# Best Risk-Based Vulnerability Management Software - Page 7

## How Many Risk-Based Vulnerability Management Software Products Does G2 Track?

**Total Products under this Category:** 194

### Category Stats (Aug 2026)

- **Average Rating:** 4.48/5 (↓0.02 vs Jul 2026) The average rating of products in this category, based on all submitted ratings
- **Top Trending Product:** Ivanti Neurons for RBVM (+2.94%) - Among all products in this category, Ivanti Neurons for RBVM recorded the largest rating increase compared to last month

_Last updated: August 07, 2026_

## How Does G2 Rank Risk-Based Vulnerability Management Software Products?

**Why You Can Trust G2's Software Rankings:**

- 30 Analysts and Data Experts
- 4,800+ Authentic Reviews
- 194+ Products
- Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

## G2 Grid® for Risk-Based Vulnerability Management Software
 ![G2 Grid® for Risk-Based Vulnerability Management Software plotting products by satisfaction and market presence](https://www.g2.com/categories/risk-based-vulnerability-management/grids.png?focus%5B%5D=38011&focus%5B%5D=31923&focus%5B%5D=7337&focus%5B%5D=160601&focus%5B%5D=130651&focus%5B%5D=39589&focus%5B%5D=55997&focus%5B%5D=98391)

Highlighted products: Arctic Wolf, Tenable Vulnerability Management, Recorded Future, RiskProfiler - External Threat Exposure Management, YesWeHack, H1 Platform, Check Point Exposure Management, and Pentera.

Underlying data: [Grid® JSON](https://www.g2.com/categories/risk-based-vulnerability-management/grids.json?focus%5B%5D=arctic-wolf&focus%5B%5D=tenable-vulnerability-management&focus%5B%5D=recorded-future&focus%5B%5D=riskprofiler-external-threat-exposure-management&focus%5B%5D=yeswehack&focus%5B%5D=h1-platform&focus%5B%5D=check-point-exposure-management&focus%5B%5D=pentera)

**Sponsored**

### Silobreaker

Silobreaker is a technology company that builds solutions that unify data, contextual analysis, and human expertise to deliver decision-grade intelligence when and where it matters most. Continually refined for both leadership and analysts operating across business resilience, enterprise security, threat, and risk disciplines, the Silobreaker intelligence layer uses a proprietary search and entity database to automate the production of intelligence across cyber, geopolitical, and physical domains. Using Silobreaker's priority intelligence requirements (PIR)-driven workflows, agentic automation, MCP-enabled integrations, and executive-ready reporting, governments and global enterprises can anticipate threats, protect assets and people, accelerate decision-making, and steer through uncertainty with confidence.

[Visit website](https://www.g2.com/external_clickthroughs/record?secure%5Bad_program%5D=ppc&secure%5Bad_slot%5D=category_product_list_llm&secure%5Bcategory_id%5D=2246&secure%5Bchosen_at%5D=2026-08-08T02%3A15%3A11Z&secure%5Bdisplayable_resource_id%5D=2246&secure%5Bdisplayable_resource_type%5D=Category&secure%5Bmedium%5D=sponsored&secure%5Bplacement_reason%5D=page_category&secure%5Bplacement_resource_ids%5D%5B%5D=2246&secure%5Bprioritized%5D=false&secure%5Bproduct_id%5D=56113&secure%5Bresource_id%5D=2246&secure%5Bresource_type%5D=Category&secure%5Bsource_type%5D=category_page&secure%5Bsource_url%5D=https%3A%2F%2Fwww.g2.com%2Fcategories%2Frisk-based-vulnerability-management%3Fpage%3D7%26post_lead_product%3Dtenable-sc&secure%5Btoken%5D=6747c3b25277a0dbc1f51c27a4094334b017cc3b809a359f722ea69666e7b9ed&secure%5Burl%5D=https%3A%2F%2Fwww.silobreaker.com%2Flive-product-demo%2F%3Futm_source%3Dg2-clicks%26utm_medium%3Dpaid%26utm_campaign%3Dg2-paid-26Q3-risk-vul-category&secure%5Burl_type%5D=custom_url)

### [Tripwire IP360](https://www.g2.com/products/tripwire-ip360/reviews)

A Key Part of Fortra (the new face of HelpSystems) Tripwire is proud to be part of Fortra’s comprehensive cybersecurity portfolio. Fortra simplifies today’s complex cybersecurity landscape by bringing complementary products together to solve problems in innovative ways. These integrated, scalable solutions address the fast-changing challenges you face in safeguarding your organization. With the help of the powerful protection from Tripwire IP360 and others, Fortra is your relentless ally, here for you every step of the way throughout your cybersecurity journey.

**Average Rating:** 3.3/5.0

**Total Reviews:** 2

#### How Do G2 Users Rate Tripwire IP360?

- **Has the product been a good partner in doing business?:** 6.7/10 (Category avg: 9.2/10)

#### Who Is the Company Behind Tripwire IP360?

- **Seller:** [Fortra](https://www.g2.com/sellers/fortra)
- **Year Founded:** 1982
- **HQ Location:** Eden Prairie, Minnesota
- **Twitter:** @fortraofficial  
2,773 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=dc35b82a1c8dc3d25f0baa190554ddab56d530c99dfc134038201f775fd252f8&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Ffortra&secure%5Burl_type%5D=linkedin_company_website)  
1,755 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 100% Large

#### What Are Recent G2 Reviews of Tripwire IP360?

**["Effective shield against external threats from the web"](https://www.g2.com/survey_responses/tripwire-ip360-review-4341527)**

**Rating:** 5.0/5.0 stars

_— Wallys G._

[Read full review](https://www.g2.com/survey_responses/tripwire-ip360-review-4341527)

#### What Are G2 Users Discussing About Tripwire IP360?

- [What is Tripwire IP360 used for?](https://www.g2.com/discussions/what-is-tripwire-ip360-used-for)

### [TrueSight Vulnerability Management for Third-Party Applications](https://www.g2.com/products/bmc-software-truesight-vulnerability-management-for-third-party-applications/reviews)

TrueSight Vulnerability Management helps security and IT operations teams prioritize and remediate risks based on potential impact to the business.

**Average Rating:** 3.8/5.0

**Total Reviews:** 2

#### Who Is the Company Behind TrueSight Vulnerability Management for Third-Party Applications?

- **Seller:** [BMC Helix](https://www.g2.com/sellers/bmc-helix)
- **Year Founded:** 2025
- **HQ Location:** N/A
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=63b4dbbe36c184b8e0bcfe321196485a32ca82b8a8050b7bdd9dc630481c3b87&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fbmchelix%2F&secure%5Burl_type%5D=linkedin_company_website)  
1,266 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 67% Small, 33% Medium

#### What Are Recent G2 Reviews of TrueSight Vulnerability Management for Third-Party Applications?

**["Great ease of use!"](https://www.g2.com/survey_responses/truesight-vulnerability-management-for-third-party-applications-review-752108)**

**Rating:** 4.5/5.0 stars

_— Verified User in Computer Software_

[Read full review](https://www.g2.com/survey_responses/truesight-vulnerability-management-for-third-party-applications-review-752108)

**["Good"](https://www.g2.com/survey_responses/truesight-vulnerability-management-for-third-party-applications-review-5031768)**

**Rating:** 4.0/5.0 stars

_— Verified User in Think Tanks_

[Read full review](https://www.g2.com/survey_responses/truesight-vulnerability-management-for-third-party-applications-review-5031768)

#### What Are G2 Users Discussing About TrueSight Vulnerability Management for Third-Party Applications?

- [What is BMC TrueSight?](https://www.g2.com/discussions/truesight-vulnerability-management-for-third-party-applications-what-is-bmc-truesight)
- [What are the typical features offered by vulnerability scanner?](https://www.g2.com/discussions/truesight-vulnerability-management-for-third-party-applications-what-are-the-typical-features-offered-by-vulnerability-scanner)
- [What tools are used for application vulnerability management?](https://www.g2.com/discussions/what-tools-are-used-for-application-vulnerability-management)

### [Visore Security Management Platform](https://www.g2.com/products/visore-security-management-platform/reviews)

Visore simplifies your organizations security operations with a Single pane-of-glass SecOps Platform that solves interoperability, built to address the #1 challenge plaguing IT and Cyber teams: comprehensive & up-to-date asset inventory. Asset inventory, consolidated data and threat intelligence, all in one place enable valuable insights with just one click.

**Average Rating:** 5.0/5.0

**Total Reviews:** 2

#### How Do G2 Users Rate Visore Security Management Platform?

- **Has the product been a good partner in doing business?:** 10.0/10 (Category avg: 9.2/10)
- **Reporting:** 10.0/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 10.0/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 10.0/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Visore Security Management Platform?

- **Seller:** [Visore Security Solutions](https://www.g2.com/sellers/visore-security-solutions)
- **Year Founded:** 2021
- **HQ Location:** Rockville, US
- **LinkedIn® Page:** [linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=19c968fbef54168868aea67483df222839fea6aff644c31a558aaad0e6cea1b9&secure%5Burl%5D=https%3A%2F%2Flinkedin.com%2Fcompany%2Fvisore-security-solutions&secure%5Burl_type%5D=linkedin_company_website)  
1 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 100% Medium

#### What Are Recent G2 Reviews of Visore Security Management Platform?

**["We Complete Asset Visibility with Visore"](https://www.g2.com/survey_responses/visore-security-management-platform-review-6743166)**

**Rating:** 5.0/5.0 stars

_— Verified User in Computer & Network Security_

[Read full review](https://www.g2.com/survey_responses/visore-security-management-platform-review-6743166)

**["Visore is a top notch cybersecurity platform"](https://www.g2.com/survey_responses/visore-security-management-platform-review-6687697)**

**Rating:** 5.0/5.0 stars

_— David R._

[Read full review](https://www.g2.com/survey_responses/visore-security-management-platform-review-6687697)

#### What Are G2 Users Discussing About Visore Security Management Platform?

- [What is Visore Security Management Platform used for?](https://www.g2.com/discussions/what-is-visore-security-management-platform-used-for)

### [AttackTree](https://www.g2.com/products/attacktree/reviews)

AttackTree is a vulnerability management software that helps predict hacking attacks and develop prevention schemes.

**Average Rating:** 5.0/5.0

**Total Reviews:** 1

#### How Do G2 Users Rate AttackTree?

- **Has the product been a good partner in doing business?:** 10.0/10 (Category avg: 9.2/10)

#### Who Is the Company Behind AttackTree?

- **Seller:** [Isograph](https://www.g2.com/sellers/isograph)
- **HQ Location:** Warrington, GB
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=71085883faa21abf339b693c32be5db3d8431b3738b019a0c4f324aef59a6135&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fisograph%2F&secure%5Burl_type%5D=linkedin_company_website)  
13 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 100% Large

#### What Are Recent G2 Reviews of AttackTree?

**["AttackTree review after use"](https://www.g2.com/survey_responses/attacktree-review-6792818)**

**Rating:** 5.0/5.0 stars

_— Verified User in Computer & Network Security_

[Read full review](https://www.g2.com/survey_responses/attacktree-review-6792818)

### [Black Kite](https://www.g2.com/products/black-kite/reviews)

In today’s threat landscape, understanding your cyber risk exposure - across vendors, systems, and the extended supply chain - is critical. At Black Kite, our mission is to equip business and security leaders with a complete and accurate view of their cyber ecosystem risk extending out to their 4th-, 5th-, and Nth-parties. The Black Kite platform: - Unlocks continuous risk intelligence, including Black Kite’s Ransomware Susceptibility Index® (RSI), Adversary Susceptibility Index (ASI), and Data Breach Index (DBI) - Quantifies Financial Impact of risk using Open FAIR™ - Detects cyber exposure and high-risk signals across your supplier ecosystem and out to your Nth party with Black Kite FocusTags™ - Uses AI to automate vendor assessments, questionnaires, and gap analysis Our offerings: Black Kite Monitor: Continuous, real-time visibility into the cyber health of your third-party ecosystem - helping you build resilience across your supply chain. By providing accurate, always-up-to-date risk intelligence on vendors, Black Kite Monitor empowers teams to make informed risk decisions. Black Kite Assess: Delivers AI-powered cyber assessments built on trusted risk intelligence - including technical findings, posture ratings, and real-time risk signals. Black Kite Assess empowers teams to automate everything from document review and gap analysis to assessing vendor controls against custom questionnaires and standard frameworks and regulations, such as NIST and GDPR, while recommending remediations to engage third-parties on. Black Kite Extend: Gives organizations deeper visibility into the interconnected risks beyond their direct third parties. Built for teams managing complex supply chains or software vendor ecosystems, Black Kite Extend surfaces risk insights across fourth-, fifth-, and Nth-party relationships - helping you uncover hidden exposures and improve risk posture across your extended ecosystem. Whether it’s identifying critical dependencies, geopolitical risk, or sanctioned entities, Extend equips you with the context needed to make smarter decisions at scale.

**Average Rating:** 5.0/5.0

**Total Reviews:** 1

#### How Do G2 Users Rate Black Kite?

- **Has the product been a good partner in doing business?:** 10.0/10 (Category avg: 9.2/10)
- **Reporting:** 10.0/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 10.0/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 10.0/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Black Kite?

- **Seller:** [Black Kite](https://www.g2.com/sellers/black-kite)
- **Year Founded:** 2016
- **HQ Location:** Boston, Massachusetts
- **Twitter:** @BlackKiteTech  
1,502 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=5df2adc3b47b4043ceb904013275f7436ddb17ff56d89e02d525ebff81f5a480&secure%5Burl%5D=http%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fblackkite&secure%5Burl_type%5D=linkedin_company_website)  
127 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 100% Large

#### What Do G2 Reviewers Say About Black Kite?

_AI-generated summary from verified user reviews_

##### Pros

- Users find Black Kite extremely **easy to use** , appreciating quick onboarding and valuable engagement throughout the process.
- Users appreciate the **easy implementation** of Black Kite, allowing quick onboarding and immediate value from the tool.
- Users commend Black Kite for their **innovative engagement** and flexibility in vendor risk monitoring, enhancing user experience.
- Users find **implementation incredibly easy** with Black Kite, enabling them to gain value quickly from the start.
- Users value the **innovative features** and proactive engagement of Black Kite, enhancing their overall experience.

#### What Are Recent G2 Reviews of Black Kite?

**["Great product and team"](https://www.g2.com/survey_responses/black-kite-review-11753009)**

**Rating:** 5.0/5.0 stars

_— Esmond K._

[Read full review](https://www.g2.com/survey_responses/black-kite-review-11753009)

### [Centraleyes](https://www.g2.com/products/centraleyes/reviews)

Centraleyes is a next generation GRC platform that gives organizations an unparalleled understanding of their cyber risk and compliance. Centraleyes provides an exceptional ability to see, understand and react to growing risks and gaps, in a place where other solutions are ineffective. Centraleyes’s customers have automated and orchestrated their GRC function, to the point where it is 10x faster and 10x better. This is truly cyber risk management reimagined.

**Average Rating:** 4.3/5.0

**Total Reviews:** 3

#### Who Is the Company Behind Centraleyes?

- **Seller:** [Centraleyes](https://www.g2.com/sellers/centraleyes)
- **Year Founded:** 2016
- **HQ Location:** New York, US
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=aeb2d56fa47b802e049a6bf0274b7055d285efe1d42f89067ac513e209654f61&secure%5Burl%5D=http%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcygov&secure%5Burl_type%5D=linkedin_company_website)  
21 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 67% Large, 33% Medium

#### What Do G2 Reviewers Say About Centraleyes?

_AI-generated summary from verified user reviews_

##### Pros

- Users find Centraleyes essential for **insightful compliance management** , helping identify cyber threats and compliance strengths and weaknesses.
- Users find **compliance simplification** valuable in identifying cyber threats and managing compliance effectively with Centraleyes.
- Users find Centraleyes offers valuable **insights into cyber threats** , enhancing GRC management and compliance understanding.
- Users find that Centraleyes provides valuable **insights into cyber threats and compliance management** , enhancing their GRC strategies.
- Users find Centraleyes provides valuable **insights into cyber threats** and compliance strengths, enhancing GRC management effectively.

##### Cons

- Users find it challenging to generate reports due to **filtering issues** that fail to meet diverse stakeholder needs.
- Users find **inadequate reporting** in Centraleyes limits their ability to satisfy all stakeholders' needs effectively.
- Users experience **lack of clarity** in Centraleyes' reports, which may not meet all stakeholders' needs effectively.
- Users find **limited reporting** capabilities in Centraleyes, making it challenging to meet all stakeholders' needs effectively.
- Users find it challenging due to **poor reporting** in Centraleyes, limiting the ability to meet stakeholder needs effectively.

#### What Are Recent G2 Reviews of Centraleyes?

**["CentralEyes Review"](https://www.g2.com/survey_responses/centraleyes-review-11278664)**

**Rating:** 4.0/5.0 stars

_— Verified User in Higher Education_

[Read full review](https://www.g2.com/survey_responses/centraleyes-review-11278664)

**["Reduces GRC activities to be carried out manually"](https://www.g2.com/survey_responses/centraleyes-review-10362216)**

**Rating:** 4.0/5.0 stars

_— Thanat Y._

[Read full review](https://www.g2.com/survey_responses/centraleyes-review-10362216)

### [CybelAngel](https://www.g2.com/products/cybelangel/reviews)

CybelAngel protects its customers with External Attack Surface Management (EASM) solutions that are powered by the most comprehensive external asset discovery and threat detection technologies available. Built upon close to a decade of machine learning, our advanced platform scans the entirety of the internet every 24 hours to uncover unknown assets and shadow IT, cloud services, connected devices, fraudulent domains and exposed credentials — the sources attackers use to access confidential data, launch phishing campaigns or initiate destructive ransomware attacks. CybelAngel's combination of machine learning and expert human analysis provides deep visibility into the most critical threats, long before they’re exploited.

**Average Rating:** 4.7/5.0

**Total Reviews:** 6

#### How Do G2 Users Rate CybelAngel?

- **Has the product been a good partner in doing business?:** 10.0/10 (Category avg: 9.2/10)

#### Who Is the Company Behind CybelAngel?

- **Seller:** [CybelAngel](https://www.g2.com/sellers/cybelangel)
- **Year Founded:** 2013
- **HQ Location:** Paris, Île-de-France, France
- **Twitter:** @CybelAngel  
3,408 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=c233bc1e610e3a685ff377883e81374cc06be972e6fe3932514d547af127c5a3&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcybelangel&secure%5Burl_type%5D=linkedin_company_website)  
163 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 83% Large, 17% Medium

#### What Are Recent G2 Reviews of CybelAngel?

**["CybelAngel: simple integration, effective AI, and tangible ROI"](https://www.g2.com/survey_responses/cybelangel-review-12940992)**

**Rating:** 5.0/5.0 stars

_— Jean-Baptiste F._

[Read full review](https://www.g2.com/survey_responses/cybelangel-review-12940992)

**["Excellent Device Detection and Threat Monitoring"](https://www.g2.com/survey_responses/cybelangel-review-12464065)**

**Rating:** 5.0/5.0 stars

_— Kobe S._

[Read full review](https://www.g2.com/survey_responses/cybelangel-review-12464065)

### [Cyberwatch](https://www.g2.com/products/cyberwatch/reviews)

Cyberwatch is a server vulnerability monitoring solution with integrated patch management functionality.

**Average Rating:** 5.0/5.0

**Total Reviews:** 1

#### How Do G2 Users Rate Cyberwatch?

- **Has the product been a good partner in doing business?:** 10.0/10 (Category avg: 9.2/10)

#### Who Is the Company Behind Cyberwatch?

- **Seller:** [Cyberwatch](https://www.g2.com/sellers/cyberwatch)
- **HQ Location:** Massy, FR
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=ecb834a8ee16ea206891f10189779f5149c39589bae2db8464d737cfb481dab6&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcyberwatch&secure%5Burl_type%5D=linkedin_company_website)  
42 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 100% Large

#### What Do G2 Reviewers Say About Cyberwatch?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **automation features** of Cyberwatch, enabling proactive security management and efficient vulnerability handling.
- Users commend the **highly responsive customer support** of Cyberwatch, significantly enhancing their overall experience.
- Users find Cyberwatch's platform to be **incredibly intuitive** , simplifying vulnerability management and enhancing user experience.
- Users value the **ease of use** of Cyberwatch, appreciating its intuitive interface and quick onboarding process.
- Users appreciate the **quick onboarding** process of Cyberwatch, making it easy for all experience levels to get started.

#### What Are Recent G2 Reviews of Cyberwatch?

**["Comprehensive and Easy-to-Use Cybersecurity Solution"](https://www.g2.com/survey_responses/cyberwatch-review-10381507)**

**Rating:** 5.0/5.0 stars

_— 🕹 Tommy D._

[Read full review](https://www.g2.com/survey_responses/cyberwatch-review-10381507)

### [Echelon](https://www.g2.com/products/laolab-cyber-security-echelon/reviews)

Echelon — your cybersecurity check-up solution. Just like a health check-up prevents illness, our AI-driven solution for ongoing cybersecurity audits prevents cyber threats — before they lead to financial loss or data breaches. Just 5 reasons to choose Echelon: 1. Fix Faster with AI. Our AI tool provides step-by-step guidance to remediate every detected vulnerability. Less routine for your team—more profit for you. 2. Machine Learning Leak Processing. Machine Learning enables Echelon to efficiently process leaked data, ensuring none of your sensitive information is exposed publicly. 3. Quick & Easy Setup. Just enter and confirm your domain or IP. No downloads. No access permissions needed. 4. Automatic Threat Detection. Finds security gaps before attackers do. 5. Echelon Never Sleeps. Audits are performed regularly. 24/7 CVE monitoring — if a new threat emerges, you'll be notified immediately. 3 simple steps to start: - Visit Echelon’s Website and Sign Up - Enter Domain/IP and Choose a Plan - Stay one step ahead of cyber threats – Echelon ensures 24/7 security

**Average Rating:** 5.0/5.0

**Total Reviews:** 1

#### How Do G2 Users Rate Echelon?

- **Has the product been a good partner in doing business?:** 10.0/10 (Category avg: 9.2/10)
- **Reporting:** 10.0/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 10.0/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 8.3/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Echelon?

- **Seller:** [LAOLAB CYBER SECURITY](https://www.g2.com/sellers/laolab-cyber-security)
- **HQ Location:** Abu Dhabi, AE
- **Twitter:** @laolab\_org  
90 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=dc841f7245dd71c975877754107ee1b69842459ce377e7fa20c6aef2a2c02a20&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Flaolab-security%2F&secure%5Burl_type%5D=linkedin_company_website)  
7 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 100% Medium

#### What Do G2 Reviewers Say About Echelon?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **enhanced cybersecurity measures** of Echelon, providing an additional layer of protection against risks.
- Users value Echelon for its **enhanced risk management** , providing an important additional layer of protection and reassurance.
- Users value the **multi-layered security** of Echelon, enhancing protection and minimizing risks effectively.

##### Cons

- Users find the **technical language complex** , making it challenging for those less familiar with the product.
- Users find the **technical language complex** , potentially challenging for those less familiar with the concepts.

#### What Are Recent G2 Reviews of Echelon?

**["Additional security checck"](https://www.g2.com/survey_responses/echelon-review-11300869)**

**Rating:** 5.0/5.0 stars

_— Muhammad A._

[Read full review](https://www.g2.com/survey_responses/echelon-review-11300869)

### [Faraday Platform](https://www.g2.com/products/faraday-platform/reviews)

Faraday ingests thousands of vulnerabilities from various assets and visualizes findings in a clear, dynamic, and intuitive dashboard. It is a comprehensive vulnerability management tool that helps security teams prioritize critical vulnerabilities, focusing on those that are exploitable to reduce noise and streamline reporting. Faraday can be deployed both in the cloud and on-premises, available in professional, corporate, and open-source versions. The company strongly supports open-source software (OSS) as they began as a small group of pentesters who needed to manage vulnerabilities and generate reports, leading them to develop this tool. Now, Faraday is accessible on GitHub for any pentester needing to create penetration testing reports. Among its many features, Faraday supports over 160 tools to consolidate work in one place. It also integrates seamlessly with Jira, ServiceNow, SolarWinds, and GitLab. The platform includes its own vulnerability scoring system to prioritize vulnerabilities as a hacker would, identifying exploitable vulnerabilities over seemingly critical ones that pose no real risk. Faraday is designed to meet the needs of small to large companies, allowing them to scale their security operations efficiently.

**Average Rating:** 5.0/5.0

**Total Reviews:** 1

#### How Do G2 Users Rate Faraday Platform?

- **Reporting:** 8.3/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 8.3/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 8.3/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Faraday Platform?

- **Seller:** [Faraday Security](https://www.g2.com/sellers/faraday-security)
- **Year Founded:** 2014
- **HQ Location:** Miami, US
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=f55576dd68efaa6da27f0cf20b4a9cff28d65dc2034d165c8b026ab60197e9a4&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Ffaradaysec%2F&secure%5Burl_type%5D=linkedin_company_website)  
53 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 100% Medium

#### What Are Recent G2 Reviews of Faraday Platform?

**["We love the Faraday Platform."](https://www.g2.com/survey_responses/faraday-platform-review-7386567)**

**Rating:** 5.0/5.0 stars

_— Owen T._

[Read full review](https://www.g2.com/survey_responses/faraday-platform-review-7386567)

### [Fluid Attacks](https://www.g2.com/products/fluid-attacks/reviews)

Implement Fluid Attacks' comprehensive, AI-powered solution into your SDLC and develop secure software without delays. As an all-in-one solution, Fluid Attacks accurately finds and helps you remediate vulnerabilities throughout the SDLC and ensures secure software development. The solution integrates its AI, automated tool, and team of pentesters to perform SAST, SCA, DAST, CSPM, SCR, PtaaS and RE to help you improve your security posture. This way, Fluid Attacks delivers accurate knowledge of the security status of your application. This means security goes alongside innovation without hindering your speed. Fluid Attacks provides you with expert knowledge about vulnerabilities and support options that enable you to remediate the security issues in your application.

**Average Rating:** 4.5/5.0

**Total Reviews:** 1

#### How Do G2 Users Rate Fluid Attacks?

- **Has the product been a good partner in doing business?:** 8.3/10 (Category avg: 9.2/10)

#### Who Is the Company Behind Fluid Attacks?

- **Seller:** [Fluid Attacks](https://www.g2.com/sellers/fluid-attacks)
- **Year Founded:** 2001
- **HQ Location:** San Francisco, US
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=b1975d667eb318dd90eefda422e06b0be32f25507e44c307a8bb9e17d2dd60c0&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Ffluidattacks%2F&secure%5Burl_type%5D=linkedin_company_website)  
136 employees on LinkedIn®
- **Phone:** +14154042154

#### Who Uses This Product?

- **Company Size:** 100% Large

#### What Are Recent G2 Reviews of Fluid Attacks?

**["Easy integration with the ecosystem and very good support"](https://www.g2.com/survey_responses/fluid-attacks-review-13078718)**

**Rating:** 4.5/5.0 stars

_— Verified User in Banking_

[Read full review](https://www.g2.com/survey_responses/fluid-attacks-review-13078718)

### [Hackuity.io](https://www.g2.com/products/hackuity-io/reviews)

Hackuity is the comprehensive security solution that orchestrates and automates the vulnerability management process. Hackuity’s platform aggregates and normalizes all your security assessment practices, whether automated or handmade, and enriches them so security practitioners can, at last, create risk-driven remediation plans and align their priorities with their current and future exposure to threats. Fully customizable, the platform fits the client technical context and security requirements either in a full-Saas mode, On-premise or Hybrid installation mode. Hackuity proposes the right offer regarding the company's experience in vulnerability management and field of activity : - Risk-based vulnerability management - Continuous Monitoring - Augmented pentest - Hackuity for MSSP The company was founded in 2018 and is based in Lyon, France.

**Average Rating:** 5.0/5.0

**Total Reviews:** 1

#### Who Is the Company Behind Hackuity.io?

- **Seller:** [Hackuity](https://www.g2.com/sellers/hackuity)
- **Year Founded:** 2018
- **HQ Location:** Lyon, FR
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=465a43c46fd7ce05f02013a9ef98b9f18149184d95aecd9546677852db9ec5fd&secure%5Burl%5D=http%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fhackuity&secure%5Burl_type%5D=linkedin_company_website)  
38 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 100% Large

#### What Are Recent G2 Reviews of Hackuity.io?

**["A vulnerability management cockpit"](https://www.g2.com/survey_responses/hackuity-io-review-5137627)**

**Rating:** 5.0/5.0 stars

_— Philippe T._

[Read full review](https://www.g2.com/survey_responses/hackuity-io-review-5137627)

#### What Are G2 Users Discussing About Hackuity.io?

- [What is Hackuity.io used for?](https://www.g2.com/discussions/what-is-hackuity-io-used-for)

### [ManageEngine Vulnerability Manager Plus](https://www.g2.com/products/manageengine-vulnerability-manager-plus/reviews)

With Vulnerability Manager Plus, right from detection, and assessment of vulnerabilities to eliminating them with an automated patching workflow, all aspects of vulnerability management are made easy with a centralized console.

**Average Rating:** 4.7/5.0

**Total Reviews:** 3

#### How Do G2 Users Rate ManageEngine Vulnerability Manager Plus?

- **Has the product been a good partner in doing business?:** 9.2/10 (Category avg: 9.2/10)
- **Reporting:** 10.0/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 10.0/10 (Category avg: 8.7/10)

#### Who Is the Company Behind ManageEngine Vulnerability Manager Plus?

- **Seller:** [Zoho](https://www.g2.com/sellers/zoho-b00ca9d5-bca8-41b5-a8ad-275480841704)
- **Year Founded:** 1996
- **HQ Location:** Austin, TX
- **Twitter:** @Zoho  
137,880 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=9c8e45ddb296c32c6c5597ef9ba945c94562c57624f7bd1dcf1a9e9931f71578&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F38373%2F&secure%5Burl_type%5D=linkedin_company_website)  
30,766 employees on LinkedIn®
- **Phone:** +1 (888) 900-9646 

#### Who Uses This Product?

- **Company Size:** 67% Medium, 33% Large

#### What Do G2 Reviewers Say About ManageEngine Vulnerability Manager Plus?

_AI-generated summary from verified user reviews_

##### Pros

- Users praise the **effective detection capabilities** of ManageEngine Vulnerability Manager Plus for global patch management simplicity.
- Users find the **ease of use** in ManageEngine Vulnerability Manager Plus makes global patch management simple and efficient.
- Users find that ManageEngine Vulnerability Manager Plus is the **best tool for simple and effective patch management** globally.
- Users value the **ease of managing patches** globally with ManageEngine Vulnerability Manager Plus for efficient patch management.
- Users find ManageEngine Vulnerability Manager Plus an **easy-to-manage patch management tool** for global machine updates.

##### Cons

- Users report issues with **false positives** , as some CVE IDs marked vulnerable do not align with ManageEngine assessments.
- Users report **inaccuracy issues** with ManageEngine Vulnerability Manager Plus, as some CVE IDs are missed in reports.
- Users report **security vulnerabilities** as discrepancies in CVE identification, hindering effective threat management in ManageEngine.
- Users report discrepancies with **CVE identification** , as some vulnerabilities in MDE reports are missed by ManageEngine.

#### What Are Recent G2 Reviews of ManageEngine Vulnerability Manager Plus?

**["Easy to Implement, Seamless Integration, and Responsive Support"](https://www.g2.com/survey_responses/manageengine-vulnerability-manager-plus-review-12512541)**

**Rating:** 4.0/5.0 stars

_— Verified User in Financial Services_

[Read full review](https://www.g2.com/survey_responses/manageengine-vulnerability-manager-plus-review-12512541)

**["Cost-Effective, Cross-Platform, and Easy to Customise"](https://www.g2.com/survey_responses/manageengine-vulnerability-manager-plus-review-12729510)**

**Rating:** 5.0/5.0 stars

_— Sarah E._

[Read full review](https://www.g2.com/survey_responses/manageengine-vulnerability-manager-plus-review-12729510)

### [NopSec Unified VRM](https://www.g2.com/products/nopsec-unified-vrm/reviews)

NopSec Unified Vulnerability Risk Management (VRM) correlates vulnerability data with your IT environment and attack patterns in the wild to help you avoid false positives and find the threats that matter. Unified VRM prioritizes security vulnerabilities based on business risk and context with proprietary threat prediction models and cyber intelligence – including malware, exploit, patching and social media feeds to predict the true probability of attacks. It replaces manual remediation tasks with automated workflow, integrated communication capabilities and incident management – guided by rich visualization dashboards for easy reporting on current status.

**Average Rating:** 5.0/5.0

**Total Reviews:** 1

#### How Do G2 Users Rate NopSec Unified VRM?

- **Reporting:** 10.0/10 (Category avg: 8.8/10)
- **Vulnerability Intelligence:** 8.3/10 (Category avg: 8.7/10)
- **Risk-Prioritization:** 8.3/10 (Category avg: 8.8/10)

#### Who Is the Company Behind NopSec Unified VRM?

- **Seller:** [NopSec](https://www.g2.com/sellers/nopsec)
- **Year Founded:** 2013
- **HQ Location:** New York, US
- **Twitter:** @nopsec  
2,200 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=ebea1b3478493dbb9ccde28d0e3401c5ef8b8a950bc31d8572ea60bc2afcacef&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fnopsec-inc.&secure%5Burl_type%5D=linkedin_company_website)  
47 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 100% Medium

#### What Are Recent G2 Reviews of NopSec Unified VRM?

**["Very good migration with my Jira Ticketing System"](https://www.g2.com/survey_responses/nopsec-unified-vrm-review-6489978)**

**Rating:** 5.0/5.0 stars

_— Jae S._

[Read full review](https://www.g2.com/survey_responses/nopsec-unified-vrm-review-6489978)

#### What Are G2 Users Discussing About NopSec Unified VRM?

- [What is NopSec Unified VRM used for?](https://www.g2.com/discussions/what-is-nopsec-unified-vrm-used-for)

### [Ostrich Birdseye](https://www.g2.com/products/ostrich-birdseye/reviews)

Ostrich Cyber-Risk helps organizations reduce the complexity of identifying, quantifying and communicating cyber and operational risks related to their cybersecurity posture with its Birdseye™ SaaS solution. Benchmarked against NIST CSF with references to best standards, like NIST 800-53, ISO 27001, CIS 18, etc. Birdseye is a unified qualitative and quantitative cyber risk management application that offers an intuitive assessment workflow to track your organization’s risk over time, all in one place. The Birdseye™ proprietary features include continuous progress tracking, real world data insights from Advisen for peer comparison, CRQ Simulator that simulates unlimited risk scenarios to enable risk-reduction ROI calculations, and shareable reports. Learn more at https://www.ostrichcyber-risk.com/.

**Average Rating:** 4.0/5.0

**Total Reviews:** 1

#### How Do G2 Users Rate Ostrich Birdseye?

- **Reporting:** 10.0/10 (Category avg: 8.8/10)
- **Risk-Prioritization:** 10.0/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Ostrich Birdseye?

- **Seller:** [Ostrich Cyber-Risk](https://www.g2.com/sellers/ostrich-cyber-risk)
- **Year Founded:** 2021
- **HQ Location:** Cottonwood Heights, US
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=2fbf01724563718ace940270def33390e290c5d308c3692f72b6570244ed5d75&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fostrich-cyber-risk&secure%5Burl_type%5D=linkedin_company_website)  
22 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 100% Small

#### What Are Recent G2 Reviews of Ostrich Birdseye?

**["Management of suppliers and risks is very valuable"](https://www.g2.com/survey_responses/ostrich-birdseye-review-12607698)**

**Rating:** 4.0/5.0 stars

_— Verified User in Banking_

[Read full review](https://www.g2.com/survey_responses/ostrich-birdseye-review-12607698)

- [&lsaquo; Prev‹ Prev](/categories/risk-based-vulnerability-management?order=g2_score&page=6&post_lead_product=tenable-sc#product-list)
- [1](/categories/risk-based-vulnerability-management?order=g2_score&post_lead_product=tenable-sc#product-list)
- [2](/categories/risk-based-vulnerability-management?order=g2_score&page=2&post_lead_product=tenable-sc#product-list)
- [3](/categories/risk-based-vulnerability-management?order=g2_score&page=3&post_lead_product=tenable-sc#product-list)
- [4](/categories/risk-based-vulnerability-management?order=g2_score&page=4&post_lead_product=tenable-sc#product-list)
- [5](/categories/risk-based-vulnerability-management?order=g2_score&page=5&post_lead_product=tenable-sc#product-list)
- [6](/categories/risk-based-vulnerability-management?order=g2_score&page=6&post_lead_product=tenable-sc#product-list)
- 7
- [8](/categories/risk-based-vulnerability-management?order=g2_score&page=8&post_lead_product=tenable-sc#product-list)
- [9](/categories/risk-based-vulnerability-management?order=g2_score&page=9&post_lead_product=tenable-sc#product-list)
- [10](/categories/risk-based-vulnerability-management?order=g2_score&page=10&post_lead_product=tenable-sc#product-list)
- [11](/categories/risk-based-vulnerability-management?order=g2_score&page=11&post_lead_product=tenable-sc#product-list)
- [12](/categories/risk-based-vulnerability-management?order=g2_score&page=12&post_lead_product=tenable-sc#product-list)
- [13](/categories/risk-based-vulnerability-management?order=g2_score&page=13&post_lead_product=tenable-sc#product-list)
- [Next &rsaquo;Next ›](/categories/risk-based-vulnerability-management?order=g2_score&page=8&post_lead_product=tenable-sc#product-list)

Spotlight Categories

[Expense Management Software](https://www.g2.com/categories/expense-management)

[Survey Software](https://www.g2.com/categories/survey)

[Application Performance Monitoring (APM) Tools](https://www.g2.com/categories/application-performance-monitoring-apm)

[Security Awareness Training Software](https://www.g2.com/categories/security-awareness-training)

[Sales Training and Onboarding Software](https://www.g2.com/categories/sales-training-and-onboarding)

Similar Categories

- [Attack Surface Management](/categories/attack-surface-management)
- [Cybersecurity Professional Development](/categories/cybersecurity-professional-development)

- [Exposure Management Platforms](/categories/exposure-management-platforms)
- [Patch Management](/categories/patch-management)

- [Secure Code Training](/categories/secure-code-training)
- [Security Awareness Training](/categories/security-awareness-training)

[Browse Risk-Based Vulnerability Management Themes](/categories/risk-based-vulnerability-management/themes)

 ![Brandon Summers-Miller](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Brandon Summers-Miller")
BS

Researched and written by [Brandon Summers-Miller](https://research.g2.com/insights/author/brandon-summers-miller)

Updated October 3, 2024

Risk-based vulnerability management software is used to identify and prioritize vulnerabilities based on customizable risk factors. These tools are more advanced than traditional vulnerability management solutions, as they assist in the prioritization of issues and execution of remedies based on the results of machine learning algorithms.

Companies use risk-based vulnerability management solutions to analyze entire organizations’ IT systems, cloud services, and/or applications and identify priorities. Instead of manually identifying vulnerabilities and remediating them in order of discovery, an organization can automate that process to remediate vulnerabilities impacting critical business components first. From there, they can address issues as the system has ordered by impact and remediation time. Companies can customize these priorities as they see fit by weighing risk factors differently.

Risk-based vulnerability management solutions are primarily used by IT professionals and security staff. These teams will integrate system and application information, outline priorities, and analyze assets. Automation within these tools saves significant time; furthermore, addressing critical vulnerabilities first can significantly reduce the likelihood of security incidents, failover, and data loss.

There is some overlap between risk-based vulnerability management solutions and [security risk analysis software](https://www.g2.com/categories/security-risk-analysis), but there are a few key differences. Security risk analysis tools provide similar capabilities in identifying vulnerabilities and other security risks. But security risk analysis tools, aside from a few outlier products, will not utilize machine learning and automation to assist in the prioritization and execution of vulnerability remediation.

To qualify for inclusion in the Risk-Based Vulnerability Management category, a product must:

- Integrate threat intelligence and contextual data for analysis
- Analyze applications, networks, and cloud services for vulnerabilities
- Utilize risk factors and machine learning to prioritize vulnerabilities

Show More