Try our new research platform with insights from 80,000+ expert users

Armis vs Rapid7 InsightVM comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 6, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Zafran Security
Sponsored
Average Rating
9.6
Reviews Sentiment
7.8
Number of Reviews
6
Ranking in other categories
Vulnerability Management (18th), Continuous Threat Exposure Management (CTEM) (3rd)
Armis
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
10
Ranking in other categories
IoT Security (2nd), Cyber Asset Attack Surface Management (CAASM) (1st), Risk-Based Vulnerability Management (10th), Cyber-Physical Systems Protection (1st)
Rapid7 InsightVM
Average Rating
8.0
Reviews Sentiment
6.9
Number of Reviews
66
Ranking in other categories
Risk-Based Vulnerability Management (4th)
 

Featured Reviews

Reviewer6233 - PeerSpot reviewer
Works at a healthcare company with 10,001+ employees
Has become an indispensable tool in our cybersecurity arsenal
While Zafran Security is already a powerful tool, there are areas where it could be further improved to provide even greater value. One key area for enhancement is the searching capabilities within its vulnerabilities module. By incorporating the ability to create Boolean searches, users would gain the ability to apply more complex filters and customize their search criteria. This would greatly enhance the precision and efficiency with which security teams can identify and prioritize vulnerabilities. Having such tailored search capabilities would save time and resources by narrowing down vast lists of vulnerabilities to those that meet specific parameters relevant to our unique risk environment. Additionally, integrating more robust reporting and visualization tools would be advantageous. Enhanced dashboards that offer customizable visual representations of risk configurations and threat landscapes would facilitate better communication with stakeholders, making it easier to explain vulnerabilities and the rationale behind certain security measures. This would also aid in demonstrating the improvements and value derived from existing security investments to leadership and non-technical team members.
SaketShrivastava - PeerSpot reviewer
Technology and Digitization Lead at JLL
Comprehensive asset visibility and OT operations support enhance risk mitigation
I use Armis for asset discovery and vulnerability assessments of the OT network Armis is easy to use. Very few software solutions have OT capabilities that do not impact OT operations. Its asset visibility is good as well. This comprehensive feature set is crucial for our operations.…
FL
Senior Manager - Pre-Sales at Trillium Information Security Systems
Offers robust compliance features but needs improved automation in remediation
The automation capability remediation needs improvement. The current process requires manually telling IT teams to remediate vulnerabilities, and then they update the status of these vulnerabilities in the platform. This basic feature that Rapid7 calls an automated remediation process is actually manual. We can update the status of vulnerabilities in the Rapid7 InsightVM platform and collectively see how many vulnerabilities we have identified and how many are remediated by our IT team. More automation in the remediation feature is a basic demand from many customers. The remediation part and vulnerability identification of network devices or rigid devices are not currently supported by Rapid7 InsightVM. More integration and automation are the two areas Rapid7 needs to improve in their product.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Zafran is an excellent tool."
"We are able to see the real risk of a vulnerability on our environment with our security tools."
"Zafran has become an indispensable tool in our cybersecurity arsenal."
"Overall, we have seen about eighty-seven percent reduction of the number of vulnerabilities that require urgency to remediate, specifically the number of criticals."
"With Zafran Security, it integrates with your security controls, allowing you to take that risk score and reduce it based on the controls in place or increase the risk based on different factors, such as if the issue is internet reachable or if there's an exploit in the wild."
"We saw benefits from Zafran Security almost immediately after deploying it."
"Armis is easy to use."
"Armis is very easy to implement due to its agentless design and offers a granular level of visibility for all assets in the network."
"Armis saves time by automating asset inventory management, allowing enterprises to quickly strategize by understanding their assets and exposures."
"The solution’s vulnerability monitoring system is very good."
"Armis is very easy to implement due to its agentless design and offers a granular level of visibility for all assets in the network."
"The tool is user-friendly and helps to detect vulnerabilities."
"The most valuable feature of the solution is asset tracking."
"The initial setup and deployment were simple."
"The solution is good because it has a lot of options."
"The solution is very user friendly and easy to manage."
"The solution's user interface is good and has some vulnerability prioritization."
"This solution is much more user-friendly than past solutions I have used."
"One of the most valuable features is it's graphical dashboard feature. It is quite easy to manage the widgets, and we can customize those according to our queries."
"The most valuable feature is the vulnerability scan."
"The most valuable feature is the site scanning, where we can provide a complete subnet and what it is we need to scan on those devices."
"We are very satisfied with the reports, as they provide us with the information that is required for our management."
 

Cons

"I think the ability to have some enhanced reporting capabilities is something they can improve on, as they have good reports but we have asked for some specific reporting enhancements."
"The dashboarding and reporting functionality of Zafran Security is an area that definitely could use some improvements."
"Initially, we were somewhat concerned about the scalability of Zafran due to our large asset count and the substantial amount of information we needed to process."
"The vulnerability assessment for Windows is not that great. It misses out on a lot of vulnerabilities."
"Armis doesn't have a back intel feature."
"There are occasional issues with some built-in integrations that require troubleshooting, particularly with DHCP integration. Developing additional integrations would be beneficial."
"We face difficulties in integrating the product with ticketing tools like ServiceNow."
"We face issues during implementation."
"There isn't anything specific that needs improvement."
"Armis could improve its geographic spread and marketing campaigns across regions."
"We have faced issues with the tool's stability."
"The reporting has room for improvement. You cannot customize any report. If I need a specific requirement, I have to create a new report for it."
"Customer support in Rapid7 InsightVM could be improved. The response time needs improvement."
"A definite improvement would be to make it easier to run ad-hoc scans without needing to assign the asset to a site or group."
"Rapid7 InsightVM should improve its threat intelligence."
"Rapid7 InsightVM could be easier to use for those who are using it for the first time."
"Their customer support should be improved, and the effectiveness of scans also needs to be improved."
"I would say that it improved our visibility, but it left things open."
"The solution needs to improve its vulnerability design to include CVC results."
 

Pricing and Cost Advice

Information not available
"The tool is cheap."
"Its licensing is yearly. Everything is included in the price for one year."
"We have an annual license to use Rapid7 InsightVM and if we want to extend it, we will possibly choose more than one year."
"Our licensing costs are somewhere around $40,000 annually. There are no additional fees."
"The license is IP based. How many IPs you are using to scan is the amount of the license you have to buy. The number of users doesn't matter; many users can use it or only person. It depends on the culture of the organization."
"The solution's pricing is better than Nexus which charges a high amount for very little use."
"Comparing the price with the value that we receive, I am not happy with it."
"In some cases, we procure the licenses. In some cases, the customers directly buy the license from Rapid7."
"The price of the solution is less than the competitors."
report
Use our free recommendation engine to learn which Risk-Based Vulnerability Management solutions are best for your needs.
881,082 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
8%
Computer Software Company
8%
Outsourcing Company
6%
Manufacturing Company
10%
Government
10%
Financial Services Firm
9%
Computer Software Company
8%
Financial Services Firm
13%
Manufacturing Company
10%
Computer Software Company
10%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business4
Large Enterprise6
By reviewers
Company SizeCount
Small Business29
Midsize Enterprise13
Large Enterprise25
 

Questions from the Community

What is your experience regarding pricing and costs for Zafran Security?
Since we stood Zafran Security up in our private cloud, we handle the maintenance on our side. As we opted not to use...
What needs improvement with Zafran Security?
In terms of areas for improvement, Zafran Security is doing a really great job as a new and emerging company. Oftenti...
What is your primary use case for Zafran Security?
My use cases for Zafran Security revolve around two primary areas. One is around vulnerability management and priorit...
What needs improvement with Armis?
The vulnerability assessment for Windows is not that great. It misses out on a lot of vulnerabilities. Additionally, ...
What is your primary use case for Armis?
I use Armis ( /products/armis-reviews ) for asset discovery and vulnerability assessments of the OT network.
What advice do you have for others considering Armis?
I have not seen any machine learning features or AI capabilities in the product. If AI provided a better understandin...
How would you choose between Rapid7 InsightVM and Tenable Nessus?
You have full visibility across cloud, network, virtual, and containerized infrastructures with Rapid7 Insight VM. Yo...
What do you like most about Rapid7 InsightVM?
The product's initial setup phase was very easy.
What is your experience regarding pricing and costs for Rapid7 InsightVM?
The customers are mostly SMBs, though some enterprise organizations have also deployed the solution. This is neither ...
 

Also Known As

No data available
No data available
InsightVM, NeXpose
 

Overview

 

Sample Customers

Information Not Available
Samsung Research America, IDT Corporation, Gett
ACS, Acosta, AllianceData, amazon.com, biogen idec, CBRE, CATERPILLAR, Deloitte, COACH, GameStop, IBM
Find out what your peers are saying about Armis vs. Rapid7 InsightVM and other solutions. Updated: December 2025.
881,082 professionals have used our research since 2012.