# Bitsight Reviews
**Vendor:** Bitsight  
**Category:** [Third Party &amp; Supplier Risk Management Software](https://www.g2.com/categories/third-party-supplier-risk-management)  
**Average Rating:** 4.5/5.0  
**Total Reviews:** 76
## About Bitsight
Bitsight is the global leader in cyber risk intelligence, leveraging advanced AI to empower organizations with precise insights derived from the industry’s most extensive external cybersecurity dataset. With more than 3,500 customers and over 68,000 organizations active on its platform, Bitsight delivers real-time visibility into cyber risk and threat exposure, enabling teams to rapidly identify vulnerabilities, detect emerging threats, prioritize remediation, and mitigate risks across their extended attack surface. Bitsight proactively uncovers security gaps across infrastructure, cloud environments, digital identities, and third- and fourth-party ecosystems. From security operations and governance teams to executive boardrooms, Bitsight provides the unified intelligence backbone required to confidently manage cyber risk and address exposures before they impact performance.



## Bitsight Pros & Cons
**What users like:**

- Users value the **comprehensive security posture** provided by Bitsight, enhancing assessments and monitoring of assets. (15 reviews)
- Users value Bitsight for its **comprehensive security posture evaluation** and clear risk remediation plans for improvement. (14 reviews)
- Users love the **intuitive and user-friendly interface** of Bitsight, making it easy to navigate and utilize effectively. (13 reviews)
- Users appreciate the **intuitive interface and comprehensive insights** of BitSight, enhancing their ability to monitor security effectively. (11 reviews)
- Users praise the **fantastic customer support** from Bitsight, highlighting their knowledge and responsiveness as key benefits. (9 reviews)
- Users find Bitsight to be **extremely helpful** for vulnerability detection and organization, enhancing security and knowledge. (9 reviews)
- Security Management (7 reviews)
- Vendor Management (7 reviews)
- Users value the **efficient assessment process** of Bitsight, enhancing their security posture and providing valuable insights. (5 reviews)
- Cybersecurity (5 reviews)

**What users dislike:**

- Users find **missing features** in Bitsight, including lag, transparency issues, and limited functionality across tools. (6 reviews)
- Users face a lack of **clarity in reporting** and understanding of BitSight&#39;s scoring methods, impacting trust and usability. (5 reviews)
- Users experience **poor notifications** with BitSight, as alerts are often untimely and lack coverage for all assets. (4 reviews)
- Users experience **slow performance** with Bitsight, as score updates lag despite significant security improvements made. (4 reviews)
- Users experience **delay issues** with Bitsight, noting slow customer support responses and lag in vulnerability updates. (3 reviews)
- Users highlight the need for **improvement in thoroughness and support response times** in Bitsight&#39;s services. (3 reviews)
- Inaccuracy (3 reviews)
- Users face challenges with **inadequate remediation** capabilities in BitSight, often requiring additional support for effective management. (3 reviews)
- Users find the **information management system inefficient** , as it often provides redundant alerts and lacks integration. (3 reviews)
- Poor Customer Support (3 reviews)

## Bitsight Reviews
  ### 1. Effortless Cyber Risk Scoring for Proactive Security

**Rating:** 4.0/5.0 stars

**Reviewed by:** Matthew P. | Optimization engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** January 06, 2026

**What do you like best about Bitsight?**

What I like best about BitSight is that it gives companies a simple daily "security score" like a credit score for cyber risk.
It watches your own systems and your vendors from the outside without bothering anyone, spotting problems early.
This makes it super easy to fix the biggest risks first and keep everyone safer.  It is easy to use.

**What do you dislike about Bitsight?**

Bitsight can be laggy sometimes, also the scoring mechanism is not transparent

**What problems is Bitsight solving and how is that benefiting you?**

I think the biggest problem is security at the company

  ### 2. High Cost, Low Signal: More Noise Than Intelligence

**Rating:** 1.0/5.0 stars

**Reviewed by:** Verified User in Transportation/Trucking/Railroad | Mid-Market (51-1000 emp.)

**Reviewed Date:** February 09, 2026

**What do you like best about Bitsight?**

The marketing and positioning are polished. On the surface, Bitsight Threat Intelligence (formerly Cybersixgill) appears to offer broad dark web coverage and an impressive volume of data sources. The promise of automated threat discovery across forums, marketplaces, and paste sites is appealing, especially for teams that lack in-house collection capabilities.

Unfortunately, that promise rarely translates into day-to-day value.

**What do you dislike about Bitsight?**

The biggest issue is signal-to-noise ratio. The platform generates a high volume of alerts and findings, but a significant portion are low-quality, redundant, or irrelevant. Analysts spend far too much time filtering noise instead of responding to actionable threats.

Performance is another major drawback. Searches and dashboards are often slow, which is frustrating for a tool that claims near real-time intelligence. The UI feels dated and clunky, and workflows are not intuitive.

Support and documentation also fall short of expectations for a product at this price point. Documentation is thin, and support responses are not too helpful.

**What problems is Bitsight solving and how is that benefiting you?**

In theory, it is meant to solve early detection of credential leaks, brand abuse, and underground chatter before issues escalate. In practice, the benefit is limited because the data requires extensive manual triage to determine what actually matters.

Instead of accelerating response, it often adds operational overhead. The tool identifies “things that exist on the internet,” but stops short of consistently answering the more important question: what requires action right now?

  ### 3. Finds Public-Facing Security Flaws and Clearly Shows How to Fix Them

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Computer Software | Mid-Market (51-1000 emp.)

**Reviewed Date:** May 06, 2026

**What do you like best about Bitsight?**

It finds our public facing security flaws, gives as much info as it has on each finding, and exactly how to fix it.

**What do you dislike about Bitsight?**

Almost nothing to dislike.  The free offering is more than fair but to really use it, it'll cost you.

**What problems is Bitsight solving and how is that benefiting you?**

Improves our cybersecurity position, helps our public image regarding the integrity of the company, and help the company prepare for security auditing required for certified compliance.

  ### 4. Great tool for managing external sourced vulnerabilities

**Rating:** 5.0/5.0 stars

**Reviewed by:** Steve W. | Lead Information Security Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** August 11, 2025

**What do you like best about Bitsight?**

The organization of vulnerability findings by severity, risk vector, type of vulnerability makes it helpful to organize and report on your vulnerabilities.    Many findings have been from areas we either didnt know about, or never knew were vulnerable.    While the GUI interface is extremely well organized and easy to use, I found it quite helpful using the Bitsight API structure to pull finding totals by Risk Vector, Grade, etc into a spreadsheet that gets regularly updated every few hours.    Bitsight has not only helped our company's security posture, but also helped in my knowledge of website construction on a deeper level than I previously had, and Ive been in this field as a developer and a security analyst for over 30 years.    Of all the security tools we employ here, Bitsight is probably my preferred tool to use.  I find it challenging and easy at the same time.  
I find the customer support team an excellent resource.   In my 4 years of working with them now, Im sure Ive aggrivated them to no degree with my relentless questions and requests.   But they are always there and willing to help me.
I use Bitsight everyday.  Its part of my job.  I consider it to be my 3rd arm.   The loss of this tool would be a significant change in my career.

**What do you dislike about Bitsight?**

As helpful as it can be, at times there are areas that can be improved as well.   Bitsight isnt as always as thorough as it could be.   While it does in depth scanning of many of our external resources. there are several with the same vulnerabilities that seemingly get overlooked.   Or its like one group of findings gets found one month.. two months later, another group is found with the same vulnerabilities.   Also Id love to see a bit more transparency about the formulas used in calculating grades, and RV scores.
Lately, my use of customer support has been not as frequent as their response time has dropped off a bit.  Where I used to get responses to questions within a few hours to a day..  now it seems many questions go several days before they get a first response.

**What problems is Bitsight solving and how is that benefiting you?**

BItsight helps our company in improving its security posture.     In the years that I have been administering Bitsight for us, we have improved our security view and the way we look at ourselves immeasurably.   Not only myself, my security team, but other peripheral teams in our IT department take stock of what we do here too.

  ### 5. Strategic insights that go beyond scores

**Rating:** 5.0/5.0 stars

**Reviewed by:** CELSO L. | Account Executive | Cybersecurity Advisor, Mid-Market (51-1000 emp.)

**Reviewed Date:** July 17, 2025

**What do you like best about Bitsight?**

BitSight delivers strategic insights that go far beyond traditional scoring. As consultants, we leverage its continuous monitoring, benchmarking, and cyber intelligence capabilities to build truly risk-informed roadmaps. The addition of Identity Intelligence and dark web monitoring has significantly raised the bar in threat visibility — helping our clients act faster and smarter.

**What do you dislike about Bitsight?**

While the platform is powerful, there’s room for improvement in real-time customization and GRC-native integrations. Advanced users may also wish for more granular control when correlating findings with internal telemetry. That said, the platform continues to evolve fast — and the partnership and roadmap discussions with BitSight have been outstanding.

**What problems is Bitsight solving and how is that benefiting you?**

BitSight helps us turn cyber risk into business risk language. It solves a critical challenge in Third-Party Risk Management: visibility. Traditional assessments often rely on static data and self-attestations. BitSight adds external, continuous and evidence-based intelligence — enabling better decisions, quicker prioritization, and strategic communication with clients and their boards. It’s not just about scoring — it’s about actionable intelligence and trust.

  ### 6. Great Security Benchmarking Tool

**Rating:** 5.0/5.0 stars

**Reviewed by:** Rodrigo C. | SOC Services Manager, Mid-Market (51-1000 emp.)

**Reviewed Date:** July 15, 2025

**What do you like best about Bitsight?**

Have been using it for around 5 years and it's a must have tool for us since its used on more than a weekly basis. Has been a great tool since the start and has been growing with bigger and better features in this time keeping up to date with current needs. 

The interface is very user friendly and intuitive, with implementation being fast for most use cases and integration to our workflow has been great as well. I have a great response time from support team.

**What do you dislike about Bitsight?**

As is usual with these types of platforms, false positives are always something negative that's not really all BitSight's fault at times, but it could be better, specifically with risk vectors related to web app and web headers security settings.

**What problems is Bitsight solving and how is that benefiting you?**

Its a must have tool for multiple services we provide, it helps us and our customers with the offerings it provides.

**Official Response from Asha May:**

> Hello Rodrigo - Thank you for taking the time to share your experience in working with Bitsight for 5 years! We appreciate and strive to support all our customers. And, it is especially exciting to know those who continue to see value in our partnership for multiple years. Please continue to engage with your account team and share feedback.

  ### 7. Great for Risk Monitoring, But Alert Email Config Needs Improvement

**Rating:** 3.5/5.0 stars

**Reviewed by:** Verified User in Insurance | Enterprise (> 1000 emp.)

**Reviewed Date:** November 04, 2025

**What do you like best about Bitsight?**

There are two main features that assist us. The first to be able to monitor our risk posture from an external perspective and compare ourselves with other like businesses. The other which is currently very important is the ability to monitor our Thirds Parties and be able to make risk based decisions on whether we do business with them. This is important due to APRA 230 requirements

**What do you dislike about Bitsight?**

At the moment there are some limitations in how we can configure alert emails.

**What problems is Bitsight solving and how is that benefiting you?**

It is allowing us to achieve compliance with APRA 230 in terms of meeting TPRM obligations. It also allows our GRC team to do risk assessment of Third Parties as well as assisting in assessing compliance to ISO 27001 or SOC standards

  ### 8. Easy to use. Actionable data and pinpoints where to focus efforts. Immediate ROI.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Computer Software | Mid-Market (51-1000 emp.)

**Reviewed Date:** September 05, 2025

**What do you like best about Bitsight?**

BitSight provides our team an outside-in view of our security posture. The daily security ratings are easy to track and give clear insight into areas like potential compromised systems, risky behavior, and probable past incidents. As part of our multi-layered security strategy, BitSight adds a unique layer of visibility that complements our internal tools, helping us with potential blind spots and external risks that we might otherwise miss. I especially like the Ratings Tree as it breaks down risk across different business units so we can quickly pinpoint where to focus our efforts. It doesn’t replace our internal monitoring or detection tools, but its part of our multi-layered defense where BitSight provides an essential external perspective that strengthens our overall defense and helps us communicate and prioritize cybersecurity with leadership. Further Luisa from the CS team is an amazing contact and so is Ciaran; with both of them we're confident we're getting the services that we need without waiting days for a reply. Its also easy to implement and integrate.

**What do you dislike about Bitsight?**

It's good for us. So nothing I can think of at the moment.

**What problems is Bitsight solving and how is that benefiting you?**

BitSight provides our team an outside-in view of our security posture. The daily security ratings are easy to track and give clear insight into areas like potential compromised systems, risky behavior, and probable past incidents. As part of our multi-layered security strategy, BitSight adds a unique layer of visibility that complements our internal tools, helping us with potential blind spots and external risks that we might otherwise miss. I especially like the Ratings Tree as it breaks down risk across different business units so we can quickly pinpoint where to focus our efforts. It doesn’t replace our internal monitoring or detection tools, but its part of our multi-layered defense where BitSight provides an essential external perspective that strengthens our overall defense and helps us communicate and prioritize cybersecurity with leadership. Further Luisa from the CS team is an amazing contact and so is Ciaran; with both of them we're confident we're getting the services that we need without waiting days for a reply. Its also easy to implement and integrate.

  ### 9. Enhancing Security Posture Through BitSight’s Detailed Analysis

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Enterprise (> 1000 emp.)

**Reviewed Date:** December 16, 2025

**What do you like best about Bitsight?**

What I appreciate most about BitSight is its ability to provide findings across all domains based on WHOIS records. It also delivers detailed insights on web application headers, DMARC, DKIM, SSL configurations, and SSL certificates.

**What do you dislike about Bitsight?**

Occasionally, BitSight reports incorrect findings for domains that do not have DNS records.

**What problems is Bitsight solving and how is that benefiting you?**

BitSight addresses numerous domain and IP-based findings, making it highly beneficial for us. By providing detailed insights such as web application headers, DMARC configurations, and more, it simplifies the process of mitigating issues for the identified domains.

  ### 10. My overall BitSight experience has been positive.

**Rating:** 4.0/5.0 stars

**Reviewed by:** Brian M. | It Security Architect / Manager of Attack Surface Mgmt, Enterprise (> 1000 emp.)

**Reviewed Date:** July 28, 2025

**What do you like best about Bitsight?**

I have found the most value in two things :
1) The findings table which combines asset discovery with EASM to provide a solid list of issues to be reviewed and addressed
2) The 3rd Party cyber risk module which allows me to compare my overall security posture with similar companies in my vertical.

**What do you dislike about Bitsight?**

I understand why it is this way, but sometimes it takes a long time to change the security "score" after I've made positive improvements to my company's security posture.  Alot of work goes in to implementing the fixes and it can take a long time to see the benefit.

**What problems is Bitsight solving and how is that benefiting you?**

Primarily the EASM Discovery function as well as benchmarking against competitors in our vertical.

  ### 11. Bitsight CM Review

**Rating:** 3.5/5.0 stars

**Reviewed by:** Matthew B. | Cybersecurity Risk Specialist, Enterprise (> 1000 emp.)

**Reviewed Date:** July 30, 2025

**What do you like best about Bitsight?**

Positive Bitsight CM List: - Bitsight Scan - Risk Vectors - Asset Distribution - Security Rating - Security Incidents - Ratings Tree - Findings - PDF Report flexibility - Alerts and notifications

**What do you dislike about Bitsight?**

Negative Bitsight CM List: - Collaboration (EVA) - there was some issues with getting vendors access to SPM, but I think it's been fixed since. However, I don't think it's always clear to vendors how to access the SPM when we send them the EVA invitation. If there was a tip sheet or another document available to explain what SPM is giving them and what they can do with the data provided with the access.

**What problems is Bitsight solving and how is that benefiting you?**

Vendor insight and alerting/notifications.

  ### 12. Reliable Security Ratings and Excellent Support Experience

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Hospital & Health Care | Enterprise (> 1000 emp.)

**Reviewed Date:** July 28, 2025

**What do you like best about Bitsight?**

Bitsight provides clear, data-driven security ratings that help benchmark our organization’s cybersecurity posture and evaluate third-party vendors. The intuitive dashboards and detailed analytics allow for quick risk assessments and informed decision-making.

Data Transparency: The platform provides visibility into the specific risk vectors affecting the rating, allowing our team to prioritize mitigation efforts.

Regulatory Alignment: Bitsight’s reports are helpful for communicating risk posture to stakeholders and auditors.

Responsive Support: Their support staff is knowledgeable and responsive, helping us quickly resolve questions and get the most from the tool.

**What do you dislike about Bitsight?**

Until recently, the remediation timeline for reflected improvements in the score can be slow, even after fixing identified issues. This sometimes creates a disconnect between our internal posture and the external rating.

**What problems is Bitsight solving and how is that benefiting you?**

Bitsight is helping our organization address several key cybersecurity and compliance challenges:

Security Performance Benchmarking: It provides a standardized way to measure and compare our organization’s cybersecurity performance over time and against industry peers, which helps justify security investments and track improvements.

Regulatory and Compliance Readiness: Bitsight supports our compliance efforts with HIPAA, HITECH, and other healthcare regulations by providing external validation of our cybersecurity controls and offering documentation that can be used in audits and board reporting.

Executive and Stakeholder Communication: The platform makes it easier to communicate cybersecurity risk in business terms to non-technical stakeholders, which helps align security initiatives with broader organizational goals.

  ### 13. Excellent Support

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Computer Software | Enterprise (> 1000 emp.)

**Reviewed Date:** October 22, 2025

**What do you like best about Bitsight?**

I really appreciate how available and responsive the Bitsight team is when I have questions. They’re always willing to discuss details and help clarify how to get the most out of the platform.

**What do you dislike about Bitsight?**

I’d like the lifetime expiration to be shorter once an asset is removed, to avoid ongoing impact on the overall score — though I understand that’s part of the observation process.

**What problems is Bitsight solving and how is that benefiting you?**

Bitsight supports us in managing our external attack surface and improving our overall security posture. With Priority Scanning, we now get faster, more accurate insights through daily scans, which helps us prioritize remediation efforts and understand their impact on our score more quickly.

  ### 14. Good Attack Surface Monitoring and Risk management

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Enterprise (> 1000 emp.)

**Reviewed Date:** January 06, 2026

**What do you like best about Bitsight?**

Attack surface monitoring, security ratings and descriptive analysis.

**What do you dislike about Bitsight?**

Mitigating the risks in time to improve the score.

**What problems is Bitsight solving and how is that benefiting you?**

It is helping to identify the risks with open ports, risk vendors and thus helps us to mitigate the risks and improve security rating.

  ### 15. Tool is good, managed service has improved greatly, but at quite the premium cost

**Rating:** 3.5/5.0 stars

**Reviewed by:** Reed C. | Third Party Cyber Risk Analyst, Small-Business (50 or fewer emp.)

**Reviewed Date:** July 28, 2025

**What do you like best about Bitsight?**

the finding details, customer service is usually pretty good from managed service employees and bitsight support, rarely any down from the platform time as I use it daily

**What do you dislike about Bitsight?**

not being able to send questionnaires to some third parties without having to submit a support ticket.... by far the worst feature. The questionnaire Issue Management is lacking (sending issues back to vendor and having them respond), overall the Bitsight tools function very much like separate tools, don't work together, at times the managed service employee's lack of cyber knowledge is very apparent as they are way overly reliant on Bitsight's scoring system, lack of AI features as competitors implement them

**What problems is Bitsight solving and how is that benefiting you?**

manage vendors

  ### 16. Best EASM product out there

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Manufacturing | Enterprise (> 1000 emp.)

**Reviewed Date:** July 17, 2025

**What do you like best about Bitsight?**

Bitsight's algorithm is the most transparent and logical one on the market.  Algorithm changes are communicated with plenty of advance notice and are accompanied by helpful tools to plan and predict, as well as maximize return on effort in prioritizing remediation.  The portal is very intuitive and easy to use, integrates very nicely with IaaS platforms and Jira, setup is a breeze, and support is spectacular, both from a technical standpoint as well as the account team.  We use Bitsight on a daily basis to ensure we are responding in a timely manner to any unexpected changes to our footprint.

**What do you dislike about Bitsight?**

There's not too much to criticize about Bitsight.  If I had to pick one thing, I guess it could be cheaper.

**What problems is Bitsight solving and how is that benefiting you?**

We are primarily leveraging Bitsight for first party use, to ensure we maintain a relatively high score, which is shared with our investors via Glass Lewis proxy.

  ### 17. Great product for security posture management

**Rating:** 5.0/5.0 stars

**Reviewed by:** Aman M. | Senior Manager - Cyber Defence, Enterprise (> 1000 emp.)

**Reviewed Date:** August 14, 2025

**What do you like best about Bitsight?**

This is a great product for generating a comprehensive security posture for our organization and 3rd/4th party suppliers by using risk vectors to provide a quantifiable score.

**What do you dislike about Bitsight?**

decay times for vulnerabilities after remediation, a capability BitSight is working to address with dynamic scans.

**What problems is Bitsight solving and how is that benefiting you?**

BitSight gives us visibility into which suppliers are affected by zero-day vulnerabilities. This allows us to quickly identify and contact only those specific suppliers, streamlining communication and enabling us to track their remediation progress effectively.

  ### 18. Best Attack Surface Management

**Rating:** 4.5/5.0 stars

**Reviewed by:** Kartik P. | SOC Manager, Enterprise (> 1000 emp.)

**Reviewed Date:** September 30, 2025

**What do you like best about Bitsight?**

Coverage of various vectors as well as ease of use. Also adding websites or domains under monitoring is easy. It is used on daily basis.

**What do you dislike about Bitsight?**

Automatic resolution of finds take time. Also, more training videos

**What problems is Bitsight solving and how is that benefiting you?**

Giving a holistic approach and visibility for various external attack surfaces many of which we are unaware of.

  ### 19. Easy Integration and Excellent Support—A Must-Have Security Tool

**Rating:** 5.0/5.0 stars

**Reviewed by:** Emre U. | Infrastructure and System Support Manager, Enterprise (> 1000 emp.)

**Reviewed Date:** October 20, 2025

**What do you like best about Bitsight?**

Useful security tool, good customer relations, easy to implement and manage. Integration is simple. features are well designed.

**What do you dislike about Bitsight?**

No dislikes yet. Everything looks fine so far.

**What problems is Bitsight solving and how is that benefiting you?**

It keeps security up tp date and alerts for threats.

  ### 20. Powerfull solutions for any sector

**Rating:** 5.0/5.0 stars

**Reviewed by:** Vanessa C. | Security Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** July 25, 2025

**What do you like best about Bitsight?**

The quality of all services provided by Bitsight as well as the team allocated to our services

**What do you dislike about Bitsight?**

Nothing at the time. The Bitsight team always provide the best knowledge in order to navigate through the available solutions.

**What problems is Bitsight solving and how is that benefiting you?**

We are continuously analysing our security performance which allows us to improve our security posture; we monitor our third party providers in order to implement the best controls to secure the commercial relationship between the Organization and providers.

  ### 21. Regular updates, good customer service, nice UI

**Rating:** 2.5/5.0 stars

**Reviewed by:** Eli G. | Senior SOC Analyst, Enterprise (> 1000 emp.)

**Reviewed Date:** July 28, 2025

**What do you like best about Bitsight?**

It's great for checking out vendors or partners, and offers a good place to start any third-party risk investigation.

**What do you dislike about Bitsight?**

Most of the first-party alerts we get from bitsight are things we were already aware of, and so it's a lot of redundant information for us.

**What problems is Bitsight solving and how is that benefiting you?**

Helps us rate/rank our partners, vendors, and so other exterior relationships.

  ### 22. The ratings have helped a lot to get better insights

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Financial Services | Enterprise (> 1000 emp.)

**Reviewed Date:** September 29, 2022

**What do you like best about Bitsight?**

The AI features and the forecasting module

**What do you dislike about Bitsight?**

Nothings as of now as the tool is keeping up with the advancements in the domain

**What problems is Bitsight solving and how is that benefiting you?**

They solve the problem og giving an actionable outsider view

  ### 23. BitSight Review 1 Aug 2025

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Chemicals | Enterprise (> 1000 emp.)

**Reviewed Date:** August 01, 2025

**What do you like best about Bitsight?**

The BitSight Rating score is an easily understood metric by companies who wish a quick method to assess DuPont's security posture.

**What do you dislike about Bitsight?**

The Continuous Monitoring module does not offer the full functionality required to manage the remediations in a proactive manner. We often need the support of the BitSight Account Manager.

**What problems is Bitsight solving and how is that benefiting you?**

BitSight is providing a measure of how safe it is to do business with the company.  If the rating is good, it provides confidence that the company is worth doing business with.

  ### 24. Great Representatives and Responsive Support

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Medical Devices | Enterprise (> 1000 emp.)

**Reviewed Date:** August 11, 2025

**What do you like best about Bitsight?**

Bitsight's support representatives are fantastic at showcasing new tools and offering support where needed. They are knowledgeable, friendly, and eager to research topics to provide speedy support.

**What do you dislike about Bitsight?**

Their platform is great to use and the only hiccups are niche requirements that I, as a user, may have. However, Bitsight has always been eager to create internal enhancement requests for these niche needs.

**What problems is Bitsight solving and how is that benefiting you?**

Bitsight is providing us with insight into our supply chain's resiliency in terms of cybersecurity.

  ### 25. Resourceful and Reliable, with Occasional Glitches

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Hospital & Health Care | Enterprise (> 1000 emp.)

**Reviewed Date:** November 04, 2025

**What do you like best about Bitsight?**

how resourceful it is! very reliable and user friendly.

**What do you dislike about Bitsight?**

sometimes it glitches out, but all systems have a tendency to do that from time to time.

**What problems is Bitsight solving and how is that benefiting you?**

being collaborative in unique ways.

  ### 26. BitSight 3rd party security

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Enterprise (> 1000 emp.)

**Reviewed Date:** July 16, 2025

**What do you like best about Bitsight?**

There are a lot of features that we leverage as part of our overall 3rd party security program.  This includes alerting when a vendor score drops significantly, the ability to see score trends over time, and the flexibility to add/remove suppliers as we need to do so.

**What do you dislike about Bitsight?**

We get regular alerts on new vulnerabilities found, but the report does not tie those vulnerabilities to the vendors we are monitoring.

**What problems is Bitsight solving and how is that benefiting you?**

BitSight allows us to meet regulatory and customer requirements around continuous monitoring.

  ### 27. CM review

**Rating:** 5.0/5.0 stars

**Reviewed by:** Shawn  M. | Cyber Risk Specialist, Enterprise (> 1000 emp.)

**Reviewed Date:** July 30, 2025

**What do you like best about Bitsight?**

The functionality and reports are very insightful, and I like how you can create the scanned results and send to the vendor contacts

**What do you dislike about Bitsight?**

The functionality and reports are very insightful, and I like how you can create the scanned results and send to the vendor contacts. 
I would like to see the CM and VRM share the same contact list.

**What problems is Bitsight solving and how is that benefiting you?**

Insight into vendor activity and scoring as well as reports are extremely beneficial

  ### 28. Bitsight Is an excellent monitoring application

**Rating:** 5.0/5.0 stars

**Reviewed by:** Jim C. | Security Analyst GRC, Small-Business (50 or fewer emp.)

**Reviewed Date:** July 23, 2025

**What do you like best about Bitsight?**

Alerting us to changes in our vendors risk posture. Various reporting features. 
Collaboration process with vendors.

**What do you dislike about Bitsight?**

Functional improvements can help to improve user experience as sometimes it is cumbersome.

**What problems is Bitsight solving and how is that benefiting you?**

Updates on risk posture changes of existing vendors.

  ### 29. Data-Driven Security

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Banking | Enterprise (> 1000 emp.)

**Reviewed Date:** July 24, 2025

**What do you like best about Bitsight?**

Bitsight's strength lies in its objective, data-driven approach to security ratings, combined with its comprehensive data collection,  that is focused on helping FCB improve our TPRM posture and manage cyber risk effectively.

**What do you dislike about Bitsight?**

I cant think of anything at this time. .

**What problems is Bitsight solving and how is that benefiting you?**

Helping to protect FCB by way of cyber TPRM.

  ### 30. Cybersecurity Specialist leveraging the application for third-party reveiws

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Health, Wellness and Fitness | Enterprise (> 1000 emp.)

**Reviewed Date:** August 01, 2025

**What do you like best about Bitsight?**

Automation with providing vendor questionnaire integration along with secure mechanism for attestations

**What do you dislike about Bitsight?**

Reporting is Bland and lacks more interactive robust functionality.

**What problems is Bitsight solving and how is that benefiting you?**

End-to-End third-party risk management with vendor monitoring.

**Official Response from Asha May:**

> Thank you for taking the time to share your experience with Bitsight in this forum. We appreciate your honest feedback and want to highlight new functionality called Framework Intelligence just announced that will provide robust functionality. I encourage you to take a look at this link and contact your CSM or Account Manager for more details.

  ### 31. BitSight's External Attack Surface Management (EASM) solution.

**Rating:** 4.0/5.0 stars

**Reviewed by:** Lahiru P. | Senior Engineer - Network and Security, Mid-Market (51-1000 emp.)

**Reviewed Date:** January 17, 2025

**What do you like best about Bitsight?**

EASM solution, excels in providing clear visibility into external facing asset.

*Detailed risk prioritization that helps identify critical vulnerabilities quickly. 
*The user interface is very good and userfriendly.
*the automation features streamline monitoring tasks effectively.

**What do you dislike about Bitsight?**

Integrating it seamlessly with other tools could enhance its utility. 
Enhance the customizable reporting options

I haven't used BitSight as a customer, nor have I explored its other offerings, but based on my testing, their EASM solution is a solid choice!

**What problems is Bitsight solving and how is that benefiting you?**

aAs mentioend earlier, I haven't used BitSight as a customer, nor have I explored its whole product portfolio, but based on my testing, their EASM solution is a solid choice

  ### 32. BitSight User Experience

**Rating:** 5.0/5.0 stars

**Reviewed by:** Vamsi E. | IT Security Analyst, Enterprise (> 1000 emp.)

**Reviewed Date:** January 28, 2025

**What do you like best about Bitsight?**

The tracking of findings is really helpful and same goes with Categorization of the findings and other areas

**What do you dislike about Bitsight?**

The frequent change of bitsight algorithm sometimes becomes a painpoint

**What problems is Bitsight solving and how is that benefiting you?**

It scans all the publicly available dns records and helps us to identify them easily and remediate them so that we can increase out security score in order to gain customers

  ### 33. Insightful Review Session

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Hospital & Health Care | Enterprise (> 1000 emp.)

**Reviewed Date:** July 30, 2025

**What do you like best about Bitsight?**

They had knowledgeable experts discuss our current environment and offered ideas on improvements.

**What do you dislike about Bitsight?**

The only thing I dislike is the number of pages you need to search through for information.

**What problems is Bitsight solving and how is that benefiting you?**

Help us assessing our third parties.

  ### 34. Great Experience and reactive team!

**Rating:** 4.5/5.0 stars

**Reviewed by:** Salma A. | CERT Member/ ASM consultant, Enterprise (> 1000 emp.)

**Reviewed Date:** February 18, 2025

**What do you like best about Bitsight?**

To have an idea about out company security's posture, an intuitive interface and reactive support team.

**What do you dislike about Bitsight?**

The long lifetime of some risk vectors after a rescan or the incapability to rescan some findings.

**What problems is Bitsight solving and how is that benefiting you?**

Anticipating certain cybersecurity attacks.

  ### 35. Bitsight:  In-Depth Vulnerability Detection and External threats

**Rating:** 4.5/5.0 stars

**Reviewed by:** Manu P. | Information Security Analyst, Enterprise (> 1000 emp.)

**Reviewed Date:** November 12, 2024

**What do you like best about Bitsight?**

It provides an overall score of the organization and Vulnerability Detection. We can also add subsidiary company as a tree in bitsight which is helpful.

**What do you dislike about Bitsight?**

Hard to use compared to other tools can be a bit hard to understand at first.

**What problems is Bitsight solving and how is that benefiting you?**

It gives a threat vector of our internt facing hosts with the help of this we can remediate of they are any external threats immediately.

  ### 36. BitSight feedback

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Maritime | Enterprise (> 1000 emp.)

**Reviewed Date:** February 25, 2025

**What do you like best about Bitsight?**

Visibility into all the vulnerabilities with some suggestion on remediation as well

**What do you dislike about Bitsight?**

it has difficult to understand how the scores have been arrived at

**What problems is Bitsight solving and how is that benefiting you?**

Making our application more secure

  ### 37. excellent service

**Rating:** 4.5/5.0 stars

**Reviewed by:** George G. | manager, Enterprise (> 1000 emp.)

**Reviewed Date:** December 18, 2024

**What do you like best about Bitsight?**

detailed information and great team to work with

**What do you dislike about Bitsight?**

nothing at this point, everything met expectations

**What problems is Bitsight solving and how is that benefiting you?**

advanced threat intel

  ### 38. Excellent

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Consulting | Enterprise (> 1000 emp.)

**Reviewed Date:** January 17, 2025

**What do you like best about Bitsight?**

Great for online assessments. Excellent security provided. I acknowledge Bitsight from now on. Tremendous experience.

**What do you dislike about Bitsight?**

I haven't encountered any, folks. Bitsight is here to stay!

**What problems is Bitsight solving and how is that benefiting you?**

Cyber security issues that are present during online examinations. Bitsight takes excellent care of those.

  ### 39. Comprehensive threat monitoring tool

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Manufacturing | Small-Business (50 or fewer emp.)

**Reviewed Date:** October 24, 2024

**What do you like best about Bitsight?**

Intelligence provided by it is highly relevant and customizable.

**What do you dislike about Bitsight?**

Nothing as such it is just great tool to work with.

**What problems is Bitsight solving and how is that benefiting you?**

It helps to identify if there are any threats to websites and this in turn help to make them more secure.

  ### 40. Great product to get risk information, and peer comparisons.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Utilities | Mid-Market (51-1000 emp.)

**Reviewed Date:** May 30, 2024

**What do you like best about Bitsight?**

It pairs well with a Vendor Relationship Manager tool as evidence of risk decisions.

**What do you dislike about Bitsight?**

I can't really think of any glaring downsides.  Honestly, I wish it did not timeout so quickly when you click away from the window...But that is pretty minor.

**What problems is Bitsight solving and how is that benefiting you?**

We use Bitsight to satisfy Federal requirements around Vendor Risk Management in a Critical Infrastructure area.

  ### 41. Exploiting Efficiency: Full Tool Evaluation Bitsighttech

**Rating:** 4.0/5.0 stars

**Reviewed by:** William E. | Enterprise (> 1000 emp.)

**Reviewed Date:** April 01, 2024

**What do you like best about Bitsight?**

Score evaluation and vulnerability detail points.

**What do you dislike about Bitsight?**

Few details in the trace on the public ip, so it could bring more information. But we have a tool that adds Bitsighttech

**What problems is Bitsight solving and how is that benefiting you?**

Vulnerability assessment of service providers.

  ### 42. Constant improvement

**Rating:** 5.0/5.0 stars

**Reviewed by:** Greg F. | Cyber Security Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** August 01, 2023

**What do you like best about Bitsight?**

I can quickly and easily lookup companies I wish to review for third-party due diligence. I can easily change the license level to get full access for review, then adjust to a lower level for monitoring lower risk companies.

**What do you dislike about Bitsight?**

Some of the breach alerts are historical, having happened over a month, often more than two months ago. As such, it cannot be depened upon for critical alert monitoring.

**What problems is Bitsight solving and how is that benefiting you?**

I am able to look at our third-parties for an objective view of what they are telling me about themselves and thier security stances. I am also able to look at our own company to see where our vulnerability lay and highlight those concerns to the right teams in our IT department. We have been able to make significant improvments thanks to Bitsight.

  ### 43. Great intelligence!

**Rating:** 5.0/5.0 stars

**Reviewed by:** Kevin M. | Senior Systems Security Analyst, Enterprise (> 1000 emp.)

**Reviewed Date:** August 15, 2023

**What do you like best about Bitsight?**

I really like that BitSight is a time saver in consolidating information. The ability to share reports with the 3rd parties you're assessing is key to allow them additional prioritization in their remediation efforts.

**What do you dislike about Bitsight?**

I wish BitSight would identify if a company had a SOC2, is PCI certified, has ISO 27001 certification, etc. These would go a long way in establishing bonafides in the ratings.

**What problems is Bitsight solving and how is that benefiting you?**

Bitsight experts gather the security posture of a 3rd party, package it nicely, and allows us to effectively determine if we want to do business with this vendor.

  ### 44. Bitsight for Vendor Risk and Continuous Monitoring

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Enterprise (> 1000 emp.)

**Reviewed Date:** February 06, 2024

**What do you like best about Bitsight?**

Bitsight was helpful with reviewing new vendors and getting a snapshot of their cybersecurity risks and practices. The reports would also help us present concerns to our stakeholders.

**What do you dislike about Bitsight?**

Some of the features in Bitsight were difficult to implement.

**What problems is Bitsight solving and how is that benefiting you?**

Bitsight was our continuous monitoring solution for our contracted vendors.

  ### 45. Excellent Picture of Security Maturity

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Oil & Energy | Enterprise (> 1000 emp.)

**Reviewed Date:** October 09, 2023

**What do you like best about Bitsight?**

BitSight is a fundamental tool in communicating your organizations cybersecurity maturation.  The dynamic and near-real-time vulnerability reporting for your public facing assets that BitSight provides is a strong tool in achieving cyber goals.

**What do you dislike about Bitsight?**

There is honestly nothing I dislike about BitSight.

**What problems is Bitsight solving and how is that benefiting you?**

Reporting security maturity and informing stakeholders of our public security posture.

  ### 46. Review of BitSight and its Service

**Rating:** 5.0/5.0 stars

**Reviewed by:** Ding Shan C. | Enterprise (> 1000 emp.)

**Reviewed Date:** March 22, 2023

**What do you like best about Bitsight?**

Quick security assessment and oversight of a company and benchmark features among

**What do you dislike about Bitsight?**

Lack of mobile app that can enable the management to have easier monitoring.

**What problems is Bitsight solving and how is that benefiting you?**

Oversight of our business units across the globe. Enable quick assess of businesses that we are considering for services or other purposes. Management  and Shareholders reporting which BitSight is a product with good market shares.

  ### 47. A security related platform that works.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Financial Services | Mid-Market (51-1000 emp.)

**Reviewed Date:** July 11, 2023

**What do you like best about Bitsight?**

the aggregated vision about secuirty performance management that works very well.
With a fast and very prompt support.

**What do you dislike about Bitsight?**

No downsize by using BITSIGHT. Just some adjustments to make it more straight to the point.

**What problems is Bitsight solving and how is that benefiting you?**

having the risks consolidated are a truly must,

  ### 48. Like/dislike about BitSight

**Rating:** 3.0/5.0 stars

**Reviewed by:** Toshiyuki B. | Enterprise (> 1000 emp.)

**Reviewed Date:** March 22, 2023

**What do you like best about Bitsight?**

BitSight scoring can give our affiliates of competing mind. Easy to recognize what they have to do for their security enhancement.

**What do you dislike about Bitsight?**

The BitSight Findings are Not timely alerting, and exposed vulnerabilities sometimes do not cover all the assets.

**What problems is Bitsight solving and how is that benefiting you?**

To check the security scoring of the 3rd party and our supply chain partners when starting a business and re-evaluating.

  ### 49. BitSight has been a good source to identify issues that are present in our environment.

**Rating:** 3.5/5.0 stars

**Reviewed by:** Swapnil P. | Enterprise (> 1000 emp.)

**Reviewed Date:** March 17, 2023

**What do you like best about Bitsight?**

One thing that I like the most about BitSight is the "Risk Remediation Plan" that it creates. It breaks down very clearly how we could achieve a better grade by remediating some issues.

**What do you dislike about Bitsight?**

The one thing that I would like that BitSight doesn't have is separating the IP range depending on what region the IP is registered for ( ex, Asia, Europe, South America, etc.)

**What problems is Bitsight solving and how is that benefiting you?**

BitSight gives a clear rating of our third parties security rating which is really beneficial for us.

  ### 50. Bitsight is a good tool for alerts of companies vulnerabilities outside our organization

**Rating:** 4.5/5.0 stars

**Reviewed by:** Gail C. | Enterprise (> 1000 emp.)

**Reviewed Date:** March 21, 2023

**What do you like best about Bitsight?**

Able to see vulnerabilities within our own organization and with companies we are subscribed too

**What do you dislike about Bitsight?**

Alerts are sent in late afternoon, would rather have the alert  sent upon finding

**What problems is Bitsight solving and how is that benefiting you?**

We are currently determining how to approach compies that we subscribe to


## Bitsight Discussions
  - [What does Bitsight Security Ratings do?](https://www.g2.com/discussions/what-does-bitsight-security-ratings-do)
  - [How is BitSight calculated?](https://www.g2.com/discussions/how-is-bitsight-calculated)
  - [What is a BitSight security rating?](https://www.g2.com/discussions/what-is-a-bitsight-security-rating)

- [View Bitsight pricing details and edition comparison](https://www.g2.com/products/bitsight/reviews?section=pricing&secure%5Bexpires_at%5D=2026-05-13+08%3A50%3A14+-0500&secure%5Bsession_id%5D=de812834-60a3-49be-bbe0-200ce651f764&secure%5Btoken%5D=0173659961f8645de5d790dde908e9e0f59a68f2f08d3c7e8447e05cefeb3db0&format=llm_user)
## Bitsight Integrations
  - [Aravo](https://www.g2.com/products/aravo/reviews)
  - [Archer](https://www.g2.com/products/archer-technologies-archer/reviews)
  - [Coupa](https://www.g2.com/products/coupa-software-coupa/reviews)
  - [Diligent](https://www.g2.com/products/diligent/reviews)
  - [Graphite Connect](https://www.g2.com/products/graphiteconnect-graphite-connect/reviews)
  - [Interos](https://www.g2.com/products/interos/reviews)
  - [Jira](https://www.g2.com/products/jira/reviews)
  - [Microsoft Power BI](https://www.g2.com/products/microsoft-microsoft-power-bi/reviews)
  - [Microsoft Sentinel](https://www.g2.com/products/microsoft-sentinel/reviews)
  - [Netskope](https://www.g2.com/products/netskope-activity-feeds-for-microsoft-onedrive-netskope/reviews)
  - [Okta](https://www.g2.com/products/okta/reviews)
  - [OneTrust Third-Party Management](https://www.g2.com/products/onetrust-third-party-management/reviews)
  - [Onspring](https://www.g2.com/products/onspring/reviews)
  - [Palo Alto Cortex XSIAM](https://www.g2.com/products/palo-alto-cortex-xsiam/reviews)
  - [ProcessUnity TPRM Platform](https://www.g2.com/products/processunity-tprm-platform/reviews)
  - [SAP Ariba](https://www.g2.com/products/sap-ariba/reviews)
  - [ServiceNow IT Service Management](https://www.g2.com/products/servicenow-it-service-management/reviews)
  - [Splunk](https://www.g2.com/products/splunk-2025-01-30/reviews)
  - [ThreatQ](https://www.g2.com/products/threatq/reviews)
  - [Venminder](https://www.g2.com/products/venminder/reviews)
  - [Whistic](https://www.g2.com/products/whistic/reviews)

## Bitsight Features
**Performance**
- Issue Tracking
- Detection Rate
- False Positives
- Automated Scans

**Risk Analysis**
- Risk Scoring
- Reporting
- Risk-Prioritization

**Functionality**
- Customized Vendor Pages
- Centralized Vendor Catalog
- Questionnaire Templates
- User Access Control

**Asset Management**
- Asset Discovery
- Shadow IT Detection
- Change Management

**Data management**
- Data repository
- Natural Language Processing (NLP)
- Data quality
- Automation
- Data structuring

**Risk Assessment**
- Scoring
- AI

**Vulnerability Management - Digital Risk Protection (DRP) Platforms**
- Vulnerability Assessment
- Digital Footprint Mapping
- Fraud Detection
- Data Leak Detection
- Anti-Counterfeiting
- Brand Protection

**Generative AI - Exposure Management Platforms**
- Predictive Analytics
- Automated Threat Detection

**Orchestration**
- Asset Management
- Security Workflow Automation
- Deployment
- Sandboxing

**Network**
- Compliance Testing
- Perimeter Scanning
- Configuration Monitoring

**Vulnerability Assesment**
- Vulnerability Scanning
- Vulnerability Intelligence
- Contextual Data
- Dashboards

**Risk assessment**
- Risk Scoring
- 4th Party Assessments
- Monitoring And Alerts
- AI Monitoring

**Monitoring**
- Gap Analysis
- Vulnerability Intelligence
- Compliance Monitoring
- Continuous Monitoring

**Functionality**
- Customized Datasets
- Customer support
- Real-time data
- Complete datasets
- Compliance
- Plug-ins

**Risk Control**
- Reviews
- Policies
- Workflows

**Incident Response Digital Risk Protection (DRP) Platforms**
- Threat Remediation
- Automated Reponses
- Incident Response Capabilities

**Risk Identification and Assessment - Exposure Management Platforms**
- Comprehensive Risk Assessment
- Advanced Analytics and Reporting

**Information**
- Proactive Alerts
- Malware Detection
- Intelligence Reports

**Application**
- Manual Application Testing
- Static Code Analysis
- Black Box Testing

**Automation**
- Automated Remediation
- Workflow Automation
- Security Testing
- Test Automation

**Risk Management**
- Risk-Prioritization
- Reconnaissance
- At-Risk Analysis
- Threat Intelligence

**Monitoring**
- Vendor Performance
- Notifications
- Oversight

**Reporting and Analytics - Digital Risk Protection (DRP) Platforms**
- Threat Trends Analysis
- Risk Assessment Reports
- Customizable Dashboards

**Monitoring and Integration - Exposure Management Platforms**
- Integration and Data Consolidation
- Real-time Monitoring and Alerts

**Generative AI - Vendor Security and Privacy Assessment**
- Text Summarization
- Text Generation

**Personalization**
- Endpoint Intelligence
- Security Validation
- Dynamic/Code Analysis

**Reporting**
- Templates
- Centralized Data
- 360 View

**Generative AI**
- AI Text Summarization

**Agentic AI - Vulnerability Scanner**
- Autonomous Task Execution
- Proactive Assistance

**Generative AI**
- AI Text Summarization
- Generate Attack Scenarios
- Generate Threat Detection Rules
- Generate Threat Summaries

**Agentic AI - Third Party & Supplier Risk Management**
- Adaptive Learning
- Decision Making

**Agentic AI - Threat Intelligence**
- Autonomous Task Execution
- Multi-step Planning
- Proactive Assistance
- Decision Making

## Top Bitsight Alternatives
  - [Vendor Risk](https://www.g2.com/products/vendor-risk/reviews) - 4.5/5.0 (698 reviews)
  - [Vanta](https://www.g2.com/products/vanta/reviews) - 4.6/5.0 (2,403 reviews)
  - [Optro](https://www.g2.com/products/optro/reviews) - 4.6/5.0 (1,583 reviews)

