

Qualys VMDR and BMC Helix Discovery compete in the cybersecurity and IT asset management sectors, respectively. Qualys VMDR has the upper hand in comprehensive vulnerability management, while BMC Helix Discovery excels in asset visibility and service mapping.
Features: Qualys VMDR is known for its robust vulnerability management, rapid updates to vulnerabilities, and comprehensive reporting capabilities. It is cloud-based, offering scalability and ease of use with valuable integrations. BMC Helix Discovery shines in asset discovery, dependency mapping, and integrating with ITSM solutions like ServiceNow, supporting automated service mapping and customization capabilities.
Room for Improvement: Qualys VMDR users suggest enhancing reporting, integration with third-party solutions, and customization in dashboards. False positives and wider assessments for IoT and SCADA systems are notable concerns. BMC Helix Discovery users highlight the need for improved stability and scalability in monitoring tools and better integration with CMDBs, along with modernization in customization and mapping for diverse asset types.
Ease of Deployment and Customer Service: Qualys VMDR supports deployment across private, public, and hybrid cloud environments and is noted for a seamless setup, though customer support varies in response time. BMC Helix Discovery offers flexible on-premises and hybrid cloud deployment and generally high customer support, making it favorable in complex technical integrations.
Pricing and ROI: Qualys VMDR is considered expensive, particularly for smaller enterprises, but its value is seen in vulnerability reduction and security enhancement. BMC Helix Discovery is viewed as less expensive, with more predictable pricing for mid-sized companies and complex licensing potentially increasing costs. Both solutions demonstrate good ROI through improved security management and risk reduction.
You should expect at least one year and a half for ROI.
BMC Helix Discovery has delivered a very good return, and we cannot stop using it at this moment.
We saw a return on investment through significant savings in time, money, and resources.
When opening a severity one ticket, they respond within four to six hours, which is commendable.
Sometimes it is quite responsive, particularly when you go higher up in the organization.
The response has been satisfactory, though improvements could be made in response time and overall competence.
We usually get on calls with tech support, and they are very helpful.
The response time takes a while.
The technical support provided by Qualys is pretty good.
Scalability depends on the license and the number of assets being monitored.
Qualys VMDR can handle scalability, although increasing the inventory can raise the licensing costs.
Qualys VMDR's scalability is good, and the customer support is good.
In the past four to six years, I cannot recall encountering any bugs.
Qualys VMDR is stable.
I would like to see a lower price and better technical support.
It uses a Berkeley database, and the query language is not easy to master for performing complex queries.
It does not automate patching unless the patch management module is purchased separately.
If AI features were integrated, it could enhance the capabilities significantly.
One area where Qualys VMDR can be improved is the missing feature for deploying agents for over 1,000 assets, as we need to do it manually.
The price is about twelve per license per year, and the support is included.
The setup cost is on the expensive side.
I would rate the pricing between seven to eight out of ten.
I have a notion that Qualys might be more expensive than Rapid7.
Qualys offers better pricing and is feature-packed compared to other tools.
This is very useful for compliance as it helps in audits by providing a comprehensive view of all assets and software.
BMC Helix Discovery provides a lot of information that can be obtained from discovery, including the relationship between the CIs and how many CIs are orphans.
The best aspect of BMC Helix Discovery is its flexibility. You can perform scanning at any time, and it provides substantial data for extraction.
The prioritization of vulnerabilities has improved our remediation efforts by around thirty to thirty-five percent.
It impacts my workflow overall, with the patch management features as it has the missing patches listed in detail, making it easier to get a comprehensive report and providing some dashboards that offer visual representation.
Qualys VMDR's continuous monitoring capabilities help us respond to emergent threats by enabling my team to reach out to the security engineers whenever there is any detection of a vulnerability, informing them about it, and creating an incident.
| Product | Mindshare (%) |
|---|---|
| Qualys VMDR | 2.6% |
| BMC Helix Discovery | 4.1% |
| Other | 93.3% |

| Company Size | Count |
|---|---|
| Small Business | 11 |
| Midsize Enterprise | 5 |
| Large Enterprise | 14 |
| Company Size | Count |
|---|---|
| Small Business | 20 |
| Midsize Enterprise | 12 |
| Large Enterprise | 70 |
BMC Helix Discovery offers a unique blend of data modeling, ITSM integration, AI-driven mapping, and robust security, providing effective visibility and management over IT assets, both in cloud and on-premises environments.
BMC Helix Discovery is renowned for its ability to enhance IT asset visibility by utilizing dynamic service models and providing comprehensive infrastructure insights. It simplifies deployment through its agentless setup and integrates effortlessly with ITSM solutions. The AI-driven capabilities help predict and quickly resolve IT issues, promoting efficient asset management. Despite its advantages, there is room for improvement in terms of customization, especially for non-Windows environments, and improving stability and integration with other solutions.
What are the most important features of BMC Helix Discovery?In industries such as finance, healthcare, and technology, BMC Helix Discovery is utilized to automate event management and security processes, integrate with CMDBs, and discover network-connected devices. Organizations benefit from generating reports on system versions and patches, integrating cloud and on-premises data into their management databases for a holistic view of IT resources.
Qualys VMDR is a comprehensive cybersecurity tool offering vulnerability management, patch management, and continuous monitoring with real-time asset discovery. It delivers scalable, cloud-based solutions that enhance security operations without additional infrastructure.
Qualys VMDR provides a robust platform for enterprise security, integrating vulnerability management, compliance, and asset inventory for full visibility across cloud and on-premises environments. It features a comprehensive dashboard with threat intelligence-driven prioritization and remediation capabilities. Users benefit from accurate assessments via agent-based scanning and appreciate the intuitive, customizable scanning and reporting interface. However, there's room for improvement in false positive reduction, UI simplification, and integration capabilities, along with enhancements in asset management for large-scale deployments and the vulnerability database. Enhancing technical support speed, patch management, compliance standards, and inter-module navigation would further enrich user experience.
What are the key features of Qualys VMDR?Qualys VMDR is widely used in industries needing stringent security and compliance measures, offering comprehensive vulnerability and compliance management. It is deployed to secure web applications, servers, and crucial assets, supporting a wide range of sectors by ensuring policy adherence and vulnerability tracking through its powerful cloud platform.
We monitor all IT Asset Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.