I primarily implement the solution for clients. It's mostly used for security purposes.
Security Specialist at a security firm with 51-200 employees
Easy to set up with lots of great features and continuous investment in developing the product
Pros and Cons
- "The initial setup is mostly straightforward."
- "I'd like to see them improve their support."
What is our primary use case?
What is most valuable?
The product has many features and continues to develop its capabilities at a rapid pace.
It's done a lot of acquisitions and has really built out its cloud functionality. They're doing a good job of building out their cloud security.
The initial setup is mostly straightforward.
The solution is stable.
It can scale as necessary.
What needs improvement?
I'd like to see them improve their support.
It would be great if there was more integration with other third-party products. They have a robust API, so it's possible to write a script in Python and extend or integrate with another solution, however, will be great if they had this integration automatically.
For how long have I used the solution?
I've been dealing with the solution for three or four years.
Buyer's Guide
Tenable Vulnerability Management
November 2024
Learn what your peers think about Tenable Vulnerability Management. Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
824,067 professionals have used our research since 2012.
What do I think about the stability of the solution?
The solution is stable. I haven't had any issues. There are no bugs or glitches. It doesn't crash or freeze. We use AWS infrastructure and find it to be very reliable.
What do I think about the scalability of the solution?
The general scalability is pretty good. It's easy to add on. We haven't had an issue with expansion.
At this point in time, I'm not sure if our clients intend to increase usage.
How are customer service and support?
They need a better approach to support. When I have hard questions that need answers to, I prefer to jump to L3 support instead of getting pushed to L1. It's not solving my problems fast enough.
Which solution did I use previously and why did I switch?
I've deployed Tenable.sc and other Tenable products. I've also dealt with FireEye.
How was the initial setup?
I've been implementing the solution for four years. Therefore, I do not find it to be a difficult process. In general, it is easy to deploy, however, it depends on the client. If they are cooperative, it is easier.
We need at least one person for deployment and maintenance.
What's my experience with pricing, setup cost, and licensing?
I can't speak to the exact cost of the solution.
There may be some features that we have to pay for that are extra. However, when someone wants to use Tenable.io only for vulnerability scanning and vulnerability management, there is no hidden cost.
Which other solutions did I evaluate?
We are partners with Tenable and therefore tend to lean towards their products more than others.
What other advice do I have?
We're partners. I mainly implement the solution.
I work with a variety of different versions. I use the whole Tenable portfolio.
I'd rate the solution eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Amazon Web Services (AWS)
Disclosure: My company has a business relationship with this vendor other than being a customer: partner
Security Architect at a computer software company with 51-200 employees
Supports container scanning, and the technical support is good
Pros and Cons
- "The most valuable feature for me is container scanning because I am interested in CICD security."
- "It would be helpful if Tenable could be more clear with regard to everything the solution can and cannot do with the particular license that you have."
What is our primary use case?
I am a consultant and I advise my clients from a security standpoint. My goal is to get them to maximize value from Tenable.io. I am also a user of it.
What is most valuable?
The most valuable feature for me is container scanning because I am interested in CICD security. The standard infrastructure scanning is pretty robust, which is why I was focusing on containers.
What needs improvement?
We had some challenges with the implementation because of Docker Version 2, although with help from the support team, we were able to proceed.
It would be helpful if Tenable could be more clear with regard to everything the solution can and cannot do with the particular license that you have. The information is not available on the web site and they should be more upfront about it.
For how long have I used the solution?
I have been using Tenable.io for between six and eight months. My company had acquired it before I joined, although it was not being utilized properly.
What do I think about the stability of the solution?
I have never encountered any issues relating to stability. I have never seen a scan crash, and we've been able to configure multiple scans to run concurrently. Everything appears to run smoothly.
What do I think about the scalability of the solution?
Other than running multiple scans concurrently, we have not looked at scalability. However, I have no doubt that we will be able to get support in order to meet our expectations.
How are customer service and technical support?
The support team is very good and we are quite happy with them. When we had the trouble with Docker Version 2, they responded and were able to help us troubleshoot, and then guide us to the resolution. It now works the way we wanted it to.
Which solution did I use previously and why did I switch?
I have worked with the open-source solution OpenVAS, as well as with Rapid7 and Qualys. I can see that Tenable.io is going to be one of the big players because they are doing very well in this space.
What's my experience with pricing, setup cost, and licensing?
I think that the price is reasonable for now, although given that everybody is looking to cut costs, I think that they should take measures to lower it. There are additional features that can be licensed for an additional cost.
What other advice do I have?
My advice for anybody who is implementing this product is to have all of the requirements documented and ready in advance. You match the solution to your requirements. Out of the box, we found that Tenable.io matched almost all of our requirements. The only clarification that we needed had to do with the Tenable.io Web App license.
We have a good understanding of how Tenable.io works with containers and infrastructure, but when it comes to deep driving into applications, databases, APIs, and toolkits that you have in your environment, you need a separate license for that. This is what the Web Application license is.
In order to enjoy the maximum value, you need to have the appropriate licensing.
Overall, I am quite happy with Tenable.io.
I would rate this solution a nine out of ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Tenable Vulnerability Management
November 2024
Learn what your peers think about Tenable Vulnerability Management. Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
824,067 professionals have used our research since 2012.
Technical Consultant at a tech consulting company with 51-200 employees
Helps us manage organizations with assets with no burden to update the solution
Pros and Cons
- "There is no burden of updating or upgrading this solution."
- "The price could be lower."
What is our primary use case?
Our primary use case for the solution is managing organizations with assets. Our on-premises assets are in the private or public cloud so the customer doesn't need to have the server installed and deployed but can touch and go once the license has a provision. The user can use it right away.
How has it helped my organization?
By making different resources available for sharing among users and groups, Tenable.io provides endless possibilities for creating customized workflows for vulnerability management programs, regardless of any of the numerous regulatory or compliance drivers that demand keeping your business secure.
With Tenable.io, we can schedule scans, push policies, view scan findings, and control multiple Nessus scanners from the cloud. This enables the deployment of Nessus scanners throughout networks to both public and private clouds as well as multiple physical locations
What is most valuable?
There is no burden to update or upgrade the solution manually, so it's always up to date.
What needs improvement?
The price could be lower, and the grouping of platforms on the dashboard can be included in the next release of the product.
For how long have I used the solution?
We have been using the solution for approximately four years.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
The solution is scalable because if you want to extend the license, you can do it over a call every quarter. Additionally, the scaling does not require infrastructure requirements or additional infrastructure because all are hosted in the Tenable.io Vulnerability Management cloud.
How was the initial setup?
The initial setup is straightforward. However, once the account is provisioned for a user, Its just the data collector to set up Scanner/Agents, and it takes approximately two hours to set everything up.
What's my experience with pricing, setup cost, and licensing?
It costs approximately $2,300 yearly.
Which other solutions did I evaluate?
We chose this solution because it has a great reporting feature and provides the most CVE coverage and VPR. Additionally, the solution has been in the industry for a long time and performs well.
What other advice do I have?
I rate the solution an eight out of ten. The solution is good, but the price could be lower, and the grouping of platforms on the dashboard can be included in the product's next release. I advise new users to know the infrastructure system and networking. Additionally, there are videos and documentation that will assist them in getting set up to use the product right away.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
0 at a tech vendor with 5,001-10,000 employees
The stability can be improved, but the pricing is the best
Pros and Cons
- "The price of Tenable.io Vulnerability Management is reasonable as it is ten times cheaper than other options."
- "The stability has room for improvement."
What is our primary use case?
Tenable.io Vulnerability Management is used to scan our infrastructure.
What is most valuable?
The price of Tenable.io Vulnerability Management is reasonable as it is ten times cheaper than other options.
What needs improvement?
The stability has room for improvement.
For how long have I used the solution?
I have been using Tenable.io Vulnerability Management for one year.
What do I think about the stability of the solution?
The stability is moderate.
What do I think about the scalability of the solution?
The solution is scalable.
What's my experience with pricing, setup cost, and licensing?
The cost is determined by the number of endpoints, which is approximately one dollar per endpoint.
What other advice do I have?
I give Tenable.io Vulnerability Management a five out of ten.
The maintenance requires a subject matter expert.
I recommend Tenable.io Vulnerability Management.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Ingeniero de proyectos de TI at a tech services company with 51-200 employees
Stable with a straightforward setup and good scalability
Pros and Cons
- "The initial setup is very straightforward."
- "There needs to be better dashboard navigation."
What is our primary use case?
We primarily use the solution for on-premises monitoring. We use it to monitor the servers in our organization.
How has it helped my organization?
For most of the updates, Windows updates, et cetera, the service will let us know when we shouldn't apply an update due to the fact that there's some missing code, for example. It gives us great insights into security risks.
What is most valuable?
The vulnerability scanning has been great as it's helped us to define some issues around the updates of some things, and some items surrounding services we need to take care of.
The initial setup is very straightforward.
The solution has been very stable and quite scalable.
What needs improvement?
The dashboard and the main panel could be better. It's lacking right now. Sometimes it's hard to find what you need in the menus. There needs to be better dashboard navigation.
There needs to be more curation of core knowledge.
The documentation was hard to find. It's not all in one place. It's kind-of all over. You have to work to seek it out.
I can't recall any features that are lacking. I can't think of any additions we'd like to see in the next release.
For how long have I used the solution?
I've been using the solution for six months at this point. This has occurred within the last year. It hasn't been that long.
What do I think about the stability of the solution?
The stability is very good. I haven't had any issues with it. There are no bugs or glitches. It doesn't crash or freeze.
What do I think about the scalability of the solution?
The scalability of the solution is very good. If a company needs to expand it out, it can do so with relative ease.
We have a few network engineers that work with the solution directly.
I can't speak to any plans in terms of increasing usage. it's not something that we've discussed.
How are customer service and technical support?
I've never directly dealt with technical support. I can't speak to how knowledgeable or responsive they are.
I've read a lot of documentation and whitepapers on the product. However, they were not concentrated in one place. I had issues teaching down details about the product.
Which solution did I use previously and why did I switch?
We did previously use a different solution, however, we've found Tenable to be much better.
How was the initial setup?
The initial setup is quite straightforward. It's not complex. It was very easy to create an account
The deployment itself only took one day. It was quite fast.
We have four people on staff that are knowledgeable enough to handle deployment and maintenance.
What about the implementation team?
We handled everything ourselves. it was all online and very simple. We didn't need the assistance of a consultant or reseller.
What's my experience with pricing, setup cost, and licensing?
I don't handle the licensing aspects of the solution. I'm not aware of the costs involved.
Which other solutions did I evaluate?
We potentially looked at Qualys and Rapid7 before ultimately choosing Tenable.
I cannot control the main difference.
What other advice do I have?
We're a partner.
I'm not sure which version of the solution we're using.
I'd recommend the solution to other companies.
I'd rate the solution at an eight out of ten overall. We're mostly very happy with its capabilities.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Senior Consultant at a tech services company with 11-50 employees
Discovers quickly, very stable, and periodically updated, and but needs more integration
Pros and Cons
- "It is very stable, and it is updated periodically by adding new vulnerabilities."
- "It can have more integration."
What is our primary use case?
It is useful for scanning the whole environment to check for any vulnerabilities. We can then start deploying or closing these vulnerabilities by applying the Windows or other product patches. In the end, we have an environment with no vulnerabilities, and we increase our security posture and security levels.
What is most valuable?
It is very stable, and it is updated periodically by adding new vulnerabilities. It can discover much quickly as compared to other vendors.
Its management console and portal make it easy to use and effective.
What needs improvement?
It can have more integration.
For how long have I used the solution?
I have been using this solution for three months.
What do I think about the stability of the solution?
It is very stable.
What do I think about the scalability of the solution?
It is scalable.
How was the initial setup?
I haven't installed it on a customer's site. I just installed it in my lab in order to get familiar with the product, and that's it. It was just for testing.
It was a straightforward installation. Because it was done in my lab environment, it didn't take that much time. It took around three to four hours.
What about the implementation team?
I did it myself.
What other advice do I have?
I would recommend this solution at this time, but after installing it for more customers, my answer might change in the future.
I would rate this solution a seven out of 10.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
An inexpensive, stable solution for in-depth vulnerability scanning on the cloud, which is easy to setup and comes with good technical support
Pros and Cons
- "The solution can integrate with third parties and meets standard compliance."
- "An area of improvement for this solution is being able to customize the dashboard. For example, the dashboard does not allow us to view a previous months vulnerability results alongside current results to make comparisons."
What is our primary use case?
Our primary use case for this solution is to perform in-depth vulnerability scans on the cloud.
What is most valuable?
The solution can integrate with third parties and meets standard compliance.
What needs improvement?
An area of improvement for this solution is being able to customize the dashboard. For example, the dashboard does not allow us to view a previous months vulnerability results alongside current results to make comparisons.
For how long have I used the solution?
I have been using this solution for about two years.
What do I think about the stability of the solution?
The solution is very stable.
How are customer service and technical support?
The customer service/technical support for the solution is very good.
How was the initial setup?
The initial setup of the solution is not complicated and can easily be configured. Additionally, the solution comes with templates for assessing and auditing.
What's my experience with pricing, setup cost, and licensing?
The solution is not too expensive.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: reseller
Security Specialist at a security firm with 51-200 employees
Good integration, a simple initial setup and easily scalable
Pros and Cons
- "Technical support has been good. They respond quite quickly."
- "The interface could be improved; right now it's running on two interfaces simultaneously."
What is most valuable?
The solution's most valuable aspects are its user interface and usability. In general, Tenable is one of the best products in terms of management tools.
The solution integrates well with other solutions.
What needs improvement?
I don't have any issues with the solution at this time, and I don't think there are any features that are missing or could be added.
The interface could be improved; right now it's running on two interfaces simultaneously.
For how long have I used the solution?
I've been using the solution for half a year.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
The scalability is good. Currently, we have thousands of computers using the solution.
How are customer service and technical support?
Technical support has been good. They respond quite quickly.
How was the initial setup?
The initial setup is straightforward, as it is a cloud version.
What other advice do I have?
We use the cloud deployment model.
I'd recommend the solution. I'd rate it eight out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Download our free Tenable Vulnerability Management Report and get advice and tips from experienced pros
sharing their opinions.
Updated: November 2024
Popular Comparisons
Tenable Nessus
Tenable Security Center
Orca Security
Claroty Platform
Microsoft Defender Vulnerability Management
Rapid7 Metasploit
The NodeZero Platform
Amazon Inspector
Buyer's Guide
Download our free Tenable Vulnerability Management Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Can you recommend API for Tenable Connector into ServiceNow
- What's the difference between Tenable Nessus and Tenable.io Vulnerability Management?
- Which one to buy out of the following products: Tenable SC, Tenable.io, Tenable.ep or Tenable.ad?
- What are the differences between Tenable.sc and Tenable.io?
- How inadvisable is it to use a single vulnerability analysis tool?
- What are the benefits of continuous scanning for vulnerability management?
- When evaluating Vulnerability Management, what aspect do you think is the most important to look for?
- What is a more effective approach to cyber defense: risk-based vulnerability management or vulnerability assessment?
- What are the main KPIs that need to be implemented to have better posture in vulnerability projects?
- Which is the best vulnerability scanner tool?