

Qualys TotalCloud and Varonis Platform are leaders in the security and risk management sector. Qualys TotalCloud stands out with its cloud-native features, offering enhanced automation and integration, while Varonis Platform excels in data access governance and unstructured data management.
Features: Qualys TotalCloud offers TruRisk Insights, FlexScan, and cloud security posture management, all leveraging strong automation and API integration for seamless operations. Varonis Platform focuses on data access governance, managing unstructured data across storage solutions, and providing analytics to detect unusual behavior and access patterns.
Room for Improvement: Qualys TotalCloud could benefit from clearer licensing terms and better vulnerability scanning for PaaS environments and niche devices. Improvements in AI integration and support for diverse OS like Windows for container security are needed. Varonis Platform requires faster cloud deployment and a more efficient calculation engine for large datasets. Its DLP integration and pricing should be adjusted for mid-tier companies.
Ease of Deployment and Customer Service: Qualys TotalCloud predominantly serves public and hybrid cloud environments, offering solid technical support, though improvement in ticket resolution is noted. Varonis Platform suits on-premises setups, with good technical support but slower resolution times. Qualys is optimal for cloud-focused organizations, while Varonis aligns with on-premises deployments.
Pricing and ROI: Qualys TotalCloud is cost-effective, providing significant time-saving and risk management advantages, justifying the cost with its features. Varonis Platform's high licensing costs suit larger enterprises, with tiered pricing perceived as costly. Users find value in its price point for comprehensive data security and governance.
It has saved about 90% of our time.
TotalCloud has generated overall savings of 30 to 40 percent across various departments.
CallStream helps us integrate and automate tasks.
I definitely say that we have had time savings by using the DataVantage module and also time savings using the AD module when we are dealing with different incidents.
I have seen a return on investment mainly through time savings and improved security for sensitive data, making it a valuable investment.
They are helpful, respond to my queries, and can answer any question.
Qualys's tech support is highly responsive, providing multiple ways to interact with them.
Qualys' customer service provides quality answers, but the response time is long, even though it is within the SLA.
The customer support is above par; it is what I think other organizations should look at to be comparable to.
They respond quickly to anything we need, which is not common among platforms.
I would rate the customer support for Varonis Platform at nine out of ten.
We started our organization about nine months back. We started with about 30 users, and we now have more than 100 users.
Our organization currently uses it to manage over 1200 web applications.
It is absolutely scalable, and I would rate its scalability as nine out of ten.
Varonis Platform is highly rated for scalability.
Varonis's scalability as eight to eight point five out of ten.
Overall, the support provided has been excellent.
It is a stable solution, which is why we chose it.
Continuous monitoring is crucial to ensure system stability and avoid vulnerabilities or threats.
Ideally, the scanner should automatically detect and scan all subdomains, even if not explicitly defined, ensuring comprehensive vulnerability assessment.
Ideally, updates should be more immediate, enabling quicker implementation of solutions.
Our goal is to integrate all these functions into Qualys, creating a single dashboard for comprehensive security monitoring and management.
Varonis requires more access permissions for its core functions compared to competitors, which can be a concern for companies about data safety.
A phishing email module would be great; I look forward to when that comes out.
Enhancing tighter integration with third-party solutions, such as SIEM or SOAR platforms, for smoother incident response workflows.
Qualys TotalCloud's pricing is currently acceptable, it is becoming increasingly expensive.
Pricing is managed by our finance team; however, Qualys TotalCloud offers cost-effective licensing flexibility.
Qualys TotalCloud is expensive, but it offers a premier solution with no headaches.
Varonis is known for its high licensing cost, which can include the cost of multiple servers required for its operations, called collectors.
My experience with pricing, setup costs, and licensing for Varonis Platform has been good, with competitive costs.
This view of risk helps reduce the work we would have to do to combine multiple sources to prioritize risk.
It will help cybersecurity professionals monitor the cloud and find vulnerabilities.
We are enjoying the new feature, FlexScan, which is valuable for Internet-facing VMs.
Varonis is excellent for scanning unstructured data sources like file shares, OneDrive, SharePoint, Azure Blob Storage, and S3s.
Varonis Platform is agent-based and AI-driven for detection and response, identifying data based on its content and context.
We have created automatic scripts in case there is a chance that it is a ransomware malicious actor, and it will automatically disable the user, log them out, and disable the actual workstation.
| Product | Market Share (%) |
|---|---|
| Varonis Platform | 7.0% |
| Qualys TotalCloud | 1.8% |
| Other | 91.2% |

| Company Size | Count |
|---|---|
| Small Business | 8 |
| Midsize Enterprise | 2 |
| Large Enterprise | 25 |
| Company Size | Count |
|---|---|
| Small Business | 3 |
| Midsize Enterprise | 2 |
| Large Enterprise | 12 |
TotalCloud is the Qualys approach to Cloud Native Application Protection Platform (CNAPP) for cloud infrastructure and SaaS environments. With TotalCloud, customers extend TruRisk insights (transparent cyber risk scoring methodology) from the Qualys Enterprise TruRisk Platform to their cloud environments allowing for a seamless unified view of cyber risk across on-prem, hybrid, and multi-cloud environments.
Features and capabilities of Qualys TotalCloud include, but are not limited to:
Discover: Complete visibility and insights into cyber-risk exposure across multi-cloud. Continuously discover and monitor all your workloads across a multi-cloud environment for a 360-degree view of your cloud footprint. Identify known and previously unknown internet-facing assets for 100% visibility and tracking of risks.
Assess: Comprehensive cloud-native assessments with FlexScanTM. Extensive scanning capabilities with Qualys FlexScan, including no-touch, agentless, API- and snapshot-based scanning, along with agent- and network-based scanning for in-depth assessment. Use these multiple scanning methods to scan a workload to get a unified and comprehensive view of vulnerabilities and misconfigurations.
Prioritize: Unified security view to prioritize cloud risk with TruRiskTM. Experience a unified risk-based view of cloud security with insights across workloads, services, and resources. Qualys TruRisk quantifies security risk by workload criticality and vulnerabilities; it correlates with ransomware, malware, and exploitation threat intelligence to prioritize, trace, and reduce risk.
Defend: Real-time protection against evolving and unknown threats with InstaProtectTM. Qualys enables continuous monitoring of all cloud assets to ensure they are protected against threats and attacks at runtime. Qualys keeps your cloud runtime safe by detecting known and unknown threats across the entire kill chain in near real-time across a multi-cloud environment.
Remediate: Fast remediation with QFlow – no code, drag-and-drop workflows. The integration of QFlow technology into Qualys TotalCloud saves security and DevOps teams valuable time and resources. Automation and no-code, drag-and-drop workflows help simplify the time-consuming operational tasks of assessing vulnerabilities on ephemeral cloud assets, alerting on high-priority threats, remediating misconfigurations, and quarantining high-risk assets.
Varonis Platform enhances data security and governance with advanced analytics, identifying unusual access patterns and sensitive areas. Its centralized interface manages permissions across systems, offering essential capabilities for alerting and reporting.
Varonis Platform provides continuous data protection and monitoring by identifying and alerting on unauthorized data access. It offers comprehensive insights into file access and user activities, supporting data classification and simplifying compliance with tracking and monitoring capabilities. Integration with storage systems enables users to manage permissions and access effectively. Room for improvement includes cloud integration and simplifying its interface and calculation engine for ease of use. Challenges include on-premises dependency, licensing costs, and a need for enhanced DLP capabilities.
What are the primary features of Varonis Platform?
What benefits and ROI should users expect?
In finance, Varonis aids in safeguarding sensitive financial data, while in healthcare, it secures patient records. Legal industries utilize it for protecting client information, and retail sectors manage sensitive customer data. These industries benefit from Varonis' ability to prevent unauthorized access and streamline compliance.
We monitor all SaaS Security Posture Management (SSPM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.