No more typing reviews! Try our Samantha, our new voice AI agent.

ArmorCode vs Cisco Vulnerability Management (formerly Kenna.VM) comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

ArmorCode
Ranking in Risk-Based Vulnerability Management
16th
Average Rating
8.6
Reviews Sentiment
2.2
Number of Reviews
2
Ranking in other categories
Application Security Tools (27th), DevSecOps (14th), Application Security Posture Management (ASPM) (14th)
Cisco Vulnerability Managem...
Ranking in Risk-Based Vulnerability Management
23rd
Average Rating
8.0
Reviews Sentiment
6.8
Number of Reviews
1
Ranking in other categories
Cisco Security Portfolio (11th)
 

Mindshare comparison

As of August 2026, in the Risk-Based Vulnerability Management category, the mindshare of ArmorCode is 2.0%, up from 1.4% compared to the previous year. The mindshare of Cisco Vulnerability Management (formerly Kenna.VM) is 2.1%, down from 2.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Risk-Based Vulnerability Management Mindshare Distribution
ProductMindshare (%)
ArmorCode2.0%
Cisco Vulnerability Management (formerly Kenna.VM)2.1%
Other95.9%
Risk-Based Vulnerability Management
 

Featured Reviews

Amandeep Pawar - PeerSpot reviewer
Senior Engineer at Airy Software Technologies Private Limited
Centralized risk-based workflows have reduced alert fatigue and improve on-time secure delivery
ArmorCode is a strong ASPM platform that provides centralized visibility and risk-based prioritization, and there are several areas where it could be enhanced to improve the user experience and increase adoption across development teams. Improvements could include more AI-powered remediation guidance, improved developer experience, enhanced predictive risk analysis, strong cloud-native visibility such as Kubernetes, custom reporting, and dashboards including custom risk scorecards, team-specific dashboards, and faster onboarding and setup of new security tools. Improvements could also include pre-built integration, automation, automated connector setup, guided onboarding, and better risk connection that assesses criticality, business impact, data sensitivity, and internet exposure. The most important improvements needed are strong cloud-native visibility, enhanced predictive risk analysis, adding AI-powered remediation guidance, and an improved developer experience. Predictive risk analysis is one area that needs enhancement. While ArmorCode is already excellent at centralizing security findings and prioritizing risk, these improvements could further reduce remediation time and make the platform even more valuable for both security and development teams. Enhancing AI-powered remediation guidance would improve developer experience. For AI-powered remediation guidance, instead of only identifying vulnerabilities, ArmorCode could provide detailed fix recommendations, secure code examples, root cause analysis, and automated remediation suggestions.
AshishPaliwal - PeerSpot reviewer
Self-employed at Self-employed
Offers contextual prioritization and risk-based remediation of vulnerability
An improvement would be some sort of an integration with any GRC suite. There are a lot of GRC suites available, like Archer, MetricStream, Rsam, Protiviti, for example. So how would a solution like this work if my company has already invested thousands or maybe millions in a GRC solution? Do I still need it and how does it fit into an existing SAP environment? There could be interoperability, having more data sources, integrating Splunk, Qualys, FireEye, Rapid7, Carbon Black. I'm sure all that can be done to an extent, with a little more insight and a little more accuracy on the industry numbers and trends. I'd like the solution to offer any sort of assistance in any way with the remediation part, not just identification of vulnerability risk, and that is second.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"ArmorCode is very effective software that reduces human effort and saves time, has a huge impact on the company's revenue and profit, and we deliver everything on time to the client because of ArmorCode."
"The positive impact of ArmorCode on our organization includes improved vulnerability prioritization and better collaboration between security and development teams, as instead of discussing thousands of findings, we focus on critical risks, significantly reducing unnecessary effort and allowing the team to quickly identify high-risk vulnerabilities and assign remediation to application owners."
"The risk context of any vulnerability is a valuable feature; that is what it is used for and then data from different sources can be fed into it, and they have good dashboards, risk meters, and virtualization."
"The risk context of any vulnerability is a valuable feature."
 

Cons

"I would like to see more AI-driven remediation recommendations, deeper contextual risk analysis, and additional workflow automation for the enterprise environment."
"Improvements could include more AI-powered remediation guidance, improved developer experience, enhanced predictive risk analysis, strong cloud-native visibility such as Kubernetes, custom reporting, and dashboards including custom risk scorecards, team-specific dashboards, and faster onboarding and setup of new security tools."
"An improvement would be some sort of an integration with any GRC suite."
 

Pricing and Cost Advice

Information not available
"I think the pricing is based on the number of endpoints, so it's more subscription-based."
report
Use our free recommendation engine to learn which Risk-Based Vulnerability Management solutions are best for your needs.
908,800 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
14%
Financial Services Firm
13%
Construction Company
10%
Manufacturing Company
8%
Retailer
15%
Computer Software Company
13%
Construction Company
11%
Manufacturing Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
No data available
 

Questions from the Community

What needs improvement with ArmorCode?
ArmorCode is a strong ASPM platform that provides centralized visibility and risk-based prioritization, and there are several areas where it could be enhanced to improve the user experience and inc...
What is your primary use case for ArmorCode?
ArmorCode is used for eliminating duplicate vulnerabilities and consolidating findings from multiple tools, prioritizing risk based on business impact, assigning remediation tasks automatically, an...
What advice do you have for others considering ArmorCode?
ArmorCode supports tracking and reporting for PCI DSS, SOC 2, ISO 27001, and HIPAA for compliance and governance purposes, and the security team can generate reports quickly during audits. I rate t...
Ask a question
Earn 20 points
 

Also Known As

ArmorCode AppSecOps Platform
Kenna.VM, Kenna Security, Kenna, Kenna Security Platform
 

Overview

 

Sample Customers

Shutterfly, S&P Global, Snap Finance, Snapdocs, and The Access Group
TransUnion
Find out what your peers are saying about Qualys, Horizon3.ai, Tenable and others in Risk-Based Vulnerability Management. Updated: August 2026.
908,800 professionals have used our research since 2012.