We compared Qualys VMDR and Rapid7 InsightVM based on our users reviews in six parameters. After reading the collected data, you can find our conclusion below:
The setup process for Qualys VMDR was considered simple and quick, with users reporting it taking anywhere from a few minutes to a couple of days. However, there were some difficulties mentioned regarding integration and data privacy. Despite these challenges, the overall feedback on the setup was positive. On the other hand, the initial setup for Rapid7 InsightVM had mixed experiences. While some users found it easy and completed it within an hour or a few hours, others faced difficulties and it took them several months, even with professional assistance. The ease of setup was generally rated between three to five out of five.
Qualys VMDR is notable for its effective prioritization system, ongoing monitoring, adaptable dashboard, and extensive vulnerability overview. On the other hand, Rapid7 InsightVM stands out for its efficient scan engine installation, precise scanning, customizable dashboards, and risk scoring.
Both Qualys VMDR and Rapid7 InsightVM have areas that could be improved. Qualys VMDR could enhance user experience and UI design, improve SLA tracking and batch prioritization, integrate with other products, and improve reporting. On the other hand, Rapid7 InsightVM needs better integration, enhanced reporting, improved user-friendliness, and stronger customer support.
The cost of setting up Qualys VMDR can differ based on required features, with reviewers finding it reasonably priced or competitive. However, there are extra charges for specific features. In contrast, Rapid7 InsightVM is generally considered to be more expensive, but some users find the pricing reasonable because of the flexibility in defining assets and sites.
Qualys VMDR is praised for its positive impact on ROI, effectively mitigating risks and enhancing cybersecurity. Nonetheless, there are apprehensions regarding rising expenses. On the other hand, Rapid7 InsightVM is highly regarded for its outstanding ROI, effectively thwarting cyber attacks and delivering substantial value. While some reviewers perceive the ROI as satisfactory, others consider it to be moderate.
The customer service for Qualys VMDR has received both positive and negative feedback. Some customers appreciate the convenience of accessing a global team and the implementation of suggested improvements. However, there are concerns about the response time and the expertise of the support personnel. In contrast, Rapid7 InsightVM's support is generally regarded as good, with well-informed technical assistance. Nonetheless, there have been instances of delayed response time.
Comparison Results
Based on the reviews, Qualys VMDR offers a simple and convenient setup process, along with a strong prioritization system and valuable features. However, it requires enhancements in user experience, integration, reporting, and pricing. On the other hand, Rapid7 InsightVM also provides an easy setup, valuable features like scan engines and customizable dashboards. It could benefit from improved integration, reporting, user-friendliness, and customer support. Qualys VMDR seems to have an advantage in prioritization and comprehensive vulnerability management, while Rapid7 InsightVM may excel in scan optimization and remediation management.
"Technical support is great and we've never really had a problem."
"The most valuable feature is that this solution is very lightweight."
"The vulnerability management feature is what I used the most. It is a good SaaS product. It is easy to use. It has a nice UI where you can see all the assets and vulnerabilities."
"What I like about Qualys VM is the dashboard presentation. It's very good."
"It's very configurable to adjust impact to systems."
"The features that are most valuable are the identification, scan features, and the identification of vulnerabilities."
"The most recent is VMDR, which provides a comprehensive overview of how to detect, patch, and remediate specific vulnerabilities."
"The solution is easy to use."
"This solution is very easy to use and easy to install."
"We can create our own templates."
"Rapid7 have a good distribution network with good support and market presence."
"This solution is much more user-friendly than past solutions I have used."
"InsightVM offers a robust platform for identifying, prioritizing, and addressing vulnerabilities across an organization's IT infrastructure."
"The assessment is most valuable."
"It is a stable solution."
"The remediation project is a pretty effective because it allows us, as clients or countries, to choose specific assets and set limitations on them for a certain period which allows us to track and follow up on those limitations. However, when it comes to real-time monitoring and live dashboards, InsightVM doesn't quite fit the bill. It's not a real-time solution and is not instant."
"This solution could be improved by extending the agent capabilities to different operating systems including Mac and Linux. We would also like the capability to easily check for vulnerability in assets in the IOTs."
"They should make it accessible for more operating systems."
"Its integration with ServiceNow and other similar products is complicated and can be improved. It should also have virtual batching. They should support more standards and compliance requirements and more customizations. For policy compliance, they can add the standards required by the countries in the Middle East. Each country generates its own standards and frameworks, and those frameworks should be there in all products, not only in Qualys. The market here is huge, especially in the cybersecurity field. Qatar has a framework for Qatar 2022, and each and every company in the public or private sector has to follow the Qatar 2022 framework."
"Qualys Container Security can improve the interface. It could be easier to navigate and be enriched."
"The disadvantage of working with Qualys is that the graphical interface is quite outdated."
"Improve the API speed."
"When you want to cover yourself for scalability, you will be charged for the number you place on the scan itself."
"The price could be better. Asset view is still a legacy feature. I'm not able to extract the information about the asset with complete details. It would be better if they fixed that in the next release. I know Qualys is already working on it, so I'm hopeful it will be available in the next five or six months. That would be something that's changed where I seek improvement."
"Some difficulties with the online reporting and lack of integrations."
"The solution needs to improve its vulnerability design to include CVC results."
"Patch management is the only missing feature I can think of. Rapid7 detects vulnerabilities, but it should also help you manage patches."
"In order to be able to properly test the solution and make a decision, I would like to receive the test license code instantly and eliminate the wait time."
"There should be containerization within the VM."
"Rapid7 could be easier to manage."
"Rapid7 InsightVM, has impressive capabilities, especially when it comes to managing video equipment. However, we've noticed that Rapid7 also offers a cloud solution called CloudSec, and we don't have that. We think it would be better if InsightVM had all the features for both on-premise and cloud management."
"I would like to see more integration."
Qualys VMDR is ranked 3rd in Risk-Based Vulnerability Management with 76 reviews while Rapid7 InsightVM is ranked 4th in Risk-Based Vulnerability Management with 54 reviews. Qualys VMDR is rated 8.2, while Rapid7 InsightVM is rated 8.0. The top reviewer of Qualys VMDR writes "Good visibility but expensive and needs better support". On the other hand, the top reviewer of Rapid7 InsightVM writes "You can scan a network, and receive recommendations to address vulnerabilities with the click of a button". Qualys VMDR is most compared with Tenable Nessus, Tenable Security Center, Microsoft Defender Vulnerability Management, Tenable Vulnerability Management and Microsoft Defender for Cloud Apps, whereas Rapid7 InsightVM is most compared with Tenable Nessus, Tenable Security Center, Microsoft Defender Vulnerability Management, Rapid7 InsightIDR and Wiz. See our Qualys VMDR vs. Rapid7 InsightVM report.
See our list of best Risk-Based Vulnerability Management vendors.
We monitor all Risk-Based Vulnerability Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.