Skip to content
Z Zendikt
V

Vicarius vRx

Patch + autonomous remediation-led VM for under-resourced ops teams.

By Vicarius Ltd. · Founded 2016 · New York, NY · private

Vicarius vRx is the patch-automation-led vulnerability management platform, founded 2016 by Michael Assraf and Roi Cohen. The product's differentiator: VM with closed-loop autonomous remediation, find the vulnerability, recommend the patch or compensating control, and (with approval) deploy it automatically across Windows, Linux, and macOS. Strengths: closed-loop find-and-fix in a single product (most VM tools end at finding, leaving patching to a separate IT ops tool), strong fit for under-resourced operations teams that need fix, not just find; mature patchless-protection capability that mitigates without requiring a vendor patch; and a developer-friendly community (vsociety) around the product. Best fit for mid-market organizations (200-2,500 employees) with combined security + IT ops responsibility and limited capacity to triage large finding backlogs. Trade-offs: scanner plugin coverage is meaningfully thinner than Tenable / Qualys (Vicarius is patch-led, not scanner-led); enterprise-scale references are still building; and the autonomous-remediation model requires meaningful operational trust in the vendor.

Best for

Mid-market organizations (200-2,500 employees) with combined security + IT ops responsibility and limited capacity for large finding backlogs, particularly buyers prioritizing remediation velocity over scanner breadth.

Worst for

Large regulated enterprises requiring deepest scanner coverage (Tenable / Qualys broader), Microsoft E5 shops (Defender VM bundled), cloud-native-first shops (Wiz better cloud), or organizations with mature in-house patch automation already deployed.

Vendor Trust Score

Is Vicarius vRx a trustworthy vendor?

8.3/10
High trust
Pricing transparency
Published rates; no hidden fees
7.5
Contract fairness
Reasonable terms; no auto-renew traps
8.5
Incident response
How they handle outages and breaches
8.5
Post-acquisition behavior
Customer treatment after M&A or PE
8.5
Executive stability
Leadership churn over 24 months
8.5
Roadmap honesty
Public commitments held
8.5
Trust signal log
  • 2024-04-22
    Series B raised $30M; product velocity strong
  • 2025-03-15
    vsociety community crossed 10,000 members; patchless-protection scripts contributed by community
Vendor Trust is scored independently of product quality. A great product from an unfair vendor still earns a low trust score.
Review Intelligence

What 280 reviews actually say

Synthesized from G2, Capterra, Reddit, Trustpilot. Patterns >15% prevalence shown.

Last synthesized
2026-04-29

Praise patterns

  • Closed-loop find-and-fix in single product
    87%
  • Built for under-resourced ops teams
    78%
  • Patchless-protection capability differentiated
    64%
  • Developer-friendly vsociety community
    51%

Complaint patterns

  • Scanner plugin coverage thinner than Tenable / Qualys
    41%
  • Enterprise-scale references still building
    38%
  • Autonomous remediation requires operational trust
    31%
Sentiment trend (6 months)
87/100 +2 pts
12
01
02
03
04
05
Patterns are extracted from review corpus and human-verified. We surface trends, not anecdotes.
Verified Pricing

What buyers actually pay

84 anonymized deal disclosures · last updated 2026-05-01

Contribute your deal price
Company size Median annual
100-500 endpoints $9,000
500-2,500 endpoints $36,000
Verified pricing is crowdsourced from buyers under anonymity guarantees. Vendor-listed prices are validated against actual deals quarterly.
Compliance & Security

Auto-verified certifications

Verified 2026-05-01
SOC 2 Type II
ISO 27001
HIPAA
GDPR
CCPA
PCI DSS
FedRAMP

Editorial: Strengths

  • Closed-loop find-and-fix in single product
  • Works for under-resourced ops teams
  • Patchless-protection capability for unpatched vulnerabilities
  • Developer-friendly community (vsociety)
  • Mature Windows, Linux, macOS patching
  • Founder-led; strong product velocity
  • Workflow integration with ConnectWise, Datto, NinjaOne

Editorial: Weaknesses

  • Scanner plugin coverage thinner than Tenable / Qualys
  • Enterprise-scale references still building
  • Autonomous remediation requires operational trust in vendor
  • Brand recognition lower than legacy VM vendors
  • Support is hit-or-miss as company scales

Key features & integrations

  • +Vulnerability assessment (Windows, Linux, macOS)
  • +Autonomous patch deployment
  • +Patchless protection (compensating controls)
  • +Application and OS patching
  • +Third-party app patching
  • +Custom scripting (vsociety)
  • +ConnectWise, Datto, NinjaOne integrations
  • +Mobile apps
80+ integrations
ConnectWiseDattoNinjaOneMicrosoft IntuneServiceNowSlack
Geography supported
Global; strongest in US, EU, UK, IL
Best fit
100–5,000 employees · Mid-market with combined security + ops responsibility
Editorial deep-dive

Read our full ranking of Vulnerability Management Software

Vicarius vRx ranks #10 in our editorial review of 10 vulnerability management software platforms. The deep-dive covers methodology, comparison tables, decision matrix, migration scoring, and FAQs.

Read the full ranking

Closest alternatives in Vulnerability Management Software

Help the next buyer

Contribute your verified deal price

Pricing in B2B software is opaque because vendors want it that way. Verified buyer prices fix that, anonymously. Share what you actually paid for Vicarius vRx; we’ll add it to the verified pricing dataset on this page (with company size band only, no identifying details).

Submit anonymously