I am using Tenable Nessus to know where the vulnerabilities are on my website.
IT Manager at a educational organization with 1,001-5,000 employees
Stable, simple and quick setup
Pros and Cons
- "The most valuable feature of Tenable Nessus is the dashboard. They are convenient to use."
- "Tenable Nessus could improve the price."
What is our primary use case?
What is most valuable?
The most valuable feature of Tenable Nessus is the dashboard. They are convenient to use.
What needs improvement?
Tenable Nessus could improve the price.
For how long have I used the solution?
I have been using Tenable Nessus for approximately two months.
Buyer's Guide
Tenable Nessus
January 2025

Learn what your peers think about Tenable Nessus. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
838,713 professionals have used our research since 2012.
What do I think about the stability of the solution?
The stability of Tenable Nessus is good.
What do I think about the scalability of the solution?
We have approximately three people using this solution in my organization. The users are managers and engineers.
How are customer service and support?
The support from Tenable Nessus is okay. However, they are sometimes slow and can take days to respond. Additionally, I would like to be able to ask them more technical questions than I am able to.
How was the initial setup?
The initial setup of Tenable Nessus is simple. It took us approximately one hour to do the process.
What about the implementation team?
We did the initial setup of the solution in-house.
What's my experience with pricing, setup cost, and licensing?
The price of Tenable Nessus could improve, it is expensive.
What other advice do I have?
I rate Tenable Nessus an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.

Sr. Information Security Engineer at Rewterz
Excellent capabilities, timely technological support replies, with overall satisfaction
Pros and Cons
- "The scanning capabilities are most valuable when compared to Nessus."
- "I think the reporting templates could be improved with Tenable Nessus."
What is most valuable?
The scanning capabilities are most valuable when compared to Nessus.
What needs improvement?
I think the reporting templates could be improved with Tenable Nessus.
For how long have I used the solution?
I have been working with Tenable Nessus for the past year.
What do I think about the scalability of the solution?
Tenable Nessus is scalable.
How are customer service and support?
Technical support always replies back on Mondays and it depends on the open support cases.
How was the initial setup?
The setup is straightforward. It takes about five to ten minutes to deploy and it is easy.
What other advice do I have?
I would rate Tenable Nessus an eight on a scale of one to ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Buyer's Guide
Tenable Nessus
January 2025

Learn what your peers think about Tenable Nessus. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
838,713 professionals have used our research since 2012.
Senior Consultant - Cyber Security Services at a computer software company with 10,001+ employees
The most dynamic solution on the market
Pros and Cons
- "The solution is the most dynamic one I have seen thus far."
- "EQA's and dashboards should be addressed in the next release."
What is our primary use case?
We primarily use the solution for our customer vApp, the dynamic application testing using NetWeb application and security and the infra scanning. It allows us to do a weekly scan for our customers.
How has it helped my organization?
The solution was a great help during the pandemic for closing down all those open vulnerabilities. Continuous scanning of the infra was helpful for identification on the web applications level.
What is most valuable?
The solution is the most dynamic one I have seen thus far. It is one of the best available solutions. It is the best vulnerability tool that is available at present.
What needs improvement?
While Tenable Nessus is a good enterprise solution, the high price would likely make it prohibitive to smaller organizations.
We feel the licensing cost to be too high for our customers and us.
EQA's and dashboards should be addressed in the next release.
For how long have I used the solution?
We have been using Tenable Nessus for four or five years. I believe that our practice team is doing so.
What do I think about the stability of the solution?
The solution is highly reliable.
What do I think about the scalability of the solution?
Scalability is not an issue.
How are customer service and support?
Tech support is good. I think we are now partnered with Tenable.
How was the initial setup?
The initial setup was straightforward. The solution was very easy to set up and configure.
What's my experience with pricing, setup cost, and licensing?
We have a yearly subscription license.
We have a partnership for filling Tenable Nessus as a manager product for our customers.
Though it is a good enterprise solution, it is likely too highly priced for smaller organizations.
We feel the licensing cost to be too high for our customers and us.
What other advice do I have?
We have both on-premises and cloud-based deployment in our organization.
The solution is good.
I rate Tenable Nessus as a nine out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
A cost-effective and user-friendly vulnerability scanning solution, but it lacks application-level support for mobile devices
Pros and Cons
- "I like the fact that it was not expensive. I like that it's user-friendly."
- "It would be better if they had application-level support for mobile devices. They don't have anything to scan mobile devices. Tenable Nessus doesn't have a mobile application vulnerability assessment. I also have issues with the false positive rates. The product has limited features."
What is our primary use case?
I evaluated, set up, and implemented Tenable Nessus for a client. They had four firewalls, about 500 endpoints, two servers, and one database server.
What is most valuable?
I like the fact that it was not expensive. I like that it's user-friendly.
What needs improvement?
It would be better if they had application-level support for mobile devices. They don't have anything to scan mobile devices. Tenable Nessus doesn't have a mobile application vulnerability assessment. I also have issues with the false positive rates. The product has limited features.
For how long have I used the solution?
I have been using Tenable Nessus for about six months.
What do I think about the stability of the solution?
On a scale from one to ten, I would give stability a seven.
How was the initial setup?
The initial setup is straightforward. We can deploy this solution within a week.
On a scale from one to ten, I would give the initial setup a seven.
What about the implementation team?
We implemented this solution.
What's my experience with pricing, setup cost, and licensing?
Tenable Nessus is affordable.
On a scale from one to ten, I would give pricing a ten.
What other advice do I have?
I would tell potential users that Tenable Nessus is suitable for device security.
On a scale from one to ten, I would give Tenable Nessus a seven.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer:
Independ consultant
Highly scalable and reliable
Pros and Cons
- "The stability is very good."
- "The reports should be improved in Tenable Nessus. For example, when you are auditing compliance with CIS standards. It provides very poor reports."
What needs improvement?
The reports should be improved in Tenable Nessus. For example, when you are auditing compliance with CIS standards. It provides very poor reports.
For how long have I used the solution?
I have been using Tenable Nessus for approximately one year.
What do I think about the stability of the solution?
The stability is very good.
What do I think about the scalability of the solution?
Tenable Nessus has been scalable.
What other advice do I have?
My advice to others is for them to focus on the cloud solution, and do as much as possible in the cloud.
I rate Tenable Nessus an eight out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Implementation Engineer at GFx Soluciones
The comprehensive coverage offered has been the most remarkable
What is our primary use case?
Nessus was used to scan vulnerabilities and compliances in our clients' networks and with this, carry out the remediation process through constant cycles in time until threats to the network are considerably reduced. The environments are small business networks (less than 50 employees), and so far there have been no major impediments in the scans performed.
How has it helped my organization?
Nessus has greatly improved the security of our clients' networks. The comfortable management of their systems makes it easier for engineers to use the codes for each vulnerability or compliance. Deploying the server to launch the scans is very easy, and only the necessary prerequisites for scanning should be fulfilled. Nessus has been very valuable to the company.
What is most valuable?
The comprehensive coverage offered by Nessus has been the most remarkable; it really does everything that has been asked of the software.
It's great, the possibility of automating implementations and really your database is immense for all the compliances and vulnerabilities.
Tenable University is great and allows to train all the personnel in charge of making the scans in an optimal and effective way.
What needs improvement?
- I think that the next versions could improve the graphical interface to make more intuitive the management of the reports.
- Additionally, it could include better features in the vulnerability scan at the language level.
For how long have I used the solution?
One to three years.
What do I think about the stability of the solution?
Nessus is very stable and really works in diverse environments without any difficulty. The most important thing is to establish the necessary requirements.
What do I think about the scalability of the solution?
Scalability of this type of software does not seem so relevant.
How are customer service and technical support?
The Tenable support is very good and has really solved in a timely manner the problems that have occurred in the various projects.
Which solution did I use previously and why did I switch?
In the company, Qualys was used, and it was not possible to manage the projects with this tool.
How was the initial setup?
Quite simple and comfortable.
What about the implementation team?
Internal team.
What was our ROI?
Phenomenal.
What's my experience with pricing, setup cost, and licensing?
The costs are not high, considering all the support and service offered by Tenable.
What other advice do I have?
Scans using agents are very useful, and taking advantage of them is the best way to take advantage of the tool.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Senior Consultant at a tech company with 1,001-5,000 employees
Reduces the amount of time spent on finding vulnerabilities.
Pros and Cons
- "Tenable Nessus streamlines the process of scanning for our organization."
- "This is still a maturing product. Tenable is only a scanner for one ability, while other solutions like Rapid7 have more tools for verification. We still have to manually verify to see if the vulnerability is a false positive or not."
What is our primary use case?
My primary use case of this solution is for scanning internal networks.
How has it helped my organization?
We use Tenable Nessus for scanning. We find lots of vulnerabilities and then we reduce the time spent on finding inbox vulnerabilities. Of course, Tenable streamlines the process. It has been a positive experience overall.
Tenable can scan for missing patches for the endpoints. We can scan it and then, once we can support any endpoint without patching, we inform our users.
What is most valuable?
We wanted to do a lot of Hardening and we have to make sure that all endpoints are up to the certain Hardening standard and we propose the CIS benchmark to do this. That's why we use Tenable to do scanning frequency and to ensure the quality of the endpoints.
What needs improvement?
This is still a maturing product. Tenable is only a scanner for one ability, while other solutions like Rapid7 have more tools for verification. We still have to manually verify to see if the vulnerability is a false positive or not.
For how long have I used the solution?
Less than one year.
What do I think about the stability of the solution?
It is stable. We have not had any major issues. It performs as scheduled and scans as needed.
What do I think about the scalability of the solution?
In terms of scalability, there is an issue with cloud servers. You need the internet bandwidth to do the testing. They consume a lot of bandwidth and they use the cloud scanners for the scanning.
How is customer service and technical support?
I usually use the dashboard for support. It shows the critical vulnerabilities from low to high. They are very responsive when necessary.
How was the initial setup?
The implementation was straightforward. First, we noticed whether everything was ready, then we got a license key, set up some basic scanning using a default template, and finally, we scheduled time.
What's my experience with pricing, setup cost, and licensing?
The price of Tenable Nessus is much more competitive versus other solutions on the market.
Which other solutions did I evaluate?
We were manually scanning before using Tenable Nessus. We looked at Rapid7 but we are satisfied with Tenable Nessus.
What other advice do I have?
I would suggest that people considering this solution should choose the cloud-based solution versus the on-premise version.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Infrastructure Engineer at IP Protocol INC
Provides good scalability, but there could be more learning documentation
Pros and Cons
- "The product's most valuable features are vulnerability and asset management. It can define the rules and validate the configuration."
- "There could be an integration between Tenable Nessus and other Tenable products. It will help us manage all the solutions using one dashboard."
What is our primary use case?
We use Tenable Nessus for asset and vulnerability management.
What is most valuable?
The product's most valuable features are vulnerability and asset management. It can define the rules and validate the configuration.
What needs improvement?
There could be an integration between Tenable Nessus and other Tenable products. It will help us manage all the solutions using one dashboard. Additionally, they should include more learning material to know about the product.
For how long have I used the solution?
We have been using Tenable Nessus for one year.
What do I think about the stability of the solution?
The product has good stability.
What do I think about the scalability of the solution?
We have more than 50 Tenable Nessus users in our organization. It is a scalable platform.
How was the initial setup?
Tenable Nessus is easy to deploy and manage.
What other advice do I have?
I recommend Tenable Nessus to others and rate it a seven out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.

Buyer's Guide
Download our free Tenable Nessus Report and get advice and tips from experienced pros
sharing their opinions.
Updated: January 2025
Product Categories
Vulnerability ManagementPopular Comparisons
Microsoft Defender for Cloud
Qualys VMDR
Tanium
Tenable Security Center
Tenable Vulnerability Management
Orca Security
Acunetix
JFrog Xray
Claroty Platform
Lacework FortiCNAPP
Skybox Security Suite
Microsoft Defender Vulnerability Management
Rapid7 Metasploit
XM Cyber
Buyer's Guide
Download our free Tenable Nessus Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Qualys VM vs Tenable Nessus: Comparison
- How would you choose between Rapid7 InsightVM and Tenable Nessus?
- What's the difference between Tenable Nessus and Tenable.io Vulnerability Management?
- How does Tenable Nessus compare with Qualys VM?
- What are the main differences between Qualys VMDR and Tenable Nessus?
- How inadvisable is it to use a single vulnerability analysis tool?
- What are the benefits of continuous scanning for vulnerability management?
- When evaluating Vulnerability Management, what aspect do you think is the most important to look for?
- What is a more effective approach to cyber defense: risk-based vulnerability management or vulnerability assessment?
- What are the main KPIs that need to be implemented to have better posture in vulnerability projects?