# Rapid7 InsightVM vs Tenable Vulnerability Management

| Attribute | Rapid7 InsightVM | Tenable Vulnerability Management |
|---|---|---|
| **Vioscale score** | 28.7 (30% (low)) | 18.2 (47% (low)) |
| deployment.options | `{"cloud":true,"on_prem":true,"self_hosted":true}` | `{"cloud":true,"hybrid":true,"on_prem":true,"air_gapped":true,"self_hosted":true}` |
| description.long | InsightVM scans infrastructure for vulnerabilities and is part of Rapid7's broader Exposure Command platform, which unifies vulnerability management, attack surface monitoring, cloud security, and application risk detection in a single interface. | Tenable One consolidates vulnerability management with broader exposure data to help organizations identify and remediate critical security risks. It supports multi-cloud and hybrid environments with automated risk prioritization and compliance management capabilities. |
| integrations.count | 2 | 1 |
| integrations.list | `[{"name":"Jira"},{"name":"ServiceNow"}]` | `[{"name":"Splunk"}]` |
| market.availability | `{"hqCountry":"US","primaryMarkets":["US"],"availabilityScope":"global","availableCountries":[],"notAvailableCountries":[]}` | - |
| platform.support | `{"cli":true,"web":true}` | `{"web":true}` |
| pricing | `{"type":"subscription","summary":"Pricing available; free trial offered for hands-on evaluation","currency":"USD","freeTier":false,"sourceUrl":"https://www.rapid7.com/de/products/insightappsec/pricing/","retrievedAt":"2026-08-19T22:49:37.527Z","billingPeriods":["year"]}` | `{"type":"quote","summary":"Asset-based pricing on billable cloud resources; contact Tenable for quote.","freeTier":false,"sourceUrl":"https://www.tenable.com/cloud-security/pricing","retrievedAt":"2026-08-19T22:47:32.676Z"}` |
| pricing.free_tier | no | no |
| pricing.model | commercial | quote |
| pricing.price_level | unknown | unknown |
| pricing.transparent | no | no |
| reliability.sla_pct | - | 99.95 |
| security.fedramp | - | yes |
| security.gdpr | yes | - |
| security.iso27001 | yes | - |
| security.pci | - | yes |
| security.soc2 | yes | - |

## Capabilities (Vulnerability Management)

| Capability | Rapid7 InsightVM | Tenable Vulnerability Management |
|---|:--:|:--:|
| **Capabilities** |  |  |
| Authenticated scan | - | - |
| Agent based | - | - |
| Agentless cloud | - | - |
| Asset discovery | - | - |
| Scap oval | - | - |
| PCI asv | - | - |
| Remediation workflow | - | - |
| Fedramp | - | - |
| Open source | - | - |

*Source: Vioscale. Generated 2026-09-01T15:20:19.734Z. "-" = undocumented, not absent.*
