Rapid7 Insight vs Tenable


Tenable changed their licencing model for Nessus pro

Shitty move! I know InsightVM & IDR are not so expensive, but Tenable.io seemed cheaper, but I am still exploring the trial, so I don't know if T.io can replace both tools of rapid7.

But InsightAppSec is extremely expensive, thought they were joking me at first. 60k usd/year for 10 static URLs + Total Risk (another tool that is for scaning on demand). And I thought Acunetix was expensive at 15k usd/year with 20 dynamic URLs!

InsightIDR (SIEM) is actually pretty good I think, it throws false positives, not a lot, but enough to notice. But I think it is because I have to refine de queries that alerts make.

They have a rather slow support, I thought they only answered fast when I sayed I wanted to buy the new tool..

Maybe you can ask me again which one I prefer in one month, that's when trial ends, and I will have a better insight lol

