Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Reviews from AWS customer

2 AWS reviews

External reviews

39 reviews
from and

External reviews are not included in the AWS star rating for the product.


3-star reviews ( Show all reviews )

    Javeed Abdul

Offers reliable vulnerability detection and reporting features, but the graphs need to improve

  • May 27, 2024
  • Review provided by PeerSpot

What is our primary use case?

Tenable Cloud Security is used for scanning purposes, including vulnerabilities and remediation. The graphs provided by the solution are unsatisfactory and frequent updates are needed.

For instance, suppose you have a specific kernel version of 4.5, and you updated it to version 5.0; the solution still suggests that the older version needs to be fetched and even, in some instances, suggests upgrading to version 5.1.

Once the solution implements scans, the records are saved, and a bit of fine-tuning is required for remediation, I have to check manually in a few cases to decrease the number for a few metrics. Sometimes I need to contact the support team to fix bugs. 

What is most valuable?

Scanning and reporting are the most valuable features of Tenable Cloud Security. 

What needs improvement?

I have faced several bug incidents with the solution. Tenable Cloud Security's operational speed also needs to be improved. For instance, I have ten servers that got patched, and only this set of servers is required due to an incident. If I need to run a script on only those aforementioned ten servers and generate a report, it will be highly time-consuming with Tenable Cloud Security.

Even if I need a single ad hoc command, the solutions process a whole script for all Linux servers, which takes massive time. Often, our company's management team inquires about a two-day ticket as a live update report couldn't be obtained from Tenable Cloud Security.

The product should include ad hoc command implementation and live update-providing features rather than waiting for the scheduled script to run at a specific time each week. The solution's admins don't receive updates within a day; they're obtained when the script runs, and a huge number of servers cannot be run daily. Every server has an off-peak time, and the dependable needs to work out and retrieve the performance graphs.  

For how long have I used the solution?

I have been using Tenable Cloud Security for a year. 

What do I think about the stability of the solution?

I would rate the stability a seven out of ten. 

What do I think about the scalability of the solution?

I would rate the scalability a six out of ten. In our company, there are multiple nodes being used with the solution. Tenable Cloud Security should be able to pick up the correct node irrespective of the server's location.

For instance, if I pick the wrong node in the server, the script hangs, and this can happen often as in our company, we can't remember where the CMDB and data entries are present. The solution lacks an automated node selection feature. If a wrong node is picked with the tool to send in the box, the scanning procedure will run for 45 minutes and then it will fail. 

The solution is most suitable for medium-sized businesses. Our company uses the solution in a mid-sized environment comprising 1500 Windows and Linux servers. 

How are customer service and support?

I would rate the tech support a five out of ten. Our company has raised multiple tickets with issues in graphs, but the support team was unable to help. The dashboard of Tenable Cloud Security provides the total number of vulnerabilities instead of segregating them for each day and mentioning how many have been resolved, but there are no useful graphs provided. 

How would you rate customer service and support?

Neutral

How was the initial setup?

The initial setup process is extremely complex; in our company, it has been over a year, and the solution is still being set up. During the setup process in our organization, the tool acquired several vulnerabilities, and I am personally exhausted from managing them.

I am personally learning about the competitor solution, HashiCorp Vault, through webinars and trying to compare it with Tenable Cloud Security. A few of my friends are using HashiCorp Vault, and they are comparatively satisfied with the product. 

What other advice do I have?

The solution functions in a multi-cloud environment. In our company, Tenable Cloud Security is implemented in a cloud, but it's connected to the bare-metal data centers. 20% of the solution has been shifted to the cloud environment in our organization, but the tool can still pick data from cloud environments, including OCI and Azure.  

The product efficiently detects vulnerabilities across the entire environment, provides insights, and seeks remediation. Overall, I would rate Tenable Cloud Security a seven out of ten. The solution's vulnerability display interface needs to improve. I recommend others try other competitor solutions and implement a POC before onboarding Tenable Cloud Security. 


    SumeshKumar

The solution provides a single dashboard to onboard and have visibility into all the cloud infrastructure, but it should offer a complete Cnapp solution

  • September 18, 2023
  • Review from a verified AWS customer

What is most valuable?

Tenable Cloud Security is used for CSPM. If you have multi-cloud tenancy using AWS and Azure, you can have a single dashboard where you can onboard all the cloud infrastructure and have visibility into it. It has multiple cover steps of compliance. So, if you are obliged by any compliance, you can use that particular compliance.

What needs improvement?

If Tenable Cloud Security offers a complete Cnapp solution with CWP, CIEM, and Waap security, it will be able to compete with other competitors.

For how long have I used the solution?

I have been using Tenable Cloud Security from the last two to three years.

What do I think about the stability of the solution?

Tenable Cloud Security is a stable solution.

What do I think about the scalability of the solution?

When we talk about the cloud and SaaS model, it is in the hands of these OEMs. Tenable Cloud Security can definitely scale.

How are customer service and support?

Tenable Cloud Security's technical support is good. They can help you out if you get stuck with some issues.

How was the initial setup?

Tenable Cloud Security's initial setup is good and easy to manage.

What about the implementation team?

Tenable Cloud Security's deployment does not take more than two to three days.

If you know CSPM tools, you can configure Tenable Cloud Security yourself. If you lack knowledge about CSPM tools, you will have to go with a consultant.

The deployment steps for Tenable Cloud Security are very easy. First of all, you will have to onboard your account. For that, you should have admin rights. It will create some cloud formation template, or you can go through it directly. Once you have onboarded the account, you will get visibility into what kinds of activities are happening in the account. Then, accordingly, you can enable or disable the compliance policies as well.

What other advice do I have?

I am using the latest version of Tenable Cloud Security.

I don't recommend Tenable because it is premature as of now. When we talk about the detection level, all OEMs have detection nowadays. Tenable will have to focus on the production part.

The solution is deployed on-cloud in our organization.

One or two people are enough to manage Tenable Cloud Security.

Overall, I rate Tenable Cloud Security a six out of ten.


showing 1 - 2