anybody knows what is the main differences between the 2 modules?
The main differences between the two modules are that SCA is designed to be an addon of VM that will compare your assets configuration against CIS best practices. The Policy Compliance is a standalone module that scans assets for compliance against multiple standards such as PCI, HIPPA, and SOX.
For more details on the both of these modules please look at product information on the Qualys website or contact your local account manager.
SCA: Security Configuration Assessment | Qualys, Inc.
PC: Policy Compliance | Qualys, Inc.
thanks for your reply.
So, if I were interested to do PC scans using only CIS benchmarks, I should choose SCA instead of PC?
For that, I would suggest that you contact a local account manager as there is a difference between "Best Practices" and "Compliance". The technical account manager will be able to discuss your exact requirements and work with to decide which would be the best product for you.
Retrieving data ...