Qualys VMDR and Rapid7 InsightVM are prominent players in the vulnerability management category. Qualys VMDR generally holds the upper hand due to its comprehensive feature set, although Rapid7 InsightVM presents advantages with its user-friendly experience and competitive pricing.
Features: Qualys VMDR excels in vulnerability detection, patch management, and policy compliance. Its continuous monitoring and integration flexibility are commendable. Rapid7 InsightVM stands out for detailed scanning, risk scoring, and its integration within workflows, making it notably user-friendly.
Room for Improvement: Qualys VMDR could improve its asset management, user interface, and reporting capabilities for enhanced user-friendliness. Pricing and support, especially regarding false positives, require attention. Rapid7 InsightVM needs better handling of false positives and broader integrations, particularly in ticket and patch management. Its deployment complexity, stemming from a lack of multi-tenancy and networking constraints, may impede usability.
Ease of Deployment and Customer Service: Qualys VMDR supports both on-premises and cloud setups but faces challenges with real-time support response. It benefits from global support coverage, with room for improvement in speed and quality of service. Rapid7 InsightVM caters to hybrid, on-premises, and public cloud environments, earning praise for its customer service. Its responsive technical support and simpler deployment steps are appealing for enterprises focusing on rapid returns.
Pricing and ROI: Qualys VMDR's pricing can be high for SMEs, but ROI often justifies the cost with its feature-rich and bundled offerings. Discounts and custom pricing may help. Rapid7 InsightVM offers competitive pricing and flexible IP-based licensing models. Despite its affordability, its high performance validates its pricing, providing clear value in extensive scenarios.
We saw a return on investment through significant savings in time, money, and resources.
The response time takes a while.
When reaching out via email, they reply quickly.
The technical support provided by Qualys is pretty good.
Scalability depends on the license and the number of assets being monitored.
Qualys VMDR can handle scalability, although increasing the inventory can raise the licensing costs.
The stability of Rapid7 InsightVM is excellent.
It does not automate patching unless the patch management module is purchased separately.
If AI features were integrated, it could enhance the capabilities significantly.
The response time of technical support takes a while.
The platform could be more intuitive and user-friendly.
I would rate the pricing between seven to eight out of ten.
I have a notion that Qualys might be more expensive than Rapid7.
Rapid7 InsightVM is expensive, possibly one of the highest in pricing among similar products.
We use it daily to fix vulnerabilities by connecting with infrastructure to remediate.
Qualys VMDR offers a one-stop solution for monitoring and reporting.
I like the automated report generation and vulnerability report generation.
We have integrated our SIEM solutions and antivirus with each other through Rapid7.
Vulnerability Management, Detection, and Response (VMDR) is a cornerstone product of the Qualys TruRisk Platform and a global leader in the enterprise-grade vulnerability management (VM) vendor space. With VMDR, enterprises are empowered with visibility and insight into cyber risk exposure - making it easy to prioritize vulnerabilities, assets, or groups of assets based on business risk. Security teams can take action to mitigate risk, helping the business measure their actual risk exposure over time.
Qualys VMDR offers an all-inclusive risk-based vulnerability management solution to prioritize vulnerabilities and assets based on risk and business criticality. VMDR seamlessly integrates with configuration management databases (CMDB), Qualys Patch Management, Custom Assessment and Remediation (CAR), Qualys TotalCloud and other Qualys and non-Qualys solutions to facilitate vulnerability detection and remediation across the entire enterprise.
With VMDR, users are empowered with actionable risk insights that translate vulnerabilities and exploits into optimized remediation actions based on business impact. Qualys customers can now aggregate and orchestrate data from the Qualys Threat Library, 25+ threat intelligence feeds, and third-party security and IT solutions, empowering organizations to measure, communicate, and eliminate risk across on-premises, hybrid, and cloud environments.
Rapid7 InsightVM is a comprehensive vulnerability management platform that protects your systems from attackers and is easy to scale. The solution provides easy access to vulnerability management, application security, detection and response, external threat intelligence, orchestration and automation, and more. Rapid7 InsightVM is ideal for security, IT, and DevOps teams, helping them reduce risk by enabling them to detect and respond to attacks quickly.
Rapid7 InsightVM Features
Rapid7 InsightVM has many valuable key features. Some of the most useful ones include:
Rapid7 InsightVM Benefits
There are many benefits to implementing Rapid7 InsightVM. Some of the biggest advantages the solution offers include:
Reviews from Real Users
Below are some reviews and helpful feedback written by PeerSpot users currently using the Rapid7 InsightVM solution.
An owner at a tech services company says, "I liked the dashboard on it. I could customize my dashboard with different widgets and different heat maps."
PeerSpot user Kimeang S., Technical Consultant at Yip Intsoi, mentions, "The most important aspect of the solution is that it rarely gives false positives, especially compared to other products. It provides very clear reports for our IT teams to look at."
A Director of Information Technology at a government explains, "The main functionality of identifying item endpoints that weren't properly patched or had vulnerabilities is the solution's most valuable feature."
We monitor all Risk-Based Vulnerability Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.