InsightVM is presented as the next evolution of Nexpose, by Rapid7. This Insight cloud-based solution features everything included in Nexpose, such as Adaptive Security and the proprietary Real Risk score, and extends visibility into cloud and containerized infrastructure. InsightVM also offers advanced remediation, tracking, and reporting capabilities not included in Nexpose.
$19
per GB
Symantec Client Management Suite
Score 7.1 out of 10
N/A
Symantec Client Management Suite is designed to automate time-consuming and redundant tasks for deploying, managing, patching, and securing desktops and laptops so organizations can reduce the cost and effort of managing Windows, Mac, Linux, and virtual desktop environments.
N/A
Pricing
Rapid7 InsightVM
Symantec Client Management Suite
Editions & Modules
Log Management
$19
per GB
Vulnerability Management
$22
per asset
insightIDR
$52
per asset
Application Security
$2,000
per app
insignConnect
Contact sales team
No answers on this topic
Offerings
Pricing Offerings
Rapid7 InsightVM
Symantec Client Management Suite
Free Trial
No
No
Free/Freemium Version
No
No
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
—
—
More Pricing Information
Community Pulse
Rapid7 InsightVM
Symantec Client Management Suite
Considered Both Products
Rapid7 InsightVM
Verified User
Anonymous
Chose Rapid7 InsightVM
Product functionality and performance Financial/organizational viability Product roadmap and future vision
I think Tenable is very comparable and they are both leaders in this space. I evaluated both of them side-by-side and ultimately decided to go with Rapid7. Tenable did have a slight edge on the amount of information I was getting from the machines, but I landed on R7 because I …
Rapid7 InsightVM is more cost effective than the other solution on the market. It is easy to deploy and the user interface is easy to use and intuative. We select Rapid7 InsightVM mainly because it integrates well with ServiceNow compared to the other solution that were …
Rapid7 InsightVM is a more professional tool than NESSUS because historically, it was based on metasploit which is a powerful pentesting and exploiting tool. InsightVM covers more attacking scenarios and vulnerabilities than competitors and still a leader in this domain.cloud …
Nessus Pro does scans, but does not maintain an inventory from scan to scan. There is no history for a specific device, you have to look inside the results of each scan. Search across inventory is non-existent. There are no dashboards for data analysis. This is no tracking …
Tenable has a more refined look for the reporting that it provides as a result of scanning events, but Nexpose seems to have a better ability to help quantify risk and help prioritize the work needed to get the quickest security result for the team and the company. The Nessus …
Kace is very fast to set-up and it's good for a lot of companies if patch and software deployment is all you care about but I don't think that it is as strong as SCCM or Symantec CMS. SCCM is a strong competitor to Symantec Client Management Suite and they both share a lot of …
Another system similar to Symantec Client Management Suite is HEAT (formerly known as "Patchlink) which allows you to do some of the same similar policies for testing, deploying patches on the network.
Currently, I can't take a position [on how Symantec compares] because when I took position at my job, Symantec Client Management Suite (CMS) was already implanted. We're currently looking to try Microsoft System Center Configuration Manager to see if it'd be a contender for …
Although there are other tools that can be utilized I don't believe those tools are as robust as Symantec Management Platform. The Symantec Management Platform was chosen because of the value it returns internally and for our customers. You can pull just about any data element …
Principal System Support Specialist / Service Owner
Chose Symantec Client Management Suite
The main competitor is Microsoft Configuration Manager which I haven't used but from what I've read about it requires a greater technical skills which might be more expensive when building a team that would operate it.
We were considering couple more products, but POC has proven that it is better to stay with CMS. (I cannot provide details, since that information is internal and confidential.)
We used to use Novel Zenworks which paled in comparison. Also I have used SCCM and while it gets the job done, I believe CMS is a much more robust tool and can manage more than just Windows machines.
I honestly cannot give an unbiased evaluation against other products since my knowledge and use is very limited. I can say that I often peruse the SCCM forums and get ideas and scripts to convert in to the Symantec Environment. This product can feel heavy handed at times but …
The costs involved with getting the Symantec Management Suite, versus Microsoft System Center 2012, was much cheaper and allowed us to be able to pull more raw data when trying to work with management. Also, the Symantec support structure is very nice! The support group works …
Similar to ITMS but is limited in its abilities to manage OS X, Linux and a large variety of devices as well as manage asset inventory all in a single place. Although SCCM would have been less expensive for us, the ability to manage more with less is a huge seller.
I think Rapid7 InsightVM is well suited for large enterprise customers with a lot of assets. It integrates well with a number of different ITSM solutions which I think is very good. There are not many CIS benchmarking tools on the market and Rapid7 InsightVM does a very good job at benchmarking. I think where Rapid7 InsightVM falls down a little is on false positive vulnerabilities. Sometime you there a few positive results on vulnerabily discovery. Tuning the settings for scan engines can sometimes be trick as well.
If you are looking for a client management suite to perform patch, software delivery, and inventory I think Symantec is great. I would recommend it without a doubt if it was in your budget. If you are a very small company and don't use these features to often then I think it would depend on your budget.
The API is also a great tool for us to automate lots of routine procedures like scan and report of asset(s) BY EMAIL.
Tagging. It helps sort out results and reports for respective assets Owner for remediation without a lengthy report including unnecessary information for that particular team.
SQL Reporting. It provides advanced reporting and export capabilities that you can not find in the stock report template.
The best part is it provides you with the full view of your client life cycle of devices, along with the integration of other Symantec products like endpoint security.
Creating an audit report and keeping it in a single dashboard is also easy. UI is simple.
One of the best benefits of this tool is you can install it enterprise-wide along with onsite employees.
Devices found and scanned are never removed. Removal must be done manually with no option for automation.
The database can be fragile. Ours quietly corrupted and progressively degraded until we had to restore and lose 6 months of data. Still didn't fix it and had to be rebuilt again losing all data.
Workflow for delegating remediation is supposed to be helpful, but can also become cumbersome.
Scheduling can become a nightmare if not monitored closely. We found jobs had failed to run because the server had gone offline. When the server came online, it did not try to run missed jobs. Running missed jobs all at once can overload the server, but searching for and launching a large number of missed jobs manually is a pain.
CMS is quite clunky sometimes and the Silverlight interface is acceptable at best. Many improvements have been made in this area, particularly with performance, but the interface still needs a lot of work. When it becomes 100% HTML5 with proper compliance browser support I'll be happy!
While I think it is a great tool and platform, I believe it (like all tools and solutions) is always evolving and the needs for clients are changing as the industry evolves and threats are upgraded. Cost is good, and support is helpful. Some things could be more granular and others could be easier to understand
I gave it a seven due to the functionality and general ease of use after the initial setup headaches, but compared to Qualys, Rapid7 Nexpose falls short on features and ease of use. Their support drags this rating down a point as well. I have gone weeks with no update on semi-critical issues and typically have to make call after call to get a semi-coherent response.
Support at Symantec isn't that great. Client Management Suite isn't even listed on the Support Portal when trying to open a ticket. Your best bet for support is actually the user groups that Symantec hosts. The members of the groups are usually very responsive. With Broadcom buying Symantec, I've seen a huge jump in personnel leaving Symantec, so I'm assuming the support is just going to get worse. Recently for a simple question, I reached out to 5 people just to find out 4 of the 5 had left the company.
I think Tenable is very comparable and they are both leaders in this space. I evaluated both of them side-by-side and ultimately decided to go with Rapid7. Tenable did have a slight edge on the amount of information I was getting from the machines, but I landed on R7 because I found the features of the InsightVM tool to be more useful. They both get the job done, but I found InsightVM a better experience to use on a day-to-day basis and had better quality of life features that I was looking for.
Currently, I can't take a position [on how Symantec compares] because when I took position at my job, Symantec Client Management Suite (CMS) was already implanted. We're currently looking to try Microsoft System Center Configuration Manager to see if it'd be a contender for CMS. The reason is that we have special support contract directly with Microsoft. So instead of managing multiple contracts, we would only have one. But for now, we're all set up with Symantec so it'd take something great from SCCM to make us switch from one to another.
It certainly has a more positive impact than negative impact while performing the scans. Nexpose can find report vulnerabilities that our other scanner fails to identify during the scan because of its defined scan templates.
Also, even if the scan is not being performed due to some issues like reachability, whitelisting, etc. it will try to give scan results unlike QualysGuard which just marks the asset as unreachable.
Better efficiency through image creation, deployment and EOL as single Hardware Independent Images can be created for a large number of devices and then all managed on the same pane of glass.
Customer service is better because we can provide software across campus almost as fast as requested for one user or hundreds of users, all by a single technician without ever having to leave an office.