Vulnerability scanning is the purpose for which I use Qualys Virtual Scanner Appliance HVM.
External reviews
External reviews are not included in the AWS star rating for the product.
Automated vulnerability scans have reduced maintenance and support strategic security work
What is our primary use case?
What is most valuable?
I personally appreciate several features in this product. Regarding automated tasks and reduced false positives, they help me optimize resource allocation.
What needs improvement?
I have noticed some drawbacks and areas for improvement in Qualys Virtual Scanner Appliance HVM. I would like to see more control over the appliance and additional features included in the GUI in future updates.
I have concerns regarding pricing and technical support, which are also areas for improvement.
For how long have I used the solution?
I have been using Qualys Virtual Scanner Appliance HVM for an unspecified number of years.
How was the initial setup?
The deployment for Qualys Virtual Scanner Appliance HVM took just one hour.
What was our ROI?
I see a benefit in terms of finance, such as cost reduction. Overall, Qualys Virtual Scanner Appliance HVM has impacted my organization positively in terms of benefit.
What other advice do I have?
I was previously informed about Qualys TotalCloud, Qualys Patch Management, and Qualys Enterprise TruRisk Management. I do not use those products.
Qualys Virtual Scanner Appliance HVM provides comprehensive detection capabilities, and the minimal maintenance feature enhances my strategic security initiatives. I assess the benefits of automated reporting and alert mechanisms in the product to be valuable.
The product requires minimal maintenance and minimal interference from my side, which benefits my organization as I do not need to maintain it often and it does not require constant interference.
I use the seamless integration feature with other security tools. I am a Cyber Security Analyst at Viking Europe. I have given this product an overall rating of ten out of ten.
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Painless
Easy deployment. Deployed this to multiple VPCs and with correct Security Groups it works!
A few steps during deployment can have it connecting out automatically to the console.
PERSCODE= in the User Data field is required for registration.
Make sure your network settings are right(Need that outbound connection to WAN.)
I changed from Magnetic media to GP3 also.
Otherwise it works great!
Quick and simple setup
Launched with default configs, aside from the VPC and network settings, which I changed to a private subnet via NAT gateway.
Really easy to set up - the portal UI gives you a single UUID, you drop it in the user data, and that's it - once launched, it talks to the SaaS API, and appears in your scanner assets. Everything else is done from the SaaS portal.
Must be launched manually
per their docs: "NOTE: At this time, this product instance must be launched using the "Launch with EC2 Console" option."
This flies in the face of everything devops. You can't automate it. I am forced to use this by our secops team. If it were up to me, this alone would be a showstopper.