Try our new research platform with insights from 80,000+ expert users

Tenable Cloud Security vs Veza comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Tenable Cloud Security
Ranking in Cloud Infrastructure Entitlement Management (CIEM)
4th
Average Rating
8.4
Reviews Sentiment
6.5
Number of Reviews
12
Ranking in other categories
Identity and Access Management as a Service (IDaaS) (IAMaaS) (13th), Container Security (23rd), Cloud Workload Protection Platforms (CWPP) (12th), Cloud Security Posture Management (CSPM) (17th), Cloud-Native Application Protection Platforms (CNAPP) (13th)
Veza
Ranking in Cloud Infrastructure Entitlement Management (CIEM)
6th
Average Rating
8.0
Reviews Sentiment
6.7
Number of Reviews
1
Ranking in other categories
GRC (27th), Identity Management (IM) (19th), Authorization Software (7th), Privileged Access Management (PAM) (25th), SaaS Security Posture Management (SSPM) (6th), Identity Threat Detection and Response (ITDR) (14th), Non-Human Identity Management (NHIM) (7th), Identity Security and Posture Management (ISPM) (2nd)
 

Mindshare comparison

As of January 2026, in the Cloud Infrastructure Entitlement Management (CIEM) category, the mindshare of Tenable Cloud Security is 10.0%, down from 15.7% compared to the previous year. The mindshare of Veza is 12.2%, down from 20.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Infrastructure Entitlement Management (CIEM) Market Share Distribution
ProductMarket Share (%)
Tenable Cloud Security10.0%
Veza12.2%
Other77.8%
Cloud Infrastructure Entitlement Management (CIEM)
 

Featured Reviews

CD
Information Security Architect at WSP
Has significantly improved proactive monitoring through automated asset discovery and seamless integration with cloud environments
Making the system smarter would be beneficial. Adding modules for integration with AWS and Azure would be helpful. Adding capabilities for the scanner to automatically pick up changes and add assets automatically would be valuable. When discussing a big company, it is mandatory to have tools that will assist us rather than waiting for manual input to add hosts. Adding assets manually is prone to mistakes. Humans might forget to add an asset or make errors when adding multiple assets. Taking the human element out of the context and making it more streamlined is the future for security. The human should be involved where expertise is needed, such as analysis and decision-making. Currently, with resource constraints, we need tools to collect and aggregate data, eliminate false positives as much as possible, and present relevant information to employees for action.
Brooke Lynne Bowman - PeerSpot reviewer
Senior Compliance Manager at a healthcare company with 201-500 employees
Streamlined compliance process with custom control framework and AI-driven security questionnaire management
Vanta has made the security questionnaire process much easier, thanks to AI. It automatically extracts answers and populates them within the SIG. The custom control framework allows me to incorporate our HITRUST controls and additional ISO twenty-seven thousand and one and financial controls. Moreover, it includes a knowledge bank for questionnaires and RFPs, making information updates more streamlined.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"If you have multi-cloud tenancy using AWS and Azure, you can have a single dashboard where you can onboard all the cloud infrastructure and have visibility into it."
"Ermetic can provide super visibility for our cloud environment (we are using AWS)."
"The analytical and reporting capabilities are pretty straightforward and show every transaction and major attempt to attack the application in the cloud."
"Scanning and reporting are the most valuable features of Tenable Cloud Security"
"The tool alerts us on depreciating performance or deficiencies of our web application. It helps us react on time."
"The product's deployment phase is easy."
"Tenable Cloud Security excels in vulnerability detection, one of its strongest features. Another valuable feature is software composition analysis, which highlights and automates the detection of security flaws. Additionally, their knowledge base is excellent; if anything goes wrong, they provide clear guidance on what needs to be done to address specific vulnerabilities."
"The key benefit lies in having the largest and most up-to-date database. When it comes to using any Tenable product, it excels in finding vulnerabilities and providing analytics."
"It's the only current GRC vendor with licensing rights for HITRUST 11.3 framework, and I've avoided expensive HITRUST licensing costs through a custom control framework."
 

Cons

"I have faced several bug incidents with the solution"
"Ermetic needs to improve its security scanning. I would like to see more dynamic graphical forms."
"If Tenable Cloud Security offers a complete Cnapp solution with CWP, CIEM, and Waap security, it will be able to compete with other competitors."
"We still maintain Tenable Cloud Security but have reduced the number of licenses. We now use it occasionally to validate specific items rather than monitoring the entire surface, for which we use Element."
"I do think there might be room for more integrations. This could allow for further customization and flexibility, essentially offering different functionality options to accommodate various budgets."
"I didn't find anything that wasn't useful or needed to be added."
"The product must provide more features."
"In my experience, Tenable Cloud Security is not very stable."
"The support experience could be better."
 

Pricing and Cost Advice

"The tool's price is good compared to other brands. The tool's subscription is for a year."
"There is a need to opt for a subscription-based pricing model to use Tenable Cloud Security. I rate the product price an eight on a scale of one to ten, where one is low price and ten is high price."
"The tool's pricing is fair."
Information not available
report
Use our free recommendation engine to learn which Cloud Infrastructure Entitlement Management (CIEM) solutions are best for your needs.
881,082 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Government
11%
Computer Software Company
11%
Financial Services Firm
10%
Manufacturing Company
9%
Financial Services Firm
18%
Computer Software Company
10%
Manufacturing Company
8%
Healthcare Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business5
Midsize Enterprise2
Large Enterprise5
No data available
 

Questions from the Community

What do you like most about Tenable Cloud Security?
The solution’s vulnerability management feature has helped us identify and mitigate risks well.
What needs improvement with Tenable Cloud Security?
Making the system smarter would be beneficial. Adding modules for integration with AWS and Azure would be helpful. Adding capabilities for the scanner to automatically pick up changes and add asset...
What is your primary use case for Tenable Cloud Security?
We had other solutions that we used. One solution was that we did not have something exactly similar to what Element is doing. For example, we were using Bitsight, Evelin, and also Tenable Cloud Se...
What is your experience regarding pricing and costs for Veza?
The overall price point of Vanta is commendable, especially considering the custom control framework that allows me to evade the high costs associated with HITRUST licensing.
What needs improvement with Veza?
The support experience could be better. We often need to escalate our issues to the account executive to receive a response, especially when support is needed for integrations.
What is your primary use case for Veza?
We are currently in the implementation stages of Vanta. It's been challenging to build out as it is not as intuitive as OneTrust, especially in terms of scoping and needs.
 

Also Known As

Ermetic, Ermetic Identity Governance for AWS
No data available
 

Overview

 

Sample Customers

Tyler Technologies, Bilfinger, BarkBox, MongoDB, airSlate, Adama, Latch, Cloudinary, Riskified, AppsFlyer, IntelyCare, Aidoc, 42Dot, and more.
Information Not Available
Find out what your peers are saying about SailPoint, CrowdStrike, Trend Micro and others in Cloud Infrastructure Entitlement Management (CIEM). Updated: January 2026.
881,082 professionals have used our research since 2012.