No more typing reviews! Try our Samantha, our new voice AI agent.

Salt Security vs Tenable Nessus comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Salt Security
Average Rating
8.6
Reviews Sentiment
8.5
Number of Reviews
3
Ranking in other categories
API Security (6th), AI Security (20th)
Tenable Nessus
Average Rating
8.4
Reviews Sentiment
6.0
Number of Reviews
88
Ranking in other categories
Vulnerability Management (2nd)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. Salt Security is designed for API Security and holds a mindshare of 6.8%, down 12.3% compared to last year.
Tenable Nessus, on the other hand, focuses on Vulnerability Management, holds 3.8% mindshare, down 9.1% since last year.
API Security Mindshare Distribution
ProductMindshare (%)
Salt Security6.8%
Imperva Application Security Platform9.1%
Akamai API Security6.6%
Other77.5%
API Security
Vulnerability Management Mindshare Distribution
ProductMindshare (%)
Tenable Nessus3.8%
Wiz4.5%
Qualys VMDR3.9%
Other87.8%
Vulnerability Management
 

Featured Reviews

Tbaker Baker - PeerSpot reviewer
Risk Advisory Senior Manager at a marketing services firm with 1,001-5,000 employees
Behavioral AI has protected critical applications and now blocks complex external attacks
I think Salt Security could improve their implementations. The one that I saw was very complex and took quite a bit of time, and if the environment is unique at all, it takes quite a bit of time to figure out how to properly ensure that it will be implemented. A lot of times there is a steep learning curve for someone that hasn't been in it to figure out the APIs and really dig deep into it, but once you get used to it, it is easy. However, that ramp-up period could be tough. I think Salt Security could use a more enterprise focus. Some of the smaller companies that I have referred them to think it is a little bit too complex for them, so if they could come up with a different version or something a little bit easier to simplify their platform, they may be able to find more customers that way.
MohammedJaffir - PeerSpot reviewer
Founder at Cipheroot
Has enabled me to reduce false positives and perform deep credential auditing with seamless integrations
I mostly use the configuration audit feature for the audit configuration as a scan policy, and I will use it for credential audit, which helps me scan credentials access such as local administrator or root access, performing a deeper and more accurate check of local configuration settings and file systems, making it a highly recommended feature. Regarding integration capabilities, we can integrate Tenable Nessus with SIM tools such as Splunk, IBM QRadar, and Azure Sentinel, as well as with ticketing systems such as ServiceNow, Jira, and Slack. There is no complexity as it is very easy to integrate everything. In terms of the reporting feature, while vulnerability scanning can throw some false positives, Tenable Nessus has very few, achieving a reduction of 75% to 80% false positives with manual analysis needed. We can generate standard Nessus reports that typically include host summaries and vulnerabilities by host and plugin, alongside solutions and remediation recommendations. The main benefits I get from Tenable Nessus are complete asset inventory and comprehensive attack surface management, allowing us to prioritize vulnerabilities based on risk, focusing on true risk and threat path analysis.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Salt Security gave me much better visibility into API risk, helping me identify exposed endpoints, misconfigured APIs, and sensitive data flowing through APIs that required additional controls, and it has become an important part of my API security program."
"Salt Security has positively impacted my organization and my client's organization by being able to stop cyberattacks and ensure that they have proper security over all their applications, giving them a sense of peace of mind that they have security over something that could ultimately take down the whole company if not mitigated properly."
"It's really great. I would rate the stability a nine out of ten. I haven't encountered any instability issues."
"Salt Security gives you visibility of all your APIs, identifies API security issues, and immediately alerts you of attacks."
"Tenable Nessus has a good performance, is very user-friendly, and is easy to use."
"Nessus is a very stable product, and it has been a pioneer and has been around for a long time."
"I like this solution because it is complete, it can scan and check many types of vulnerabilities, it can also check for compliance, it fits very well in my environment, it is very easy to use, and there is a very good cost-benefit of this solution."
"Security is complicated a subject. There's a lot involved in Tenable Nessus, but the solution is easy to run and manage and we have had a lot of good success with it."
"Quick assessments, compliance scores, and results are provided without having to do agents."
"It's a user friendly solution and I like the dashboards."
"The interface is excellent; it makes it very user friendly and easy to navigate for the most part, and the product is pretty problem-free so we don't have any real issues with it."
"Tenable Nessus has helped us with better visibility of the current security posture of our infrastructure and helped us be proactive about remediating those findings."
 

Cons

"The setup cost was acceptable, but adding additional APIs was actually quite expensive."
"The integration part could be a bit extended."
"Regarding scalability, for users in smaller environments, it is not exactly the best."
"The professional version is not very scalable. It's not really scalable considering the number of assets and clients that I have."
"One significant drawback we encounter is the tool's tendency to flag patched packages incorrectly. For instance, if a package is patched by Debian maintainers but not updated to a major or minor version, Nessus may still flag it as vulnerable based on its database. This discrepancy leads to false alarms and requires our developers, system admins, and DevOps teams to address them."
"The interface is a little bit clunky, and the reporting is not marvelous. There should be better integration of reporting between instances. Currently, the instance stands alone, and it produces a report. Being able to amalgamate those reports with another instance will be useful."
"The tool needs to upgrade asset tracking."
"It wasn't very clear how the scripts are running the scans. There's information about the script but it's not straightforward. The script information for each of the plugins should be available, but it doesn't give us straightforward direct information about how it was executed. That needs to be more clear."
"Technically, it is an excellent and the best solution available in Libya. My only concern is related to its pricing. They are an emerging company in Libya, and they need to put in some effort to provide us with very good prices so that customers can go with the best solution. Chinese companies are getting into the market here, and they're providing very cheap solutions."
"There is room for improvement in finishing the transition to the cloud. We'd like to see them keep on improving the Tenable.io product, so that we can migrate to it entirely, instead of having to keep the Tenable.sc on-prem product."
"In terms of what could be improved, I would say its reporting portion."
 

Pricing and Cost Advice

Information not available
"The price of Tenable Nessus is too expensive for each service center."
"The price of Tenable Nessus could improve, it is expensive."
"The price of Tenable Nessus is much more competitive versus other solutions on the market."
"I think the price is fairly affordable. It provides a license that is fair."
"The newer tools are quite pricey. There is a case of some fine tuning that can be done in terms of licensing. The IP based licensing that is offered makes the tool very expensive. If they want the IT industry to adopt it, the price should be looked at."
"The solution has a single price for unlimited assets."
"The price is okay. I would give it a seven out of ten, where one is cheap and ten is expensive."
"The price of the solution is reasonable."
report
Use our free recommendation engine to learn which API Security solutions are best for your needs.
900,838 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Manufacturing Company
16%
Financial Services Firm
8%
Construction Company
8%
Manufacturing Company
10%
Financial Services Firm
10%
Government
9%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business40
Midsize Enterprise19
Large Enterprise35
 

Questions from the Community

What is your experience regarding pricing and costs for Salt Security?
The setup cost was acceptable, but adding additional APIs was actually quite expensive.
What needs improvement with Salt Security?
Alert tuning can require some time depending on API volume. Some findings need internal validation before actioning. The collaboration flows between security and engineering teams could be expanded...
What is your primary use case for Salt Security?
I use Salt Security primarily for API discovery, mainly regarding data-sensitive information across the company. Before using Salt Security for API discovery and sensitive information, I didn't hav...
How would you choose between Rapid7 InsightVM and Tenable Nessus?
You have full visibility across cloud, network, virtual, and containerized infrastructures with Rapid7 Insight VM. You can easily prioritize vulnerabilities using attacker analytics. Overall, Rapid...
What's the difference between Tenable Nessus and Tenable.io Vulnerability Management?
Tenable Nessus is a vulnerability assessment solution that is both easy to deploy and easy to manage. The design of the program is such that if a company should desire to handle the installation t...
What is your experience regarding pricing and costs for Tenable Nessus?
Based on my experience, the pricing for Tenable Nessus is somewhat higher, but customers still want to pay for it, so it remains acceptable. The annual price increase of six to seven percent could ...
 

Also Known As

Salt Security API Protection Platform
No data available
 

Overview

 

Sample Customers

Appsflyer, Armis, City National Bank, Coralogix, Finastra, Gett, Honeybook, Payoneer
Bitbrains, Tesla, Just Eat, Crosskey Banking Solutions, Covenant Health, Youngstown State University
Find out what your peers are saying about Imperva, Akamai, Orca Security and others in API Security. Updated: May 2026.
900,838 professionals have used our research since 2012.