Verified User in Computer & Network Security
AC
Small-Business (50 or fewer emp.)
"Fast, Agentless Cloud Risk Visibility with Powerful Identity & Entitlement Insights"
5/5
What do you like best about Tenable Cloud Security?

What I like most about Tenable Cloud Security is how quickly it gives us a clear, unified view of risk across our cloud environments. Onboarding was fast and agentless, and within a short time we had visibility into our AWS, Azure, and GCP accounts without deploying anything on our workloads.

The identity and entitlement analysis is the standout feature for me. It surfaces excessive permissions, unused access, and risky identity combinations that are extremely difficult to uncover manually, and it also generates least-privilege policy recommendations we can act on immediately. The attack-path and “toxic combination” views are genuinely useful for prioritization. Rather than drowning in thousands of findings, we can focus on the handful of exposures that actually lead to sensitive data or critical resources.

I also appreciate how well it fits into the broader Tenable ecosystem alongside Vulnerability Management and Security Center, so cloud misconfigurations, workload vulnerabilities, and identity risks show up in one place with consistent context. Compliance reporting against common frameworks saves our team significant audit-prep time, and the IaC scanning helps us catch issues before they reach production. Overall, it has made our cloud security posture more measurable and has kept our remediation work much more focused. Review collected by and hosted on G2.com.

What do you dislike about Tenable Cloud Security?

The biggest downside for me is the learning curve. The platform is very capable, but the interface feels dense, and it takes time to learn where everything lives and how to tune policies effectively. New team members typically need a walkthrough before they can be productive. The initial alert volume can also be high; until you tune exclusions and severity thresholds for your environment, some findings come across as noisy or simply low priority.

Integration with the rest of the Tenable portfolio has improved, but it still doesn’t always feel completely seamless. We sometimes have to jump between consoles, and the data and terminology don’t line up perfectly between cloud and on-prem views. Dashboard and report customization is also more limited than I’d like, especially when trying to tailor executive-level views.

Pricing is on the premium side, which can be a hurdle for smaller teams or organizations that are early in their cloud journey. Licensing can also take some effort to understand as environments grow. Finally, some documentation lags behind new features, so we occasionally rely on support to clarify expected behavior. That said, support has been responsive, and none of these issues outweigh the value the product provides. Review collected by and hosted on G2.com.

See what 41 reviewers think of Tenable Cloud Security

4.6 out of 5 · Verified reviews from real users

Read all reviews