We performed a comparison between Pentera and Veracode based on real PeerSpot user reviews.
Find out in this report how the two Penetration Testing Services solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."What I like the most about Pentera is its solution-oriented approach."
"The most valuable feature of Pentera is that you can do continuous vulnerability assessment, which is automated."
"The product is easy to use."
"Maybe there are some remediation steps on the website, we can mask sensitive information on the website better."
"The vulnerability scanner, exploit achievements, and remediation actions are all great."
"It has the ability to scale, and the fact that it doesn't produce a lot of false positives."
"The CI/CD integration is the most valuable feature of Veracode."
"Veracode is a valuable tool in our secure SDLC process."
"Static analysis scanning engine is a key feature."
"The SCA, agent-based analysis, is valuable. SAST and DAST take time, while this is quite fast. It gives the results very quickly. We have implemented it into our CI/CD pipeline."
"I like Veracode's static analysis. It was one of the core development tools when I worked with a telecommunication company where we were delivering new features for various applications and purposes each week, such as CRM, data channels, compliance, traffic data, etc."
"The coverage of backdoors attacks on security that's the most valuable for my clients."
"Veracode's most valuable aspect is continuous integration. It helps us integrate with other applications so that it can monitor the security process."
"The vulnerability scanner, exploit achievements, and remediation actions are all great."
"The price could be improved."
"Pentera's general dashboards could be improved and made more specific in terms of vulnerabilities that I'm discovering."
"There is room for improvement in virtualization compatibility."
"Maybe scalability. I know that the Pentera right now is high level in order to scan big deals over 500 IPs and not less, and not less. That can be more granular. This will be useful."
"We would like a way to mark entire modules as "safe." The lack of this feature hasn't stopped us previously, it just makes our task more tedious at times. That kind of feature would save us time."
"The user interface could be more sleek. Some scanning requirements aren't flexible. Some features take some time for new users to understand (like what exactly "modules" are)."
"It could have better integration with our pipeline. If we could have better integration with our application pipeline, e.g., Jira, Bamboo, or Azure DevOps, then that will be very helpful. Right now, it is quite hard to integrate the solution into our existing pipeline."
"Veracode can be slow at times and has room for improvement, which may cause delays in our products and prolonged static scans."
"There is room for improvement in the speed of the system. Sometimes, the servers are very busy and slow... Also, the integration with SonarQube is very weak, so we had to implement a custom solution to extend it."
"In the next release, I would like a proper way of packaging files for scanning and the packing of IOS apps and API Dynamic scan methodology."
"Maybe the pipeline scanning doesn't support enough languages. It might only support Java and Python only, so that could be improved."
"Improve Mobile Application Dynamic Scanning DAST - .ipa and .apk"
Pentera is ranked 2nd in Penetration Testing Services with 5 reviews while Veracode is ranked 3rd in Penetration Testing Services with 194 reviews. Pentera is rated 8.2, while Veracode is rated 8.2. The top reviewer of Pentera writes "A stable solution that can be used to do continuous and automated vulnerability assessments". On the other hand, the top reviewer of Veracode writes "Helps to reduce false positives and prevent vulnerable code from entering production, but does not support incremental scanning ". Pentera is most compared with Cymulate, Tenable Nessus, Picus Security, Horizon3.ai and HackerOne, whereas Veracode is most compared with SonarQube, Checkmarx One, Fortify on Demand, Snyk and Fortify Static Code Analyzer. See our Pentera vs. Veracode report.
See our list of best Penetration Testing Services vendors.
We monitor all Penetration Testing Services reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.