Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Reviews from AWS customer

1 AWS reviews
  • 5 star
    0
  • 1
  • 3 star
    0
  • 2 star
    0
  • 1 star
    0

External reviews

89 reviews
from and

External reviews are not included in the AWS star rating for the product.


4-star reviews ( Show all reviews )

    Anusha Sadasivani

Rapid deployment and user-friendly architecture streamline vulnerability management but customer support response needs improvement

  • May 22, 2025
  • Review provided by PeerSpot

What is our primary use case?

We are still using Rapid7 InsightVM.

I personally still use Rapid7 InsightVM.

We use Rapid7 InsightVM for vulnerability scanning. It supports both agent-based and agentless scanning, which is part of our vulnerability management strategy.

What is most valuable?

The agentless scan in Rapid7 InsightVM is effective and represents the functionality I primarily work with. The risk scoring system in Rapid7 InsightVM is another valuable feature. When comparing to the main competitor QualysGuard, Rapid7 InsightVM is more preferable for me.

What needs improvement?

Customer support in Rapid7 InsightVM could be improved. The response time needs improvement.

For how long have I used the solution?

I have performed scans and explored the components of the product over the last three to four years.

What do I think about the stability of the solution?

I would rate the stability of Rapid7 InsightVM as seven out of ten.

What do I think about the scalability of the solution?

Rapid7 InsightVM rates approximately 8.5 for scalability. Rapid7 InsightVM is recommended for large-scale companies with more than 30,000 users.

How are customer service and support?

The response time for customer service needs improvement.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

My first tool was QualysGuard, which had more than 100,000 users. QualysGuard is more technical and problematic when implementing things, making it not as easy to use as Rapid7 InsightVM.

How was the initial setup?

Setup for Rapid7 InsightVM was simple. It was not complex because I had previous experience with Rapid7 when it was Nexpose.

What's my experience with pricing, setup cost, and licensing?

I would rate the pricing for Rapid7 InsightVM as eight out of ten.

Which other solutions did I evaluate?

QualysGuard is more challenging if you are not proficient in technical or environmental aspects, making deployment difficult. With Rapid7 InsightVM, the deployment process is more user-friendly.

What other advice do I have?

I would recommend Rapid7 InsightVM for large-scale companies. I can recommend it to other users. Overall, I rate Rapid7 InsightVM eight out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?


    Mahmoud Elhamaymy

Reliable scanning and integration strengthen security infrastructure

  • December 30, 2024
  • Review provided by PeerSpot

What is our primary use case?

We are working in a region where all the regulations require security solutions to be implemented as on-premises solutions. We cannot use any cloud providers or vendors proposing services in a SaaS model. We use InsightVM as an on-premises solution for vulnerability management practices.

How has it helped my organization?

InsightVM provides a reliable and efficient solution with a very organized GUI, excellent ease of use, and reliable vulnerability scanning. The credential scan is a reliable feature, and everything about the product works well.

What is most valuable?

InsightVM has a very organized GUI with ease of use. The vulnerability scans are reliable, and the credential scan is a beneficial feature. The solution is efficient and trustworthy. It's based on the CVSS risk scoring system, which is well-recognized and effective. The integration capabilities through APIs allow easy integration with existing security infrastructure.

What needs improvement?

The product's documentation could be enhanced with clearer and more detailed instructions. Having the ability to build our own audit file, similar to a feature in Tenable, would be beneficial. This would provide a significant advantage for users.

For how long have I used the solution?

We have been using InsightVM for approximately four to five years.

What do I think about the stability of the solution?

InsightVM is a very stable product. We have not faced any issues with stability, and I would rate it a nine out of ten.

What do I think about the scalability of the solution?

The solution is very scalable. According to the environment requirements, we can scale the solution as needed.

How are customer service and support?

The customer service deserves an eight out of ten rating. The only issue is the response time, likely due to the time region differences. Sometimes support requests coincide with holidays in their support region, causing slight delays.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup was very simple and straightforward.

What about the implementation team?

Our customers usually come to our company to purchase the solution, and we communicate with the vendor as one of the largest local partners. We provide the solution and professional services to customers.

Which other solutions did I evaluate?

I also work with Tenable. In my opinion, Tenable is preferable because it offers fast updates in terms of its vulnerability database and allows for extensive customization. The ability to customize audit files is a significant benefit.

What other advice do I have?

I rate InsightVM an overall eight out of ten. It is a reliable product, and I can recommend it to other users. The integration with existing infrastructure is achievable, and with a little talent in coding, you can achieve the integration easily.

Which deployment model are you using for this solution?

On-premises


    reviewer2026317

Seamless integration for enhanced vulnerability management while offering good reliability

  • December 17, 2024
  • Review provided by PeerSpot

What is our primary use case?

I find Rapid7 InsightVM pretty useful since we are running it on every asset our company has. We are conducting authenticated scans. This is not just getting exposure from outside, but understanding vulnerabilities internally.

What is most valuable?

The connectivity provided by Rapid7 InsightVM is valuable. We have integrated our SIEM solutions and antivirus with each other through Rapid7. It allows for a lifecycle connection among different solutions. We are using it with CMDB for tagging critical devices. However, the primary purpose remains running vulnerability scans.

What needs improvement?

The platform could be more intuitive and user-friendly. I cannot comment on technical specifics as it's like a black box, but improvements in user experience would be beneficial.

For how long have I used the solution?

I joined my current company two and a half years ago, and they already had this solution.

What do I think about the stability of the solution?

The stability of Rapid7 InsightVM is excellent. I would rate it as a ten out of ten.

What do I think about the scalability of the solution?

Rapid7 InsightVM is suitable for large enterprises and scales well for companies with over 1,000 users.

How are customer service and support?

I haven't interacted with Rapid7's technical support.It is crucial for tech support to resolve issues as quickly as possible, ideally available 24/7. Even if the support is good, there's always room for improvement, so I would rate them around a five because every company can improve.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

I have recommended Tenable Nessus, which I used at Bitdefender and in previous roles. Tenable Nessus offered a pay-per-asset option that I found economical.

How was the initial setup?

The initial setup can be simple or complex, depending on whether you're conducting authenticated or unauthenticated scans.

What's my experience with pricing, setup cost, and licensing?

Rapid7 InsightVM is expensive, possibly one of the highest in pricing among similar products.

Which other solutions did I evaluate?

I have experience with Tenable Nessus and have recommended it for its cost-effectiveness.

What other advice do I have?

Overall, I would recommend Rapid7 InsightVM to other users.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other


    Rajat-Srivastava

A high-performing solution that collects real-time data, is capable of more detections, and allows you to use the Scheduled Forensics feature

  • July 31, 2024
  • Review provided by PeerSpot

What is our primary use case?

We mainly use it for vulnerability management, generating monthly reports to address and resolve vulnerabilities. The main use cases involve receiving alerts based on predefined settings by Rapid7, investigating these alerts to understand their causes, and performing fine-tuning activities.

What is most valuable?

The most valuable features of Rapid7 InsightVM for me are creating dynamic asset tags, generating reports, and deploying the agent. The agent scans assets every four hours, providing real-time data on any devices. Although there weren't any significant new features compared to our previous tool, having both SIEM and vulnerability management handled by one tool made things easier. We could gather logs from different devices and cloud sources, and perform detailed investigations without switching tools.

I haven't worked with the automation capabilities of InsightVM. For remediation prioritization, we check the vulnerability, search for solutions on open platforms, and work with different teams to apply patches after proper testing. Currently, we don’t have any AI or ASM projects assisted by InsightVM

What needs improvement?

I’d like to see Rapid7 InsightVM improve by adding a knowledge base similar to what Qualys offers. This would help us easily check and search for vulnerabilities using Rapid7 IDs associated with CVs or CVSS.

From a features perspective, everything was fine at the time, and the security features of Rapid7 InsightVM were effective.

For how long have I used the solution?

I've been working with Rapid7 InsightVM since December.

What other advice do I have?

Overall, I would recommend Rapid7 InsightVM to others. My advice would be to first understand your requirements and infrastructure before implementing the product. I would rate InsightVM as an eight.


    Chamindu Pramodya

Gives reliable information, risk management, including prioritization

  • July 26, 2024
  • Review provided by PeerSpot

What is our primary use case?

We'll use Rapid7 InsightVM for on-premises scanning and the virtual machine option for cloud-based environments.

How has it helped my organization?

It is a good tool for comprehensive risk management, including prioritization and remediation.

What is most valuable?

It is a great endpoint agent. It gives you reliable information about that infrastructure and offers strong accuracy for risk management. However, unlike other management tools that have improved precision testing, InsightVM requires an additional purchase for full access to some of its advanced features.

What needs improvement?

Other solutions, like Cisco, have strengths, but Rapid7 InsightVM has some solid features, such as the RapidServer Active Response, the ability to create endpoint agents, and a live dashboard. However, the main concern is the system's reliability. For instance, during a scan on an Ubuntu machine, the system mistakenly identified the OS as Windows. This kind of inaccuracy is problematic.

For how long have I used the solution?

I have been using Rapid7 InsightVM for a year. 

What do I think about the scalability of the solution?


How are customer service and support?

The response takes some time.

How would you rate customer service and support?

Neutral

What's my experience with pricing, setup cost, and licensing?

Rapid7 is a bit expensive.

Which other solutions did I evaluate?

Tenable has 20% lower pricing and includes built-in web application testing, which gives it an advantage over Rapid7 InsightVM.

What other advice do I have?

I recommend Tennable for small and Rapid for big enterprises.

Overall, I rate the solution an eight out of ten.


    Danny_Hermanus

Easy to implement and is suitable for enterprise-sized businesses

  • July 02, 2024
  • Review provided by PeerSpot

What is our primary use case?

I use the solution in my company for cybersecurity purposes.

What is most valuable?

The most valuable features of the solution are the agent and the scanning.

What needs improvement?

I think the improvement in the tool should be to provide a better update to users because sometimes the information within the cloud and the scanner are not synchronized very fast.

For example, like, when we upgrade to a patch with the devices, it should be able to make it up to date right away, but it takes more than hours to update in the portal. We need to then do a rescan manually.

For how long have I used the solution?

I have been using Rapid7 InsightVM for six years. I am just a customer of the tool.

What do I think about the stability of the solution?

Stability-wise, I rate the solution a nine out of ten.

What do I think about the scalability of the solution?

The scalability of the product is very good. Scalability-wise, I rate the solution a nine out of ten.

In my organization, around five people use the product.

The product is used most of the time in my company.

I may plan to increase the use of the solution in the future if my business grows.

How are customer service and support?

I rate the technical support an eight out of ten.

Sometimes when I submit a case to Rapid7's support team, it takes them a very long time to provide a resolution. It is not very smooth.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I have experience with Nessus and GFI LanGuard. I started using Rapid7 InsightVM since I used some other products in the past. I think Rapid7 bought the company whose tool I was using. Rapid7 purchased a tool with a network sensor, after which the company offered our organization the use of Rapid7.

How was the initial setup?

As I had managed the tool's initial setup phase in my previous company, it would be easy for me. For the first-time user of the app, I think because the tool has an onboarding process, it should be very straightforward.

Regarding the product's deployment phase, I have all the instructions from Dell, and I can do everything by myself based on the documentation. The process may take a long time because I need to fix an appointment with Rapid7's team to start the onboarding process. Sometimes, it took at least four weeks to have an appointment. After I have an appointment, during the onboarding, the tool's team just does the syncing part, and then I follow all the steps to make sure everything is in place.

The solution is deployed on a combination, so even though the solution is deployed on the cloud, we have a console, so it is on-premise. It's like a combination consisting of a console and a cloud. Rapid7 has its own cloud.

The solution can be deployed in a month.

What about the implementation team?

The product's deployment was carried out with the help of my company's in-house team, and I mostly managed it myself.

What was our ROI?

The product has helped with cost-savings. The tool is used to manage areas like updating and monitoring everything. It is good to have an outstanding cybersecurity defense system instead of having to fix a problem when somebody has to deal with high vulnerabilities due to ransomware.

What's my experience with pricing, setup cost, and licensing?

The tool's price is neither too high nor too low. My company needs to pay 65,000 per year. There are no additional costs apart from the licensing fees attached to the solution.

Which other solutions did I evaluate?

I tried some tools and compared some other products with Rapid7 InsightVM. I considered Tenable Nessus against Rapid7 InsightVM. Tenable Nessus only has a real-time scanner, so it is not a complete solution.

What other advice do I have?

Rapid7 InsightVM fits into our organization's overall security posture in a critical manner.

Most of the features of Rapid7 InsightVM are helpful for identifying and managing vulnerabilities. The reporting part is very useful.

The live monitoring feature in Rapid7 InsightVM has enhanced your security measures in a very critical manner. With Rapid7 and InsightVM, the measurements are critical because we are based on the report, so we know exactly what endpoint or device needs to be patched. Based on the agent and report, we can identify what device we need to handle critically based on the priority.

My company does not have to meet any compliance requirements. In the previous company, there was a need to meet some compliance requirements.

The tool is easy to implement, but you need to have a team to work, and keep it up to date. I wouldn't recommend it for one or two people.

I recommend the product to others.

The product is more suitable for enterprise-sized businesses.

I think the tool doesn't have an AI feature.

I rate the overall tool a nine out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud


    Andrei Bigdan

Particularly useful for focusing on customer-facing systems and offers excellent scalability

  • February 29, 2024
  • Review provided by PeerSpot

What is our primary use case?

With InsightVM, I continuously monitor my network by setting up regular scans to identify vulnerabilities in real-time. It IS particularly useful for focusing on customer-facing systems at our perimeter, helping me prioritize and quickly address any security risks.

What is most valuable?

InsightVM offers a robust platform for identifying, prioritizing, and addressing vulnerabilities across an organization's IT infrastructure.

What needs improvement?

One area I would like to improve in InsightVM is its integration with other solutions, particularly for better compatibility with upcoming tools we plan to adopt. Enhanced functionality for budget management or change management databases could also be beneficial.

For how long have I used the solution?

I have been working with InsightVM for over two years.

What do I think about the stability of the solution?

I would rate the stability of the solution as a nine out of ten.

What do I think about the scalability of the solution?

InsightVM's scalability is top-notch and I would rate it a solid nine out of ten. Being a cloud-based solution, it effortlessly adjusts to accommodate varying needs and can easily scale from small to large environments.

How are customer service and support?

Rapid7's technical support is highly responsive and helpful. I would rate them as a nine out of ten.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I chose Rapid7 over Tenable Nessus because of its better performance, comprehensive functionality, and stronger support for operating systems and services. While Tenable Nessus may be cheaper, it lacks integration with other features and is more suited for SMBs rather than enterprises.

How was the initial setup?

Implementing InsightVM was straightforward. Setting it up to scan external networks at the perimeter was effortless; I just needed to create a cloud account and start using the solution. For internal network scanning, I installed the software on my notebook, which took about five to ten minutes for a single version setup, but it is important to note that it doesn't support Windows platforms.

What's my experience with pricing, setup cost, and licensing?

InsightVM's pricing can vary depending on the coverage needed. While it may not be the cheapest option, purchasing an unlimited license could be cost-effective for larger environments. For smaller needs, it might be more expensive compared to competitors. I would rate the affordability of the product at a four out of ten.

What other advice do I have?

I prioritize vulnerabilities in InsightVM by first focusing on customer-facing systems at our perimeter, which helps me quickly identify and address any security risks. Then, I utilize the cloud-based engine to scan internal networks and ensure comprehensive coverage without the need for complex on-premise solutions, making it easy to manage from my notebook connected to the internet.

Additionally, in InsightVM, we prioritize vulnerabilities by utilizing comprehensive data sources like the NVD and Rapid7's specialized risk calculation methods. The solution provides detailed information, including exploitability and impact, and evaluates whether vulnerabilities could be exploited in specific environments like NetApp.

I would recommend InsightVM to others. Overall, I would rate the product as an eight out of ten.

Which deployment model are you using for this solution?

Public Cloud


    Translation and Localization

Master in Vulnerability Management

  • February 22, 2024
  • Review provided by G2

What do you like best about the product?
I have been using this product for more than 6 years and it's the best product for vulnerability management. They keep track of all zero-days and update their database against all newly listed CVEs within 24 hours. It offers an all-in-one dashboard with multiple widgets
What do you dislike about the product?
Integration with extrenal ticketing tool is limited
What problems is the product solving and how is that benefiting you?
We use this product for vulnerability management, which keeps us updated with newly listed CVEs. It notifies us whenever there is a zero-day or critical vulnerability release. We use it to reduce the risk score in our environment, ensuring timely patching especially for Microsoft Tuesday patches and critical CVEs. It also helps us keep track of EOS/EOL software. Overall, this product helps us stay safe from cyber attacks and reduce our risks


    Christian Kyony

A vulnerability management solution that is great for managing video equipment

  • February 07, 2024
  • Review provided by PeerSpot

What is our primary use case?

We handle a lot of video equipment and Rapid7 InsightVM helps us to scan subnets, around 150,000 of them.


How has it helped my organization?

Rapid7 InsightVM is more focused on proactive liability management. However, when there's an incident, our team can handle it, but it's not a top priority for me. I think having another solution, like a response automation tool, would be more helpful. Vulnerability management can't prevent incidents once they're in progress, but it's essential to prevent them before they happen.

What is most valuable?

The remediation project is pretty effective because it allows us to choose specific assets and set limitations on them for a certain period which allows us to track and follow up on those limitations.

However, when it comes to real-time monitoring and live dashboards, InsightVM doesn't quite fit the bill. It's not a real-time solution and is not instant.

What needs improvement?

Rapid7 InsightVM, has impressive capabilities, especially when it comes to managing video equipment. However, we've noticed that Rapid7 also offers a cloud solution called CloudSec, and we don't have that. We think it would be better if InsightVM had all the features for both on-premise and cloud management.

For how long have I used the solution?

I have been using Rapid7 InsightVM for the past 6 years.

What do I think about the stability of the solution?

I would rate it nine out of ten, especially when it is deployed on Linux Box.

What do I think about the scalability of the solution?

It is very scalable and I would rate it ten out of ten. 

How was the initial setup?

As for deployment time, it varies based on the size of the organization and network sensitivity. For example, in a bank, scans might only happen at specific times, like during the night. Generally, deployment can be quick, but there are many factors to consider. You install the console and the scan engine, and then configure them based on network complexity. Scans themselves take less than 20-30 minutes, but the non-technical aspects, like setting up profiles and firewall rules, can take more time.I would rate it 8 out of 10. 

What other advice do I have?

I would rate it 8 out of 10. 


    MuhammadMurtaza

Comprehensive vulnerability management with robust set of features, making it highly effective for enhancing security posture and mitigating risks

  • January 24, 2024
  • Review from a verified AWS customer

What is our primary use case?

It's a vulnerability scanning tool utilized within the vulnerability management process. We employ it to conduct internal vulnerability assessments of company or organizational host IPs.

How has it helped my organization?

It aids in enhancing the overall security posture within our organization. It uncovered numerous vulnerabilities that had been overlooked, which was quite beneficial.

What is most valuable?

The most valuable features are its reporting capabilities and the host discovery functionality.

What needs improvement?

The primary issue I encountered initially with this tool was related to configuration. There is a significant learning curve, that non-technical individuals, especially those not specialized in computer science or the information security industry, might face.

For how long have I used the solution?

I have been working with it for six months.

What do I think about the stability of the solution?

I am satisfied with the stability provided.

How was the initial setup?

The initial setup went smoothly, but after completing it, I encountered difficulties when attempting to use features like the dashboard and the scan now option. Specifically, I faced challenges with scanning the host, which proved to be quite frustrating.

What about the implementation team?

The initial setup wasn't overly difficult, so it took me around one to two days due to troubleshooting issues. Overall deployment took about two to three days in total.

What other advice do I have?

I highly recommend Rapid7 as my experience with it is very positive. Overall, I would rate it eight out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)