KnowBe4 KCM GRC Platform (discontinued) vs. Qualys TruRisk Platform

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
KCM GRC Platform
Score 7.3 out of 10
N/A
KnowBe4 headquartered in Clearwater offers their governance, risk, compliance platform, the KCM GRC Platform.N/A
Qualys TruRisk Platform
Score 8.2 out of 10
N/A
Qualys TruRisk Platform (formerly Qualys Cloud Platform, or Qualysguard), from San Francisco-based Qualys, is network security and vulnerability management software featuring app scanning and security, network device mapping and detection, vulnerability prioritization schedule and remediation, and other features to provide vulnerability management and network attack surface reduction.N/A
Pricing
KnowBe4 KCM GRC Platform (discontinued)Qualys TruRisk Platform
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
KCM GRC PlatformQualys TruRisk Platform
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
KnowBe4 KCM GRC Platform (discontinued)Qualys TruRisk Platform
Top Pros

No answers on this topic

Top Cons

No answers on this topic

Features
KnowBe4 KCM GRC Platform (discontinued)Qualys TruRisk Platform
Governance, Risk & Compliance
Comparison of Governance, Risk & Compliance features of Product A and Product B
KnowBe4 KCM GRC Platform (discontinued)
9.3
1 Ratings
21% above category average
Qualys TruRisk Platform
-
Ratings
Common repository of GRC items10.01 Ratings00 Ratings
Risk management10.01 Ratings00 Ratings
GRC policy management8.01 Ratings00 Ratings
Threat Intelligence
Comparison of Threat Intelligence features of Product A and Product B
KnowBe4 KCM GRC Platform (discontinued)
-
Ratings
Qualys TruRisk Platform
8.7
7 Ratings
9% above category average
Network Analytics00 Ratings8.86 Ratings
Threat Recognition00 Ratings8.37 Ratings
Vulnerability Classification00 Ratings8.77 Ratings
Automated Alerts and Reporting00 Ratings9.07 Ratings
Threat Analysis00 Ratings8.27 Ratings
Threat Intelligence Reporting00 Ratings8.97 Ratings
Automated Threat Identification00 Ratings8.77 Ratings
Vulnerability Management Tools
Comparison of Vulnerability Management Tools features of Product A and Product B
KnowBe4 KCM GRC Platform (discontinued)
-
Ratings
Qualys TruRisk Platform
8.5
9 Ratings
4% above category average
IT Asset Realization00 Ratings8.89 Ratings
Authentication00 Ratings7.86 Ratings
Configuration Monitoring00 Ratings8.47 Ratings
Web Scanning00 Ratings8.88 Ratings
Vulnerability Intelligence00 Ratings8.67 Ratings
Best Alternatives
KnowBe4 KCM GRC Platform (discontinued)Qualys TruRisk Platform
Small Businesses
Rencore Code (SPCAF)
Rencore Code (SPCAF)
Score 8.8 out of 10
ThreatDown, powered by Malwarebytes
ThreatDown, powered by Malwarebytes
Score 8.7 out of 10
Medium-sized Companies
Forcepoint DLP
Forcepoint DLP
Score 8.8 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.2 out of 10
Enterprises
Forcepoint DLP
Forcepoint DLP
Score 8.8 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.2 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
KnowBe4 KCM GRC Platform (discontinued)Qualys TruRisk Platform
Likelihood to Recommend
8.0
(1 ratings)
8.6
(25 ratings)
Usability
-
(0 ratings)
2.0
(1 ratings)
Support Rating
10.0
(1 ratings)
5.0
(7 ratings)
User Testimonials
KnowBe4 KCM GRC Platform (discontinued)Qualys TruRisk Platform
Likelihood to Recommend
Discontinued Products
KnowBe4 KCM GRC Platform is well suited for a company that knows what they're doing compliance wise and needs to save time doing it. It won't be something you can spend a few hours on and then put on autopilot. It was made to create a rhythm within your own team, and you'll need to have the buy-in. It's useful for IT and Legal teams that already have a vendor risk management process, but want to have a better handle on it. Giving an outside auditor read-only access to a scope is also a huge time saver.
Read full review
Qualys
Qualys Cloud Platform is well suited for organizations that need additional tools to secure and bolster their security from end to end. The automated, real-time threat protection is very quick to notify an admin of potential vulnerabilities and risks, as well as recommending quick fixes to resolve/close the gap before an incident occurs. QCP excels at portraying all of these in a single pane of glass, and find that the Qualys reports are more detailed than competitor product lines. One of our big issues with QCP is that you do have to pay for each scanner, which can quickly add up to large costs. For this reason, I would rate Qualys at a ~7 due to great features and functionality, but overall value could be better for a large organization. I would also say that QCP may make more sense for smaller organizations due to this pricing model.
Read full review
Pros
Discontinued Products
  • Mapping controls across different compliance frameworks. It saves you a ton of time and energy!
  • Performing risk assessments at the granularity that you prefer, splitting assessments across departments and teams if you wish.
Read full review
Qualys
  • It really does well at vulnerability scanning, which it is well known for. It's accuracy at finding vulnerabilities is top notch, more so than a lot of other vulnerability tools out there. In an organization/company you want this kind of accuracy at finding vulnerabilities in your network/endpoints
  • It is very good at managing endpoints on a consistent basis, meaning you can add endpoints to Qualys and have the platform scan/track/protect for vulnerabilities on an ongoing basis, without user intervention
  • It does really well at separating out and identifying what levels of criticality each vulnerability should fall into. This way, an organization/company can attack the more critical vulnerabilities first
Read full review
Cons
Discontinued Products
  • Vendor management has a few kinks to work out. We want to be able to do internal questionnaires for vendors as a compliance checklist before we sign off on a contract. Nothing in the works yet, but there are a few workarounds.
  • The navigation between different tasks in scope is clunky, and it's easy to lose your place, and it forces you back to the main page of the scope to retrace your steps.
Read full review
Qualys
  • This program is really complicated, the multiple functions that are presented to us are not very clear and in some cases, it is a matter of intuition to execute a function, it is not very informative.
  • The interface of this program can be a real problem; for our taste, this program looks a bit messy, and the interface does not help or guide you to find the options you need.
Read full review
Usability
Discontinued Products
No answers on this topic
Qualys
Again, the usability of Qualys has been a pinpoint for this entire review. It was easily the worst thing about the product and because of this, I would not recommend Qualys to anybody in my field. This should be something that Qualys strives to improve if they wish to stay in business.
Read full review
Support Rating
Discontinued Products
Support from KnowBe4 KCM GRC Platform is always great. It's always in-house localized support, with excellent response times, and dedicated Customer Success Managers to answer the bulk of your questions or take your suggestions and make them a feature request. They will also reach out at least quarterly and do health checks to make sure you're using the platform to the best of your ability.
Read full review
Qualys
They had a support page within the WAS to report any concerns or seek help. But the UI of that is not smooth. Regardless support staff were pretty responsive and helpful. They scheduled calls to understand and address our problems. Email support is good as well.
Read full review
Alternatives Considered
Discontinued Products
Quantivate and Fusion were the other two options we checked out. The quantity was high, and a good bit more expensive, but it was the best performing with its platform. They also had more modules that each cost extra to add to your subscription. KnowBe4 KCM GRC Platform was all-in-one and a little less mature, but the better buy. Fusion was hard to follow in the demo, and I was not overly impressed. I may have made my decision early enough in the demo to not pay much more attention to it.
Read full review
Qualys
As described before Qualys is used to scan periodically the environment in order to check if there are some packages (Linux) or Applications (Windows) outdated, generating reports to the Service Owners, fulfilling what's is expected from us, attending all our expectations regarding the tool. That's why we'd choose Qualys to our organization.
Read full review
Return on Investment
Discontinued Products
  • Just having the capacity to do things the right way, and formally, has driven some of our compliance efforts.
  • Due to licensing limitations, we likely overspent on seats to the platform that we didn't need but also didn't want to miss out on.
Read full review
Qualys
  • Big time-saving tool vs. having to comb through several system reports which ultimately can still have you missing unapproved software.
  • Quick snapshot via the dashboard provided a nice summary of where you're assets meet or do not meet your organization's policy requirements.
Read full review
ScreenShots

KCM GRC Platform Screenshots

Screenshot of View All Compliance Requirements: View all your compliance requirements with details, descriptions, status, scope, and controls for each requirement.Screenshot of View All Compliance Tasks: The “My Dashboard” view narrows focus to tasks assigned to an individual end user, allowing your entire organization to work together towards compliance.Screenshot of View by Scope and Scope Status Report: Scopes enable you to track multiple projects in one place simultaneously allowing you to provide granular user permissions across each project.Screenshot of View Policy Campaign: See all campaign details and easily keep track of your policy campaign completion percentage and user acknowledgments.Screenshot of View Risk Breakdown and Risk Categories: The Risk Dashboard gives you high-level details on your risk categories and risk score associated with these categories.Screenshot of Easily Add Risks: The Risk Wizard makes it easy for you to create unique organizational risks or import risks from existing spreadsheets to your risk register.