Download as pdf or txt
Download as pdf or txt
You are on page 1of 7

All Categories > Application Security Testing

Application Security Testing (AST) Reviews and Ratings EMAIL PAGE  PDF

Overview Products Gartner Research

Feedback
What are application security testing (AST) software?
Gartner de nes the Application Security Testing (AST) market as the buyers and sellers of products and services designed to analyze and test applications for


security vulnerabilities. Gartner identi es four main styles of AST: (1) Static AST (SAST) (2) Dynamic AST (DAST) (3) Interactive ... See More

How these categories and markets are de ned

Products In Application Security Testing (AST) Market

Discovery Pro for Application Security Testing (AST)

Discovery Pro helps you get a graphical overview of the market, compare vendors and create custom shortlists as per your
business needs.

View Discovery Pro

FILTER BY: COMPANY SIZE INDUSTRY REGION

<50M USD 50M-1B USD 1B-10B USD 10B+ USD Gov't/PS/Ed

Products 1 - 20 | View by Vendor Review weighting


 Reviewed in Last 12 Months number of ratings, high to low 

Customers' Choice 2021


Veracode
Competitors and Alternatives
by Veracode
4.6 248 Ratings
Veracode vs Checkmarx
5 Star   65% Veracode vs Qualys
"Long time customer, familiar with current capabilities and new features, value the
4 Star   29% product" Veracode vs NTT Application
3 Star   4% Security
We've been a customer for four years, great suite of product options, and
2 Star   1%
amazing service/support. Whenever we have a ... See All Alternatives
1 Star   0%

READ REVIEWS

Customers' Choice 2021

Checkmarx SAST
4.6 209 Ratings Competitors and Alternatives
by Checkmarx
Checkmarx vs Veracode
5 Star   66%
Checkmarx vs Micro Focus
4 Star   30% "Great product, and great company!"
Checkmarx vs Synopsys
3 Star   2% We are a new Checkmarx customer, but our experience so far has been
2 Star   1% nothing but positive. Cx has been very helpful during the ... See All Alternatives
1 Star   0%

Feedback
READ REVIEWS


4.8 162 Ratings Burp Suite Professional


Competitors and Alternatives
by PortSwigger
5 Star   73% PortSwigger vs Invicti
4 Star   27% PortSwigger vs Rapid7
"Excellent security skills and capabilities through use of Burpsuite!"
3 Star   1% PortSwigger vs Qualys
2 Star   0% Very useful tool for security testing of Applications and APIs, overall
1 Star   0% effective and easily operable features of the application ... See All Alternatives

READ REVIEWS

Customers' Choice 2021


WhiteHat Sentinel Dynamic
Competitors and Alternatives
4.5 143 Ratings
by NTT Application Security
NTT Application Security vs
5 Star   57%
Veracode
"Great product that meets our needs, excellent customer success and support
4 Star   38% NTT Application Security vs Qualys
teams"
3 Star   3% NTT Application Security vs Rapid7
Does what we need in providing independent scanning of our application for
2 Star   1%
our internal usage (development and operations), ... See All Alternatives
1 Star   0%
READ REVIEWS

4.3 141 Ratings Web Application Scanning (WAS)


Competitors and Alternatives
by Qualys
5 Star   45% Qualys vs Rapid7
4 Star   46% Qualys vs Invicti
"Improved security and risk management, Easy con guring and detailed reports."
3 Star   9% Qualys vs PortSwigger
2 Star   0% This has been very useful application for vulnerability reporting and tracking
for web applications, mostly internal applications. ... See All Alternatives
1 Star   1%

READ REVIEWS
4.6 129 Ratings Acunetix
Competitors and Alternatives
by Invicti
5 Star   60% Invicti vs Qualys
4 Star   34% Invicti vs Rapid7
"One of the good solutions for web developers"
3 Star   6% Invicti vs PortSwigger
2 Star   0%
With Acunetix, we can scan our products for vulnerabilities with every
release. It has an extensive scan module and scheduler. In ... See All Alternatives
1 Star   0%

READ REVIEWS

Feedback
Customers' Choice 2021
Contrast Application Security Platform
4.7 122 Ratings Competitors and Alternatives 

by Contrast Security
Contrast Security vs Veracode
5 Star   72% Contrast Security vs Checkmarx
4 Star   27% "Very useful and interesting, I am impressed."
Contrast Security vs Synopsys
3 Star   0% This is a very useful tool, pleasure to work with. We're still experimenting but
2 Star   1% have already integrated CS Agents into CI/CD and ... See All Alternatives
1 Star   0%
READ REVIEWS

4.4 120 Ratings Netsparker


Competitors and Alternatives
by Invicti
5 Star   52% Invicti vs Invicti
4 Star   41% Invicti vs Rapid7
"Netsparker, a best DAST tool for beginners to Expert"
3 Star   7% Invicti vs Qualys
2 Star   1% The deployment and integration are very easy and do not require heavy
1 Star   0% infrastructure. It can be installed like any other software even on ... See All Alternatives

READ REVIEWS

4.3 111 Ratings InsightAppSec


Competitors and Alternatives
by Rapid7
5 Star   41% Rapid7 vs Qualys
4 Star   50% Rapid7 vs Veracode
"The reliable security partner with less maintenance"
3 Star   5% Rapid7 vs Invicti
2 Star   3% We have been using this product for the past year, I am now con dent of the
1 Star   0% product's capabilities. We are completely relying on it ... See All Alternatives

READ REVIEWS
4.4 97 Ratings Micro Focus Fortify Static Code Analyzer
Competitors and Alternatives
by Micro Focus
5 Star   42%
4 Star   44% Micro Focus vs Checkmarx
Veracode
"Best IDE support ever in a SAST solution that you can get in market today"
3 Star   10% Micro Focus vs Synopsys
2 Star   3%
Fortify Static code analyzer and its plugins are really outstanding compared
to other solution. Fortify easily integrates into Visual Studio, ... See All Alternatives
1 Star   0%

READ REVIEWS

4.5 96 Ratings AppScan


Competitors and Alternatives

Feedback
by HCL Technologies
5 Star   54% HCL Technologies vs Veracode
4 Star   39% HCL Technologies vs Invicti
"Protect your "Efforts" with HCL AppScan"
3 Star   6% HCL Technologies vs Qualys 

2 Star   0% HCL AppScan is used by our team to perform various vulnerabilities on our
1 Star   1% product and make the product free of all the probable ... See All Alternatives

READ REVIEWS

4.4 89 Ratings GitLab


Competitors and Alternatives
by GitLab
5 Star   51% GitLab vs GitHub
4 Star   45% GitLab vs Micro Focus
"Great DevOps platform with continuous integration and deployments."
3 Star   4% GitLab vs HCL Technologies
2 Star   0% Very reliable application for development and great experience in agile
1 Star   0% devops of the critical applications. Easier setup implementation ... See All Alternatives

READ REVIEWS

4.3 83 Ratings Coverity SAST


Competitors and Alternatives
by Synopsys
5 Star   45% Synopsys vs Checkmarx
4 Star   48% Synopsys vs Veracode
"A technically excellent product that substantially improves our software"
3 Star   7% Synopsys vs Micro Focus
2 Star   0% Synopsys provides a technically excellent product that delivers in-depth
analysis results in a way that developers can understand. ... See All Alternatives
1 Star   0%

READ REVIEWS

4.3 74 Ratings Micro Focus Fortify on Demand


by Micro Focus Competitors and Alternatives
5 Star   41% Micro Focus vs Veracode
4 Star   45%
Micro Focus vs Checkmarx
3 Star   14% "Exceptional support team. Product is solid but needs to modernize." Micro Focus vs Qualys
2 Star   0% Overall, it does what we need it to do. Not exceptional, but better than
1 Star   1% average. What I like most about Fortify is actually the ... See All Alternatives

READ REVIEWS

4.5 58 Ratings GitHub Enterprise


Competitors and Alternatives
by GitHub
5 Star   59% GitHub vs GitLab
4 Star   38% GitHub vs Snyk

Feedback
"What you see is what you git, git used to it ! "
3 Star   3% GitHub vs Checkmarx
2 Star   0% "What you see is what you git" is our new philosophy. Git is our way to
1 Star   0% standardize, deploy and automate our activities. See All Alternatives


READ REVIEWS

4.3 54 Ratings Black Duck SCA


Competitors and Alternatives
by Synopsys
5 Star   43% Synopsys vs Checkmarx
4 Star   52% Synopsys vs Veracode
"Great for OS Library Scanning to mitigate security, operational and license risks"
3 Star   6% Synopsys vs Micro Focus
2 Star   0% One of the top product in the SCA space, and is easy to integrate with our CI
1 Star   0% Pipelines. Blackduck has su cient and necessary ... See All Alternatives

READ REVIEWS

4.1 41 Ratings Klocwork


Competitors and Alternatives
by Perforce
5 Star   27% Perforce vs GitLab
4 Star   59% Perforce vs Checkmarx
"Rough Install but great Product overall and excellent customer service"
3 Star   10% Perforce vs GitHub
2 Star   5% Klocwork has been great, especially the support team they always helped me
1 Star   0% quickly and e ciently. Getting Klocwork installed ... See All Alternatives

READ REVIEWS

ImmuniWeb AI
4.6 40 Ratings by ImmuniWeb
Competitors and Alternatives
5 Star   57%
"A highly customisable SaaS solution that suits business without big Cybersecurity
ImmuniWeb vs Invicti
4 Star   43%
team" ImmuniWeb vs Qualys
3 Star   0% ImmuniWeb vs Rapid7
2 Star   0%
1 Star   0% ImmuniWeb provides a highly customisable solution that monitors our asset See All Alternatives
24/7 and the customer support replies very quick before ...

READ REVIEWS

4.5 36 Ratings Micro Focus Fortify WebInspect


Competitors and Alternatives
by Micro Focus
5 Star   39% Micro Focus vs Rapid7
4 Star   44% Micro Focus vs Veracode
"High degree of Accuracy and Great ndings "
3 Star   17% Micro Focus vs Qualys

Feedback
2 Star   0% We use the Webinspect dynamic scanner in our QA cycle for automating
1 Star   0% security scans. Its a tool that simulate real hacker scenarios to ... See All Alternatives

READ REVIEWS 

4.8 34 Ratings edgescan


Competitors and Alternatives
by edgescan
5 Star   91% edgescan vs Qualys
4 Star   9% edgescan vs Rapid7
"False Positive Removal Worth It's Weight in Gold"
3 Star   0% edgescan vs Invicti
2 Star   0% Edgescan's service o oads security testing to experts, allowing developers
1 Star   0% to focus on developing code and xing true ndings. ... See All Alternatives

READ REVIEWS

Products 1 - 20 View more Products

Gartner Research
This research requires a log in to determine access

Magic Quadrant for Application Security Testing

Critical Capabilities for Application Security Testing

Gartner Peer Insights 'Voice of the Customer': Application Security Testing

Gartner Peer Insights reviews constitute the subjective opinions of individual end users based on their own experiences, and do not represent the views of Gartner or its a liates.

This site is protected by hCaptcha and its Privacy Policy and Terms of Service apply.
© 2022 Gartner, Inc. and/or its a liates.
 All rights reserved. Community Guidelines | Listing Guidelines | Browse Vendors | Rules of Engagement | FAQs | Blog | Privacy | Terms of Service

Feedback

You might also like