Qualys cloud: good product to use
December 28, 2021

Qualys cloud: good product to use

Anonymous | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User

Overall Satisfaction with Qualys Cloud Platform (formerly Qualysguard)

In my previous organisation (capgemini), I had implemented and used qualys for vulnerability scanning and management. It is very user friendly tool and it has very organised way to manage the scanning asset and option profile as well as reporting service and remediation steps. Can be easily integrated with splunk to get the logs at centralised location to investigate and monitor the status of patching.
  • Patch management
  • Scanning the assets
  • Maintaining option profile
  • Reporting service
  • Reporting service should be available in excel or csv mode
  • Panel for vulnerabilities by category in dashboard
  • Integrated with splunk to monitor the status of missing patch
  • Reporting service
  • Maintaining assets
  • Maintaining option profile
  • Application security
  • Vulnerability management was improved over scoutsuite
  • Web application security is good
  • Reporting service is better than scoutsuite
Qualys is more user friendly than tenable in view of creating and managing assets, option profiles as well as remediation provision and reporting service. As far as cost of these tools concern, qualys is less costlier than tenable vm tool. Qualys UI is better than tenable. You can change the owner of scan in qualys which is not possible in tenable

Do you think Qualys TruRisk Platform delivers good value for the price?

Yes

Are you happy with Qualys TruRisk Platform's feature set?

Yes

Did Qualys TruRisk Platform live up to sales and marketing promises?

Yes

Did implementation of Qualys TruRisk Platform go as expected?

Yes

Would you buy Qualys TruRisk Platform again?

Yes

As per my past experience with qualys vm tool, we implemented for scanning the assets in cloud as well as on-prem. Also we had used for web application scanning. Integrated with splunk for centralised monitoring and reporting purpose for missing patch on assets, patched assets status, not scanned assets, etc.