Most Helpful Review
Researched HCL AppScan but chose Veracode: Remediation consulting calls with the vendor help us find vulnerabilities much faster
Use Virsec Security Platform? Share your opinion.
We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
Pricing and Cost Advice
They have just streamlined the licensing and they have a number of flexible options available, so overall it is quite good, albeit pricey.
They just changed their pricing model two weeks ago. They went from a per-app license to a per-megabyte license. I know that the dynamic scan was $500 per app. Static analysis was about $4500 yearly. The license is only for the number of users, it doesn't matter what data you put in there. That was the old model. I do not know how the new model works.
Veracode has been fair. We use their SaaS solution and it's just an annual subscription.
No issues, the pricing seems reasonable.
It is pricey. There is a lot of value in the product, but it is a costly tool.
I recommend going for a one-year licensing with CA, because currently they are the leaders in this field with more features and a much better turn around time with a cheaper position, but there are a lot of new companies coming up in the market and they are building up their platforms.
Costs are reasonable. No special infrastructure is required and the license model is good.
I think the pricing is in line with the rest of the tools. I think you get what you pay for. It is certainly not inexpensive, but the value proposition is there. There are certainly cheaper tools, but I don't think we'd be getting the support that we get with those, and that is what separates this product from the others.
AppScan is a little bit expensive. IBM needs to work a little bit on the pricing model, decreasing the license cost.
Information Not Available
Compared 50% of the time.
Compared 13% of the time.
Compared 11% of the time.
Compared 16% of the time.
Compared 15% of the time.
Compared 12% of the time.
Compared 68% of the time.
Compared 32% of the time.
Also Known As
|IBM Security AppScan, Rational AppScan, AppScan||Virsec|
Veracode covers all your Application Security needs in one solution through a combination of five analysis types; static analysis, dynamic analysis, software composition analysis, interactive application security testing, and penetration testing. Unlike on-premise solutions that are hard to scale and focused on finding rather than fixing, Veracode comprises a unique combination of SaaS technology and on-demand expertise that enables DevSecOps through integration with your pipeline, and empowers developers to find and fix security defects.
IBM Security AppScan enhances web application security and mobile application security, improves application security program management and strengthens regulatory compliance. By scanning your web and mobile applications prior to deployment, AppScan enables you to identify security vulnerabilities and generate reports and fix recommendations.
Virsec revolutionizes cyber security by detecting and remediating previously “indefensible” advanced memory-based attacks on critical applications and server endpoints. Using patented, non-signature based technology, Virsec is able to protect applications “full-stack” — from the memory to web layer — without generating false positives, a huge win for security teams drowning in bells and alarms or using needle in a haystack approaches. Our deterministic Trusted Execution™ approach provides runtime application visibility and protection at the CPU-level and in memory to ensure real-time detection and remediation in microseconds. Virsec is unique in its ability to detect file-less, memory corruption and even ROP chain attacks on server endpoints, as well as protecting web applications against web application attacks in one unified platform. This unprecedented level of cyber security breadth and depth enables enterprises to release applications faster and achieve advanced hacking protection, with full assurance of protection against zero-day or unidentified vulnerabilities.
Keep your software secure
Application security starts with secure code. Find out more about the benefits of using Veracode to keep your software secure throughout the development lifecycle.
Learn more about HCL AppScan
Learn more about Virsec Security Platform
|State of Missouri, Rekner||Essex Technology Group Inc., Cisco, West Virginia University, APIS IT|
Information Not Available
Financial Services Firm31%
Software R&D Company38%
Comms Service Provider13%
Financial Services Firm7%
Financial Services Firm13%
Software R&D Company44%
Comms Service Provider9%
No Data Available
No Data Available