Try our new research platform with insights from 80,000+ expert users

PortSwigger Burp Suite Enterprise Edition vs Tenable Vulnerability Management comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 4, 2024
 

Categories and Ranking

PortSwigger Burp Suite Ente...
Ranking in Vulnerability Management
22nd
Average Rating
8.0
Reviews Sentiment
7.4
Number of Reviews
11
Ranking in other categories
Dynamic Application Security Testing (DAST) (5th)
Tenable Vulnerability Manag...
Ranking in Vulnerability Management
5th
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
40
Ranking in other categories
Risk-Based Vulnerability Management (2nd)
 

Mindshare comparison

As of December 2024, in the Vulnerability Management category, the mindshare of PortSwigger Burp Suite Enterprise Edition is 1.2%, down from 1.3% compared to the previous year. The mindshare of Tenable Vulnerability Management is 8.5%, down from 10.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Vulnerability Management
 

Featured Reviews

Hasan Abufreiha - PeerSpot reviewer
Used for web application auditing and security audits for web applications
I would advise users to limit Burp Suite usage to specific scenarios and applications. Users should use the solution as an expert testing tool instead of using it as a general scanner or for information gathering in general. The tool might be overwhelming initially for new users, but it will be easy after you get used to the UI, features, and options. PortSwigger Burp Suite Enterprise Edition has been doing an amazing job for years compared to other similar tools. Overall, I rate the solution an eight out of ten.
Yogeswaran Neelagandan - PeerSpot reviewer
Offers risk prioritization , notification system but support should be bundled with the product cost
It's a fantastic product, but there are some things to consider. One is the price. Compared to on-prem solutions, the SaaS model can be expensive. Price is definitely a concern and needs improvement, especially for the Indian market. While it's a fantastic product, it should be more accessible to small and medium-sized businesses (SMBs). Currently, only larger enterprises seem to be able to afford and evaluate it thoroughly. So, pricing can be improved and be more affordable for the Indian market, specifically for SMBs. Another area of improvement is customer service and support. Tenable needs to include support in the pricing/license. Currently, they push clients to get support from partners or channel distributors, who often charge a lot. Even for a simple one-time setup, they may charge three to four lakhs, and then additional annual charges for ongoing support. We have the technical skills to handle basic tasks, but relying on Tenable itself often results in just receiving emails or being redirected back to channel partners. So, support should be bundled with the product cost.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"This tool helps identify vulnerabilities. We then provide the report to the developers, who address the issues identified automatically. Its most valuable feature is CI/CD integration."
"I like normal dynamic scanning, general web applications scanning, and vulnerability assessments."
"Parallel scans can be done with PortSwigger Burp Suite Enterprise Edition."
"The most valuable features of PortSwigger Burp Suite Enterprise Edition are the vast amount of options and ease of use. They frequently improve the solution every six months to a year. Additionally, if we want any more features we can upload a custom script to meet our needs."
"We are in the early stage of using the solution making it difficult to fully determine the best features. However, we have noticed the CMDB and device discovery features look valuable at this time."
"The solution's extensions really expand the capabilities and features offered by the installation."
"The initial setup is straightforward."
"The product's initial setup phase was super easy."
"The ease of use in terms of scanning assets is valuable."
"The solution is very simple to use."
"The initial setup is straightforward so long as your infrastructure, components, and networks are in place."
"The most valuable feature for me is container scanning because I am interested in CICD security."
"It is very stable, and it is updated periodically by adding new vulnerabilities."
"The price of Tenable.io Vulnerability Management is reasonable as it is ten times cheaper than other options."
"The best feature of the solution is the amount of visibility it provides of the vulnerabilities."
"The solution is easy to use and configuration is smooth with no complexities."
 

Cons

"PortSwigger Burp Suite Enterprise Edition should incorporate a static code analysis feature. One main issue we encounter is false positives. False positives can be challenging for developers."
"The solution is a bit expensive."
"The implementation of the solution is quite complicated and could be easier."
"From my personal experience, the solution's performance could be improved."
"Scalability could be better."
"There are features or functionality missing, but PortSwigger Burp Suite Enterprise Edition does try to update frequently to alleviate the shortcomings."
"The stability of the scans could be improved."
"It would be better if the solution is cloud-based."
"I would like the solution to cover the whole cycle of mitigation since it's an area where the solution currently lacks."
"The pricing of the solution could be more reasonable."
"The user interface could be improved by being able to change the user interface to fit your position or your job. The graphs are set in stone and you can only print reports."
"An area of improvement for this solution is being able to customize the dashboard. For example, the dashboard does not allow us to view a previous months vulnerability results alongside current results to make comparisons."
"The product could be easier to set up on the cloud."
"More flexibility is required compared to other solutions."
"I'd like to see them improve their support."
"The UI has room for improvement."
 

Pricing and Cost Advice

"For Professional, it's about $400 per year."
"Although the solution can be a bit expensive for small companies, its pricing is fairly reasonable for its capabilities."
"PortSwigger Burp Suite Enterprise Edition is neither a cheap nor an expensive product. PortSwigger Burp Suite Enterprise Edition is a good tool for companies."
"PortSwigger Burp Suite Enterprise Edition is expensive compared to other solutions."
"The tool's pricing is reasonable and costs around 400 dollars per year."
"Compared to other VM solutions, Tenable.io Vulnerability Management is expensive."
"The product costs us around $137,000 annually for 4000 to 5000 assets."
"The total cost we pay for this solution is over 45K. This is for a large education organization."
"The solution is not too expensive."
"I would rate the pricing a five out of ten. It is in the middle."
"Tenable.io is not known for being a cheap product."
"A yearly payment has to be made toward the solution's licensing costs."
"The tool is reasonably priced."
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
824,053 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
19%
Computer Software Company
13%
Government
8%
Manufacturing Company
7%
Educational Organization
31%
Computer Software Company
11%
Financial Services Firm
8%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about PortSwigger Burp Suite Enterprise Edition?
Parallel scans can be done with PortSwigger Burp Suite Enterprise Edition.
What is your experience regarding pricing and costs for PortSwigger Burp Suite Enterprise Edition?
For Enterprise, I'm not sure of the pricing. For Professional, it's about $400 per year. If you're using it as it should be used, the pricing is reasonable based on the benefits it provides.
What needs improvement with PortSwigger Burp Suite Enterprise Edition?
Scalability could be better. It's primarily focused on dynamic application security testing but might require integration with another platform to handle larger environments efficiently.
What's the difference between Tenable Nessus and Tenable.io Vulnerability Management?
Tenable Nessus is a vulnerability assessment solution that is both easy to deploy and easy to manage. The design of the program is such that if a company should desire to handle the installation t...
What needs improvement with Tenable.io Vulnerability Management?
It needs additional reporting and intelligence features, as well as enhancements in AI-driven detection, which is still in its early stages.
 

Also Known As

No data available
Tenable.io
 

Overview

 

Sample Customers

Nasa, Disney, Dow Jones, Iberia Bank, IBM, Ernest and Young, Apple, Ryanair, Thyssenkrupp, Delivery Hero
Global Payments AU/NZ
Find out what your peers are saying about PortSwigger Burp Suite Enterprise Edition vs. Tenable Vulnerability Management and other solutions. Updated: December 2024.
824,053 professionals have used our research since 2012.