Black Duck Software Composition Analysis (SCA) vs. Patch My PC Patch Management

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Black Duck Software Composition Analysis (SCA)
Score 10.0 out of 10
N/A
Black Duck is a software composition analysis tool acquired and now supported by Synopsys since 2017.N/A
Patch My PC Patch Management
Score 7.1 out of 10
Enterprise companies (1,001+ employees)
Software that extends Microsoft Configuration Manager to deploy and patch third-party applications. It is designed to handle the tedious task of packaging, testing, troubleshooting, and deploying applications in the environment. The software automates the creation and patching of third-party applications. Optionally, users can configure automatic deployment rules for complete automation and control over third-party patch management in the enterprise.
$1
per year per seat
Pricing
Black Duck Software Composition Analysis (SCA)Patch My PC Patch Management
Editions & Modules
No answers on this topic
Basic
$1
per year per seat
Enterprise
$2
per year per seat
Intune Essentials
$3.25
per year per seat
Enterprise Plus
$3.50
per year per seat
Offerings
Pricing Offerings
Black Duck Software Composition Analysis (SCA)Patch My PC Patch Management
Free Trial
NoYes
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
YesNo
Entry-level Setup FeeOptionalNo setup fee
Additional DetailsContact the Synopsys Software Integrity Group (SIG) Sales team at https://www.synopsys.com/software-integrity/contact-sales.html for more detailed pricing information.
More Pricing Information
Community Pulse
Black Duck Software Composition Analysis (SCA)Patch My PC Patch Management
Features
Black Duck Software Composition Analysis (SCA)Patch My PC Patch Management
Threat Intelligence
Comparison of Threat Intelligence features of Product A and Product B
Black Duck Software Composition Analysis (SCA)
-
Ratings
Patch My PC Patch Management
10.0
1 Ratings
22% above category average
Vulnerability Classification00 Ratings10.01 Ratings
Vulnerability Management Tools
Comparison of Vulnerability Management Tools features of Product A and Product B
Black Duck Software Composition Analysis (SCA)
-
Ratings
Patch My PC Patch Management
10.0
1 Ratings
19% above category average
Vulnerability Intelligence00 Ratings10.01 Ratings
Best Alternatives
Black Duck Software Composition Analysis (SCA)Patch My PC Patch Management
Small Businesses

No answers on this topic

Action1
Action1
Score 9.5 out of 10
Medium-sized Companies
Veracode
Veracode
Score 8.7 out of 10
Action1
Action1
Score 9.5 out of 10
Enterprises
Veracode
Veracode
Score 8.7 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Black Duck Software Composition Analysis (SCA)Patch My PC Patch Management
Likelihood to Recommend
10.0
(5 ratings)
10.0
(1 ratings)
Likelihood to Renew
-
(0 ratings)
10.0
(1 ratings)
Usability
8.0
(1 ratings)
-
(0 ratings)
Support Rating
8.2
(2 ratings)
-
(0 ratings)
Implementation Rating
-
(0 ratings)
10.0
(1 ratings)
User Testimonials
Black Duck Software Composition Analysis (SCA)Patch My PC Patch Management
Likelihood to Recommend
Synopsys
If you are using a lot of open-source libraries, which is most likely, this is a must-have to ensure no known vulnerabilities slip into production
Read full review
Patch My PC
I highly recommend Patch My PC to businesses of all types and sizes. The tool is highly customizable and can meet the needs of any organization. It is easy to implement with Configuration Manager (SCCM) and Intune and can be set up within a matter of minutes.
Read full review
Pros
Synopsys
  • Quick inventory scan: Black Duck helps us scan the code repositories in no time. And quickly list the components and I now really know what is in my code.
  • Security and License risk management: Black Duck being rich in its knowledge base about the vulnerabilities and license issues of open source components, quickly compares the identified inventory to the Black Duck knowledge base and lists all the vulnerabilities and license issues in the code.
  • Integration for automatic scanning: Black Duck is part of devops which provides us automatic scanning. Black Duck is not just for devops but also SecOps.
Read full review
Patch My PC
  • Great customer support
  • Automation of application creation and updates
  • Easy to integrate and manage
Read full review
Cons
Synopsys
  • License model based on usage is costly.
  • Documentation is extensive, but often confusing.
  • Black Duck Hub could use some feature improvements for more robust governance capabilities
Read full review
Patch My PC
  • SAS solution
  • Be able to select a specific application version for deployment
Read full review
Likelihood to Renew
Synopsys
No answers on this topic
Patch My PC
I consider Patch My PC a necessary tool for any environment I manage. I cannot imagine managing an environment without it, as the time and effort it saves is invaluable.
Read full review
Usability
Synopsys
If you don’t know how to scan for the language, it isn’t entirely user friendly
Read full review
Patch My PC
No answers on this topic
Support Rating
Synopsys
Support seems very responsive.
Read full review
Patch My PC
No answers on this topic
Implementation Rating
Synopsys
No answers on this topic
Patch My PC
The implementation is super easy, specially if you're just Integrating it with Intune.
Read full review
Alternatives Considered
Synopsys
Black Duck is an obvious choice, with its versatility, integration, best enterprise support and on top of the list the knowledge base Black Duck has. Vega or Grabber also scans the application and tells about vulnerabilities. But it can never be compared with the feature set of Black Duck. Black Duck can also generate reports.
Read full review
Patch My PC
Patch My PC is a tool developed and maintained by experienced systems administrators, who have a deep understanding of the workings of Configuration Manager (SCCM) and Intune. They know what it takes to successfully deploy applications to end-users, making the tool an ideal choice for managing software updates and deployments.
Read full review
Return on Investment
Synopsys
  • It is hard to measure ROI since Black Duck Hub saves us from costly legal battles that have thankfully never had to happen.
Read full review
Patch My PC
  • Saves countless hours on manually packaging applications
  • Saves countless hours on investigating what applications in your environment needs updated
  • saves you 1-3 headcounts in your department
Read full review
ScreenShots

Black Duck Software Composition Analysis (SCA) Screenshots

Screenshot of Black Duck helps you find and fix your highest-priority vulnerabilitiesScreenshot of Use Black Duck to comply with open source license obligations and to verify compliance with all open source license  termsScreenshot of Black Duck automatically creates tickets in your activity tracking applications like Jira for both policy violations and vulnerabilitiesScreenshot of Black Duck's vulnerability ImpactAnalysis indicates whether a vulnerability is actually being called by your applicationScreenshot of The Black Duck security advisory gives the information you need to address security risks and make the fixScreenshot of Black Duck generates a Bill of Materials which gives you a complete and detailed inventory of all open source identified in your codebase

Patch My PC Patch Management Screenshots

Screenshot of The general tab is where you can configure the license key and other general settings including the WSUS Code Signing certificate for third-party software updates.Screenshot of You can enable different third-party products to publish to WSUS and sync into Configuration Manager in the updates tab. You can also right-click on all products, vendors, or specific products to enable custom right-click actions.Screenshot of Enable products for application creation and management using the ConfigMgr Apps tab in the Publisher. This feature will automatically package third-party applications and keep them up to date. You can deploy these applications using task sequences or collection deployments in Configuration Manager.Screenshot of The CVE import wizard in the Patch My PC Publisher can evaluate CVE in a file and let you know which ones are either in the Patch My PC catalog or already published to WSUS.Screenshot of The sync schedule controls how often the Publisher will download the catalog and publish new third-party updates and applications to ConfigMgr or Intune.Screenshot of The alerts tab will automatically send you email, Microsoft Teams, or Slack alerts when new updates or applications are created. These alerts will also include details like severity level, classification level, and CVE's.