Try our new research platform with insights from 80,000+ expert users

SecurityScorecard vs Tenable Nessus comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.2
SecurityScorecard enhances risk management and security decision-making but ROI quantification remains complex without paid subscription benefits.
Sentiment score
7.1
Tenable Nessus efficiently manages vulnerabilities, enhancing security and reducing costs, providing a high return on investment for organizations.
The biggest benefit is visibility, allowing organizations to understand their risks, vulnerabilities, and potential threats.
 

Customer Service

Sentiment score
5.8
SecurityScorecard's support is knowledgeable with improved response times, but occasional delays and organizational improvements are suggested by users.
Sentiment score
7.9
Tenable Nessus support is responsive and helpful, though delays and complex issues may require improved development support.
They need better organization to support their customer volume.
Whenever any issue arises, we contact the support, and they are always there for us.
The technical support is good yet could improve in terms of response time.
 

Scalability Issues

Sentiment score
7.0
SecurityScorecard is scalable, user-favored, and suitable for medium to large businesses, scoring 7/10 for scalability from users.
Sentiment score
7.1
Tenable Nessus scales well across networks, though licensing affects scalability, and challenges arise with internet bandwidth and data storage.
The product is suitable for medium to large businesses, typically with a revenue range from $200 million to a couple of billion dollars.
Whether managing 50 servers today or 500 tomorrow, performance or capacity are not hindered.
 

Stability Issues

Sentiment score
7.8
SecurityScorecard is highly stable, with minor MS Edge adjustments needed and consistently high user ratings for reliability.
Sentiment score
8.1
Tenable Nessus is stable, reliable, and performs well, though users report rare minor issues like update delays and sluggishness.
We have not encountered any issues with missing network items or errors in API and webhook interactions.
 

Room For Improvement

SecurityScorecard needs better problem-solving, delegation, pricing, faster support, mobile scanning, automation, and proactive risk management enhancements.
Tenable Nessus needs better reporting, interface, cloud transition, role-based access, and comprehensive scanning with improved asset and vulnerability management.
There is a need for more active rather than passive third-party risk management features to truly mitigate risks.
The documentation is not well-organized, which can be confusing when searching for solutions or specific information related to Tenable Nessus Professional.
 

Setup Cost

SecurityScorecard offers tiered pricing, including a $400/month option, with competitive costs and transparent, feedback-driven scoring adjustments.
Tenable Nessus offers competitive pricing, typically $2,500-$4,300 annually, but smaller organizations seek more flexible and affordable options.
There are more expensive and cheaper options available.
Tenable Nessus's pricing is adequate if it is fully utilized.
 

Valuable Features

SecurityScorecard offers robust third-party analysis, collaboration, and comprehensive risk assessment with continuous monitoring and enhanced security features.
Tenable Nessus offers comprehensive scanning, user-friendly interface, extensive vulnerability coverage, and affordable pricing, excelling in vulnerability management and compliance.
It combines threat intel data with vulnerability information to increase risk ratings and provides insights into third-party supply chain risks.
The scanning and reporting features are the most valuable aspects of Tenable Nessus.
The features I personally like include host discovery.
 

Categories and Ranking

SecurityScorecard
Average Rating
8.0
Reviews Sentiment
6.5
Number of Reviews
7
Ranking in other categories
IT Vendor Risk Management (3rd)
Tenable Nessus
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
80
Ranking in other categories
Vulnerability Management (1st)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. SecurityScorecard is designed for IT Vendor Risk Management and holds a mindshare of 11.3%, up 10.7% compared to last year.
Tenable Nessus, on the other hand, focuses on Vulnerability Management, holds 10.8% mindshare, down 14.1% since last year.
IT Vendor Risk Management
Vulnerability Management
 

Featured Reviews

Hadar Eshel - PeerSpot reviewer
Easy-to-deploy product with good technical support services
Our organization relies on numerous SaaS services for critical business functions, such as CRM and monitoring solutions. In a hypothetical scenario where a security breach occurs in the CRM database, potentially exposing our data and our clients, SecurityScorecard proves invaluable. It provides a security score, typically a percentage, based on extensive data collection from various sources, including the dark web and social networks. Let's say our CRM solution receives a security score of 78%, indicating a relatively safe status according to the information gathered by SecurityScorecard. One of its most effective features for risk identification is its enterprise-ready automation for third-party risk measurements. Additionally, it provides valuable insights into vulnerabilities within an organization, utilizing tools such as CVE details. For instance, it can assign a score based on vulnerabilities detected, such as 60%, and specify each vulnerability by its identifier. It offers scalability and can handle large volumes of real-time data. The continuous monitoring feature significantly enhances the ability to manage risks by providing real-time data collection on suppliers. We can observe fluctuations in their security levels over time, sometimes even every month. We can create alerts for high-risk situations, enabling organizations to respond promptly to potential security threats or vulnerabilities identified within their supplier network. The product's security ratings are helpful. While there may be occasional false positives, it does not function as a scanning solution. Instead, it presents the same information that hackers could potentially exploit. While I haven't worked with other cybersecurity rating solutions, I can attest to its strengths based on my experience. One notable advantage is their extensive data collection capabilities, surpassing many competitors in the market. They gather a wide range of information, resulting in a vast database that includes many suppliers or companies. It is easy to integrate with other tools. I rate it a nine out of ten.
HarshBhardiya - PeerSpot reviewer
Provided increased visibility across the organization's servers
The user interface of Tenable Nessus feels outdated and could be more user-friendly. Additionally, the documentation is not well-organized, which can be confusing when searching for solutions or specific information related to Tenable Nessus Professional. The reporting feature could be improved by allowing users to create their own templates instead of relying on predefined ones.
report
Use our free recommendation engine to learn which IT Vendor Risk Management solutions are best for your needs.
838,713 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Computer Software Company
13%
Educational Organization
11%
Manufacturing Company
9%
Educational Organization
42%
Computer Software Company
9%
Financial Services Firm
6%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about SecurityScorecard?
One of its most effective features for risk identification is its enterprise-ready automation for third-party risk measurements.
What is your experience regarding pricing and costs for SecurityScorecard?
SecurityScorecard is priced in the middle range. There are more expensive and cheaper options available, however, Fortify Data and Censinet are also in the same middle range.
What needs improvement with SecurityScorecard?
The product can be improved by incorporating more data points and intelligence around dark web information and threat data. Adding more features to combine and consolidate internal vulnerability sc...
How would you choose between Rapid7 InsightVM and Tenable Nessus?
You have full visibility across cloud, network, virtual, and containerized infrastructures with Rapid7 Insight VM. You can easily prioritize vulnerabilities using attacker analytics. Overall, Rapid...
What's the difference between Tenable Nessus and Tenable.io Vulnerability Management?
Tenable Nessus is a vulnerability assessment solution that is both easy to deploy and easy to manage. The design of the program is such that if a company should desire to handle the installation t...
What do you like most about Tenable Nessus?
We have around 500 virtual machines. Therefore, we conduct monthly scans and open tickets for our developers to address identified vulnerabilities. These scans cover the servers, other network equi...
 

Overview

 

Sample Customers

TriNet, USAA, Zurich, Gilt Groupe, McGraw Hill Financial
Bitbrains, Tesla, Just Eat, Crosskey Banking Solutions, Covenant Health, Youngstown State University
Find out what your peers are saying about OneTrust, RSA, SecurityScorecard and others in IT Vendor Risk Management. Updated: February 2025.
838,713 professionals have used our research since 2012.