Veracode made my job easier
Updated May 03, 2021

Veracode made my job easier

Mohana Chintalapati | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User

Modules Used

  • Static Analysis (SAST)
  • Software Composition Analysis (SCA)

Overall Satisfaction with Veracode

It's used by the Information Security team to review the source code of all our products. Veracode helps us do quick checks before a release and the Software Composition Analysis module has made it very easy to identify and keep track of all the OSS components used in our products. The way Veracode flags the license violation issues as well has been extremely helpful.
  • Sophisticated UI
  • Integration into CI/CD pipelines
  • Informative reports
  • Cover more types of vulnerabilities
  • Simplify the process of marking and approving mitigations
  • Helped us meet Industry standards
  • Made security an integral part of our release cycle
  • Helped us secure our products from bugs introduced through OSS
Account managers are extremely helpful, always ready to assist with any issues we have. I've seen vendors with account executives that schedule too many meetings and send too many emails in the process of trying to be helpful and I've seen vendors who don't really care about the customers, too. However, Veracode has just the right amount of communication. Neither more nor less. It makes them easier to work with.

Responses from the support team are pretty quick as well.
Secure Assist
Shiftleft
Coverity

Things Veracode does better than the other tools:
  • Fewer false positives
  • Faster scans
  • Language support
  • Covers security and license risks related to OSS

Do you think Veracode delivers good value for the price?

Yes

Are you happy with Veracode's feature set?

Yes

Did Veracode live up to sales and marketing promises?

Yes

Did implementation of Veracode go as expected?

Yes

Would you buy Veracode again?

Yes

Qualys Web Application Scanning (WAS), Rapid7 AppSpider
Veracode will suit any organization that wants to integrate security into their build pipeline.