Try our new research platform with insights from 80,000+ expert users

Rapid7 InsightVM vs Rapid7 Metasploit comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.8
Rapid7 InsightVM is valued for preventing cyber attacks, saving costs, and improving system operations despite potential enhancements.
No sentiment score available
Metasploit has helped save time, especially with testing websites or VIPD projects.
 

Customer Service

Sentiment score
7.0
Rapid7 InsightVM's customer service receives mixed reviews, being knowledgeable yet occasionally slow, with satisfaction varying by individual experience.
Sentiment score
7.8
Rapid7 Metasploit's customer service is inconsistent, with varied support across versions, sometimes slow but generally active in development.
 

Scalability Issues

Sentiment score
7.7
InsightVM is highly scalable, supporting thousands of assets, adaptable to organizational needs, and ideal for extensive enterprise networks.
Sentiment score
7.3
Users find Rapid7 Metasploit adequate for small teams but suggest improvements for better automation and larger operations.
Metasploit can handle big projects and is already prepared for them.
 

Stability Issues

Sentiment score
8.1
Rapid7 InsightVM is highly stable and reliable, with minimal issues and responsive support, performing best on Linux systems.
Sentiment score
9.3
Rapid7 Metasploit is stable and robust, with improved updates, earning user ratings of seven to nine out of ten.
The stability of Rapid7 InsightVM is excellent.
I have never faced any technical issues or downtimes.
 

Room For Improvement

InsightVM needs enhanced reporting, integration, and user experience; addressing false positives and support efficiency could improve satisfaction.
Rapid7 Metasploit faces slow updates, high resource use, needs better integration, broader coverage, user-friendliness, and improved support.
The platform could be more intuitive and user-friendly.
The database is not always updated with the latest vulnerabilities or zero-day exploits.
 

Setup Cost

Rapid7 InsightVM's asset-based pricing is competitively priced, flexible, and cost-effective for larger environments, despite higher costs.
Buyers have mixed views on Rapid7 Metasploit pricing; some find it affordable, others choose open-source due to cost.
Rapid7 InsightVM is expensive, possibly one of the highest in pricing among similar products.
 

Valuable Features

Rapid7 InsightVM is praised for vulnerability management, ease of use, integrations, and cost-effectiveness with robust features and scalability.
Rapid7 Metasploit offers extensive modules and automation, enhancing penetration testing with graphical interfaces, PostgreSQL integration, and network scanning.
We have integrated our SIEM solutions and antivirus with each other through Rapid7.
The most valuable features of Metasploit include its powerful capabilities for exploitation and scanning.
 

Categories and Ranking

Rapid7 InsightVM
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
60
Ranking in other categories
Risk-Based Vulnerability Management (4th)
Rapid7 Metasploit
Average Rating
7.8
Reviews Sentiment
7.2
Number of Reviews
19
Ranking in other categories
Vulnerability Management (21st)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. Rapid7 InsightVM is designed for Risk-Based Vulnerability Management and holds a mindshare of 19.8%, up 14.2% compared to last year.
Rapid7 Metasploit, on the other hand, focuses on Vulnerability Management, holds 1.9% mindshare, up 1.9% since last year.
Risk-Based Vulnerability Management
Vulnerability Management
 

Featured Reviews

Shakeel Ahmad - PeerSpot reviewer
Brilliant audit report and scorecard but scans often get blocked by firewalls
The solution cannot scan third-party tools that have firewalls within them. The firewalls detect and block the solution. Conversely, Nexus is able to bypass firewalls because it has low detectability. We use Nexus when the solution cannot bypass a firewall. The solution can scan 60% of the time but Nexus can scan 90% of the time. The solution needs to improve its vulnerability design to include CVC results. Nexus has a good, long range and a good database for finding CVC numbers. We need this level of security detail but the solution does not seem to provide it.
Aqeel Junaid - PeerSpot reviewer
Helps find vulnerabilities in a system to determine whether the system needs to be upgraded
The solution's exploit development functionality was easy to use and had all the scenarios I could use to run my security assessment. Since the solution has been updated regarding new malware, it gives data protection for security professionals. Rapid7 Metasploit is a good exploit tool, and users need to know what they're doing while using the solution. The solution provides perfect effectiveness in simulating real-world attacks for training purposes. Overall, I rate the solution a nine out of ten.
report
Use our free recommendation engine to learn which Risk-Based Vulnerability Management solutions are best for your needs.
824,053 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
41%
Computer Software Company
10%
Financial Services Firm
7%
Manufacturing Company
6%
Computer Software Company
18%
Financial Services Firm
10%
Manufacturing Company
9%
Educational Organization
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

How would you choose between Rapid7 InsightVM and Tenable Nessus?
You have full visibility across cloud, network, virtual, and containerized infrastructures with Rapid7 Insight VM. You can easily prioritize vulnerabilities using attacker analytics. Overall, Rapid...
What do you like most about Rapid7 InsightVM?
The product's initial setup phase was very easy.
What do you like most about Rapid7 Metasploit?
I use Rapid7 Metasploit for payload generation and Post-Exploitation.
What is your experience regarding pricing and costs for Rapid7 Metasploit?
I am not very sure about the pricing. It falls into an intermediate range. However, I am not involved with the partition part.
What needs improvement with Rapid7 Metasploit?
The database is not always updated with the latest vulnerabilities or zero-day exploits. If a vulnerability arises a month or two ago, it might not be included in the database, which is something I...
 

Also Known As

InsightVM, NeXpose
Metasploit
 

Learn More

 

Overview

 

Sample Customers

ACS, Acosta, AllianceData, amazon.com, biogen idec, CBRE, CATERPILLAR, Deloitte, COACH, GameStop, IBM
City of Corpus Christi, Diebold, Lumenate, Nebraska Public Power District, Prairie North Regional Health, Apptio, Automation Direct, Bob's Stores, Cardinal Innovations Healthcare Solutions, Carnegie Mellon University
Find out what your peers are saying about Rapid7 InsightVM vs. Rapid7 Metasploit and other solutions. Updated: March 2023.
824,053 professionals have used our research since 2012.