# Best Vulnerability Scanner Software with Configuration Monitoring Capabilities

## How Many Vulnerability Scanner Software Products Does G2 Track?

**Total Products under this Category:** 223

### Category Stats (Aug 2026)

- **Average Rating:** 4.58/5 The average rating of products in this category, based on all submitted ratings
- **Top Trending Product:** Finite State (+1.29%) - Among all products in this category, Finite State recorded the largest rating increase compared to last month

_Last updated: August 01, 2026_

## How Does G2 Rank Vulnerability Scanner Software Products?

**Why You Can Trust G2's Software Rankings:**

- 30 Analysts and Data Experts
- 7,700+ Authentic Reviews
- 223+ Products
- Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

## G2 Grid® for Vulnerability Scanner Software
 ![G2 Grid® for Vulnerability Scanner Software plotting products by satisfaction and market presence](https://www.g2.com/categories/vulnerability-scanner/grids.png?focus%5B%5D=146504&focus%5B%5D=1259627&focus%5B%5D=123609&focus%5B%5D=32494&focus%5B%5D=151443&focus%5B%5D=154599&focus%5B%5D=27706&focus%5B%5D=20460)

Highlighted products: Wiz, Aikido Security, Orca Security, Tenable Nessus, CrowdStrike Falcon Cloud Security, Astra Pentest, Intruder, and Sysdig Secure.

Underlying data: [Grid® JSON](https://www.g2.com/categories/vulnerability-scanner/grids.json?focus%5B%5D=wiz-wiz&focus%5B%5D=aikido-security&focus%5B%5D=orca-security&focus%5B%5D=tenable-nessus&focus%5B%5D=crowdstrike-falcon-cloud-security&focus%5B%5D=astra-pentest&focus%5B%5D=intruder&focus%5B%5D=sysdig-sysdig-secure)

**Sponsored**

### Sentry

Sentry is an application monitoring and error tracking platform that helps developers identify, debug, and resolve software issues in production environments across web, mobile, desktop, game, and AI-powered applications. The platform captures errors, crashes, and performance problems in real time, providing developers with stack traces, user context, and diagnostic data needed to reproduce and fix bugs. Sentry supports over 100 programming languages and frameworks, including JavaScript, Python, Java, Ruby, PHP, Go, React, Django, and mobile platforms like iOS and Android. Core monitoring capabilities: - Error tracking groups similar errors into issues, showing frequency, affected users, and the exact code location where problems occur - Performance monitoring traces requests through distributed systems to identify slow database queries, API bottlenecks, and code-level performance problems - Session Replay records user interactions leading up to errors, capturing clicks, network activity, and console logs for easier reproduction - Logs captures structured log data from your applications alongside errors and traces, enabling search and filtering by message content, severity level, and custom attributes - AI observability provides visibility into LLM applications, AI agents, and Model Context Protocol servers, tracking prompts, model calls, tool usage, and token consumption Developers integrate Sentry by installing an SDK and adding a few lines of code to their application. The platform automatically captures unhandled exceptions, while developers can manually track custom errors and performance metrics. Sentry processes events in real time, sending alerts through Slack, email, PagerDuty, or other notification channels when issues occur. Additional features and capabilities: - AI-powered debugging through Seer, which analyzes errors to identify root causes and suggest code fixes with high accuracy - Distributed tracing that follows requests across microservices, serverless functions, and third-party APIs to pinpoint failure points - Custom dashboards and alerts for monitoring specific metrics, error rates, or performance thresholds important to each team - Profiling tools that provide code-level visibility into where time is being spent in production, identifying slow functions, call stacks, and performance regressions across backend services and frontend/mobile user flows - Workflow integrations with GitHub, Jira, GitLab, Azure DevOps, and other development tools to create tickets or link errors to commits automatically The platform serves development teams at organizations ranging from individual developers to large enterprises. More than 100,000 organizations use Sentry, processing billions of error events daily. Sentry offers both cloud-hosted and self-hosted deployment options, with pricing tiers based on event volume. A free tier supports small projects and individual developers.

[Visit website](https://www.g2.com/external_clickthroughs/record?secure%5Bad_program%5D=ppc&secure%5Bad_slot%5D=category_product_list_llm&secure%5Bcategory_id%5D=1423&secure%5Bchosen_at%5D=2026-08-03T05%3A59%3A28Z&secure%5Bdisplayable_resource_id%5D=1136&secure%5Bdisplayable_resource_type%5D=Category&secure%5Bmedium%5D=sponsored&secure%5Bplacement_reason%5D=retargeted_product&secure%5Bplacement_resource_ids%5D%5B%5D=17313&secure%5Bprioritized%5D=false&secure%5Bproduct_id%5D=17313&secure%5Bresource_id%5D=1423&secure%5Bresource_type%5D=Category&secure%5Bsource_type%5D=category_page&secure%5Bsource_url%5D=https%3A%2F%2Fwww.g2.com%2Fcategories%2Fvulnerability-scanner%2Ff%2Fconfiguration-monitoring&secure%5Btoken%5D=8f64f14f02f77d18e66403ab7efdffdaf7f604e3f0b86245bd27b8a50babfe05&secure%5Burl%5D=https%3A%2F%2Fsentry.io%2Flp%2Flogs%2F%3Futm_source%3Dg2%26utm_medium%3Dreview-site%26utm_campaign%3Dlogs-fy27q1-evergreen%26utm_content%3Dstatic-ad-log-analysis-trysentry&secure%5Burl_type%5D=custom_url)

### [Tenable Nessus](https://www.g2.com/products/tenable-nessus/reviews)

Built for security practitioners, by security professionals, Nessus products by Tenable are the de-facto industry standard for vulnerability assessment. Nessus performs point-in-time assessments to help security professionals quickly and easily identify and fix vulnerabilities, including software flaws, missing patches, malware, and misconfigurations - across a variety of operating systems, devices, and applications. With features such as pre-built policies and templates, customizable reporting, group “snooze” functionality, and real-time updates, Nessus is designed to make vulnerability assessment simple, easy, and intuitive. The result: less time and effort to assess, prioritize, and remediate issues.

**Average Rating:** 4.5/5.0

**Total Reviews:** 290

#### How Do G2 Users Rate Tenable Nessus?

- **Has the product been a good partner in doing business?:** 8.7/10 (Category avg: 9.2/10)
- **Detection Rate:** 8.9/10 (Category avg: 8.9/10)
- **Automated Scans:** 9.0/10 (Category avg: 9.0/10)
- **Configuration Monitoring:** 8.4/10 (Category avg: 8.5/10)

#### Who Is the Company Behind Tenable Nessus?

- **Seller:** [Tenable](https://www.g2.com/sellers/tenable)
- **Company Website:** www.tenable.com
- **HQ Location:** Columbia, MD
- **Twitter:** @TenableSecurity  
87,752 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=029266d223c06e6b09e6d209209f15aad3bbad59d05069b38d5ec2757e74adef&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F25452%2F&secure%5Burl_type%5D=linkedin_company_website)  
2,350 employees on LinkedIn®
- **Ownership:** NASDAQ: TENB

#### Who Uses This Product?

- **Who Uses This:** Security Engineer, Network Engineer
- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 40% Medium, 34% Large

#### What Do G2 Reviewers Say About Tenable Nessus?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **vulnerability identification** capabilities of Tenable Nessus, highlighting its accuracy and comprehensive coverage for security management.
- Users value the **advanced vulnerability detection** capabilities of Tenable Nessus, enhancing their security risk management effectively.
- Users value the **ease of use** of Tenable Nessus, appreciating its simple setup and user-friendly interface.
- Users value the **automated scanning** capabilities of Tenable Nessus, benefiting from its comprehensive and up-to-date vulnerability checks.
- Users commend the **comprehensive scanning capabilities** of Tenable Nessus, alongside its robust reporting and automation features.

##### Cons

- Users note the **slow scanning** process, especially in large environments, significantly impacting resource usage and production times.
- Users find the **cost of running and maintaining Tenable Nessus** to be extensively high and burdensome.
- Users find **limited features** in Tenable Nessus, including restrictions on hosts, scans, and mobile application testing.
- Users find the **complexity** of Tenable Nessus challenging, especially with advanced features requiring significant technical knowledge.
- Users report that Nessus generates **false positives** , resulting in extra workload and hindering effective security management.

#### What Are Recent G2 Reviews of Tenable Nessus?

**["Self-Contained Nessus Scanning with Full Control in Offline Environments"](https://www.g2.com/survey_responses/tenable-nessus-review-12937668)**

**Rating:** 4.0/5.0 stars

_— Verified User in Higher Education_

[Read full review](https://www.g2.com/survey_responses/tenable-nessus-review-12937668)

**["Reliable and Efficient Vulnerability Management Tool"](https://www.g2.com/survey_responses/tenable-nessus-review-12989192)**

**Rating:** 5.0/5.0 stars

_— Mohsin H._

[Read full review](https://www.g2.com/survey_responses/tenable-nessus-review-12989192)

#### What Are G2 Users Discussing About Tenable Nessus?

- [What is Nessus used for?](https://www.g2.com/discussions/what-is-nessus-used-for) - 1 comment
- [What types of vulnerabilities are scanned by Nessus?](https://www.g2.com/discussions/what-types-of-vulnerabilities-are-scanned-by-nessus)
- [Is there a free version of Nessus?](https://www.g2.com/discussions/is-there-a-free-version-of-nessus) - 2 comments
- [What is an advantage of using Nessus?](https://www.g2.com/discussions/what-is-an-advantage-of-using-nessus)
- [What does Nessus scan for?](https://www.g2.com/discussions/what-does-nessus-scan-for) - 1 comment

### [Amazon Inspector](https://www.g2.com/products/amazon-inspector/reviews)

Amazon Inspector is an automated vulnerability management service that continuously scans AWS workloads—including Amazon EC2 instances, container images in Amazon ECR, AWS Lambda functions, and code repositories—for software vulnerabilities and unintended network exposure. By integrating seamlessly with AWS environments, it provides real-time detection and prioritization of security issues, enabling organizations to enhance their security posture efficiently. Key Features and Functionality: - Automated Discovery and Continuous Scanning: Automatically identifies and assesses AWS resources for vulnerabilities and network exposures, ensuring comprehensive coverage without manual intervention. - Contextualized Risk Scoring: Generates risk scores by correlating vulnerability data with environmental factors such as network accessibility and exploitability, aiding in the prioritization of remediation efforts. - Integration with AWS Services: Seamlessly integrates with AWS Security Hub and Amazon EventBridge, facilitating automated workflows and centralized management of security findings. - Support for Multiple Resource Types: Extends vulnerability management to various AWS services, including EC2 instances, container images, Lambda functions, and code repositories, providing a unified security assessment across the cloud environment. - Agentless Scanning for EC2 Instances: Offers continuous monitoring of EC2 instances for software vulnerabilities without the need for installing additional agents, simplifying deployment and maintenance. Primary Value and Problem Solved: Amazon Inspector addresses the critical need for continuous and automated vulnerability management within AWS environments. By providing real-time detection and prioritization of security issues, it enables organizations to proactively identify and remediate vulnerabilities, reducing the risk of security breaches and ensuring compliance with industry standards. Its integration with existing AWS services and support for various resource types streamline security operations, allowing teams to focus on strategic initiatives while maintaining a robust security posture.

**Average Rating:** 4.4/5.0

**Total Reviews:** 25

#### How Do G2 Users Rate Amazon Inspector?

- **Has the product been a good partner in doing business?:** 9.3/10 (Category avg: 9.2/10)
- **Detection Rate:** 9.2/10 (Category avg: 8.9/10)
- **Automated Scans:** 9.2/10 (Category avg: 9.0/10)
- **Configuration Monitoring:** 7.8/10 (Category avg: 8.5/10)

#### Who Is the Company Behind Amazon Inspector?

- **Seller:** [Amazon Web Services (AWS)](https://www.g2.com/sellers/amazon-web-services-aws-3e93cc28-2e9b-4961-b258-c6ce0feec7dd)
- **Year Founded:** 2006
- **HQ Location:** Seattle, WA
- **Twitter:** @awscloud  
2,232,483 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=072881eee28a2afe24f8d1bda9f20e3e146b9fb4b214f216411ce2ed6898b31e&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Famazon-web-services%2F&secure%5Burl_type%5D=linkedin_company_website)  
147,094 employees on LinkedIn®
- **Ownership:** NASDAQ: AMZN

#### Who Uses This Product?

- **Top Industries:** Computer Software
- **Company Size:** 41% Small, 33% Medium

#### What Do G2 Reviewers Say About Amazon Inspector?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **robust security features** of Amazon Inspector, enhancing their cloud environment's safety and compliance.
- Users commend the **excellent customer support** from AWS, which enhances their experience with Amazon Inspector.
- Users value the **centralized management** of Amazon Inspector, enhancing visibility and compliance while simplifying security monitoring.
- Users value the **collaborative tools** of Amazon Inspector, enhancing monitoring and compliance through integrated resources and support.
- Users appreciate the **automated security issue detection** of Amazon Inspector, making setup and maintenance effortless.

##### Cons

- Users find the **complexity** of AWS's security features requires a well-trained admin for proper configuration and effectiveness.
- Users find **complexity issues** in configuring Amazon Inspector, requiring well-trained admins to optimize its advanced security features.
- Users note a **steep learning curve** for effectively configuring advanced security features in Amazon Inspector.
- Users find **limited features** in Amazon Inspector, which restricts their ability to effectively manage sensitive information.
- Users find Amazon Inspector **not user-friendly** , as it requires advanced knowledge for proper configuration and effective security.

#### What Are Recent G2 Reviews of Amazon Inspector?

**["Continuous AWS Vulnerability Scanning With Minimal Operational Overhead"](https://www.g2.com/survey_responses/amazon-inspector-review-13159187)**

**Rating:** 4.5/5.0 stars

_— Atharva P._

[Read full review](https://www.g2.com/survey_responses/amazon-inspector-review-13159187)

**["Easy AWS Integration with Clear Vulnerability Reporting"](https://www.g2.com/survey_responses/amazon-inspector-review-12534377)**

**Rating:** 4.0/5.0 stars

_— Verified User in Information Technology and Services_

[Read full review](https://www.g2.com/survey_responses/amazon-inspector-review-12534377)

### [Tenable Vulnerability Management](https://www.g2.com/products/tenable-vulnerability-management/reviews)

Tenable Vulnerability Management provides a risk-based approach to identifying, prioritizing, and remediating vulnerabilities across your entire attack surface. Powered by Nessus technology and AI-driven analytics, it goes beyond CVSS scores to assess exploitability, asset criticality, and business impact—so you can focus on what matters most. With continuous visibility, automated scanning, and real-time risk insights, security teams can quickly expose and close critical vulnerabilities before they’re exploited. Advanced asset identification ensures accurate tracking in dynamic environments, while intuitive dashboards, comprehensive reporting, and seamless third-party integrations help streamline workflows. As a cloud-based solution, Tenable Vulnerability Management scales with your organization, empowering security teams to maximize efficiency, reduce risk, and improve resilience against evolving threats.

**Average Rating:** 4.5/5.0

**Total Reviews:** 114

#### How Do G2 Users Rate Tenable Vulnerability Management?

- **Has the product been a good partner in doing business?:** 8.6/10 (Category avg: 9.2/10)
- **Detection Rate:** 9.0/10 (Category avg: 8.9/10)
- **Automated Scans:** 9.3/10 (Category avg: 9.0/10)
- **Configuration Monitoring:** 8.7/10 (Category avg: 8.5/10)

#### Who Is the Company Behind Tenable Vulnerability Management?

- **Seller:** [Tenable](https://www.g2.com/sellers/tenable)
- **Company Website:** www.tenable.com
- **HQ Location:** Columbia, MD
- **Twitter:** @TenableSecurity  
87,752 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=029266d223c06e6b09e6d209209f15aad3bbad59d05069b38d5ec2757e74adef&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F25452%2F&secure%5Burl_type%5D=linkedin_company_website)  
2,350 employees on LinkedIn®
- **Ownership:** NASDAQ: TENB

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Financial Services
- **Company Size:** 55% Large, 33% Medium

#### What Do G2 Reviewers Say About Tenable Vulnerability Management?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **user-friendly interface** of Tenable Vulnerability Management, making prioritization and action on vulnerabilities seamless.
- Users praise the **scanning efficiency** of Tenable Vulnerability Management, highlighting its speed and comprehensive capabilities.
- Users value the **powerful scanning and reporting features** of Tenable Vulnerability Management for enhanced asset management.
- Users appreciate the **fast and efficient automated scanning** of Tenable Vulnerability Management, enhancing resource management and reporting.
- Users value the **effective vulnerability identification** that helps prioritize remediation efforts efficiently within their environments.

##### Cons

- Users find the **cost of Tenable Vulnerability Management** to be prohibitive, especially for organizations with tight budgets.
- Users find the **reporting capabilities inadequate** , often needing external tools for refined and personalized analysis.
- Users find the **reporting capabilities to be limited** , often needing external tools for better data insights.
- Users find the **pricing issues** of Tenable Vulnerability Management to be a barrier, especially for smaller organizations.
- Users find the platform's **complexity** to manage licensing and reporting options challenging, especially under budget constraints.

#### What Are Recent G2 Reviews of Tenable Vulnerability Management?

**["TVM Does What You Need"](https://www.g2.com/survey_responses/tenable-vulnerability-management-review-12937561)**

**Rating:** 4.5/5.0 stars

_— Verified User in Higher Education_

[Read full review](https://www.g2.com/survey_responses/tenable-vulnerability-management-review-12937561)

**["Intuitive, Easy to Deploy, and Packed with Comprehensive Reporting"](https://www.g2.com/survey_responses/tenable-vulnerability-management-review-13067235)**

**Rating:** 4.5/5.0 stars

_— Grace Y._

[Read full review](https://www.g2.com/survey_responses/tenable-vulnerability-management-review-13067235)

#### What Are G2 Users Discussing About Tenable Vulnerability Management?

- [What is your primary use case for Tenable Vulnerability Management, and how has it impacted your security posture?](https://www.g2.com/discussions/what-is-your-primary-use-case-for-tenable-vulnerability-management-and-how-has-it-impacted-your-security-posture) - 1 comment
- [What is Tenable.io used for?](https://www.g2.com/discussions/what-is-tenable-io-used-for) - 1 comment
- [How much is tenable io?](https://www.g2.com/discussions/how-much-is-tenable-io)
- [How do I link Nessus to tenable io?](https://www.g2.com/discussions/how-do-i-link-nessus-to-tenable-io)
- [What is the difference between Nessus and tenable io?](https://www.g2.com/discussions/what-is-the-difference-between-nessus-and-tenable-io)

### [Qualys VM](https://www.g2.com/products/qualys-vm/reviews)

Qualys Vulnerability Management (VM) is a cloud-based service that provides organizations with immediate, global visibility into potential vulnerabilities within their IT systems. By continuously detecting and assessing threats, Qualys VM helps prevent security breaches and ensures compliance with internal policies and external regulations. Its cloud-native architecture eliminates the need for on-premises hardware, facilitating rapid deployment and scalability. Key Features and Functionality: - Comprehensive Asset Discovery: Automatically identifies and inventories all IT assets across on-premises, cloud, and hybrid environments. - Continuous Vulnerability Assessment: Performs ongoing scans to detect vulnerabilities with high accuracy, minimizing false positives. - Prioritization with Threat Intelligence: Utilizes real-time threat intelligence to prioritize vulnerabilities based on risk, focusing remediation efforts on the most critical issues. - Integrated Remediation: Offers actionable remediation steps and integrates with patch management workflows to streamline the vulnerability management process. - Scalability and Flexibility: Supports a wide range of operating systems and integrates with various cloud platforms, including AWS, Azure, GCP, and OCI, ensuring comprehensive coverage. Primary Value and Problem Solved: Qualys VM addresses the challenge of managing and mitigating vulnerabilities in complex IT environments. By providing continuous, automated vulnerability assessments and prioritizing threats based on real-time intelligence, it enables organizations to proactively protect their systems against potential attacks. The cloud-based nature of Qualys VM reduces the need for substantial resource deployment, offering a cost-effective solution for maintaining robust security postures.

**Average Rating:** 4.2/5.0

**Total Reviews:** 22

#### How Do G2 Users Rate Qualys VM?

- **Has the product been a good partner in doing business?:** 8.5/10 (Category avg: 9.2/10)
- **Detection Rate:** 9.2/10 (Category avg: 8.9/10)
- **Automated Scans:** 8.5/10 (Category avg: 9.0/10)
- **Configuration Monitoring:** 8.1/10 (Category avg: 8.5/10)

#### Who Is the Company Behind Qualys VM?

- **Seller:** [Qualys](https://www.g2.com/sellers/qualys)
- **Year Founded:** 1999
- **HQ Location:** Foster City, CA
- **Twitter:** @qualys  
34,248 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=8a475a11170e5fc9a7fb2e49ea7fa51a39a6bed39344b64cb6253a55cb740892&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F8561%2F&secure%5Burl_type%5D=linkedin_company_website)  
3,627 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 57% Large, 35% Medium

#### What Do G2 Reviewers Say About Qualys VM?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **ease of use** of Qualys VM, highlighting its intuitive interface and real-time vulnerability insights.
- Users appreciate the **continuous vulnerability scanning** of Qualys VM, enabling swift identification and remediation of security issues.
- Users appreciate the **continuous vulnerability scanning** of Qualys VM, enabling quick identification and remediation of critical security issues.
- Users appreciate the **interactive dashboard** of Qualys VM, enhancing usability and making vulnerability management enjoyable.
- Users appreciate the **real-time vulnerability insights** and the engaging interactive dashboard of Qualys VM.

##### Cons

- Users find the **access restrictions** of Qualys VM too limiting for their team's efficiency and collaboration.
- Users find the **high cost** of Qualys VM to be a significant drawback compared to competing solutions.
- Users find the **inefficient filtering** in Qualys VM makes it challenging to prioritize actionable vulnerabilities effectively.
- Users find the **limited customization** in Qualys VM hinders their ability to focus on key actionable vulnerabilities efficiently.
- Users criticize the **poor customer support** , noting long response times and lack of technical assistance.

#### What Are Recent G2 Reviews of Qualys VM?

**["One Stop for Endpoint Security"](https://www.g2.com/survey_responses/qualys-vm-review-10919831)**

**Rating:** 4.5/5.0 stars

_— Mukesh K._

[Read full review](https://www.g2.com/survey_responses/qualys-vm-review-10919831)

**["Improved UI and Fast Scan Insights with Solid SNOW Integration"](https://www.g2.com/survey_responses/qualys-vm-review-12679027)**

**Rating:** 4.5/5.0 stars

_— Daniel S._

[Read full review](https://www.g2.com/survey_responses/qualys-vm-review-12679027)

#### What Are G2 Users Discussing About Qualys VM?

- [Which of the following sensors are presently used by Qualys VM to collect the data needed to perform host vulnerability assessments?](https://www.g2.com/discussions/which-of-the-following-sensors-are-presently-used-by-qualys-vm-to-collect-the-data-needed-to-perform-host-vulnerability-assessments)
- [What are the advantages of the global asset inventory application?](https://www.g2.com/discussions/qualys-vm-what-are-the-advantages-of-the-global-asset-inventory-application)
- [What is Qualys tool used for?](https://www.g2.com/discussions/qualys-vm-what-is-qualys-tool-used-for)
- [What is Qualys VM?](https://www.g2.com/discussions/what-is-qualys-vm)

### [Invicti (formerly Netsparker)](https://www.g2.com/products/invicti-formerly-netsparker/reviews)

Invicti (formerly known as Netsparker) is an enterprise application and API security testing platform that helps organizations secure thousands of web applications and APIs at scale while dramatically reducing the risk of attack. Combining advanced DAST and IAST capabilities in a single platform, Invicti enables security teams to continuously identify, prioritize, and remediate vulnerabilities across complex modern environments with confidence and automation. With Invicti, security teams can: - Automate application security testing workflows and save hundreds of hours every month - Discover and secure all web applications and APIs, including forgotten, unmanaged, and shadow assets - Deliver actionable, developer-friendly feedback that helps teams remediate vulnerabilities faster and build more secure code over time - Reduce false positives with proof-based scanning technology that validates exploitable vulnerabilities - Scale application security programs across large enterprises without slowing development teams - Integrate security seamlessly into existing DevSecOps and CI/CD workflows Built for organizations with the most demanding security requirements, Invicti empowers teams to confidently secure their entire attack surface with accuracy, scalability, and automation.

**Average Rating:** 4.5/5.0

**Total Reviews:** 69

#### How Do G2 Users Rate Invicti (formerly Netsparker)?

- **Has the product been a good partner in doing business?:** 9.6/10 (Category avg: 9.2/10)
- **Detection Rate:** 9.0/10 (Category avg: 8.9/10)
- **Automated Scans:** 9.1/10 (Category avg: 9.0/10)
- **Configuration Monitoring:** 8.3/10 (Category avg: 8.5/10)

#### Who Is the Company Behind Invicti (formerly Netsparker)?

- **Seller:** [Invicti Security](https://www.g2.com/sellers/invicti-security-04cb0d3d-fd96-45b2-83dc-2038fc9dac92)
- **Company Website:** www.invicti.com
- **Year Founded:** 2018
- **HQ Location:** Austin, Texas
- **Twitter:** @InvictiSecurity  
2,557 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=3c6c2278d6d9ef248056074aabb5416f9e0b5bf217ea8a7bfb87419d2894bc76&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Finvicti-security%2Fpeople%2F&secure%5Burl_type%5D=linkedin_company_website)  
335 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Computer Software
- **Company Size:** 46% Large, 29% Medium

#### What Do G2 Reviewers Say About Invicti (formerly Netsparker)?

_AI-generated summary from verified user reviews_

##### Pros

- Users highlight the **ease of use** of Invicti, appreciating its user-friendly setup and quick installation process.
- Users value the **efficient scanning technology** of Invicti, enhancing workflow with hassle-free monthly website tests.
- Users commend Invicti's **accurate vulnerability detection and excellent integration with DevOps tools** , enhancing their security testing efficiency.
- Users value the **high-quality reporting** of Invicti, making it ideal for certifications and simplifying compliance processes.
- Users value the **effective vulnerability detection** of Invicti, appreciating its ease of use and accurate reporting.

##### Cons

- Users find the **customer support lacking** , with slow responses and inadequate solutions for technical issues.
- Users experience **slow performance** during scans, setup, and upgrades, impacting the overall efficiency of Invicti.
- Users find that **slow scanning** can hinder efficiency, especially when setup is tricky and API scanning is limited.
- Users face **API issues** with Invicti, making it unsuitable for scanning purposes despite good support.
- Users find the **complex setup** challenging initially, impacting their experience before they can effectively utilize the product.

#### What Are Recent G2 Reviews of Invicti (formerly Netsparker)?

**["Efficient Scanning, Superb Usability"](https://www.g2.com/survey_responses/invicti-formerly-netsparker-review-13155895)**

**Rating:** 4.5/5.0 stars

_— Zach G._

[Read full review](https://www.g2.com/survey_responses/invicti-formerly-netsparker-review-13155895)

**["Scalable Enterprise Security: Deep Endpoint Coverage via Invicti"](https://www.g2.com/survey_responses/invicti-formerly-netsparker-review-12742667)**

**Rating:** 4.5/5.0 stars

_— Verified User in Information Technology and Services_

[Read full review](https://www.g2.com/survey_responses/invicti-formerly-netsparker-review-12742667)

#### What Are G2 Users Discussing About Invicti (formerly Netsparker)?

- [What is Invicti (formerly Netsparker) used for?](https://www.g2.com/discussions/what-is-invicti-formerly-netsparker-used-for) - 1 comment
- [What type of vulnerabilities Netsparker can automatically confirm?](https://www.g2.com/discussions/invicti-formerly-netsparker-what-type-of-vulnerabilities-netsparker-can-automatically-confirm)
- [What type of vulnerabilities Netsparker can automatically confirm?](https://www.g2.com/discussions/what-type-of-vulnerabilities-netsparker-can-automatically-confirm)
- [How much does Netsparker cost?](https://www.g2.com/discussions/invicti-formerly-netsparker-how-much-does-netsparker-cost-a1ecffa4-a216-4bcc-affd-40dc140f3e27)
- [How much does Netsparker cost?](https://www.g2.com/discussions/invicti-formerly-netsparker-how-much-does-netsparker-cost)

### [LevelBlue USM Anywhere](https://www.g2.com/products/levelblue-usm-anywhere/reviews)

LevelBlue USM Anywhere is a cloud-based security management solution that accelerates and centralizes threat detection, incident response, and compliance management for your cloud, hybrid cloud, and on-premises environments. USM Anywhere includes purpose-built cloud sensors that natively monitor your Amazon Web Services (AWS) and Microsoft Azure cloud environments. On premises, lightweight virtual sensors run on Microsoft Hyper-V and VMware ESXi to monitor your virtual private cloud and physical IT infrastructure. With USM Anywhere, you can rapidly deploy sensors into your cloud and on-premises environments while centrally managing data collection, security analysis, and threat detection from the AlienVault Secure Cloud. Five Essential Security Capabilities in a Single SaaS Platform AlienVault USM Anywhere provides five essential security capabilities in a single SaaS solution, giving you everything you need for threat detection, incident response, and compliance management—all in a single pane of glass. With USM Anywhere, you can focus on finding and responding to threats, not managing software. An elastic, cloud-based security solution, USM Anywhere can readily scale to meet your threat detection needs as your hybrid cloud environment changes and grows. 1. Asset Discovery 2. Vulnerability Assessment 3. Intrusion Detection 4. Behavioral Monitoring 5. SIEM

**Average Rating:** 4.4/5.0

**Total Reviews:** 102

#### How Do G2 Users Rate LevelBlue USM Anywhere?

- **Has the product been a good partner in doing business?:** 8.6/10 (Category avg: 9.2/10)
- **Detection Rate:** 9.2/10 (Category avg: 8.9/10)
- **Automated Scans:** 9.2/10 (Category avg: 9.0/10)
- **Configuration Monitoring:** 8.6/10 (Category avg: 8.5/10)

#### Who Is the Company Behind LevelBlue USM Anywhere?

- **Seller:** [LevelBlue](https://www.g2.com/sellers/levelblue-49a2e3c1-ca90-4308-b899-08973f657bae)
- **HQ Location:** Dallas, Texas, United States
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=b7c87546a6975c33488ad71b8d45d5e29fffbd81a2f727bd39487c5bbfe94466&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Flevelbluecyber%2F&secure%5Burl_type%5D=linkedin_company_website)  
782 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Financial Services
- **Company Size:** 62% Medium, 20% Small

#### What Are Recent G2 Reviews of LevelBlue USM Anywhere?

**["Impressive Cloud Based SIEM"](https://www.g2.com/survey_responses/levelblue-usm-anywhere-review-9698214)**

**Rating:** 4.5/5.0 stars

_— Goodness I._

[Read full review](https://www.g2.com/survey_responses/levelblue-usm-anywhere-review-9698214)

**["Comprehensive cloud security and monitoring platform"](https://www.g2.com/survey_responses/levelblue-usm-anywhere-review-11718892)**

**Rating:** 5.0/5.0 stars

_— Luis Emmanuel M._

[Read full review](https://www.g2.com/survey_responses/levelblue-usm-anywhere-review-11718892)

#### What Are G2 Users Discussing About LevelBlue USM Anywhere?

- [How has AlienVault USM supported your cybersecurity efforts, and what features do you rely on most?](https://www.g2.com/discussions/how-has-alienvault-usm-supported-your-cybersecurity-efforts-and-what-features-do-you-rely-on-most)
- [What is AlienVault USM (from AT&T Cybersecurity) used for?](https://www.g2.com/discussions/what-is-alienvault-usm-from-at-t-cybersecurity-used-for)

### [Acunetix by Invicti](https://www.g2.com/products/acunetix-by-invicti/reviews)

Acunetix (by Invicti) is an automated application security testing tool that enables small security teams to tackle huge application security challenges. With fast scanning, comprehensive results, and intelligent automation, Acunetix helps organizations to reduce risk across all types of web applications, websites, and APIs. With Acunetix, security teams can: - Save time and resources by automating manual security processes - Work more seamlessly with developers, or embrace DevSecOps by integrating directly into development tools - Feel confident that every web application has been crawled entirely thanks to DAST + IAST scanning and intelligent crawling technology - Finally, make web application and API security a priority and not just an add-on with a solution that is dedicated to application and API security 100% of the time You can depend on Acunetix to meet your organization’s needs today and face the challenges of modern web technology together tomorrow.

**Average Rating:** 4.1/5.0

**Total Reviews:** 100

#### How Do G2 Users Rate Acunetix by Invicti?

- **Has the product been a good partner in doing business?:** 8.2/10 (Category avg: 9.2/10)
- **Detection Rate:** 8.5/10 (Category avg: 8.9/10)
- **Automated Scans:** 8.6/10 (Category avg: 9.0/10)
- **Configuration Monitoring:** 7.9/10 (Category avg: 8.5/10)

#### Who Is the Company Behind Acunetix by Invicti?

- **Seller:** [Invicti Security](https://www.g2.com/sellers/invicti-security-04cb0d3d-fd96-45b2-83dc-2038fc9dac92)
- **Company Website:** www.invicti.com
- **Year Founded:** 2018
- **HQ Location:** Austin, Texas
- **Twitter:** @InvictiSecurity  
2,557 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=3c6c2278d6d9ef248056074aabb5416f9e0b5bf217ea8a7bfb87419d2894bc76&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Finvicti-security%2Fpeople%2F&secure%5Burl_type%5D=linkedin_company_website)  
335 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Computer Software
- **Company Size:** 40% Large, 34% Medium

#### What Do G2 Reviewers Say About Acunetix by Invicti?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **accurate and fast vulnerability detection** of Acunetix, enhancing security with minimal false positives.
- Users value the **ease of use** of Acunetix, making vulnerability scanning and integration into workflows seamless.
- Users value Acunetix for its **robust security capabilities** , effectively enhancing web application safety with automatic vulnerability detection.
- Users commend the **accurate vulnerability identification** of Acunetix, enhancing web application security and ease of use.
- Users commend the **accuracy of results** from Acunetix, enhancing web application security with reliable vulnerability detection.

##### Cons

- Users find Acunetix to be **expensive** , especially challenging for smaller teams or projects with limited budgets.
- Users find the **complexity in setup and resource consumption** of Acunetix challenging, especially for large applications.
- Users find the **complex setup** of Acunetix challenging, especially for initial configurations and tool integrations.
- Users find the **slow scanning** process frustrating, especially during extensive audits of large web applications.
- Users find **difficult customization** to be a challenge, requiring technical expertise and patience for effective integration and setup.

#### What Are Recent G2 Reviews of Acunetix by Invicti?

**["Powerful Security Scanning Made Easy with Acunetix"](https://www.g2.com/survey_responses/acunetix-by-invicti-review-11964967)**

**Rating:** 5.0/5.0 stars

_— Deepesh V._

[Read full review](https://www.g2.com/survey_responses/acunetix-by-invicti-review-11964967)

**["Effortless Vulnerability Detection That Fits Seamlessly into DevSecOps"](https://www.g2.com/survey_responses/acunetix-by-invicti-review-11909125)**

**Rating:** 5.0/5.0 stars

_— Ranit D._

[Read full review](https://www.g2.com/survey_responses/acunetix-by-invicti-review-11909125)

#### What Are G2 Users Discussing About Acunetix by Invicti?

- [How has Acunetix supported your web security efforts, and what features do you rely on most?](https://www.g2.com/discussions/how-has-acunetix-supported-your-web-security-efforts-and-what-features-do-you-rely-on-most)
- [What is Acunetix by Invicti used for?](https://www.g2.com/discussions/what-is-acunetix-by-invicti-used-for)

### [Kiuwan Code Security & Insights](https://www.g2.com/products/kiuwan-code-security-insights/reviews)

Fast, Flexible Code Security! Kiuwan is a robust, end-to-end application security platform that integrates seamlessly into your development process. Our toolset includes Static Application Security Testing (SAST), Software Composition Analysis (SCA), Software Governance and Code Quality, empowering your team to quickly identify and remediate vulnerabilities. By integrating seamlessly into your CI/CD pipeline, Kiuwan enables early detection and remediation of security issues. Kiuwan supports strict compliance with industry standards including OWASP, CWE, MISRA, NIST, PCI DSS, and CERT, among others. Top features: ✅ Extensive language support: Over 30 programming languages. ✅ Detailed action plans: Prioritize remediation with tailored action plans. ✅ Code Security: Seamless Static Application Security Testing (SAST) integration. ✅ Insights: On-demand or continuous scanning Software Composition Analysis (SCA) to help reduce third-party threats. ✅ One-click Software Bill of Materials (SBOM) generation. Kiuwan is now part of Sembi - a global portfolio of market-leading software brands focused on software quality, security, and developer productivity. Code Smarter. Secure Faster. Ship Sooner

**Average Rating:** 4.5/5.0

**Total Reviews:** 29

#### How Do G2 Users Rate Kiuwan Code Security & Insights?

- **Has the product been a good partner in doing business?:** 8.9/10 (Category avg: 9.2/10)
- **Detection Rate:** 8.5/10 (Category avg: 8.9/10)
- **Automated Scans:** 8.6/10 (Category avg: 9.0/10)
- **Configuration Monitoring:** 6.5/10 (Category avg: 8.5/10)

#### Who Is the Company Behind Kiuwan Code Security & Insights?

- **Seller:** [Sembi](https://www.g2.com/sellers/sembi)
- **Year Founded:** 2023
- **HQ Location:** Austin, US
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=7ed5860a727a31b32edfba64808a6ea32fccad50d052e993a08b626d675d5c69&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fsembi-inc%2F&secure%5Burl_type%5D=linkedin_company_website)  
94 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Banking
- **Company Size:** 41% Large, 35% Medium

#### What Do G2 Reviewers Say About Kiuwan Code Security & Insights?

_AI-generated summary from verified user reviews_

##### Pros

- Users commend the **accuracy** of Kiuwan's code scans, ensuring reliable results and satisfaction with reporting capabilities.
- Users value the **accuracy of findings** from Kiuwan Code Security & Insights, enhancing their confidence in code security.
- Users appreciate the **efficient customer support** of Kiuwan, enhancing their overall experience and satisfaction with the product.
- Users value the **user-friendly interface** of Kiuwan, enhancing their experience with efficient code scans and reporting.
- Users appreciate the **user-friendly interface** of Kiuwan Code Security & Insights, making dashboard navigation easy and efficient.

#### What Are Recent G2 Reviews of Kiuwan Code Security & Insights?

**["Impeccable Security and Code Analysis, with Potential for Improvement in Customization"](https://www.g2.com/survey_responses/kiuwan-code-security-insights-review-12676887)**

**Rating:** 5.0/5.0 stars

_— Abelardo I._

[Read full review](https://www.g2.com/survey_responses/kiuwan-code-security-insights-review-12676887)

**["Elevated our software security to the next level. Improved our code quality."](https://www.g2.com/survey_responses/kiuwan-code-security-insights-review-11651809)**

**Rating:** 5.0/5.0 stars

_— Abdullah Enes K._

[Read full review](https://www.g2.com/survey_responses/kiuwan-code-security-insights-review-11651809)

### [Cyrisma](https://www.g2.com/products/cyrisma/reviews)

Cyrisma helps MSPs and MSSPs turn cyber risk and compliance into revenue. Its unified platform combines vulnerability management, data and asset discovery, compliance tracking, secure configuration, and dark web monitoring into one continuous experience - enabling partners to identify, prioritize, and remediate cyber risk efficiently. With executive-ready reporting, risk monetization insights, and elegant visuals, Cyrisma helps MSPs demonstrate measurable value, strengthen client relationships, and scale their security services profitably.

**Average Rating:** 4.6/5.0

**Total Reviews:** 60

#### How Do G2 Users Rate Cyrisma?

- **Has the product been a good partner in doing business?:** 9.3/10 (Category avg: 9.2/10)
- **Detection Rate:** 8.7/10 (Category avg: 8.9/10)
- **Automated Scans:** 8.7/10 (Category avg: 9.0/10)
- **Configuration Monitoring:** 7.9/10 (Category avg: 8.5/10)

#### Who Is the Company Behind Cyrisma?

- **Seller:** [Cyrisma](https://www.g2.com/sellers/cyrisma)
- **Company Website:** www.cyrisma.com
- **Year Founded:** 2018
- **HQ Location:** Rochester, NY
- **Twitter:** @Cyrisma\_USA  
43 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=f5cea64336d629ea4ec20ca286e0a0403d2d7ae13995138c548f5aaeace28885&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcyrisma%2F&secure%5Burl_type%5D=linkedin_company_website)  
14 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** CEO
- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 75% Small, 22% Medium

#### What Do G2 Reviewers Say About Cyrisma?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **time-saving features** of Cyrisma, streamlining cybersecurity tasks and enhancing overall efficiency.
- Users appreciate the **intuitive platform** of Cyrisma, making cybersecurity management efficient and straightforward.
- Users commend the **fantastic customer support** of Cyrisma, valuing their responsiveness and helpfulness during product usage.
- Users value the **actionable vulnerability intelligence** of Cyrisma, appreciating its user-friendly dashboard and comprehensive coverage.
- Users love CYRISMA for its **actionable vulnerability intelligence** , streamlining security management with ease and clarity.

##### Cons

- Users express concerns about **missing features** like better UI, data correlation, and effective patch management in Cyrisma.
- Users find Cyrisma's interface to be **not user-friendly** , complicating navigation and hindering overall usability and support experience.
- Users feel Cyrisma has **limited flexibility** , finding navigation complex and agent deployment unnecessarily cumbersome.
- Users find the **poor interface design** of Cyrisma challenging, hindering navigation and access to key insights.
- Users find **navigation challenging** in Cyrisma, complicating access to insights and hindering overall usability.

#### What Are Recent G2 Reviews of Cyrisma?

**["CYRISMA offers strong consolidation value, needs enhancements in data correlation & patch coverage"](https://www.g2.com/survey_responses/cyrisma-review-11229216)**

**Rating:** 4.0/5.0 stars

_— Jathin D._

[Read full review](https://www.g2.com/survey_responses/cyrisma-review-11229216)

**["Effortless Penetration Testing with CYRISMA"](https://www.g2.com/survey_responses/cyrisma-review-12781999)**

**Rating:** 5.0/5.0 stars

_— Sarah M._

[Read full review](https://www.g2.com/survey_responses/cyrisma-review-12781999)

### [Veracode Application Security Platform](https://www.g2.com/products/veracode-application-security-platform/reviews)

Veracode helps companies that innovate through software deliver secure code on time. Unlike on-premise solutions that are hard to scale and focused on finding rather than fixing, Veracode comprises a unique combination of SaaS technology and on-demand expertise that enables DevSecOps through integration with your pipeline,empower developers to fix security defects, and scales your program through best practices to achieve your desired outcomes. Veracode covers your all your AppSec needs in one solution through a combination of five analysis types available for 24 programming languages, 77 frameworks, and application types as varied as microservices, mainframe and mobile apps.

**Average Rating:** 3.8/5.0

**Total Reviews:** 25

#### How Do G2 Users Rate Veracode Application Security Platform?

- **Has the product been a good partner in doing business?:** 7.9/10 (Category avg: 9.2/10)
- **Detection Rate:** 8.3/10 (Category avg: 8.9/10)
- **Automated Scans:** 9.2/10 (Category avg: 9.0/10)
- **Configuration Monitoring:** 9.4/10 (Category avg: 8.5/10)

#### Who Is the Company Behind Veracode Application Security Platform?

- **Seller:** [VERACODE](https://www.g2.com/sellers/veracode)
- **Year Founded:** 2006
- **HQ Location:** Burlington, MA
- **Twitter:** @Veracode  
21,950 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=d799a3c2e821841d648bc54266ea8fb1c07039938aa9c79b60d2cf275f0dcf34&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F27845%2F&secure%5Burl_type%5D=linkedin_company_website)  
502 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services
- **Company Size:** 69% Large, 31% Medium

#### What Do G2 Reviewers Say About Veracode Application Security Platform?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **comprehensive security analysis** offered by Veracode, effectively addressing vulnerabilities and streamlining development.
- Users value Veracode for its **effective vulnerability detection** , ensuring high-security standards and seamless integration into development processes.
- Users appreciate the **automated scanning** feature of Veracode, which effectively identifies vulnerabilities and enhances security standards.
- Users value the **effective detection capabilities** of Veracode, enabling thorough security checks and vulnerability identification.
- Users value the **ease of use** of Veracode, benefiting from seamless integration and comprehensive security analysis.

##### Cons

- Users find the platform to be **expensive** , with rising costs and unjustifiable investment in customer success packages.
- Users face a **lack of information** regarding features and services, leading to confusion and unmet expectations.
- Users express concerns about **licensing issues** , citing high costs, complex models, and unmet feature expectations.
- Users report **poor customer support** , experiencing pressure from sales and challenges with feature delivery and documentation.
- Users express concerns over **pricing issues** , citing increased costs, complex licensing, and pressure from sales executives.

#### What Are Recent G2 Reviews of Veracode Application Security Platform?

**["Streamlined Security, Effortless Integration"](https://www.g2.com/survey_responses/veracode-application-security-platform-review-11757799)**

**Rating:** 5.0/5.0 stars

_— Bhanu Prakash M._

[Read full review](https://www.g2.com/survey_responses/veracode-application-security-platform-review-11757799)

**["Clear, Unified View of Application Capabilities"](https://www.g2.com/survey_responses/veracode-application-security-platform-review-12910910)**

**Rating:** 4.5/5.0 stars

_— Christopher S._

[Read full review](https://www.g2.com/survey_responses/veracode-application-security-platform-review-12910910)

#### What Are G2 Users Discussing About Veracode Application Security Platform?

- [What is difference between veracode and SonarQube?](https://www.g2.com/discussions/what-is-difference-between-veracode-and-sonarqube)
- [What is veracode software composition analysis?](https://www.g2.com/discussions/what-is-veracode-software-composition-analysis)
- [What is veracode used for?](https://www.g2.com/discussions/what-is-veracode-used-for)
- [What is the veracode application security platform?](https://www.g2.com/discussions/what-is-the-veracode-application-security-platform)

Spotlight Categories

[Attribution Software](https://www.g2.com/categories/attribution)

[Travel Management Solutions](https://www.g2.com/categories/travel-management)

[Customer Service Automation Software](https://www.g2.com/categories/customer-service-automation)

[E-Signature Software](https://www.g2.com/categories/e-signature)

[Expense Management Software](https://www.g2.com/categories/expense-management)

Similar Categories

- [Static Code Analysis](/categories/static-code-analysis)
- [Container Security](/categories/container-security-tools)
- [Dynamic Application Security Testing (DAST)](/categories/dynamic-application-security-testing-dast)
- [Interactive Application Security Testing (IAST)](/categories/interactive-application-security-testing-iast)

- [Log Analysis](/categories/log-analysis)
- [Penetration Testing](/categories/penetration-testing-tools)
- [Secure Code Review](/categories/secure-code-review)
- [Software Bill of Materials (SBOM)](/categories/software-bill-of-materials-sbom)

- [Software Composition Analysis](/categories/software-composition-analysis)
- [Static Application Security Testing (SAST)](/categories/static-application-security-testing-sast)
- [Web Application Firewall (WAF)](/categories/web-application-firewall-waf)

[Browse Vulnerability Scanner Themes](/categories/vulnerability-scanner/themes)

Benefits of Vulnerability Scanner Software with Configuration Monitoring capabilities include: Monitors configuration rule sets and policy enforcement measures and document changes to maintain compliance.

Below are the top-rated Vulnerability Scanner Software with Configuration Monitoring capabilities, as verified by G2’s Research team. Real users have identified Configuration Monitoring as an important function of Vulnerability Scanner Software. Compare different products that offer this feature so you can decide which is best for your business needs.

Top Tools at a Glance

| 

 | 

Risk-based cloud vulnerability prioritization with context

 | 

User Review

"Unmatched Security Insights, Excellent Reporting, and Strong Post-Sales Support"

 |
| 

 | 

Auto-triaged DevSecOps scanning with low false positives

 | 

User Review

"Enterprise Security Without an Enterprise Security Team"

 |
| 

 | 

Agentless cloud vulnerability scanning with contextual risk prioritization

 | 

User Review

"Orcca Delivered Rapid Visibility Into AI Agent Risks"

 |
| 

 | 

Credentialed infrastructure scans with compliance auditing

 | 

User Review

"Self-Contained Nessus Scanning with Full Control in Offline Environments"

 |
| 

 | 

SaaS pentest certification with manual validation

 | 

User Review

"Smooth Onboarding, Responsive Support, and Strong Pentest Lifecycle Controls"

 |
| 

 | 

Continuous vulnerability scanning with emerging threat detection

 | 

User Review

"Reliable Service with Flexible Plans and Strong Support"

 |
| 

 | 

Runtime vulnerability detection in Kubernetes workloads

 | 

User Review

"Excellent Real-Time Kubernetes Security Visibility and Threat Detection"

 |
| 

 | 

Manual web application penetration testing workflows

 | 

User Review

"Complete Control Over Web Requests with Burp Suite"

 |

* * *

Show More

* * *

## How Do You Choose the Right Vulnerability Scanner Software?

### What You Should Know About Vulnerability Scanner Software

### What is Vulnerability Scanner Software?

Vulnerability scanners are used to examine applications, networks, and environments for security flaws and misconfigurations. These tools run a variety of dynamic security tests to identify security threats along an application or network’s attack surface. Scans can be used for anything from an application penetration test to a compliance scan. Depending on the specific objectives a user has, they can customize the vulnerability scanner to test for specific issues or requirements.

Companies can configure these tests to their unique environment. Companies that handle lots of personal or financial data may scan to ensure every transaction or datastore is encrypted from the public. They could also test their web applications against specific threats like SQL injection or cross-site scripting (XSS) attacks. The highly-customizable nature of vulnerability scanners provides users with tailor-made solutions for application and network security examination.

Many of these tools offer continuous scanning and testing for nonstop protection and monitoring. Whatever administrators set as a priority will be tested periodically and inform employees of issues or incidents. Continuous monitoring makes it much easier to discover vulnerabilities before they become an issue and drastically reduce the amount of time a vulnerability takes to remediate.

Top vulnerability scanner software with CVE remediation guidance typically combines automated scanning with prioritized fix recommendations that map findings to severity scores, exposure paths, and patch availability. Based on G2 reviews, security teams evaluate vulnerability scanner software by comparing CVE remediation depth, false positive rates, and how quickly the platform integrates into existing CI/CD pipelines and cloud environments.

Key Benefits of Vulnerability Scanner Software

- Scan networks and applications for security flaws
- Diagnose, track, and remediate vulnerabilities
- Identify and resolve misconfigurations
- Perform ad hoc security tests

### Why Use Vulnerability Scanner Software?

Applications and networks are only beneficial to a business if they operate smoothly and securely. Vulnerability scanners are a useful tool to view internal systems and applications from the perspective of the attacker. These tools allow for dynamic testing while applications operate. This helps security teams take a step beyond patches and code analysis to evaluate security posture while the application, network, or instance actually runs.

**Application security—** Cloud, web, and desktop applications all require security, but operate differently. While many vulnerability scanners support testing for all kinds of applications, vulnerability scanners often support a few application types, but not others. Still, they will all examine the application itself, as well as the paths a user needs to access it. For example, if a vulnerability scanner is used on a web application, the tool will take into account the various attack vectors a hacker might take. This includes a site’s navigation, regional access, privileges, and other factors decided by the user. From there, the scanner will output reports on specific vulnerabilities, compliance issues, and other operational flaws.

**Networks —** While software applications are often the most obvious use cases for vulnerability scanners, network vulnerability scanners are also quite common. These tools take into account the network itself, as well as computers, servers, mobile devices and any other asset accessing a network. This helps businesses identify vulnerable devices and abnormal behaviors within a network to identify and remediate issues as well as improve their network's security posture. Many even provide visual tools for mapping networks and their associated assets to simplify the management and prioritization of vulnerabilities requiring remediation.

**Cloud environments —** Not to be confused with cloud-based solutions delivered in a SaaS model, cloud vulnerability scanners examine cloud services, cloud computing environments, and integrated connections. Like network vulnerability scanners, cloud environments require an examination on a few levels. Cloud assets come in many forms including devices, domains, and instances; but all must be accounted for and scanned. In a properly secured cloud computing environment, integrations and API connections, assets, and environments must all be mapped, configurations must be monitored, and requirements must be enforced.

Based on G2 reviews, vulnerability scanner platforms generating VLAN audit reports are evaluated primarily by security teams running segmented enterprise networks where compliance frameworks (PCI, HIPAA, SOC 2, ISO 27001) require documented scans across each network zone. Reviewers point to audit-ready compliance reporting, granular scan scope by IP range and network segment, and exportable evidence formats as the features that determine whether the platform shortens the audit prep cycle or adds another step to it.

### What are the Common Features of Vulnerability Scanner Software?

Vulnerability scanners can provide a wide range of features, but here are a few of the most common found in the market.

**Network mapping —** Network mapping features provide a visual representation of network assets including endpoints, servers, and mobile devices to intuitively demonstrate an entire network’s components.

**Web inspection —** Web inspection features are used to assess the security of a web application in the context of its availability. This includes site navigation, taxonomies, scripts, and other web-based operations that may impact a hacker’s abilities.

[**Defect tracking**](https://www.g2.com/categories/vulnerability-scanner/f/issue-tracking) **—** Defect and issue tracking functionality helps users discover and document vulnerabilities and track them to their source through the resolution process.

**Interactive scanning —** Interactive scanning or interactive application security testing features allow a user to be directly involved in the scanning process, watch tests in real time, and perform ad hoc tests.

[**Perimeter scanning**](https://www.g2.com/categories/vulnerability-scanner/f/perimeter-scanning) **—** Perimeter scanning will analyze assets connected to a network or cloud environment for vulnerabilities.

[**Black box testing**](https://www.g2.com/categories/vulnerability-scanner/f/black-box-testing) **—** Black box scanning refers to tests conducted from the hacker’s perspective. Black box scanning examines functional applications externally for vulnerabilities like SQL injection or XSS.

**Continuous monitoring —** Continuous monitoring allows users to set it and forget it. They enable scanners to run all the time as they alert users of new vulnerabilities.

[**Compliance monitoring**](https://www.g2.com/categories/vulnerability-scanner/f/compliance-testing) **—** Compliance-related monitoring features are used to monitor data quality and send alerts based on violations or misuse.

**Asset discovery —** Asset discovery features unveil applications in use and trends associated with asset traffic, access, and usage.

**Logging and reporting —** Log documentation and reporting provides required reports to manage operations. It provides adequate logging to troubleshoot and support auditing.

**Threat intelligence —** Threat intelligence features integrate with or store information related to common threats and how to resolve them once incidents occur.

**Risk analysis —** Risk scoring and risk analysis features identify, score, and prioritize security risks, vulnerabilities, and compliance impacts of attacks and breaches.

**Extensibility —** Extensibility and integration features provide the ability to extend the platform or product to include additional features and functionalities.

Based on G2 reviews, the most trusted vulnerability scanner platforms in 2026 for security teams lead on CVE remediation guidance and easy setup onboarding, with reviewers describing time-to-first-scan in hours rather than weeks. SOC and AppSec teams point to clear remediation steps, severity scoring, and actionable findings as the features that distinguish platforms they actively use from ones that produce noise. Vulnerability scanner solutions with easy setup onboarding are highlighted in recent reviews for delivering full environment visibility on day one through agentless, API-driven architectures, with documentation that reduces the engineering lift typically associated with rolling out vulnerability scanning.

Many vulnerability scanner tools will also offer the following features:&nbsp;

- [Configuration monitoring capabilities](https://www.g2.com/categories/vulnerability-scanner/f/configuration-monitoring)
- [Automated scan capabilities](https://www.g2.com/categories/vulnerability-scanner/f/automated-scans)
- [Manual application testing capabilities](https://www.g2.com/categories/vulnerability-scanner/f/manual-application-testing)
- [Static code analysis capabilities](https://www.g2.com/categories/vulnerability-scanner/f/static-code-analysis)

### Potential Issues with Vulnerability Scanner Software

**False positives —** False positives are one of the most common issues with security tools. They indicate a tool is not running efficiently and introduce lots of unnecessary labor. Users should examine figures related to specific products and their accuracy before purchasing a solution.

**Integrations —** Integrations can make an application or product do virtually anything, but only if the integration is supported. If a specific solution must be integrated or a specific data source is highly relevant, be sure it’s compatible with the vulnerability scanner before making that decision.

**Scalability —** Scalability is always important, especially for growing teams. Cloud and SaaS-based solutions are traditionally the most scalable, but desktop and open source tools may be as well. Scalability will be important for teams considering collaborative use, concurrent use, and multi-application and environment scanning.

### Software and Services Related to Vulnerability Scanner Software

These technology families are either closely related to vulnerability scanners or there is frequent overlap between products.

[**Risk-based vulnerability management software**](https://www.g2.com/categories/risk-based-vulnerability-management) **—** Risk-based vulnerability management software is used to analyze security posture based on a wide array of risk factors. From there, companies prioritize vulnerabilities based on their risk score. These tools often have some overlapping features, but they’re more geared towards prioritizing risks in large organizations rather than identifying vulnerabilities to individual applications or environments.

[**Dynamic application security testing (DAST) software**](https://www.g2.com/categories/dynamic-application-security-testing-dast) **—** DAST software is very closely related to vulnerability scanners and are sometimes used interchangeably. The differentiating factor here, though, is the ability to scan networks, cloud services, and IT assets in addition to applications. While they do scan for vulnerabilities, they won’t allow users to map networks, visualize environments, or examine vulnerabilities beyond the scope of the application.

[**Static application security testing (SAST) software**](https://www.g2.com/categories/static-application-security-testing-sast) **—** SAST software is not that similar to vulnerability scanners, unlike DAST tools. SAST tools allow for the examination of source code and non-operational application components. They also can’t simulate attacks or perform functional security tests. Still, these can be useful for defect and bug tracking if the vulnerability is rooted in an application’s source code.

[**Penetration testing software**](https://www.g2.com/categories/penetration-testing) **—** Penetration testing software is one aspect of vulnerability scanning, but a penetration test will not provide a wide variety of security tests. They are useful for testing common attack types, but they won’t be very effective in identifying and remediating the root cause of a vulnerability.

Based on G2 reviews, Software Composition Analysis tools Jenkins GitLab integration continuous vulnerability scanning is the workflow pattern reviewers describe as the standard for developer-led security programs running checks inside the build pipeline rather than as a separate stage. Reviewers point to agentless, API-driven scanners integrating into CI/CD pipelines to catch secrets, misconfigurations, and open-source dependency vulnerabilities pre-deployment as the setup that scales with engineering velocity. Reviewers note that consolidated platforms unifying SCA, SAST, and exposure-management scanning under one interface are the preferred consolidation pattern over stitching together standalone tools.