What users are saying about
37 Ratings
55 Ratings
37 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener'>trScore algorithm: Learn more.</a>
Score 8.7 out of 100
55 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener'>trScore algorithm: Learn more.</a>
Score 8.7 out of 100

Attribute Ratings

  • AWS CloudTrail is rated higher in 1 area: Likelihood to Recommend

Likelihood to Recommend

9.5

AWS CloudTrail

95%
4 Ratings
8.0

Nessus

80%
6 Ratings

Likelihood to Renew

AWS CloudTrail

N/A
0 Ratings
9.1

Nessus

91%
1 Rating

Usability

AWS CloudTrail

N/A
0 Ratings
9.7

Nessus

97%
2 Ratings

Support Rating

AWS CloudTrail

N/A
0 Ratings
6.8

Nessus

68%
8 Ratings

Likelihood to Recommend

Amazon AWS

It is necessary to enable [AWS] Cloudtrail when using AWS in a production environment, otherwise you will not have any idea what is happening within your accounts. Third party monitoring applications will all require [AWS] CloudTrail to be enabled as well. I would not recommend it solely as a monitoring tool, to get the most out of it you must send the logs elsewhere. Either to Cloudwatch logs or a third party product.
Read full review

Tenable Network Security

Nessus is perfectly suitable for performing comprehensive vulnerability assessment scans being a vulnerability scanner. It is less appropriate for performing penetration testing since it is not a penetration testing tool, it does not have the ability and modules to exploit the vulnerabilities of the system.
Read full review

Pros

Amazon AWS

  • AWS native service
  • Extremely powerful
  • Multi-region support
  • Optional encryption
  • File integrity validation
Read full review

Tenable Network Security

  • With Nessus we can find the missing critical patches for a server or workstations.
  • Nessus points out any vulnerable or outdated software Technologies used in the system, thus eliminating any chances for security flaws being turned up.
  • Nessus typically points any configuration level issues in accordance with the OWASP guidelines. Even the configuration of SSL related which are most of the time handled by some vendors or 3rd parties.
  • Nessus not only lists out these Vulnerabilities but describes clearly the vulnerabilities in details with its thousands of plugins updated regularly, the tool also recommends solution with practical details of easy implementation.
Read full review

Cons

Amazon AWS

  • It could be more commercial
Read full review

Tenable Network Security

  • Could use an upgrade within reports.
  • Scans can take a long time to complete. Have to break them down in small sections.
Read full review

Pricing Details

AWS CloudTrail

Starting Price

Editions & Modules

AWS CloudTrail editions and modules pricing
EditionModules

Footnotes

    Offerings

    Free Trial
    Free/Freemium Version
    Premium Consulting/Integration Services

    Entry-level set up fee?

    No setup fee

    Additional Details

    You can view, filter, and download the most recent 90 days of your account activity for all management events in supported AWS services free of charge. You can set up a trail that delivers a single copy of management events in each region free of charge. Once a CloudTrail trail is set up, Amazon S3 charges apply based on your usage. You will be charged for any data events or additional copies of management events recorded in that region. In addition, you can choose CloudTrail Insights by enabling Insights events in your trails. CloudTrail Insights analyzes write management events, and you are charged based on the number of events that are analyzed in that region.

    Nessus

    Starting Price

    $0

    Editions & Modules

    Nessus editions and modules pricing
    EditionModules
    1 Year$2,790.001
    1 Year + Advanced Support$3,190.002
    2 Years$5,440.003
    2 Years + Advanced Support$6,240.004
    3 Years + Advanced Support$9,151.005
    3 Years$7,951.006

    Offerings

    Free Trial
    Free/Freemium Version
    Premium Consulting/Integration Services

    Entry-level set up fee?

    No setup fee

    Additional Details

    Likelihood to Renew

    Amazon AWS

    No answers on this topic

    Tenable Network Security

    Nessus is best and easy to use application for Vulnerabilities finding and reporting, it has multiple platforms and wide scope covering almost all devices for security improvement so far, thus we are very likely to continue its services.
    Read full review

    Usability

    Amazon AWS

    No answers on this topic

    Tenable Network Security

    It's very much a plug and play application that the user can go into with limited knowledge and set-up scans in minutes.
    Read full review

    Support Rating

    Amazon AWS

    No answers on this topic

    Tenable Network Security

    I haven't needed to contact support yet. But issues are easily solved with a quick internet search which means support and by extension, the larger community are involved and knowledgeable.
    Read full review

    Alternatives Considered

    Amazon AWS

    The ease of building, implementing and searching AWS CloudTrail is second to none. The JSON file structure that included in CloudTrail in a log format is very useful. The logs will capture a lot of useful data from the API calls that can be used for crafting strong security policies if you choose to do so. This security policies can be implemented via Lambda or CloudWatch Events
    Read full review

    Tenable Network Security

    Sometimes when we identify a vulnerability with Nessus that has an exploit, we made a proof of concept with Metasploit in order to show to the IT managers the importance of the software/hardware hardening.
    Read full review

    Return on Investment

    Amazon AWS

    • Allows us to investigate any strange api actions
    • Increases security
    • Audit trail of changes made in AWS
    Read full review

    Tenable Network Security

    • Nessus certainly has a positive impact while me while performing my job, either as security research, or performing vulnerability assessments for clients. It gives a lot of information about the system/application after performing scans. The number of false positives is also less compared to other vulnerability scanners.
    • The professional edition is very useful as policy templates available in this edition are very handy and useful even to perform compliance scan like PCI DSS scan.
    • Also, the ability to export the scan results into reports in formats like HTML, PDF is very useful which could be for performing system/application reviews.
    Read full review

    Screenshots

    Add comparison