No more typing reviews! Try our Samantha, our new voice AI agent.

BigID Next vs Immuta comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 22, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Qualys TotalCloud
Sponsored
Average Rating
8.6
Reviews Sentiment
7.3
Number of Reviews
39
Ranking in other categories
Vulnerability Management (11th), Container Security (11th), Cloud Workload Protection Platforms (CWPP) (8th), Cloud Security Posture Management (CSPM) (8th), SaaS Security Posture Management (SSPM) (1st), Cloud-Native Application Protection Platforms (CNAPP) (6th)
BigID Next
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
15
Ranking in other categories
Data Loss Prevention (DLP) (12th), Data Governance (7th), Data Privacy Management Software (1st), Data Security Posture Management (DSPM) (6th), AI Data Analysis (10th)
Immuta
Average Rating
7.6
Reviews Sentiment
7.6
Number of Reviews
5
Ranking in other categories
Data Governance (25th), Data Security Posture Management (DSPM) (15th), AI Data Analysis (22nd)
 

Featured Reviews

RO
IT Security Expert at Alior Bank S.A.
Unified risk scoring has improved our cloud visibility and simplifies remediation priorities
Qualys TotalCloud provides unified vulnerability and threat assessment across both IAS and SaaS. This solution provides a single prioritized view of risk, which helps reduce the work I would have to do. We are no longer based on CVSS; we are based on Qualys risk scoring, which is based on CVSS plus internal findings made by Qualys, and then assigns its own score. The TruRisk insight feature has found a small number of assets with high vulnerability scores, though I am cautious since some information is classified. Qualys TotalCloud has positively impacted our bank's performance, and we have definitely seen benefits after implementing this solution.
Aniruddha Nath - PeerSpot reviewer
Senior Security Consultant at a consultancy with 10,001+ employees
Data discovery has transformed compliance workflows and automation now speeds up requests and remediation
The best feature that BigID offers is data discovery and classification, which is the most powerful engine. It allows connecting to many different data sources, ranging from cloud to on-premises to structured to unstructured data. If there is no connector available, you can build your own classifiers as well. Regarding the custom classifier option, you can build custom classifiers using regular expressions, and I have done that if you know how to create regular expressions. Custom connectors are something you create to connect to a database where the connector is not available. BigID has positively impacted my organization as it's a very powerful tool, especially with the increasing regulatory compliances for different countries such as GDPR, CCPA, and India's recent DPDPA act. Having these tools in place greatly helps organizations avoid any penal charges for not being compliant with the regulatory compliances. For example, regarding compliance or reduced risks for my clients, the DSAR process I was talking about allows organizations to respond quickly to user data deletion requests under GDPR law, which traditionally has a 30-day or 60-day timeline. In larger organizations, when the number of requests is high, it becomes tedious. However, using DSAR automation with BigID, it's almost instantaneous; instead of 30 days, you can respond in just one day to what users have requested.
Dibyajyoti Rath - PeerSpot reviewer
Data Analyst at a consultancy with 10,001+ employees
Centralized access control has secured sensitive data and supports compliant self-service analytics
Immuta is very helpful, but it can be improved in a few areas. The initial setup and policy design can be complex and require a learning curve. The user interface could be more interactive, especially for non-technical users. Policy troubleshooting and debugging could be easier with better visibility into why access was allowed or denied. Performance optimization and deeper integration with more tools could make it even better. Additional improvements would strengthen Immuta further. The documentation and real-world examples would help teams onboard faster. More out-of-the-box policy templates could reduce setup time. Improved policy simulation and testing would help teams understand the impact of changes before applying them. Stronger alerting and monitoring features would help quickly identify access issues. Finally, more end-user training and simplified workflows would make it easier for business users to adopt.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Qualys TotalCloud is an excellent platform, and the beauty of the platform is that we can get all the vulnerabilities, see all the reports in a single dashboard, view them segregated, and easily learn about critical, high, and medium findings with appropriately provided remediation steps."
"One of Qualys' best features is its categorization, which allows us to see the types of assets, their security postures, and the AI-powered version of the tool."
"With TotalCloud, we can scan through the API. If we are not able to deploy cloud agents on the machine, we can use the API."
"Qualys TotalCloud has significantly improved our organization by automating our reporting processes, reducing the time spent on report creation from two hours to less than fifteen to twenty minutes."
"We were able to realize its benefits within 24 to 48 hours."
"While automatic inventory detection upon connection is a helpful feature, a truly valuable capability would be assessing an environment's security posture against Azure and CIS best practices."
"The best part I like is the on-demand scans."
"TotalCloud has been excellent in providing us with immediate access to all the products and features we need, such as CSPM, TruRisk Insights, and compliance reports, including CIS and HIPAA."
"BigID's scanning feature is its most valuable component."
"Although I was serving the client rather than my own organization, BigID has made scans faster and more efficient, and the DSR results are much more accurate."
"BigID integrates well with our other products."
"BigID has one of the best technical support teams."
"The tool's most valuable feature is correlation. Using BigID's data classification capabilities has strengthened our data security. It lets me classify and connect data, which helps me manage data at various classification levels."
"I like BigID's in-depth discovery and scanning capabilities, especially for unstructured data. This feature is a standout compared to competitors. The tool's data classification capabilities are impressive. It offers custom classifiers and a blend of regular exploration and artificial intelligence, making it a next-generation solution. This enhances data security, and its security posture management is straightforward and user-friendly."
"The most valuable feature of BigID is its large number of classifiers, which allow us to scan for specific data such as SSN numbers."
"BigID is more advanced than Microsoft Purview when it comes to machine learning and AI development tools."
"All features available are good."
"What I appreciate the most is its user-friendliness."
"Instead of manually tagging data, Immuta’s auto-discovery capability identifies sensitive information, such as country labels, gender information, and other personal data."
"Immuta has had a very positive impact on our organization, helping us strengthen data security by ensuring sensitive data is only accessible to the right users, simplifying compliance with clear audit trails and consistent policy enforcement, reducing manual access management to save time for data and security teams, and enabling safe self-service analytics so our team can access data faster while still meeting governance and regulatory requirements."
"The tool's most valuable feature is restriction."
 

Cons

"The patching process with Qualys Patch Management, which is part of TotalCloud, does not cover installing certain prerequisites on the servers or workstations. This shortcoming means we must rely on SCCM when any service stack updates or additional prerequisites are needed."
"The areas in the solution that have room for improvement include the UI/UX design, which should be improved, and they should integrate more artificial intelligence into the product."
"An area for improvement would be to focus on risks related to AI, such as large language models and potential data leakage."
"There is room for improvement in the support."
"Qualys TotalCloud's increasing complexity, due to the development and deployment of multiple solutions, is making the GUI difficult to navigate."
"With the growing integration of AI, I would like Qualys to enhance its service offerings to better accommodate AI-related risks."
"Their customer support needs improvement."
"To improve the user experience, reporting could be simplified for better comprehension by end users and project managers, facilitating issue resolution."
"BigID needs improvement in terms of automation."
"I want them to focus on data mapping, assessment, automation workflow, and privacy incident management. The privacy tools have not been widely used, and they have not invested much in privacy code privacy tools."
"BigID's user interface was problematic as it was not very user-friendly, though I believe it improved over time."
"One concern I have with BigID is regarding certain scans, like the multi-scan. The issue is that we can stop and retrieve these scans, but once they start, they go through an enumeration process."
"One improvement I would suggest is addressing the intermittent failures of BigID scans, as there are times when some errors occur."
"More classifications about different states are needed"
"One area where BigID can be improved is the UI, which has a lot of bugs."
"In terms of what could be improved, when you're looking in a BigID file, you cannot really get the whole file. You have to export it to download it to another platform that allows you to completely view it, or run a program. That was one of the things that was really a disappointing point for me. Not to be able to view everything. There's a lot more data, but you can't get it all at once."
"Immuta is very helpful, but it can be improved in a few areas."
"The implementation process with Immuta was quite challenging, primarily due to issues related to database handling and the syncing of user groups."
"There is room for improvement in enhancing the monitoring capabilities."
"Immuta is behind in updating upgrades and software releases."
"We have had some challenges with their support when we were migrating to the cloud version. We we had some issues, and it took us several attempts to get a proper responses as part of that migration."
 

Pricing and Cost Advice

"Qualys TotalCloud offers cost-effective licensing flexibility."
"Qualys TotalCloud is cost-efficient and was selected for its value compared to other products."
"It isn't cheap, but it's reasonable. It helps us to manage things with very few resources."
"Qualys TotalCloud offers good pricing that is affordable and competitive with the market. Our partnership also provides us with additional benefits."
"Although Qualys TotalCloud is relatively expensive due to its unique automation features, its cost-effectiveness is rated an eight out of ten, with ten being the most costly."
"TotalCloud's price is about right where I would expect it to be."
"The cost is high, but it meets our organizational needs."
"The pricing for TotalCloud is attractive and competitive in the market. Given the features, especially the dashboard, I have no concerns regarding pricing."
"The pricing depends. If you have thousands of data sources to connect and manage, and you struggled with an MDM package in the past, you'll find BigID valuable and even cheap. But if you're a small business, it's probably not the right tool for you."
"The solution is not licensed per user but rather based on capacity. For instance, organizations with large amounts of data, such as 50 GB or more, are the ones that typically qualify for BigID."
"The product is expensive, but so are all competitor tools"
"I think that BigID's pricing is very reasonable."
"The solution is expensive."
"Immuta's pricing is expensive."
report
Use our free recommendation engine to learn which Data Governance solutions are best for your needs.
900,644 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
18%
Financial Services Firm
14%
Construction Company
7%
Comms Service Provider
7%
Financial Services Firm
20%
Manufacturing Company
10%
Insurance Company
8%
Comms Service Provider
6%
Financial Services Firm
17%
Construction Company
10%
Manufacturing Company
9%
Computer Software Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise3
Large Enterprise29
By reviewers
Company SizeCount
Small Business5
Large Enterprise11
No data available
 

Questions from the Community

What needs improvement with Qualys TotalCloud?
Areas that need improvement in every solution include the remediation part. The remediation steps should be simple en...
What is your primary use case for Qualys TotalCloud?
Our use case involves the assets that we have under cloud, the assets exposed to the internet, and the internal appli...
What needs improvement with BigID?
One improvement I would suggest is addressing the intermittent failures of BigID scans, as there are times when some ...
What is your primary use case for BigID?
BigID's main use case is connecting to various data sources to perform the data discovery process, classify the data ...
What advice do you have for others considering BigID?
I have covered information regarding data scanning, data classification, and the DSAR module, as these are the parts ...
What needs improvement with Immuta?
Immuta is very helpful, but it can be improved in a few areas. The initial setup and policy design can be complex and...
What is your primary use case for Immuta?
My main use case for Immuta is data governance. In my project, which is a data governance project, I use Immuta as a ...
What advice do you have for others considering Immuta?
My advice for others considering Immuta would be to plan your policies carefully. Think through roles, data sensitivi...
 

Also Known As

Qualys TotalCloud with FlexScan
No data available
No data available
 

Overview

 

Sample Customers

Information Not Available
Home Depot, Grant Thornton LLP, Cimpress, Fidelity Investments
Information Not Available
Find out what your peers are saying about BigID Next vs. Immuta and other solutions. Updated: May 2026.
900,644 professionals have used our research since 2012.