We performed a comparison between Fortify WebInspect and Qualys Web Application Scanning based on real PeerSpot user reviews.
Find out in this report how the two Dynamic Application Security Testing (DAST) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The most valuable feature of this solution is the ability to make our customers more secure."
"The most valuable feature is the static analysis."
"Good at scanning and finding vulnerabilities."
"It is scalable and very easy to use."
"The solution is easy to use."
"Technical support has been good."
"When we are integrating it with SSC, we're able to scan and trace and see all of the vulnerabilities. Comparison is easy in SSC."
"Reporting, centralized dashboard, and bird's eye view of all vulnerabilities are the most valuable features."
"This product is designed for easy scalability and can easily scale up without major challenges."
"We can do scanning and submit reports straight to the customers when there are new vulnerabilities, then tell them whether they are affected or not."
"Key features include: Cloud-based, so the installation is not so tedious. Easily deployed. Highly scalable. Comprehensive reporting."
"The product prevents possible vulnerabilities in our network."
"We have experienced quick customer support. They have a complete list of our previous issues along with our history, which makes it faster for them to solve issues."
"QualysGuard web-based scanner is very useful for performing external penetration and PCI scans from remote locations."
"The most valuable feature is that we are able to scan the services and put credentials like a user ID password. We can verify the vulnerability level."
"It works with many different products."
"Creating reports is very slow and it is something that should be improved."
"The scanner could be better."
"I'm not sure licensing, but on the pricing, it's a bit costly. It's a bit overpriced. Though it is an enterprise tool, there are other tools also with similar functionalities."
"We have had a problem with authentification."
"It took us between eight and ten hours to scan an entire site, which is somewhat slow and something that I think can be improved."
"Lately, we've seen more false negatives."
"The initial setup was complex."
"We have often encountered scanning errors."
"Sometimes the response time is low because the handshake fails, and then you have to re-login and start again."
"It should have better automatic reporting."
"There should be better visibility into the application."
"The support could be faster."
"The product's pricing could be better."
"We procured around 110 licenses for Web Application Scanning, but we have issues running concurrent scans. I don't currently have the option to trigger scans for all 100-plus websites. The default limit is around 10 conference scans. It's not very scalable, to be honest, because of the limitation that they put on concurrent scans."
"When comparing this solution to Veracode, Veracode has good interactive features and gives a clear understanding of what the vulnerabilities are, which error line of the vulnerability is on and what can be done. It gives interactive features, whereas this solution does not give a clear understanding of where or how to fix the problem."
"The scanner reports a lot of false positives, which is something that needs to be improved."
More Qualys Web Application Scanning Pricing and Cost Advice →
Fortify WebInspect is ranked 2nd in Dynamic Application Security Testing (DAST) with 17 reviews while Qualys Web Application Scanning is ranked 19th in Application Security Tools with 31 reviews. Fortify WebInspect is rated 7.0, while Qualys Web Application Scanning is rated 7.8. The top reviewer of Fortify WebInspect writes "A powerful tool catering to multiple use cases that provides reasonably good technical support". On the other hand, the top reviewer of Qualys Web Application Scanning writes "A stable solution that can be used for infrastructure vulnerability scanning and web application scanning". Fortify WebInspect is most compared with PortSwigger Burp Suite Professional, Fortify on Demand, Acunetix, OWASP Zap and Veracode, whereas Qualys Web Application Scanning is most compared with OWASP Zap, Veracode, SonarQube, PortSwigger Burp Suite Professional and Tenable.io Web Application Scanning. See our Fortify WebInspect vs. Qualys Web Application Scanning report.
We monitor all Dynamic Application Security Testing (DAST) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.