Try our new research platform with insights from 80,000+ expert users

NAVEX One vs Rapid7 InsightVM comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

NAVEX One
Average Rating
7.0
Reviews Sentiment
7.3
Number of Reviews
1
Ranking in other categories
GRC (18th), IT Governance (7th), IT Vendor Risk Management (15th)
Rapid7 InsightVM
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
61
Ranking in other categories
Risk-Based Vulnerability Management (4th)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. NAVEX One is designed for GRC and holds a mindshare of 1.1%, down 1.4% compared to last year.
Rapid7 InsightVM, on the other hand, focuses on Risk-Based Vulnerability Management, holds 14.4% mindshare, up 14.0% since last year.
GRC
Risk-Based Vulnerability Management
 

Featured Reviews

EV
Useful for risk assessment and has customization capability
The tool helps us with security incidents, policies, business continuity, disaster recovery, and internal audits. The feature I like the most is its customization capability. It acts like a blank canvas where you can construct forms and workflows according to your needs. You can configure and customize a lot yourself, whether starting from scratch or using some out-of-the-box options. The solution has impacted our operations by helping us manage and prioritize environmental risks. It also assists in establishing ownership of risks and enables us to mitigate or mediate existing risks. Additionally, it facilitates tracking risks throughout their entire lifecycle.
Mahmoud Elhamaymy - PeerSpot reviewer
Reliable scanning and integration strengthen security infrastructure
InsightVM has a very organized GUI with ease of use. The vulnerability scans are reliable, and the credential scan is a beneficial feature. The solution is efficient and trustworthy. It's based on the CVSS risk scoring system, which is well-recognized and effective. The integration capabilities through APIs allow easy integration with existing security infrastructure.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The tool helps us with security incidents, policies, business continuity, disaster recovery, and internal audits. The feature I like the most is its customization capability. It acts like a blank canvas where you can construct forms and workflows according to your needs. You can configure and customize a lot yourself, whether starting from scratch or using some out-of-the-box options."
"The solution is very user friendly and easy to manage."
"This solution's most useful feature is that it is entirely a single-page application."
"InsightVM's most valuable feature is risk scoring, a formula based on different vectors like the ease of exploitation and the availability of the machine."
"It's easy to use. It's fast, it's a powerful easy to access tool."
"The most important aspect of the solution is that it rarely gives false positives, especially compared to other products. It provides very clear reports for our IT teams to look at."
"The risk score that they provide makes it easier to find out the biggest risks. It helped the security officers to understand where the biggest risks are so that they can act on them. They can instruct their IT teams to give them a higher priority and mitigate them."
"There are many integrations with things like the VMware NSX that are great, the reporting is really solid."
"It is stable and scalable."
 

Cons

"We think there's room for improvement, especially with customizing NAVEX One. Their development on the roadmap can be slow."
"A definite improvement would be to make it easier to run ad-hoc scans without needing to assign the asset to a site or group."
"There was functionality present previously, however, currently, we can't integrate directly with Jira Service Desk - only the cloud version."
"It would be great to have a mobile application client. Currently, you have to use a mobile web browser on a device, but it is not similar to the desktop web browser in terms of user experience. It would be nice to have a mobile application to access the platform."
"InsightVM is getting a little stale and is in danger of falling behind its competitors."
"There should be containerization within the VM."
"We found that after you passed an endpoint, it didn't always reflect it in the next scan. I'm not sure if it was a glitch or some issue with the product's software. That was never clear. That was always an issue and something that definitely needed improvement."
"This solution creates false-positives which can cause issues with reporting."
"They should integrate the solution with multiple products."
 

Pricing and Cost Advice

"NAVEX One's pricing comes in the middle range when compared to other products."
"The license is IP based. How many IPs you are using to scan is the amount of the license you have to buy. The number of users doesn't matter; many users can use it or only person. It depends on the culture of the organization."
"Its licensing is yearly. Everything is included in the price for one year."
"The solution is a bit more reasonably priced than other products."
"The solution's pricing is better than Nexus which charges a high amount for very little use."
"InsightVM is an expensive product, especially compared to its competitors, at around a million NOK per year."
"Our licensing costs are somewhere around $40,000 annually. There are no additional fees."
"Its pricing depends on the number of users per month."
"The licensing is asset-based and very straightforward."
report
Use our free recommendation engine to learn which GRC solutions are best for your needs.
845,485 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
11%
Healthcare Company
10%
Outsourcing Company
9%
Financial Services Firm
9%
Educational Organization
42%
Computer Software Company
9%
Financial Services Firm
8%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for NAVEX One?
NAVEX One's pricing comes in the middle range when compared to other products.
What needs improvement with NAVEX One?
We think there's room for improvement, especially with customizing NAVEX One. Their development on the roadmap can be slow.
What is your primary use case for NAVEX One?
We use the solution to conduct risk assessments on our environment.
How would you choose between Rapid7 InsightVM and Tenable Nessus?
You have full visibility across cloud, network, virtual, and containerized infrastructures with Rapid7 Insight VM. You can easily prioritize vulnerabilities using attacker analytics. Overall, Rapid...
What do you like most about Rapid7 InsightVM?
The product's initial setup phase was very easy.
What is your experience regarding pricing and costs for Rapid7 InsightVM?
Rapid7 InsightVM is expensive, possibly one of the highest in pricing among similar products.
 

Also Known As

Lockpath Keylight
InsightVM, NeXpose
 

Overview

 

Sample Customers

Claims Recovery Financial Services (CRFS), Surescript, The University of Chicago
ACS, Acosta, AllianceData, amazon.com, biogen idec, CBRE, CATERPILLAR, Deloitte, COACH, GameStop, IBM
Find out what your peers are saying about RSA, OneTrust, MEGA International and others in GRC. Updated: March 2025.
845,485 professionals have used our research since 2012.