Try our new research platform with insights from 80,000+ expert users
reviewer2026317 - PeerSpot reviewer
0 at a tech vendor with 5,001-10,000 employees
Real User
Top 10
Dec 17, 2024
Seamless integration for enhanced vulnerability management while offering good reliability
Pros and Cons
  • "The connectivity provided by Rapid7 InsightVM is valuable."
  • "The stability of Rapid7 InsightVM is excellent."
  • "The platform could be more intuitive and user-friendly."
  • "Rapid7 InsightVM is expensive, possibly one of the highest in pricing among similar products."

What is our primary use case?

I find Rapid7 InsightVM pretty useful since we are running it on every asset our company has. We are conducting authenticated scans. This is not just getting exposure from outside, but understanding vulnerabilities internally.

What is most valuable?

The connectivity provided by Rapid7 InsightVM is valuable. We have integrated our SIEM solutions and antivirus with each other through Rapid7. It allows for a lifecycle connection among different solutions. We are using it with CMDB for tagging critical devices. However, the primary purpose remains running vulnerability scans.

What needs improvement?

The platform could be more intuitive and user-friendly. I cannot comment on technical specifics as it's like a black box, but improvements in user experience would be beneficial.

For how long have I used the solution?

I joined my current company two and a half years ago, and they already had this solution.

Buyer's Guide
Rapid7 InsightVM
January 2026
Learn what your peers think about Rapid7 InsightVM. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,757 professionals have used our research since 2012.

What do I think about the stability of the solution?

The stability of Rapid7 InsightVM is excellent. I would rate it as a ten out of ten.

What do I think about the scalability of the solution?

Rapid7 InsightVM is suitable for large enterprises and scales well for companies with over 1,000 users.

How are customer service and support?

I haven't interacted with Rapid7's technical support.It is crucial for tech support to resolve issues as quickly as possible, ideally available 24/7. Even if the support is good, there's always room for improvement, so I would rate them around a five because every company can improve.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

I have recommended Tenable Nessus, which I used at Bitdefender and in previous roles. Tenable Nessus offered a pay-per-asset option that I found economical.

How was the initial setup?

The initial setup can be simple or complex, depending on whether you're conducting authenticated or unauthenticated scans.

What's my experience with pricing, setup cost, and licensing?

Rapid7 InsightVM is expensive, possibly one of the highest in pricing among similar products.

Which other solutions did I evaluate?

I have experience with Tenable Nessus and have recommended it for its cost-effectiveness.

What other advice do I have?

Overall, I would recommend Rapid7 InsightVM to other users.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Christian Kyony - PeerSpot reviewer
Senior Security Engineer at a computer software company with 201-500 employees
Real User
Top 5
Feb 26, 2024
A vulnerability management solution that is great for managing video equipment
Pros and Cons
  • "The remediation project is a pretty effective because it allows us, as clients or countries, to choose specific assets and set limitations on them for a certain period which allows us to track and follow up on those limitations. However, when it comes to real-time monitoring and live dashboards, InsightVM doesn't quite fit the bill. It's not a real-time solution and is not instant."
  • "Rapid7 InsightVM, has impressive capabilities, especially when it comes to managing video equipment. However, we've noticed that Rapid7 also offers a cloud solution called CloudSec, and we don't have that. We think it would be better if InsightVM had all the features for both on-premise and cloud management."

What is our primary use case?

We handle a lot of video equipment and Rapid7 InsightVM helps us to scan subnets, around 150,000 of them.


How has it helped my organization?

Rapid7 InsightVM is more focused on proactive liability management. However, when there's an incident, our team can handle it, but it's not a top priority for me. I think having another solution, like a response automation tool, would be more helpful. Vulnerability management can't prevent incidents once they're in progress, but it's essential to prevent them before they happen.

What is most valuable?

The remediation project is pretty effective because it allows us to choose specific assets and set limitations on them for a certain period which allows us to track and follow up on those limitations.

However, when it comes to real-time monitoring and live dashboards, InsightVM doesn't quite fit the bill. It's not a real-time solution and is not instant.

What needs improvement?

Rapid7 InsightVM, has impressive capabilities, especially when it comes to managing video equipment. However, we've noticed that Rapid7 also offers a cloud solution called CloudSec, and we don't have that. We think it would be better if InsightVM had all the features for both on-premise and cloud management.

For how long have I used the solution?

I have been using Rapid7 InsightVM for the past 6 years.

What do I think about the stability of the solution?

I would rate it nine out of ten, especially when it is deployed on Linux Box.

What do I think about the scalability of the solution?

It is very scalable and I would rate it ten out of ten. 

How was the initial setup?

As for deployment time, it varies based on the size of the organization and network sensitivity. For example, in a bank, scans might only happen at specific times, like during the night. Generally, deployment can be quick, but there are many factors to consider. You install the console and the scan engine, and then configure them based on network complexity. Scans themselves take less than 20-30 minutes, but the non-technical aspects, like setting up profiles and firewall rules, can take more time.I would rate it 8 out of 10. 

What other advice do I have?

I would rate it 8 out of 10. 

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Buyer's Guide
Rapid7 InsightVM
January 2026
Learn what your peers think about Rapid7 InsightVM. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,757 professionals have used our research since 2012.
Marketing Expert at a comms service provider with 51-200 employees
Reseller
Top 5Leaderboard
Apr 12, 2024
Useful to identify and assess vulnerabilities but needs to provide a pure cloud-based version
Pros and Cons
  • "The product's initial setup phase was very easy."
  • "There are certain limitations because of the product being used on a hybrid model. Rapid7 InsightVM doesn't offer a solution purely in the cloud."

What needs improvement?

The product is not a cloud solution. The tool can only be used as a hybrid solution, meaning it can be used on the cloud and on an on-premises deployment model. There are certain limitations because of the product being used on a hybrid model. Rapid7 InsightVM doesn't offer a solution purely in the cloud.

Competitors of Rapid7 InsightVM, like Tenable.io and Qualys, offer pure cloud solutions.

For how long have I used the solution?

I have been using Rapid7 InsightVM for seven or eight years. My company serves as a distributor of the tool.

What do I think about the stability of the solution?

Sometimes, there were certain parts and programs of the product about which the customer used to complain.

Stability-wise, I rate the solution a six to seven out of ten.

What do I think about the scalability of the solution?

It is a highly scalable solution. One of my company's customers uses the tool on 1,30,000 devices.

My company deals with clients who own small as well as enterprise-sized businesses.

How are customer service and support?

In the past, the support offered for the product was good. Unfortunately, over a period of time, the support offered has become poor.

I rate the technical support a four to five out of ten.

How would you rate customer service and support?

Neutral

How was the initial setup?

The product's initial setup phase was very easy.

The solution can be deployed in a few hours. The time required depends on the scale of the deployment. If there are 1,000 or 10,000 deployments to be done, then it takes time. If the customer provides a Q&A to calculate the design of the network, then the process becomes easier. If the customer does not know about their network, then the deployment process takes time since our company has to discuss several things with them before starting the process.

What's my experience with pricing, setup cost, and licensing?

The product is cheaper than the other similar tools available in the market.

What other advice do I have?

My company uses Rapid7 InsightVM to identify and assess vulnerabilities.

The product has improved our company's vulnerability remediation process. The tool finds vulnerabilities by scanning devices and networks. The solution is also useful in the area of database scanning.

The product area I find to be valuable in vulnerability management workflow stems from many aspects, like reporting, which is very useful. Rapid7 InsightVM's integration with Jira is also very effective and useful for end users. The coverage of the vulnerability offered by the product is very good. The GUI for Japanese users is good.

The product's integration capabilities have improved my company's security posture, as many other systems can be integrated with it. The export feature of the product helps users deal with other products like ServiceNow or Splunk.

The product is more useful for scanning than for its real-time visibility, but I can say that its functionalities come very close to real-time features. The product scans every six hours.

In large and diverse environments, the performance and the scalability of the product are not bad.

The product is easy to understand, making it good for companies that doesn't have much expertise in the area of security. It is an easy to use product. The product also provides a GUI in Japanese, while taking care of the reporting part efficiently, making it very convenient for the end users in Japan.

I rate the product's capacity to offer ease of use an eight out of ten.

I rate the overall tool a six to seven out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
PeerSpot user
Andrei Bigdan - PeerSpot reviewer
Executive Manager at a tech services company with 11-50 employees
Real User
Top 5
Mar 25, 2024
Particularly useful for focusing on customer-facing systems and offers excellent scalability
Pros and Cons
  • "InsightVM offers a robust platform for identifying, prioritizing, and addressing vulnerabilities across an organization's IT infrastructure."
  • "One area I would like to improve in InsightVM is its integration with other solutions."

What is our primary use case?

With InsightVM, I continuously monitor my network by setting up regular scans to identify vulnerabilities in real-time. It IS particularly useful for focusing on customer-facing systems at our perimeter, helping me prioritize and quickly address any security risks.

What is most valuable?

InsightVM offers a robust platform for identifying, prioritizing, and addressing vulnerabilities across an organization's IT infrastructure.

What needs improvement?

One area I would like to improve in InsightVM is its integration with other solutions, particularly for better compatibility with upcoming tools we plan to adopt. Enhanced functionality for budget management or change management databases could also be beneficial.

For how long have I used the solution?

I have been working with InsightVM for over two years.

What do I think about the stability of the solution?

I would rate the stability of the solution as a nine out of ten.

What do I think about the scalability of the solution?

InsightVM's scalability is top-notch and I would rate it a solid nine out of ten. Being a cloud-based solution, it effortlessly adjusts to accommodate varying needs and can easily scale from small to large environments.

How are customer service and support?

Rapid7's technical support is highly responsive and helpful. I would rate them as a nine out of ten.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I chose Rapid7 over Tenable Nessus because of its better performance, comprehensive functionality, and stronger support for operating systems and services. While Tenable Nessus may be cheaper, it lacks integration with other features and is more suited for SMBs rather than enterprises.

How was the initial setup?

Implementing InsightVM was straightforward. Setting it up to scan external networks at the perimeter was effortless; I just needed to create a cloud account and start using the solution. For internal network scanning, I installed the software on my notebook, which took about five to ten minutes for a single version setup, but it is important to note that it doesn't support Windows platforms.

What's my experience with pricing, setup cost, and licensing?

InsightVM's pricing can vary depending on the coverage needed. While it may not be the cheapest option, purchasing an unlimited license could be cost-effective for larger environments. For smaller needs, it might be more expensive compared to competitors. I would rate the affordability of the product at a four out of ten.

What other advice do I have?

I prioritize vulnerabilities in InsightVM by first focusing on customer-facing systems at our perimeter, which helps me quickly identify and address any security risks. Then, I utilize the cloud-based engine to scan internal networks and ensure comprehensive coverage without the need for complex on-premise solutions, making it easy to manage from my notebook connected to the internet.

Additionally, in InsightVM, we prioritize vulnerabilities by utilizing comprehensive data sources like the NVD and Rapid7's specialized risk calculation methods. The solution provides detailed information, including exploitability and impact, and evaluates whether vulnerabilities could be exploited in specific environments like NetApp.

I would recommend InsightVM to others. Overall, I would rate the product as an eight out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer.
PeerSpot user
SohailHyder - PeerSpot reviewer
Head Of Cyber Security at a government with 51-200 employees
Reseller
Top 5Leaderboard
Mar 6, 2024
Easy deployment, but technical support could respond faster
Pros and Cons
  • "The ease of deployment and configuration allows users to onboard quickly."
  • "Technical support does not respond quickly."

What is our primary use case?

The core domain use of the solution is verification, scanning, and finding out the vulnerabilities in real time.

How has it helped my organization?

The ease of deployment and configuration allows users to onboard quickly, aligning smoothly with various functionalities.

What is most valuable?

The data sheet is good in pricing and promises. The customers are very price-conscious. You have to satisfy technical requirements. This combo makes the product valuable and usable.

What needs improvement?

Two things are consistent. The rest of the things run fine. The technical side does not respond quickly. They take a lot of time. The priority should be to respond to the customer to serve the customer.

For how long have I used the solution?

I have been using Rapid7 InsightVM for more than three years.

What do I think about the stability of the solution?

The solution’s stability is good. It keeps on running. There are no system complaints.

What do I think about the scalability of the solution?

The solution’s scalability is linked to the new scope and the cost.

Which solution did I use previously and why did I switch?

We are actively seeking alternatives. If you can offer a better solution, superior after-sales service, and overall better everything, we would like to explore what you have to offer.

How was the initial setup?

The initial setup is not so complex. It is quickly deployable configurable and integrated with your existing setup.

The common process for Rapid7 InsightVM involves comparing it against their standard procedures to ensure compliance with the required licenses and resources. Users download the necessary files and initiate/reactivate licenses. Certain configurations are also set up. This process typically takes two to three days for the department, but we usually allocate a week for completion.

Our team feels enabled enough after completing the training session on Rapid7 InsightVM. We conduct our tests independently, and whenever we need support, we seek assistance directly from Rapid7. This process isn't overly complex or time-consuming. We ensure thorough preparation by gathering all necessary information, addressing internet concerns, and informing the customer. Once fully prepared, we proceed forward.

What's my experience with pricing, setup cost, and licensing?

The solution’s pricing is good because the value proposition delivers a report box. It is not very costly.

What other advice do I have?

Since the product is cloud-based, there's no maintenance. Whatever the information or the customization of the customer needs to be confirmed. The hardware needs maintenance.

Overall, I rate the solution a six out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
reviewer2510463 - PeerSpot reviewer
Information Security, Cyber Operations Analyst at a consultancy with 5,001-10,000 employees
Real User
Top 20
Jul 25, 2024
Has a good user interface, but its threat intelligence could be improved
Pros and Cons
  • "The solution's user interface is good and has some vulnerability prioritization."
  • "Rapid7 InsightVM should improve its threat intelligence."

What is our primary use case?

We use the solution mainly for servers and vulnerability management.

What is most valuable?

The solution's user interface is good and has some vulnerability prioritization. Rapid7 InsightVM has good integrations with ServiceNow and its own remediation project creation options.

What needs improvement?

Rapid7 InsightVM is not PCI certified, which didn't help us in the London office because of the Cyber Essentials Plus certification, which is mandatory there. We had to outsource the vulnerability management for the London office.

One of the most important things for a vulnerability management tool is the identification of vulnerabilities. When it comes to Rapid7 InsightVM, the vulnerabilities are not updated within its database. This is one of the major things that should be changed in Rapid7 when it comes to customer reliability. If the database is not updated, it could jeopardize the customer's servers and data.

The solution's support staff does not reply on time, which should be improved. Rapid7 InsightVM should improve its threat intelligence.

For how long have I used the solution?

I have been using Rapid7 InsightVM for the last few years.

How was the initial setup?

The solution's initial setup is good.

What other advice do I have?

Overall, I rate the solution a six out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
SonNguyen3 - PeerSpot reviewer
Technical Manager at a computer software company with 11-50 employees
Real User
Top 10
Apr 5, 2023
Good for inventory and vulnerability management
Pros and Cons
  • "The most valuable feature for me is the risk calculation based on monthly effects."
  • "The team needs to improve the speed and focus on the new bandwidth feed. Sometimes, it takes a while to scan, especially with new updates."

What is our primary use case?

We primarily use it for inventory and vulnerability management in our environment. We also use it to identify real risks and focus on container email scanning.

What is most valuable?

The most valuable feature for me is the risk calculation based on monthly effects. It's interactive, and the risk calculation depends on various factors such as quantity, hardware, and package used.

What needs improvement?

The team needs to improve the speed and focus on the new bandwidth feed. Sometimes, it takes a while to scan, especially with new updates. So, they should update the database quickly for the scanning to work more efficiently. Additionally, they should add pack management solutions for better integration with products like Microsoft FC and IBM Bigfoot.

They need to add more features or focus on work screening, and adding pack management solutions would be great. Moreover, there is room for improvement in technical support.

For how long have I used the solution?

I've been using it for about three years now.

What do I think about the stability of the solution?

It is a stable product, and I would give it a seven.

What do I think about the scalability of the solution?

It is a scalable product. Currently, there are around 1,000 users in my company using Rapid7 InsightVM.

How are customer service and support?

Customer service and support are usually responsive, but there is room for improvement in their response time. The quality of support is good.

How was the initial setup?

The initial setup is simple.

Which other solutions did I evaluate?

Along with Rapid7 InsightVM, we use Metasploit for already scanning. We also use it for website vulnerability scanning. For vulnerability scanning, we also use solutions from Tenable Network Security. Tenable is better because of its more frequent updates. However, it may depend on the industry and the use case. For now, Nessus is better for vulnerability scanning because of its ability to quickly and accurately detect vulnerabilities. However, Rapid7's team should work on improving the capacity of InsightVM to do the same.

What other advice do I have?

Overall, I would rate the solution an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Rajat-Srivastava - PeerSpot reviewer
Cyber Security Engineer at a tech services company with 1-10 employees
Real User
Top 10
Sep 30, 2024
A high-performing solution that collects real-time data, is capable of more detections, and allows you to use the Scheduled Forensics feature
Pros and Cons
  • "most valuable features of Rapid7 InsightVM for me are creating dynamic asset tags, generating reports, and deploying the agent. The agent scans assets every four hours, providing real-time data on any devices. Although there weren't any significant new features compared to our previous tool, having both SIEM and vulnerability management handled by one tool made things easier. We could gather logs from different devices and cloud sources, and perform detailed investigations without switching tools. I haven't worked with the automation capabilities of InsightVM. For remediation prioritization, we check the vulnerability, search for solutions on open platforms, and work with different teams to apply patches after proper testing. Currently, we don’t have any AI or ASM projects assisted by InsightVM"
  • "I’d like to see Rapid7 InsightVM improve by adding a knowledge base similar to what Qualys offers. This would help us easily check and search for vulnerabilities using Rapid7 IDs associated with CVs or CVSS. From a features perspective, everything was fine at the time, and the security features of Rapid7 InsightVM were effective."

What is our primary use case?

We mainly use it for vulnerability management, generating monthly reports to address and resolve vulnerabilities. The main use cases involve receiving alerts based on predefined settings by Rapid7, investigating these alerts to understand their causes, and performing fine-tuning activities.

What is most valuable?

The most valuable features of Rapid7 InsightVM for me are creating dynamic asset tags, generating reports, and deploying the agent. The agent scans assets every four hours, providing real-time data on any devices. Although there weren't any significant new features compared to our previous tool, having both SIEM and vulnerability management handled by one tool made things easier. We could gather logs from different devices and cloud sources, and perform detailed investigations without switching tools.

I haven't worked with the automation capabilities of InsightVM. For remediation prioritization, we check the vulnerability, search for solutions on open platforms, and work with different teams to apply patches after proper testing. Currently, we don’t have any AI or ASM projects assisted by InsightVM

What needs improvement?

I’d like to see Rapid7 InsightVM improve by adding a knowledge base similar to what Qualys offers. This would help us easily check and search for vulnerabilities using Rapid7 IDs associated with CVs or CVSS.

From a features perspective, everything was fine at the time, and the security features of Rapid7 InsightVM were effective.

For how long have I used the solution?

I've been working with Rapid7 InsightVM since December.

What other advice do I have?

Overall, I would recommend Rapid7 InsightVM to others. My advice would be to first understand your requirements and infrastructure before implementing the product. I would rate InsightVM as an eight.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Rapid7 InsightVM Report and get advice and tips from experienced pros sharing their opinions.
Updated: January 2026
Buyer's Guide
Download our free Rapid7 InsightVM Report and get advice and tips from experienced pros sharing their opinions.