Try our new research platform with insights from 80,000+ expert users

FortiCNAPP vs Rapid7 InsightVM comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.1
FortiCNAPP enhances security, saves time and costs by automating alerts and reducing manual efforts, justifying its investment.
Sentiment score
6.0
Rapid7 InsightVM is praised as a cost-effective cybersecurity tool for preventing attacks and enhancing system defenses.
I have seen a return on investment with Rapid7 InsightVM as we have reduced security incidents because we are informed about our critical vulnerabilities, allowing us to remain on the safe side against critical attacks.
cybersecurity Team Leader at EMAK
 

Customer Service

Sentiment score
7.9
FortiCNAPP’s customer service is praised for responsiveness, proactive communication, and efficient issue resolution via Slack and email.
Sentiment score
6.7
Rapid7 InsightVM receives positive customer service reviews, with praise for quality but suggestions to improve response times.
Technical support from Fortinet is good; I get feedback and responses quickly.
Software Engineer at a university with 5,001-10,000 employees
Support is not available promptly, especially when issues are escalated to another region.
Head Of Cyber Security at Super Secure
Sometimes support requests coincide with holidays in their support region, causing slight delays.
Professional services team lead at a tech services company with 1,001-5,000 employees
I cannot comment specifically regarding the support part because I have never needed Rapid7 support for the InsightVM solution as it is very stable.
Senior Manager - Pre-Sales at Trillium Information Security Systems
 

Scalability Issues

Sentiment score
7.5
FortiCNAPP is praised for scalability and adaptability, with positive integration across environments, but challenges include high-traffic scenarios.
Sentiment score
7.5
Rapid7 InsightVM is highly scalable, seamlessly integrates expansions, and is praised for handling diverse environments and client infrastructures.
Scalability in the Rapid7 InsightVM solution is straightforward.
Senior Manager - Pre-Sales at Trillium Information Security Systems
Rapid7 InsightVM is recommended for large-scale companies with more than 30,000 users.
Enterprise Security Architect at a energy/utilities company with 10,001+ employees
According to the environment requirements, we can scale the solution as needed.
Professional services team lead at a tech services company with 1,001-5,000 employees
 

Stability Issues

Sentiment score
7.4
FortiCNAPP is stable, with occasional minor detection issues and lags, yet frequent updates maintain steady performance.
Sentiment score
8.1
Rapid7 InsightVM is highly stable, with minimal issues quickly resolved, and users frequently rate its reliability highly.
We have not faced any issues with stability, and I would rate it a nine out of ten.
Professional services team lead at a tech services company with 1,001-5,000 employees
The stability of Rapid7 InsightVM is excellent.
0 at a tech vendor with 5,001-10,000 employees
There have been some challenges, especially with support response times, which affect stability.
Head Of Cyber Security at Super Secure
 

Room For Improvement

FortiCNAPP requires improvements in integration, security features, user interface, alert management, and data visibility for enhanced user experience.
Rapid7 InsightVM needs improvements in reporting, integrations, UI, and support, with enhanced cloud capabilities and customization options.
The vulnerability part is not systematically organized; it is all clumsy in the web UI, and it is not user-friendly.
Software Engineer at a university with 5,001-10,000 employees
Having the ability to build our own audit file, similar to a feature in Tenable, would be beneficial.
Professional services team lead at a tech services company with 1,001-5,000 employees
The major improvement needed is prompt support.
Head Of Cyber Security at Super Secure
The current process requires manually telling IT teams to remediate vulnerabilities, and then they update the status of these vulnerabilities in the platform.
Senior Manager - Pre-Sales at Trillium Information Security Systems
 

Setup Cost

FortiCNAPP pricing is flexible and stable, with costs ranging from $80,000 to $200,000 annually, not seen as prohibitive.
Rapid7 InsightVM is asset-based, scalable, and flexible with costs between $40,000-$100,000, considered competitive despite higher pricing.
Rapid7 InsightVM is expensive, possibly one of the highest in pricing among similar products.
0 at a tech vendor with 5,001-10,000 employees
Pricing is reasonable and competitive compared to other solutions in the market.
Head Of Cyber Security at Super Secure
I would rate the pricing for Rapid7 InsightVM as eight out of ten.
Enterprise Security Architect at a energy/utilities company with 10,001+ employees
 

Valuable Features

FortiCNAPP excels in compliance, threat detection, integration, and automation, enhancing security and efficiency in multi-cloud environments.
Rapid7 InsightVM excels with comprehensive scanning, robust reporting, ease of use, and dynamic integration, boosting effective vulnerability management.
The machine learning capability in Lacework FortiCNAPP is used for threat detection.
Software Engineer at a university with 5,001-10,000 employees
It's based on the CVSS risk scoring system, which is well-recognized and effective.
Professional services team lead at a tech services company with 1,001-5,000 employees
The dashboard is excellent as it helps in visualizing our vulnerability management data.
Manager at a financial services firm with 5,001-10,000 employees
I have seen a decrease in the number of incidents since adopting Rapid7 InsightVM, and the team can engage faster with incidents because we already know about the vulnerability on the servers.
cybersecurity Team Leader at EMAK
 

Categories and Ranking

FortiCNAPP
Ranking in Vulnerability Management
41st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
11
Ranking in other categories
Container Security (30th), Cloud Workload Protection Platforms (CWPP) (18th), Cloud Security Posture Management (CSPM) (26th), Cloud-Native Application Protection Platforms (CNAPP) (16th), Compliance Management (10th)
Rapid7 InsightVM
Ranking in Vulnerability Management
7th
Average Rating
8.0
Reviews Sentiment
6.9
Number of Reviews
67
Ranking in other categories
Risk-Based Vulnerability Management (3rd)
 

Mindshare comparison

As of February 2026, in the Vulnerability Management category, the mindshare of FortiCNAPP is 1.7%, up from 1.3% compared to the previous year. The mindshare of Rapid7 InsightVM is 2.7%, down from 5.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Vulnerability Management Market Share Distribution
ProductMarket Share (%)
Rapid7 InsightVM2.7%
FortiCNAPP1.7%
Other95.6%
Vulnerability Management
 

Featured Reviews

SK
Software Engineer at a university with 5,001-10,000 employees
Improving security insights has been helpful but inconsistent vulnerability tracking needs attention
The vulnerability part is not systematically organized; it is all clumsy in the web UI, and it is not user-friendly. Regarding improvements, the vulnerability part, recent changes with user management, and Fortinet IM coming into place, which is not helpful at all because it cuts out the automation part, are the most important things. Lacework FortiCNAPP should have a new clean UI and ease of access for the users as that should be the main concern. There are limitations regarding the scalability of Lacework FortiCNAPP. There are also more limitations with integrations like GitHub or any other pipeline, CI/CD, or ISD. It is glitchy and works well only sometimes, and most of the time, the reports or other things are not properly calculated or circulated with the teams.
FL
Senior Manager - Pre-Sales at Trillium Information Security Systems
Offers robust compliance features but needs improved automation in remediation
The automation capability remediation needs improvement. The current process requires manually telling IT teams to remediate vulnerabilities, and then they update the status of these vulnerabilities in the platform. This basic feature that Rapid7 calls an automated remediation process is actually manual. We can update the status of vulnerabilities in the Rapid7 InsightVM platform and collectively see how many vulnerabilities we have identified and how many are remediated by our IT team. More automation in the remediation feature is a basic demand from many customers. The remediation part and vulnerability identification of network devices or rigid devices are not currently supported by Rapid7 InsightVM. More integration and automation are the two areas Rapid7 needs to improve in their product.
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
881,733 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
12%
Computer Software Company
11%
Manufacturing Company
7%
University
6%
Financial Services Firm
12%
Manufacturing Company
10%
Computer Software Company
9%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise4
Large Enterprise4
By reviewers
Company SizeCount
Small Business29
Midsize Enterprise14
Large Enterprise25
 

Questions from the Community

What is your experience regarding pricing and costs for Lacework?
My smaller deployments cost around 200,000 a year, which is probably not as expensive as Wiz.
What needs improvement with Lacework?
The vulnerability part is not systematically organized; it is all clumsy in the web UI, and it is not user-friendly. Regarding improvements, the vulnerability part, recent changes with user managem...
What is your primary use case for Lacework?
The major use case for Lacework FortiCNAPP is for security. I'm using it for security internally for my company.
How would you choose between Rapid7 InsightVM and Tenable Nessus?
You have full visibility across cloud, network, virtual, and containerized infrastructures with Rapid7 Insight VM. You can easily prioritize vulnerabilities using attacker analytics. Overall, Rapid...
What do you like most about Rapid7 InsightVM?
The product's initial setup phase was very easy.
What is your experience regarding pricing and costs for Rapid7 InsightVM?
My experience with pricing, setup cost, and licensing for Rapid 7 is that they are generally pretty good in terms of their pricing, their setup cost is reasonable, and licensing is among the easier...
 

Also Known As

Polygraph, FortiCNP, Lacework
InsightVM, NeXpose
 

Overview

 

Sample Customers

J.Crew, AdRoll, Snowflake, VMWare, Iterable, Pure Storage, TrueCar, NerdWallet, and more.
ACS, Acosta, AllianceData, amazon.com, biogen idec, CBRE, CATERPILLAR, Deloitte, COACH, GameStop, IBM
Find out what your peers are saying about FortiCNAPP vs. Rapid7 InsightVM and other solutions. Updated: February 2026.
881,733 professionals have used our research since 2012.