Nessus (BYOL)
Tenable, Inc. | 10.8.3Linux/Unix, Amazon Linux 20240903 - 64-bit Amazon Machine Image (AMI)
External reviews
External reviews are not included in the AWS star rating for the product.
Amazing Vulnerability Scanner
What do you like best about the product?
Lo mejor que tiene nessus es la facilidad que tiene para ser lanzado y entendido. También es importante el uso que se le da, y la categorización de las vulnerabilidades.
What do you dislike about the product?
El precio de la versión PRO es demasiado elevado para ser simplemente un scanner de vulnerabilidades. También los reportes automaticos deberían mejorar. Y por supuesto, los falsos positivos deberían ser controlados.
What problems is the product solving and how is that benefiting you?
Para cualquier trabajo dedicado a la gestión de vulnerabilidades es importante tener nessus presente. Te ayuda a tener una idea más rápida de la superficie de ataque.
- Leave a Comment |
- Mark review as helpful
Nessus Review for Server Vulnerabilities and Device Baselines
What do you like best about the product?
Nessus has provided a lot of help in determining new and current Common Vulnerabilities and Exploits (CVE) to both on-prem and cloud-based servers. It boosted the security posture of these in-scope IT assets and helped in updating the versions of the apps and platforms in it.
What do you dislike about the product?
Nothing much. Report types may be improved and contents can be consolidated better.
What problems is the product solving and how is that benefiting you?
Baselining the network, platforms, and hardware devices ensures that we are following the best practices. Nessus helps us achieve it through one of its features.
Recommendations to others considering the product:
Nessus is like a de-facto standard for your vulnerability scanning needs. Allocate time to know the features so you can maximize them.
Quality vulnerability scanner
What do you like best about the product?
Nessus is a complete scanner with great options
What do you dislike about the product?
I haven't found anything yet that I would consider a dislike.
What problems is the product solving and how is that benefiting you?
We use Nessus as a quality check against our outsource security team.
I would highly recommend this product to anyone looking for a seriously great software.
What do you like best about the product?
The ease of use and the reports are helpful to explain what is going on.
What do you dislike about the product?
The data generated can be overwhelming and hard to display to a customer.
What problems is the product solving and how is that benefiting you?
We utilize the Nessus Product to scan our data centers nightly and it allows our SOC team to remediate the issues quickly.
Recommendations to others considering the product:
This is the industry standard for scanning vulnerbilities. You wont regret this purchase.
Nessus Professional
What do you like best about the product?
The plugins are updated daily. Once a Scan Policy is created it can be used on multipple scans using different schedules and notifications. Very fast response to log4j
What do you dislike about the product?
It is not straight forward when it comes to ignoring certain IPs in a CIDR range.
What problems is the product solving and how is that benefiting you?
Discovering vulnerabilitities across the entire organization and providing resolutions for mitigation.
Over 15 years experience with Tenable Nessus
What do you like best about the product?
I love the fact that the Nessus product tells you if the discovered vulnerability is exploitable, and if so by what tool.
What do you dislike about the product?
I wish the reporting tool was more robust. As it stands, now I export the Nessus scan database and use a Perl script to parse the data into a custom CSV file.
What problems is the product solving and how is that benefiting you?
Tenable cuts down the time it takes to evaluate a network for vulnerability and potential attack paths
Recommendations to others considering the product:
Nessus Professional is great for consulting as they do not charge by IP Address like with their IO product.
Nessus is one of the mandatory tools for security assessments of all types
What do you like best about the product?
Nessus is a quick and easy way to find known vulnerabilities in platforms. It is also excellent for spot-checking for specific vulnerabilities, such as Log4J, MSDT, etc. The audit capability is also excellent, allowing for configuration checks and compliance checks to be accomplished.
What do you dislike about the product?
Coverage of databases, web applications and IoT could be stronger.
What problems is the product solving and how is that benefiting you?
Nessus provides insight into vulnerabilities and version information across the enterprise. There are also numerous useful informational items, such as administrative user lits, lists fo running processes, attached devices, etc. that make determining the security posture of a device easier. These same checks can also be useful in incident response.
Recommendations to others considering the product:
Nessus should be part of any standard security toolkit.
Comprehensive tool to manage the vulnerabilities
What do you like best about the product?
Scan the OS patches and also the installed apps.
What do you dislike about the product?
Reports should have more intuitive format
What problems is the product solving and how is that benefiting you?
It scans the vuls for OS and Apps, gives the detailed results. So we can follow the instruction to mitigate the issue.
Best vulnerability assessment tool
What do you like best about the product?
tool performance and the way that nessus show the results its great for auditors and pentesters, I have been user of nessus for more than 10 years and every year its getting better and better
What do you dislike about the product?
maybe the tool needs more graphics and reports
What problems is the product solving and how is that benefiting you?
All the configurations audits based in compliance and vulnerability assessment Im doing it with nessus for all my clients
Almost perfect
What do you like best about the product?
The fact that you can set diferentes scans at the same time, and the database for vulnerability updates fast.
What do you dislike about the product?
I have to change to classic layout a lot some options are not easy to find in the new layout, PCI ASV in particular
What problems is the product solving and how is that benefiting you?
We are required to have inter vulnerability scans l.
showing 51 - 60