What users are saying about
27 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener'>trScore algorithm: Learn more.</a>Score 9 out of 100
Based on 27 reviews and ratings
53 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener'>trScore algorithm: Learn more.</a>Score 8.1 out of 100
Based on 53 reviews and ratings
Attribute Ratings
- AWS Config is rated higher in 1 area: Likelihood to Recommend
Likelihood to Recommend
8.7
AWS Config
87%
6 Ratings

7.0
Rapid7 InsightVM (Nexpose)
70%
8 Ratings
Performance
9.6
AWS Config
96%
4 Ratings

Rapid7 InsightVM (Nexpose)
N/A
0 Ratings
Support Rating
AWS Config
N/A
0 Ratings

7.2
Rapid7 InsightVM (Nexpose)
72%
4 Ratings
Likelihood to Recommend
AWS Config
It's really good if your infrastructure services is all in AWS, that means everything could be audited and monitored using AWS config. You also can create alarms to notify you or your team about any changes on your AWS resources which is very useful to prevent abuse if you have a fairly large team. It's also very useful whenever some third party wants to audit your AWS resources, if you have a fairly comprehensive AWS config configured, the auditing process will be easy since they only need to look at your AWS config setup.

Verified User
Engineer in Information Technology
Professional Training & Coaching Company, 11-50 employeesRapid7 InsightVM (Nexpose)
For highly detailed reports of vulnerabilities in an environment, Rapid7 InsightVM (Nexpose) is top-notch. The data is easily manipulated to get the results you are looking for. Setting up groups for active scans on a schedule has been a great help as well as the ad-hoc reports for any new vulns being reported.

Verified User
Analyst in Information Technology
Hospital & Health Care Company, 10,001+ employeesPros
AWS Config
- The ability to track changes in AWS is paramount, AWS config allows you to do this
- Allows the auditing of an AWS account
- Can view history of an account that has AWS config enabled

Verified User
Administrator in Information Technology
Gambling & Casinos Company, 201-500 employeesRapid7 InsightVM (Nexpose)
- Being a vulnerability scanner tool, its purpose is to scan the systems to find the vulnerabilities. We can define the assets like IP address for the scans and it also allows to either schedule the scan at a preferred time or start the scan immediately. Upon completion of the scan, this tool can result provide the details like host type, OS information, hardware address, along with the vulnerabilities.
- Rapid7 Nexpose has a list of templates to perform the scan. Once the templates are defined then the scans are performed accordingly.
- It also contains an option to add credentials/authentication using passwords, usernames, private keys to perform the credential-based scans which I think is a great feature.

Verified User
Consultant in Information Technology
Information Technology and Services Company, 51-200 employeesCons
AWS Config
- It's only AWS, no third party.
- Not the most intuitive interface, but with a little getting used to it is OK.

Verified User
Professional in Information Technology
Fund-Raising Company, 1001-5000 employeesRapid7 InsightVM (Nexpose)
- Frequent updates and console lockups.
- A lot of issues with scans running long out of nowhere, causing resource issues for the next scans.

Verified User
Analyst in Finance and Accounting
Financial Services Company, 1001-5000 employeesPricing Details
AWS Config
General
Free Trial
—Free/Freemium Version
—Premium Consulting/Integration Services
Yes
Entry-level set up fee?
No
Starting Price
—AWS Config Editions & Modules
—
Additional Pricing Details
With AWS Config, you are charged based on the number of configuration items recorded, the number of active AWS Config rule evaluations and the number of conformance pack evaluations in your account. A configuration item is a record of the configuration state of a resource in your AWS account. An AWS Config rule evaluation is a compliance state evaluation of a resource by an AWS Config rule in your AWS account, and a conformance pack evaluation is the evaluation of a resource by an AWS Config rule within the conformance pack.Rapid7 InsightVM (Nexpose)
General
Free Trial
—Free/Freemium Version
—Premium Consulting/Integration Services
—Entry-level set up fee?
No
Starting Price
$0
Rapid7 InsightVM (Nexpose) Editions & Modules
Edition
insightIDR | $521 |
---|---|
Vulnerability Management | $221 |
Application Security | $2,0002 |
Log Management | $193 |
insignConnect | Contact sales team |
- per asset
- per app
- per GB
- none
Additional Pricing Details
—Performance
AWS Config
AWS Config 9.6
Based on 4 answers
Would rate lower for other workloads but for AWS workloads its simple to set up, cost effective and customisable. Primary use case is compliance from a governance perspective.

Verified User
Professional in Finance and Accounting
Information Services Company, 501-1000 employeesRapid7 InsightVM (Nexpose)
No score
No answers yet
No answers on this topic
Support Rating
AWS Config
No score
No answers yet
No answers on this topic
Rapid7 InsightVM (Nexpose)
Rapid7 InsightVM (Nexpose) 7.2
Based on 4 answers
I gave it a seven due to the functionality and general ease of use after the initial setup headaches, but compared to Qualys, Rapid7 Nexpose falls short on features and ease of use. Their support drags this rating down a point as well. I have gone weeks with no update on semi-critical issues and typically have to make call after call to get a semi-coherent response.

Verified User
Analyst in Finance and Accounting
Financial Services Company, 1001-5000 employeesAlternatives Considered
AWS Config
I do not know or have used any other product in AWS cloud space that matches what AWS Config provides. We have some custom built monitoring and governance, however that is there because AWS Config does not provide it currently.

Verified User
Team Lead in Engineering
Financial Services Company, 10,001+ employeesRapid7 InsightVM (Nexpose)
For reporting, dashboard, content creation etc. Tenable SecurityCenter is the clear winner with over-the-top capabilities in their application. On the agents side this one was easier to implement and way easier to manage.

Verified User
Engineer in Information Technology
Non-Profit Organization Management Company, 501-1000 employeesReturn on Investment
AWS Config
- A "Big Fish" company that is more concerned about the security of their data came aboard with us more easily since they trust us with the AWS config setup
- Less time to debug or finding out issue on infrastructure whenever it happens
- Easy and fast to roll back whenever changes that caused issues happen

Verified User
Engineer in Information Technology
Professional Training & Coaching Company, 11-50 employeesRapid7 InsightVM (Nexpose)
- After spending 2 years configuring, tuning, troubleshooting, and ultimately having nothing but regrets, we migrated away from the tool and accepted the loss.
- Support had a variety of opinions, none of them consistent. No best practices. Lots of secret tricks known by support, none documented or shared until after problems are found.
- Consulting services are available to come out and do a health check of your deployment, for a fee.

Verified User
Analyst in Information Technology
Oil & Energy Company, 1001-5000 employees