Best Risk-Based Vulnerability Management Software - Page 11

How Many Risk-Based Vulnerability Management Software Products Does G2 Track?

Total Products under this Category: 212

Category Stats (Sep 2026)

  • Average Rating: 4.49/5 The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: Ethiack (+0.86%) - Among all products in this category, Ethiack recorded the largest rating increase compared to last month

Last updated: September 01, 2026

How Does G2 Rank Risk-Based Vulnerability Management Software Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 5,300+ Authentic Reviews
  • 212+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Risk-Based Vulnerability Management Software

G2 Grid® for Risk-Based Vulnerability Management Software plotting products by satisfaction and market presence

Highlighted products: Ivanti Neurons for Unified Endpoint Management, Arctic Wolf, Tenable Vulnerability Management, RiskProfiler - External Threat Exposure Management, YesWeHack, Pentera, Check Point Exposure Management, and H1 Platform.

Underlying data: [Grid® JSON](https://www.g2.com/categories/risk-based-vulnerability-management/grids.json?focus%5B%5D=ivanti-neurons-for-unified-endpoint-management&focus%5B%5D=arctic-wolf&focus%5B%5D=tenable-vulnerability-management&focus%5B%5D=riskprofiler-external-threat-exposure-management&focus%5B%5D=yeswehack&focus%5B%5D=pentera&focus%5B%5D=check-point-exposure-management&focus%5B%5D=h1-platform)

Eracent Vulnerability Manager

Who Is the Company Behind Eracent Vulnerability Manager?

  • Seller: Eracent
  • Year Founded: 2000
  • HQ Location: Riegelsville, Pennsylvania
  • Twitter: @eracent
    141 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    69 employees on LinkedIn®

GapSwift

GapSwift is a Continuous Digital Assurance platform that helps IT and security teams build clearer visibility across their Windows environment. GapSwift combines Asset Intelligence with Windows security posture, Security Gaps, Vulnerability Intelligence and a high-level Cyber Score to help teams understand assets and the security evidence associated with them. The GapSwift Collector provides automated discovery and inventory visibility for supported Windows workstations and Windows Servers. Asset information can include hardware, operating system and build details, processor, memory, storage, network interfaces, installed software, Windows hotfix evidence, users and applicable local administrator context, services and selected licensing information. Teams can also maintain ownership, location, categorization and status information and review asset history and changes over time. GapSwift connects asset evidence with security context so teams can move beyond static inventory toward mor

Who Is the Company Behind GapSwift?

HACK-X NODE

HACK-X NODE is a Risk and Vulnerability Management PTaaS product delivering on-demand, continuous and scalable Security Assessments with a unique blend of automated scanning and in-depth manual penetration testing. HACK-X NODE is disrupting the traditional VAPT method by its unique auto-configuration feature and making the entire process very seamless. This product is one stop solution for all VAPT needs: Web Application Android Application iOS Application Network

Who Is the Company Behind HACK-X NODE?

HCL BigFix SaaS Remediate

HCL BigFix SaaS Remediate is developed by HCLSoftware, a division of HCLTech and a global enterprise software company with offices and labs worldwide. HCLSoftware serves more than 20,000 organizations, including a majority of the Fortune 100 and nearly half of the Fortune 500, across cybersecurity, digital transformation, data analytics, and AI and automation. The BigFix platform has been a trusted name in endpoint management for over two decades. HCL BigFix SaaS Remediate is the cloud-native evolution of that platform — purpose-built to bring enterprise-grade vulnerability remediation to organizations that need immediate time-to-value without the burden of on-premises infrastructure. The platform is cloud-hosted, requires no hardware or server setup on the customer side, and provisions a fully functional instance within minutes of registration. HCL BigFix SaaS Remediate automates the entire vulnerability remediation lifecycle from a single cloud console. Its remediation engine is powered by 500,000+ pre-tested Fixes — pre-built, pre-validated remediation scripts maintained by HCL BigFix — covering 120+ operating system versions and 700+ third-party applications, delivering a 98%+ first-pass patch success rate. The CyberFOCUS Analytics engine integrates CISA's Known Exploited Vulnerabilities (KEV) catalog and MITRE ATT&CK adversary data to shift prioritization from theoretical CVSS scores to vulnerabilities actively being exploited in the wild — enabling teams to remediate CISA KEVs up to 100x faster than manual processes. The Integrated Vulnerability Remediation (IVR) capability ingests scan findings from Tenable and automatically correlates each CVE with the most appropriate available fix using the BigFix supersedence engine, eliminating manual correlation entirely. For zero-days and non-patch scenarios, the platform supports custom scripts, registry edits, and configuration changes targeted to specific device groups before vendor patches are available. Protection Level Agreements (PLAs) allow teams to define remediation performance targets and track results — patch success rates, mean time to remediate, and compliance percentages — continuously across shared dashboards visible to IT, security, and executive stakeholders. The core problem HCL BigFix SaaS Remediate solves is the remediation gap — the weeks or months that pass between a vulnerability being discovered and it actually being fixed. Most organizations have scanners that generate findings; far fewer have a reliable, automated system to act on those findings at speed and scale. BigFix SaaS Remediate closes that gap by connecting detection directly to execution. IT teams stop managing manual patch cycles across fragmented tools. Security teams stop watching findings age in backlogs. Leadership gains board-reportable metrics that prove risk is being reduced — not just monitored. The Platform delivers measurable impact from day one: one global manufacturing customer discovered over 8,000 vulnerabilities their existing scanner had missed within hours of deployment. A 14-day fully functional free trial is available with no credit card required, no feature restrictions, and 24/7 support.

Who Is the Company Behind HCL BigFix SaaS Remediate?

  • Seller: HCL Technologies
  • Year Founded: 1999
  • HQ Location: Noida, Uttar Pradesh
  • Twitter: @hcltech
    425,043 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    258,955 employees on LinkedIn®
  • Ownership: NSE - National Stock Exchange of India

Humanize Salience

Humanize Salience is the N1 quantified cyber risk management solution translated for C-level executives. Our solution helps organizations to proactively assess the hidden risks of cyber vulnerabilities through leveraging advanced MetaDiscovering, MetaTreats Analysis, and modeling techniques. We use quantification models to estimate the range of probabilities and impacts of potential security events so that business leaders can be aware of the likelihood and impact of compliance and financial risks.

Who Is the Company Behind Humanize Salience?

  • Seller: Humanize
  • Year Founded: 2021
  • HQ Location: San Francisco, US
  • LinkedIn® Page: www.linkedin.com
    6 employees on LinkedIn®

Inspectiv

Inspectiv is an all-in-one AppSec testing platform that simplifies the process of discovering, validating, and remediating vulnerabilities. By offering penetration testing, bug bounty programs, dynamic application security testing (DAST), and vulnerability disclosure (VDP) in a single solution, organizations can reduce risk, maintain compliance, and strengthen their security posture. With streamlined management, minimal operational overhead, and predictable pricing, Inspectiv delivers impactful results that make security testing more efficient and effective.

Who Is the Company Behind Inspectiv?

iSecurity Assessment

iSecurity Assessment is a Windows-based program for in-depth analysis of the full scope of the iSeries server (System i or AS/400) security strengths and weaknesses, pinpointing the security risks which should be addressed. The output is a detailed report, grading each facet of iBM i security, with full explanations.

Who Is the Company Behind iSecurity Assessment?

MCR Sentinel Suite

MCR Sentinel Suite is a cybersecurity and risk-monitoring platform built specifically for SMEs, combining continuous visibility, remediation support, and an SME‑friendly commercial model.

Who Is the Company Behind MCR Sentinel Suite?

Nexus Stack Technologies

SAAS Based Vulnerability Management solution, supported by AI-Driven checks and False Positive Removals

Who Is the Company Behind Nexus Stack Technologies?

NorthStar Navigator

NorthStar Navigator is an advanced, data-driven platform designed to automate and enhance security risk operations by prioritizing remediation efforts, reducing risk, and providing comprehensive data visibility. It enables organizations to view all security vulnerabilities in a centralized location and offers a method to score them against specific security requirements and business needs. The platform features customizable scoring, simplified data integration, and serves as a single source of truth for managing risk. Key Features and Functionality: - Risk-Based Prioritization: Analyzes the severity of vulnerabilities and the importance of affected business functions to effectively prioritize remediation efforts. - Automated Data Integration: Cleanses and enriches data from multiple sources, providing visibility into critical issues and optimizing resource allocation. - Comprehensive Reporting: Offers dynamic dashboards and reports that can be customized by line of business, location, or business services, with robust role-based access control. - IT Operations Alignment: Bridges the gap between IT Security and IT Operations by automating correlation of vulnerability and patch information, and integrating with IT management and service desk systems. Primary Value and Problem Solved: NorthStar Navigator addresses the challenge of managing and mitigating security vulnerabilities by providing a centralized, automated platform that prioritizes remediation based on business risk. By integrating data from various sources and offering customizable scoring, it enables organizations to focus on the most critical issues, thereby maximizing risk reduction efforts while minimizing remediation costs.

Who Is the Company Behind NorthStar Navigator?

Nozomi Networks Platform

Nozomi Networks offers highly accurate, actionable intelligence and protection for integrated cybersecurity at scale. The detailed visibility and in-depth insight provided by Nozomi Networks lets users: • See all the OT, IoT, IT, edge and cloud assets on your networks • Pinpoint the cyber threats and vulnerabilities that matter most • Respond quickly to incidents with forensic analysis tools • Manage asset, security and network data in a single platform • Scale cyber and operational resilience across your entire infrastructure

Average Rating: 5.0/5.0

Total Reviews: 1

How Do G2 Users Rate Nozomi Networks Platform?

  • Has the product been a good partner in doing business?: 10.0/10 (Category avg: 9.2/10)

Who Is the Company Behind Nozomi Networks Platform?

  • Seller: Nozomi Networks
  • Year Founded: 2013
  • HQ Location: San Francisco, California, United States
  • Twitter: @nozominetworks
    4,238 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    365 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Large

What Do G2 Reviewers Say About Nozomi Networks Platform?

AI-generated summary from verified user reviews

Pros
  • Users highlight the customization features of Nozomi Networks Platform, enhancing their ability to monitor network activities effectively.
  • Users value the effective detection algorithms of Nozomi Networks Platform, which accurately identify intrusions and malicious traffic.
  • Users commend the detection efficiency of Nozomi Networks Platform, effectively identifying intrusions and analyzing traffic patterns.
  • Users value Nozomi's detection algorithms for identifying intrusions and its excellent interface for traffic pattern visualization.
  • Users value the advanced threat detection capabilities of Nozomi Networks, identifying intrusions and malicious traffic effectively.
Cons
  • Users find the Nozomi Networks Platform expensive, yet it aligns with cybersecurity budget constraints against competitors.

What Are Recent G2 Reviews of Nozomi Networks Platform?

Brandon Summers-Miller
BS
Researched and written by Brandon Summers-Miller
Updated October 3, 2024