# Best Attack Surface Management Software

## How Many Attack Surface Management Software Products Does G2 Track?

**Total Products under this Category:** 168

### Category Stats (Jul 2026)

- **Average Rating:** 4.59/5 The average rating of products in this category, based on all submitted ratings
- **Top Trending Product:** The Onapsis Platform (+1.07%) - Among all products in this category, The Onapsis Platform recorded the largest rating increase compared to last month

_Last updated: July 27, 2026_

## How Does G2 Rank Attack Surface Management Software Products?

**Why You Can Trust G2's Software Rankings:**

- 30 Analysts and Data Experts
- 5,400+ Authentic Reviews
- 168+ Products
- Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

## G2 Grid® for Attack Surface Management Software
 ![G2 Grid® for Attack Surface Management Software plotting products by satisfaction and market presence](https://www.g2.com/categories/attack-surface-management/grids.png?focus%5B%5D=146504&focus%5B%5D=138933&focus%5B%5D=99721&focus%5B%5D=1174135&focus%5B%5D=149786&focus%5B%5D=160601&focus%5B%5D=55997&focus%5B%5D=1234588)

Highlighted products: Wiz, SOCRadar Extended Threat Intelligence, CloudSEK, CTM360, Cyble, RiskProfiler - External Threat Exposure Management, Check Point Exposure Management, and Falcon Security and IT operations.

Underlying data: [Grid® JSON](https://www.g2.com/categories/attack-surface-management/grids.json?focus%5B%5D=wiz-wiz&focus%5B%5D=socradar-extended-threat-intelligence&focus%5B%5D=cloudsek&focus%5B%5D=ctm360-ctm360&focus%5B%5D=cyble&focus%5B%5D=riskprofiler-external-threat-exposure-management&focus%5B%5D=check-point-exposure-management&focus%5B%5D=falcon-security-and-it-operations)

### [Wiz](https://www.g2.com/products/wiz-wiz/reviews)

Wiz transforms cloud security for customers – including more than 50% of the Fortune 100 – by enabling a new operating model. With Wiz, organizations can democratize security across the development lifecycle, empowering them to build fast and securely. Its Cloud Native Application Protection Platform (CNAPP) consolidates CSPM, KSPM, CWPP, Vulnerability management, IaC scanning, CIEM, DSPM into a single platform. Wiz drives visibility, risk prioritization, and business agility. Protecting Your Cloud Environments Requires a Unified, Cloud Native Platform. Wiz connects to every cloud environment, scans every layer, and covers every aspect of your cloud security - including elements that normally require installing agents. Its comprehensive approach has all of these cloud security solutions built in. Hundreds of organizations worldwide, including 50 percent of the Fortune 100, to rapidly identify and remove critical risks in cloud environments. Its customers include Salesforce, Slack, Mars, BMW, Avery Dennison, Priceline, Cushman & Wakefield, DocuSign, Plaid, and Agoda, among others. Wiz is backed by Sequoia, Index Ventures, Insight Partners, Salesforce, Blackstone, Advent, Greenoaks, Lightspeed and Aglaé. Visit https://www.wiz.io for more information.

**Average Rating:** 4.7/5.0

**Total Reviews:** 823

#### How Do G2 Users Rate Wiz?

- **Vulnerability Intelligence:** 9.0/10 (Category avg: 9.0/10)
- **Continuous Monitoring:** 9.0/10 (Category avg: 9.2/10)
- **Compliance Monitoring:** 8.8/10 (Category avg: 8.6/10)
- **Ease of Admin:** 9.0/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Wiz?

- **Seller:** [Wiz](https://www.g2.com/sellers/wiz-76a0133b-42e5-454e-b5da-860e503471db)
- **Company Website:** https://www.wiz.io/
- **Year Founded:** 2020
- **HQ Location:** New York, US
- **Twitter:** @wiz\_io (24,733 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/wizsecurity/ (3,383 employees on LinkedIn®)

#### Who Uses This Product?

- **Who Uses This:** CISO, Security Engineer
- **Top Industries:** Financial Services, Computer Software
- **Company Size:** 54% Large, 39% Medium

#### What Do G2 Reviewers Say About Wiz?

_AI-generated summary from verified user reviews_

##### Pros

- Users commend the **capable APIs and user-friendly UI** , providing valuable insights and continuous improvements in security features.
- Users value the **unmatched security features** of Wiz, providing comprehensive visibility and proactive threat management capabilities.
- Users find Wiz's product suite **extremely easy to use** , benefiting from seamless integration and a user-friendly interface.
- Users appreciate the **visibility** Wiz offers, enhancing security posture and prioritizing critical vulnerabilities effectively.
- Users praise the **easy setup** of Wiz, enabling quick deployment and seamless integration across modules for enhanced security.

##### Cons

- Users experience a **steep learning curve** with Wiz, making it challenging for newcomers to fully utilize the platform.
- Users find the **feature limitations** of Wiz, such as complex reporting and management, hinder user-friendliness and efficiency.
- Users highlight the need for **improvement in performance and reporting capabilities** to enhance overall usability of Wiz.
- Users note several **improvements needed** , particularly in dashboard reporting and the complexity of the pricing model.
- Users find the **complexity of the interface** overwhelming initially, requiring time to adapt and learn effectively.

#### What Are Recent G2 Reviews of Wiz?

**["Unmatched Security Insights, Excellent Reporting, and Strong Post-Sales Support"](https://www.g2.com/survey_responses/wiz-review-13153618)**

**Rating:** 5.0/5.0 stars

_— Alastair J._

[Read full review](https://www.g2.com/survey_responses/wiz-review-13153618)

**["Excellent Cloud Risk Visibility and Fast Insights with Wiz"](https://www.g2.com/survey_responses/wiz-review-12964571)**

**Rating:** 4.5/5.0 stars

_— Ruben F._

[Read full review](https://www.g2.com/survey_responses/wiz-review-12964571)

### [SOCRadar Extended Threat Intelligence](https://www.g2.com/products/socradar-extended-threat-intelligence/reviews)

Since 2019, SOCRadar has been a pioneer in SaaS cybersecurity, now serving over 900 customers across 75 countries. Our mission is to provide accessible, proactive threat intelligence. Today, SOCRadar empowers security teams with our groundbreaking Extended Threat Intelligence (XTI) platform and is leading the charge toward the future with Agentic Threat Intelligence (ATI). What does SOCRadar do? At its core, SOCRadar provides a unified, cloud-hosted platform designed to enrich your cyber threat intelligence by contextualizing it with data from your attack surface, digital footprint, dark web exposure, and supply chain. We help security teams see what attackers see by combining External Attack Surface Management, Cyber Threat Intelligence, and Digital Risk Protection into a single, easy-to-use solution. This enables your organization to discover hidden vulnerabilities, detect data leaks, and shut down threats like phishing and brand impersonation before they can harm your business. By combining these critical security functions, SOCRadar replaces the need for separate, disconnected tools. Our holistic approach offers a streamlined, modular experience, providing a complete, real-time view of your threat landscape to help you stay ahead of attackers. Our vision for Agentic Threat Intelligence (ATI) goes beyond today's chatbots and LLMs. We are focused on making it practical for security teams to use AI agents to solve real-world problems. Our initiative will empower you to either deploy pre-built agents or easily create your own, leveraging deep integrations to automate complex tasks that were previously difficult to perform accurately. SOCRadar is dedicated to pioneering this change, making autonomous security an accessible reality for your team.

**Average Rating:** 4.7/5.0

**Total Reviews:** 110

#### How Do G2 Users Rate SOCRadar Extended Threat Intelligence?

- **Vulnerability Intelligence:** 9.2/10 (Category avg: 9.0/10)
- **Continuous Monitoring:** 9.2/10 (Category avg: 9.2/10)
- **Compliance Monitoring:** 8.4/10 (Category avg: 8.6/10)
- **Ease of Admin:** 9.2/10 (Category avg: 9.0/10)

#### Who Is the Company Behind SOCRadar Extended Threat Intelligence?

- **Seller:** [SOCRadar](https://www.g2.com/sellers/socradar)
- **Company Website:** https://socradar.io
- **Year Founded:** 2018
- **HQ Location:** Delaware
- **Twitter:** @socradar (5,748 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/socradar (195 employees on LinkedIn®)

#### Who Uses This Product?

- **Top Industries:** Financial Services, Information Technology and Services
- **Company Size:** 42% Medium, 42% Large

#### What Do G2 Reviewers Say About SOCRadar Extended Threat Intelligence?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **ease of use** of SOCRadar, thanks to its intuitive dashboard and centralized threat data.
- Users value the **comprehensive Threat Intelligence** of SOCRadar, enabling proactive monitoring and awareness of data leaks.
- Users appreciate the **comprehensive and actionable alerts** from SOCRadar Extended Threat Intelligence, enhancing threat monitoring and response.
- Users value the **exceptional visibility** provided by SOCRadar, ensuring proactive threat management and centralized data monitoring.
- Users value the **exceptional visibility** SOCRadar provides into the external threat landscape, enhancing proactive threat management.

##### Cons

- Users struggle with **inefficient alerts** causing duplicate notifications, leading to fatigue and a need for extensive tuning.
- Users face challenges with the **inefficient alert system** , experiencing noise and fatigue from duplicate notifications and false positives.
- Users often face **false positives** that lead to alert fatigue, requiring extensive setup to manage notifications effectively.
- Users note the **limited features** in SOCRadar, restricting deeper analysis and causing challenges with noisy alerts and duplications.
- Users find the **insufficient information** about vulnerabilities and configurations to be a significant drawback of SOCRadar.

#### What Are Recent G2 Reviews of SOCRadar Extended Threat Intelligence?

**["Broad, Cost-Effective Threat Intelligence with Smooth Onboarding and Easy Integrations"](https://www.g2.com/survey_responses/socradar-extended-threat-intelligence-review-12839690)**

**Rating:** 4.5/5.0 stars

_— Robert N._

[Read full review](https://www.g2.com/survey_responses/socradar-extended-threat-intelligence-review-12839690)

**["Pleasant and comprehensive experience"](https://www.g2.com/survey_responses/socradar-extended-threat-intelligence-review-11719422)**

**Rating:** 5.0/5.0 stars

_— Moises M._

[Read full review](https://www.g2.com/survey_responses/socradar-extended-threat-intelligence-review-11719422)

### [CloudSEK](https://www.g2.com/products/cloudsek/reviews)

CloudSEK is a contextual AI company that predicts Cyber Threats. We combine the power of Cyber Crime monitoring, Brand Monitoring, Attack Surface monitoring, and Supply Chain intelligence to give context to our customers’ digital risks.

**Average Rating:** 4.8/5.0

**Total Reviews:** 137

#### How Do G2 Users Rate CloudSEK?

- **Vulnerability Intelligence:** 9.0/10 (Category avg: 9.0/10)
- **Continuous Monitoring:** 9.6/10 (Category avg: 9.2/10)
- **Compliance Monitoring:** 9.4/10 (Category avg: 8.6/10)
- **Ease of Admin:** 9.6/10 (Category avg: 9.0/10)

#### Who Is the Company Behind CloudSEK?

- **Seller:** [CloudSEK](https://www.g2.com/sellers/cloudsek)
- **Year Founded:** 2015
- **HQ Location:** Singapore, SG
- **Twitter:** @cloudsek (2,417 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/cloudsek/ (234 employees on LinkedIn®)

#### Who Uses This Product?

- **Who Uses This:** Security Analyst, Analyst
- **Top Industries:** Financial Services, Airlines/Aviation
- **Company Size:** 53% Large, 31% Medium

#### What Do G2 Reviewers Say About CloudSEK?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **ease of use** with CloudSEK, enjoying smooth integration and an intuitive dashboard for monitoring.
- Users value the **continuous monitoring and real-time alerts** provided by CloudSEK, enhancing their security efforts.
- Users value the **active and helpful customer support** from CloudSEK, which enhances their experience and resolves issues promptly.
- Users commend CloudSEK for its **robust threat intelligence features** , improving cybersecurity with real-time monitoring and insights.
- Users recognize the **real-time visibility into external threats** provided by CloudSEK, enhancing proactive risk management.

##### Cons

- Users encounter **numerous false positives** in alerts, complicating threat prioritization and overall effectiveness of CloudSEK.
- Users face challenges with **inefficient alerts** from CloudSEK, as many are false positives requiring extra validation.
- Users experience **dashboard issues** , including clutter and limited customization, impacting alert management and overall usability.
- Users face challenges with the **inefficient alert system** , leading to false positives and difficulties in threat prioritization.
- Users find the **complex UI** of CloudSEK overwhelming, requiring time and skill to navigate effectively.

#### What Are Recent G2 Reviews of CloudSEK?

**["Proactive Digital Risk Intelligence Made Simple"](https://www.g2.com/survey_responses/cloudsek-review-12674517)**

**Rating:** 4.5/5.0 stars

_— Yukta A._

[Read full review](https://www.g2.com/survey_responses/cloudsek-review-12674517)

**["Comprehensive threat intelligence with an intuitive interface and top-tier support"](https://www.g2.com/survey_responses/cloudsek-review-12721015)**

**Rating:** 5.0/5.0 stars

_— Manish R._

[Read full review](https://www.g2.com/survey_responses/cloudsek-review-12721015)

### [CTM360](https://www.g2.com/products/ctm360-ctm360/reviews)

CTM360 is a consolidated external security platform that integrates External Attack Surface Management, Digital Risk Protection, Cyber Threat Intelligence, Brand Protection & Anti-phishing, Surface, Deep, & Dark Web Monitoring, Security Ratings, Third-party risk Management, and fully managed unlimited Takedowns. As a pioneer and innovator in preemptive security, CTM360 operates as an external CTEM technology platform outside an organization’s perimeter. Seamless and turn-key, CTM360 requires no configurations, installations or inputs from the end-user, with all data pre-populated and specific to your organization. All aspects are managed by CTM360.

**Average Rating:** 4.6/5.0

**Total Reviews:** 154

#### How Do G2 Users Rate CTM360?

- **Vulnerability Intelligence:** 9.0/10 (Category avg: 9.0/10)
- **Continuous Monitoring:** 9.1/10 (Category avg: 9.2/10)
- **Compliance Monitoring:** 8.8/10 (Category avg: 8.6/10)
- **Ease of Admin:** 9.7/10 (Category avg: 9.0/10)

#### Who Is the Company Behind CTM360?

- **Seller:** [CTM360](https://www.g2.com/sellers/ctm360)
- **Company Website:** https://www.ctm360.com/
- **Year Founded:** 2014
- **HQ Location:** Manama, BH
- **Twitter:** @teamCTM360 (999 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/ctm360/ (133 employees on LinkedIn®)

#### Who Uses This Product?

- **Top Industries:** Financial Services, Banking
- **Company Size:** 38% Medium, 35% Large

#### What Do G2 Reviewers Say About CTM360?

_AI-generated summary from verified user reviews_

##### Pros

- Users commend the **top-notch customer support** of CTM360, highlighting responsiveness and professionalism in every interaction.
- Users appreciate the **ease of use** of CTM360, praising its straightforward setup and user-friendly interface.
- Users highlight the **exceptional quality and commitment** of CTM360, praising its comprehensive features and proactive support.
- Users commend CTM360 for its **effective monitoring** of assets and risks, enabling proactive security measures and informed decisions.
- Users value the **high detection efficiency** of CTM360, experiencing minimal false positives and quick risk identification.

##### Cons

- Users note the **limited features** of the CTM360 app compared to the web portal, affecting overall usability.
- Users face **integration issues** with existing tools like ArcticHub, hindering automated security feed capabilities.
- Users feel the **lack of features** in CTM360 limits its utility compared to the web and other tools.
- Users highlighted the **lack of integration** with their existing security systems, limiting automated security feeds and usability.
- Users highlight the **lack of integrations** with existing security tools, limiting the effectiveness of CTM360's capabilities.

#### What Are Recent G2 Reviews of CTM360?

**["CTM360 Delivers Powerful, Unified Visibility Into External Digital Risks"](https://www.g2.com/survey_responses/ctm360-review-13088231)**

**Rating:** 5.0/5.0 stars

_— Sachitha M._

[Read full review](https://www.g2.com/survey_responses/ctm360-review-13088231)

**["CTM360 Powerful Cybersecurity Visibility and Proactive Threat Monitoring"](https://www.g2.com/survey_responses/ctm360-review-13143111)**

**Rating:** 4.0/5.0 stars

_— Emmanuel T._

[Read full review](https://www.g2.com/survey_responses/ctm360-review-13143111)

### [Cyble](https://www.g2.com/products/cyble/reviews)

Cyble is an AI-native cybersecurity solution designed to help organizations enhance their digital security posture through real-time intelligence, detection, and response capabilities. By leveraging advanced agentic AI and processing vast amounts of data, Cyble empowers businesses to navigate the complexities of the cyber threat landscape effectively. Its unique approach involves collecting and enriching signals from various sources, including the dark web, deep web, and surface web, providing unparalleled visibility into emerging threats and adversarial activities. Targeting a wide range of industries, Cyble's platform is particularly beneficial for security teams, risk management professionals, and organizations that prioritize safeguarding their digital assets. The comprehensive suite of solutions offered by Cyble includes Threat Intelligence, Dark Web & Deep Web Monitoring, Attack Surface Management (ASM), and Brand Intelligence, among others. These tools are designed to address specific use cases such as identifying vulnerabilities, monitoring brand reputation, and managing third-party risks, making it an essential resource for organizations aiming to bolster their cybersecurity measures. Cyble's key features are centered around its unified platform, which integrates multiple cybersecurity functions into a single interface. This integration allows for seamless communication between different security components, enabling teams to anticipate, identify, and neutralize threats with remarkable speed and precision. For instance, the Digital Forensics & Incident Response (DFIR) capabilities equip organizations with the tools needed to investigate and respond to incidents effectively, while the DDoS Protection and Cloud Security Posture Management (CSPM) features ensure that businesses can maintain operational integrity even under attack. Moreover, Cyble stands out in its category by combining vast data intelligence with cutting-edge AI automation. This proactive defense strategy not only helps organizations react to cyber threats but also empowers them to stay ahead of potential risks. By enhancing visibility into the threat landscape and providing actionable insights, Cyble enables enterprises to protect their assets, safeguard brand trust, and operate with confidence in an increasingly complex digital environment. The result is a robust cybersecurity framework that supports organizations in navigating the ever-evolving challenges of the cyber world.

**Average Rating:** 4.8/5.0

**Total Reviews:** 142

#### How Do G2 Users Rate Cyble?

- **Vulnerability Intelligence:** 9.5/10 (Category avg: 9.0/10)
- **Continuous Monitoring:** 9.5/10 (Category avg: 9.2/10)
- **Compliance Monitoring:** 9.1/10 (Category avg: 8.6/10)
- **Ease of Admin:** 9.6/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Cyble?

- **Seller:** [Cyble](https://www.g2.com/sellers/cyble)
- **Company Website:** https://cyble.com
- **Year Founded:** 2019
- **HQ Location:** Alpharetta, US
- **Twitter:** @cybleglobal (16,252 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/cyble-global/ (233 employees on LinkedIn®)

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 38% Large, 17% Medium

#### What Do G2 Reviewers Say About Cyble?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **intuitive and user-friendly interface** of Cyble, making threat intelligence management seamless and efficient.
- Users value the **comprehensive threat protection** of Cyble, facilitating efficient threat intel and seamless integrations.
- Users appreciate the **state-of-the-art equipment** and comprehensive threat monitoring tools offered by Cyble for effective risk management.
- Users appreciate the **real-time insights** provided by Cyble, enhancing threat detection and proactive cybersecurity measures.
- Users value Cyble's **real-time threat detection** capabilities, which enhance digital risk protection and streamline security efforts.

##### Cons

- Users experience **inefficient alerts** from Cyble, leading to frustration and difficulty distinguishing real threats from false positives.
- Users express frustration over **limited customization** options in Cyble, impacting efficiency and user experience.
- Users are frustrated with Cyble's **slow and inadequate customer support** , especially during urgent situations needing immediate assistance.
- Users experience **poor support management** with Cyble, facing slow response times during critical situations.
- Users face significant challenges due to **false positives** , which overwhelm and distract from real threats in Cyble.

#### What Are Recent G2 Reviews of Cyble?

**["AI-Enabled, User-Friendly Platform for Continuous Threat Monitoring"](https://www.g2.com/survey_responses/cyble-review-12964533)**

**Rating:** 5.0/5.0 stars

_— Vishakha A._

[Read full review](https://www.g2.com/survey_responses/cyble-review-12964533)

**["High-Confidence Intelligence with Minimal Noise and Strong Support"](https://www.g2.com/survey_responses/cyble-review-12115785)**

**Rating:** 5.0/5.0 stars

_— Ummay M._

[Read full review](https://www.g2.com/survey_responses/cyble-review-12115785)

### [RiskProfiler - External Threat Exposure Management](https://www.g2.com/products/riskprofiler-external-threat-exposure-management/reviews)

RiskProfiler is an advanced cybersecurity platform purpose-built for Continuous Threat Exposure Management (CTEM). It unifies external, cloud, vendor, and brand risk intelligence into a single ecosystem—providing organizations with real-time visibility, contextual threat insights, and actionable remediation guidance. Through its integrated suite, External Attack Surface Managemnet, Third\_party Risk Management, Cloud Attack Surface Management, and Brand Risk Protection; the platform continuously discovers, classifies, and evaluates external-facing assets and risks across the internet, multi-cloud environments, and third-party ecosystems. Powered by AI-enabled risk questionnaires, RiskProfiler automates the exchange, validation, and scoring of security assessments, dramatically accelerating third-party due diligence and compliance validation. The platform’s context-enriched graph engine correlates vulnerabilities, exposures, and configurations with real-world threat data, revealing how attackers might exploit an organization’s digital footprint. Its newly enhanced Cyber Threat Intelligence (CTI) module provides live insights into industry-specific attack trends, threat actor profiles, and evolving TTPs, directly embedded within the dashboard. By analyzing CVEs, IOCs, and exploit patterns, it maps these to relevant assets and potential attack paths, enabling focused, prioritized mitigation. From identifying exposed cloud resources across AWS, Azure, and Google Cloud to uncovering brand impersonation, phishing campaigns, or logo abuse, RiskProfiler delivers unified visibility and continuous monitoring that extends beyond the perimeter. It helps organizations anticipate, contextualize, and neutralize threats before they turn into breaches, transforming exposure management into a truly intelligent, predictive defense capability.

**Average Rating:** 4.9/5.0

**Total Reviews:** 118

#### How Do G2 Users Rate RiskProfiler - External Threat Exposure Management?

- **Vulnerability Intelligence:** 10.0/10 (Category avg: 9.0/10)
- **Continuous Monitoring:** 9.9/10 (Category avg: 9.2/10)
- **Compliance Monitoring:** 9.9/10 (Category avg: 8.6/10)
- **Ease of Admin:** 9.7/10 (Category avg: 9.0/10)

#### Who Is the Company Behind RiskProfiler - External Threat Exposure Management?

- **Seller:** [Riskprofiler](https://www.g2.com/sellers/riskprofiler)
- **Company Website:** https://riskprofiler.io/
- **Year Founded:** 2019
- **HQ Location:** Rock Hill , US
- **Twitter:** @riskprofilerio (209 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/riskprofiler (32 employees on LinkedIn®)

#### Who Uses This Product?

- **Who Uses This:** Software Engineer, Security Consultant
- **Top Industries:** Information Technology and Services, Design
- **Company Size:** 66% Medium, 33% Small

#### What Do G2 Reviewers Say About RiskProfiler - External Threat Exposure Management?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **effective risk management** capabilities of RiskProfiler, facilitating informed decisions and quick responses to threats.
- Users appreciate the **seamless onboarding and integration** of RiskProfiler, enhancing visibility and monitoring of external threats.
- Users commend the **fast and efficient customer support** of RiskProfiler, enhancing their overall experience and response time.
- Users value the **ease of use** of RiskProfiler, particularly the seamless integration and user-friendly dashboard.
- Users value the **easy setup** of RiskProfiler, appreciating its intuitive dashboard and quick implementation process.

##### Cons

- Users face a **steep learning curve** with RiskProfiler, requiring time for training and customization to navigate effectively.
- Users find the **complexity** of RiskProfiler overwhelming, necessitating significant time for training and adjustment.
- Users find a **difficult learning curve** for RiskProfiler, requiring significant training and time to navigate effectively.
- Users find the **learning difficulty** of RiskProfiler challenging, necessitating extra training and time for effective use.
- Users find the **complex setup** of RiskProfiler challenging, particularly for non-specialist teams trying to integrate it.

#### What Are Recent G2 Reviews of RiskProfiler - External Threat Exposure Management?

**["Contextual Intelligence That Connects Risk Across the Attack Surface"](https://www.g2.com/survey_responses/riskprofiler-external-threat-exposure-management-review-12719957)**

**Rating:** 5.0/5.0 stars

_— Verified User in Information Technology and Services_

[Read full review](https://www.g2.com/survey_responses/riskprofiler-external-threat-exposure-management-review-12719957)

**["Single Pane of Truth for External Exposure Correlation and Fast Risk Prioritization"](https://www.g2.com/survey_responses/riskprofiler-external-threat-exposure-management-review-12394581)**

**Rating:** 5.0/5.0 stars

_— Verified User in Information Technology and Services_

[Read full review](https://www.g2.com/survey_responses/riskprofiler-external-threat-exposure-management-review-12394581)

### [Check Point Exposure Management](https://www.g2.com/products/check-point-exposure-management/reviews)

Exposure Management is changing how organizations react to cyber risk. Attackers exploit exposed assets, leaked credentials, and misconfigurations within hours, while security teams are left sorting through dashboards, alerts, and disconnected tools. For a limited time only, we are providing an Agentic Exposure Validation Scan at no cost. It delivers proven, evidence-backed findings your team can act on immediately. Request scan here - https://checkpoint.cyberint.com/limited-time-offer-aev-scan Check Point Exposure Management closes that gap by combining billions of external intelligence signals into a Unified Intelligence Fabric. The platform continuously identifies, validates, prioritizes, and safely remediates the exposures attackers are most likely to exploit. With Cyber Asset Attack Surface Management (CAASM), security teams gain a real-time inventory across cloud, SaaS, on-premises infrastructure, endpoints, and identities through 150+ agentless integrations. Unlike traditional vulnerability management, Check Point prioritizes exposures based on real-world exploitability, active threat intelligence, business context, and existing security controls, eliminating duplicate alerts and reducing remediation noise. It does so while maintaining business continuity. Safe-by-design remediation then validates every action before enforcement, enabling capabilities such as virtual patching, IPS activation, configuration hardening, and policy enforcement without disrupting business operations. Organizations using the platform achieve a 93% true positive rate, 12-hour average takedown MTTR, and 504 safe remediations per organization every month. Built around Gartner's Continuous Threat Exposure Management (CTEM) framework, Check Point helps organizations move from visibility to measurable risk reduction. Gartner predicts organizations adopting CTEM with mobilization will experience 50% fewer successful cyberattacks by 2028. Ready to see Exposure Management in action? Get a 15-minute demo: https://l.cyberint.com/exposure-management-demo

**Average Rating:** 4.6/5.0

**Total Reviews:** 169

#### How Do G2 Users Rate Check Point Exposure Management?

- **Vulnerability Intelligence:** 8.8/10 (Category avg: 9.0/10)
- **Continuous Monitoring:** 8.7/10 (Category avg: 9.2/10)
- **Compliance Monitoring:** 8.3/10 (Category avg: 8.6/10)
- **Ease of Admin:** 9.1/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Check Point Exposure Management?

- **Seller:** [Check Point Software Technologies](https://www.g2.com/sellers/check-point-software-technologies)
- **Company Website:** https://www.checkpoint.com/
- **Year Founded:** 1993
- **HQ Location:** Redwood City, CA
- **Twitter:** @CheckPointSW (70,955 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/check-point-software-technologies/ (8,554 employees on LinkedIn®)

#### Who Uses This Product?

- **Who Uses This:** Security Threat Analyst, Cyber Security Analyst
- **Top Industries:** Banking, Financial Services
- **Company Size:** 69% Large, 20% Medium

#### What Do G2 Reviewers Say About Check Point Exposure Management?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **ease of use** of Cyberint, enjoying its intuitive interface and seamless integration into workflows.
- Users value the **comprehensive threat intelligence** of Check Point Exposure Management, enhancing proactive threat detection and response capabilities.
- Users find **Cyberint's threat detection** valuable for enhancing situational awareness and proactive threat response in sensitive environments.
- Users commend the **comprehensive threat intelligence** of Check Point Exposure Management, enhancing detection and response to potential cyber threats.
- Users commend the **responsive and proactive support** from Cyberint, enhancing their ability to manage complex threats effectively.

##### Cons

- Users experience **inefficient alerts** due to occasional false positives, requiring extra time for verification and impacting productivity.
- Users experience **false positives** in alerts, necessitating extra analyst time for validation and slowing response efforts.
- Users experience **inefficient alert systems** , finding the volume of alerts overwhelming and slow threat intel response frustrating.
- Users often face **integration issues** , particularly with centralizing alerts and security tool compatibility.
- Users note the **limited features** of Check Point Exposure Management, particularly regarding alert tuning and third-party integrations.

#### What Are Recent G2 Reviews of Check Point Exposure Management?

**["Streamlined Threat Intelligence Acquisition"](https://www.g2.com/survey_responses/check-point-exposure-management-review-9805489)**

**Rating:** 5.0/5.0 stars

_— Asaf A._

[Read full review](https://www.g2.com/survey_responses/check-point-exposure-management-review-9805489)

**["Cuts Vulnerability Noise with Context and Strong External Surface Visibility"](https://www.g2.com/survey_responses/check-point-exposure-management-review-12515925)**

**Rating:** 4.5/5.0 stars

_— Verified User in Utilities_

[Read full review](https://www.g2.com/survey_responses/check-point-exposure-management-review-12515925)

### [Falcon Security and IT operations](https://www.g2.com/products/falcon-security-and-it-operations/reviews)

CrowdStrike Falcon for IT is a comprehensive IT operations and security solution that combines powerful endpoint management capabilities with enterprise-grade security protection. By unifying IT operations and security functions on a single platform, Falcon for IT enables organizations to streamline device management, automate software deployment, ensure compliance, and maintain robust security across their entire endpoint ecosystem. The solution leverages CrowdStrike's cloud-native architecture to provide real-time visibility, control, and protection for all managed devices, whether on-premises or remote. Designed for modern IT teams, Falcon for IT simplifies daily operations through automated patch management, application inventory, USB device control, and system performance monitoring. The platform's intuitive interface and automated workflows help IT professionals efficiently manage their endpoint environment while maintaining security best practices and reducing operational overhead. Whether managing software updates, deploying applications, or responding to IT incidents, Falcon for IT serves as a unified solution that empowers IT teams to maintain operational excellence while ensuring enterprise-grade security protection across their organization.

**Average Rating:** 4.6/5.0

**Total Reviews:** 21

#### How Do G2 Users Rate Falcon Security and IT operations?

- **Vulnerability Intelligence:** 9.2/10 (Category avg: 9.0/10)
- **Continuous Monitoring:** 9.6/10 (Category avg: 9.2/10)
- **Compliance Monitoring:** 8.9/10 (Category avg: 8.6/10)
- **Ease of Admin:** 9.2/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Falcon Security and IT operations?

- **Seller:** [CrowdStrike](https://www.g2.com/sellers/crowdstrike)
- **Year Founded:** 2011
- **HQ Location:** Sunnyvale, CA
- **Twitter:** @CrowdStrike (110,809 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/2497653/ (11,343 employees on LinkedIn®)
- **Ownership:** NASDAQ: CRWD

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 48% Medium, 43% Large

#### What Do G2 Reviewers Say About Falcon Security and IT operations?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **ease of use** in Falcon Security, facilitating automation and integration for enhanced security and efficiency.
- Users value the **easy integrations** of Falcon Security and IT Operations for seamless SIEM tool connectivity and enhanced visibility.
- Users find the **easy setup** of Falcon Security crucial for efficiently managing security and compliance across multiple devices.
- Users value the **advanced security capabilities** of Falcon Security, effectively stopping breaches and protecting identities.
- Users value the **comprehensive security insights** and ease of use provided by Falcon Security and IT Operations.

##### Cons

- Users find Falcon Security and IT operations to be **expensive** , making them hesitant to recommend it widely.
- Users find that **false positives** in Falcon result in lengthy investigations and additional manual work for remediation.
- Users experience **slow loading** times which hinder efficient investigation and prolonged search processes within Falcon Security.
- Users often face **slow performance** during investigations with Falcon Security, leading to prolonged search times for malicious activity.
- Users report **bugs in processing and installation** that hinder the overall functionality and experience of Falcon Security.

#### What Are Recent G2 Reviews of Falcon Security and IT operations?

**["Visibility, Traceability and Remediation for Vulnerability and Threat Protection all in one solution"](https://www.g2.com/survey_responses/falcon-security-and-it-operations-review-12029947)**

**Rating:** 5.0/5.0 stars

_— Jose M._

[Read full review](https://www.g2.com/survey_responses/falcon-security-and-it-operations-review-12029947)

**["Intuitive UI, Top-Notch Integrations, and World-Class Crowdstrike Support"](https://www.g2.com/survey_responses/falcon-security-and-it-operations-review-12614724)**

**Rating:** 5.0/5.0 stars

_— Drew L._

[Read full review](https://www.g2.com/survey_responses/falcon-security-and-it-operations-review-12614724)

### [Intruder](https://www.g2.com/products/intruder/reviews)

Intruder's continuous exposure management platform helps security, IT, and engineering teams stop breaches before they start. By unifying AI penetration testing, attack surface monitoring, cloud security, and vulnerability management in one intuitive platform, Intruder gives stretched teams an always-on security source of truth. Our approach focuses on continuous automated scanning using expertise and agentic solutions to ensure that the findings we deliver are accurate, prioritized by real-world risk, and ready to act on. Founded in 2015 by Chris Wallis, a former ethical hacker turned corporate blue teamer, Intruder is now protecting over 3,000 companies worldwide. Intruder has been awarded multiple accolades, was selected for GCHQ’s Cyber Accelerator, included on Deloitte’s Tech Fast 50 2023 list as the fastest-growing cybersecurity company in the UK and was named in G2’s 2026 Best Software Awards.

**Average Rating:** 4.8/5.0

**Total Reviews:** 209

#### How Do G2 Users Rate Intruder?

- **Vulnerability Intelligence:** 9.5/10 (Category avg: 9.0/10)
- **Continuous Monitoring:** 9.6/10 (Category avg: 9.2/10)
- **Compliance Monitoring:** 9.3/10 (Category avg: 8.6/10)
- **Ease of Admin:** 9.5/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Intruder?

- **Seller:** [Intruder](https://www.g2.com/sellers/intruder)
- **Company Website:** https://www.intruder.io
- **Year Founded:** 2015
- **HQ Location:** London
- **Twitter:** @intruder\_io (979 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/6443623/ (83 employees on LinkedIn®)

#### Who Uses This Product?

- **Who Uses This:** CTO, Director
- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 57% Small, 36% Medium

#### What Do G2 Reviewers Say About Intruder?

_AI-generated summary from verified user reviews_

##### Pros

- Users find the **ease of use** of Intruder perfect for configuring and scanning cloud resources efficiently.
- Users appreciate the **easy configuration of vulnerability detection** , making it simple to secure cloud resources efficiently.
- Users value the **exceptional customer support** from Intruder, highlighting quick responses and friendliness during their experience.
- Users value Intruder's **easy-to-use interface** and seamless integration, enhancing their cybersecurity management experience significantly.
- Users value the **easy configuration** of Intruder, allowing timely identification of vulnerabilities across cloud resources.

##### Cons

- Users find the service to be **expensive** , suggesting improvements in pricing models for better value.
- Users report **slow scanning** as Intruder misses some vulnerabilities and lacks integration with comprehensive testing tools.
- Users struggle with the **licensing model** of Intruder, finding it complex and not immediately intuitive.
- Users experience **false positives** from Intruder, leading to confusion between critical and lower-risk vulnerabilities.
- Users find the **limited features** of Intruder frustrating, especially regarding reporting flexibility and license understanding.

#### What Are Recent G2 Reviews of Intruder?

**["Reliable Service with Flexible Plans and Strong Support"](https://www.g2.com/survey_responses/intruder-review-13110046)**

**Rating:** 4.0/5.0 stars

_— Ossama M._

[Read full review](https://www.g2.com/survey_responses/intruder-review-13110046)

**["Revolutionized Our Vulnerability Management with Real-Time Insights"](https://www.g2.com/survey_responses/intruder-review-13100568)**

**Rating:** 4.5/5.0 stars

_— Verified User_

[Read full review](https://www.g2.com/survey_responses/intruder-review-13100568)

### [Tenable Nessus](https://www.g2.com/products/tenable-nessus/reviews)

Built for security practitioners, by security professionals, Nessus products by Tenable are the de-facto industry standard for vulnerability assessment. Nessus performs point-in-time assessments to help security professionals quickly and easily identify and fix vulnerabilities, including software flaws, missing patches, malware, and misconfigurations - across a variety of operating systems, devices, and applications. With features such as pre-built policies and templates, customizable reporting, group “snooze” functionality, and real-time updates, Nessus is designed to make vulnerability assessment simple, easy, and intuitive. The result: less time and effort to assess, prioritize, and remediate issues.

**Average Rating:** 4.5/5.0

**Total Reviews:** 290

#### How Do G2 Users Rate Tenable Nessus?

- **Vulnerability Intelligence:** 10.0/10 (Category avg: 9.0/10)
- **Continuous Monitoring:** 9.2/10 (Category avg: 9.2/10)
- **Compliance Monitoring:** 8.6/10 (Category avg: 8.6/10)
- **Ease of Admin:** 8.9/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Tenable Nessus?

- **Seller:** [Tenable](https://www.g2.com/sellers/tenable)
- **Company Website:** https://www.tenable.com/
- **HQ Location:** Columbia, MD
- **Twitter:** @TenableSecurity (87,752 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/25452/ (2,350 employees on LinkedIn®)
- **Ownership:** NASDAQ: TENB

#### Who Uses This Product?

- **Who Uses This:** Security Engineer, Network Engineer
- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 40% Medium, 34% Large

#### What Do G2 Reviewers Say About Tenable Nessus?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **vulnerability identification** capabilities of Tenable Nessus, highlighting its accuracy and comprehensive coverage for security management.
- Users value the **advanced vulnerability detection** capabilities of Tenable Nessus, enhancing their security risk management effectively.
- Users value the **ease of use** of Tenable Nessus, appreciating its simple setup and user-friendly interface.
- Users value the **automated scanning** capabilities of Tenable Nessus, benefiting from its comprehensive and up-to-date vulnerability checks.
- Users commend the **comprehensive scanning capabilities** of Tenable Nessus, alongside its robust reporting and automation features.

##### Cons

- Users note the **slow scanning** process, especially in large environments, significantly impacting resource usage and production times.
- Users find the **cost of running and maintaining Tenable Nessus** to be extensively high and burdensome.
- Users find **limited features** in Tenable Nessus, including restrictions on hosts, scans, and mobile application testing.
- Users find the **complexity** of Tenable Nessus challenging, especially with advanced features requiring significant technical knowledge.
- Users report that Nessus generates **false positives** , resulting in extra workload and hindering effective security management.

#### What Are Recent G2 Reviews of Tenable Nessus?

**["Reliable and Efficient Vulnerability Management Tool"](https://www.g2.com/survey_responses/tenable-nessus-review-12989192)**

**Rating:** 5.0/5.0 stars

_— Mohsin H._

[Read full review](https://www.g2.com/survey_responses/tenable-nessus-review-12989192)

**["Self-Contained Nessus Scanning with Full Control in Offline Environments"](https://www.g2.com/survey_responses/tenable-nessus-review-12937668)**

**Rating:** 4.0/5.0 stars

_— Verified User in Higher Education_

[Read full review](https://www.g2.com/survey_responses/tenable-nessus-review-12937668)

### [SentinelOne Singularity Cloud Security](https://www.g2.com/products/sentinelone-singularity-cloud-security/reviews)

Singularity Cloud Security is SentinelOne’s comprehensive, cloud-native application protection platform (CNAPP). It combines the best of agentless insights with AI-powered threat protection, to secure and protect your multi-cloud infrastructure, services, and containers from build time to runtime. SentinelOne’s CNAPP applies an attacker’s mindset to help security practitioners better prioritize their remediation tasks with evidence-backed Verified Exploit Paths™. The efficient and scalable runtime protection, proven over 5 years and trusted by many of the world’s leading cloud enterprises, harnesses local, autonomous AI engines to detect and thwart runtime threats in real-time. CNAPP data and workload telemetry is recorded to SentinelOne’s unified security lake, for easy access and investigation.

**Average Rating:** 4.9/5.0

**Total Reviews:** 121

#### How Do G2 Users Rate SentinelOne Singularity Cloud Security?

- **Vulnerability Intelligence:** 9.7/10 (Category avg: 9.0/10)
- **Continuous Monitoring:** 9.9/10 (Category avg: 9.2/10)
- **Compliance Monitoring:** 9.8/10 (Category avg: 8.6/10)
- **Ease of Admin:** 9.7/10 (Category avg: 9.0/10)

#### Who Is the Company Behind SentinelOne Singularity Cloud Security?

- **Seller:** [SentinelOne](https://www.g2.com/sellers/sentinelone)
- **Company Website:** https://www.sentinelone.com
- **Year Founded:** 2013
- **HQ Location:** Mountain View, CA
- **Twitter:** @SentinelOne (57,863 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/2886771/ (3,174 employees on LinkedIn®)

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Financial Services
- **Company Size:** 58% Medium, 30% Large

#### What Do G2 Reviewers Say About SentinelOne Singularity Cloud Security?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **real-time alert system** of SentinelOne Singularity, enhancing proactive threat management and security.
- Users find the **user-friendly interface** of SentinelOne Singularity Cloud Security makes managing security straightforward for everyone.
- Users value the **automated vulnerability detection** in PingSafe, enhancing proactive cloud security management effortlessly.
- Users appreciate the **real-time alert system** of PingSafe, enhancing proactive cloud security management effectively.
- Users commend SentinelOne Singularity Cloud Security for its **ease of use and strong visibility** across cloud environments.

##### Cons

- Users feel that SentinelOne Singularity Cloud Security has a **complex setup** that can be challenging for less technical users.
- Users experience **ineffective alerts** that require tuning, leading to confusion and potential oversight in security management.
- Users find the **complex setup** of SentinelOne Singularity Cloud Security challenging, requiring time for effective configuration and tuning.
- Users find **difficult configuration** of SentinelOne Singularity Cloud Security requires time and experience for optimal setup and tuning.
- Users find the **UI to be clunky** , making the platform's complexity and learning curve more challenging.

#### What Are Recent G2 Reviews of SentinelOne Singularity Cloud Security?

**["At the heart of the Singularity Platform is Singularity Cloud Security"](https://www.g2.com/survey_responses/sentinelone-singularity-cloud-security-review-13146859)**

**Rating:** 4.5/5.0 stars

_— Jawahar A._

[Read full review](https://www.g2.com/survey_responses/sentinelone-singularity-cloud-security-review-13146859)

**["Clear Cloud Visibility with SentinelOne Singularity Cloud Security"](https://www.g2.com/survey_responses/sentinelone-singularity-cloud-security-review-13147820)**

**Rating:** 5.0/5.0 stars

_— Adaku O._

[Read full review](https://www.g2.com/survey_responses/sentinelone-singularity-cloud-security-review-13147820)

### [Halo Security](https://www.g2.com/products/halo-security/reviews)

Halo Security is an External Attack Surface Management (EASM) platform that helps organizations discover, monitor, and secure their external digital footprint against cyber threats. The solution enables security teams to view their infrastructure from an attacker's perspective, providing continuous visibility into vulnerabilities, exposed assets, and potential security risks across web applications, cloud resources, and third-party services. Halo Security was founded in 2013 and is headquartered in the United States. With a team of experienced security professionals, the company has assisted thousands of organizations in strengthening their security posture. Their fully US-based operations have earned the trust of organizations across various industries seeking to protect their digital assets from evolving cyber threats. The platform combines automated discovery with expert analysis to deliver comprehensive attack surface monitoring, vulnerability detection, and technology identification. Key features include continuous asset discovery that automatically identifies unknown digital resources, real-time alerts for newly discovered vulnerabilities delivered via integrations with dozens of tools, technology fingerprinting to detect potential vulnerabilities in third-party services, and subdomain takeover protection that identifies dangerous DNS misconfigurations before attackers can exploit them. Halo Security empowers organizations to eliminate blind spots in their attack surface, prioritize remediation efforts based on real risk, and secure their external-facing assets against increasingly sophisticated cyber threats. The solution solves critical challenges for security teams by providing visibility into forgotten or unknown assets, detecting vulnerabilities in third-party platforms, and alerting teams to changes that introduce security risks. Whether managing a growing digital footprint or meeting compliance requirements, Halo Security provides the visibility and tools needed to maintain a strong security posture in today's complex threat landscape.

**Average Rating:** 4.5/5.0

**Total Reviews:** 56

#### How Do G2 Users Rate Halo Security?

- **Vulnerability Intelligence:** 8.5/10 (Category avg: 9.0/10)
- **Continuous Monitoring:** 9.4/10 (Category avg: 9.2/10)
- **Compliance Monitoring:** 9.3/10 (Category avg: 8.6/10)
- **Ease of Admin:** 8.4/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Halo Security?

- **Seller:** [Halo Security](https://www.g2.com/sellers/halo-security)
- **Company Website:** https://www.halosecurity.com/
- **Year Founded:** 2013
- **HQ Location:** Miami Beach, US
- **Twitter:** @halohackers (84 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/halo-security (34 employees on LinkedIn®)

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Retail
- **Company Size:** 54% Medium, 23% Large

#### What Do G2 Reviewers Say About Halo Security?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **ease of use** of Halo Security, enjoying a seamless experience and efficient setup process.
- Users value the **real-time notifications** from Halo Security, enabling proactive risk management and enhanced security awareness.
- Users value the **easy integrations** of Halo Security, which enhance workflow and streamline security management effortlessly.
- Users commend Halo Security for its **comprehensive features** and effective attack surface scanning capability, delivering essential insights for security.
- Users value Halo Security for its **comprehensive attack surface scanning** , enhancing overall security and adaptability for businesses.

##### Cons

- Users find that **difficult navigation** within the Halo Security portal can be quite frustrating at times.
- Users find the **API unintuitive** , noting that setting up multiple scan targets involves too many steps and inefficiencies.
- Users find the **complex setup** of Halo Security cumbersome, making it less efficient to configure multiple scan targets.
- Users feel the **complex UI** of Halo Security makes navigation difficult and needs significant improvement for better usability.
- Users find the **dashboard navigation uncomfortable** due to the new design that transforms dashboards into reports.

#### What Are Recent G2 Reviews of Halo Security?

**["Comprehensive Security Solution with Minor Tweaks Needed"](https://www.g2.com/survey_responses/halo-security-review-12611793)**

**Rating:** 4.5/5.0 stars

_— shalin K._

[Read full review](https://www.g2.com/survey_responses/halo-security-review-12611793)

**["Powerful Integrations and Deep Scans, But UI/UX Needs Improvement"](https://www.g2.com/survey_responses/halo-security-review-11852064)**

**Rating:** 4.0/5.0 stars

_— Oleksandr M._

[Read full review](https://www.g2.com/survey_responses/halo-security-review-11852064)

### [Recorded Future](https://www.g2.com/products/recorded-future/reviews)

Recorded Future is the world’s largest threat intelligence company. Recorded Future’s Intelligence Cloud provides end-to-end intelligence across adversaries, infrastructure, and targets. Indexing the internet across the open web, dark web, and technical sources, Recorded Future provides real-time visibility into an expanding attack surface and threat landscape, empowering clients to act with speed and confidence to reduce risk and securely drive business forward. Headquartered in Boston with offices and employees around the world, Recorded Future works with over 1,900 businesses and government organizations across 80 countries to provide real-time, unbiased and actionable intelligence. Learn more at recordedfuture.com.

**Average Rating:** 4.6/5.0

**Total Reviews:** 225

#### How Do G2 Users Rate Recorded Future?

- **Vulnerability Intelligence:** 8.6/10 (Category avg: 9.0/10)
- **Continuous Monitoring:** 7.9/10 (Category avg: 9.2/10)
- **Compliance Monitoring:** 7.6/10 (Category avg: 8.6/10)
- **Ease of Admin:** 8.5/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Recorded Future?

- **Seller:** [Recorded Future](https://www.g2.com/sellers/recorded-future)
- **Company Website:** https://www.recordedfuture.com
- **Year Founded:** 2009
- **HQ Location:** Somerville, US
- **Twitter:** @RecordedFuture (107,965 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/678036/ (1,150 employees on LinkedIn®)

#### Who Uses This Product?

- **Who Uses This:** Cyber Threat Intelligence Analyst, Threat Intelligence Analyst
- **Top Industries:** Financial Services, Information Technology and Services
- **Company Size:** 66% Large, 20% Medium

#### What Do G2 Reviewers Say About Recorded Future?

_AI-generated summary from verified user reviews_

##### Pros

- Users find Recorded Future's **ease of use** exceptional, appreciating its intuitive interface and centralized features for daily tasks.
- Users value the **enhanced customization features** of Recorded Future, allowing for detailed insights and tailored alerts.
- Users value the **comprehensive insights** provided by Recorded Future, enhancing their understanding of data relationships and intel.
- Users highlight the **excellent threat detection** capabilities of Recorded Future, praising its ease of use and robust support.
- Users benefit from the **precise and actionable threat intelligence** provided by Recorded Future, enhancing security management.

##### Cons

- Users find the **complex navigation** of Recorded Future challenging, making it hard to create accurate queries.
- Users find Recorded Future to be **expensive** , making budgeting tricky for smaller teams despite its critical role in security.
- Users find the **learning curve steep** , requiring significant time investment and commitment to fully understand the platform.
- Users find the **difficult learning curve** of Recorded Future challenging, requiring significant time and expertise for effective use.
- Users experience significant **inaccuracy issues** with Recorded Future, affecting the reliability of alerts and predictions.

#### What Are Recent G2 Reviews of Recorded Future?

**["Recorded Future Delivers Actionable Threat Intelligence and Proactive Alerts"](https://www.g2.com/survey_responses/recorded-future-review-12940427)**

**Rating:** 4.5/5.0 stars

_— Luciana S._

[Read full review](https://www.g2.com/survey_responses/recorded-future-review-12940427)

**["Real-Time, Actionable Threat Intelligence with Seamless Security Tool Compatibility"](https://www.g2.com/survey_responses/recorded-future-review-12733983)**

**Rating:** 4.5/5.0 stars

_— Nijat I._

[Read full review](https://www.g2.com/survey_responses/recorded-future-review-12733983)

### [Scrut Automation](https://www.g2.com/products/scrut-automation/reviews)

Scrut Automation is a leading compliance automation platform designed for fast-growing businesses looking to streamline security, risk, and compliance without disrupting operations. It centralizes compliance functions, automates evidence collection, and simplifies audits, helping security teams reduce compliance efforts. Scrut supports 70+ out-of-the-box frameworks, including SOC 2, ISO 27001, GDPR, HIPAA, and PCI-DSS, with the flexibility to add custom frameworks for unique regulatory needs. With 150+ integrations, Scrut seamlessly integrates into your security and IT ecosystem, automating compliance, eliminating manual work, and improving risk visibility. Join 2500+ industry leaders who trust Scrut for simplified compliance and risk management. Schedule a demo today.

**Average Rating:** 4.9/5.0

**Total Reviews:** 1,311

#### How Do G2 Users Rate Scrut Automation?

- **Vulnerability Intelligence:** 9.5/10 (Category avg: 9.0/10)
- **Continuous Monitoring:** 9.5/10 (Category avg: 9.2/10)
- **Compliance Monitoring:** 9.5/10 (Category avg: 8.6/10)
- **Ease of Admin:** 9.6/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Scrut Automation?

- **Seller:** [Scrut Automation](https://www.g2.com/sellers/scrut-automation)
- **Company Website:** https://www.scrut.io/
- **Year Founded:** 2022
- **HQ Location:** Palo Alto, US
- **Twitter:** @scrutsocial (120 Twitter followers)
- **LinkedIn® Page:** https://in.linkedin.com/company/scrut-automation (233 employees on LinkedIn®)

#### Who Uses This Product?

- **Who Uses This:** CTO, CEO
- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 50% Small, 48% Medium

#### What Do G2 Reviewers Say About Scrut Automation?

_AI-generated summary from verified user reviews_

##### Pros

- Users find Scrut Automation's **ease of use** invaluable for tracking tasks and maintaining team access effectively.
- Users commend the **outstanding customer support** of Scrut Automation, highlighting teamwork and effective guidance throughout the process.
- Users appreciate the **exceptional support and guidance** from Scrut's team, significantly enhancing their compliance experience.
- Users value the **exceptional compliance management** by Scrut Automation, finding it efficient and cost-effective for SOC 2 processes.
- Users value the **supportive compliance assistance** from Scrut Automation, enhancing clarity and ease during audits.

##### Cons

- Users feel that Scrut Automation requires **significant improvements** in UI clarity and documentation quality for better usability.
- Users note the **missing features** in Scrut Automation, particularly in auto-answering questionnaires and report customization.
- Users face **technical issues** with complex modules and occasional login problems, impacting the overall user experience.
- Users find the **learning curve steep** , making navigation and understanding challenging for newcomers to Scrut Automation.
- Users express concerns over **lack of clarity** in test results and policy processes, complicating their experience with Scrut Automation.

#### What Are Recent G2 Reviews of Scrut Automation?

**["Automates Compliance and Evidence Collection — Boosts Audit Readiness and Efficiency"](https://www.g2.com/survey_responses/scrut-automation-review-13049695)**

**Rating:** 4.0/5.0 stars

_— Ravindra N._

[Read full review](https://www.g2.com/survey_responses/scrut-automation-review-13049695)

**["Transforming Compliance and Security Management with Scrut Automation"](https://www.g2.com/survey_responses/scrut-automation-review-10499291)**

**Rating:** 5.0/5.0 stars

_— Karan A._

[Read full review](https://www.g2.com/survey_responses/scrut-automation-review-10499291)

### [Bitsight](https://www.g2.com/products/bitsight/reviews)

Bitsight is the global leader in cyber risk intelligence, leveraging advanced AI to empower organizations with precise insights derived from the industry’s most extensive external cybersecurity dataset. With more than 3,500 customers and over 68,000 organizations active on its platform, Bitsight delivers real-time visibility into cyber risk and threat exposure, enabling teams to rapidly identify vulnerabilities, detect emerging threats, prioritize remediation, and mitigate risks across their extended attack surface. Bitsight proactively uncovers security gaps across infrastructure, cloud environments, digital identities, and third- and fourth-party ecosystems. From security operations and governance teams to executive boardrooms, Bitsight provides the unified intelligence backbone required to confidently manage cyber risk and address exposures before they impact performance.

**Average Rating:** 4.5/5.0

**Total Reviews:** 76

#### How Do G2 Users Rate Bitsight?

- **Vulnerability Intelligence:** 8.3/10 (Category avg: 9.0/10)
- **Continuous Monitoring:** 9.0/10 (Category avg: 9.2/10)
- **Compliance Monitoring:** 8.8/10 (Category avg: 8.6/10)
- **Ease of Admin:** 8.8/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Bitsight?

- **Seller:** [Bitsight](https://www.g2.com/sellers/bitsight)
- **Company Website:** https://www.bitsight.com/
- **Year Founded:** 2011
- **HQ Location:** Boston, MA
- **Twitter:** @BitSight (4,503 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/bitsight/ (741 employees on LinkedIn®)

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Hospital & Health Care
- **Company Size:** 71% Large, 24% Medium

#### What Do G2 Reviewers Say About Bitsight?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **comprehensive security posture** provided by Bitsight, enhancing protection for their organization and suppliers.
- Users value the **comprehensive security posture** provided by Bitsight, enhancing management of cyber risk and third-party suppliers.
- Users find Bitsight's **ease of use** remarkable, enjoying its intuitive interface and seamless integration with various platforms.
- Users appreciate the **detailed insights** and **collaboration features** of Bitsight, enhancing vendor risk management effectively.
- Users praise the **fantastic customer support** of Bitsight, highlighting their knowledge and eagerness to assist effectively.

##### Cons

- Users find **missing features** in Bitsight, such as lack of transparency and inadequate questionnaire management, frustrating overall.
- Users criticize the **lack of clarity** in BitSight's scoring mechanism and experience occasional inaccuracies in domain reporting.
- Users experience **poor customer support** and inadequate documentation, hindering effective use of the Bitsight platform.
- Users experience **poor notifications** with delayed alerts and irrelevant historical breaches, impacting timely critical monitoring.
- Users experience **slow loading** times and timeouts that hinder workflow and overall satisfaction with Bitsight.

#### What Are Recent G2 Reviews of Bitsight?

**["Finds Public-Facing Security Flaws and Clearly Shows How to Fix Them"](https://www.g2.com/survey_responses/bitsight-review-12760320)**

**Rating:** 4.5/5.0 stars

_— Verified User in Computer Software_

[Read full review](https://www.g2.com/survey_responses/bitsight-review-12760320)

**["Effortless Cyber Risk Scoring for Proactive Security"](https://www.g2.com/survey_responses/bitsight-review-12098656)**

**Rating:** 4.0/5.0 stars

_— Matthew P._

[Read full review](https://www.g2.com/survey_responses/bitsight-review-12098656)

- &lsaquo; Prev‹ Prev
- 1
- [2](/categories/attack-surface-management?order=g2_score&page=2#product-list)
- [3](/categories/attack-surface-management?order=g2_score&page=3#product-list)
- [4](/categories/attack-surface-management?order=g2_score&page=4#product-list)
- [5](/categories/attack-surface-management?order=g2_score&page=5#product-list)
- …
- [11](/categories/attack-surface-management?order=g2_score&page=11#product-list)
- [12](/categories/attack-surface-management?order=g2_score&page=12#product-list)
- [Next &rsaquo;Next ›](/categories/attack-surface-management?order=g2_score&page=2#product-list)

Spotlight Categories

[Integration Platform as a Service (iPaaS) Solutions](https://www.g2.com/categories/ipaas)

[Application Performance Monitoring (APM) Tools](https://www.g2.com/categories/application-performance-monitoring-apm)

[Product Analytics Software](https://www.g2.com/categories/product-analytics)

[Inbound Call Tracking Software](https://www.g2.com/categories/inbound-call-tracking)

[Virtual Data Room Software](https://www.g2.com/categories/virtual-data-room-vdr)

Similar Categories

- [Cybersecurity Professional Development](/categories/cybersecurity-professional-development)
- [Exposure Management Platforms](/categories/exposure-management-platforms)

- [Patch Management](/categories/patch-management)
- [Risk-Based Vulnerability Management](/categories/risk-based-vulnerability-management)

- [Secure Code Training](/categories/secure-code-training)
- [Security Awareness Training](/categories/security-awareness-training)

[Browse Attack Surface Management Themes](/categories/attack-surface-management/themes)

 ![Brandon Summers-Miller](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Brandon Summers-Miller")
BS

Researched and written by [Brandon Summers-Miller](https://research.g2.com/insights/author/brandon-summers-miller)

Updated April 10, 2026

Attack surface management software continuously monitors networks, cloud services, assets, and internet-facing infrastructure to identify, prioritize, and remediate vulnerabilities, automating discovery of misconfigurations, weak credentials, and shadow IT to minimize organizational risk in real time.

### Core Capabilities of Attack Surface Management Software

To qualify for inclusion in the Attack Surface Management category, a product must:

- Monitor network, cloud, and application components for vulnerabilities
- Automate discovery of IPv4, IPv6, cloud, and IoT assets
- Provide risk-based prioritization for remediation
- Facilitate remediation efforts based on prioritized risks

### Common Use Cases for Attack Surface Management Software

Security teams use attack surface management tools to maintain continuous visibility into their external-facing exposure. Common use cases include:

- Discovering and inventorying all internet-facing assets including cloud resources, shadow IT, and IoT devices
- Identifying misconfigurations and weak credentials across infrastructure before attackers can exploit them
- Integrating threat data into broader security workflows to automate remediation and continuously update defenses

### How Attack Surface Management Software Differs from Other Tools

Attack surface management expands on the functionality of code-focused [vulnerability scanners](https://www.g2.com/categories/vulnerability-scanner) by addressing infrastructural and internet-facing assets holistically, including cloud services, third-party exposures, and shadow IT, rather than scanning specific applications or known CVEs. While vulnerability scanners identify known weaknesses in defined targets, attack surface management tools continuously discover and monitor the full breadth of an organization's external exposure.

### Insights from G2 on Attack Surface Management Software

Based on category trends on G2, continuous asset discovery and risk-based prioritization stand out as the most impactful capabilities. These platforms deliver improved visibility into unknown exposures and faster remediation of critical risks as primary outcomes of adoption.

Top Tools at a Glance

| 

 | 

Agentless multi-cloud attack-path prioritization

 | 

User Review

"Unmatched Security Insights, Excellent Reporting, and Strong Post-Sales Support"

 |
| 

 | 

External attack surface monitoring with dark-web intelligence

 | 

User Review

"Broad, Cost-Effective Threat Intelligence with Smooth Onboarding and Easy Integrations"

 |
| 

 | 

External threat detection with dark-web takedown

 | 

User Review

"Proactive Digital Risk Intelligence Made Simple"

 |
| 

 | 

Zero-touch external attack surface discovery with managed takedowns

 | 

User Review

"CTM360 Delivers Powerful, Unified Visibility Into External Digital Risks"

 |
| 

 | 

Unified dark-web-to-attack-surface threat correlation

 | 

User Review

"AI-Enabled, User-Friendly Platform for Continuous Threat Monitoring"

 |
| 

 | 

Unified external attack surface and threat correlation

 | 

User Review

"Single Pane of Truth for External Exposure Correlation and Fast Risk Prioritization"

 |
| 

 | 

External threat exposure with dark-web intelligence

 | 

User Review

"Cuts Vulnerability Noise with Context and Strong External Surface Visibility"

 |
| 

 | 

Sensor-based attack surface visibility and remediation

 | 

User Review

"Visibility, Traceability and Remediation for Vulnerability and Threat Protection all in one solution"

 |
| 

 | 

Continuous external attack surface scanning with emerging-threat auto-scans

 | 

User Review

"Reliable Service with Flexible Plans and Strong Support"

 |
| 

 | 

Credentialed network scanning with prioritized remediation guidance

 | 

User Review

"Reliable and Efficient Vulnerability Management Tool"

 |

* * *

Show More