Micro Focus Fortify on Demand Review

It provides an independent review of third-party applications, allowing organizations to test software before purchasing. But try the free version first as there's no "right" way to measure ROI.

Valuable Features

I was able to quickly pass compliance with HIPAA.
Correlated static and dynamic results with detailed priority guidance.
Accurate results, tailored to each application.
All results manually reviewed by application security experts .
Central testing program management for all applications.

Improvements to My Organization

HP Fortify on Demand provides an independent review of third-party applications, allowing organizations to test software before purchasing, and also allowing software vendors to demonstrate the security of their software. Third-party vendors can upload the source code and/or provide a URL, review the results, and then publish a report back to their customer.

This service compels commercial vendors to take action to proactively fix vulnerabilities, while allowing them to remain in control of their applications. Security professionals can demand that high-priority problems be addressed and verified during the procurement or upgrade process, prior to acceptance. HP Fortify on Demand serves as an independent third-party solution to conduct unbiased analysis of applications and provide a detailed tamper-proof report back to the security team.

Room for Improvement

You are going to like the new detailed reporting. It can correlate the results from different forms of testing and prioritize them by severity to present the truest representation of application risk.

Use of Solution

1 year

Deployment Issues

It was very easy to install and deploy.

Stability Issues


Scalability Issues

No. Scalable infrastructure allows for fast turnaround times and it has no limitations based on lines of code, megabytes, or anything else.

Customer Service and Technical Support

Customer Service:


Technical Support:


Previous Solutions

I currently use other solutions. We gave HP Fortify on Demand a try and we are very happy with the results.

Initial Setup

Yes. Very easy.

Implementation Team

We tried the free version first and then we acquired the software the product website.


Keep in mind that the calculation for return on investment and, therefore the definition, can be modified to suit the situation. It all depends on what you include as returns and costs. The definition of the term in the broadest sense just attempts to measure the profitability of an investment and, as such, there is no one "right" calculation. But, I have to say the client is very satisfied.

Pricing, Setup Cost and Licensing

Try the free version first.

Other Solutions Considered

I am already using other software. We wanted to try it and it works like a charm.

Other Advice

Trust me, you want to be able to do automated and manual testing on a web application that is live.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partners
Add a Comment
Sign Up with Email