No more typing reviews! Try our Samantha, our new voice AI agent.

Alert Logic MDR vs Amazon Inspector comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Mar 11, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Qualys TotalCloud
Sponsored
Ranking in Vulnerability Management
11th
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
46
Ranking in other categories
Container Security (11th), Cloud Workload Protection Platforms (CWPP) (8th), Cloud Security Posture Management (CSPM) (8th), SaaS Security Posture Management (SSPM) (2nd), Cloud-Native Application Protection Platforms (CNAPP) (7th)
Alert Logic MDR
Ranking in Vulnerability Management
42nd
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
14
Ranking in other categories
SOC as a Service (3rd), Managed Detection and Response (MDR) (18th)
Amazon Inspector
Ranking in Vulnerability Management
27th
Average Rating
8.2
Reviews Sentiment
6.3
Number of Reviews
9
Ranking in other categories
IT Vendor Risk Management (6th)
 

Mindshare comparison

As of September 2026, in the Vulnerability Management category, the mindshare of Qualys TotalCloud is 1.2%, up from 1.0% compared to the previous year. The mindshare of Alert Logic MDR is 0.8%, up from 0.5% compared to the previous year. The mindshare of Amazon Inspector is 1.0%, down from 2.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Vulnerability Management Mindshare Distribution
ProductMindshare (%)
Qualys TotalCloud1.2%
Amazon Inspector1.0%
Alert Logic MDR0.8%
Other97.0%
Vulnerability Management
 

Featured Reviews

reviewer2859021 - PeerSpot reviewer
Sr Security Engineer at a tech vendor with 5,001-10,000 employees
Risk-based triage has transformed container security and now prioritizes high-impact threats
The best features Qualys TotalCloud offers currently include managing cloud infrastructure and container security while facing major challenges such as alert fatigue. Traditional vulnerability scanners flag hundreds of CVEs on short-lived Kubernetes containers, some of which have no internet exposure or are gone before we can even triage them. I leverage Qualys TotalCloud to move beyond static CVSS. I use it to implement runtime exposure, correlation risk reprioritization, and shift-left integration. This notifies developers to fix a base image upstream rather than patching live ephemeral instances. In my work with cloud and container security, the biggest operational hurdle was alert fatigue. I use Qualys to shift left from static CVSS severity to context-aware risk prioritization. I correlated raw vulnerability data with real-time risk factors such as public network exposure, active runtime execution, or overly permissive IAM roles. This allows us to immediately drop the priority of isolated containers and escalate lower-severity CVEs that sit on an exposed, high-risk path. We can map these findings directly back to our CI/CD pipelines so developers can patch the root base images upstream. We have drastically cut down the signal-to-noise ratio, saved a lot of manual hours doing triage work, and ensured engineering effort goes directly towards high-impact risk reduction.
reviewer2865402 - PeerSpot reviewer
Soc Analyst at a media company with 501-1,000 employees
Endpoint monitoring has become faster and has reduced alert response time for our clients
The best features that Alert Logic MDR offers include AI and behavior analysis, which I find most valuable. AI and behavior analysis mean that within AI there is static AI analysis and behavior analysis with subtypes. For example, if there is any file or a certain subtype, or if ransomware is happening, or any tool or app is being used, there are subtypes of AI. I appreciate that Alert Logic MDR has a separate AI for each type. Alert Logic MDR has positively impacted our organization by minimizing the alert SLA timing. When we used our other endpoint detection and response solution, we required at least fifteen minutes to raise one alert. After using Alert Logic MDR, we integrated it with SOAR technology, so within five minutes, the alert is raised to the client. Efficiency-wise, reducing the alert SLA timing to five minutes has been very beneficial. Whenever we receive an alert from endpoint detection and response from an endpoint to the Alert Logic MDR console, the system directly has the protect mode, conducting the kill and quarantine process itself. We only have to perform static analysis, and we have the playbooks, so they conduct some static analysis from there and directly raise the alert to the respective team.
Abdalla Kenawy - PeerSpot reviewer
AWS DevOps SRE/Infrastructure Engineer at Capgemini
Automated insights streamline data security assessment
For Amazon Inspector, we have many EC2 or virtual machines deployed inside our AWS environment, and the problem is that the existing package deployed inside this EC2 instance has already outdated packages. As we progress with time, this package needs to be updated for security enhancement, which requires us to uninstall the package, install the new version, and then we should be fine. However, the challenge comes with how to scan all our EC2 instances for security vulnerabilities, which is currently managed by Amazon Inspector. Amazon Inspector can scan EC2 instances or ECR, which is the ECR registry where we can save artifacts Docker images. Amazon Inspector can also scan Docker images uploaded to ECR for Elastic Registry service, and it can scan databases and S3 based on the latest updates. I noticed this from a couple of months ago, and it provides huge benefits for security. Regarding the best features of Amazon Inspector, it gives us a list of all existing outdated packages as part of a deployed package on EC2 instances or specific Python packages that are part of the Docker file and the Docker image itself, which are causing security concerns. Amazon Inspector can list these security concerns and offer guidance on how we can remediate it by updating the package to a specific upper version or something similar.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"With TotalCloud, we can scan through the API. If we are not able to deploy cloud agents on the machine, we can use the API."
"The best feature would be the ability to create policies. It is easy to control and update policies as required."
"I appreciate TotalCloud's real-time protection and remediation features. The remediation options include automated one-click remedies and custom changes that help manage vulnerabilities efficiently."
"Its excellent graphical interface makes the scanning process simple."
"I would definitely recommend Qualys TotalCloud to other users."
"Qualys TotalCloud has significantly reduced our workload in terms of managing risks, helping us to be more efficient and save substantial resources."
"One of the most valuable features of Qualys TotalCloud is FlexScan, which is specifically for internet-facing VMs. We found this feature to be very useful. It was a key differentiator for us."
"If I had to say something positive about the product that brings me the biggest benefit, I would say it has accurate reports, gets new update CVEs, zero-day attack detection, and is easy to manage with its GUI."
"Alert Logic MDR has positively impacted our organization by minimizing the alert SLA timing."
"Notifications and the detail of notifications are most valuable. It is a user-friendly solution."
"The quicker implementation of changes to our infrastructure from Alert Logic tell us if there are any problems."
"My advice would be to go ahead with the product because it really is a very good tool that adds a lot of value."
"Alert Logic MDR has positively impacted my organization as it has helped in detection of incidents and responding through our security team, who work around the clock."
"The value of Alert Logic is that everything is in one dashboard; I'm notified when there's an incident, kept up to date and advised on what steps to take."
"It's been a positive experience for us overall."
"The solution was consistently available, and I cannot recall any instances where it was down."
"It is scanning the whole repository for any sort of vulnerabilities, so it allows us to be more confident in our DevSecOps and not put a lot of folks or attention to it."
"The automated vulnerability detection aspect is most valuable."
"The most valuable feature of Amazon Inspector is the categorization of findings, which filters vulnerabilities by instance, container image, container repository, and Lambda function."
"The findings dashboards are neat and easy to understand, offering clear demarcations for different types of findings and detailed insights into specific vulnerabilities and their associated instances. It is not a place where everything is dumped together. It offers an easy-to-understand layout."
"I recommend Amazon Inspector because it allows the automation of processes and requires less manual monitoring."
"My experience with AWS technical support is very good, I didn't face any specific challenges, and even the documentation of AWS is good for both Microsoft, which is Azure, and AWS."
"Amazon Inspector is highly stable, rated ten out of ten, and this stability impacts business security and administration positively."
"It operates continuously, so as soon as resources are created, it scans them for vulnerabilities."
 

Cons

"In terms of improvement, remediation still belongs to the cloud team, which is one of the issues we faced with Qualys TotalCloud."
"I chose a rating of nine out of ten because there is a complex interface that sometimes overwhelms new engineers."
"A feature improvement could be the inclusion of Windows OS support for container security, as it is currently only supported for Linux."
"In my opinion, what can be improved in Qualys TotalCloud includes pricing and container scanning."
"To be honest, I would move out from this tool because it does not give a full view of vulnerability."
"We encountered challenges identifying the correct resource category for certain items, such as those in containers or storage."
"Regarding improvements to Qualys TotalCloud, I suggest that user navigation can be enhanced because initially, many users found it complicated and had trouble understanding the platform due to information being spread across multiple tabs."
"We would like to see Windows-based sensors available in Qualys, as this would make the platform more versatile and support a broader range of environments."
"Alert Logic needs to expand its SOCs to serve more markets, such as the Middle East and Asia. There should be infrastructure that covers more time zones. The company should also develop an EDR that is natively integrated into their solution. Currently, a client must buy another EDR solution like CrowdStrike or Sophos. I think Alert Logic is developing this. Built-in email security could also be developed and integrated."
"I think Alert Logic MDR could be improved."
"This product needs to mature more. While it is a good product, there are some areas where it needs work."
"As a user involved with the user interface, I believe there is a need to continue improving it based on feedback from our customers."
"It would be great to see more of an endpoint protector."
"Our ROI would probably be zero. We don't even use it."
"They have ideas and email you whatever they find, but they don't have a dedicated security team who will work on an attack or a specific security instance."
"The documentation, especially with the initial setup, needs improvement."
"One major area for improvement is remediation. My team works on remediating findings over time, likely using available patches. However, easier integration with Amazon's patching services would be very helpful."
"There is room for improvement in the scanning capabilities. I'd like to see broader coverage in terms of the vulnerabilities detected."
"One area for improvement in Amazon Inspector is the automation aspect."
"It has automated vulnerability assessment, yet I seek more flexibility in defining custom vulnerability checks tailored to my needs, which is more difficult."
"There are challenges associated with the interdependencies in AWS services, like requiring an Active Directory for other services, resulting in additional charges."
"The other point is that the reporting features of Inspector need improvement. For example, I am in an organization with millions of CVEs, and getting an overview of all this is challenging."
"It has a limited scope. So, AWS Inspector primarily focuses on the security of the EC2 instance. So, if your architecture includes other AWS services, then you may need to use additional tools for your comprehensive security assessment. So that is one con. Another is, like, we have a dependency on agents."
"There isn't too much to improve right now. Scanning on demand or as a part of the pipeline versus a post pipeline solution would be good, but it is not a deal breaker by any means."
 

Pricing and Cost Advice

"Qualys TotalCloud is cost-efficient and was selected for its value compared to other products."
"The cost is high, but it meets our organizational needs."
"As a middle management member, I do not have direct pricing knowledge, but based on the knowledge from our meetings, its pricing is competitive."
"Qualys TotalCloud offers good pricing that is affordable and competitive with the market. Our partnership also provides us with additional benefits."
"While Qualys TotalCloud's pricing is currently acceptable, it is becoming increasingly expensive and may soon be considered overpriced."
"It isn't cheap, but it's reasonable. It helps us to manage things with very few resources."
"Qualys TotalCloud is expensive, but it offers a premier solution with no headaches."
"Although Qualys TotalCloud is relatively expensive due to its unique automation features, its cost-effectiveness is rated an eight out of ten, with ten being the most costly."
"Alert Logic has better competitive pricing than some of its competitors."
"Almost any product that is on the AWS Marketplace is super easy to subscribe to."
"Price of the solution was very reasonable considering the size of our organization at the time, and so it worked out perfectly."
"Our ROI would probably be zero. We don't even use it. It sits in there. We get emails and just delete them. Around the world, we don't even use it."
"Its pricing is very reasonable considering what you get for what you pay. There is quite a good value there. Its licensing is also very logical. They've got the licensing price points at a reasonable level. It is on a monthly license but a yearly contract. There are no additional costs to the standard licensing fees."
"The pricing is very transparent and clear."
"It is scaled as you go. There are probably a certain number of scans per month, and there are tiers. If you're under a certain tier, it is free. The second level is pennies, and then all the way up to like a million. So, it has a tiered pricing program. They're pretty good with your initial scanning, and there is room to scale based on being affordable, but it is fairly cheap. There are no additional costs. They pretty much think about it as a pay-per-scan type model."
"The lowest cost would be around $10 for a few small accounts, however, for thousands of accounts, it could be around $5000 to $6000 dollars per month."
"It's priced according to market standards for its services."
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
913,683 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
16%
Outsourcing Company
12%
Manufacturing Company
11%
Financial Services Firm
10%
Construction Company
10%
Financial Services Firm
10%
Outsourcing Company
10%
Computer Software Company
9%
Financial Services Firm
13%
Comms Service Provider
8%
Computer Software Company
7%
Construction Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business14
Midsize Enterprise5
Large Enterprise34
By reviewers
Company SizeCount
Small Business5
Midsize Enterprise3
Large Enterprise15
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise2
Large Enterprise6
 

Questions from the Community

What needs improvement with Qualys TotalCloud?
In terms of improvement, remediation still belongs to the cloud team, which is one of the issues we faced with Qualys...
What is your primary use case for Qualys TotalCloud?
My main use case for Qualys TotalCloud is regarding the cloud visibility that we were not having previously. Previous...
What is your experience regarding pricing and costs for Alert Logic?
Regarding my experience with pricing, setup cost, and licensing, the sales and management teams discuss the price, wh...
What needs improvement with Alert Logic?
I think Alert Logic MDR could be improved. If Alert Logic MDR not only detected incidents but also allowed us to bloc...
What is your primary use case for Alert Logic?
My main use case for Alert Logic MDR was investigating all cloud assets and generating alerts when issues or attacks ...
What is your experience regarding pricing and costs for Amazon Inspector?
I am not honestly sure about the pricing side of Amazon Inspector, but that is taken care of by a separate team. I be...
What needs improvement with Amazon Inspector?
They might launch support for third-party environments in the next version regarding the best features in Amazon Insp...
What is your primary use case for Amazon Inspector?
I mostly use Amazon Inspector for vulnerability scanning on AWS native applications. For hybrid applications, we have...
 

Also Known As

Qualys TotalCloud with FlexScan
Alert Logic Managed Detection and Response, Alert Logic Threat Manager, Alert Logic Cloud Defender, Critical Watch FusionVM
No data available
 

Overview

 

Sample Customers

Information Not Available
Information Not Available
betterment, caplinked, flatiron, university of nutri dame
Find out what your peers are saying about Alert Logic MDR vs. Amazon Inspector and other solutions. Updated: September 2026.
913,683 professionals have used our research since 2012.