# Best Risk-Based Vulnerability Management Software - Page 3

## How Many Risk-Based Vulnerability Management Software Products Does G2 Track?

**Total Products under this Category:** 194

### Category Stats (Aug 2026)

- **Average Rating:** 4.48/5 (↓0.02 vs Jul 2026) The average rating of products in this category, based on all submitted ratings
- **Top Trending Product:** Ivanti Neurons for RBVM (+2.94%) - Among all products in this category, Ivanti Neurons for RBVM recorded the largest rating increase compared to last month

_Last updated: August 07, 2026_

## How Does G2 Rank Risk-Based Vulnerability Management Software Products?

**Why You Can Trust G2's Software Rankings:**

- 30 Analysts and Data Experts
- 4,800+ Authentic Reviews
- 194+ Products
- Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

## G2 Grid® for Risk-Based Vulnerability Management Software
 ![G2 Grid® for Risk-Based Vulnerability Management Software plotting products by satisfaction and market presence](https://www.g2.com/categories/risk-based-vulnerability-management/grids.png?focus%5B%5D=38011&focus%5B%5D=31923&focus%5B%5D=7337&focus%5B%5D=160601&focus%5B%5D=130651&focus%5B%5D=39589&focus%5B%5D=55997&focus%5B%5D=98391)

Highlighted products: Arctic Wolf, Tenable Vulnerability Management, Recorded Future, RiskProfiler - External Threat Exposure Management, YesWeHack, H1 Platform, Check Point Exposure Management, and Pentera.

Underlying data: [Grid® JSON](https://www.g2.com/categories/risk-based-vulnerability-management/grids.json?focus%5B%5D=arctic-wolf&focus%5B%5D=tenable-vulnerability-management&focus%5B%5D=recorded-future&focus%5B%5D=riskprofiler-external-threat-exposure-management&focus%5B%5D=yeswehack&focus%5B%5D=h1-platform&focus%5B%5D=check-point-exposure-management&focus%5B%5D=pentera)

**Sponsored**

### Optro

Optro (Formerly AuditBoard) is a GRC software solution that helps enterprises manage audit, risk, and compliance workflows through an agentic system of action. By using GRC-trained AI, centralizing disparate data points, and automating manual processes, the platform enables organizations to transition from reactive risk management to proactive strategic planning. The platform functions as a comprehensive ecosystem for risk managers, assurance leaders, internal auditors, and compliance officers. It addresses the increasing complexity of modern regulatory environments by providing tools for real-time monitoring and reporting. Optro facilitates a streamlined flow of information between teams, ensuring that risk data is not siloed but instead used to inform high-level business decisions. Optro’s approach allows companies to identify emerging threats and operational vulnerabilities before they impact the bottom line, ultimately turning risk management into a driver of organizational opportunity.

[Visit website](https://www.g2.com/external_clickthroughs/record?secure%5Bad_program%5D=ppc&secure%5Bad_slot%5D=category_product_list_llm&secure%5Bcategory_id%5D=2246&secure%5Bchosen_at%5D=2026-08-08T04%3A10%3A09Z&secure%5Bdisplayable_resource_id%5D=1441&secure%5Bdisplayable_resource_type%5D=Category&secure%5Bmedium%5D=sponsored&secure%5Bplacement_reason%5D=retargeted_product&secure%5Bplacement_resource_ids%5D%5B%5D=20964&secure%5Bprioritized%5D=false&secure%5Bproduct_id%5D=20964&secure%5Bresource_id%5D=2246&secure%5Bresource_type%5D=Category&secure%5Bsource_type%5D=category_page&secure%5Bsource_url%5D=https%3A%2F%2Fwww.g2.com%2Fcategories%2Frisk-based-vulnerability-management%3Fpage%3D3%26post_lead_product%3Dtenable-sc&secure%5Btoken%5D=ed74f2dcfeba2ba1812b48ee51397860e95ac0fe36855dd52ca40d28d84232da&secure%5Burl%5D=https%3A%2F%2Foptro.ai%2Fcontact-us%2Frequest-demo%3Futm_source%3Dg2%26utm_medium%3Ddisplay%26utm_campaign%3Dpc-brand-campaign%26utm_content%3D2026&secure%5Burl_type%5D=book_demo)

### [DefenseStorm](https://www.g2.com/products/defensestorm/reviews)

DefenseStorm is a comprehensive cybersecurity platform specifically designed for financial institutions, focusing on cyber risk assessment, governance, security, and fraud prevention. This integrated solution addresses the unique challenges that banks and other financial entities face in maintaining cyber risk readiness amidst a complex landscape of regulations and technological demands. The platform is tailored to meet the stringent requirements of the banking sector, making it a vital resource for organizations seeking to enhance their cybersecurity posture. DefenseStorm's intelligent data engine, known as GRID ACTIVE, plays a crucial role in this process by providing real-time access to critical threat data. This capability allows financial institutions to analyze and respond to potential threats swiftly, ensuring they remain vigilant against evolving cyber risks. Targeted at banks and financial service providers, DefenseStorm offers a range of use cases that are essential for maintaining compliance and safeguarding sensitive data. The platform not only helps institutions assess their current cyber risk levels but also provides governance tools that facilitate adherence to regulatory requirements. By integrating security measures with fraud detection capabilities, DefenseStorm enables organizations to create a robust defense against both internal and external threats. One of the standout features of DefenseStorm is its Cyber Threat Surveillance Operations (CTS Ops) team, which provides round-the-clock support. This managed service ensures that financial institutions have access to expert resources at all times, allowing them to leverage specialized knowledge and experience in combating cyber threats. The continuous monitoring and proactive threat management offered by the CTS Ops team enhance the overall security framework of the institution, providing peace of mind to stakeholders. Overall, DefenseStorm's unique focus on the banking sector, combined with its advanced data analytics and dedicated support services, positions it as a critical tool for financial institutions aiming to navigate the complexities of cybersecurity. By equipping organizations with the necessary tools and expertise, DefenseStorm helps them not only to meet regulatory obligations but also to foster a culture of security that is essential in today's digital landscape.

**Average Rating:** 4.8/5.0

**Total Reviews:** 30

#### How Do G2 Users Rate DefenseStorm?

- **Has the product been a good partner in doing business?:** 9.7/10 (Category avg: 9.2/10)
- **Reporting:** 8.8/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 7.7/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 9.0/10 (Category avg: 8.8/10)

#### Who Is the Company Behind DefenseStorm?

- **Seller:** [DEFENSESTORM](https://www.g2.com/sellers/defensestorm)
- **Company Website:** www.defensestorm.com
- **Year Founded:** 2014
- **HQ Location:** Alpharetta, Georgia
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=48b41d0e2b266be9d8e000e302f294176d11a23508faf60fdcc70275275dbf61&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fdefensestorm%2F&secure%5Burl_type%5D=linkedin_company_website)  
85 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Banking, Financial Services
- **Company Size:** 80% Medium, 20% Small

#### What Do G2 Reviewers Say About DefenseStorm?

_AI-generated summary from verified user reviews_

##### Pros

- Users commend the **outstanding customer support** from DefenseStorm, highlighting their dedication and expertise in client relations.
- Users praise the **friendly and knowledgeable team** at DefenseStorm for their exceptional support and dedication.
- Users commend the **ease of use** of DefenseStorm, making it a valuable partner for banking security needs.
- Users commend the **expert support staff** of DefenseStorm for their responsiveness and exceptional customer service.
- Users value the **24/7 alert notifications** from DefenseStorm, which provide essential peace of mind for our security.

##### Cons

- Users find **difficult navigation** within DefenseStorm, making it challenging to utilize the platform effectively and efficiently.
- Users find the **lack of clear training materials** a challenge, affecting the ease of using DefenseStorm effectively.
- Users find the **manual asset management** process limiting, impacting the effectiveness of DefenseStorm's system.
- Users find **difficult organization** within DefenseStorm's dashboards, making executive reporting challenging for non-IT stakeholders.
- Users find the **inadequate reporting** hinder their ability to effectively summarize key insights for executives.

#### What Are Recent G2 Reviews of DefenseStorm?

**["Exceptional, Responsive Support for Setup and Monitoring"](https://www.g2.com/survey_responses/defensestorm-review-12909124)**

**Rating:** 4.5/5.0 stars

_— Jonathan B._

[Read full review](https://www.g2.com/survey_responses/defensestorm-review-12909124)

**["Essential for Monitoring and Compliance"](https://www.g2.com/survey_responses/defensestorm-review-10828894)**

**Rating:** 5.0/5.0 stars

_— Derrick M._

[Read full review](https://www.g2.com/survey_responses/defensestorm-review-10828894)

### [CloudBees](https://www.g2.com/products/cloudbees/reviews)

The Complete DevOps solution. CloudBees empowers your software delivery teams to transform your business. CloudBees solution brings together development, operations, IT, security, and business teams to: Create fast with scalable repeatable workflows. Continuously improve customer experiences by progressively delivering features with speed and control. Command everything with higher-order visibility, management, and intelligence across tools, teams, pipelines, and process... all at enterprise scale.

**Average Rating:** 4.4/5.0

**Total Reviews:** 591

#### How Do G2 Users Rate CloudBees?

- **Has the product been a good partner in doing business?:** 8.5/10 (Category avg: 9.2/10)
- **Reporting:** 9.6/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 8.8/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 8.8/10 (Category avg: 8.8/10)

#### Who Is the Company Behind CloudBees?

- **Seller:** [CloudBees](https://www.g2.com/sellers/cloudbees)
- **Company Website:** www.cloudbees.com
- **Year Founded:** 2010
- **HQ Location:** San Jose, CA
- **Twitter:** @CloudBees  
39,175 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=637e9824f180597de93bcdab006cb33181c1a4a56704e6fab06c36941a894bbb&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F1189836%2F&secure%5Burl_type%5D=linkedin_company_website)  
485 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** Software Engineer, DevOps Engineer
- **Top Industries:** Information Technology and Services, Computer Software
- **Company Size:** 48% Large, 41% Medium

#### What Do G2 Reviewers Say About CloudBees?

_AI-generated summary from verified user reviews_

##### Pros

- Users commend CloudBees for its **centralized management and robust security** , enhancing the CI/CD lifecycle for enterprises.
- Users value CloudBees for its **reliability and centralized management** , ensuring efficient CI/CD processes across large organizations.
- Users appreciate the **customization options** in CloudBees, enabling tailored workflows for diverse development needs.
- Users commend the **ease of use** of CloudBees, particularly for integration and managing complex workflows effectively.
- Users appreciate the **seamless integrations** with tools like GitHub, enhancing workflow automation and efficiency.

##### Cons

- Users find the **complex interface** of CloudBees challenging, complicating understanding and configuration of the tool.
- Users find the **complexity in understanding and configuration** of CloudBees can hinder their overall experience.
- Users face **complex setup** challenges with CloudBees, requiring time and specialized expertise for effective configuration.
- Users find the **complex user interface** of CloudBees challenging, complicating understanding and configuration for effective use.
- Users face **configuration issues** with CloudBees, which can complicate the setup and require specialized expertise.

#### What Are Recent G2 Reviews of CloudBees?

**["Strong, Enterprise-Grade CI/CD for Centralized Jenkins Management"](https://www.g2.com/survey_responses/cloudbees-review-12497501)**

**Rating:** 4.5/5.0 stars

_— chandramohan K._

[Read full review](https://www.g2.com/survey_responses/cloudbees-review-12497501)

**["Enterprise-Grade Reliability with Developer-Friendly Innovation"](https://www.g2.com/survey_responses/cloudbees-review-12799588)**

**Rating:** 4.5/5.0 stars

_— Ruchi A._

[Read full review](https://www.g2.com/survey_responses/cloudbees-review-12799588)

#### What Are G2 Users Discussing About CloudBees?

- [What is ElectricFlow?](https://www.g2.com/discussions/what-is-electricflow)
- [What is Jenkins CloudBees?](https://www.g2.com/discussions/what-is-jenkins-cloudbees) - 1 comment, 1 upvote
- [What is CloudBees flow?](https://www.g2.com/discussions/what-is-cloudbees-flow) - 1 comment

### [Strobes Security](https://www.g2.com/products/strobes-security/reviews)

Strobes is an AI-driven exposure management platform designed to help organizations streamline their security operations by unifying various security methodologies, including Attack Surface Management (ASM), Application Security Posture Management (ASPM), Risk-Based Vulnerability Management (RBVM), and Penetration Testing as a Service (PTaaS). This comprehensive solution provides users with a holistic view of their security posture, enabling them to identify, assess, and respond to potential risks and vulnerabilities effectively. Targeted primarily at security teams and IT professionals, Strobes caters to organizations of all sizes that require a robust approach to managing their security exposure. The platform is particularly beneficial for those who need to navigate the complexities of modern security environments, where multiple tools and processes can lead to fragmented insights. By consolidating various security functions into a single workflow, Strobes empowers users to make informed decisions based on a complete understanding of their risk landscape. One of the key features of Strobes is its extensive integration capabilities, boasting over 120 integrations with existing security tools and systems. This allows organizations to pull findings from disparate sources into a single view, enriching data with contextual information that enhances the relevance of insights. The platform's advanced correlation capabilities help identify relationships between different vulnerabilities and risks, enabling security teams to prioritize their remediation efforts effectively. The user-friendly dashboards in Strobes serve as a central hub for monitoring security activities, encompassing everything from asset discovery and vulnerability insights to Service Level Agreement (SLA) tracking and ticketing. This comprehensive visibility supports continuous prioritization and fix validation, allowing teams to address the most critical issues first. By automating triage processes, Strobes ensures that real risks and exposures are highlighted, facilitating a more efficient response to potential threats. Overall, Strobes stands out in the exposure management landscape by providing a cohesive and intelligent approach to security management. Its ability to unify various methodologies, coupled with powerful automation and integration features, positions it as a valuable tool for organizations seeking to enhance their security posture and effectively manage their exposure to risks.

**Average Rating:** 4.6/5.0

**Total Reviews:** 34

#### How Do G2 Users Rate Strobes Security?

- **Has the product been a good partner in doing business?:** 9.4/10 (Category avg: 9.2/10)
- **Reporting:** 8.3/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 10.0/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 9.0/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Strobes Security?

- **Seller:** [Strobes Security Inc](https://www.g2.com/sellers/strobes-security-inc)
- **Company Website:** www.strobes.co
- **Year Founded:** 2019
- **HQ Location:** Plano, US
- **Twitter:** @StrobesHQ  
218 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=f9bd3984d9a343de887a22a2403ea2381378c1c59707d61385d0ce4e66687075&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fstrobeshq&secure%5Burl_type%5D=linkedin_company_website)  
97 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Computer Software
- **Company Size:** 37% Medium, 37% Large

#### What Do G2 Reviewers Say About Strobes Security?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **thorough vulnerability identification** by Strobes, appreciating detailed insights and actionable remediation suggestions.
- Users commend Strobes Security for its **robust vulnerability detection** , providing precise fixes that enhance security efficiency.
- Users value the **comprehensive security insights** provided by Strobes, enhancing vulnerability management and productivity significantly.
- Users value the **proactive customer support** of Strobes Security, noting quick responses and detailed follow-ups for issues.
- Users find Strobes Security's **ease of use** refreshing, with a clean interface streamlining vulnerability management effectively.

##### Cons

- Users criticize the **inadequate reporting** of Strobes Security, highlighting the need for improved transparency and customization options.
- Users find the **limited customization options** of Strobes Security challenging, affecting initial setup and usability.
- Users find Strobes Security's **poor usability** frustrating, noting a steep learning curve and difficulty in navigating features.
- Users find the **reporting issues** in Strobes Security frustrating, lacking transparency and flexibility for effective data management.
- Users find the **UI complex** , noting a learning curve for customization and slow loading for advanced features.

#### What Are Recent G2 Reviews of Strobes Security?

**["Valuable Security Assessments with Practical Findings"](https://www.g2.com/survey_responses/strobes-security-review-12795666)**

**Rating:** 4.5/5.0 stars

_— Apoorva J._

[Read full review](https://www.g2.com/survey_responses/strobes-security-review-12795666)

**["Comprehensive and Reliable Attack Surface Management Solution"](https://www.g2.com/survey_responses/strobes-security-review-12638010)**

**Rating:** 5.0/5.0 stars

_— Divya D._

[Read full review](https://www.g2.com/survey_responses/strobes-security-review-12638010)

### [Palo Alto Cortex XSIAM](https://www.g2.com/products/palo-alto-cortex-xsiam/reviews)

Product Description: Palo Alto Networks' Cortex XSIAM is an AI-driven security operations platform designed to transform traditional Security Operations Centers by integrating and automating key functions such as data centralization, threat detection, and incident response. By leveraging machine learning and automation, it enables organizations to detect and respond to threats more efficiently, reducing manual workloads and improving overall security posture. Key Features and Functionality: - Data Centralization: Aggregates data from various sources into a unified platform, providing comprehensive visibility across the enterprise. - AI-Powered Threat Detection: Utilizes machine learning algorithms to identify anomalies and potential threats in real-time. - Automated Incident Response: Streamlines response processes through automation, enabling rapid mitigation of security incidents. - Integrated SOC Capabilities: Combines functions such as Extended Detection and Response , Security Orchestration, Automation, and Response , Attack Surface Management , and Security Information and Event Management into a cohesive platform, eliminating the need for multiple disparate tools. - Scalability: Designed to handle large volumes of data and adapt to the evolving needs of modern enterprises. Primary Value and Problem Solved: Cortex XSIAM addresses the challenges of disjointed data, weak threat defense, and heavy reliance on manual work in traditional SOCs. By centralizing data and automating security operations, it simplifies processes, enhances threat detection accuracy, and accelerates incident response times. This transformation enables organizations to proactively outpace threats, reduce operational costs, and achieve a more robust security posture.

**Average Rating:** 4.5/5.0

**Total Reviews:** 83

#### How Do G2 Users Rate Palo Alto Cortex XSIAM?

- **Has the product been a good partner in doing business?:** 8.5/10 (Category avg: 9.2/10)
- **Reporting:** 10.0/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Palo Alto Cortex XSIAM?

- **Seller:** [Palo Alto Networks](https://www.g2.com/sellers/palo-alto-networks)
- **Company Website:** www.paloaltonetworks.com
- **Year Founded:** 2005
- **HQ Location:** Santa Clara, CA
- **Twitter:** @PaloAltoNtwks  
128,951 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=283fa006a7b7db5565e608e4d1bc1dafae45bdf4b312f2cd5bb208ac9271f81d&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F30086%2F&secure%5Burl_type%5D=linkedin_company_website)  
22,313 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 44% Large, 37% Medium

#### What Do G2 Reviewers Say About Palo Alto Cortex XSIAM?

_AI-generated summary from verified user reviews_

##### Pros

- Users highlight **best-in-class log management** and effective alerting features, enhancing the overall usability and integration.
- Users appreciate the **user-friendly dashboards** of Palo Alto Cortex XSIAM, highlighting ease of understanding alerts and metrics.
- Users value the **real-time monitoring** capabilities of Palo Alto Cortex XSIAM, enhancing threat detection and response efficiency.
- Users appreciate the **user-friendly interface** of Palo Alto Cortex XSIAM, making monitoring and deployment seamless and efficient.
- Users appreciate the **good dashboard customization** in Palo Alto Cortex XSIAM, citing ease of use and integration.

##### Cons

- Users find the solution **resource intensive** , increasing costs and complicating implementation due to high hardware requirements.
- Users find the **complex implementation** of Palo Alto Cortex XSIAM time-consuming and resource-intensive, requiring significant technical expertise.
- Users find the **cost** of Palo Alto Cortex XSIAM to be higher than competitors, impacting affordability for smaller companies.
- Users report **dashboard issues** that hinder monitoring and create a messy interface, impacting usability and visibility.
- Users struggle with the **difficult setup** of Palo Alto Cortex XSIAM, finding it complex and time-consuming for implementation.

#### What Are Recent G2 Reviews of Palo Alto Cortex XSIAM?

**["Efficient Security Monitoring with Powerful Automation"](https://www.g2.com/survey_responses/palo-alto-cortex-xsiam-review-13129157)**

**Rating:** 4.0/5.0 stars

_— Anas M._

[Read full review](https://www.g2.com/survey_responses/palo-alto-cortex-xsiam-review-13129157)

**["Palo Alto Cortex XSIAM: Centralized Security with Powerful AI Automation"](https://www.g2.com/survey_responses/palo-alto-cortex-xsiam-review-13174734)**

**Rating:** 4.5/5.0 stars

_— Tim H._

[Read full review](https://www.g2.com/survey_responses/palo-alto-cortex-xsiam-review-13174734)

#### What Are G2 Users Discussing About Palo Alto Cortex XSIAM?

- [What is IBM Security ReaQta used for?](https://www.g2.com/discussions/what-is-ibm-security-reaqta-used-for) - 1 comment
- [What does QRadar stand for?](https://www.g2.com/discussions/what-does-qradar-stand-for) - 1 comment, 1 upvote
- [How do I use IBM QRadar?](https://www.g2.com/discussions/how-do-i-use-ibm-qradar) - 1 comment
- [What are the key component of IBM QRadar?](https://www.g2.com/discussions/what-are-the-key-component-of-ibm-qradar) - 1 comment
- [What is IBM QRadar Siem?](https://www.g2.com/discussions/what-is-ibm-qradar-siem) - 1 comment

### [Fortra VM](https://www.g2.com/products/fortra-vm/reviews)

Fortra VM is a proactive, risk-based vulnerability management solution that helps organizations identify, assess, and prioritize security weaknesses across their infrastructure. Beyond basic scanning, Fortra VM provides contextual risk prioritization through its Security GPA rating system, Peer Insight for industry benchmarking, and threat ranking to identify exploitation vectors that are used in real world attacks. Conveniently delivered via SAAS, Fortra VM creates easily understood reporting for efficient and effective remediation.

**Average Rating:** 4.3/5.0

**Total Reviews:** 67

#### How Do G2 Users Rate Fortra VM?

- **Has the product been a good partner in doing business?:** 9.1/10 (Category avg: 9.2/10)
- **Reporting:** 8.6/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 8.6/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 8.7/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Fortra VM?

- **Seller:** [Fortra](https://www.g2.com/sellers/fortra)
- **Year Founded:** 1982
- **HQ Location:** Eden Prairie, Minnesota
- **Twitter:** @fortraofficial  
2,773 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=dc35b82a1c8dc3d25f0baa190554ddab56d530c99dfc134038201f775fd252f8&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Ffortra&secure%5Burl_type%5D=linkedin_company_website)  
1,755 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Financial Services, Banking
- **Company Size:** 45% Medium, 35% Small

#### What Do G2 Reviewers Say About Fortra VM?

_AI-generated summary from verified user reviews_

##### Pros

- Users rave about the **excellent customer support** of Fortra VM, enhancing their overall experience since 2020.
- Users value the **data security features** of Fortra VM, enhancing their endpoint posture and risk management effectively.
- Users find Fortra VM to be **lightweight and user-friendly** , complemented by excellent customer support.
- Users value the **effective incident management** capabilities of Fortra VM for improving endpoint security and remediation efforts.
- Users appreciate the **great value and effectiveness** of Fortra VM in assessing security vulnerabilities and guiding remediation efforts.

#### What Are Recent G2 Reviews of Fortra VM?

**["the vm has great features"](https://www.g2.com/survey_responses/fortra-vm-review-10361310)**

**Rating:** 5.0/5.0 stars

_— suraj t._

[Read full review](https://www.g2.com/survey_responses/fortra-vm-review-10361310)

**["Solid platform and service"](https://www.g2.com/survey_responses/fortra-vm-review-10727027)**

**Rating:** 5.0/5.0 stars

_— Verified User in Judiciary_

[Read full review](https://www.g2.com/survey_responses/fortra-vm-review-10727027)

#### What Are G2 Users Discussing About Fortra VM?

- [What is beSECURE used for?](https://www.g2.com/discussions/what-is-besecure-used-for)
- [What does digital defense do?](https://www.g2.com/discussions/what-does-digital-defense-do)
- [What tools are used for application vulnerability management?](https://www.g2.com/discussions/frontline-vulnerability-manager-what-tools-are-used-for-application-vulnerability-management)
- [What are the typical features offered by vulnerability scanner?](https://www.g2.com/discussions/frontline-vulnerability-manager-what-are-the-typical-features-offered-by-vulnerability-scanner)
- [What does vulnerability management software do?](https://www.g2.com/discussions/what-does-vulnerability-management-software-do)

### [Saner CVEM](https://www.g2.com/products/saner-cvem/reviews)

Prevention-first Vulnerability and Exposure Management for unified visibility, prioritization, compliance, and remediation Saner Continuous Vulnerability and Exposure Management unifies asset exposure, posture anomaly detection, vulnerability assessment, compliance management, risk prioritization, patching, and endpoint actions in one dashboard. Saner CVEM is built to help teams continuously detect, assess, prioritize, and remediate vulnerabilities and other security risks from a unified console Why Choose Saner CVEM? • Unified dashboard with interactive views across visibility, detection, prioritization, and remediation for a single source of truth • Complete asset visibility across endpoint and non-endpoint devices, operating system applications, third-party applications, and lifecycle changes • Continuous risk discovery with rapid scans, daily-updated risk intelligence, and posture anomaly detection that helps surface outliers and misconfigurations faster • Context-driven prioritization with SSVC categories such as Act, Attend, Track, and Track\* so teams can focus on the risks that deserve action first. • Continuous compliance management with built-in templates, customizable profiles, daily checks, and deviation tracking across common frameworks. • Integrated patching and remediation with vulnerability-to-patch mapping, automated deployment workflows, and endpoint actions from the same ecosystem. • Machine-learning-assisted analysis to identify deeper risk patterns, detect unusual posture, and support smarter remediation decisions. • Customizable, audit-ready reporting for security, IT, and compliance teams that need clearer evidence and easier tracking. • Flexible deployment on cloud or on-premises, with remediation support across Windows, Linux, macOS, and AIX environments.

**Average Rating:** 4.5/5.0

**Total Reviews:** 72

#### How Do G2 Users Rate Saner CVEM?

- **Has the product been a good partner in doing business?:** 9.1/10 (Category avg: 9.2/10)
- **Reporting:** 8.3/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 9.4/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 9.1/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Saner CVEM?

- **Seller:** [SecPod](https://www.g2.com/sellers/secpod-b11d8014-d8ec-46e7-9e81-c0d14919fbfc)
- **Company Website:** www.secpod.com
- **Year Founded:** 2008
- **HQ Location:** Redwood City, California
- **Twitter:** @secpod  
542 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=f07ec3fa959542d1d0e98b89f9d982d8570ca92b81b825c7e5167587e9c2e1eb&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fsecpod-technologies%2F&secure%5Burl_type%5D=linkedin_company_website)  
168 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 41% Small, 38% Medium

#### What Do G2 Reviewers Say About Saner CVEM?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **effective automation of security patches** with Saner CVEM, enhancing compliance for remote systems.
- Users appreciate the **automated endpoint security and compliance tracking** of Saner CVEM, simplifying patch management for remote systems.
- Users appreciate the **ease of use** of Saner CVEM, benefiting from its intuitive interface and efficient functionalities.
- Users appreciate the **responsive customer support** of Saner CVEM, enhancing their overall security management experience.
- Users value the **automated compliance management** of Saner CVEM, ensuring timely security updates across hybrid workforces.

##### Cons

- Users face **integration issues** with Saner CVEM, especially requiring custom solutions and troubleshooting during data synchronization.
- Users experience **limited features** in multi-tenant support, integration, and dashboard usability, affecting overall efficiency.
- Users experience **slow performance** during initial dashboard loading and while handling large data sets, affecting efficiency.
- Users experience **slow scanning** with initial dashboard loads and large data sets, impacting daily checks and efficiency.
- Users find the **limited cloud integration** challenging, requiring workarounds and custom scripts for effective use.

#### What Are Recent G2 Reviews of Saner CVEM?

**["Strong Visibility Across Assets, but Prioritization and UI Need Improvement"](https://www.g2.com/survey_responses/saner-cvem-review-12398463)**

**Rating:** 4.0/5.0 stars

_— Verified User in Pharmaceuticals_

[Read full review](https://www.g2.com/survey_responses/saner-cvem-review-12398463)

**["Improve your digital security and combat vulnerabilities in your networks with Saner CVEM."](https://www.g2.com/survey_responses/saner-cvem-review-11395327)**

**Rating:** 5.0/5.0 stars

_— Lydie D._

[Read full review](https://www.g2.com/survey_responses/saner-cvem-review-11395327)

#### What Are G2 Users Discussing About Saner CVEM?

- [What is SanerNow used for?](https://www.g2.com/discussions/what-is-sanernow-used-for)

### [Ethiack](https://www.g2.com/products/ethiack/reviews)

Ethiack is an autonomous offensive security platform that continuously tests and validates vulnerability exploitation across entire attack surfaces using agentic AI pentesting and hacker intelligence so security teams fix what matters before attackers strike. Traditional pentests give you a snapshot. Ethiack runs 24/7, combining agentic AI pentesting and human hacker intelligence to validate real-world risks with near-zero false positives. Stop triaging scanner noise. Know what attackers can actually exploit, right now. What you get: - Continuous Adversarial Exposure Validation (AEV) - 99.5% precision on exploitable vulnerabilities - 90% noise reduction - 80% faster remediation (MTTR) - \<10 min setup, no installation required - Coverage across +200 vulnerability classes and +1500 technologies - Proof-of-exploit for every validated risk

**Average Rating:** 4.4/5.0

**Total Reviews:** 14

#### How Do G2 Users Rate Ethiack?

- **Has the product been a good partner in doing business?:** 9.6/10 (Category avg: 9.2/10)
- **Reporting:** 8.3/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 8.5/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 8.7/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Ethiack?

- **Seller:** [Ethiack](https://www.g2.com/sellers/ethiack)
- **Year Founded:** 2022
- **HQ Location:** Coimbra, Coimbra, Portugal
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=e4f26f5ca3f0681d9cf2ceda44b91e8500f0e659328d6eb72281f29f00f8dba7&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fethiack&secure%5Burl_type%5D=linkedin_company_website)  
52 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 40% Medium, 33% Small

#### What Do G2 Reviewers Say About Ethiack?

_AI-generated summary from verified user reviews_

##### Pros

- Users commend the **exceptional customer support** of Ethiack, highlighting its responsiveness and understanding of client needs.
- Users value the **exceptional cybersecurity support** from Ethiack, enhancing their platform's security and user confidence.
- Users commend the **innovation in security practices** provided by Ethiack, enhancing platform protection and team engagement.
- Users value the **automation capabilities** of Ethiack, enhancing vulnerability detection and streamlining security in development processes.
- Users value the **real-time monitoring** of Ethiack, enhancing security through continuous insights and proactive development integration.

##### Cons

- Users find the **high cost** of Ethiack challenging for scaling testing across all critical assets.
- Users find the **high cost** of Ethiack makes scaling testing across critical assets challenging.
- Users are frustrated by the **lack of scheduling automation** , making it difficult to set scans for specific dates/times.
- Users find the **limited features** in Ethiack somewhat underdeveloped, impacting overall user experience and functionality.
- Users find the **missing features** in Ethiack limit the security enhancements for their API-based applications.

#### What Are Recent G2 Reviews of Ethiack?

**["Efficient Risk Management with Automation and Support"](https://www.g2.com/survey_responses/ethiack-review-13134429)**

**Rating:** 4.5/5.0 stars

_— Helder P._

[Read full review](https://www.g2.com/survey_responses/ethiack-review-13134429)

**["Pragmatic AI-First Vulnerability Scanning with Continuous Asset Discovery"](https://www.g2.com/survey_responses/ethiack-review-13135216)**

**Rating:** 4.5/5.0 stars

_— Francisco G._

[Read full review](https://www.g2.com/survey_responses/ethiack-review-13135216)

### [Cyrisma](https://www.g2.com/products/cyrisma/reviews)

Cyrisma helps MSPs and MSSPs turn cyber risk and compliance into revenue. Its unified platform combines vulnerability management, data and asset discovery, compliance tracking, secure configuration, and dark web monitoring into one continuous experience - enabling partners to identify, prioritize, and remediate cyber risk efficiently. With executive-ready reporting, risk monetization insights, and elegant visuals, Cyrisma helps MSPs demonstrate measurable value, strengthen client relationships, and scale their security services profitably.

**Average Rating:** 4.6/5.0

**Total Reviews:** 60

#### How Do G2 Users Rate Cyrisma?

- **Has the product been a good partner in doing business?:** 9.3/10 (Category avg: 9.2/10)
- **Reporting:** 8.2/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 8.8/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 8.6/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Cyrisma?

- **Seller:** [Cyrisma](https://www.g2.com/sellers/cyrisma)
- **Company Website:** www.cyrisma.com
- **Year Founded:** 2018
- **HQ Location:** Rochester, NY
- **Twitter:** @Cyrisma\_USA  
43 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=f5cea64336d629ea4ec20ca286e0a0403d2d7ae13995138c548f5aaeace28885&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcyrisma%2F&secure%5Burl_type%5D=linkedin_company_website)  
14 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** CEO
- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 75% Small, 22% Medium

#### What Do G2 Reviewers Say About Cyrisma?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **time-saving features** of Cyrisma, streamlining cybersecurity tasks and enhancing overall efficiency.
- Users appreciate the **intuitive platform** of Cyrisma, making cybersecurity management efficient and straightforward.
- Users commend the **fantastic customer support** of Cyrisma, valuing their responsiveness and helpfulness during product usage.
- Users value the **actionable vulnerability intelligence** of Cyrisma, appreciating its user-friendly dashboard and comprehensive coverage.
- Users love CYRISMA for its **actionable vulnerability intelligence** , streamlining security management with ease and clarity.

##### Cons

- Users express concerns about **missing features** like better UI, data correlation, and effective patch management in Cyrisma.
- Users find Cyrisma's interface to be **not user-friendly** , complicating navigation and hindering overall usability and support experience.
- Users feel Cyrisma has **limited flexibility** , finding navigation complex and agent deployment unnecessarily cumbersome.
- Users find the **poor interface design** of Cyrisma challenging, hindering navigation and access to key insights.
- Users find **navigation challenging** in Cyrisma, complicating access to insights and hindering overall usability.

#### What Are Recent G2 Reviews of Cyrisma?

**["Effortless Penetration Testing with CYRISMA"](https://www.g2.com/survey_responses/cyrisma-review-12781999)**

**Rating:** 5.0/5.0 stars

_— Sarah M._

[Read full review](https://www.g2.com/survey_responses/cyrisma-review-12781999)

**["CYRISMA offers strong consolidation value, needs enhancements in data correlation & patch coverage"](https://www.g2.com/survey_responses/cyrisma-review-11229216)**

**Rating:** 4.0/5.0 stars

_— Jathin D._

[Read full review](https://www.g2.com/survey_responses/cyrisma-review-11229216)

### [VulScan](https://www.g2.com/products/vulscan/reviews)

Automated Vulnerability Scanning. Affordably Priced For Everyone! With almost 70 new hidden vulnerabilities identified every day, you would need to be a super hero with X-ray vision to find them all. Or, you can let VulScan do it for you. VulScan is purpose-built for MSPs and for IT Departments that handle their own IT security. It has all the features you need for both internal and external vulnerability management, but without all the complexity found in older solutions. Best of all, VulScan is priced so that cost is no longer a barrier to scanning as many assets as you need, as frequently as you want. That’s why our slogan is “Vulnerability Management For The Rest of Us! VulScan is an affordable cloud-based vulnerability management platform. It includes the software needed to spin up an unlimited number of virtual network scanner appliances using Hyper-V or VMWare, and a cloud-based portal to control the scanners and manage the discovered issues. For internal network scanning, the appliances can be installed on any existing computer that has excess capacity on the network, or installed on a dedicated box to be permanently installed. You can add multiple scanners and configure them each to scan separate parts of the network to get even faster results pushed into the same client site dashboard at no additional cost. For external scanning, the appliances are installed on the MSP’s data center or other remote location and “pointed” to the public facing IP addresses of the target network.

**Average Rating:** 4.1/5.0

**Total Reviews:** 121

#### How Do G2 Users Rate VulScan?

- **Has the product been a good partner in doing business?:** 8.2/10 (Category avg: 9.2/10)
- **Reporting:** 7.2/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 7.6/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 7.5/10 (Category avg: 8.8/10)

#### Who Is the Company Behind VulScan?

- **Seller:** [Kaseya](https://www.g2.com/sellers/kaseya)
- **Company Website:** www.kaseya.com
- **Year Founded:** 2000
- **HQ Location:** Miami, FL
- **Twitter:** @KaseyaCorp  
17,411 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=6c9a31f82a811b1e3cc7be6babe8882bb8f6b2927e142d98dd6f5662a0d0e4d2&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fkaseya%2F&secure%5Burl_type%5D=linkedin_company_website)  
5,471 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 66% Small, 32% Medium

#### What Do G2 Reviewers Say About VulScan?

_AI-generated summary from verified user reviews_

##### Pros

- Users find VulScan's **ease of use** advantageous, appreciating simple scheduling and integration with existing systems.
- Users find **VulScan's implementation easy** , noting seamless integration and straightforward configuration for scanning tasks.
- Users love the **ease of setup** and intuitive navigation of VulScan, enhancing their overall experience.
- Users appreciate the **ease of deployment and configuration** of VulScan, making setup and integration seamless.
- Users appreciate the **easy-to-generate reports** of VulScan, highlighting their usefulness for both admins and end users.

##### Cons

- Users found the **difficult setup** of VulScan challenging, complicating installation and deployment processes significantly.
- Users express concern over the **inadequate reporting** of VulScan, finding it overwhelming and lacking meaningful insights.
- Users express frustration with **poor customer support** , making it difficult to resolve issues and get assistance.
- Users find the **confusing interface** of VulScan frustrating, requiring excessive navigation and documentation to use effectively.
- Users criticize the **limited features** of VulScan, especially regarding inadequate reporting and detection capabilities across platforms.

#### What Are Recent G2 Reviews of VulScan?

**["Clear, Easy Security Visibility That Cuts Manual Busywork"](https://www.g2.com/survey_responses/vulscan-review-12884652)**

**Rating:** 5.0/5.0 stars

_— Sheila K._

[Read full review](https://www.g2.com/survey_responses/vulscan-review-12884652)

**["Great addonfor NMAP"](https://www.g2.com/survey_responses/vulscan-review-8143727)**

**Rating:** 4.5/5.0 stars

_— Viswajith R._

[Read full review](https://www.g2.com/survey_responses/vulscan-review-8143727)

### [Flashpoint](https://www.g2.com/products/flashpoint/reviews)

Flashpoint is the largest privately held threat intelligence provider, enabling mission-critical organizations to proactively confront security challenges globally. Flashpoint Ignite, our unified threat intelligence platform, harnesses the power of primary-source collections, curated human insight, and artificial intelligence to deliver decisive action against a comprehensive range of critical threats. Core Capabilities: → Identify and remediate cyber threats, fraud, vulnerabilities, physical security, and national security risks. → Access over 3.6 petabytes of continuously collected data from the internet’s open and difficult-to-access spaces. Add new channels and data sources in minutes to track sources as they surface. → Operationalize intelligence across your entire security stack with seamless integrations throughout the intelligence lifecycle.

**Average Rating:** 4.5/5.0

**Total Reviews:** 83

#### How Do G2 Users Rate Flashpoint?

- **Has the product been a good partner in doing business?:** 8.8/10 (Category avg: 9.2/10)
- **Reporting:** 8.3/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 7.5/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 7.9/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Flashpoint?

- **Seller:** [Flashpoint for Threat Intelligence](https://www.g2.com/sellers/flashpoint-for-threat-intelligence)
- **Year Founded:** 2010
- **HQ Location:** New York, NY
- **Twitter:** @FlashpointIntel  
13,795 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=6d34dc59a8355a1fa91d6b2a444562fe9720e8610db19ba6d3f00b18ba589634&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fflashpoint-intel%2F&secure%5Burl_type%5D=linkedin_company_website)  
362 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Financial Services, Security and Investigations
- **Company Size:** 63% Large, 23% Small

#### What Do G2 Reviewers Say About Flashpoint?

_AI-generated summary from verified user reviews_

##### Pros

- Users find Flashpoint to be **user-friendly and easy to navigate** , facilitating quick deployment and efficient training.
- Users value the **comprehensive data collection** of Flashpoint, enabling thorough research and credible threat assessments.
- Users commend Flashpoint for its **impressive data quality and sources** , enhancing research capabilities and communication clarity.
- Users value Flashpoint's **comprehensive threat intelligence** that enhances proactive responses and decision-making against financial threats.
- Users appreciate the **powerful search functionality** of Flashpoint, enhancing data accessibility from various channels and forums.

##### Cons

- Users are frustrated by the **lack of features** in Flashpoint, hindering integrations and limiting valuable data access.
- Users find the **complex navigation** of Flashpoint overwhelming and the query system confusing, hindering effective use.
- Users find the interface **confusing** , particularly regarding alert management and search functionality across different platform sections.
- Users find the **limited features** of Flashpoint hinder functionality and customization, impacting overall user experience.
- Users struggle with **user frustration** due to confusing query systems and noisy alerts that hinder efficient analysis.

#### What Are Recent G2 Reviews of Flashpoint?

**["Flashpoint: Nothing to Dislike, with Room to Improve PDF Preview & Downloads"](https://www.g2.com/survey_responses/flashpoint-review-12219288)**

**Rating:** 5.0/5.0 stars

_— Beth M._

[Read full review](https://www.g2.com/survey_responses/flashpoint-review-12219288)

**["Go-to tool for deep dark-web related investigations and automated monitoring"](https://www.g2.com/survey_responses/flashpoint-review-10439525)**

**Rating:** 5.0/5.0 stars

_— Verified User in Computer Software_

[Read full review](https://www.g2.com/survey_responses/flashpoint-review-10439525)

#### What Are G2 Users Discussing About Flashpoint?

- [What is Echosec Systems used for?](https://www.g2.com/discussions/what-is-echosec-systems-used-for)

### [BugBase](https://www.g2.com/products/bugbase-bugbase/reviews)

BugBase is a Continuous Vulnerability Assessment Platform that conducts comprehensive security operations such as bug bounty programs and next-gen pentesting (VAPT) to assist startups and enterprises in effectively identifying, managing and mitigating vulnerabilities.

**Average Rating:** 4.5/5.0

**Total Reviews:** 46

#### How Do G2 Users Rate BugBase?

- **Has the product been a good partner in doing business?:** 9.5/10 (Category avg: 9.2/10)
- **Reporting:** 9.1/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 9.2/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 9.4/10 (Category avg: 8.8/10)

#### Who Is the Company Behind BugBase?

- **Seller:** [BugBase](https://www.g2.com/sellers/bugbase)
- **Year Founded:** 2021
- **HQ Location:** Singapore, US
- **Twitter:** @BugBase  
1,673 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=2dc6dec83d94dd3c24d8ba40d51541f8c69551f20e62584a8eeea5893451615c&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fbugbase%2F&secure%5Burl_type%5D=linkedin_company_website)  
45 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Computer & Network Security, Computer Software
- **Company Size:** 58% Small, 23% Large

#### What Do G2 Reviewers Say About BugBase?

_AI-generated summary from verified user reviews_

##### Pros

- Users praise the **ease of use** of BugBase, making it ideal for new bug bounty hunters.
- Users highlight the **simple and user-friendly interface** of BugBase, making it ideal for new bug bounty hunters.
- Users value the **strong cybersecurity measures** of BugBase, enhancing data confidentiality and minimizing competition for rewards.
- Users appreciate the **user-friendly interface** of BugBase, enabling seamless integration and effective security threat detection.
- Users value the **easy integrations** of BugBase, facilitating seamless collaboration within diverse tools and technologies.

##### Cons

- Users experience **slow performance** on BugBase, with freezing and lag hindering bug hunting and overall satisfaction.
- Users find the pricing of BugBase to be **expensive** , lacking incentives compared to other bug bounty platforms.
- Users find the **difficult setup** of BugBase challenging, particularly those lacking technical expertise and experience with bug bounty programs.
- Users find the **steep learning curve** of BugBase challenging, especially those unfamiliar with bug bounty programs.
- Users report **poor customer support** from BugBase, leading to slow responses and a frustrating experience during bug hunting.

#### What Are Recent G2 Reviews of BugBase?

**["Centralized Security and Seamless Integrations Boost Productivity"](https://www.g2.com/survey_responses/bugbase-review-11939331)**

**Rating:** 4.5/5.0 stars

_— Ronald B._

[Read full review](https://www.g2.com/survey_responses/bugbase-review-11939331)

**["Good Vapt and big bounty services"](https://www.g2.com/survey_responses/bugbase-review-10751350)**

**Rating:** 4.0/5.0 stars

_— Anamta Z._

[Read full review](https://www.g2.com/survey_responses/bugbase-review-10751350)

### [Nucleus](https://www.g2.com/products/nucleus-security-inc-nucleus/reviews)

Nucleus Security is a vulnerability and asset management solution that automates processes and workflows, enabling organizations to mitigate vulnerabilities 10 times faster, using a fraction of the resources that it takes to perform these tasks today. Nucleus aggregates, cleans, correlates, and analyzes data from all sources of asset and vulnerability data and organizes it into a logical hierarchy. Once the data is organized, Nucleus streamlines operational processes with efficient workflows and time-saving automation that accelerate vulnerability management and response.

**Average Rating:** 4.5/5.0

**Total Reviews:** 31

#### How Do G2 Users Rate Nucleus?

- **Has the product been a good partner in doing business?:** 8.9/10 (Category avg: 9.2/10)
- **Reporting:** 8.5/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 9.2/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 9.0/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Nucleus?

- **Seller:** [Nucleus Security, Inc](https://www.g2.com/sellers/nucleus-security-inc)
- **Company Website:** www.nucleussec.com
- **Year Founded:** 2018
- **HQ Location:** Sarasota, Florida
- **Twitter:** @nucleussec  
565 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=253984f56bf0ab7c05a06d835d9959ed286831cc7acef3c6c947e0c15c733512&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fnucleussec&secure%5Burl_type%5D=linkedin_company_website)  
124 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Airlines/Aviation, Computer & Network Security
- **Company Size:** 53% Large, 38% Medium

#### What Do G2 Reviewers Say About Nucleus?

_AI-generated summary from verified user reviews_

##### Pros

- Users admire the **dynamic automation capabilities** of Nucleus, which significantly enhances workflow efficiency and reporting processes.
- Users appreciate the **customization options** within Nucleus, enhancing efficiency in reporting and risk management.
- Users highly value the **dashboard customization** in Nucleus for its advanced features and efficient reporting capabilities.
- Users value the **advanced dashboard** features of Nucleus, enhancing workflow with efficient reporting and risk management.
- Users find the **dashboard usability** of Nucleus exceptional, enhancing reporting efficiency and streamlining workflow management.

##### Cons

- Users note the need for better **remediation capabilities** to effectively address critical vulnerabilities in urgent situations.

#### What Are Recent G2 Reviews of Nucleus?

**["Streamlined Reporting with Nucleus, Easy Setup!"](https://www.g2.com/survey_responses/nucleus-review-11993607)**

**Rating:** 4.0/5.0 stars

_— Manish G._

[Read full review](https://www.g2.com/survey_responses/nucleus-review-11993607)

**["Comprehensive Vulnerability Management with Stellar Support"](https://www.g2.com/survey_responses/nucleus-review-12601354)**

**Rating:** 5.0/5.0 stars

_— Husain A._

[Read full review](https://www.g2.com/survey_responses/nucleus-review-12601354)

### [IBM QRadar EDR](https://www.g2.com/products/ibm-qradar-edr/reviews)

IBM Security QRadar EDR (formerly ReaQta) combines automation and dashboards to minimize analyst workloads, detect anomalous endpoint behavior and remediate threats in near real time. IBM Security QRadar EDR is available on AWS Marketplace. With visibility across endpoints, it combines expected features, like MITRE ATT&CK mapping and attack visualizations, with dual-engine AI and automation. For teams that need extended support, managed detection and response (MDR) services offers 24/7 monitoring and response to help keep users protected. IBM Security QRadar EDR (formerly ReaQta) can be deployed as SaaS, on-premises and in air-gapped environments. For more information, visit https://www.ibm.com/products/qradar-edr

**Average Rating:** 4.2/5.0

**Total Reviews:** 45

#### How Do G2 Users Rate IBM QRadar EDR?

- **Has the product been a good partner in doing business?:** 8.8/10 (Category avg: 9.2/10)
- **Reporting:** 9.5/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 8.3/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 8.5/10 (Category avg: 8.8/10)

#### Who Is the Company Behind IBM QRadar EDR?

- **Seller:** [IBM](https://www.g2.com/sellers/ibm)
- **Year Founded:** 1911
- **HQ Location:** Armonk, New York, United States
- **Twitter:** @IBMSecurity  
74,660 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=14b544adaece4fdbc987f1d7f7028048c22259946811200cc751263825586af9&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F1009%2F&secure%5Burl_type%5D=linkedin_company_website)  
328,202 employees on LinkedIn®
- **Ownership:** SWX:IBM

#### Who Uses This Product?

- **Top Industries:** Computer & Network Security
- **Company Size:** 45% Small, 40% Medium

#### What Do G2 Reviewers Say About IBM QRadar EDR?

_AI-generated summary from verified user reviews_

##### Pros

- Users commend the **advanced threat detection** capabilities of IBM QRadar EDR for ensuring robust security against various threats.
- Users appreciate the **ease of use** of IBM QRadar EDR, noting its simple installation and intuitive interface.
- Users value the **advanced threat detection and endpoint protection** provided by IBM QRadar EDR, enhancing overall security.
- Users praise IBM QRadar EDR for its **excellent detection efficiency** , effectively identifying and responding to advanced threats.
- Users appreciate the **robust threat protection** of IBM QRadar EDR, enhanced by continuous updates and AI efficiency.

##### Cons

- Users find IBM QRadar EDR to be **expensive** , which can be a barrier for mid-range and small businesses.
- Users find the **difficult learning curve** for IBM QRadar EDR hampers effective usage and adds to overall complexity.
- Users highlight the **resource-intensive nature** of IBM QRadar EDR, impacting costs and workflow during implementation.
- Users report **many false positives** in IBM QRadar EDR, complicating the investigation process and affecting efficiency.
- Users note a **high resource usage** in IBM QRadar EDR, making it challenging without sufficient hardware specifications.

#### What Are Recent G2 Reviews of IBM QRadar EDR?

**["One of the best Security tool for Blue team with a capability of intercepting the bad guys."](https://www.g2.com/survey_responses/ibm-qradar-edr-review-8011831)**

**Rating:** 5.0/5.0 stars

_— Mark Julius M._

[Read full review](https://www.g2.com/survey_responses/ibm-qradar-edr-review-8011831)

**["One of the best EDR"](https://www.g2.com/survey_responses/ibm-qradar-edr-review-9506318)**

**Rating:** 4.5/5.0 stars

_— sibil b._

[Read full review](https://www.g2.com/survey_responses/ibm-qradar-edr-review-9506318)

### [Certa](https://www.g2.com/products/certa/reviews)

Certa is a SaaS based workflow automation platform that makes it easy for businesses to manage the lifecycle of their third parties. Certa’s powerful workflow engine enables businesses to streamline processes, eliminate bottlenecks and inefficiencies, and break down silos via interdepartmental and internal/external process participants. Certa’s no-code, drag and drop features allow clients to easily modify and customize their workflows to keep up with their evolving business needs. Certa can stitch together 100+ enterprise systems and data sources along with an organization’s legacy tech, creating a single point of intake and a single source of truth.

**Average Rating:** 4.5/5.0

**Total Reviews:** 36

#### How Do G2 Users Rate Certa?

- **Has the product been a good partner in doing business?:** 9.3/10 (Category avg: 9.2/10)
- **Reporting:** 8.9/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 8.3/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 8.3/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Certa?

- **Seller:** [Certa](https://www.g2.com/sellers/certa)
- **Year Founded:** 2017
- **HQ Location:** Saratoga, California
- **Twitter:** @certa  
123 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=c3ced95446218ad01f205744a0ebd5b3af9fe81dd82ccaa3596ae05e97b252be&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcerta-in%2F&secure%5Burl_type%5D=linkedin_company_website)  
264 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Retail, Financial Services
- **Company Size:** 58% Large, 22% Small

#### What Do G2 Reviewers Say About Certa?

_AI-generated summary from verified user reviews_

##### Pros

- Users love the **ease of use** of Certa, finding its platform smooth and intuitive for creating workflows.
- Users appreciate the **automation** of Certa, which simplifies onboarding and saves significant time and effort.
- Users value Certa's **responsive customer support** , especially praising team members like Brandi for their assistance and guidance.
- Users appreciate the **real-time customization** of Certa, which enhances integration and user experience effectively.
- Users value the **excellent support** from the Certa team, enhancing their experience with quick and helpful responses.

##### Cons

- Users are frustrated by **API limitations** , hindering scalability and integration, which complicates growth and reporting efforts.
- Users find that some of Certa's **advanced features are difficult to learn** , impacting their overall experience with the product.
- Users face **implementation issues** due to scalability problems and inadequate integration documentation, hindering overall effectiveness.
- Users find that **improvement in workflow configuration and UI enhancements** is necessary for a smoother experience.
- Users find the **reporting capabilities inadequate** , expressing a desire for more robust features in Certa.

#### What Are Recent G2 Reviews of Certa?

**["Mission-oriented team determined to bring your TPRM vision to life"](https://www.g2.com/survey_responses/certa-review-9641332)**

**Rating:** 5.0/5.0 stars

_— Verified User in Automotive_

[Read full review](https://www.g2.com/survey_responses/certa-review-9641332)

**["KYC verification management from Certa"](https://www.g2.com/survey_responses/certa-review-10979613)**

**Rating:** 5.0/5.0 stars

_— Dhaval M._

[Read full review](https://www.g2.com/survey_responses/certa-review-10979613)

#### What Are G2 Users Discussing About Certa?

- [What is Certa used for?](https://www.g2.com/discussions/what-is-certa-used-for)

### [Adlumin](https://www.g2.com/products/adlumin/reviews)

Adlumin, an N-able Company, provides enterprise-grade cybersecurity for organizations of all sizes through its innovative Security Operations as a Service platform. With an agnostic approach, the Adlumin platform seamlessly integrates with existing tech stacks, and its flexible management options enable it to be self-managed by an internal team, or fully managed by Adlumin experts. The Adlumin platform stops cyber threats early with deep learning models tailored to each environment. It maximizes resource efficiency by optimizing existing technology and streamlining workflows across teams. Adlumin transforms risk into resilience by identifying and addressing vulnerabilities, while cybersecurity experts proactively uncover and neutralize threats before they can do damage. Adlumin empowers organizations to take control of their digital security making advanced protection accessible to all.

**Average Rating:** 4.7/5.0

**Total Reviews:** 64

#### How Do G2 Users Rate Adlumin?

- **Has the product been a good partner in doing business?:** 9.7/10 (Category avg: 9.2/10)
- **Reporting:** 9.1/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 8.7/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 8.9/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Adlumin?

- **Seller:** [N-able](https://www.g2.com/sellers/n-able)
- **Company Website:** www.n-able.com
- **HQ Location:** Morrisville, North Carolina
- **Twitter:** @Nable  
15,859 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=5126feeafafe79ea909650b9a1843e1c77c65ad993ae2f9ac89cf6b559e88be4&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fn-able&secure%5Burl_type%5D=linkedin_company_website)  
2,287 employees on LinkedIn®
- **Ownership:** NYSE: NABL

#### Who Uses This Product?

- **Top Industries:** Financial Services, Information Technology and Services
- **Company Size:** 55% Medium, 23% Small

#### What Do G2 Reviewers Say About Adlumin?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **detailed analytic reports** provided by Adlumin, noting its reliability and ease of use.
- Users appreciate the **detailed analytical reports** of Adlumin, finding them reliable and easy to use.
- Users value the **detailed analytic reports** provided by Adlumin, highlighting its reliability and ease of use.
- Users find Adlumin's **ease of management** beneficial, especially enjoying its reliable and detailed analytics reports.
- Users value the **ease of use** of Adlumin, appreciating its reliable functionality and detailed analytic reports.

##### Cons

- Users feel that the **customer support could be better** , as it often lacks timely assistance and effectiveness.

#### What Are Recent G2 Reviews of Adlumin?

**["Great platform and easy to use"](https://www.g2.com/survey_responses/adlumin-review-12981429)**

**Rating:** 4.0/5.0 stars

_— KAWSER A._

[Read full review](https://www.g2.com/survey_responses/adlumin-review-12981429)

**["Comprehensive security monitoring and simplified compliance reporting."](https://www.g2.com/survey_responses/adlumin-review-13050164)**

**Rating:** 4.0/5.0 stars

_— Dom H._

[Read full review](https://www.g2.com/survey_responses/adlumin-review-13050164)

- [&lsaquo; Prev‹ Prev](/categories/risk-based-vulnerability-management?order=g2_score&page=2&post_lead_product=tenable-sc#product-list)
- [1](/categories/risk-based-vulnerability-management?order=g2_score&post_lead_product=tenable-sc#product-list)
- [2](/categories/risk-based-vulnerability-management?order=g2_score&page=2&post_lead_product=tenable-sc#product-list)
- 3
- [4](/categories/risk-based-vulnerability-management?order=g2_score&page=4&post_lead_product=tenable-sc#product-list)
- [5](/categories/risk-based-vulnerability-management?order=g2_score&page=5&post_lead_product=tenable-sc#product-list)
- [6](/categories/risk-based-vulnerability-management?order=g2_score&page=6&post_lead_product=tenable-sc#product-list)
- [7](/categories/risk-based-vulnerability-management?order=g2_score&page=7&post_lead_product=tenable-sc#product-list)
- …
- [12](/categories/risk-based-vulnerability-management?order=g2_score&page=12&post_lead_product=tenable-sc#product-list)
- [13](/categories/risk-based-vulnerability-management?order=g2_score&page=13&post_lead_product=tenable-sc#product-list)
- [Next &rsaquo;Next ›](/categories/risk-based-vulnerability-management?order=g2_score&page=4&post_lead_product=tenable-sc#product-list)

Spotlight Categories

[Knowledge Base Software](https://www.g2.com/categories/knowledge-base-software)

[Managed Detection and Response (MDR) Software](https://www.g2.com/categories/managed-detection-and-response-mdr)

[Help Desk Software](https://www.g2.com/categories/help-desk)

[Employee Intranet Software](https://www.g2.com/categories/employee-intranet)

[Spend Management Software](https://www.g2.com/categories/spend-management)

Similar Categories

- [Attack Surface Management](/categories/attack-surface-management)
- [Cybersecurity Professional Development](/categories/cybersecurity-professional-development)

- [Exposure Management Platforms](/categories/exposure-management-platforms)
- [Patch Management](/categories/patch-management)

- [Secure Code Training](/categories/secure-code-training)
- [Security Awareness Training](/categories/security-awareness-training)

[Browse Risk-Based Vulnerability Management Themes](/categories/risk-based-vulnerability-management/themes)

 ![Brandon Summers-Miller](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Brandon Summers-Miller")
BS

Researched and written by [Brandon Summers-Miller](https://research.g2.com/insights/author/brandon-summers-miller)

Updated October 3, 2024

Risk-based vulnerability management software is used to identify and prioritize vulnerabilities based on customizable risk factors. These tools are more advanced than traditional vulnerability management solutions, as they assist in the prioritization of issues and execution of remedies based on the results of machine learning algorithms.

Companies use risk-based vulnerability management solutions to analyze entire organizations’ IT systems, cloud services, and/or applications and identify priorities. Instead of manually identifying vulnerabilities and remediating them in order of discovery, an organization can automate that process to remediate vulnerabilities impacting critical business components first. From there, they can address issues as the system has ordered by impact and remediation time. Companies can customize these priorities as they see fit by weighing risk factors differently.

Risk-based vulnerability management solutions are primarily used by IT professionals and security staff. These teams will integrate system and application information, outline priorities, and analyze assets. Automation within these tools saves significant time; furthermore, addressing critical vulnerabilities first can significantly reduce the likelihood of security incidents, failover, and data loss.

There is some overlap between risk-based vulnerability management solutions and [security risk analysis software](https://www.g2.com/categories/security-risk-analysis), but there are a few key differences. Security risk analysis tools provide similar capabilities in identifying vulnerabilities and other security risks. But security risk analysis tools, aside from a few outlier products, will not utilize machine learning and automation to assist in the prioritization and execution of vulnerability remediation.

To qualify for inclusion in the Risk-Based Vulnerability Management category, a product must:

- Integrate threat intelligence and contextual data for analysis
- Analyze applications, networks, and cloud services for vulnerabilities
- Utilize risk factors and machine learning to prioritize vulnerabilities

Show More