

BigFix and Qualys CyberSecurity Asset Management compete in the endpoint management and cybersecurity asset management categories. BigFix has an upper hand in comprehensive endpoint management across platforms and automation capabilities, while Qualys CyberSecurity Asset Management offers superior asset discovery and vulnerability insights.
Features: BigFix offers extensive endpoint management capabilities, including patching and compliance across platforms like Linux, AIX, and Windows. It provides real-time visibility and dynamic reporting with integration across various modules. On the other hand, Qualys CyberSecurity Asset Management delivers excellent asset discovery, offers insights into security vulnerabilities, and provides comprehensive visibility into hardware and software components, thereby reducing cybersecurity risks.
Room for Improvement: BigFix could improve its web UI, multi-tenancy support, and cloud integration while enhancing its automation capabilities. Qualys needs to improve integration options, allow more cloud agent configuration changes, and focus on improving the user interface. It also needs to enhance dynamic tagging and role-based access control features for better usability and efficiency.
Ease of Deployment and Customer Service: BigFix mostly supports on-premises deployments, requiring a more extensive initial setup but is commended for good customer support and valuable community resources. Qualys CyberSecurity Asset Management supports hybrid and public cloud environments, offering flexibility and simplifying deployments for cloud-focused organizations. Both products are praised for attentive and responsive technical support.
Pricing and ROI: BigFix is praised for its modular structure addressing various use cases, providing a faster ROI through extensive automation capabilities that reduce operational costs. In comparison, Qualys CyberSecurity Asset Management is cost-effective when bundled with services like VMDR, offering transparent and competitive pricing. Despite this, it can be seen as expensive, but it offers substantial long-term ROI through improved security posturing.
Improvements to our security infrastructure contributed to overall business growth of approximately 150 percent over the past year.
By automating tasks, it significantly reduces the human resources required, leading to increased efficiency and productivity.
It has reduced the number of development and scripting hours along with maintenance hours.
On a scale from one to ten, with ten being the highest quality, enterprise support provides timely responses, typically within four to eight hours.
Technical support from HCL is satisfactory unless there are customization requirements.
The support team was knowledgeable and offered a variety of quick resolution options.
Their SMEs have sufficient knowledge, and if they are not the right contact, they quickly redirect us to someone who can help resolve issues.
I would rate their customer support a ten out of ten.
BigFix requires some minimum configuration requirements.
We have about 300,000 assets installed with agents worldwide.
The scalability is excellent as we manage more than one hundred thousand assets, including over one hundred thousand endpoints, approximately 2,600 servers, and more than 1,200 network devices.
Qualys Cybersecurity Asset Management has proven to be a highly scalable solution for us over the past couple of years.
I would rate the stability of Qualys CSAM a ten out of ten.
The product stability has notably declined over the last two months, and the performance to fulfill a page request is very slow compared to its previous performance.
They are constantly adding capabilities.
Building a management console is quick and simple, taking only one to two hours for setup.
The problem was related to the hardware configuration and hardware specifications.
In addition to reporting improvements, there should be a feature for application control to allow or disallow certain applications from being executed on endpoints.
Qualys is currently not able to identify assets lacking DNS information.
Features enhancing the interaction with IT or security teams should be added, such as a ticketing feature that, if an issue arises in the CSAM module, enables direct ticket creation in systems like ServiceNow.
If there's one key aspect to focus on, it's discovery—the ability to identify assets that you are not aware of, even when you can see they are present.
The pricing is pretty good and now follows a subscription model similar to SolarWinds, making it easier for customers to subscribe and unsubscribe.
A cost-effective solution.
I believe that the stability and reliability of Qualys offer great value for the money.
A monthly subscription starting at approximately $72 per month, depending on the specific package and features included.
The BigFix features that have proven most effective include inventory, software delivery, software distribution, software catalog, and both software and hardware management.
I use this mainly to capture inventory for IBM products, and as BigFix was part of IBM, it gets easily integrated with IBM solutions.
BigFix supports something known as Patch Policies, which allows users to define that whenever critical patches are released, they should get evaluated against machines and automatically deploy them.
By correlating this with QDS scores, we can accurately assess the risk level of high or low QDS scores associated with each asset and monitor them accordingly.
The most valuable feature is the real-time visibility Qualys CyberSecurity Asset Management provides into all assets across our development and operational environments.
It also performs scans to identify any vulnerabilities, which helps to take proactive measures before those vulnerabilities are identified by any attacker.
| Product | Market Share (%) |
|---|---|
| Qualys CyberSecurity Asset Management | 1.8% |
| BigFix | 4.4% |
| Other | 93.8% |
| Company Size | Count |
|---|---|
| Small Business | 30 |
| Midsize Enterprise | 12 |
| Large Enterprise | 66 |
| Company Size | Count |
|---|---|
| Small Business | 8 |
| Midsize Enterprise | 2 |
| Large Enterprise | 23 |
HCL BigFix is a powerful patch management tool that enables organizations to simply control their patch management operations. It is designed so that IT security and operations teams can collaborate in the most effective way possible. Users that employ BigFix can find and fix issues with their endpoints faster than those that employ its competitors. It comes with thousands of security checks that can be deployed quickly and easily. These enable users to safeguard themselves from a wide variety of digital threats.
HCL BigFix Benefits
Some of the ways that organizations can benefit by choosing to deploy HCL BigFix include:
BigFix Features
Reviews from Real Users
HCL BigFix is a highly effective solution that stands out when compared to most of its competitors. Two major advantages it offers are its auto-patching capability and its user-friendly tools.
Santhosh K., the chief executive officer of Catnip Infotech Private Limited, writes, “The second valuable feature is, BigFix also has an auto patch updating feature, where the latest patches, and what is required for my system are automatically downloaded and kept ready for me. The solution applies the patch and notifies me after applying the patch. BigFix also gives me a ping saying that I should reset my system within a certain period of time, while the patch is being applied. Let's say, the patch is being applied and if there's an issue, the solution can revoke the applied patch, and revert back to the old state.”
Benedikt S., an application administrator, says, “It's very straightforward. The usability is very close to everyday technical tools that you use as a systems administrator. So it's quite user-friendly.”
Qualys CyberSecurity Asset Management provides key features including asset inventory management, end-of-life tracking, dynamic tagging, and integration with CMDB, offering extensive visibility and support for proactive threat response.
Qualys offers comprehensive visibility across hardware and software assets, aiding in tracking unauthorized applications and facilitating automated vulnerability remediation. Its user-friendly interface and dynamic risk scoring enhance security posture management. Users leverage it for vulnerability management and compliance, benefiting from real-time risk identification and efficient operations in cloud and on-premises environments.
What are the key features of Qualys CyberSecurity Asset Management?Cybersecurity teams in various industries, such as financial services, healthcare, and manufacturing, utilize Qualys to manage technical debt through end-of-life tracking and facilitate robust patch management. It supports compliance and visibility initiatives, essential for maintaining data integrity and operational security in dynamic environments.
We monitor all Patch Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.