Checkmarx One

3,9 (7)
Écrivez votre avis !
Une solution cloud de gestion de la sécurité des applications d'entreprise

Note globale

3,9 /5
(7)
Rapport qualité-prix
3/5
Fonctionnalités
4,3/5
Simplicité d'utilisation
3,7/5
Support client
4/5

71%
des utilisateurs recommandent cette application
Classer par

Avis clients sur 7

Daniel
Daniel
Note globale
  • Secteur d'activité: Hôpitaux et soins de santé
  • Taille de l'entreprise: 10 000+ employés
  • Logiciel utilisé tous les jours pendant plus de deux ans
  • Provenance de l'avis

Note globale

  • Simplicité d'utilisation
  • Probabilité de recommander le produit 10.0 /10

Gives a full 360 degree view of vulnerabilities in static code

Publié le 22/01/2023

My personal overall experience with SAST is positive. I like that I can tweak queries myself and if...

My personal overall experience with SAST is positive. I like that I can tweak queries myself and if there is something I can't do, support is just a phone call/ticket away. They respond to all inquiries very quickly.

Avantages

The ability to use CI/CD pipelines so when the build task kicks off, scanning for static code and open source libraries is done at build time.

Inconvénients

The only thing I do not like is we have some languages that the product does not support like ColdFusion and R-Code.

Juan
Note globale
  • Secteur d'activité: Banque
  • Taille de l'entreprise: 1 001–5 000 employés
  • Logiciel utilisé tous les jours pendant plus de deux ans
  • Provenance de l'avis

Note globale

  • Rapport qualité-prix
  • Simplicité d'utilisation
  • Support client
  • Probabilité de recommander le produit 8.0 /10

Checkmarx a strong and reliable competitor

Publié le 18/11/2021

It has been a good experience, the support is fast and reliable. The tool work as expected and you...

It has been a good experience, the support is fast and reliable. The tool work as expected and you can use the api integration to go even further.

Avantages

Easy of use, the 0 complexity it adds to configure a new project, it feels to work in a collaborative way even in an on premise environment.

Inconvénients

The implementation requires Windows and SQL, i would prefer that it runs on linux with postgresql.
The reporting could be improved.

Donovan
Note globale
  • Secteur d'activité: Services financiers
  • Taille de l'entreprise: 51–200 employés
  • Logiciel utilisé tous les jours pendant 6 à 12 mois
  • Provenance de l'avis

Note globale

  • Rapport qualité-prix
  • Simplicité d'utilisation
  • Support client
  • Probabilité de recommander le produit 3.0 /10

Super expensive but also feels outdated

Publié le 25/03/2022

Overall I did not enjoy using it.

Overall I did not enjoy using it.

Avantages

It certainly covers all the vulnerability rules you would ever need.

Inconvénients

It is SUPER expensive, very slow and the reporting is too messy. It would have been better if it can take a more integrated into the code approach like Sonar.

Tiennot
Note globale
  • Secteur d'activité: Informatique et sécurité réseau
  • Taille de l'entreprise: 11–50 employés
  • Logiciel utilisé tous les jours pendant plus de deux ans
  • Provenance de l'avis

Note globale

  • Rapport qualité-prix
  • Simplicité d'utilisation
  • Support client
  • Probabilité de recommander le produit 10.0 /10

CxSAST - A great static software analyzer

Publié le 15/01/2021

Avantages

CXSast has several very important advantages. The first is that the code is scanned before it is even compiled, this means that de developers can scan and fix while they are still in the coding process.

Second CXSAST fully integrates in any devops proces. Scanning and reporting will be doen from within the screens developers work in, so no unneccesary switching between screens. (see extention CXflow)

Nex to that the rules (or queries) are open, every one can see them or a organisation can tailor them to their own need. If needed a FP free setup can be created!

V9.3 now enable installation of the engines on Linux, you can dockarize the stuff

Last but not least CXSast can be setup with additions such as CX-SCA (opensource analysis) and CX-IAST (passive IAST scanning)

Inconvénients

The installation can sometimes be difficult. However Checkmarx counters this by offering free installation services for their costumers.

Shreyans
Shreyans
Note globale
  • Secteur d'activité: Banque
  • Taille de l'entreprise: 10 000+ employés
  • Logiciel utilisé toutes les semaines pendant plus de deux ans
  • Provenance de l'avis

Note globale

  • Simplicité d'utilisation
  • Probabilité de recommander le produit 8.0 /10

Preferred Vulnerability Management Tool

Publié le 12/11/2022

Avantages

Can be used to analyse application, source code, byte code, and binaries for coding and design conditions.Key elements of the checkmarx dashboard can be split into two sections, namely scan, statistics and scan trends.

Inconvénients

Unavailable or downtime of application causes delay in deploying the code through pipeline which is integrated with Checkmarx.

👨🏼‍💻 Sarai
👨🏼‍💻 Sarai
Note globale
  • Secteur d'activité: Édition
  • Taille de l'entreprise: 1 001–5 000 employés
  • Logiciel utilisé tous les jours pendant 1 à 5 mois
  • Provenance de l'avis

Note globale

  • Simplicité d'utilisation
  • Probabilité de recommander le produit 4.0 /10

Intuitive software

Publié le 26/04/2021

Avantages

Finding code vulnerabilities is hard. CxSAST makes it easy. Not only does it point out the vulnerability, it explains why the code is vulnerable, which is very valuable for future proofing code.

Inconvénients

Can sometimes include false positives. However this is mitigated by selecting “proposed not exploitable” if necessary.

Jayesh
Note globale
  • Secteur d'activité: Loisirs, voyage et tourisme
  • Taille de l'entreprise: 501–1 000 employés
  • Logiciel utilisé tous les mois pendant 6 à 12 mois
  • Provenance de l'avis

Note globale

  • Rapport qualité-prix
  • Simplicité d'utilisation
  • Probabilité de recommander le produit 6.0 /10

Its on OK Product

Publié le 19/08/2019

Avantages

We use this tool to check security vulnerabilities
Option to configure multiple projects
Compare the results between two scans
Download the report results

Inconvénients

Not very User-Friendly.
Takes time to run the scan
Difficult to configure with development studios.