We help clients with their overall cybersecurity assessment. Many start with free tools like Nessus, but eventually require more comprehensive solutions. We use Nessus and Tenable.io (formerly Nessus Professional) to scan environments and then convince clients of the value of a full Tenable.

External reviews
External reviews are not included in the AWS star rating for the product.
Offers risk prioritization , notification system but support should be bundled with the product cost
What is our primary use case?
How has it helped my organization?
Integrating Tenable into the workflow has improved our client's response times to critical vulnerabilities.
The notification system, including email and SMS alerts, is helpful. However, the actual response time depends on how closely clients monitor their Tenable systems. If they actively review alerts and notifications, it definitely helps their IT teams act quickly.
What is most valuable?
The risk prioritization is a good feature.
Tenable lets you categorize vulnerabilities based on severity (zero-day, critical, high, medium, low) so clients can focus on patching the most urgent issues first.
I would rate Tenable's dashboards and reporting capabilities for illustrating security posture a nine out of ten, with ten being the best.
Tenable already covers firewalls, web applications, and patch management very well.
What needs improvement?
It's a fantastic product, but there are some things to consider. One is the price. Compared to on-prem solutions, the SaaS model can be expensive.
Price is definitely a concern and needs improvement, especially for the Indian market. While it's a fantastic product, it should be more accessible to small and medium-sized businesses (SMBs).
Currently, only larger enterprises seem to be able to afford and evaluate it thoroughly.
So, pricing can be improved and be more affordable for the Indian market, specifically for SMBs.
Another area of improvement is customer service and support. Tenable needs to include support in the pricing/license. Currently, they push clients to get support from partners or channel distributors, who often charge a lot.
Even for a simple one-time setup, they may charge three to four lakhs, and then additional annual charges for ongoing support. We have the technical skills to handle basic tasks, but relying on Tenable itself often results in just receiving emails or being redirected back to channel partners.
So, support should be bundled with the product cost.
For how long have I used the solution?
We've been using Tenable for a while now.
What do I think about the stability of the solution?
I would rate the stability a seven out of ten.
What do I think about the scalability of the solution?
I would rate the scalability an eight out of ten. We work across all verticals, including enterprises and medium-sized businesses.
How are customer service and support?
Customer support is a challenge. Tenable charges extra for it, which means clients have to buy the license separately and then pay for additional support services like SQ. This creates significant friction.
How would you rate customer service and support?
Negative
How was the initial setup?
I would rate my experience with the initial setup a nine out of ten, with ten being very easy to set up.
We offer both deployment models, cloud as well as on-premises, but the cloud model hasn't been very successful. Because Cloud deployment is a SaaS model, which will likely be expensive.
There are cost concerns with SaaS.
Deployment is quick.
The entire deployment took around one hour.
What was our ROI?
While I can't quantify specific cost savings, Tenable offers a valuable solution.
What's my experience with pricing, setup cost, and licensing?
I would rate the pricing a five out of ten. It is in the middle.
What other advice do I have?
We have many other products available. Tenable can be compared to SOGo vulnerability management, for example.
Tenable is an advanced solution. If you're looking for a high level of threat protection, it provides clear visibility and gives you insights into what needs to be done next. However, general vulnerability management, especially for small and medium-sized businesses (SMBs), SOGo might be a more suitable option.SOGo offers flexible subscription models like monthly or yearly, and it caters to smaller user bases like 50 or 200 users. Tenable, on the other hand, recommends a minimum of 150 licenses, which might be overkill for smaller organizations.
Overall, I would rate the solution a seven out of ten.
Tenable for Vulnerability Management
Dashboard are not realtime it take its own sweet time to fetch data
POV of zero trust policy - Data is stored in public cloud
Transforming Traditional Vulnerability Management
Accuracy of scanning results
Flexibility of plugins and customization
Rich Feature Set
Affordable
Great Account Team support and partnership for day to day administration and product enhancement requests
ASM product requires more development time to fully mature
Great tool and easy to use
Easy to establish role based access.
Very receptive to customer requests.
Customer support team is great.
Be vulnerable free with tenable
A stable and easy-to-use solution that scans vulnerabilities in assets and provides suggestions for remediation
What is our primary use case?
The solution scans vulnerabilities in assets like workstations, network devices, desktops, or laptops. The product indicates vulnerabilities based on severity levels. There are high, critical, medium, low, and informational levels of severity.
What is most valuable?
The product can scan assets and web applications. It provides remediation for each vulnerability it scans. We get to know the actions we have to take to remediate the vulnerabilities. The solution is very simple to use. It also has cloud scanners. We can integrate Tenable and Nessus Scanner. It is easier to use.
What needs improvement?
The solution must provide penetration testing.
For how long have I used the solution?
I have been using the solution since 2022.
What do I think about the stability of the solution?
The tool is very stable.
What do I think about the scalability of the solution?
The tool is scalable.
How are customer service and support?
We don't have many issues.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is very easy.
What other advice do I have?
The tool is easy to use and deploy. It's easy for customers to go through the documentation, see how it works, and scan their assets. Everything is straightforward, including the creation of users and enabling 2FA. Overall, I rate the tool a nine out of ten.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
An easy-to-use and stable solution that helps organizations to find vulnerabilities in their systems
What is our primary use case?
We use the tool to find loopholes in the system.
What is most valuable?
The product fulfills our needs. It gives reports and finds vulnerabilities in our system. The product is easy to use. It is easy to integrate the tool with other products.
What needs improvement?
The solution must be promoted more in the market. It will make the customers more aware of the product.
For how long have I used the solution?
My organization has been using the solution for a month.
What do I think about the stability of the solution?
The tool is stable.
What do I think about the scalability of the solution?
Around 20 people use the product in our organization. We have one to three administrators. We are most likely to increase the usage of the product in the future.
How was the initial setup?
It was easy to deploy the solution.
What's my experience with pricing, setup cost, and licensing?
The tool is reasonably priced. There are no additional costs associated with the product.
What other advice do I have?
I have known the product for some time. So, I implemented it. Overall, I rate the solution an eight out of ten.
Has a valuable remediation feature, but it could be easier to set up on the cloud
What is our primary use case?
We use the software to manage vulnerabilities in our environment.
What is most valuable?
The product’s most valuable feature is remediation. It shows a list of vulnerabilities per server once you scan on cloud or on-premise instances. It helps us create remediation projects and assign the console’s responsibility to specific engineers. We can set up a follow-up date depending on the organization's requirements.
What needs improvement?
The product could be easier to set up on the cloud.
For how long have I used the solution?
We have been using Tenable Vulnerability Management for three years.
What do I think about the stability of the solution?
I rate the platform's stability an eight out of ten. Once, a few of our subsidiaries complained that channel usage in the environment was consuming bandwidth.
What do I think about the scalability of the solution?
We have five admins using Tenable Vulnerability Management in our organization. I rate the product’s scalability a seven out of ten. It has many features, and it is complicated to train someone on how to use Tenable. You have to schedule a session every day for almost two weeks for it.
How are customer service and support?
It was challenging to contact the technical support team earlier. However, we have found the right contact and can reach out to them easily.'
Which solution did I use previously and why did I switch?
I have used open-source applications before.
How was the initial setup?
The product is complicated to set up on AWS. However, it is easy to implement on-premises. It involves discovering IP addresses and schedule scanning. It requires acquiring some knowledge about the process to familiarize yourself with the AWS environment. We have to complete the setup for the whole environment. The deployment for a vast environment involves migrating a lot of data from on-premise to the cloud.
What about the implementation team?
We execute the implementation for most of the tools in-house. We take help from third-party vendors for the rest of it.
What other advice do I have?
I rate Tenable Vulnerability Management a nine out of ten. I advise you to choose Tenable.iO as it is a cloud-based solution.
Jack of all - master of none (except VM)
Tenable One is feature rich
They don't keep up with the competition and just add complexity to the product
Tenable customer support is one of the worst on the market
An exceptionally stable and scalable solution that helps users find vulnerabilities
What is our primary use case?
I was the manager of the vulnerability patching team in my company, and we would use it to go through everything, discover our network, find what vulnerabilities existed, and then use that for a work plan and assignments to decide who would fix what vulnerabilities.
How has it helped my organization?
In my company, with the help of Tenable Vulnerability Management, we could find all the things that we didn't know existed. It would be too resource-intensive to manually go into every device and figure out in which version of a solution the vulnerability exists, which is something that Tenable Vulnerability Management does for you.
What is most valuable?
The solution's most valuable feature is the product's vulnerability database, as it knows what to scan.
What needs improvement?
There is no good work assignment system in the product. Specifically, if an SQL patch needs to be applied, then that needs to go to the SQL team, but Tenable wants to assign the ticket to an individual and not a team.
The reporting was never great in Tenable Vulnerability Management, so, in my company, we imported all the data into Ivanti RiskSense to start using it for reporting.
For how long have I used the solution?
I have been using Tenable Vulnerability Management for three to four years. I don't remember the version of the solution.
What do I think about the stability of the solution?
It is a stable solution. Stability-wise, I rate the solution a ten out of ten.
What do I think about the scalability of the solution?
Scalability-wise, I rate the solution a ten out of ten.
How are customer service and support?
I rate the technical support a seven out of ten.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
I have experience with another solution in the past, but I don't remember its name.
How was the initial setup?
The product's initial setup was very straightforward.
The solution is deployed on an on-premises model and the cloud. With the endpoint in the product, everything was reported back to the cloud offered by Tenable.
What was our ROI?
I saw a return on investment from using the solution since I feel that finding the vulnerabilities is always much cheaper than dealing with a situation after your system gets hacked. In short, I would put it as insurance is cheaper than the fire.
Which other solutions did I evaluate?
In our company, we went through every other tool in the market and came down to Rapid7 and Tenable since they were the only two good options.
What other advice do I have?
Network scans are very resource-intensive and can cause outages in some instances, which is a political and not a technical issue to solve.
I rate the overall tool a ten out of ten.