Try our new research platform with insights from 80,000+ expert users

Pentera vs Rapid7 InsightVM comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
5.2
Pentera automates security tests, proving valuable for retests, but rising licensing costs pose ROI challenges for some users.
Sentiment score
6.9
Rapid7 InsightVM is valued for preventing cyber attacks, offering cost savings, and providing a budget-friendly, effective management tool.
Some customers consider the ROI favorable, but facing difficulties now due to changes in the licensing model, which has made it more expensive compared to last year.
 

Customer Service

Sentiment score
6.0
Pentera's support team is reliable and responsive, but documentation needs updating; users rate support highly despite some inconsistency.
Sentiment score
6.8
Rapid7 InsightVM customer service is praised for knowledge and quality but needs faster response times and 24/7 support availability.
Support is not available promptly, especially when issues are escalated to another region.
Sometimes support requests coincide with holidays in their support region, causing slight delays.
I cannot comment specifically regarding the support part because I have never needed Rapid7 support for the InsightVM solution as it is very stable.
 

Scalability Issues

Sentiment score
7.0
Pentera is highly scalable with adaptable equipment requirements, earning strong satisfaction ratings across various enterprise environments.
Sentiment score
7.7
Rapid7 InsightVM excels in scalability and flexibility for large environments, though report integration in expansive settings may challenge.
We just need to deploy multiple scanning engines for scanning the assets.
Rapid7 InsightVM is recommended for large-scale companies with more than 30,000 users.
According to the environment requirements, we can scale the solution as needed.
 

Stability Issues

Sentiment score
7.3
Pentera is praised for high stability, with most users rating it highly despite minor initial setup concerns.
Sentiment score
8.1
Rapid7 InsightVM is highly stable and reliable, with minor update server issues and occasional memory or access challenges.
We have not faced any issues with stability, and I would rate it a nine out of ten.
There have been some challenges, especially with support response times, which affect stability.
The stability of Rapid7 InsightVM is excellent.
 

Room For Improvement

Pentera struggles with cost, licensing flexibility and needs better virtualization, dashboards, hardware support, and detailed credential information.
InsightVM needs improved reporting, integration, scanning, and cloud capabilities, with efficient support and user-friendly features.
When the IP is imported into a system, we cannot withdraw or revoke the license.
The major improvement needed is prompt support.
This basic feature that Rapid7 calls an automated remediation process is actually manual.
Having the ability to build our own audit file, similar to a feature in Tenable, would be beneficial.
 

Setup Cost

Pentera's pricing receives mixed reviews, though many appreciate its value in effectively assessing ransomware protection.
Rapid7 InsightVM pricing is scalable based on assets, with costs from $30,000+, offering comprehensive features and flexible options.
I would rate the pricing for Rapid7 InsightVM as eight out of ten.
Pricing is reasonable and competitive compared to other solutions in the market.
Rapid7 InsightVM is expensive, possibly one of the highest in pricing among similar products.
 

Valuable Features

Pentera offers automated vulnerability assessments with valued features like attack surface mapping, AI reporting, and quick, effective processes.
Rapid7 InsightVM provides dynamic risk scoring, detailed reporting, and easy-to-use tools for effective vulnerability management and IT infrastructure security.
We can automate the Pentera processes by automatically creating scenarios to validate the system.
It's based on the CVSS risk scoring system, which is well-recognized and effective.
We have integrated our SIEM solutions and antivirus with each other through Rapid7.
Customers are interested in this product as it helps heighten their cybersecurity posture.
 

Categories and Ranking

Pentera
Average Rating
7.8
Reviews Sentiment
6.7
Number of Reviews
10
Ranking in other categories
Penetration Testing Services (2nd), Breach and Attack Simulation (BAS) (2nd)
Rapid7 InsightVM
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
64
Ranking in other categories
Risk-Based Vulnerability Management (4th)
 

Mindshare comparison

Pentera and Rapid7 InsightVM aren’t in the same category and serve different purposes. Pentera is designed for Breach and Attack Simulation (BAS) and holds a mindshare of 29.3%, up 28.3% compared to last year.
Rapid7 InsightVM, on the other hand, focuses on Risk-Based Vulnerability Management, holds 14.7% mindshare, up 13.5% since last year.
Breach and Attack Simulation (BAS)
Risk-Based Vulnerability Management
 

Featured Reviews

Sabbir Ahmed - PeerSpot reviewer
Comprehensive attack surface coverage and real-world threat emulation strengthen security while licensing models need improvement
Comprehensive Attack Surface includes several features. Omni Attack Surface discovers, assesses, and exploits vulnerabilities across both internal networks and external assets, including cloud environments from a single platform. External Attack Surface Management (EASM) and Internal Network Validation test internal security controls and identify weaknesses within the internal network. Automated Penetration Testing features are provided through the Pentera Surface module. Surface provides automated validation and penetration testing features with a proactive, continuous, and highly realistic approach to cybersecurity validation, helping organizations understand and reduce their true cyber exposure. They have AI-based reporting that leverages AI to identify patterns of exploitability over time, aggregate results across sites, and highlight recurring weaknesses. They offer two types of reports: an elaborate technical report for CTOs and an Executive Summary for management. When customers see the reports after completing the POC, they are impressed by how detailed the technical report is, while management can understand what actions need to be taken to protect their network and infrastructure. Recent Gartner reports indicate that traditional VAPT companies perform vulnerability testing at specific times, which creates security gaps. Pentera provides continuous validation, running 24/7 in the infrastructure. This means when any vulnerability appears due to firmware upgrades, OS updates, or software changes, it can be automatically identified in real-time.
Anusha Sadasivani - PeerSpot reviewer
Rapid deployment and user-friendly architecture streamline vulnerability management but customer support response needs improvement
We are still using Rapid7 InsightVM I personally still use Rapid7 InsightVM. We use Rapid7 InsightVM for vulnerability scanning. It supports both agent-based and agentless scanning, which is part of our vulnerability management strategy. The agentless scan in Rapid7 InsightVM is effective and…
report
Use our free recommendation engine to learn which Breach and Attack Simulation (BAS) solutions are best for your needs.
861,524 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Computer Software Company
13%
Manufacturing Company
10%
Educational Organization
6%
Financial Services Firm
12%
Computer Software Company
12%
Educational Organization
10%
Manufacturing Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Pentera?
What I like the most about Pentera is its solution-oriented approach.
What needs improvement with Pentera?
The licensing and IP management need improvement. When the IP is imported into a system, we cannot withdraw or revoke the license.
What is your primary use case for Pentera?
I am using the OpenIntra solution for pentesting and managing candidates in my environment. I also use this solution for house customers.
How would you choose between Rapid7 InsightVM and Tenable Nessus?
You have full visibility across cloud, network, virtual, and containerized infrastructures with Rapid7 Insight VM. You can easily prioritize vulnerabilities using attacker analytics. Overall, Rapid...
What do you like most about Rapid7 InsightVM?
The product's initial setup phase was very easy.
What is your experience regarding pricing and costs for Rapid7 InsightVM?
The customers are mostly SMBs, though some enterprise organizations have also deployed the solution. This is neither a cheap nor the most expensive solution. Qualys and some other vendors are more ...
 

Comparisons

 

Also Known As

No data available
InsightVM, NeXpose
 

Overview

 

Sample Customers

Blackstone Group Caterpillar Apria Healthcare Taylor Vinters Sandler Capital Management Drawbridge BNP Paribas British Red Cross
ACS, Acosta, AllianceData, amazon.com, biogen idec, CBRE, CATERPILLAR, Deloitte, COACH, GameStop, IBM
Find out what your peers are saying about Cymulate, Pentera, Picus Security and others in Breach and Attack Simulation (BAS). Updated: July 2025.
861,524 professionals have used our research since 2012.