Try our new research platform with insights from 80,000+ expert users
Asief Mohammed - PeerSpot reviewer
Information Technology Consultant at Simpra advanced technology
Reseller
Top 10
A highly stable and easy-to-deploy product for vulnerability scanning
Pros and Cons
  • "Tenable is the leading product for vulnerability scanning."
  • "The solution should provide better web application features and support."

What is our primary use case?

Our customers use the product for scanning their network for vulnerabilities.

What is most valuable?

Tenable is the leading product for vulnerability scanning. Most of the customers use Tenable in our region. The customers are happy with the product.

What needs improvement?

People do not prefer the solution for web applications. They prefer Acunetix or Netsparker over Tenable for web applications. The solution should provide better web application features and support. It could provide some add-ons to customers.

For how long have I used the solution?

I have been using the solution for the past six months.

Buyer's Guide
Tenable Security Center
April 2025
Learn what your peers think about Tenable Security Center. Get advice and tips from experienced pros sharing their opinions. Updated: April 2025.
851,823 professionals have used our research since 2012.

What do I think about the stability of the solution?

I rate the tool’s stability a ten out of ten.

What do I think about the scalability of the solution?

We have 15 to 25 customers who use the solution. I rate the tool’s scalability a nine out of ten.

How are customer service and support?

The support team was helpful. Usually, we don't contact the support team because our engineers do the installation. It's not so complicated.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup is easy. We have certified engineers of the product.

What about the implementation team?

Two engineers are needed to maintain the solution. The time taken for deployment depends on the prerequisites of the customers. If the customers provide all details to us at the proper time, we can deploy the solution in two to three days.

What's my experience with pricing, setup cost, and licensing?

The annual licensing fee of the product is $25,000. The pricing depends upon the number of IPs. There are no additional fees associated with the solution.

What other advice do I have?

I am dealing with the latest version of the solution. It's a very good product to use. Overall, I rate the product a nine out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
PeerSpot user
VictorAkidiva - PeerSpot reviewer
Security Architect at ModusBox
Real User
A lean and easy-to-use interface for patch and vulnerability management
Pros and Cons
  • "The solution has a lean and easy-to-use interface that is not confusing to first-time users."
  • "The solution should include compliance-based scanning."

What is our primary use case?

We use the solution for patch and vulnerability management. We scan our critical systems, keep track of any exploitable vulnerabilities, and prioritize their remediation efforts in terms of patching. 

In the future, we hope to extend the solution to our cloud services. We are moving to Azure Cloud and planning to start a DevOps initiative that might include container deployment. We know Tenable has the CI/CD pipeline security support so we will seek that solution when we are ready. 

What is most valuable?

The solution has a lean and easy-to-use interface that is not confusing to first-time users.

What needs improvement?

The solution should include compliance-based scanning. 

For how long have I used the solution?

I have been using the solution for three weeks but my company has been using it for one year. 

What do I think about the stability of the solution?

The solution is very stable. 

What do I think about the scalability of the solution?

The solution is scalable and we are happy with the way it is operating. 

We currently have forty users and a team of four for maintenance. 

How are customer service and support?

Technical support has been excellent and provides a lot of support when needed. 

Which solution did I use previously and why did I switch?

The company was using OpenVAS, an open-source solution that is miles apart from Tenable. 

At a previous job, I used Rapid7 which compares strongly to Tenable. 

How was the initial setup?

I did not handle the initial setup but know from previous implementations that setting up a vulnerability management solution can be somewhat complex because it involves loading assets, configuring the network, and authenticating.

What was our ROI?

The ROI is almost guaranteed because there is a lot of value in using the product and reporting that to our company. 

What's my experience with pricing, setup cost, and licensing?

The price is reasonable based on our scope of work and how we use the solution. 

What other advice do I have?

The rule is always garbage in, garbage out. Be sure to configure the solution well and take advantage of technical support to understand how things should work. Mistakes are made when people assume they know how to do things. I believe in using technical support to confirm the process and ensure everything is done correctly. 

I rate the solution a ten out of ten. 

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Tenable Security Center
April 2025
Learn what your peers think about Tenable Security Center. Get advice and tips from experienced pros sharing their opinions. Updated: April 2025.
851,823 professionals have used our research since 2012.
it_user1468566 - PeerSpot reviewer
Program Manager at a tech services company with 201-500 employees
Real User
Monitors our whole environment in real time and makes everything more secure
Pros and Cons
  • "The feature we've liked most recently was being able to take the YARA rules from FireEye and put them into Tenable's scan for the most recent SolarWinds exploit. That was really useful."
  • "I will say it's a lot slower compared to an MS scan. It takes so much longer, so the performance could definitely be worked on."

What is our primary use case?

At work we use the enterprise version of Tenable, Tenable.io, and I also use Tenable.sc — which I refer to as SecurityCenter — for local scanning.

I use Tenable SecurityCenter every day to scan our entire environment for vulnerabilities. I use a local license during the discovery process for penetration testing. So I'll do an en masse scan, and then also do a scan with Tenable to scan for IPs and vulnerabilities.

User-wise, with Tenable SecurityCenter, there's different roles. We have security analysts, admin, etc. I'd say there's probably four or five different roles from people that can just go in and view. Security analysts can upload manual scans and create dashboards and download reports. Then administrators can create accounts, assign roles and responsibilities, and things like that.

How has it helped my organization?

Tenable SecurityCenter has absolutely improved our organization, by making everything more secure and helping ensure solid vulnerability management.

What is most valuable?

The feature we've liked most recently was being able to take the YARA rules from FireEye and put them into Tenable's scan for the most recent SolarWinds exploit. That was really useful.

What needs improvement?

I'm pretty happy with it, but I do see a lot of stuff coming out about risk-based vulnerability management. And so I've been looking at that. I don't think we're using that as of yet and it seems like a newer feature they're talking about a lot that I'm interested in.

I will say it's a lot slower compared to an MS scan. It takes so much longer, so the performance could definitely be worked on.

There was also an issue with SecurityCenter once where we had agents deployed on each device, and while it was scanning we were collecting the data real time. During this process, we had an enclave that was not submitting. It didn't have the agent installed because it wasn't connected to the enterprise network.

They were scanning locally and submitting the scans and we would then upload them into SecurityCenter manually. Each time that there were any duplicates with host names or IPs, or that there were issues with the scanner device with authentication, it failed. But then you scanned it again and it was successful.

When you uploaded that, SecurityCenter was counting it as two devices. And when you ran your report for unauthorized devices, even though it was scanned a second time successfully, the first time would show as a failure. So it was throwing off reporting.

So we would run a report and say, "Okay, which device has failed scanning with authentication?" And it would give a device and we'd be like, "Well, here's the secondary scan showing that it was successful." And so we were having to manually go in there and delete the failed ones.

And that was a pain in the butt. We eventually got that enclave online so we fixed the problem, but I felt that was a limitation of Tenable SecurityCenter that it couldn't see that.

For how long have I used the solution?

I have been using Tenable SecurityCenter for the past few years now.

What do I think about the stability of the solution?

We have only run into one troublesome issue that I can remember. It had to do with the way SecurityCenter inaccurately reported real-time scan results whenever there was a transient problem such as with a duplicate host name or IP, or with authentication.

It was a pain to deal with, because we kept having to go in and manually delete all the failed (but actually successful) scan results.

What do I think about the scalability of the solution?

When it comes to scalability, so far so good, and no issues. We've got the whole environment monitored right now and I don't see any significant increases in use anytime soon.

How are customer service and technical support?

Their technical support is good. Because I don't give out tens much for anything, I would say in the eight to nine range, out of ten.

Which solution did I use previously and why did I switch?

For vulnerability management, Tenable SecurityCenter is the only one I've used in the past six years. Though we do use other tools in conjunction with it.

We've pretty much used Nessus for scanning, vulnerability management, and reporting, and that's it. And it does it very well. And then I use different tools for other things. I'm sure Tenable had that on the plugins for other things, but we don't use those.

How was the initial setup?

The setup is straightforward.

What about the implementation team?

I personally implement SecurityCenter with a local license. And then we also have different roles like security analysts and administrators who can just go in and perform various functions such as uploading manual scans, creating dashboards, downloading reports, assigning accounts, and so on.

What's my experience with pricing, setup cost, and licensing?

I use a local license to perform penetration testing and I'm pretty happy with everything when it comes to pricing and licensing. 

What other advice do I have?

I can easily recommend Tenable SecurityCenter, and I have nothing really bad to say about it. I think it's a great tool for what it does. I enjoy the webinars, and the people that run the company seem very engaged with what's going on when you're into current events and the overall security climate, and they're continuously looking to improve.

I can't speak to every option that they have, but I have no reservations recommending them.

I would rate Tenable SecurityCenter an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Daniel_Ndiba - PeerSpot reviewer
Assistant Manager - Cyber & Cloud Security at a financial services firm with 1,001-5,000 employees
Real User
A scalable solution for detecting and pro-actively mitigating network vulnerabilities
Pros and Cons
  • "I think that this is a good solution for evaluating vulnerability in the network."
  • "The web application scanning area can be improved."

What is our primary use case?

The primary use case is to perform vulnerability assessments across the entire network.

How has it helped my organization?

This solution has given us visibility of the vulnerability in our network. It also shows what needs to be done to negate the vulnerabilities by providing links to the solution for those issues. Generally, we are now able to manage our vulnerabilities better. We can identify them, prioritize them, and then negate them. It has improved our security posture.

What is most valuable?

The most valuable feature is its ability to scan for vulnerabilities in our important systems, networks devices, and so on.

What needs improvement?

The web application scanning area can be improved.

A feature that I would like to see is the ability to integrate with exploit tools. 

For how long have I used the solution?

Two years.

What do I think about the stability of the solution?

It's a really stable solution. So far, I have not had any issues. Once it was installed it was very stable, very few bugs. It has topped expectations.

What do I think about the scalability of the solution?

It's easily scalable. If you are required to scan more assets then you just request for it to be expanded, such as from two thousand to five thousand. Scalability is not an issue.

The system is used by around thirty-five users including system admins, who ensure that the system is up, and the application admins who are responsible for fixing the issues that are picked up with the solution.

We use it across our entire network so we cannot expand its use any further.

How are customer service and technical support?

Their technical support is quite good, and they're very responsive. If there is any issue they perform quite quickly. Also, the local partner is well versed in the solution so they give us the support we need.

Which solution did I use previously and why did I switch?

We did not use a solution prior to this one.

How was the initial setup?

The initial setup, including the GUI, is very straightforward.

The implementation took about three months, and then the maturation took about six months.

We have about two people for maintenance.

What about the implementation team?

We were working with a local partner for the deployment.

What was our ROI?

We have seen ROI for this solution. It has reduced our security vulnerabilities. Even during the national audit, one of the findings is that this solution is helping us be more productive. We're able to find these issues before somebody else finds them. We can fix them before they are discovered by others.

What's my experience with pricing, setup cost, and licensing?

The licensing costs for this solution are approximately $100,000 US, and I think that covers everything.

Which other solutions did I evaluate?

Before choosing this solution we evaluated Qualys Labs and Rapid7.

What other advice do I have?

This is a good solution for evaluating vulnerability in the network. It gives wide coverage, and it is able to scan most platforms on the network.

I would rate this product an eight out of ten.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buthainah Al-Balharith - PeerSpot reviewer
Information Technology Security Engineer at Direct Choice
Real User
Top 5Leaderboard
An expensive solution that helps to scan threats and conduct risk assessments for NCA
Pros and Cons
  • "Tenable Security Center scans networks and gives reports."
  • "The solution is expensive."

What is our primary use case?

We use the product to scan threats and conduct risk assessments for NCA. 

What is most valuable?

Tenable Security Center scans networks and gives reports. 

What needs improvement?

The solution is expensive. 

How are customer service and support?

I haven't contacted the support team yet. 

How was the initial setup?

Tenable Security Center's deployment is easy. 

What's my experience with pricing, setup cost, and licensing?

The tool costs around 15,000 Saudi riyals monthly. 

What other advice do I have?

I rate Tenable Security Center a five out of ten. 

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Senior Partner / Co-Founder at SKYTEK
Reseller
Has an extremely limited margin of error
Pros and Cons
  • "The solution is one of the most, if not the most, stable product available."
  • "The pricing is reasonable, but this could be brought down more aggressively, such as we see with Rapid7, Tenable SC's main competitor."

What is most valuable?

The dashboard is a valuable feature. So is the scanning, which is based on the nexus and the scripts. The solution offers an extremely limited margin of error, of obtaining false positives within it. These are its strengths. 

What needs improvement?

Everything in life has room for improvement. While I consider the solution to perform as it should, most customers, for the wrong reasons, wish for it to have the penetration testing capabilities. This is not a problem with the product, but with the demands of the customer and I remain uncertain if I can meet these. 

The pricing is reasonable, but this could be brought down more aggressively, such as we see with Rapid7, Tenable SC's main competitor. 

For how long have I used the solution?

An easily installable and very scalable and stable solution which boasts great dashboard and scanning features

What do I think about the stability of the solution?

The solution is one of the most, if not the most, stable product available. 

What do I think about the scalability of the solution?

The solution is scalable. It can go up many thousands of endpoints for scanning purposes.

How are customer service and support?

Technical support does what it should. The solution is pretty straightforward and simple. As such, as with all vulnerability management solutions, it will not need much technical support and this is rarely required. I am referring to the need to address bugs. Mainly, the support will focus on the search for new features or reports. 

How was the initial setup?

The initial setup is straightforward and very easy. 

What's my experience with pricing, setup cost, and licensing?

Though reasonable, the main competitor of Tenable SC, Rapid7, offers a more aggressive and better priced product. 

What other advice do I have?

The size of our customers run the gamut, from small medium to large, in certain cases exceeding 5,000 IPs. 

I would definitely recommend the solution. 

I rate Tenable SC as an eight-plus out of ten. 

Disclosure: My company has a business relationship with this vendor other than being a customer:
PeerSpot user
Trirong Phuaythip - PeerSpot reviewer
Solution Consultant at Westcon-Comstor
Real User
Top 5
Stable product with a simple setup process
Pros and Cons
  • "The initial setup process is simple."
  • "The product could be user-friendly, and they could enhance the web application's security features."

What is our primary use case?

We use the product as a security tool for VMs and web applications.

What needs improvement?

The product could be user-friendly, and they could enhance the web application's security features.

For how long have I used the solution?

We have been using Tenable Security Center for a year.

What do I think about the stability of the solution?

It is a stable product. Our customers utilize just one security center due to the scope of the budget. It doesn't have any adverse effect on the business.

What do I think about the scalability of the solution?

Tenable Security Center on the cloud side is preferred in larger enterprises, but Nexpose might be a suitable option in smaller organizations. The POC implementation for the banking sector is lengthy. I prefer cloud-based scanning for its ease and scalability.

How are customer service and support?

The tickets are passed quickly. Their support manager works proactively in scheduling meetings and solving the issues with the team. They provide the best support care for the customers.

Which solution did I use previously and why did I switch?

We used Netsparker and Nexpose before. We switched to Tenable SC for better pricing and efficient scanning features. Additionally, it provides features for data security and cloud usage for clients who want to avoid sending information through the cloud.

How was the initial setup?

The initial setup process is simple. If the customers do not have scanners, we can complete it quickly within an hour.

What was our ROI?

Tenable SC helps us save about 20% of the price compared to Nexpose, which involves buying three different licenses.

What other advice do I have?

The product helps with web application security. I advise others to use Tenable IO and NAS, especially in regions with specific data protection regulations like GDPR and PDPA.

I rate it a nine out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: partner
PeerSpot user
Tharaka Shameera - PeerSpot reviewer
Intent Manager at SLIIT
Real User
Top 10
The solution serves as a good tool and is very user-friendly
Pros and Cons
  • "It is a very good and user-friendly product."
  • "The solution is expensive."

What is our primary use case?

We use the solution for creating passwords and security scanning purposes.

How has it helped my organization?

The solution has been beneficial for our organization.

What is most valuable?

The solution serves as a good tool and is very user-friendly as well. It has many features. We are able to identify vulnerabilities in our systems, and ways to fix them with the solution’s help.

What needs improvement?

The solution is expensive. They should work on its pricing. 

For how long have I used the solution?

We have been using the solution for six months.

What do I think about the stability of the solution?

It is a stable solution.

What do I think about the scalability of the solution?

It is a scalable solution. We have eleven users using the solution in our company that include Associates and Engineers. I rate the solution’s scalability as a ten.

How are customer service and support?

The solution’s tech support team is very helpful.

How would you rate customer service and support?

Positive

What about the implementation team?

We have an in-house team for installation.

What other advice do I have?

I recommend the solution as it is a very good and user-friendly product. I rate it as a nine.

Which deployment model are you using for this solution?

Private Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free Tenable Security Center Report and get advice and tips from experienced pros sharing their opinions.
Updated: April 2025
Buyer's Guide
Download our free Tenable Security Center Report and get advice and tips from experienced pros sharing their opinions.