Checkmarx, an Israeli headquartered company with US offices, provides a suite of application security software delivered via the Checkmarx Software Security Platform. Individual modules and capabilities include Checkmarx Static Application Security Testing, Checkmarx Software Composition Analysis, Checkmarx Interactive Application Security Testing (CxIAST)
N/A
InsightAppSec
Score 9.0 out of 10
N/A
Rapid7 offers InsightAppSec, a dynamic application security testing (DAST) solution, that automatically assess modern web apps and APIs with(according to the vendor) fewer false positives and missed vulnerabilities.
$2,000
per year
Sentinel Dynamic
Score 10.0 out of 10
N/A
Sentinel Dynamic platform finds vulnerabilities in websites and web applications. It is a SaaS platform that, according to the vendor, can scale to meet any demand. It was developed by WhiteHat Security, which was acquired by Synopsys in June of 2022.
N/A
Pricing
Checkmarx
Rapid7 InsightAppSec
Sentinel Dynamic
Editions & Modules
No answers on this topic
Starting Price
$2,000.00
per year
No answers on this topic
Offerings
Pricing Offerings
Checkmarx
InsightAppSec
Sentinel Dynamic
Free Trial
No
No
No
Free/Freemium Version
No
No
No
Premium Consulting/Integration Services
No
No
No
Entry-level Setup Fee
No setup fee
No setup fee
No setup fee
Additional Details
—
—
—
More Pricing Information
Community Pulse
Checkmarx
Rapid7 InsightAppSec
Sentinel Dynamic
Considered Multiple Products
Checkmarx
Verified User
Engineer
Chose Checkmarx
We actually use Checkmarx along with the other tools. However, the reason we chose Checkmarx is its wide support for languages and useful fix recommendations. The flowcharts help better understand the data flow and give a clear picture of what needs to be fixed and how. Also, …
If you are going with SAST process or want to improve overall security posture then go for it like integrating it with post deployment steps. If you are more concerned about proactive controls better choose other options such as pee-commit hooks and CI security. Also choose other tools for DAST and API scans.
Their API based customizations which I leveraged to create an ASPM package, which is developer friendly and can extend above the dashboard features, other ones are UI which is great and feels clutter free. Menu and navigation is also good so as support. Only drawback is sometimes scan takes longer which I feel so can be reduced
Checkmarx is easier to integrate with development tools and gives quick feedback during coding, which is helpful for developers. Veracode is more focused on scanning and reporting for compliance, but it’s more complex to set up. We chose Checkmarx because it fits better into our development process, offering faster scans and more useful suggestions for fixing problems