6
submitted 8 months ago* (last edited 8 months ago) by redfox@infosec.pub to c/cybersecurity@infosec.pub

This is not an ad.

Does anyone have experience with Tenable products?

I'm interested in real world experience regarding:

  • cost
  • effectiveness
  • ease of use

I'm playing with Tenable Security Center and Nessus Scanner. I'm early in the deployment, just looking for pointers and whether anyone has used it?

What alternatives is your org using if not?

Can you compare?

Edit, if anyone is interested, I can post results and opinions here also.

you are viewing a single comment's thread
view the rest of the comments
[-] catloaf@lemm.ee 4 points 8 months ago

I've used it at a couple places. It's pretty good. It's best at checking the box on an audit to say you have a vulnerability management program.

If you want real coverage, you should also be actively involved in what's in your company's environment, and how security updates (for external software) and vulnerabilities (for internal) are handled. That is, do you have people looking for vulnerabilities, e.g. with fuzzing?

For Windows environments, you should additionally look at bloodhound and pingcastle.

[-] redfox@infosec.pub 1 points 8 months ago

Thanks,. I'll check into those two

this post was submitted on 07 Apr 2024
6 points (100.0% liked)

cybersecurity

3376 readers
21 users here now

An umbrella community for all things cybersecurity / infosec. News, research, questions, are all welcome!

Community Rules

Enjoy!

founded 2 years ago
MODERATORS