We performed a comparison between Fortify WebInspect and Qualys Web Application Scanning based on real PeerSpot user reviews.
Find out in this report how the two Dynamic Application Security Testing (DAST) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."It is scalable and very easy to use."
"When we are integrating it with SSC, we're able to scan and trace and see all of the vulnerabilities. Comparison is easy in SSC."
"The user interface is ok and it is very simple to use."
"Good at scanning and finding vulnerabilities."
"The solution is able to detect a wide range of vulnerabilities. It's better at it than other products."
"Technical support has been good."
"The most valuable feature of this solution is the ability to make our customers more secure."
"The solution is easy to use."
"You can integrate your Burp Suite results and create an integrated report. Also, the way it shows the results - threats and exploit details - makes remediation very easy."
"We can do scanning and submit reports straight to the customers when there are new vulnerabilities, then tell them whether they are affected or not."
"The feature that I have found most valuable is the progressive scan. It is good. It's done in 24 hours."
"The most valuable feature of Qualys Web Application Scanning is the effective scanning that can be done."
"The most valuable feature is that we are able to scan the services and put credentials like a user ID password. We can verify the vulnerability level."
"QualysGuard web-based scanner is very useful for performing external penetration and PCI scans from remote locations."
"Qualys Web Application Scanning has multiple features like threat protection and container security scanning in one box."
"Key features include: Cloud-based, so the installation is not so tedious. Easily deployed. Highly scalable. Comprehensive reporting."
"Our biggest complaint about this product is that it freezes up, and literally doesn't work for us."
"It took us between eight and ten hours to scan an entire site, which is somewhat slow and something that I think can be improved."
"A localized version, for example, in Korean would be a big improvement to this solution."
"Creating reports is very slow and it is something that should be improved."
"Not sufficiently compatible with some of our systems."
"Lately, we've seen more false negatives."
"Fortify WebInspect's shortcoming stems from the fact that it is a very expensive product in Korea, which makes it difficult for its potential customers to introduce the product in their IT environment."
"We have had a problem with authentification."
"There should be better visibility into the application."
"The GUI could be a little less complicated as it opens a lot of new windows for creating search lists, templates, reports, or for scanning purposes."
"The product's pricing could be better."
"It should have better automatic reporting."
"In certain cases, this product does have false positives, which the company should work on."
"The support could be faster."
"The UI is not user-friendly and you don't have a yearly reporting facility where you can slice and dice in different jobs."
"The area of false positives could be improved. There are quite a number of false positives as compared to other solutions. They could probably fine tune the algorithm to be able to reduce the number of false positives being detected."
More Qualys Web Application Scanning Pricing and Cost Advice →
Fortify WebInspect is ranked 2nd in Dynamic Application Security Testing (DAST) with 17 reviews while Qualys Web Application Scanning is ranked 19th in Application Security Tools with 31 reviews. Fortify WebInspect is rated 7.0, while Qualys Web Application Scanning is rated 7.8. The top reviewer of Fortify WebInspect writes "A powerful tool catering to multiple use cases that provides reasonably good technical support". On the other hand, the top reviewer of Qualys Web Application Scanning writes "A stable solution that can be used for infrastructure vulnerability scanning and web application scanning". Fortify WebInspect is most compared with PortSwigger Burp Suite Professional, Fortify on Demand, Acunetix, OWASP Zap and Veracode, whereas Qualys Web Application Scanning is most compared with OWASP Zap, Veracode, SonarQube, PortSwigger Burp Suite Professional and Tenable.io Web Application Scanning. See our Fortify WebInspect vs. Qualys Web Application Scanning report.
We monitor all Dynamic Application Security Testing (DAST) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.