Wave Report

The Forrester Wave™: Vulnerability Management, Q2 2010

Qualys Leads; Rapid7, nCircle, McAfee, And Lumension Follow

July 15th, 2010
Chenxi Wang, null
Chenxi Wang
With contributors:
Stephanie Balaouras , Lindsey Coit

Summary

In Forrester's 53-criteria evaluation of vulnerability management vendors, we found that the market is rife with mature products. Qualys led the pack because of its strong vulnerability assessment capability, forward-thinking strategy, and exceptional customer reviews. Rapid7, Lumension, McAfee, and nCircle are a notch down, but all turned in solid scores that landed them in the Leaders section. eEye Digital Security, Tenable Network Security, and Critical Watch are ranked as Strong Performers. These products may lack platform diversity, have slightly weaker application-level scanning capability, or do not support comprehensive policy compliance. However, all of the products we evaluated have mature vulnerability assessment functionality. Given this, IT security professionals should choose a vulnerability management product based on the more cutting-edge functionality, such as support for remediation and application-level scanning, rather than on traditional network and system vulnerability management functions.

Want to read the full report?

Contact us to become a client

This report is available for individual purchase ($2995).

Forrester helps business and technology leaders use customer obsession to accelerate growth. That means empowering you to put the customer at the center of everything you do: your leadership strategy, and operations. Becoming a customer-obsessed organization requires change — it requires being bold. We give business and technology leaders the confidence to put bold into action, shaping and guiding how to navigate today's unprecedented change in order to succeed.