We performed a comparison between Fortify WebInspect and Qualys Web Application Scanning based on real PeerSpot user reviews.
Find out in this report how the two Dynamic Application Security Testing (DAST) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."It's a well-known platform for doing dynamic application scanning."
"The solution is easy to use."
"Fortify WebInspect is a scalable solution, it is good for a lot of applications."
"The user interface is ok and it is very simple to use."
"The most valuable feature of this solution is the ability to make our customers more secure."
"Guided Scan option allows us to easily scan and share reports."
"The accuracy of its scans is great."
"When we are integrating it with SSC, we're able to scan and trace and see all of the vulnerabilities. Comparison is easy in SSC."
"By using QualysGuard, we are able to finish external scans with assured results in half the time."
"QualysGuard web-based scanner is very useful for performing external penetration and PCI scans from remote locations."
"The product prevents possible vulnerabilities in our network."
"The feature that I have found most valuable is the progressive scan. It is good. It's done in 24 hours."
"The most valuable feature is that we are able to scan the services and put credentials like a user ID password. We can verify the vulnerability level."
"It works with many different products."
"Key features include: Cloud-based, so the installation is not so tedious. Easily deployed. Highly scalable. Comprehensive reporting."
"The most valuable feature of Qualys Web Application Scanning is the effective scanning that can be done."
"The solution needs better integration with Microsoft's Azure Cloud or an extension of Azure DevOps. In fact, it should better integrate with any cloud provider. Right now, it's quite difficult to integrate with that solution, from the cloud perspective."
"The initial setup was complex."
"It took us between eight and ten hours to scan an entire site, which is somewhat slow and something that I think can be improved."
"I'm not sure licensing, but on the pricing, it's a bit costly. It's a bit overpriced. Though it is an enterprise tool, there are other tools also with similar functionalities."
"We have had a problem with authentification."
"Creating reports is very slow and it is something that should be improved."
"The installation could be a bit easier. Usually it's simple to use, but the installation is painful and a bit laborious and complex."
"One thing I would like to see them introduce is a cloud-based platform."
"The solution needs to adjust its pricing. They should make it more affordable."
"It should have better automatic reporting."
"Qualys Web Application Scanning is very complex to use, and its graphical interface is not very user-friendly."
"We procured around 110 licenses for Web Application Scanning, but we have issues running concurrent scans. I don't currently have the option to trigger scans for all 100-plus websites. The default limit is around 10 conference scans. It's not very scalable, to be honest, because of the limitation that they put on concurrent scans."
"Sometimes the response time is low because the handshake fails, and then you have to re-login and start again."
"The GUI could be a little less complicated as it opens a lot of new windows for creating search lists, templates, reports, or for scanning purposes."
"There could be better management and faster scanning."
"There should be better visibility into the application."
More Qualys Web Application Scanning Pricing and Cost Advice →
Fortify WebInspect is ranked 2nd in Dynamic Application Security Testing (DAST) with 17 reviews while Qualys Web Application Scanning is ranked 19th in Application Security Tools with 31 reviews. Fortify WebInspect is rated 7.0, while Qualys Web Application Scanning is rated 7.8. The top reviewer of Fortify WebInspect writes "A powerful tool catering to multiple use cases that provides reasonably good technical support". On the other hand, the top reviewer of Qualys Web Application Scanning writes "A stable solution that can be used for infrastructure vulnerability scanning and web application scanning". Fortify WebInspect is most compared with PortSwigger Burp Suite Professional, Fortify on Demand, Acunetix, OWASP Zap and Veracode, whereas Qualys Web Application Scanning is most compared with OWASP Zap, Veracode, SonarQube, PortSwigger Burp Suite Professional and Tenable.io Web Application Scanning. See our Fortify WebInspect vs. Qualys Web Application Scanning report.
We monitor all Dynamic Application Security Testing (DAST) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.