No more typing reviews! Try our Samantha, our new voice AI agent.

Proofpoint Data Security Posture Management vs Rubrik Data Security Posture comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jul 21, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Qualys TotalCloud
Sponsored
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
46
Ranking in other categories
Vulnerability Management (11th), Container Security (11th), Cloud Workload Protection Platforms (CWPP) (8th), Cloud Security Posture Management (CSPM) (8th), SaaS Security Posture Management (SSPM) (2nd), Cloud-Native Application Protection Platforms (CNAPP) (7th)
Proofpoint Data Security Po...
Average Rating
9.0
Reviews Sentiment
3.6
Number of Reviews
1
Ranking in other categories
Data Security Posture Management (DSPM) (21st), Data Security Platforms (DSP) (9th)
Rubrik Data Security Posture
Average Rating
8.0
Reviews Sentiment
2.9
Number of Reviews
1
Ranking in other categories
Data Security Posture Management (DSPM) (17th), Data Security Platforms (DSP) (6th)
 

Featured Reviews

reviewer2859021 - PeerSpot reviewer
Sr Security Engineer at a tech vendor with 5,001-10,000 employees
Risk-based triage has transformed container security and now prioritizes high-impact threats
The best features Qualys TotalCloud offers currently include managing cloud infrastructure and container security while facing major challenges such as alert fatigue. Traditional vulnerability scanners flag hundreds of CVEs on short-lived Kubernetes containers, some of which have no internet exposure or are gone before we can even triage them. I leverage Qualys TotalCloud to move beyond static CVSS. I use it to implement runtime exposure, correlation risk reprioritization, and shift-left integration. This notifies developers to fix a base image upstream rather than patching live ephemeral instances. In my work with cloud and container security, the biggest operational hurdle was alert fatigue. I use Qualys to shift left from static CVSS severity to context-aware risk prioritization. I correlated raw vulnerability data with real-time risk factors such as public network exposure, active runtime execution, or overly permissive IAM roles. This allows us to immediately drop the priority of isolated containers and escalate lower-severity CVEs that sit on an exposed, high-risk path. We can map these findings directly back to our CI/CD pipelines so developers can patch the root base images upstream. We have drastically cut down the signal-to-noise ratio, saved a lot of manual hours doing triage work, and ensured engineering effort goes directly towards high-impact risk reduction.
EO
Senior Solutions Architect at Cyber Knight Technologies FZ LLC
AI classification has transformed data visibility and now simplifies policy‑driven protection
In my opinion, what should be improved about Proofpoint Data Security Posture Management is that it is quite advanced. I think they should ease it up a bit. When it comes to setting of policies, I wish there were a single policy that deals with multiple channels of exfiltration instead of having to do multiple policies to deal with maybe data exfiltration through web upload, data exfiltration through USB, data exfiltration through print, copy and paste, and so forth. It would have been much easier if I had one policy, and then I could turn on the light for all of these different exfiltration channels. A critical example is saying I want to put up a PII policy that will secure social security numbers. That is the condition, social security number. Then in the same policy, I should be able to state that I want this to block exfiltration through USB. However, I want it to allow uploads through web or uploads to a particular website or URL. I want it to allow that kind of granularity where you can flick around things on the same policy. Currently, with Proofpoint Data Security Posture Management, you have to build multiple policies for different channels. Most importantly, the Boolean logic in their policies is incomplete. It just has the AND function. Boolean should carry AND and OR. I am saying if this data contains PII data OR PCI data—either of them—it flags either PCI or PII. But what it has now is AND. For it to fire or trigger, both must be triggered. So if somebody puts only one, maybe PII, and does not put PCI, then it does not trigger. It should have an OR, so that I can have multiple policies and then differentiate them so that if this OR this OR this, either of these triggers. I have flagged that and raised that as a concern to the product team. I expect additional features from them in the next release, specifically the OR feature for the conditions. However, I am happy with the agent, the lightweight agent, the amount of activities it captures. Beyond just the DLP, it looks at the sites and URLs you are going to, it looks at the file renaming, it looks at the attempt to uninstall, and it looks really deep even though it is user mode. I am happy with that. The Boolean logic is what I think is incomplete at the moment.
Neelash Nair - PeerSpot reviewer
Principle Tech Architect at Unisys
Unified dashboard allows seamless threat detection and management while process for sensitive data needs action capabilities
The features of Rubrik Data Security Posture that I have found most valuable include its better detect function for anomalies and cyber threats, along with immutability by default, operating system hardening, MFA, and all the other ZTNA functions, which align well with our needs. Regarding the anomaly detection feature in Rubrik Data Security Posture, the product has a threat detect function that you can run on-demand or by default to identify anomalies, and allows you to perform deeper analysis using YARA rules or other indicators of compromise to determine if a threat is actual or a false positive. I leverage Rubrik's unified dashboard for proactive threat detection and remediation, which I find absolutely fantastic and unmatched compared to other dashboards, allowing visibility into a hybrid environment on a single pane of glass. The positive impact I've seen from using Rubrik Data Security Posture is its superior detection of threats from primary backups, which is built-in and requires minimal setup compared to other tools that need separate scanning engines.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I appreciate Qualys TotalCloud's ability to onboard any type of device with ease, including containers."
"The vulnerability management feature is the one I like the most because it provides a clear picture of all vulnerabilities."
"I would rate Qualys TotalCloud ten out of ten."
"I appreciate TotalCloud's real-time protection and remediation features. The remediation options include automated one-click remedies and custom changes that help manage vulnerabilities efficiently."
"Qualys TotalCloud helps you not just to identify misconfigurations, but you can actually also fix issues."
"The most valuable feature is the consolidated information that it provides from various platforms."
"Qualys TotalCloud's most valuable feature is its agent versatility."
"TotalCloud has been excellent in providing us with immediate access to all the products and features we need, such as CSPM, TruRisk Insights, and compliance reports, including CIS and HIPAA."
"It has helped my data security strategy very well because one thing is to set static DLP rules, however, how do you start setting rules when you have little or zero visibility as to where your critical or sensitive data resides?"
"I leverage Rubrik's unified dashboard for proactive threat detection and remediation, which I find absolutely fantastic and unmatched compared to other dashboards, allowing visibility into a hybrid environment on a single pane of glass."
 

Cons

"I would appreciate additional integration options to connect Qualys TotalCloud with our other vulnerability management tools."
"Qualys's ticketing system can be confusing when assigning tasks to individuals, and support could be improved by offering instant call solutions with engineers in addition to ticket replies."
"Qualys TotalCloud's increasing complexity, due to the development and deployment of multiple solutions, is making the GUI difficult to navigate."
"Qualys' customer service provides quality answers, but the response time is long, even though it is within the SLA."
"There is a lack of data segregation according to criticality or inventory."
"Their customer support needs improvement."
"I would like the ability to disable certain default built-in policies as they can be misleading when creating dashboards. That is the top one."
"There is room for improvement in vulnerability scanning, particularly for PaaS environments. Currently, Qualys does not have full access to these instances, which limits its effectiveness."
"In my opinion, what should be improved about Proofpoint Data Security Posture Management is that it is quite advanced."
"I assess the effectiveness of Rubrik's sensitive data discovery in my data security strategy as functional but limited, as it identifies sensitive data but lacks clarity on what actions to take next."
 

Pricing and Cost Advice

"As a middle management member, I do not have direct pricing knowledge, but based on the knowledge from our meetings, its pricing is competitive."
"TotalCloud's price is about right where I would expect it to be."
"Qualys TotalCloud is expensive, but it offers a premier solution with no headaches."
"Qualys TotalCloud offers cost-effective licensing flexibility."
"Qualys TotalCloud offers good pricing that is affordable and competitive with the market. Our partnership also provides us with additional benefits."
"Qualys TotalCloud is expensive."
"I am not sure about the pricing. From what I understand, it is a bit on the higher side, but I do not have the exact numbers."
"Although Qualys TotalCloud is relatively expensive due to its unique automation features, its cost-effectiveness is rated an eight out of ten, with ten being the most costly."
Information not available
Information not available
report
Use our free recommendation engine to learn which Data Security Posture Management (DSPM) solutions are best for your needs.
913,683 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
16%
Outsourcing Company
12%
Manufacturing Company
11%
Financial Services Firm
10%
Financial Services Firm
13%
Manufacturing Company
9%
Outsourcing Company
9%
Comms Service Provider
7%
Construction Company
13%
Comms Service Provider
12%
University
10%
Financial Services Firm
10%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business14
Midsize Enterprise5
Large Enterprise34
No data available
No data available
 

Questions from the Community

What needs improvement with Qualys TotalCloud?
In terms of improvement, remediation still belongs to the cloud team, which is one of the issues we faced with Qualys...
What is your primary use case for Qualys TotalCloud?
My main use case for Qualys TotalCloud is regarding the cloud visibility that we were not having previously. Previous...
Ask a question
Earn 20 points
What is your experience regarding pricing and costs for Rubrik Data Security Posture?
The pricing and licensing cost of Rubrik Data Security Posture can be tricky, as it depends on the relationship you h...
What needs improvement with Rubrik Data Security Posture?
I assess the effectiveness of Rubrik's sensitive data discovery in my data security strategy as functional but limite...
What is your primary use case for Rubrik Data Security Posture?
I have been working with Rubrik Data Security Posture since 2016-2017. I have been working with Rubrik Data Security ...
 

Also Known As

Qualys TotalCloud with FlexScan
No data available
Laminar
 

Overview

Find out what your peers are saying about Wiz, Palo Alto Networks, Varonis and others in Data Security Posture Management (DSPM). Updated: September 2026.
913,683 professionals have used our research since 2012.