Try our new research platform with insights from 80,000+ expert users

NinjaOne vs Qualys CyberSecurity Asset Management comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 16, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Zafran Security
Sponsored
Average Rating
9.6
Reviews Sentiment
8.1
Number of Reviews
3
Ranking in other categories
Vulnerability Management (27th), Continuous Threat Exposure Management (CTEM) (6th)
NinjaOne
Average Rating
8.2
Reviews Sentiment
7.4
Number of Reviews
18
Ranking in other categories
Network Monitoring Software (30th), Server Monitoring (11th), IT Service Management (ITSM) (6th), Remote Access (20th), Mobile Device Management (MDM) (5th), IT Alerting and Incident Management (10th), Remote Monitoring and Management (RMM) (1st), Patch Management (5th), MSP Backup (4th), Unified Endpoint Management (UEM) (8th)
Qualys CyberSecurity Asset ...
Average Rating
9.2
Reviews Sentiment
7.6
Number of Reviews
21
Ranking in other categories
Vulnerability Management (10th), Patch Management (7th), Cyber Asset Attack Surface Management (CAASM) (2nd), Attack Surface Management (ASM) (4th), Software Supply Chain Security (5th)
 

Featured Reviews

Israel Cavazos Landini - PeerSpot reviewer
Weekly insights and risk analysis facilitate informed security decisions
I appreciate the weekly insights Zafran provides, which include critical topics for networks and IT security, allowing us to evaluate which insights apply to our environment. The organization score feature is valuable to keep the leadership team updated on how our infrastructure fares security-wise. The applicable risk level versus base risk level feature is beneficial because prior to Zafran, we only used the base risk level, but now understand that risk depends on the asset itself. Zafran is an excellent tool.
Jörg Köhler - PeerSpot reviewer
Enhances remote access and integration with third-party tools
I use NinjaOne for managing smaller clients, specifically their devices and software, for small to medium businesses. I provide remote management services through NinjaOne. It allows clients to use NinjaOne for remote access to their computers for home office purposes. This feature is highly…
Revathi VeeraRaghavan - PeerSpot reviewer
Provides comprehensive visibility and covers the complete attack surface
For some of the software, there was no life cycle or general information. We wanted them to give details in the database as and when the software comes. I raised a ticket for that, and after that, they updated the details for more than one million software. They should address the false positives generated in EASM. It is fetching assets that have Infosys as the keyword. They should fix that. When we click on the web application, it only shows potential web assets. The application details are not there. Overall, CSAM has matured a lot. These are the few enhancements that need to be done.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We are able to see the real risk of a vulnerability on our environment with our security tools."
"Zafran is an excellent tool."
"Zafran has become an indispensable tool in our cybersecurity arsenal."
"The tool's most valuable feature is third-party application updates."
"We can use it for remote monitoring, and it also works great as a troubleshooting tool. We are able to open up a command line or a PowerShell session remotely without having to disrupt the user. They have a limited network device monitoring capability, but for workstation servers, we have the event logs. We can do performance monitoring, system changes, software deployment, and patch management. We can also push scripts. It has a very simple web interface. There are no additional things to do there. Security is also pretty good. It does the same things that the other competitor's tools do. One of the advantages of Ninja is that they have a more capable mobile app, which allows you to see the alerts immediately. I get alerted to major critical issues."
"The most important aspect of this tool is the security it provides our company."
"It just works as advertised and serves the purpose for which we got it."
"The policies are probably the most valuable features. They're similar in function to Microsoft group policies where we can have it monitor certain things or push out software on a schedule. I would rate the policies eight out of 10. They're robust, I could monitor most of the things that Windows Performance Monitoring keeps tabs on."
"The solution's most valuable feature is related to its remote access...I know that NinjaOne's technical support is good."
"Good at managing updates and for remote support."
"The most valuable feature we have found currently is probably patch management."
"Qualys CyberSecurity Asset Management offers comprehensive features to cover our entire attack surface."
"My favourite feature of Qualys CyberSecurity Asset Management is its ability to target missing software."
"Qualys CyberSecurity Asset Management offers valuable features such as continuous vendor support, rapid response times, dedicated vendor partnerships, and advanced technical capabilities for risk identification."
"The most valuable feature is the Management sensor, which helps identify gaps in policy agent availability, thereby improving agent utilization."
"Tags are very useful for us since we can tag virus applications in infrastructure types such as databases, operating systems, or web platforms."
"Authorized and unauthorized software visibility is the best feature for me. It helps me understand security controls on our network and where we lack visibility. With a single security tool, we are able to get an extensive list."
"Qualys CSAM is valuable for providing end-of-life and end-of-sale information. It gives me visibility into the number of products or hardware items that are end-of-life."
"I appreciate the feature that simplifies cloud security posture, offering insights into vulnerabilities, and reducing the complexity of managing the security program."
 

Cons

"Initially, we were somewhat concerned about the scalability of Zafran due to our large asset count and the substantial amount of information we needed to process."
"I wish that they integrated it with more antivirus solutions. Currently, they only push Defender, but it doesn't really have integration with SentinelOne. It also didn't integrate with Trend Micro, which we were using previously. I would also like to have more control from the mobile app. As of now, I am able to see some performance values, but I can't see, for example, disk activity or disk performance values. If they can improve their app a little bit, it would help greatly. They can also improve the tech interface. If I assign certain techs to a bunch of specific machines, they only get those alerts that they're assigned to."
"The NinjaOne distribution server is highly dependent on an active directory."
"The network monitoring needs to be improved."
"It can have more integrations with third-party providers, such as Deep Instinct. They do partner with certain antivirus or remote access tool partners, but they can increase their portfolio to have more choices."
"NinjaOne's reporting module is cumbersome."
"The remote connectivity could be better. It works most of the time, but sometimes, there are issues."
"The graphical user interface could be improved."
"The solution could improve by optimizing the internet connection being used."
"Currently, in the EASM module, the scan frequency is limited to once daily, but allowing end users control over scan scheduling would be advantageous."
"One improvement that they can make in the EASM module is the scan frequency. After EASM is configured the first time, it allows you to do the complete configuration, but if you want to reconfigure it, it will not ask or provide any option for scan frequency. For that, you need to raise a case with Qualys and talk to the Qualys team."
"We have had challenges modifying the agent configuration. Particularly, when we want to change the tenant that the agent is pointing to, we have had difficulties making that reliable and working properly."
"In our reporting, we faced a challenge syncing with cloud devices."
"The deployment is somewhat complicated and could be made more user-friendly for most users. It is currently not user-friendly for all users. It is good but can be improved. It is a new product, and they are working on it."
"It is automatically exporting the vulnerabilities and the assets. However, it would be useful to have the ability to select or to filter which we would like to export."
"In my opinion, the area that needs improvement is the role-based access control (RBAC). The access privilege management needs to be more robust and streamlined to enhance user access management."
"There can be further simplification to reduce the overall noise and provide ESAM-related data."
 

Pricing and Cost Advice

Information not available
"NinjaOne's price is fine since my workplace is an educational institution, so we get the product at a really good price considering that we do not pay taxes, making the prices very fair and worth the product."
"NinjaRMM uses a subscription model."
"We currently pay $1.20 per device on a monthly basis."
"Its pricing is great."
"NinjaOne is a little expensive but is still cheaper than competitors like Acronis or Veeam."
"The product's pricing depends on the number of PCs or devices."
"I rate the solution’s pricing a five out of ten, where one is the lowest and ten is the most expensive."
"The pricing is reasonable and cheaper than ConnectWise."
"It is cost-effective because, in a single tool, we are getting everything. All the solutions come in a single license or price."
"The Qualys Cybersecurity Asset Management pricing is well-aligned with our usage."
"The pricing is market-competitive."
"The pricing for Qualys Cybersecurity Asset Management is reasonable, with an annual subscription costing around $1,000 per year or a monthly subscription starting at approximately $72 per month, depending on the specific package and features included."
"Qualys CyberSecurity Asset Management can be expensive, especially if we already have VMDR."
"Though the solution is considered expensive, if bundled with other services such as VMDR or cloud agents, its value would significantly increase. It is currently a bit costly, but with bundling, it could become attractive to more customers."
"The pricing for Qualys CSAM is nominal."
"The pricing is fair. I would love to see the price come down a little bit, but we do get a lot of value out of it. We are squeezing every ounce of value we can out of the tool."
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
847,625 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Financial Services Firm
12%
Manufacturing Company
6%
University
6%
Computer Software Company
16%
Retailer
8%
Government
8%
Manufacturing Company
7%
Computer Software Company
22%
Financial Services Firm
14%
Government
9%
Retailer
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for Zafran Security?
I find that the pricing for Zafran aligns well with the comprehensive features it offers. The asset and user-based li...
What needs improvement with Zafran Security?
While Zafran Security is already a powerful tool, there are areas where it could be further improved to provide even ...
What is your primary use case for Zafran Security?
Our primary use case for Zafran involves leveraging it to enhance our vulnerability risk scoring methodology. In toda...
What do you like most about NinjaOne?
NinjaOne helps us view the status of software patching, whether the PC is locked or unlocked.
What is your experience regarding pricing and costs for NinjaOne?
The price or licensing of NinjaOne is a little bit high.
What needs improvement with NinjaOne?
The network monitoring needs to be improved.
What is your experience regarding pricing and costs for Qualys CyberSecurity Asset Management?
The pricing is reasonable relative to the features provided, as it collects all module data and operates as a main, c...
What needs improvement with Qualys CyberSecurity Asset Management?
The deployment is somewhat complicated and could be made more user-friendly for most users. It is currently not user-...
What is your primary use case for Qualys CyberSecurity Asset Management?
We use it to identify all our assets, including those on our premises, cloud, and remote environments. It continuousl...
 

Overview

 

Sample Customers

Information Not Available
Status Pros, Mitchell and Company
Information Not Available
Find out what your peers are saying about NinjaOne vs. Qualys CyberSecurity Asset Management and other solutions. Updated: March 2025.
847,625 professionals have used our research since 2012.