What is our primary use case?
It's a product that combines Tenable.io vulnerability management, endpoint security, and cloud security, covering cloud application vulnerabilities, web application vulnerabilities, and identity management systems.
With Tenable.one, we can manage vulnerabilities and view our entire risk scoring. We can see information about our cloud infrastructure, web applications, endpoints, and even external logins from outside the corporate network.
What is most valuable?
We can easily identify the approach being used or the software running on those external devices. Organizations can also view live CVEs (Common Vulnerabilities and Exposures) with compliance information, which helps with risk and governance reporting. It covers other compliance data as well, like HIPAA and ISO standards. The scoring provides live data, whether it's from the cloud or application APIs.
It covers the entire IT environment. There's also tagging and grouping, so we can group and tag critical assets. We can also set up project alerts and send them via email.
The Tenable reporting part is very user-friendly. We can generate reports or customize them within the tool. I would rate it a nine out of ten.
What needs improvement?
Tenable has to improve its cloud solution. They're only supporting AWS and Azure.
Tenable partially supports Google Cloud but not fully. Tenable needs to give private cloud also.
So, Tenable needs to provide a better way to manage private clouds. They have to cover all cloud environments.
For how long have I used the solution?
I've been using it for the last two years. I'm a partner and I also support customers.
What do I think about the stability of the solution?
It is a 100% stable product.
What do I think about the scalability of the solution?
It's very scalable. We can monitor each and every person and asset. We have performance metrics, and we can focus on specific areas.
How are customer service and support?
The customer service and support are good.
How would you rate customer service and support?
How was the initial setup?
For me, the setup has been an easy process. It takes three days per segment. Per segment means I mainly get cloud security's individual part, Tenable.io's individual part and the web application scanning (WAS) is also an individual part.
One guy is enough if he has an awareness of the cloud, the application, and its infrastructure. For Tenable, we need support from three domains.
Once we install Tenable in the studio, all the scanning is taken care of. No need to maintain anything, and one network person is enough for that. And SOC.
What was our ROI?
It's saving many things. If you go for each individual solution, for example, each cloud platform, web application, server, or endpoint has a different solution. Many products provide different solutions for each platform. But Tenable consolidates four into a single solution. From that point of view, it's cheaper than some other third-party vendors.
What's my experience with pricing, setup cost, and licensing?
It's very expensive. I would give it an eight out of ten.
What other advice do I have?
Overall, I would rate it an eight out of ten.