by Emily Hill

Cloud GRC software vs On-Premise GRC software

When selecting a new governance, risk and compliance software solution, one important decision you will need to make is whether you will be hosting your system on the cloud or on-premise. 

Cloud-based GRC systems have become much more popular in recent years - especially among small and medium sized businesses - but there are many reasons why you may decide a traditional, on-premise system is better for you.  

Qualsys can actually offer you three options - cloud-based software, on-premise or a hybrid deployment. Hybrid means cloud GRC software can be hosted on your private servers if you choose. 

To help you to make an informed decision, this article shares with you key considerations. 

 Chris w 1.jpg


The most frequently asked question we usually get asked is "Which is the most secure option?" 

Our systems are all hosted in an ISO 27001 data centre, and we have never had a major information security incident. 

Qualsys's cloud hosted system provides you with: 

  • High availability firewall
  • Anti-virus for file servers 
  • Managed to PCI DSS standard
  • Back ups every 15 minutes. 




The initial costs for on-premise are usually higher as you'll need to invest in a Virtual Machine (VM) or a physical server. The minimum server specification for our software:

  • Microsoft Windows 2008 Server/Windows 2012 Server
  • Microsoft Internet Information Server (IIS)
  • Windows Search Service
  • Microsoft SQL 2008 server or higher
  • Recommended 8 GB or higher
  • minimum Intel Xeon 2.4GHz processor or higher
  • A full EQMS system installation requires 1.5GB disk storage with no documents or data loaded
  • Recommended 100GB of disc space for document storage with room for expansion.

You'll also need to ensure you have allocated resource for internal IT time and system maintenance. 

Hosting with Qualsys's cloud solution starts from £120 per month and all of the technical work is completed for you with very little resource required from your internal technical teams. 


Time to set up

For client server systems, we usually recommend allocating 2 days of internal resource to install the software. For systems hosted with Qualsys, it takes 1.5 days to install a UAT and live system. 


Support and help

Whether you have a cloud hosted system by Qualsys or opt for on-premise, you'll still be entitled to an upgrade every year. These upgrades can be completed remotely. 



Both systems can be made availabile via browser (Firefox, Chrome etc) from any web enabled device, including smartphone and tablet applications (IOS and Android). Our software has passed stringent speed tests. 

Need more information about our hosting or technical information? 

Talk to a domain expert or schedule a call when you are next available.

Alternatively, read more about our technical product features by downloading our datasheets.

GRC Software datasheets


Tags: Software, Implementing EQMS, Engagement, Software Procurement