capabilities through APIs allow easy integration with existing security infrastructure.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The tool helps us with security incidents, policies, business continuity, disaster recovery, and internal audits. The feature I like the most is its customization capability. It acts like a blank canvas where you can construct forms and workflows according to your needs. You can configure and customize a lot yourself, whether starting from scratch or using some out-of-the-box options."
"InsightVM's best features are the vulnerability database and remediation steps."
"The cost is what is most valuable. Compared to the other products on the market, the cost is more palatable."
"One of the most valuable features is it's graphical dashboard feature. It is quite easy to manage the widgets, and we can customize those according to our queries."
"The most valuable features of Rapid7 InsightVM are the accurate level of scanning and the workflows are good."
"The discovery and prioritization of vulnerabilities."
"It is a stable solution."
"When you connect any new device to the network, Rapid7 has the ability to detect the new device immediately. It can scan that device to detect if it has any vulnerability. It tells you what is vulnerable and what has been misconfigured. It also tells you what is the risk of that misconfiguration or lack of patches and how to resolve the problem."
"The solution's user interface is good and has some vulnerability prioritization."
 

Cons

"We think there's room for improvement, especially with customizing NAVEX One. Their development on the roadmap can be slow."
"The reporting could be better."
"There should be containerization within the VM."
"InsightVM could be improved by providing passive scanning as an option."
"In order to be able to properly test the solution and make a decision, I would like to receive the test license code instantly and eliminate the wait time."
"The drawback is that it is still not a fully SaaS solution, so you must deploy a console."
"The InsightVM cannot scan if we connect to our customer by the VPN."
"There is room for improvement on its cloud side. In the next release I would like to see better reporting."
"We have some issues with how it scans patches."
 

Pricing and Cost Advice

"NAVEX One's pricing comes in the middle range when compared to other products."
"The solution's pricing is better than Nexus which charges a high amount for very little use."
"In some cases, we procure the licenses. In some cases, the customers directly buy the license from Rapid7."
"The product is cheaper than the other similar tools available in the market."
"It is pretty expensive. It depends on what you consider pricey, however, if you only look at vulnerability management solutions, such as within VM or VMDR, there are, I suppose the prices are almost the same. But I believe you will discover that for yourself."
"The licensing is asset-based and very straightforward."
"We purchase annual licenses."
"I do not have experience with the pricing of the solution."
"The solution is a bit more reasonably priced than other products."
report
Use our free recommendation engine to learn which GRC solutions are best for your needs.
842,388 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Healthcare Company
11%
Computer Software Company
11%
Outsourcing Company
9%
Manufacturing Company
9%
Educational Organization
42%
Computer Software Company
9%
Financial Services Firm
8%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for NAVEX One?
NAVEX One's pricing comes in the middle range when compared to other products.
What needs improvement with NAVEX One?
We think there's room for improvement, especially with customizing NAVEX One. Their development on the roadmap can be slow.
What is your primary use case for NAVEX One?
We use the solution to conduct risk assessments on our environment.
How would you choose between Rapid7 InsightVM and Tenable Nessus?
You have full visibility across cloud, network, virtual, and containerized infrastructures with Rapid7 Insight VM. You can easily prioritize vulnerabilities using attacker analytics. Overall, Rapid...
What do you like most about Rapid7 InsightVM?
The product's initial setup phase was very easy.
What is your experience regarding pricing and costs for Rapid7 InsightVM?
Rapid7 InsightVM is expensive, possibly one of the highest in pricing among similar products.
 

Also Known As

Lockpath Keylight
InsightVM, NeXpose
 

Overview

 

Sample Customers

Claims Recovery Financial Services (CRFS), Surescript, The University of Chicago
ACS, Acosta, AllianceData, amazon.com, biogen idec, CBRE, CATERPILLAR, Deloitte, COACH, GameStop, IBM
Find out what your peers are saying about RSA, OneTrust, AuditBoard and others in GRC. Updated: February 2025.
842,388 professionals have used our research since 2012.