We performed a comparison between Checkmarx One and Microsoft Azure Application Gateway based on real PeerSpot user reviews.
Find out what your peers are saying about Sonar, Veracode, Checkmarx and others in Application Security Tools."The solution is always updating to continuously add items that create a level of safety from vulnerabilities. It's one of the key features they provide that's an excellent selling point. They're always ahead of the game when it comes to finding any vulnerabilities within the database."
"The solution has good performance, it is able to compute in 10 to 15 minutes."
"It is very useful because it fits our requirements. It is also easy to use. It is not complex, and we are satisfied with the results."
"From my point of view, it is the best product on the market."
"Checkmarx pinpoints the vulnerability in the code and also presents the flow of malicious input across the application."
"The setup is very easy. There is a lot of information in the documents which makes the install not difficult at all."
"The product's most valuable feature is static code and supply chain effect analysis. It provides a lot of visibility."
"Apart from software scanning, software composition scanning is valuable."
"We use the product in front-end and back-end applications to do the load balancing smartly."
"The solution's integration is very good."
"I rate Microsoft Azure Application Gateway's scalability a ten out of ten. My company has more than 1000 users who use it daily."
"The solution has built-in rules that reduce alerts and are easy to configure."
"We can control what rules should be used and what should be disabled."
"WAF feature replicates the firewall."
"The most valuable feature of the solution is the web application firewall (WAF)."
"Some of the key features of this solution are the low-level maintenance required, floating proxy service, and load balancing."
"The resolutions should also be provided. For example, if the user faces any problem regarding an installation due to the internal security policies of their company, there should be a resolution offered."
"Its pricing model can be improved. Sometimes, it is a little complex to understand its pricing model."
"Integration into the SDLC (i.e. support for last version of SonarQube) could be added."
"I think the CxAudit tool has room for improvement. At the beginning you can choose a scan of a project, but in any event the project must be scanned again (wasting time)."
"In terms of dashboarding, the solution could provide a little more flexibility in terms of creating more dashboards. It has some of its own dashboards that come out of the box. However, if I have to implement my own dashboards that are aligned to my organization's requirements, that dashboarding feature has limited capability right now."
"With Checkmarx, normally you need to use one tool for quality and you need to use another tool for security. I understand that Checkmarx is not in the parity space because it's totally different, but they could include some free features or recommendations too."
"I expect application security vendors to cover all aspects of application security, including SAST, DAST, and even mobile application security testing. And it would be much better if they provided an on-premises and cloud option for all these main application security features."
"C, C++, VB and T-SQL are not supported by this product. Although, C and C++ were advertised as being supported."
"It does not have the flexibility for using public IPs in version 2."
"One of the challenges we faced was the solution does not support any other PCP protocols apart from HTTP and HTTPS."
"We have encountered some issues with automatic redirection and cancellation, leading to 502 and 504 gateway errors. So, I experienced some trouble with containers."
"Application Gateway’s limitation is that the private and the public endpoint cannot use the same port."
"Application Gateway’s limitation is that the private and the public endpoint cannot use the same port."
"Implementing and standardizing the solution across the IT landscape in a heterogeneous environment is painful."
"The tool's pricing could be improved."
"It takes a lot of time for a certificate to update in the system. That is a huge drawback, affecting the load-balancing side. And when there are changes to the load balancing, it affects the end-user."
More Microsoft Azure Application Gateway Pricing and Cost Advice →
Checkmarx One is ranked 3rd in Application Security Tools with 67 reviews while Microsoft Azure Application Gateway is ranked 4th in Application Delivery Controllers (ADC) with 41 reviews. Checkmarx One is rated 7.6, while Microsoft Azure Application Gateway is rated 7.2. The top reviewer of Checkmarx One writes "The report function is a great, configurable asset but sometimes yields false positives". On the other hand, the top reviewer of Microsoft Azure Application Gateway writes "High stability with built-in rules that reduce alerts and are easy to configure". Checkmarx One is most compared with SonarQube, Veracode, Fortify on Demand, Snyk and Coverity, whereas Microsoft Azure Application Gateway is most compared with F5 Advanced WAF, Citrix NetScaler, AWS WAF, Cloudflare Web Application Firewall and Azure Front Door.
We monitor all Application Security Tools reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.