I am a consultant and I advise my clients from a security standpoint. My goal is to get them to maximize value from Tenable.io. I am also a user of it.
CISO at a financial services firm with 501-1,000 employees
Supports container scanning, and the technical support is good
Pros and Cons
- "The most valuable feature for me is container scanning because I am interested in CICD security."
- "It would be helpful if Tenable could be more clear with regard to everything the solution can and cannot do with the particular license that you have."
What is our primary use case?
What is most valuable?
The most valuable feature for me is container scanning because I am interested in CICD security. The standard infrastructure scanning is pretty robust, which is why I was focusing on containers.
What needs improvement?
We had some challenges with the implementation because of Docker Version 2, although with help from the support team, we were able to proceed.
It would be helpful if Tenable could be more clear with regard to everything the solution can and cannot do with the particular license that you have. The information is not available on the web site and they should be more upfront about it.
For how long have I used the solution?
I have been using Tenable.io for between six and eight months. My company had acquired it before I joined, although it was not being utilized properly.
Buyer's Guide
Tenable Vulnerability Management
September 2025

Learn what your peers think about Tenable Vulnerability Management. Get advice and tips from experienced pros sharing their opinions. Updated: September 2025.
868,787 professionals have used our research since 2012.
What do I think about the stability of the solution?
I have never encountered any issues relating to stability. I have never seen a scan crash, and we've been able to configure multiple scans to run concurrently. Everything appears to run smoothly.
What do I think about the scalability of the solution?
Other than running multiple scans concurrently, we have not looked at scalability. However, I have no doubt that we will be able to get support in order to meet our expectations.
How are customer service and support?
The support team is very good and we are quite happy with them. When we had the trouble with Docker Version 2, they responded and were able to help us troubleshoot, and then guide us to the resolution. It now works the way we wanted it to.
Which solution did I use previously and why did I switch?
I have worked with the open-source solution OpenVAS, as well as with Rapid7 and Qualys. I can see that Tenable.io is going to be one of the big players because they are doing very well in this space.
What's my experience with pricing, setup cost, and licensing?
I think that the price is reasonable for now, although given that everybody is looking to cut costs, I think that they should take measures to lower it. There are additional features that can be licensed for an additional cost.
What other advice do I have?
My advice for anybody who is implementing this product is to have all of the requirements documented and ready in advance. You match the solution to your requirements. Out of the box, we found that Tenable.io matched almost all of our requirements. The only clarification that we needed had to do with the Tenable.io Web App license.
We have a good understanding of how Tenable.io works with containers and infrastructure, but when it comes to deep driving into applications, databases, APIs, and toolkits that you have in your environment, you need a separate license for that. This is what the Web Application license is.
In order to enjoy the maximum value, you need to have the appropriate licensing.
Overall, I am quite happy with Tenable.io.
I would rate this solution a nine out of ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Security Specialist at a security firm with 51-200 employees
Good integration, a simple initial setup and easily scalable
Pros and Cons
- "Technical support has been good. They respond quite quickly."
- "The interface could be improved; right now it's running on two interfaces simultaneously."
What is most valuable?
The solution's most valuable aspects are its user interface and usability. In general, Tenable is one of the best products in terms of management tools.
The solution integrates well with other solutions.
What needs improvement?
I don't have any issues with the solution at this time, and I don't think there are any features that are missing or could be added.
The interface could be improved; right now it's running on two interfaces simultaneously.
For how long have I used the solution?
I've been using the solution for half a year.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
The scalability is good. Currently, we have thousands of computers using the solution.
How are customer service and technical support?
Technical support has been good. They respond quite quickly.
How was the initial setup?
The initial setup is straightforward, as it is a cloud version.
What other advice do I have?
We use the cloud deployment model.
I'd recommend the solution. I'd rate it eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Tenable Vulnerability Management
September 2025

Learn what your peers think about Tenable Vulnerability Management. Get advice and tips from experienced pros sharing their opinions. Updated: September 2025.
868,787 professionals have used our research since 2012.
Team Lead, Cyber Security at Uridium Technologies
Provides seamlessness, a perfect UI, and identity management for office operations
Pros and Cons
- "The solution provides seamlessness, a perfect UI, and identity management for office operations. We are most vulnerable to users. Therefore, it is crucial to implement the right solution to ensure proper user access and resource management."
What is our primary use case?
We use the Tenable Vulnerability Management solution for internal web applications, asset management, and remediation. It helps us transfer and leverage the remediation of websites, effectively addressing vulnerabilities.
How has it helped my organization?
We need to deploy this on internal assets. It resides within the internal infrastructure and communication.
It encompasses everything at some point. From development to deployment, it receives the necessary attention.
What is most valuable?
The solution provides seamlessness, a perfect UI, and identity management for office operations. We are most vulnerable to users. Therefore, it is crucial to implement the right solution to ensure proper user access and resource management.
For how long have I used the solution?
I have been using Tenable Vulnerability Management for 4 years.
What do I think about the scalability of the solution?
200 users are using this solution.
Which solution did I use previously and why did I switch?
We have used Qualys. It is tricky and expensive.
How was the initial setup?
The initial setup is seamless and takes three days to complete. Two people are required for the deployment but one person can do as well.
What other advice do I have?
This process is seamless because checks are scheduled at different intervals, typically every ten minutes. Once a log is generated, we attend to it immediately. Also, the maintenance is straightforward.
Overall, I rate the solution an eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
0 at a tech vendor with 5,001-10,000 employees
The stability can be improved, but the pricing is the best
Pros and Cons
- "The price of Tenable.io Vulnerability Management is reasonable as it is ten times cheaper than other options."
- "The stability has room for improvement."
What is our primary use case?
Tenable.io Vulnerability Management is used to scan our infrastructure.
What is most valuable?
The price of Tenable.io Vulnerability Management is reasonable as it is ten times cheaper than other options.
What needs improvement?
The stability has room for improvement.
For how long have I used the solution?
I have been using Tenable.io Vulnerability Management for one year.
What do I think about the stability of the solution?
The stability is moderate.
What do I think about the scalability of the solution?
The solution is scalable.
What's my experience with pricing, setup cost, and licensing?
The cost is determined by the number of endpoints, which is approximately one dollar per endpoint.
What other advice do I have?
I give Tenable.io Vulnerability Management a five out of ten.
The maintenance requires a subject matter expert.
I recommend Tenable.io Vulnerability Management.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Buyer's Guide
Download our free Tenable Vulnerability Management Report and get advice and tips from experienced pros
sharing their opinions.
Updated: September 2025
Popular Comparisons
Microsoft Defender for Cloud
Checkmarx One
Tenable Nessus
Tenable Security Center
Orca Security
Zafran Security
Rapid7 InsightVM
Claroty Platform
Microsoft Defender Vulnerability Management
Buyer's Guide
Download our free Tenable Vulnerability Management Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Can you recommend API for Tenable Connector into ServiceNow
- What's the difference between Tenable Nessus and Tenable.io Vulnerability Management?
- Which one to buy out of the following products: Tenable SC, Tenable.io, Tenable.ep or Tenable.ad?
- What are the differences between Tenable.sc and Tenable.io?
- How inadvisable is it to use a single vulnerability analysis tool?
- What are the benefits of continuous scanning for vulnerability management?
- When evaluating Vulnerability Management, what aspect do you think is the most important to look for?
- What is a more effective approach to cyber defense: risk-based vulnerability management or vulnerability assessment?
- What are the main KPIs that need to be implemented to have better posture in vulnerability projects?
- Which is the best vulnerability scanner tool?