

Tenable Vulnerability Management and JFrog Xray compete in the security and vulnerability management category. Tenable seems to have the upper hand in pricing and support, while JFrog Xray offers more advanced features.
Features: Tenable Vulnerability Management provides comprehensive vulnerability detection, effective risk prioritization, and minimal false positives. JFrog Xray offers deep binary scanning, robust integration across DevOps tools, and detailed artifact analysis, making it suitable for DevOps-centric environments.
Room for Improvement: Tenable could enhance its integration capabilities, especially in DevOps environments, offer more advanced analytical features, and improve scalability to support larger enterprises. JFrog Xray might benefit from simplifying its deployment process, reducing initial setup complexity, and enhancing its pricing model for smaller businesses to complement its robust features.
Ease of Deployment and Customer Service: Tenable is noted for straightforward deployment and responsive customer service, aiding quick adaptation, making it favorable for SMEs. JFrog Xray requires more initial setup effort but offers extensive integration capabilities across complex infrastructures, complemented by satisfactory customer support, appealing to larger enterprises.
Pricing and ROI: Tenable Vulnerability Management generally requires a lower setup cost, offering quick ROI for small environments. JFrog Xray involves higher setup costs but delivers ROI through enhanced security coverage and integration efficiency in complex, large-scale operations. Tenable offers financial accessibility, while JFrog Xray's higher investment aligns with comprehensive security goals.
When we need clarifications, we contact our account manager, and they arrange demos.
On a scale of 1 to 10, I would rate the technical support of JFrog Xray an eight because they are very knowledgeable.
It needs improvement in response time and addressing feature requests promptly.
The technical support of Tenable Vulnerability Management is available 24/7, and whenever we require support, we can get it within five minutes.
We had used Tenable's expert support services in order to make sure that we run Tenable Vulnerability Management on a continuous basis and are able to utilize their services.
According to my use case, it is highly scalable.
They can seamlessly scale the number of endpoints from 100 to 1,000,000 in a day.
Tenable Vulnerability Management is highly scalable.
With the growing needs of our company, Tenable Vulnerability Management is able to safely adapt.
I use JFrog Xray primarily for security purposes, and I find it reliable.
We did experience crashes, downtimes, and performance issues with JFrog Xray.
I have faced no stability issues with Tenable.
The stability is commendable, and I would rate Tenable ten out of ten.
The stability of Tenable Vulnerability Management is highly reliable.
When we have given a very long tag, it doesn't work as expected and requires excessive scrolling.
somehow you need to adapt your GitLab pipeline and turn them into JFrog pipeline, and this is something they don't really advertise at first—you're obliged to use the JFrog CLI.
X-ray needs improvement in supporting more than one database, as it currently only supports PostgreSQL.
They should also accelerate the process of implementing new features upon request.
I would suggest HP WebInspect as a better option than Tenable.io.
Tenable Vulnerability Management is not very effective for real-time risk prioritization for our organization's security strategy.
JFrog Xray provides a free trial of 14 days.
The basic scanning capabilities come with Artifactory, however, curation requires additional licenses.
Tenable charges around $40 per device, while Rapid7 costs $10 to $15 per device.
I would not say very expensive for Tenable Vulnerability Management; it is not prohibitive, but at the same time, there are some other tools in the marketplace which are offering the same kind of services that Tenable offers, the same kind of features that Tenable has offered at a lesser cost.
The most valuable features of JFrog Xray are its curation capabilities, its native integration with Artifactory, scanning for vulnerabilities, and license compliance features.
The policy-driven approach of JFrog Xray helped me maintain security standards by integrating it in the development pipeline.
With other registries such as ECR, we can use the images only in the AWS cloud. With JFrog, we can use this registry from any cloud or work locally as well.
Tenable enables vulnerability management through potential AI integration that consolidates efforts and resolves multiple vulnerabilities simultaneously.
The main benefit of integration with Tenable Vulnerability Management is that there will be no lack of missing vulnerabilities when it comes to the patching environment.
The best features of Tenable Vulnerability Management are flexibility, breadth and scope, and the fact that their current vulnerabilities come out, and they have tests for them within a day or two.
| Product | Market Share (%) |
|---|---|
| Tenable Vulnerability Management | 3.2% |
| JFrog Xray | 1.4% |
| Other | 95.4% |


| Company Size | Count |
|---|---|
| Small Business | 1 |
| Midsize Enterprise | 3 |
| Large Enterprise | 6 |
| Company Size | Count |
|---|---|
| Small Business | 20 |
| Midsize Enterprise | 3 |
| Large Enterprise | 21 |
JFrog is on a mission to enable continuous updates through Liquid Software, empowering developers to code high-quality applications that securely flow to end-users with zero downtime. The world’s top brands such as Amazon, Facebook, Google, Netflix, Uber, VMware, and Spotify are among the 4500 companies that already depend on JFrog to manage binaries for their mission-critical applications. JFrog is a privately-held, global company, and is a proud sponsor of the Cloud Native Computing Foundation [CNCF].
If you are a team player and you care and you play to WIN, we have just the job you're looking for.
As we say at JFrog: "Once You Leap Forward You Won't Go Back!"
Managed in the cloud and powered by Tenable Nessus, Tenable Vulnerability Management (formerly Tenable.io) provides the industry's most comprehensive vulnerability coverage with real-time continuous assessment of your organization. Built-in prioritization, threat intelligence and real-time insight help you understand your exposures and proactively prioritize remediations.
We monitor all Vulnerability Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.