We use this solution for our internal server for scanning. We can scan for vulnerabilities and locate them.
We also generate reports for the patching team. We assign tasks to the patching team.
We use this solution for our internal server for scanning. We can scan for vulnerabilities and locate them.
We also generate reports for the patching team. We assign tasks to the patching team.
It's a relevant management tool.
It has some useful automation features. The report generating and the scanning are very helpful.
It would be very helpful to have integration. There are many plugins that can be used for tasks that would help the visibility and be able to locate the exact problem.
I would like to see more integration.
I would also like to see more flexibility when scheduling the scans. We should be able to schedule scans when we want them to be scheduled. Currently, they have to be scheduled before a certain day of the week.
I have been using Rapid7 InsightVm for six months during my internship.
Rapid7 InsightVM is a stable product.
We have no issues with the scalability of this solution. We have a vulnerability management team of four who are using it, and in our organization, we have approximately 20 people, including management.
Technical support is good.
I have used Tenable Nessus previously for my personal projects. I used it for scanning for my projects in college.
I was not involved in the installation. It was already installed previously.
Licensing fees are paid on a yearly basis.
I would recommend this solution to others, but more integration features would be more helpful.
I would rate Rapid7 InsightVM an eight out of ten.
A big vulnerability was discovered last year for jshell. We got a lot of questions from our customers about which services are vulnerable. We could give an answer in just a few minutes to the customers and also warn them.
The risk score that they provide makes it easier to find out the biggest risks. It helped the security officers to understand where the biggest risks are so that they can act on them. They can instruct their IT teams to give them a higher priority and mitigate them.
It is still not a fully cloud-based solution. It will be helpful for customers if it is a complete cloud solution. It is a hybrid solution at the moment.
I have been working with this solution for two years. It is a cloud solution, and I have been using its latest version.
It is definitely stable.
It is made for scalability. We use it to monitor our own company with 250 users. Day-to-day, three people are monitoring the environment.
It is perfect. I would rate them a nine out of ten.
Positive
It was straightforward. It took a couple of hours. I would rate it a nine out of ten in terms of ease of setup.
In terms of maintenance, it is all self-updating.
It is difficult to estimate the ROI. For our management, it is a really important tool. It helps us to understand if something is not going perfectly.
Its licensing is yearly. Everything is included in the price for one year.
We checked other solutions. We went for it because it has a cloud platform inside, which integrates with our SIEM solution, and it has many more capabilities than other products.
I would advise others to make sure that every asset in the environment is monitored by the tool. I see many customers who think they have full coverage of all assets, but they are missing a part of the network. In such a case, they will get an incorrect understanding of their security.
I would rate this solution a nine out of ten.
We are using InsightVM for vulnerability management services. We use it for providing professional services to our customers, and we also use it for our internal use.
We do on-premises and cloud deployments.
I really love the new platform. It is really easy to understand, use, and deploy.
Their support is very professional and good at troubleshooting issues.
It would be great to have a mobile application client. Currently, you have to use a mobile web browser on a device, but it is not similar to the desktop web browser in terms of user experience. It would be nice to have a mobile application to access the platform.
It would be nice to have someone in the technical support team who speaks Italian.
We have been in a partnership with Rapid7 for five years.
It is absolutely stable.
It is scalable. We have 40 customers who are using this solution.
Their technical support is great, but it would be nice to have someone in the technical support team who speaks Italian.
We speak Italian with Safeguy. So, sometimes, Safeguy's technical teams also help us.
Its initial setup is easy and quick. We are typically able to deploy it in a couple of hours.
We have 15 certified and dedicated engineers to handle its deployment and maintenance.
In some cases, we procure the licenses. In some cases, the customers directly buy the license from Rapid7.
I would rate Rapid7 InsightVM a nine out of 10.
Our primary use case for this solution is to gain insight into internal systems vulnerabilities and remediation tasks.
Rapid7 InsightVM has given us a practical view of the vulnerabilities present in our organization. Not only does it verify the vulnerability, but scores it against the skill level of an attacker.
The feature that we find most valuable is the granularity. You can view your assets however makes the most sense to your business. We found that we could isolate systems easily via tagging and site setup.
A definite improvement would be to make it easier to run ad-hoc scans without needing to assign the asset to a site or group.
We use the solution for vulnerability management of our on-cloud environments.
The solution provides all the required features for vulnerability management.
They should improve the cybersecurity feature of the solution.
We have been using the solution for a month.
It is a stable solution. We can connect it with other platforms easily.
We have four to five solution users in our organization.
The solution's initial setup process is easy.
The solution's license costs around $30 per month. It is less expensive compared to other competitors.
I advise others to consider the number of IP addresses required to be scanned for their network while opting for Rapid7. I rate the solution as a nine.
The primary use is to protect against cybersecurity attacks in your digital infrastructure. One example of such an attack is credential-grabbing.
We have put in some requests for enhancements and they are listening quite well. When there is something that we want to have enhanced then we can easily chat with the people at Rapid7. If it makes sense and another customer thinks that it makes sense then it will be built into the next release.
We are very satisfied with the reports, as they provide us with the information that is required for our management. You can perform the queries that you need.
There have been instances where technical support takes a long time to update the status of a ticket, which is something that can be improved.
I have been using this product for about two and a half years.
The stability is okay.
In terms of scalability, this product is awesome. We have more than 5,000 users and we plan to increase our usage in the future.
The technical support is very nice. They are good and they listen to the customers, which is very important in my opinion.
There is always a demand for technical support to be faster. That said, I think it is much more important to have quality and communication. If I am going to be updated during the course of the case that is running, then that is okay with me. Also, as long as the quality stays in the system and they keep on improving, I am satisfied.
We switched to Rapid7 because we were not satisfied with our previous solution. It was not up to par in terms of our needs and standards.
The initial setup is very straightforward and not complex at all. Our deployment took about three months.
This is mostly a cloud-based solution that works with the assistance of agents and collectors.
We implemented and deployed this product on our own.
The licensing is asset-based and very straightforward.
Overall, this is a product that I am very satisfied with.
I would rate this solution an eight out of ten.
We use InsightVM for capacity forecasting.
I've been working around, I don't know, it's about three years.
I rate Rapid7 nine out of 10 for stability.
I rate Rapid7 nine out of 10 for scalability.
I rate Rapid7 support nine out of 10.
Positive
I rate InsightVM eight out of 10 for ease of setup. It takes two or three engineers to deploy. The solution requires some maintenance. It's mainly cleaning up data.
I rate Rapid7 InsightVM 10 out of 10.
We use the solution to scan our internal OS and applications.
The solution protects us from vulnerabilities. If it sees anything, it can tell us about the vulnerability and ranks it as critical or high risk. It allows us to take action immediately to protect our company from attacks.
The most important aspect of the solution is that it rarely gives false positives, especially compared to other products. It provides very clear reports for our IT teams to look at.
The solution has an excellent feature that scans for vulnerabilities that may affect the Windows operating system. It helps us avoid being affected by WannaCry or other malicious attacks of that nature. It's one of the most useful features that we have. We're able to see more vulnerabilities before they become an issue due to the fact that it's so protective. It's great at helping us avoid malware or ransomware.
The solution needs to improve its smart monitoring.
There needs to be much clearer instructions surrounding scanning.
As for new features, I can't think of anything that's lacking. It's pretty good overall in terms of feature offerings.
I've only been using the solution for half a year - approximately six months. It hasn't been too long.
The solution is very stable. There are no bugs or glitches that I have witnessed. The solution doesn't crash. It's very reliable.
The solution is very flexible and very scalable. A company that needs to add it to their endpoints should have no issues doing so. I don't think there is a limit as to how many are possible.
Typically we deploy this solution to medium-sized enterprises in microfinance and insurance.
I've been in contact with technical support in the past. they're very good. We're satisfied with the level or attention they give us and the information they share.
The solution doesn't really have a complex setup. It's easy to set up and integrate with the endpoint. We install insights at our endpoints to help us collect vulnerability information from there.
We can also install it again and again and use active scanning to conduct vulnerability testing at the endpoints. It's very simple.
Deployment doesn't take long at all. Currently, we can deploy in around two or three days and then integrate it with the endpoint after we've gotten clear instructions from InsightVM.
The steps we choose for implementation are as follows: we first need to follow the instructions to install network communication, from the endpoint to InsightVM. Network communication from the endpoint will go to the scan engine and from the scan engine to the management console of Insight.
After we satisfy this, we start implementation and we start to deploy the engine to the endpoint. After that, we run a scan from the site configuration of each endpoint scope and we file the report displayed on the dashboard. Lastly, we export the report and provide it to the correct person that needs to be involved at the IT end of things.
In terms of the number of staff we use for deployment, from our side, we have two people to help manage everything. For the customer, we have four people to coordinate with the internal team. In total, we have six people involved with deployment. Our team includes a deployment engineer and from the customer's side, members of security operations.
Normally, we have both the reseller and the vendor to assist with deployment. From the vendor, we just consult on the step and classify each endpoint. After that, we'll discuss next steps with our team. Currently, we have a distributor that provides this product to us. We work with the vendor and work with the reseller to deploy everything to the customer's systems.
The solution offers flexible pricing.
We're a partner of InsightVM.
We're most likely using the latest version of the solution, however, I'm not sure which exact version number it is.
We've deployed on-premises with a local scan engine.
I'd advise companies that are looking into vulnerability assessment or faster deployment, to check out InsightVM. It's easy to expand as necessary and offers flexibility in its pricing.
I'd rate the solution nine out of ten.