Try our new research platform with insights from 80,000+ expert users

Qualys VMDR vs RiskIQ Illuminate comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Qualys VMDR
Average Rating
8.2
Number of Reviews
79
Ranking in other categories
IT Asset Management (7th), Vulnerability Management (3rd), Configuration Management Databases (3rd), Container Security (12th), Risk-Based Vulnerability Management (3rd)
RiskIQ Illuminate
Average Rating
0.0
Number of Reviews
1
Ranking in other categories
Attack Surface Management (ASM) (19th)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. Qualys VMDR is designed for Vulnerability Management and holds a mindshare of 13.5%, up 13.1% compared to last year.
RiskIQ Illuminate, on the other hand, focuses on Attack Surface Management (ASM), holds 1.9% mindshare, down 6.5% since last year.
Vulnerability Management
Attack Surface Management (ASM)
 

Featured Reviews

MK
Jun 12, 2023
Efficient automation feature and provides us with a comprehensive security solution
Qualys VMDR is basically susceptible to false positives, and false negatives. We receive a lot of false positives in there. VMDR can be considered a complex solution, especially for enterprises with limited resources or organizations. It requires extensive knowledge as an engineer. So, when using this tool, you need to utilize other tools to remediate the false security issues. So maybe it should also have the ability to automatically identify and address false positives. In additional features, an automated process for remediating false positives. We might be looking for new types of signatures that can help us identify and address specific issues.
SimonClark - PeerSpot reviewer
Oct 4, 2021
Able to discover unpatched servers, offers good stability, and scales very well
Working for FortNet UK, we advised customers regarding their specific security challenges and would recommend RiskIQ when appropriate. We had numerous customers from industries such as retail, media, hospitality, aviation, and finance. Attack Surface Management provided our customers with…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It's really beneficial for scanning and interacting with the agent."
"The most valuable feature is the ability to run different capabilities with the same agent. With only one agent, we can have EDR, vulnerability management, compliance and some basic SaaS security capabilities."
"This is one of the best products I have worked with so far. I like the power of Qualys, and it's a better solution because you can scan a compact file, a BIT file, or batch files. The product already knows what's happening inside, and you don't need to expand the package. Tenable will do the same thing, but you need to have a package issuance claim. With Qualys, we can immediately understand the file, even a compact file. If there's some kind of discovery or incident, you will know what happened in the environment."
"The most recent is VMDR, which provides a comprehensive overview of how to detect, patch, and remediate specific vulnerabilities."
"The platform's most valuable features include its robust vulnerability detection capabilities and automated remediation workflows."
"Qualys VM's best features are vulnerability management and customizable scoring."
"I am impressed with the VMDR feature."
"The most valuable feature is that this solution is very lightweight."
"The solution is stable with 12 years of established historical data."
 

Cons

"It's too early for me to say if there is any room for improvement since we're in the first couple of months of using this solution."
"The reporting in this solution can be improved."
"Qualys currently does not have any features for scanning SCADA, IoT, and Industrial Control Systems."
"They're still evolving their platform in terms of reporting capabilities."
"What we have found is that the solution is not closely tied with the patch management. It is okay with newer ones, like Windows 10 machines; it gives the correct patch. But for Windows 7 or Windows Server 2008, it does not give us the correct patch so we have to manually identify the patches. This is a major problem."
"The reporting and dashboards could improve in Qualys VM. However, they have improved since the previous versions."
"There's a need to upgrade or fix the potential vulnerability rate. Around 20,000 potential vulnerabilities were showing in Qualys VMDR, but none of the other tools showed them. When we checked, it wasn't the case. Support explained that even small issues were being counted as vulnerabilities, causing issues in our audit. So, the security features could be improved to identify vulnerabilities accurately."
"Qualys VM should improve its methodology."
"A low-cost service to evaluate the risk score of a supply chain would be very helpful."
 

Pricing and Cost Advice

"It is more expensive than other products on the market."
"The solution is reasonably priced for the value it provides."
"The license is on a yearly basis."
"The product is more expensive than that of any other vendor."
"Qualys VM is quite expensive. It's a subscription-based license, and it's yearly. Right now, it's open for me, and I don't have any limitations or caps on the licenses. They are seeing if the product is viable for 4500 users. I can add as much as I want, and at the end of the subscription, they'll let me know how many licenses were actually used and bill me accordingly. On a scale from one to five, I would give their pricing a three. It's still expensive."
"It is a high cost product. Compared to the other solutions, it is around 15 to 20% higher in cost."
"It is different for every company, but for us, it's every three years."
"Qualys is cheaper and more affordable than other solutions."
Information not available
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
800,688 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
34%
Computer Software Company
11%
Financial Services Firm
10%
Manufacturing Company
6%
Financial Services Firm
23%
Computer Software Company
16%
Manufacturing Company
7%
Media Company
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What is your primary use case for Qualys VM?
Qualys VM is used for vulnerability scans for the internet and applications using application exchange. There are many applications. We also use the solution for asset management per team, and the ...
What do you like most about Qualys VMDR?
I like that we have many scanners and channels that don't overload. It helps us scan and track easily. Also, the tagging system is good for tagging. We can still use QualysAgent task ID tools even ...
What is your experience regarding pricing and costs for Qualys VMDR?
The solution is reasonably priced for the value it provides. Our contract renewal was approximately 2.5 million ZAR for three years, including managed services.
Ask a question
Earn 20 points
 

Also Known As

Qualys VM, QualysGuard VM, Qualys Asset Inventory, Qualys Container Security, Qualys Virtual Scanner Appliance
RiskIQ Digital Threat Management
 

Learn More

 

Overview

 

Sample Customers

Agrokor Group, American Specialty Health, American State Bank, Arval, Life:), Axway, Bank of the West, Blueport Commerce, BSkyB, Brinks, CaixaBank, Cartagena, Catholic Health System, CEC Bank, Cegedim, CIGNA, Clickability, Colby-Sawyer College, Commercial Bank of Dubai, University of Utah, eBay Inc., ING Singapore, National Theatre, OTP Bank, Sodexo, WebEx
DocuSign, Outbrain, The Economist Group, Rackspace, The Citizen Lab
Find out what your peers are saying about Tenable, Qualys, Wiz and others in Vulnerability Management. Updated: August 2024.
800,688 professionals have used our research since 2012.