

Qualys VMDR and Armis are both prominent solutions in the category of vulnerability management and asset visibility. While Qualys VMDR appears to have an edge with its comprehensive scanning and cloud integration, Armis stands out with superior asset visibility and OT/IoT device management capabilities.
Features: Qualys VMDR is recognized for its continuous scanning, agent-based deployments, and integrated patch management. The solution provides real-time asset discovery and cloud integration. Armis excels in asset visibility, offering detailed insights into OT and IoT device behavior and ensuring integration with various security tools.
Room for Improvement: Qualys VMDR users suggest enhancing the vulnerability database to reduce false positives and improving asset tagging and technical support. Armis is considered slightly expensive and could benefit from enhancements in product stability and expanding integrations with ticketing tools.
Ease of Deployment and Customer Service: Qualys VMDR offers flexible deployment across different environments but may pose complexity in large-scale setups. Users find its customer service generally reliable with occasional responsiveness issues. Armis is noted for its user-friendly deployment options and responsive global customer support.
Pricing and ROI: Qualys VMDR is seen as costly but provides robust features and a strong ROI by mitigating cybersecurity risks, though it might be expensive for smaller organizations. Armis is priced averagely, offering justified costs due to its comprehensive asset and device security features, maintaining a positive impact on vulnerability management.
There is a 98% reduction in vulnerability workloads, enabling focus only on high-risk issues.
I have seen a return on investment with Armis, as it definitely improved remediation with fewer employees.
We saw a return on investment through significant savings in time, money, and resources.
I have not faced challenges with Armis support, as pre-sales engineers have been helpful.
I would rate it ten out of ten.
The GUI in Qualys Enterprise TruRisk Management is excellent.
We usually get on calls with tech support, and they are very helpful.
False positives are the main issue that we encounter and need to be handled by the support team.
As a SaaS platform, it is highly scalable.
Customers typically enjoy the solution and do not face any issues both before deployment during the POC and after deployment once they release the PO and get the implementation done.
It is very scalable and easy to scale, as I also rated it eight on a scale of one to ten.
It is flexible and scalable, and we can use it and modify it as per our needs.
Scalability depends on the license and the number of assets being monitored.
Scalability is not a challenge.
Qualys VMDR is stable.
This tool has good and excellent performance in the companies that we sell to in the last months for customers, so stability is evident.
I rate the stability of Qualys Enterprise TruRisk Management at eight point five out of ten because I occasionally find bugs that are frustrating, and I have already commented on the support issues.
Armis cannot be used as a standalone solution and should be integrated with other solutions.
The needed improvements I see include implementing cloud features, as the market, particularly in Brazil, is moving to cloud environments to reduce costs and time spent on upgrades and server management.
It misses out on a lot of vulnerabilities.
The main issue is the reporting delay, and sometimes the Qualys Enterprise TruRisk Management agent will not scan the system, which means we do not receive accurate reports in a timely manner.
It does not automate patching unless the patch management module is purchased separately.
If AI features were integrated, it could enhance the capabilities significantly.
Armis pricing is average, neither cheaper nor more expensive than other solutions.
The price is not very high.
Armis is slightly on the expensive range based on what I have observed.
I would rate the pricing between seven to eight out of ten.
I have a notion that Qualys might be more expensive than Rapid7.
Qualys offers better pricing and is feature-packed compared to other tools.
Armis is very easy to implement due to its agentless design and offers a granular level of visibility for all assets in the network.
It assesses open vulnerabilities, provides traffic flow insights, integrates with ticketing workflows, and aggregates security solutions like Active Directory and EDR.
Armis provides full visibility on OT devices and in the medical industry for devices such as ECG machines, X-rays, and infusion pumps.
The prioritization of vulnerabilities has improved our remediation efforts by around thirty to thirty-five percent.
It impacts my workflow overall, with the patch management features as it has the missing patches listed in detail, making it easier to get a comprehensive report and providing some dashboards that offer visual representation.
Qualys VMDR's continuous monitoring capabilities help us respond to emergent threats by enabling my team to reach out to the security engineers whenever there is any detection of a vulnerability, informing them about it, and creating an incident.
| Product | Mindshare (%) |
|---|---|
| Qualys VMDR | 9.7% |
| Armis | 2.8% |
| Other | 87.5% |


| Company Size | Count |
|---|---|
| Small Business | 7 |
| Midsize Enterprise | 3 |
| Large Enterprise | 8 |
| Company Size | Count |
|---|---|
| Small Business | 21 |
| Midsize Enterprise | 12 |
| Large Enterprise | 74 |
Armis is a comprehensive cybersecurity solution used for continuous monitoring and threat detection across IT and IoT devices. It excels in spotting vulnerabilities, managing device compliance, and tracking assets to enhance security protocols and network management. Key features include real-time threat detection, comprehensive visibility, and granular risk assessments. Armis boosts organizational productivity by streamlining workflows and enhancing operational accuracy.
Qualys VMDR is a comprehensive cybersecurity tool offering vulnerability management, patch management, and continuous monitoring with real-time asset discovery. It delivers scalable, cloud-based solutions that enhance security operations without additional infrastructure.
Qualys VMDR provides a robust platform for enterprise security, integrating vulnerability management, compliance, and asset inventory for full visibility across cloud and on-premises environments. It features a comprehensive dashboard with threat intelligence-driven prioritization and remediation capabilities. Users benefit from accurate assessments via agent-based scanning and appreciate the intuitive, customizable scanning and reporting interface. However, there's room for improvement in false positive reduction, UI simplification, and integration capabilities, along with enhancements in asset management for large-scale deployments and the vulnerability database. Enhancing technical support speed, patch management, compliance standards, and inter-module navigation would further enrich user experience.
What are the key features of Qualys VMDR?
What benefits can users expect when evaluating Qualys VMDR?
Qualys VMDR is widely used in industries needing stringent security and compliance measures, offering comprehensive vulnerability and compliance management. It is deployed to secure web applications, servers, and crucial assets, supporting a wide range of sectors by ensuring policy adherence and vulnerability tracking through its powerful cloud platform.
We monitor all Risk-Based Vulnerability Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.