About Qualys
Qualys is a commercial cybersecurity company offering a cloud-based platform for finding and fixing security weaknesses. It is used for vulnerability management, policy compliance checks and keeping an inventory of an organization's assets, and it targets enterprise security and IT teams.
The vendor homepage returned very little readable content when this entry was prepared, so the description is limited to the main themes it states: detection and remediation tools that let a business measure and eliminate cyber threats. Qualys is proprietary software delivered as a hosted platform and sold by subscription; teams should consult the vendor for specific modules, agent options and pricing.
Key features
- Cloud-based vulnerability management
- Compliance and policy assessment
- IT asset inventory
- Detection and remediation tooling
Good fit for
- →Continuous vulnerability scanning for enterprises
- Tags
- security
- vulnerability-management
- compliance
- asset-inventory
- cloud-security
- enterprise
Qualys: questions and answers
- What is Qualys used for?
- Qualys is a cloud-delivered platform for vulnerability management, compliance checks and asset inventory that helps enterprises measure and reduce cyber risk. It is a good fit for continuous vulnerability scanning for enterprises.
- How much does Qualys cost?
- Qualys doesn't publish fixed prices; pricing is quoted on request.
- Is Qualys open source?
- No. Qualys is proprietary (closed-source) software and can't be self-hosted. Open-source alternatives to Qualys include Wazuh, DefectDojo and OpenVAS.
- What are some alternatives to Qualys?
- Qualys competes with Tenable, Rapid7 and Wiz. For open-source options, see Enlisted's ranked list of open-source Qualys alternatives.
Open-source alternatives to Qualys
See all
Wazuh
Security
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints a
OSSvs Splunk★ 17k
DefectDojo
Security
Open-Source Unified Vulnerability Management, DevSecOps & ASPM
BSD-3-Clausevs Tenable★ 5k
OpenVAS
Security
This repository contains the scanner component for Greenbone Community Edition.
GPL-2.0vs Tenable★ 4.8k
Fleet
Security
Open device management
OSSvs Jamf★ 6.9k
OSSEC
Security
OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis,
GPL-2.0vs CrowdStrike★ 5.1k
Kubescape
Security
Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, an
Apache-2.0vs Wiz★ 12k
SaaS alternatives to Qualys
See all
Tenable
Security
Vulnerability management and exposure assessment, maker of the Nessus scanner
SaaSRapid7
Security
Vulnerability management, SIEM and managed detection tools for security teams
SaaSWiz
Security
Agentless cloud security platform mapping risk across code, cloud and runtime
SaaS
CrowdStrike
Security
Cloud-native endpoint protection, threat detection and response platform
SaaS
Intruder
Security
Cloud-based vulnerability scanner for external attack surface
SaaS
Censys
Security
Internet scanning data and attack surface management platform
SaaS

