Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Reviews from AWS customer

1 AWS reviews
  • 5 star
    0
  • 1
  • 3 star
    0
  • 2 star
    0
  • 1 star
    0

External reviews

90 reviews
from and

External reviews are not included in the AWS star rating for the product.


    Hiroshi Watanabe

Useful to identify and assess vulnerabilities but needs to provide a pure cloud-based version

  • April 08, 2024
  • Review provided by PeerSpot

What needs improvement?

The product is not a cloud solution. The tool can only be used as a hybrid solution, meaning it can be used on the cloud and on an on-premises deployment model. There are certain limitations because of the product being used on a hybrid model. Rapid7 InsightVM doesn't offer a solution purely in the cloud.

Competitors of Rapid7 InsightVM, like Tenable.io and Qualys, offer pure cloud solutions.

For how long have I used the solution?

I have been using Rapid7 InsightVM for seven or eight years. My company serves as a distributor of the tool.

What do I think about the stability of the solution?

Sometimes, there were certain parts and programs of the product about which the customer used to complain.

Stability-wise, I rate the solution a six to seven out of ten.

What do I think about the scalability of the solution?

It is a highly scalable solution. One of my company's customers uses the tool on 1,30,000 devices.

My company deals with clients who own small as well as enterprise-sized businesses.

How are customer service and support?

In the past, the support offered for the product was good. Unfortunately, over a period of time, the support offered has become poor.

I rate the technical support a four to five out of ten.

How would you rate customer service and support?

Neutral

How was the initial setup?

The product's initial setup phase was very easy.

The solution can be deployed in a few hours. The time required depends on the scale of the deployment. If there are 1,000 or 10,000 deployments to be done, then it takes time. If the customer provides a Q&A to calculate the design of the network, then the process becomes easier. If the customer does not know about their network, then the deployment process takes time since our company has to discuss several things with them before starting the process.

What's my experience with pricing, setup cost, and licensing?

The product is cheaper than the other similar tools available in the market.

What other advice do I have?

My company uses Rapid7 InsightVM to identify and assess vulnerabilities.

The product has improved our company's vulnerability remediation process. The tool finds vulnerabilities by scanning devices and networks. The solution is also useful in the area of database scanning.

The product area I find to be valuable in vulnerability management workflow stems from many aspects, like reporting, which is very useful. Rapid7 InsightVM's integration with Jira is also very effective and useful for end users. The coverage of the vulnerability offered by the product is very good. The GUI for Japanese users is good.

The product's integration capabilities have improved my company's security posture, as many other systems can be integrated with it. The export feature of the product helps users deal with other products like ServiceNow or Splunk.

The product is more useful for scanning than for its real-time visibility, but I can say that its functionalities come very close to real-time features. The product scans every six hours.

In large and diverse environments, the performance and the scalability of the product are not bad.

The product is easy to understand, making it good for companies that doesn't have much expertise in the area of security. It is an easy to use product. The product also provides a GUI in Japanese, while taking care of the reporting part efficiently, making it very convenient for the end users in Japan.

I rate the product's capacity to offer ease of use an eight out of ten.

I rate the overall tool a six to seven out of ten.


    Himanshu K.

Better than most of the products in the market, but not the best

  • March 14, 2024
  • Review provided by G2

What do you like best about the product?
Vulnerability views
Reporting
Dashboards
Tons of threat intelligence and research data integrated with the product by Rapid7. Stuff like Metasploit DB, AttackerKB and project Heisenberg are some of the best integrations.
Remediation Projects
Risk Scoring - the new Active Risk Scoring is awesome.
Scan Assistant (probably the best service for vuln scanning)
What do you dislike about the product?
The security console is a lot buggy.
Native Jira integration is not really native. Breaks all the time.
Sometimes it takes days to identify some vulnerabilities which is a major drawback especially for critical vulnerabilities (Jetbrains TeamCity CVSS10 vuln is one example, took it 3 days to identify vulnerable assets)
Too much administrative efforts to setup stuff.
What problems is the product solving and how is that benefiting you?
InsightVM is solving all our vulnerability management problems. It checks all the boxes starting from identification to remediation of a vulnerability. I cannot say it is a fully fledged and completely mature tool but it is far better than the other tools I've used in the past (Tenable, Qualys, MS Defender)


    Andrei Bigdan

Particularly useful for focusing on customer-facing systems and offers excellent scalability

  • February 29, 2024
  • Review provided by PeerSpot

What is our primary use case?

With InsightVM, I continuously monitor my network by setting up regular scans to identify vulnerabilities in real-time. It IS particularly useful for focusing on customer-facing systems at our perimeter, helping me prioritize and quickly address any security risks.

What is most valuable?

InsightVM offers a robust platform for identifying, prioritizing, and addressing vulnerabilities across an organization's IT infrastructure.

What needs improvement?

One area I would like to improve in InsightVM is its integration with other solutions, particularly for better compatibility with upcoming tools we plan to adopt. Enhanced functionality for budget management or change management databases could also be beneficial.

For how long have I used the solution?

I have been working with InsightVM for over two years.

What do I think about the stability of the solution?

I would rate the stability of the solution as a nine out of ten.

What do I think about the scalability of the solution?

InsightVM's scalability is top-notch and I would rate it a solid nine out of ten. Being a cloud-based solution, it effortlessly adjusts to accommodate varying needs and can easily scale from small to large environments.

How are customer service and support?

Rapid7's technical support is highly responsive and helpful. I would rate them as a nine out of ten.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I chose Rapid7 over Tenable Nessus because of its better performance, comprehensive functionality, and stronger support for operating systems and services. While Tenable Nessus may be cheaper, it lacks integration with other features and is more suited for SMBs rather than enterprises.

How was the initial setup?

Implementing InsightVM was straightforward. Setting it up to scan external networks at the perimeter was effortless; I just needed to create a cloud account and start using the solution. For internal network scanning, I installed the software on my notebook, which took about five to ten minutes for a single version setup, but it is important to note that it doesn't support Windows platforms.

What's my experience with pricing, setup cost, and licensing?

InsightVM's pricing can vary depending on the coverage needed. While it may not be the cheapest option, purchasing an unlimited license could be cost-effective for larger environments. For smaller needs, it might be more expensive compared to competitors. I would rate the affordability of the product at a four out of ten.

What other advice do I have?

I prioritize vulnerabilities in InsightVM by first focusing on customer-facing systems at our perimeter, which helps me quickly identify and address any security risks. Then, I utilize the cloud-based engine to scan internal networks and ensure comprehensive coverage without the need for complex on-premise solutions, making it easy to manage from my notebook connected to the internet.

Additionally, in InsightVM, we prioritize vulnerabilities by utilizing comprehensive data sources like the NVD and Rapid7's specialized risk calculation methods. The solution provides detailed information, including exploitability and impact, and evaluates whether vulnerabilities could be exploited in specific environments like NetApp.

I would recommend InsightVM to others. Overall, I would rate the product as an eight out of ten.

Which deployment model are you using for this solution?

Public Cloud


    Translation and Localization

Master in Vulnerability Management

  • February 22, 2024
  • Review provided by G2

What do you like best about the product?
I have been using this product for more than 6 years and it's the best product for vulnerability management. They keep track of all zero-days and update their database against all newly listed CVEs within 24 hours. It offers an all-in-one dashboard with multiple widgets
What do you dislike about the product?
Integration with extrenal ticketing tool is limited
What problems is the product solving and how is that benefiting you?
We use this product for vulnerability management, which keeps us updated with newly listed CVEs. It notifies us whenever there is a zero-day or critical vulnerability release. We use it to reduce the risk score in our environment, ensuring timely patching especially for Microsoft Tuesday patches and critical CVEs. It also helps us keep track of EOS/EOL software. Overall, this product helps us stay safe from cyber attacks and reduce our risks


    Christian Kyony

A vulnerability management solution that is great for managing video equipment

  • February 07, 2024
  • Review provided by PeerSpot

What is our primary use case?

We handle a lot of video equipment and Rapid7 InsightVM helps us to scan subnets, around 150,000 of them.


How has it helped my organization?

Rapid7 InsightVM is more focused on proactive liability management. However, when there's an incident, our team can handle it, but it's not a top priority for me. I think having another solution, like a response automation tool, would be more helpful. Vulnerability management can't prevent incidents once they're in progress, but it's essential to prevent them before they happen.

What is most valuable?

The remediation project is pretty effective because it allows us to choose specific assets and set limitations on them for a certain period which allows us to track and follow up on those limitations.

However, when it comes to real-time monitoring and live dashboards, InsightVM doesn't quite fit the bill. It's not a real-time solution and is not instant.

What needs improvement?

Rapid7 InsightVM, has impressive capabilities, especially when it comes to managing video equipment. However, we've noticed that Rapid7 also offers a cloud solution called CloudSec, and we don't have that. We think it would be better if InsightVM had all the features for both on-premise and cloud management.

For how long have I used the solution?

I have been using Rapid7 InsightVM for the past 6 years.

What do I think about the stability of the solution?

I would rate it nine out of ten, especially when it is deployed on Linux Box.

What do I think about the scalability of the solution?

It is very scalable and I would rate it ten out of ten. 

How was the initial setup?

As for deployment time, it varies based on the size of the organization and network sensitivity. For example, in a bank, scans might only happen at specific times, like during the night. Generally, deployment can be quick, but there are many factors to consider. You install the console and the scan engine, and then configure them based on network complexity. Scans themselves take less than 20-30 minutes, but the non-technical aspects, like setting up profiles and firewall rules, can take more time.I would rate it 8 out of 10. 

What other advice do I have?

I would rate it 8 out of 10. 


    MuhammadMurtaza

Comprehensive vulnerability management with robust set of features, making it highly effective for enhancing security posture and mitigating risks

  • January 24, 2024
  • Review from a verified AWS customer

What is our primary use case?

It's a vulnerability scanning tool utilized within the vulnerability management process. We employ it to conduct internal vulnerability assessments of company or organizational host IPs.

How has it helped my organization?

It aids in enhancing the overall security posture within our organization. It uncovered numerous vulnerabilities that had been overlooked, which was quite beneficial.

What is most valuable?

The most valuable features are its reporting capabilities and the host discovery functionality.

What needs improvement?

The primary issue I encountered initially with this tool was related to configuration. There is a significant learning curve, that non-technical individuals, especially those not specialized in computer science or the information security industry, might face.

For how long have I used the solution?

I have been working with it for six months.

What do I think about the stability of the solution?

I am satisfied with the stability provided.

How was the initial setup?

The initial setup went smoothly, but after completing it, I encountered difficulties when attempting to use features like the dashboard and the scan now option. Specifically, I faced challenges with scanning the host, which proved to be quite frustrating.

What about the implementation team?

The initial setup wasn't overly difficult, so it took me around one to two days due to troubleshooting issues. Overall deployment took about two to three days in total.

What other advice do I have?

I highly recommend Rapid7 as my experience with it is very positive. Overall, I would rate it eight out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)


    SohailHyder

Easy deployment, but technical support could respond faster

  • January 19, 2024
  • Review provided by PeerSpot

What is our primary use case?

The core domain use of the solution is verification, scanning, and finding out the vulnerabilities in real time.

How has it helped my organization?

The ease of deployment and configuration allows users to onboard quickly, aligning smoothly with various functionalities.

What is most valuable?

The data sheet is good in pricing and promises. The customers are very price-conscious. You have to satisfy technical requirements. This combo makes the product valuable and usable.

What needs improvement?

Two things are consistent. The rest of the things run fine. The technical side does not respond quickly. They take a lot of time. The priority should be to respond to the customer to serve the customer.

For how long have I used the solution?

I have been using Rapid7 InsightVM for more than three years.

What do I think about the stability of the solution?

The solution’s stability is good. It keeps on running. There are no system complaints.

What do I think about the scalability of the solution?

The solution’s scalability is linked to the new scope and the cost.

Which solution did I use previously and why did I switch?

We are actively seeking alternatives. If you can offer a better solution, superior after-sales service, and overall better everything, we would like to explore what you have to offer.

How was the initial setup?

The initial setup is not so complex. It is quickly deployable configurable and integrated with your existing setup.

The common process for Rapid7 InsightVM involves comparing it against their standard procedures to ensure compliance with the required licenses and resources. Users download the necessary files and initiate/reactivate licenses. Certain configurations are also set up. This process typically takes two to three days for the department, but we usually allocate a week for completion.

Our team feels enabled enough after completing the training session on Rapid7 InsightVM. We conduct our tests independently, and whenever we need support, we seek assistance directly from Rapid7. This process isn't overly complex or time-consuming. We ensure thorough preparation by gathering all necessary information, addressing internet concerns, and informing the customer. Once fully prepared, we proceed forward.

What's my experience with pricing, setup cost, and licensing?

The solution’s pricing is good because the value proposition delivers a report box. It is not very costly.

What other advice do I have?

Since the product is cloud-based, there's no maintenance. Whatever the information or the customization of the customer needs to be confirmed. The hardware needs maintenance.

Overall, I rate the solution a six out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud


    Pranay M.

"One of the Best tool for Vulnerability Management"

  • September 06, 2023
  • Review provided by G2

What do you like best about the product?
InsightVM is providing Agent based scanning which helps us alot, apart from that Dashboard
is also very cool and helps alot in easily go throught the stats.
What do you dislike about the product?
There is nothing to dislike apart from Memory consumption is sometimes getting very high.
What problems is the product solving and how is that benefiting you?
We are using InsightVM for Cloud VM.


    Manufacturing

Good Vulnerability Management Solution

  • July 26, 2023
  • Review provided by G2

What do you like best about the product?
Easy to manage, good capabilities, agent and network scan works as intended. A good way to remediate vulnerabilities using Remediation projects and set proper Goal and SLAs. A good reporting available to use
What do you dislike about the product?
Managing multiple scan jobs and tagging of assets as not granular for very big enterprise organizations. Some network scans can cause network issues for the endpoints.
What problems is the product solving and how is that benefiting you?
InsightVM (Nexpose) provides a good vulnerability management and risk mitigation solution with remediation capabilities and ensure keeping good SLAs and goals for the organization.


    René T.

IVM review

  • July 04, 2023
  • Review provided by G2

What do you like best about the product?
Real risk score based (holistically: vulnerability x asset context), agent and engine, assisted SCCM patching, hardening check, remediation projects, SLAs
What do you dislike about the product?
GUI is immature and inconsistent, Query builder is limited (you would need additional data lake software: Splunk, Power BI etc.), expensive
What problems is the product solving and how is that benefiting you?
Vulnerability management