TrustRadius: an HG Insights company

Tenable Security Center

Score8.9 out of 10

39 Reviews and Ratings

What is Tenable Security Center?

Tenable Security Center (formerly Tenable.sc) from Tenable Network Security in Baltimore, presents a vulnerabiliy management option used to identify and prioritize vulnerabilities based on risk to businesses. It is managed on premises.

Categories & Use Cases

Top Performing Features

  • Network Analytics

    Analyzes various data reports and logs (DNS, firewall, user data, security information etc.) to identify threats in a network.

    Category average: 7.3

  • Threat Recognition

    Detection and recognition of malicious software within a network that could pose a threat to sensitive information.

    Category average: 7.9

  • Automated Alerts and Reporting

    Systems in place to automatically alert, report, or notify of issues that may need timely remediation.

    Category average: 8.2

Areas for Improvement

  • Vulnerability Classification

    Prioritizing vulnerabilities, to determine which vulnerabilities are most urgent and require a quicker resolution.

    Category average: 8.8

  • Automated Threat Identification

    Leveraging multiple sources of information (such as threat intelligence databases) to automatically identify threats.

    Category average: 7.8

  • Authentication

    Authentication of users and services within a network to prevent vulnerabilities from being introduced to the network.

    Category average: 8.1

Industry leading centralized platform for management of Digital assets which accurately identify, investigate, and prioritize vulnerabilities.

Use Cases and Deployment Scope

Tenable Security Center is primary used in our company as a unified vulnerability management platform to manage multiple Nessus scanners and to integrate with other solution solutions. Tenable Security Center provides centralized platform for management of asset repositories, configuration of scan policies, user management , dashboards and report management. Tenable Security Center provides holistic view of overall security posture in one central location using dashboards and reports with hundreds of built in templates.

Pros

  • Nessus Scan Engine is efficient and accurate, and provides comprehensive vulnerability assessments.
  • Provides visibility and real-time monitoring of digital assets
  • provide a comprehensive view of risks using Vulnerability priority rating (VPR)

Cons

  • Policies are very complex and different component has be be configured separately to create a scan policy
  • Documentation is complex to follow
  • Tenable Security Center is a great product but support needs some improvement to help business user to configure and implement solution as per business requirements.

Return on Investment

  • Having a full visibility on your assets and potential vulnerabilities provides 90% confidence of reduced attach surface

Usability

Best VM tool to find the gaps in your infra: Tenable.sc

Pros

  • On-premises solution
  • Customized reports based upon standard industry regularities.
  • Continuous asset discovery
  • Passive scanning

Cons

  • Centralized vulnerability management with sensors.
  • Network health assessment and Incident response.
  • For alerting or notification, it should also support the SMS gateway.

Most Important Features

  • Pre-defined checks for industry standards and regulatory mandates, such as CERT, PCI DSS, HIPAA, etc.
  • Tenable.sc supports multiple scanning options, including passive network monitoring, non-credentialed and credentialed scanning for deep analysis, and configuration auditing.
  • Anomaly/malware detection

Return on Investment

  • Highly customizable dashboards/reports
  • Predictive prioritization
  • Out of box integration
  • Active and passive scanning
  • Continuous monitoring

Alternatives Considered

Qualys Private Cloud Platform

Other Software Used

Qualys Private Cloud Platform, Tenable.io, Rapid7 InsightVM (Nexpose)

Maximum EndPoint Visibility with Tenable.sc

Pros

  • Vulnerability management from one place
  • Maximum endpoint visibility
  • Easy to set up and plan the structure
  • Support desk quickly responses
  • Well-prepared documentation
  • Broad scanning type
  • Supports various compliance standards
  • User groups allows coordination between teams

Cons

  • Tagging and naming all the endpoints takes time

Return on Investment

  • Maximum endpoint visibility with a little investment

Alternatives Considered

Nessus and Tenable.io

Other Software Used

Splunk Enterprise, Nessus, Netsparker

Tenable.sc is the best vulnerability management solution in the market

Pros

  • Reporting.
  • Dashboards.
  • It gives you control of your environment.

Cons

  • Tenable could make it easier to report on missing reg key.
  • Tenable can also make it easier to report on os level patches vs application patches.

Return on Investment

  • Easy to implement.
  • Competitive pricing vs competitors.

Alternatives Considered

Rapid7 Nexpose and Qualys Cloud Platform (formerly Qualysguard)

Other Software Used

Cb Defense, Netskope, Anomali Threat Platform

Tenable SC, well worth the cost

Pros

  • Identifies vulnerabilities
  • Measures CIS Compliance
  • Vast majority of reporting capabilities

Cons

  • Big Learning Curve
  • Unable to do AWS or other cloud scanning

Most Important Features

  • Customizable
  • Very fine access control
  • May different ways to view data

Return on Investment

  • It has greatly increased our ability to remediate vulnerabilities with the various data points it provides.
  • We can now get the right vulnerabilities in front of the right teams due to it's access control, which greatly reduces how long a vulnerability is in our environment.

Alternatives Considered

Rapid7 InsightVM (Nexpose) and Tenable.io

Other Software Used

Tenable.io, CrowdStrike Falcon Endpoint Protection, KnowBe4 Security Awareness Training