HackerOne vs. Tripwire IP360

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
HackerOne
Score 9.0 out of 10
N/A
HackerOne is a hacker-powered security platform, helping organizations find and fix critical vulnerabilities before they can be exploited, from the company of the same name in San Francisco. The service is used for vulnerability location, pen testing, bug bounty, and vulnerability triage services.N/A
Tripwire IP360
Score 5.4 out of 10
N/A
IP360 from Tripwire is a vulnerability management solution; the technology was acquired with nCircle in 2013 and based on the nCircle 360 Suite product. Tripewire is a HelpSystems product line since the February 2022 acquisition.N/A
Pricing
HackerOneTripwire IP360
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
HackerOneTripwire IP360
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional DetailsFor more information please email www.hackerone.com/contact or find us on the AWS Marketplace: https://aws.amazon.com/marketplace/seller-profile?id=10857e7c-011b-476d-b938-b587deba31cf
More Pricing Information
Community Pulse
HackerOneTripwire IP360
Best Alternatives
HackerOneTripwire IP360
Small Businesses

No answers on this topic

Action1
Action1
Score 9.5 out of 10
Medium-sized Companies

No answers on this topic

Action1
Action1
Score 9.5 out of 10
Enterprises

No answers on this topic

CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
HackerOneTripwire IP360
Likelihood to Recommend
7.0
(2 ratings)
10.0
(1 ratings)
User Testimonials
HackerOneTripwire IP360
Likelihood to Recommend
HackerOne
It is one of the good platforms for security researchers to submit bugs and other vulnerabilities, it however, has some challenges, in terms of un-verified and duplicate submissions.
Read full review
Fortra
I think Tripwire IP360 is suited for any environment as long as the leadership is willing to support the outcome.
Read full review
Pros
HackerOne
  • Filter for spammy bug reports
  • Nice central interface
  • Payment/reward system is nice
Read full review
Fortra
  • I find the Tripwire IP360 reporting features extraordinary. I can run various audit and inventory reports at any point since the inception of the tool. For example, I can execute a report on the history of an asset, which establishes a baseline and can be used to support many security objectives.
  • Scan scheduling. This feature allows the tool to run independently without human intervention. I don’t have time to manually run scans of different departments. Therefore, I schedule all my audits and check the report the next day. This has worked brilliantly for 3 years now.
  • Automated update of the vulnerability rules. Automatically updating these rules and binding them to the scans preserves the tool relevancy during audits
Read full review
Cons
HackerOne
  • A lot of duplicate bugs get reported, although it does offer automatic suggestion of previously reported bugs that may be duplicates, it is far from perfect.
  • Anyone can report bugs, a lot of them are not verified before submission. This sometimes leads to a lot of time spent in verifying if the bug is really actionable.
  • Each submission has to be treated with equal potential, a lot of time, some time gets invested in vulnerabilities that aren't as important as some others.
Read full review
Fortra
  • I’d like to see IP360 have the ability to discover additional security appliances such as PaloAlto and Fortinet appliances.
Read full review
Alternatives Considered
HackerOne
These were very close and we liked HackerOne better. For a time we did have both and we felt the need to consolidate the information into one platform and end of life our internal offering. Overall we've been fairly happy with HackerOne.
Read full review
Fortra
I chose Tripwire IP360 because of its flexible reporting features
Read full review
Return on Investment
HackerOne
  • Bugs that can't be tracked internally are submitted by external researchers, which is an important factor for security vulnerabilities.
  • Even if the bugs reported are duplicates, there still is provision to award reputation points, that keep the researchers engaged.
  • It also requires a lot of verification and validation, as a lot of the submissions are unverified to begin with.
Read full review
Fortra
  • The biggest impact Tripwire has had in the organization is risk reduction. Since the inception of the tool our vulnerabilities have been reduced by 40%.
Read full review
ScreenShots