We are consultants and resellers of Qualys VM.
Consultant at a tech services company with 11-50 employees
Provides excellent security for scanning, flexible with good integration
Pros and Cons
- "Great web application security for scanning."
- "Could use additional security for the app."
What is our primary use case?
What is most valuable?
I like the solution's web application security for scanning, the solution is flexible with good integration.
What needs improvement?
I'd like to see additional security for the app. The product lacks integrations for third party solutions or automation integration for other tools.
For how long have I used the solution?
I've been using this solution for six months.
Buyer's Guide
Qualys VMDR
November 2024
Learn what your peers think about Qualys VMDR. Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
816,406 professionals have used our research since 2012.
What do I think about the stability of the solution?
The product is 100% stable. There are five users in the company who deal with operations and security analysis. There are four people in the company who deploy and provide support.
How are customer service and support?
I've never used the technical support. Documentation is simple and complete.
Which solution did I use previously and why did I switch?
I've previously worked with Tenable IO and Rapid 7. We switched because of Qualys's web application feature.
How was the initial setup?
The initial setup is straightforward. Initial deployment takes between two and four hours. We did it ourselves.
What other advice do I have?
I would recommend this solution.
I would rate this solution a 10 out of 10.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Sr. Analyst- Security Testing with 1,001-5,000 employees
The reports it generates give us a detailed description of and solution for all network and compliance-related violations, though I'd like an exploitation framework.
Valuable Features
QualysGuard provides a solution for network security, web application security and compliance.
Vulnerability management and policy/PCI compliance are the features that I have used which I think are the most valuable.
Improvements to My Organization
We use QualysGuard to identify all network and compliance-related violations of the assets. The report generated by the product will have a detailed description and solution. This has helped us to provide a certificate of compliance or a clean sheet for our vendors.
Room for Improvement
I'm looking forward to having an exploitation framework, a platform/framework that helps to cross verify the vulnerabilities like Metasploit.
Use of Solution
I've used it for four years.
Deployment Issues
No issues encountered.
Stability Issues
No issues encountered.
Scalability Issues
No issues encountered.
Customer Service and Technical Support
Customer Service:
7/10
Technical Support:7/10
Other Solutions Considered
I have evaluated multiple products that include commercial as well as open source. There are different solutions available with other products, but I feel this is the integrated product which covers information security and compliance comprehensively.
Also, the results provided by the product are accurate and precise.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Qualys VMDR
November 2024
Learn what your peers think about Qualys VMDR. Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
816,406 professionals have used our research since 2012.
System Admin at a tech services company with 10,001+ employees
Efficient and helpful vulnerability management enhances team collaboration
Pros and Cons
- "It allowed us to divide tasks easily among teammates, significantly improving efficiency."
- "Overall, the solution is highly rated because of its simplicity and efficiency."
- "Qualys VMDR identifies vulnerabilities and suggests fixes. However, it does not automate patching unless the patch management module is purchased separately."
- "Qualys VMDR identifies vulnerabilities and suggests fixes. However, it does not automate patching unless the patch management module is purchased separately."
What is our primary use case?
The primary use case of Qualys VMDR was to monitor around two hundred users, servers, and VMs weekly. We needed to ensure that all vulnerabilities were tracked and addressed. Our users were mainly developers using various applications, and we needed to ensure compliance with client requirements. The goal was to keep our systems up-to-date and secure.
How has it helped my organization?
Before using Qualys VMDR, we used OpenVAS, an open-source solution. It was challenging to find a direct solution for vulnerabilities.
With Qualys VMDR, it became simple to understand the severity of issues and prioritize fixes. We could ensure our top management was satisfied, knowing issues were visible and addressed.
It allowed us to divide tasks easily among teammates, significantly improving efficiency. We saw a return on investment in time, money, and resources.
What is most valuable?
Qualys VMDR offers a one-stop solution for monitoring and reporting. The UI is straightforward and user-friendly, and even beginners can master it in a day.
It allows for simplicity in understanding issues and generating reports for clear visibility. The benefits of task division among teammates and the ability to work together without delays were significant.
What needs improvement?
Qualys VMDR identifies vulnerabilities and suggests fixes. However, it does not automate patching unless the patch management module is purchased separately.
Automating features could reduce manual efforts and make the process less lengthy. Integration of AI could enhance benefits, especially in handling false positives.
For how long have I used the solution?
I have used the solution for around three years.
What do I think about the stability of the solution?
We did not experience any bugs, glitches, or downtime. I would rate the stability a nine out of ten.
What do I think about the scalability of the solution?
Scalability depends on the license and the number of assets being monitored. I would rate the scalability an eight out of ten.
How are customer service and support?
The technical support provided by Qualys is pretty good, and I would rate it an eight out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Before Qualys VMDR, we used Greenhorn’s OpenVAS. It was open-source, but it offered no direct solutions. Reports were only available with scheduled scans, which made immediate issue resolution difficult.
How was the initial setup?
The initial setup was straightforward. The deployment was up and running in a day with assistance from the support team.
What about the implementation team?
Only one person was involved in implementing Qualys VMDR.
What was our ROI?
We saw a return on investment through significant savings in time, money, and resources. The solution allowed for efficient task management among team members.
What's my experience with pricing, setup cost, and licensing?
For smaller enterprises, the pricing is on the pricier side. However, for larger enterprises, it's considered okay. I would rate the pricing between seven to eight out of ten.
Which other solutions did I evaluate?
We previously used OpenVAS.
What other advice do I have?
Overall, the solution is highly rated because of its simplicity and efficiency. I would rate it a nine out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Last updated: Nov 18, 2024
Flag as inappropriateBuyer's Guide
Download our free Qualys VMDR Report and get advice and tips from experienced pros
sharing their opinions.
Updated: November 2024
Product Categories
Vulnerability Management IT Asset Management Configuration Management Databases Container Security Risk-Based Vulnerability ManagementPopular Comparisons
Tenable Nessus
Tenable Security Center
Tanium
Tenable Vulnerability Management
SentinelOne Singularity Cloud Security
Orca Security
Pentera
Acunetix
JFrog Xray
Skybox Security Suite
Lacework
Check Point CloudGuard CNAPP
Trend Vision One - Cloud Security
Microsoft Defender Vulnerability Management
Buyer's Guide
Download our free Qualys VMDR Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Qualys VM vs Tenable Nessus: Comparison
- How does Tenable Nessus compare with Qualys VM?
- How does Pentera compare with Qualys VMDR?
- What are the main differences between Qualys VMDR and Tenable Nessus?
- How inadvisable is it to use a single vulnerability analysis tool?
- What are the benefits of continuous scanning for vulnerability management?
- When evaluating Vulnerability Management, what aspect do you think is the most important to look for?
- What is a more effective approach to cyber defense: risk-based vulnerability management or vulnerability assessment?
- What are the main KPIs that need to be implemented to have better posture in vulnerability projects?
- Which is the best vulnerability scanner tool?