Best Risk-Based Vulnerability Management Software

How Many Risk-Based Vulnerability Management Software Products Does G2 Track?

Total Products under this Category: 216

Category Stats (Sep 2026)

  • Average Rating: 4.5/5 (↓0.01 vs Aug 2026) The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: Ethiack (+0.86%) - Among all products in this category, Ethiack recorded the largest rating increase compared to last month

Last updated: September 15, 2026

How Does G2 Rank Risk-Based Vulnerability Management Software Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 5,400+ Authentic Reviews
  • 216+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Risk-Based Vulnerability Management Software

G2 Grid® for Risk-Based Vulnerability Management Software plotting products by satisfaction and market presence

Highlighted products: Ivanti Autonomous Endpoint Management, Arctic Wolf, Tenable Vulnerability Management, RiskProfiler - External Threat Exposure Management, YesWeHack, Check Point Exposure Management, H1 Platform, and Pentera.

Underlying data: [Grid® JSON](https://www.g2.com/categories/risk-based-vulnerability-management/grids.json?focus%5B%5D=ivanti-autonomous-endpoint-management&focus%5B%5D=arctic-wolf&focus%5B%5D=tenable-vulnerability-management&focus%5B%5D=riskprofiler-external-threat-exposure-management&focus%5B%5D=yeswehack&focus%5B%5D=check-point-exposure-management&focus%5B%5D=h1-platform&focus%5B%5D=pentera)

Ivanti Autonomous Endpoint Management

Ivanti Autonomous Endpoint Management is a software designed to automate and simplify the management of devices throughout their lifecycle. The software provides capabilities for endpoint discovery, configuration, security, monitoring, and remediation across various platforms, including Windows, macOS, Linux, and mobile devices. It enables organizations to reduce manual IT workloads by leveraging automation for patch management, software distribution, compliance enforcement, and device provisioning. The software also offers insights into device health and usage, helping businesses address vulnerabilities, ensure policy adherence, and maintain endpoint performance while supporting remote and hybrid work environments. Ivanti Autonomous Endpoint Management aims to improve operational efficiency by centralizing endpoint administration and minimizing risks associated with unmanaged or unpatched devices.

Average Rating: 4.3/5.0

Total Reviews: 387

How Do G2 Users Rate Ivanti Autonomous Endpoint Management?

  • Has the product been a good partner in doing business?: 8.4/10 (Category avg: 9.2/10)
  • Reporting: 8.3/10 (Category avg: 8.8/10)
  • Vulnerability Intelligence: 8.3/10 (Category avg: 8.7/10)
  • Risk-Prioritization: 8.3/10 (Category avg: 8.8/10)

Who Is the Company Behind Ivanti Autonomous Endpoint Management?

  • Seller: Ivanti
  • Company Website:
  • Year Founded: 1985
  • HQ Location: South Jordan, UT
  • Twitter: @GoIvanti
    6,761 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    3,026 employees on LinkedIn®

Who Uses This Product?

  • Who Uses This: Software Engineer
  • Top Industries: Information Technology and Services, Computer & Network Security
  • Company Size: 47% Large, 34% Medium

What Do G2 Reviewers Say About Ivanti Autonomous Endpoint Management?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the strong automation features of Ivanti Neurons, making endpoint management seamless and efficient.
  • Users value the robust automation and AI-driven features of Ivanti Neurons, enhancing IT efficiency and productivity.
  • Users value the strong automation and self-healing features of Ivanti Neurons, enhancing device management and visibility.
  • Users value the access ease of Ivanti Neurons UEM, praising its effortless integration across various operating systems.
  • Users value the effective Apple Device Management of Ivanti Neurons, simplifying device locking and enhancing functionality.
Cons
  • Users experience communication delays in support responsiveness, impacting critical troubleshooting during high-priority incidents.
  • Users report feature issues such as a cluttered UI and sluggish performance with large device counts.
  • Users find the UI cluttered and unintuitive, making navigation and accessing essential tools more difficult.
  • Users experience slow performance when managing large device counts, impacting efficiency during critical operations.
  • Users find the complexity of setup and customization challenging, leading to a steep learning curve.

What Are Recent G2 Reviews of Ivanti Autonomous Endpoint Management?

What Are G2 Users Discussing About Ivanti Autonomous Endpoint Management?

Arctic Wolf

Arctic Wolf® is the cybersecurity and AI company that ends cyber risk by transforming it into business resilience. Powered by the Aurora® Superintelligence Platform, Arctic Wolf delivers modern security operations built on proprietary AI and decades of real-world expertise to manage and mitigate cyber threats. The platform is built on the Swarm of Experts™, which coordinates specialized AI agents across core security operations functions. The Security Operations Graph™ connects real-world telemetry and customer context to every workflow. The AI Trust Engine™ validates outcomes and keeps human experts in the loop. Arctic Wolf serves businesses of all sizes looking to strengthen their cybersecurity posture. IT and security teams turn to Arctic Wolf to streamline operations, gain a clearer view of their security landscape, and build resilience against cyberattacks. Arctic Wolf's Aurora-branded solutions include Aurora® Managed Detection and Response (MDR), which provides 24x7 monitoring and rapid threat detection and response. Aurora® Attack Surface Management and Aurora® Vulnerability Management help organizations identify and remediate vulnerabilities to reduce their attack surface. Aurora® Endpoint Security safeguards devices against threats. Aurora® Security Awareness and Training helps employees reduce human error in cybersecurity. Aurora® Incident Response helps organizations respond when a security incident occurs. The Concierge Security® Team delivers personalized support, working closely with organizations to understand their unique challenges and build tailored strategies for stronger cyber resilience. By combining AI-driven automation with expert validated precision, Arctic Wolf helps organizations confidently manage cyber risk, so they can operate with control and the freedom to innovate.

Average Rating: 4.7/5.0

Total Reviews: 276

How Do G2 Users Rate Arctic Wolf?

  • Has the product been a good partner in doing business?: 9.5/10 (Category avg: 9.2/10)
  • Reporting: 9.5/10 (Category avg: 8.8/10)
  • Vulnerability Intelligence: 9.6/10 (Category avg: 8.7/10)
  • Risk-Prioritization: 9.6/10 (Category avg: 8.8/10)

Who Is the Company Behind Arctic Wolf?

  • Seller: Arctic Wolf Networks
  • Company Website:
  • Year Founded: 2012
  • HQ Location: Eden Prairie, MN
  • Twitter: @AWNetworks
    4,520 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    3,286 employees on LinkedIn®

Who Uses This Product?

  • Who Uses This: IT Manager, IT Director
  • Top Industries: Hospital & Health Care, Information Technology and Services
  • Company Size: 71% Medium, 20% Large

What Do G2 Reviewers Say About Arctic Wolf?

AI-generated summary from verified user reviews

Pros
  • Users commend Arctic Wolf for its responsive customer support, ensuring effective collaboration and timely assistance during security incidents.
  • Users value the proactive threat detection of Arctic Wolf, ensuring timely alerts and expert support for security incidents.
  • Users value Arctic Wolf's proactive security approach, providing peace of mind and seamless team integration for threat management.
  • Users appreciate the ease of use of Arctic Wolf, highlighting its user-friendly interface and smooth deployment.
  • Users value the fast notifications of events, enabling quick engagement and effective issue triage with professionals.
Cons
  • Users highlight the high cost of Arctic Wolf, wishing it was more affordable despite its effectiveness.
  • Users note the issue of false positives in alerts, requiring time-consuming investigations despite overall satisfaction.
  • Users experience a steep learning curve, requiring time and IT knowledge to navigate Arctic Wolf's features effectively.
  • Users feel overwhelmed by the amount of cybersecurity risks detailed in reports and seek better notification methods.
  • Users face dashboard issues with quirks and delays in resolving identified risks, though updates are frequent.

What Are Recent G2 Reviews of Arctic Wolf?

What Are G2 Users Discussing About Arctic Wolf?

Tenable Vulnerability Management

Tenable Vulnerability Management provides a risk-based approach to identifying, prioritizing, and remediating vulnerabilities across your entire attack surface. Powered by Nessus technology and AI-driven analytics, it goes beyond CVSS scores to assess exploitability, asset criticality, and business impact—so you can focus on what matters most. With continuous visibility, automated scanning, and real-time risk insights, security teams can quickly expose and close critical vulnerabilities before they’re exploited. Advanced asset identification ensures accurate tracking in dynamic environments, while intuitive dashboards, comprehensive reporting, and seamless third-party integrations help streamline workflows. As a cloud-based solution, Tenable Vulnerability Management scales with your organization, empowering security teams to maximize efficiency, reduce risk, and improve resilience against evolving threats.

Average Rating: 4.5/5.0

Total Reviews: 124

How Do G2 Users Rate Tenable Vulnerability Management?

  • Has the product been a good partner in doing business?: 8.7/10 (Category avg: 9.2/10)
  • Reporting: 8.1/10 (Category avg: 8.8/10)
  • Vulnerability Intelligence: 9.1/10 (Category avg: 8.7/10)
  • Risk-Prioritization: 8.9/10 (Category avg: 8.8/10)

Who Is the Company Behind Tenable Vulnerability Management?

  • Seller: Tenable
  • Company Website:
  • HQ Location: Columbia, MD
  • Twitter: @TenableSecurity
    87,752 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    2,361 employees on LinkedIn®
  • Ownership: NASDAQ: TENB

Who Uses This Product?

  • Top Industries: Information Technology and Services, Financial Services
  • Company Size: 52% Large, 35% Medium

What Do G2 Reviewers Say About Tenable Vulnerability Management?

AI-generated summary from verified user reviews

Pros
  • Users value the user-friendly interface of Tenable Vulnerability Management, facilitating easy prioritization and action on vulnerabilities.
  • Users value the scanning efficiency of Tenable Vulnerability Management, enhancing their ability to prioritize and manage vulnerabilities effectively.
  • Users value the robust scanning and reporting features of Tenable Vulnerability Management, enhancing vulnerability management efficiency.
  • Users appreciate the efficient automated scanning capabilities of Tenable, enhancing their vulnerability management process significantly.
  • Users value the effective vulnerability identification that helps prioritize remediation efforts efficiently within their environments.
Cons
  • Users find the high costs of Tenable Vulnerability Management prohibitive, especially for organizations with tight budgets.
  • Users find the reporting capabilities inadequate, leading to a need for external data processing for better insights.
  • Users find the reporting capabilities limited, often requiring external processing for better data refinement and insights.
  • Users find the pricing issues of Tenable Vulnerability Management to be complex and potentially prohibitive for budget-conscious organizations.
  • Users find the complexity of Tenable Vulnerability Management to be challenging, affecting usability and management efficiency.

What Are Recent G2 Reviews of Tenable Vulnerability Management?

What Are G2 Users Discussing About Tenable Vulnerability Management?

RiskProfiler - External Threat Exposure Management

RiskProfiler is an advanced cybersecurity platform purpose-built for Continuous Threat Exposure Management (CTEM). It unifies external, cloud, vendor, and brand risk intelligence into a single ecosystem—providing organizations with real-time visibility, contextual threat insights, and actionable remediation guidance. Through its integrated suite, External Attack Surface Managemnet, Third_party Risk Management, Cloud Attack Surface Management, and Brand Risk Protection; the platform continuously discovers, classifies, and evaluates external-facing assets and risks across the internet, multi-cloud environments, and third-party ecosystems. Powered by AI-enabled risk questionnaires, RiskProfiler automates the exchange, validation, and scoring of security assessments, dramatically accelerating third-party due diligence and compliance validation. The platform’s context-enriched graph engine correlates vulnerabilities, exposures, and configurations with real-world threat data, revealing how attackers might exploit an organization’s digital footprint. Its newly enhanced Cyber Threat Intelligence (CTI) module provides live insights into industry-specific attack trends, threat actor profiles, and evolving TTPs, directly embedded within the dashboard. By analyzing CVEs, IOCs, and exploit patterns, it maps these to relevant assets and potential attack paths, enabling focused, prioritized mitigation. From identifying exposed cloud resources across AWS, Azure, and Google Cloud to uncovering brand impersonation, phishing campaigns, or logo abuse, RiskProfiler delivers unified visibility and continuous monitoring that extends beyond the perimeter. It helps organizations anticipate, contextualize, and neutralize threats before they turn into breaches, transforming exposure management into a truly intelligent, predictive defense capability.

Average Rating: 5.0/5.0

Total Reviews: 135

How Do G2 Users Rate RiskProfiler - External Threat Exposure Management?

  • Has the product been a good partner in doing business?: 9.9/10 (Category avg: 9.2/10)
  • Reporting: 9.9/10 (Category avg: 8.8/10)
  • Vulnerability Intelligence: 9.9/10 (Category avg: 8.7/10)
  • Risk-Prioritization: 9.9/10 (Category avg: 8.8/10)

Who Is the Company Behind RiskProfiler - External Threat Exposure Management?

  • Seller: Riskprofiler
  • Company Website:
  • Year Founded: 2019
  • HQ Location: Rock Hill , US
  • Twitter: @riskprofilerio
    209 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    35 employees on LinkedIn®

Who Uses This Product?

  • Who Uses This: Software Engineer, Security Consultant
  • Top Industries: Information Technology and Services, Design
  • Company Size: 65% Medium, 30% Small

What Do G2 Reviewers Say About RiskProfiler - External Threat Exposure Management?

AI-generated summary from verified user reviews

Pros
  • Users value the multi-dimensional threat intelligence of RiskProfiler, enabling efficient management of external threats and vendor risks.
  • Users value the seamless integration features of RiskProfiler, enhancing real-time monitoring and adaptability in their workflows.
  • Users praise the fast and efficient customer support of RiskProfiler, enhancing their overall experience and threat management.
  • Users value the ease of use of RiskProfiler, as it seamlessly integrates and enhances external threat management.
  • Users highlight the easy setup of RiskProfiler, facilitating quick implementation and seamless integration for effective threat management.
Cons
  • Users face a steep learning curve with RiskProfiler, needing sufficient time for training and customization.
  • Users find the complexity of RiskProfiler challenging, requiring time for training and adjustment to navigate effectively.
  • Users find the difficult learning curve challenging, requiring significant time and training for effective platform use.
  • Users find a steep learning curve with RiskProfiler, requiring time and training for effective use.
  • Users find the complex setup of RiskProfiler challenging, hindering smooth adoption and integration for non-specialist teams.

What Are Recent G2 Reviews of RiskProfiler - External Threat Exposure Management?

Check Point Exposure Management

Exposure Management is changing how organizations react to vulnerabilities that put them in risk. Attackers exploit exposed assets, leaked credentials, and misconfigurations within hours using sophisticated AI attack tools. Meanwhile, security teams are left sorting through dashboards, alerts, and disconnected tools. For a limited time only, we are providing an Agentic Exposure Validation Scan at no cost. It delivers proven, evidence-backed findings your team can act on immediately. Request scan here - https://checkpoint.cyberint.com/limited-time-offer-aev-scan Check Point Exposure Management closes that gap by combining billions of external intelligence signals into a Unified Intelligence Fabric. The platform continuously identifies, validates, prioritizes, and safely remediates the exposures attackers are most likely to exploit. With Cyber Asset Attack Surface Management (CAASM), security teams gain a real-time inventory across cloud, SaaS, on-premises infrastructure, endpoints, and identities through 150+ agentless integrations. Unlike traditional vulnerability management, Check Point prioritizes exposures based on real-world exploitability, active threat intelligence, business context, and existing security controls, eliminating duplicate alerts and reducing remediation noise. It does so while maintaining business continuity. Safe-by-design remediation then validates every action before enforcement, enabling capabilities such as virtual patching, IPS activation, configuration hardening, and policy enforcement without disrupting business operations. Organizations using the platform achieve a 93% true positive rate, 12-hour average takedown MTTR, and 504 safe remediations per organization every month. Built around Gartner's Continuous Threat Exposure Management (CTEM) framework, Check Point helps organizations move from visibility to measurable risk reduction. Gartner predicts organizations adopting CTEM with mobilization will experience 50% fewer successful cyberattacks by 2028. Ready to see Exposure Management in action? Get a 15-minute demo: https://l.cyberint.com/exposure-management-demo

Average Rating: 4.6/5.0

Total Reviews: 197

How Do G2 Users Rate Check Point Exposure Management?

  • Has the product been a good partner in doing business?: 9.4/10 (Category avg: 9.2/10)
  • Reporting: 8.8/10 (Category avg: 8.8/10)
  • Vulnerability Intelligence: 9.3/10 (Category avg: 8.7/10)
  • Risk-Prioritization: 9.0/10 (Category avg: 8.8/10)

Who Is the Company Behind Check Point Exposure Management?

Who Uses This Product?

  • Who Uses This: Cyber Security Analyst, Security Threat Analyst
  • Top Industries: Banking, Financial Services
  • Company Size: 66% Large, 21% Medium

What Do G2 Reviewers Say About Check Point Exposure Management?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the ease of use of Check Point Exposure Management, enjoying its intuitive interface for threat detection.
  • Users value the comprehensive threat intelligence from Cyberint, enhancing detection and response to potential threats effectively.
  • Users commend the enhanced threat detection capabilities of Check Point Exposure Management, improving situational awareness and response efficiency.
  • Users value the comprehensive intelligence feeds of Check Point Exposure Management, enhancing threat detection and situational awareness.
  • Users value the immediate alerts from Check Point Exposure Management, allowing prompt action against potential security threats.
Cons
  • Users face challenges with inefficient alerts due to false positives, complicating the verification process for analysts.
  • Users experience false positives that necessitate additional validation time, complicating the overall alert management process.
  • Users find the inefficient alert system complicates handling excessive alerts and delays threat intel on compromised accounts.
  • Users note integration issues with Check Point Exposure Management, particularly regarding centralizing alerts and connecting security tools.
  • Users note the limited features of Check Point Exposure Management, specifically regarding alert tuning and user account restrictions.

What Are Recent G2 Reviews of Check Point Exposure Management?

What Are G2 Users Discussing About Check Point Exposure Management?

H1 Platform

HackerOne is a global leader in Continuous Threat Exposure Management (CTEM) and the only solution provider that pairs the simultaneous trust of the Fortune 500 and the world's largest community of security researchers to secure the AI-native enterprise. The H1 Platform unites agentic AI solutions with security researchers ingenuity to continuously discover, validate, prioritize, and remediate exposures across code, cloud, and AI systems. Through solutions like bug bounty, vulnerability disclosure, agentic pentesting, AI red teaming, and code security, HackerOne delivers measurable, continuous reduction of cyber risk for enterprises. Industry leaders, including Anthropic, Crypto.com, General Motors, Goldman Sachs, Lufthansa, Uber, UK Ministry of Defence, and the U.S. Department of Defense, trust HackerOne to safeguard their digital ecosystems. HackerOne was recognized in Gartner’s Emerging Tech Impact Radar: AI Cybersecurity Ecosystem report for its leadership in AI Security Testing.

Average Rating: 4.5/5.0

Total Reviews: 97

How Do G2 Users Rate H1 Platform?

  • Has the product been a good partner in doing business?: 8.9/10 (Category avg: 9.2/10)
  • Reporting: 10.0/10 (Category avg: 8.8/10)
  • Risk-Prioritization: 8.3/10 (Category avg: 8.8/10)

Who Is the Company Behind H1 Platform?

  • Seller: HackerOne
  • Company Website:
  • Year Founded: 2012
  • HQ Location: San Francisco, California
  • Twitter: @Hacker0x01
    337,493 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    7,090 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Information Technology and Services, Computer Software
  • Company Size: 47% Large, 36% Medium

What Do G2 Reviewers Say About H1 Platform?

AI-generated summary from verified user reviews

Pros
  • Users highlight the ease of use of H1 Platform, making it simple to manage and track bounty programs effectively.
  • Users highlight the helpful customer service of HackerOne, ensuring effective assistance and smooth platform navigation.
  • Users value the seamless collaboration facilitated by H1 Platform, enhancing communication with security researchers and team members.
  • Users value the enhanced security protection of H1 Platform, facilitating proactive vulnerability management and team collaboration.
  • Users value the exceptional customer support of H1 Platform, enhancing their overall experience and program management.
Cons
  • Users find the complexity issues in triaging and credentials management to be a challenge, impacting overall efficiency.
  • Users note the expensive pricing of H1 Platform, which may challenge smaller organizations despite its value.
  • Users face time management challenges with inconsistent triage speed and quality, impacting overall efficiency on the H1 Platform.
  • Users experience poor customer support with long ticket resolutions and unresolved queries impacting their overall satisfaction.
  • Users find the poor interface design of H1 Platform confusing and difficult to navigate, often missing reports.

What Are Recent G2 Reviews of H1 Platform?

What Are G2 Users Discussing About H1 Platform?

YesWeHack

YesWeHack is a leading Offensive Security and Exposure Management platform delivering integrated, API-based solutions to secure organisations’ growing attack surfaces. Its human-in-the-loop model combines Bug Bounty (leveraging a global community of 160,000+ skilled ethical hackers), Agentic Pentest, Exposure Management, and unified Vulnerability Management to deliver agile, exhaustive security testing at scale. Customers include Louis Vuitton, Ferrero, the European Commission, Tencent and L’Oréal Groupe. ISO 27001-certified, CREST-accredited, and EU-hosted with full GDPR compliance.

Average Rating: 4.8/5.0

Total Reviews: 33

How Do G2 Users Rate YesWeHack?

  • Has the product been a good partner in doing business?: 9.9/10 (Category avg: 9.2/10)
  • Reporting: 9.2/10 (Category avg: 8.8/10)
  • Vulnerability Intelligence: 8.3/10 (Category avg: 8.7/10)
  • Risk-Prioritization: 9.0/10 (Category avg: 8.8/10)

Who Is the Company Behind YesWeHack?

  • Seller: YesWeHack
  • Year Founded: 2015
  • HQ Location: Paris, France
  • LinkedIn® Page: www.linkedin.com
    786 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Computer & Network Security
  • Company Size: 42% Large, 36% Small

What Do G2 Reviewers Say About YesWeHack?

AI-generated summary from verified user reviews

Pros
  • Users find YesWeHack to be exceptionally easy to use, enhancing management of vulnerabilities and communication.
  • Users value the exceptional customer support from YesWeHack, enhancing partnerships and ensuring effective bug bounty management.
  • Users value the intuitive platform and exceptional support from YesWeHack, enhancing their bug bounty experience significantly.
  • Users value the high-quality reporting of YesWeHack, appreciating the effectiveness of the triagers and detailed insights provided.
  • Users commend the exceptional quality and support of YesWeHack's services, enhancing their bug bounty experience significantly.
Cons
  • Users find YesWeHack too expensive, especially smaller organizations that struggle with the high pricing.
  • Users find the poor interface design limits tracking capabilities, suggesting a need for updates and improvements.
  • Users experience limited scope with YesWeHack, finding it inadequate for managing numerous programs effectively.
  • Users note the missing tracking features in YesWeHack, which prevent the interface from being fully effective.
  • Users find the pricing steep for smaller organizations, which limits accessibility and broad adoption of YesWeHack.

What Are Recent G2 Reviews of YesWeHack?

Pentera

Pentera is the category leader for Automated Security Validation, allowing every organization to test with ease the integrity of all cybersecurity layers, unfolding true, current security exposures at any moment, at any scale. Thousands of security professionals and service providers around the world use Pentera to guide remediation and close security gaps before they are exploited. Its customers include Casey's General Stores, Emeria, LuLu International Exchange, IP Telecom PT, BrewDog, City National Bank, Schmitz Cargobull, and MBC Group. Pentera is backed by leading investors such as K1 Investment Management, Insight Partners, Blackstone, Evolution Equity Partners, and AWZ. Visit https://pentera.io for more information.

Average Rating: 4.6/5.0

Total Reviews: 186

How Do G2 Users Rate Pentera?

  • Has the product been a good partner in doing business?: 9.3/10 (Category avg: 9.2/10)
  • Reporting: 7.8/10 (Category avg: 8.8/10)
  • Vulnerability Intelligence: 8.3/10 (Category avg: 8.7/10)
  • Risk-Prioritization: 8.3/10 (Category avg: 8.8/10)

Who Is the Company Behind Pentera?

  • Seller: Pentera
  • Company Website:
  • Year Founded: 2015
  • HQ Location: Boston, MA
  • Twitter: @penterasec
    3,291 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    460 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Government Administration, Banking
  • Company Size: 52% Large, 34% Medium

What Do G2 Reviewers Say About Pentera?

AI-generated summary from verified user reviews

Pros
  • Users find Pentera's ease of use exceptional, thanks to its automation, customizable scenarios, and simple interface.
  • Users value the effective vulnerability scanning and remediation capabilities of Pentera, enhancing overall security posture.
  • Users value the automation capabilities of Pentera, enhancing their security testing and validation processes efficiently.
  • Users value the responsive customer support from Pentera, enhancing their experience and facilitating smooth operations.
  • Users value the realistic attack simulations offered by Pentera, enhancing their security posture through continuous validation.
Cons
  • Users find the reporting inadequate, suggesting it requires improvement for better enterprise-level insights.
  • Users express concern about the lack of a robust RBAC system, limiting proper access control and user rights management.
  • Users desire improvement in handling false positives, though overall satisfaction with Pentera remains high.
  • Users note the limited reporting capabilities of Pentera, especially for enterprise-level assessments and lacking Spanish translation.
  • Users are concerned about the missing features in Pentera, including updates on vulnerabilities and insufficient RBAC options.

What Are Recent G2 Reviews of Pentera?

Recorded Future

Recorded Future is the world’s largest threat intelligence company. Recorded Future’s Intelligence Cloud provides end-to-end intelligence across adversaries, infrastructure, and targets. Indexing the internet across the open web, dark web, and technical sources, Recorded Future provides real-time visibility into an expanding attack surface and threat landscape, empowering clients to act with speed and confidence to reduce risk and securely drive business forward. Headquartered in Boston with offices and employees around the world, Recorded Future works with over 1,900 businesses and government organizations across 80 countries to provide real-time, unbiased and actionable intelligence. Learn more at recordedfuture.com.

Average Rating: 4.5/5.0

Total Reviews: 234

How Do G2 Users Rate Recorded Future?

  • Has the product been a good partner in doing business?: 9.1/10 (Category avg: 9.2/10)
  • Reporting: 8.4/10 (Category avg: 8.8/10)
  • Vulnerability Intelligence: 8.9/10 (Category avg: 8.7/10)
  • Risk-Prioritization: 8.8/10 (Category avg: 8.8/10)

Who Is the Company Behind Recorded Future?

  • Seller: Recorded Future
  • Company Website:
  • Year Founded: 2009
  • HQ Location: Somerville, US
  • Twitter: @RecordedFuture
    107,965 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    1,150 employees on LinkedIn®

Who Uses This Product?

  • Who Uses This: Cyber Threat Intelligence Analyst, Threat Intelligence Analyst
  • Top Industries: Financial Services, Information Technology and Services
  • Company Size: 64% Large, 21% Medium

What Do G2 Reviewers Say About Recorded Future?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the ease of use of Recorded Future, finding the interface intuitive and features beneficial for daily tasks.
  • Users enjoy the advanced customization features of Recorded Future, providing in-depth insights and alerts for cyber threats.
  • Users value the intelligent insights from Recorded Future, enhancing their understanding of critical data relationships effectively.
  • Users value the effective threat detection capabilities of Recorded Future, enabling prompt response to potential security risks.
  • Users value the actionable threat intelligence from Recorded Future, enhancing their vulnerability management and overall security posture.
Cons
  • Users find the navigation complex in Recorded Future, leading to difficulties in creating accurate queries and managing data.
  • Users often mention the high cost of Recorded Future, which can be challenging for teams with tight budgets.
  • Users find the learning curve steep, requiring significant time and effort to master the platform's features.
  • Users find difficult learning curves due to complexity and advanced settings, hindering team accessibility and efficiency.
  • Users express concern over inaccuracy issues in Recorded Future, affecting predictions and relevant alerts significantly.

What Are Recent G2 Reviews of Recorded Future?

What Are G2 Users Discussing About Recorded Future?

Titania Nipper InfraSight

Award-winning Risk-Based Vulnerability Management. Nipper InfraSight analyzes network device configurations in the way Advances Persistent Threat (APT) groups do, to identify misconfigurations that could create attack paths. This analysis offers unparalleled, pen-tester accuracy, finding critical vulnerabilities in firewalls, routers, switches that other tools simply cannot see. Our solutions then prioritize the biggest risks to your business and provide device-specific remediation guidance, right down to specific command line prompts.  By analyzing device configurations against key compliance standards and security frameworks (including STIGs/CIS Benchmarks/PCI DSS/CMMC/CORA/NIST SP 800-53), Nipper solutions tell you precisely which devices are at risk of failing, how significant that risk is, and how you can solve it, with auditor-ready reports. Whether your focus is taking pragmatic, risk-based security measures to minimize known vulnerabilities or ensuring compliance with industry security standards, Nipper solutions provide the targeted insights you need. No other security provider looks at the network in the same way. That’s why Nipper can uniquely provide the network configuration coverage that organizations urgently require. 30+ U.S. federal agencies and 800+ organizations globally trust Nipper solutions to deliver vulnerability analysis and compliance automation while supporting air-gapped environments, sovereign cloud requirements, and complex regulated infrastructures.

Average Rating: 4.2/5.0

Total Reviews: 31

How Do G2 Users Rate Titania Nipper InfraSight?

  • Has the product been a good partner in doing business?: 9.2/10 (Category avg: 9.2/10)
  • Reporting: 9.1/10 (Category avg: 8.8/10)
  • Vulnerability Intelligence: 6.0/10 (Category avg: 8.7/10)
  • Risk-Prioritization: 8.6/10 (Category avg: 8.8/10)

Who Is the Company Behind Titania Nipper InfraSight?

  • Seller: Titania
  • Company Website:
  • Year Founded: 2009
  • HQ Location: London, GB
  • Twitter: @TitaniaLtd
    2,821 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    104 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 39% Large, 26% Medium

What Do G2 Reviewers Say About Titania Nipper InfraSight?

AI-generated summary from verified user reviews

Pros
  • Users find the ease of use of Titania Nipper InfraSight exceptional, ensuring a smooth and straightforward experience.
  • Users value the high-quality reporting of Titania Nipper, which delivers insightful recommendations and clear misconfiguration assessments.
  • Users value the scanning efficiency of Titania Nipper InfraSight, enabling quick detection of network misconfigurations.
  • Users enjoy the effective vulnerability detection of Titania Nipper, offering actionable insights and structured assessments for network configuration.
  • Users appreciate the clear and user-friendly interface of Titania Nipper InfraSight, enhancing their experience and efficiency.
Cons
  • Users express concerns about licensing issues, particularly the minimum device requirement and the ongoing license model.
  • Users experience false positives in Titania Nipper InfraSight, causing confusion and affecting trust in its findings.
  • Users find the lack of cloud support limiting, especially with specific devices like wireless controllers and security groups.
  • Users face limited compatibility with devices, necessitating older versions and complicating integration with cloud services.
  • Users face challenges with limited device support, leading to complications with version maintenance and security auditing.

What Are Recent G2 Reviews of Titania Nipper InfraSight?

What Are G2 Users Discussing About Titania Nipper InfraSight?

vRx by Vicarius

vRx by Vicarius goes beyond patch management to offer the most advanced vulnerability remediation solution in the market. vRx offers 3 built-in methods to keep you covered at all times: 1) Automated Patching: vRx catalogs all your apps and finds the patches they need, and applies them - automatically and on the schedule or frequency of your choosing. 2) Scripting: For more complex vulnerabilities or configuration based vulnerabilities, vRx includes a fully fledged scripting engine. 3) Patchless Protection: x_protect or patchless protection is a compensating control that reduces the risk of an affected app even when a patch is not yet developed or cannot be deployed vRx helps 500+ customers across 50 countries find AND immediately remediate vulns that impact their business.

Average Rating: 4.9/5.0

Total Reviews: 61

How Do G2 Users Rate vRx by Vicarius?

  • Has the product been a good partner in doing business?: 9.6/10 (Category avg: 9.2/10)
  • Reporting: 8.7/10 (Category avg: 8.8/10)
  • Vulnerability Intelligence: 9.2/10 (Category avg: 8.7/10)
  • Risk-Prioritization: 9.6/10 (Category avg: 8.8/10)

Who Is the Company Behind vRx by Vicarius?

  • Seller: Vicarius
  • Company Website:
  • Year Founded: 2016
  • HQ Location: New York, New York
  • Twitter: @vicariusltd
    2,018 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    100 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Computer & Network Security, Information Technology and Services
  • Company Size: 44% Medium, 32% Small

What Do G2 Reviewers Say About vRx by Vicarius?

AI-generated summary from verified user reviews

Pros
  • Users value the ease of use of vRx, praising its quick setup and user-friendly interface.
  • Users appreciate the high level of automation in vRx, streamlining vulnerability management from detection to remediation.
  • Users value the automated vulnerability identification in vRx by Vicarius, enhancing efficiency in patch management and remediation.
  • Users value the automated vulnerability identification and patch management in vRx, enhancing efficiency and support significantly.
  • Users value the automated patch management in vRx by Vicarius, which enhances efficiency and reduces manual workload.
Cons
  • Users feel that vRx lacks essential features like advanced reporting and Windows store application support, requiring further development.
  • Users note inadequate reporting, citing simplicity and a need for enhanced customization and compliance options.
  • Users find the complexity of setup and advanced analytics challenging, particularly for those with limited technical expertise.
  • Users experience dashboard issues that hinder customization and adaptability, particularly for non-technical audiences.
  • Users note a lack of customization in reports and dashboards, limiting adaptation for different audiences.

What Are Recent G2 Reviews of vRx by Vicarius?

What Are G2 Users Discussing About vRx by Vicarius?

HeroDevs

HeroDevs Never-Ending Support provides secure drop-in replacements and updates for end-of-life open source libraries, protecting businesses from vulnerabilities in deprecated software. Our team delivers proactive security updates—often before CVEs are publicly disclosed—and maintains continuous monitoring of your technology stack to identify potential threats before they impact your systems. Our solution eliminates the need for costly, time-consuming rewrites when open source libraries reach end-of-life by extending support indefinitely. HeroDevs' expert engineers maintain your existing codebase with security patches, bug fixes, and compatibility updates, allowing your development team to focus on innovation rather than remediation. This approach preserves your investment in current applications while ensuring they remain secure and compliant. HeroDevs partners directly with your security and development teams to rapidly assess vulnerabilities, prioritize remediation efforts, and implement fixes with minimal disruption. Our service includes detailed reporting on security posture, comprehensive documentation of all changes, and dedicated technical support from engineers specialized in your specific technologies. By extending the life of critical open source components, we help organizations maintain business continuity while significantly reducing security risks and compliance concerns. Keep your business secure and your applications running without costly rewrites or risky exposure.

Average Rating: 4.7/5.0

Total Reviews: 18

How Do G2 Users Rate HeroDevs?

  • Has the product been a good partner in doing business?: 9.5/10 (Category avg: 9.2/10)
  • Reporting: 7.5/10 (Category avg: 8.8/10)
  • Vulnerability Intelligence: 8.3/10 (Category avg: 8.7/10)
  • Risk-Prioritization: 8.3/10 (Category avg: 8.8/10)

Who Is the Company Behind HeroDevs?

  • Seller: HeroDevs
  • Year Founded: 2018
  • HQ Location: Sandy, Utah
  • Twitter: @herodevs
    2,672 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    108 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 61% Medium, 39% Small

What Do G2 Reviewers Say About HeroDevs?

AI-generated summary from verified user reviews

Pros
  • Users commend the responsive and helpful customer support of HeroDevs, making their experience seamless and enjoyable.
  • Users value the seamless integrations HeroDevs offers, enhancing development workflows and ensuring smooth transitions.
  • Users value the ease of use of HeroDevs, praising its straightforward implementation and seamless integration.
  • Users value the outstanding security measures of HeroDevs, ensuring safe transitions from legacy technology to modern frameworks.
  • Users commend the robust authentication security of HeroDevs, ensuring safe transitions and compliance during technology upgrades.
Cons
  • Users feel the software is overly expensive, especially for small and medium businesses, despite potential long-term savings.
  • Users express concerns about the lack of a centralized dashboard for tracking support and subscription management.
  • Users feel the missing features hinder effective management and implementation, affecting overall satisfaction with HeroDevs.
  • Users prefer a monthly billing option for better cash flow management, which HeroDevs currently lacks.
  • Users experience complex implementation issues with version compatibility and lack of support for deprecated package managers.

What Are Recent G2 Reviews of HeroDevs?

Cortex Cloud

Cortex Cloud by Palo Alto Networks, the next version of Prisma Cloud, understands a unified security approach is essential for effectively addressing AppSec, CloudSec, and SecOps. Connecting cloud security and SOC workflows enables teams to achieve holistic visibility, trace risk across the lifecycle, and correlate real-time threat activity with development and runtime contexts. Cortex Cloud is a unified platform built on three core pillars: data integration, AI-driven intelligence, and automation. Now you can safeguard applications, data, and infrastructure across multicloud and hybrid environments with a unified data model that consolidates telemetry from code, runtime, identity, and endpoints, all into a single data source. Empower teams with precise, AI-powered insights and 2200+ machine learning models to identify and stop zero-day threats with real-time advanced threat detection and response. And automate with 1000+ prebuilt playbooks across your cloud stack to reduce manual workloads, accelerate remediations, and cut response times tenfold. Cortex Cloud delivers more than tools—it transforms how organizations secure their cloud environments.

Average Rating: 4.1/5.0

Total Reviews: 125

How Do G2 Users Rate Cortex Cloud?

  • Has the product been a good partner in doing business?: 8.0/10 (Category avg: 9.2/10)
  • Reporting: 7.8/10 (Category avg: 8.8/10)
  • Vulnerability Intelligence: 7.5/10 (Category avg: 8.7/10)
  • Risk-Prioritization: 8.1/10 (Category avg: 8.8/10)

Who Is the Company Behind Cortex Cloud?

  • Seller: Palo Alto Networks
  • Company Website:
  • Year Founded: 2005
  • HQ Location: Santa Clara, CA
  • Twitter: @PaloAltoNtwks
    128,951 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    23,492 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Information Technology and Services, Computer & Network Security
  • Company Size: 38% Large, 32% Medium

What Do G2 Reviewers Say About Cortex Cloud?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the ease of use of Cortex Cloud, benefiting from its streamlined interface and centralized management.
  • Users value the user-friendly interface and seamless integrations of Cortex Cloud, enhancing efficiency and incident management.
  • Users value the comprehensive security overview of Cortex Cloud, enhancing protection across all environments and stages.
  • Users value the comprehensive visibility provided by Cortex Cloud, enhancing efficiency and simplifying incident management.
  • Users appreciate the secure and centralized cloud integration of Cortex Cloud, enhancing efficiency and organization in their processes.
Cons
  • Users find Cortex Cloud to be expensive, particularly challenging for smaller teams with limited budgets.
  • Users find the difficult learning curve of Cortex Cloud frustrating, especially for beginners navigating its features.
  • Users face a steep learning curve with Cortex Cloud, as some features are not intuitive for beginners.
  • Users find the pricing issues with Cortex Cloud significant, especially affecting smaller teams considering affordability.
  • Users find the complex setup of Cortex Cloud challenging, especially for newcomers without prior experience.

What Are Recent G2 Reviews of Cortex Cloud?

ServiceNow Security Operations

ServiceNow Security Operations is a sophisticated software solution designed to enhance threat and vulnerability management as well as incident response for organizations. By leveraging artificial intelligence, this platform empowers security teams to operate more efficiently and effectively, allowing for streamlined collaboration across IT, security, and risk management departments. The primary goal of ServiceNow Security Operations is to simplify complex security processes while minimizing risks associated with cybersecurity threats. Targeted at security teams within organizations of various sizes, ServiceNow Security Operations addresses the need for a cohesive approach to managing security incidents and vulnerabilities. It is particularly beneficial for organizations that utilize multiple security tools, as it integrates security and vulnerability data from these existing systems. This integration enables teams to respond to threats more rapidly by automating critical workflows and processes, thus reducing the manual effort traditionally required in incident response. The platform is suitable for both small businesses and large enterprises, making it a versatile choice for organizations looking to enhance their cybersecurity measures. Key features of ServiceNow Security Operations include intelligent workflows that automate routine tasks, allowing security professionals to focus on more strategic initiatives. The platform’s AI-driven capabilities facilitate the automatic correlation of threat intelligence from diverse sources, such as the MITRE ATT&CK framework. This feature enhances situational awareness and enables teams to prioritize threats effectively based on real-time data. Additionally, the ability to take action within other security or IT management tools from a centralized console streamlines operations, ensuring that teams can respond to incidents without unnecessary delays. This centralized approach not only improves efficiency but also fosters better communication among different departments involved in security management. Moreover, the use of digital security workflows and orchestration significantly accelerates tasks such as analysis, prioritization, and remediation. By automating these processes, organizations can improve their response times and enhance their overall cybersecurity posture. The integration of AI-driven automation within the ServiceNow AI Platform® further strengthens the platform's capabilities, enabling organizations to drive cyber resilience and reduce their exposure to potential threats. This proactive approach to cybersecurity ensures that organizations are not only reacting to incidents but are also prepared to prevent them. ServiceNow Security Operations stands out in the cybersecurity landscape by offering a comprehensive solution that addresses the complexities of modern cybersecurity challenges. By automating and simplifying threat and vulnerability management, it empowers security teams to respond more effectively, thereby enhancing the overall security framework of an organization. This makes it an essential tool for any organization looking to bolster its defenses against the ever-evolving landscape of cyber threats.

Average Rating: 4.3/5.0

Total Reviews: 81

How Do G2 Users Rate ServiceNow Security Operations?

  • Has the product been a good partner in doing business?: 8.8/10 (Category avg: 9.2/10)
  • Reporting: 8.9/10 (Category avg: 8.8/10)
  • Vulnerability Intelligence: 9.5/10 (Category avg: 8.7/10)
  • Risk-Prioritization: 9.5/10 (Category avg: 8.8/10)

Who Is the Company Behind ServiceNow Security Operations?

  • Seller: ServiceNow
  • Company Website:
  • Year Founded: 2004
  • HQ Location: Santa Clara, CA
  • Twitter: @servicenow
    55,548 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    35,078 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Information Technology and Services, Computer & Network Security
  • Company Size: 55% Large, 19% Medium

What Do G2 Reviewers Say About ServiceNow Security Operations?

AI-generated summary from verified user reviews

Pros
  • Users value the remarkable integration capabilities of ServiceNow Security Operations, facilitating seamless management of security incidents.
  • Users value the seamless integration with third-party tools in ServiceNow Security Operations, enhancing productivity and workflow efficiency.
  • Users praise the seamless integration capabilities of ServiceNow Security Operations, enhancing efficiency and productivity in incident management.
  • Users appreciate the ease of use of ServiceNow Security Operations, facilitating efficient management of security incidents.
  • Users appreciate the end-to-end management of incidents in ServiceNow Security Operations, enhancing efficiency and integration.
Cons
  • Users find the difficult setup of ServiceNow Security Operations to be a significant barrier to effective implementation.
  • Users face integration issues with ServiceNow Security Operations, citing difficulties in setup and limited direct integrations.
  • Users feel the licensing issues with ServiceNow Security Operations limit playbook options, impacting remediation and increasing costs.
  • Users struggle with the complexity of building playbooks in ServiceNow Security Operations, highlighting a need for simplification.
  • Users face difficult customization when building playbooks in ServiceNow Security Operations, hindering their effectiveness and efficiency.

What Are Recent G2 Reviews of ServiceNow Security Operations?

What Are G2 Users Discussing About ServiceNow Security Operations?

Cisco Vulnerability Management (formerly Kenna.VM)

Cisco Vulnerability Management (formerly Kenna.VM), the original SaaS risk-based vulnerability management platform, prioritizes vulnerabilities that pose a real risk, enabling Security and IT teams to focus their limited resources and remediate more efficiently. Cisco’s data science-driven prioritization evaluates both enterprise data and a wealth of data on real-world exploit activity and translates that context into actionable intelligence to guide remediation.

Average Rating: 4.3/5.0

Total Reviews: 200

How Do G2 Users Rate Cisco Vulnerability Management (formerly Kenna.VM)?

  • Has the product been a good partner in doing business?: 8.9/10 (Category avg: 9.2/10)
  • Reporting: 8.5/10 (Category avg: 8.8/10)
  • Vulnerability Intelligence: 8.7/10 (Category avg: 8.7/10)
  • Risk-Prioritization: 9.1/10 (Category avg: 8.8/10)

Who Is the Company Behind Cisco Vulnerability Management (formerly Kenna.VM)?

  • Seller: Cisco
  • Year Founded: 1984
  • HQ Location: San Jose, CA
  • Twitter: @Cisco
    720,366 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    95,294 employees on LinkedIn®
  • Ownership: NASDAQ:CSCO

Who Uses This Product?

  • Who Uses This: Software Engineer
  • Top Industries: Information Technology and Services, Financial Services
  • Company Size: 76% Large, 17% Medium

What Are Recent G2 Reviews of Cisco Vulnerability Management (formerly Kenna.VM)?

What Are G2 Users Discussing About Cisco Vulnerability Management (formerly Kenna.VM)?

Brandon Summers-Miller
BS
Researched and written by Brandon Summers-Miller
Updated October 3, 2024