

Qualys VMDR and Vicarius vRx compete in the vulnerability management and patching market. Vicarius vRx seems to hold an advantage due to its automation and patchless protection features, which provide security even without available patches.
Features: Qualys VMDR is noted for its robust vulnerability detection, continuous monitoring, and integration with other tools. It offers cloud-based features that enhance its flexibility and extensiveness. On the other hand, Vicarius vRx excels in automating patching processes, prioritizing vulnerabilities, and implementing patchless protection to secure unpatched applications.
Room for Improvement: Qualys VMDR is criticized for its complex setup, occurrence of false positives, and the need for improved reporting. Users also seek more intuitive features and comprehensive documentation. Vicarius vRx could enhance its login processes and user interface for better experiences, and there's a demand for more automation in its patchless protection and logging capabilities.
Ease of Deployment and Customer Service: Qualys VMDR supports versatile deployment options including on-premises and cloud variations, but users sometimes experience slow support response. Vicarius vRx's public cloud deployment simplifies accessibility but limits on-premises options. Both provide reliable customer support with varying feedback on responsiveness for Qualys VMDR.
Pricing and ROI: Qualys VMDR is deemed expensive, especially for small enterprises, but justifies cost with comprehensive features for larger companies. Discount negotiations are possible. Vicarius vRx offers competitive, straightforward pricing without tiers, appealing to many clients but potentially costly for smaller organizations. Both show strong ROI by enhancing security posture and reducing vulnerabilities.
We saw a return on investment through significant savings in time, money, and resources.
We usually get on calls with tech support, and they are very helpful.
The response time takes a while.
The technical support provided by Qualys is pretty good.
Their support is very good, and they respond quickly.
During the POC and the implementation, they were very available and made their best efforts to help us.
Whenever I've contacted them, they respond promptly with a callback or by email.
Scalability depends on the license and the number of assets being monitored.
Qualys VMDR can handle scalability, although increasing the inventory can raise the licensing costs.
Qualys VMDR's scalability is good, and the customer support is good.
It is very simple; you just script it, and then the computers connect themselves.
When we attempted to scale this and update 200 systems, that just locked it.
We have some clients with up to a thousand agents.
Qualys VMDR is stable.
There are some issues that they do not even know how to fix at this point.
I would rate the stability of Vicarius vRx ten out of ten.
There are some issues like high CPU usage during updates, but these were fixed.
It does not automate patching unless the patch management module is purchased separately.
If AI features were integrated, it could enhance the capabilities significantly.
One area where Qualys VMDR can be improved is the missing feature for deploying agents for over 1,000 assets, as we need to do it manually.
I am pretty sure that the tool works great when it comes to Windows, but when you are in an environment that has different flavors of Linux at different version levels, that may pose an issue.
We have the ability to search across the network for all switches, routers, and printers, but some devices might be outdated and have vulnerabilities.
Enhancing Vicarius vRx with improved third-party integrations, like notifications for external systems, and increased cloud integration for richer instance information, would be valuable improvements.
I would rate the pricing between seven to eight out of ten.
I have a notion that Qualys might be more expensive than Rapid7.
Qualys offers better pricing and is feature-packed compared to other tools.
It was very cheap.
In the past, Vicarius vRx was cheap, but now they have adjusted their pricing policy, resulting in higher renewal costs.
From a pricing perspective, Vicarius was cheaper compared to other competitors.
The prioritization of vulnerabilities has improved our remediation efforts by around thirty to thirty-five percent.
It impacts my workflow overall, with the patch management features as it has the missing patches listed in detail, making it easier to get a comprehensive report and providing some dashboards that offer visual representation.
Qualys VMDR's continuous monitoring capabilities help us respond to emergent threats by enabling my team to reach out to the security engineers whenever there is any detection of a vulnerability, informing them about it, and creating an incident.
It's a valuable tool that reduces tension between IT and security teams by providing time to properly install patches.
The system prioritizes vulnerabilities, identifying high, medium, and low risks, allowing us to focus on high-risk applications.
The most valuable feature is the system's ability to provide information about open CVEs and how it compares the local version with available updates.
| Product | Market Share (%) |
|---|---|
| Qualys VMDR | 5.0% |
| Vicarius vRx | 0.9% |
| Other | 94.1% |

| Company Size | Count |
|---|---|
| Small Business | 20 |
| Midsize Enterprise | 12 |
| Large Enterprise | 70 |
| Company Size | Count |
|---|---|
| Small Business | 11 |
| Midsize Enterprise | 7 |
| Large Enterprise | 3 |
Vulnerability Management, Detection, and Response (VMDR) is a cornerstone product of the Qualys TruRisk Platform and a global leader in the enterprise-grade vulnerability management (VM) vendor space. With VMDR, enterprises are empowered with visibility and insight into cyber risk exposure - making it easy to prioritize vulnerabilities, assets, or groups of assets based on business risk. Security teams can take action to mitigate risk, helping the business measure their actual risk exposure over time.
Qualys VMDR offers an all-inclusive risk-based vulnerability management solution to prioritize vulnerabilities and assets based on risk and business criticality. VMDR seamlessly integrates with configuration management databases (CMDB), Qualys Patch Management, Custom Assessment and Remediation (CAR), Qualys TotalCloud and other Qualys and non-Qualys solutions to facilitate vulnerability detection and remediation across the entire enterprise.
With VMDR, users are empowered with actionable risk insights that translate vulnerabilities and exploits into optimized remediation actions based on business impact. Qualys customers can now aggregate and orchestrate data from the Qualys Threat Library, 25+ threat intelligence feeds, and third-party security and IT solutions, empowering organizations to measure, communicate, and eliminate risk across on-premises, hybrid, and cloud environments.
Vicarius vRx automates patching and vulnerability mitigation with patchless protection, appreciated for effective third-party app patching and vulnerability prioritization. The platform offers streamlined management via intuitive dashboards, consolidating vulnerability discovery and remediation.
Vicarius vRx streamlines the patching and vulnerability mitigation process, delivering automation through patchless protection. It is favored for its ability to handle third-party applications effectively while providing vulnerability prioritization. The platform's intuitive dashboards allow for efficient management, consolidating vulnerability discovery and remediation efforts. Users note the robust scripting engine and supportive community as significant assets in mitigating critical threats, reducing manual effort and remediation time. Despite the strengths, enhancements in areas like automating patchless solutions, simplifying the login process, and refining networking vulnerability scanning capabilities are needed. The patch update process, reporting, and scripting functionalities require improvements. Name changes have resulted in some confusion, and additional filtering options are desired, along with better cloud integration and system feedback on update statuses. Logging options and mobile device management support are sought after by organizations.
What are the key features of Vicarius vRx?Managed service providers utilize Vicarius vRx for compliance needs, focusing on PCI and HIPAA requirements, vulnerability management, and patching. They use it extensively for patch management, covering both Microsoft and third-party updates, and for centralized update management. It aids in achieving visibility and automation, ensuring quick application of necessary patches across numerous assets while enhancing cybersecurity effectiveness with its network functionality and audit compliance features.
We monitor all Vulnerability Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.