An SCA Product You Can Trust
January 25, 2024

An SCA Product You Can Trust

Anonymous | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User

Overall Satisfaction with Sonatype Nexus Vulnerability Scanner

Scanning of open source components in our applications. We scan for license usage, security issues and for software component quality. We run the Sonatype Nexus Vulnerability Scanner as part of the build process to ensure that all applications running in production are meeting the license, security and quality requirements. We also use the continuous monitoring to ensure that we stay up to date with should there be any security vulnerability found.
  • Accuracy of data
  • Supported Language
  • Scan Time
  • Cloud offering
  • Integration to Atlassian JIRA
  • Integration into existing tooling
  • Accuracy of data
  • Meet compliance requirements for managing third party software vulnerabilities
  • Picking good components from the beginning

Do you think Sonatype Vulnerability Scanner delivers good value for the price?

Yes

Are you happy with Sonatype Vulnerability Scanner's feature set?

Yes

Did Sonatype Vulnerability Scanner live up to sales and marketing promises?

Yes

Did implementation of Sonatype Vulnerability Scanner go as expected?

Yes

Would you buy Sonatype Vulnerability Scanner again?

Yes

Well suited for organizations with small application security team as the solution scales and is easy for devs to use. The only choice if you develop in Java as their data is the most accurate.