Rapid7 AppSpider vs. Tenable Nessus

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Rapid7 AppSpider
Score 9.3 out of 10
N/A
AppSpider, from Boston-based Rapid7, is an application security and testing offering based on technology acquired from NT OBJECTives (their similarly named software NTOSpider, acquired with the company during April, 2015).
$2,000
Per Application
Tenable Nessus
Score 8.8 out of 10
N/A
Tenable headquartered in Columbia offers Nessus, a vulnerability scanning and security assessment solution used to analyze an entity's security posture, vulnerability testing, and provide configuration assessments.
$2,790
Pricing
Rapid7 AppSpiderTenable Nessus
Editions & Modules
InsightAppSec
$2,000.00
Per Application
1 Year
$2,790.00
1 Year + Advanced Support
$3,190.00
2 Years
$5,440.00
2 Years + Advanced Support
$6,240.00
3 Years
$7,951.00
3 Years + Advanced Support
$9,151.00
Offerings
Pricing Offerings
Rapid7 AppSpiderTenable Nessus
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Rapid7 AppSpiderTenable Nessus
Features
Rapid7 AppSpiderTenable Nessus
Threat Intelligence
Comparison of Threat Intelligence features of Product A and Product B
Rapid7 AppSpider
-
Ratings
Tenable Nessus
5.1
Ratings
43% below category average
Network Analytics00 Ratings8.20 Ratings
Threat Recognition00 Ratings4.50 Ratings
Vulnerability Classification00 Ratings8.20 Ratings
Automated Alerts and Reporting00 Ratings1.00 Ratings
Threat Analysis00 Ratings5.50 Ratings
Threat Intelligence Reporting00 Ratings7.30 Ratings
Automated Threat Identification00 Ratings1.00 Ratings
Vulnerability Management Tools
Comparison of Vulnerability Management Tools features of Product A and Product B
Rapid7 AppSpider
-
Ratings
Tenable Nessus
8.0
Ratings
1% below category average
IT Asset Realization00 Ratings9.10 Ratings
Authentication00 Ratings9.10 Ratings
Configuration Monitoring00 Ratings9.10 Ratings
Web Scanning00 Ratings4.50 Ratings
Vulnerability Intelligence00 Ratings8.20 Ratings
Best Alternatives
Rapid7 AppSpiderTenable Nessus
Small Businesses
GitLab
GitLab
Score 8.7 out of 10
Action1
Action1
Score 9.5 out of 10
Medium-sized Companies
Veracode
Veracode
Score 8.7 out of 10
Action1
Action1
Score 9.5 out of 10
Enterprises
Veracode
Veracode
Score 8.7 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Rapid7 AppSpiderTenable Nessus
Likelihood to Recommend
8.0
(0 ratings)
9.0
(0 ratings)
Likelihood to Renew
-
(0 ratings)
9.1
(0 ratings)
Usability
-
(0 ratings)
9.7
(0 ratings)
Support Rating
-
(0 ratings)
7.1
(0 ratings)
User Testimonials
Rapid7 AppSpiderTenable Nessus
Likelihood to Recommend
Rapid7 AppSpider could be your default DAST (Dynamic Application Security Testing), it covers the OWASP top 10 for web and APIs. Great tools, with a very nice and understandable report and analytics, work excellent for one-shot or continuous monitoring of your web assets. Also has a fair amount of integrations with other popular tools.
Read full review
Nessus is perfectly suitable for performing comprehensive vulnerability assessment scans being a vulnerability scanner. It is less appropriate for performing penetration testing since it is not a penetration testing tool, it does not have the ability and modules to exploit the vulnerabilities of the system.
Read full review
Pros
  • OWASP Top 10.
  • Crawling web applications.
  • Web application security testing.
Read full review
  • Shows you how to fix certain vulnerabilities and the commands to run.
  • Gives you the CVEs that the vulnerabilities are matched to.
  • Easy to understand the vulnerabilities list, giving reasons why the issues need to be patched or fixed.
Read full review
Cons
  • Scan might be slow compared to other tools.
  • Not a lot of training on the vendor side.
Read full review
  • Could use an upgrade within reports.
  • Scans can take a long time to complete. Have to break them down in small sections.
Read full review
Likelihood to Renew
No answers on this topic
Nessus is best and easy to use application for Vulnerabilities finding and reporting, it has multiple platforms and wide scope covering almost all devices for security improvement so far, thus we are very likely to continue its services.
Read full review
Usability
No answers on this topic
Tenable Nessus is a great product and provides a lot of value, but it is difficult to set up and use and the amount of data it generates can be overwhelming. It does help us prioritize based on the severity of the detection, however there are sometimes mitigating factors that we have implemented that Nessus does not account for, which causes lots of noise in the reports.
Read full review
Support Rating
No answers on this topic
I haven't needed to contact support yet. But issues are easily solved with a quick internet search which means support and by extension, the larger community are involved and knowledgeable.
Read full review
Alternatives Considered
Read full review
Ease of deployment and use even for junior analysts, strong plugin support, and up-to-date CVE coverage, cost-effective licensing, especially for mid-size companies, and seamless integration with the SIEM tool. Overall, Nessus hit the right balance between functionality, performance, and total cost of ownership for our needs and usability.
Read full review
Return on Investment
  • Great ROI for consultant projects.
Read full review
  • It has helped identify security flaws in our infrastructure that has helped better secure our client's data. It did so quickly and efficiently so I was able to move on to other tasks.
Read full review
ScreenShots