TrustRadius Insights for Qualys VMDR are summaries of user sentiment data from TrustRadius reviews and, when necessary, third party data sources.
Business Problems Solved
Users have found the automated scanning feature of the product helpful in identifying vulnerabilities in their systems. It supports most operating systems and provides the option to install an agent for better compatibility. The patching module helps users determine if vulnerabilities can be patched and provides information on patch availability. Real-time threat protection categorizes vulnerabilities, allowing users to prioritize remediation efforts. The product aids in managing assets within an organization, providing increased visibility into different components. Users appreciate the ability to prioritize vulnerabilities based on importance. The variety of applications included in the product, such as asset management and web application scanning, enhance its features. It helps in detecting and managing vulnerabilities, as well as monitoring for malicious activity.
Vulnerability management has become easier with the product, allowing for better tracking. It supports the implementation of a complete vulnerability management program in large corporations. Users find it time-saving and useful for solving vulnerability issues on Windows servers. Key roles of the product in organizations include asset identification, vulnerability management, patch prioritization, and risk management. Users appreciate the faster resolution provided by the product. It aids in vulnerability management of information systems and accurately reporting vulnerabilities and compliance status. Known issues are being resolved with its help. The inventory management feature enhances overall work experience while discovering unmanaged assets is made possible. Patching gaps are identified, aiding timely patching activities within the IT infrastructure. The product is suitable for continuous security monitoring and response capabilities.
The question to ask this is - what DOESN'T Qualys VMDR not do? Here are the widgets I have used: - Vuln scans of devices (server/PC/network) - Patch mgmt - Threat intel feed (with prioritization & use of MITRE) - Asset mgmt - PCI ASV onboard
Pros
Seamless reporting across the different widgets (i.e. TruRisk)
DEEP-DIVE into an asset's info/vulns
Baked-in PCI ASV scans that a Qualys QSA can approve
Cons
Add the container feature a little better
Less of use API's & more connectors to keep it simple for onboarding data
Agent for network devices - akin to what I get for server/desktop
Likelihood to Recommend
For any company that does not have a bottomless budget & endless resources this is perfect. Which is most companies - you get multiple features OOTB for an incredibly reasonable cost. I look forward to using Qualys VMDR again.
VU
Verified User
Director in Information Technology (1001-5000 employees)
We use Qualys VMDR as a single comprehensive solution for cybersecurity risk, discovery, assessment, detection, and response in our organization.
Security compliance, Visibility, Patching are main business problems that have been addresses by Qualys VMDR
Pros
Asset Discovery and Asset Management
Vulnerability Management
Cons
Front-line technical support
A little expensive in comparison with other solutions
Likelihood to Recommend
Qualys is a Vulnerability Managment tool that allows companies of any size to check the vulnerabilities across their systems. It is a must have tool if you have a medium size IT environment and no VM tools. It is also a good starting point for implementing security systems.
VU
Verified User
Director in Information Technology (501-1000 employees)
Integration was one of our key challenges as we were going through a consolidation of many tools. Bringing everything together and getting visibility in one Qualys dashboard has helped us. To secure our IT infrastructure and manage all risks related to our assets in one place is very easy now. Now we can see everything related to asset on dashboard and take action quickly.
Pros
Cloud Security
Network Security
Infrastructure Security
Asset Management
Patch Management
Compliance
Reporting
Cons
Patch Management
Application Security
Ghost asset scanning
Likelihood to Recommend
As a member of an Endpoint security team, I worked on finding a variety and quantity of Endpoints on the network and Qualys VMDR helped us a lot to find those and do security and compliance risk. It continuously protects all your endpoints from suspicious activity and attacks from prevention to detection to response.
Qualys VMDR enabled us, en masse, to view vulnerabilities at our company, their scope, and how urgent they were to address via patches, upgrades, or otherwise. Sometimes, even in a mid-sized company, it can be very easy to miss obvious holes in your security because of too much information - tools like Qualys VMDR help break it down into chunks that are much easier to address.
Pros
Vulnerability Assessment
Ranking
Suggestions for Patches
Cons
UI is a bit clunky
Sorting could use work
More direct links to other Qualys modules (e.g. Patch Management)
Likelihood to Recommend
Qualys VMDR is best suited for mid-to-large sized companies whose visibility on security within their company's operating systems could be somewhat lacking.
VU
Verified User
Engineer in Information Technology (1001-5000 employees)
We have a big customer which has over 2 million devices to manage and it is a very complex infrastructure. Qualys VMDR did come in handy to manage vulnerability aspect of management. Its is very good tool to use and easy to learn. It has wide set of functionality with role management as well in place.
Pros
vulnerability detection
updated CVEs and support from product
Reporting
Scheduling tasks
Cons
Asset Management
Custom Reporting option
More options on the dashboard customization
Likelihood to Recommend
Qualys VMDR supports both remote scanning and as well as agent based scanning. With a complex infrastructure with over 2 million devices and 100s getting added and removed on daily basis makes the operations challenging. Qualys VMDR has a great feature to do discovery scan to detect active devices on the network and perform vulnerability scans on those assets. Authentication is also easy to setup and use.
VU
Verified User
Consultant in Information Technology (10,001+ employees)
In our organization we use the Qualys VMDR cloud solution in order to compliment our asset management team in recognizing vulnerabilities with our assets, collect information on our our IoT assets, and analyze risk with a proactive approach. In our line of work we focus highly on ensuring cybersecurity risks are at an all time low and Qualys VMDR reports help with that immensely as we have such a large environment.
Pros
Qualys VMDR automates the remediation process for risks without code.
Scans and detects all of our assets whether they are IT or IOT
Analyzes our environment for misconfigurations and measures risk against industry benchmarks
Cons
Qualys VMDR can definitely improve on its reporting of assets as we have caught devices not captured in the Qualys VMDR scans.
We would like to see an improvement on the dashboard interface as it is faulty sometimes.
Qualys VMDR should focus on more competitive pricing as it is very expensive.
Likelihood to Recommend
Qualys VMDR is best suited for larger companies with a very large IT asset footprint. Qualys VMDR is not suited for businesses that are small and upcoming as the price for the tool is very expensive and could be a budget sink if not used properly. In our organization we use the Qualys VMDR dashboard and reporting in order to collect any vulnerabilities we miss during our routine audits to ensure that our environment is stable and protected for attacks.
VU
Verified User
Technician in Information Technology (51-200 employees)