Try our new research platform with insights from 80,000+ expert users

Check Point CloudGuard Code Security vs Fortify WebInspect comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Check Point CloudGuard Code...
Ranking in DevSecOps
7th
Average Rating
8.4
Number of Reviews
12
Ranking in other categories
Data Loss Prevention (DLP) (10th)
Fortify WebInspect
Ranking in DevSecOps
8th
Average Rating
7.0
Number of Reviews
19
Ranking in other categories
Dynamic Application Security Testing (DAST) (2nd)
 

Mindshare comparison

As of September 2024, in the DevSecOps category, the mindshare of Check Point CloudGuard Code Security is 2.8%, up from 1.3% compared to the previous year. The mindshare of Fortify WebInspect is 16.8%, up from 12.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
DevSecOps
 

Featured Reviews

JL
May 1, 2023
Protects our network, helps manage access, and offers an ROI
In our company, we deployed a firewall in the office. The office has around 200 to 300 people. We're using it to control the Internet access Its login facility is quite clear for us. Compared to what we used before, it's helping us to be more efficient in managing our traffic. This product is an…
Navin N - PeerSpot reviewer
Sep 16, 2024
Effective scanning of diverse file extensions with fast reporting and issue resolution
We develop software packages for clients, and these clients are mostly in the BFSI sector. The packages need to be scanned, and we engage Fortify WebInspect for this.  Customers typically perform their own application pen tests, but in some cases, we have engagements where customers want us to scan…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Check Point CloudGuard Code Security helps to improve the code security of our company, generating rapid and complete assessments to be able to make decisions for improvements."
"It helped us to reduce vulnerabilities."
"Having a cloud detection response helps to very quickly identify security threats in our environment."
"Knowing what measures we must take allows us to reduce costs associated with security in the cloud by providing early identification of a risk or a possible security breach."
"We have had a number of real events where developers accidentally made commits of API keys, and we were able to detect and begin response actions in minutes. We had the API key revoked in less than five minutes in such events."
"We have a strong sense of security assurance when utilizing CloudGuard, as it consistently delivers outstanding protection capabilities."
"Automation has helped a lot to identify and automatically execute policies, rules, and blocks due to its machine learning."
"Its fastest and most outstanding characteristic is ensuring a development line that will not lead to applying applications or code development."
"The feature that has been most influential in identifying vulnerabilities is its ability to crawl the website, understand the structure, and analyze the network packets sent and received."
"The solution is able to detect a wide range of vulnerabilities. It's better at it than other products."
"The accuracy of its scans is great."
"There are lots of small settings and tools, like an HTTP editor, that are very useful."
"Technical support has been good."
"The most valuable feature is the static analysis."
"It is scalable and very easy to use."
"It is easy to use, and its reporting is fairly simple."
 

Cons

"I would like this solution to be extended to cellular devices or tablets."
"There needs to be better security around API integration."
"The solution should improve false-positives."
"I am satisfied with the performance and results enhanced by this product since we deployed it."
"This is a highly technical solution for users who do not have security experience. It requires specialized knowledge of configurations to use it correctly."
"They could include web functionalities such as sandboxing."
"There are a lot of opportunities for how they can use their technology to do more. That would be more like sensitive data discovery and other things besides Git Repos, but then you are expanding the scope of what necessarily their product is."
"The enhancements are needed in the logging system and log management processes."
"The initial setup was complex."
"Fortify WebInspect's shortcoming stems from the fact that it is a very expensive product in Korea, which makes it difficult for its potential customers to introduce the product in their IT environment."
"A localized version, for example, in Korean would be a big improvement to this solution."
"It took us between eight and ten hours to scan an entire site, which is somewhat slow and something that I think can be improved."
"Lately, we've seen more false negatives."
"Creating reports is very slow and it is something that should be improved."
"We have had a problem with authentification."
"Not sufficiently compatible with some of our systems."
 

Pricing and Cost Advice

"It is extremely affordable and high value for cost."
"The pricing is not clear and while it is not high, it is difficult to understand."
"Its price is almost similar to the price of AppScan. Both of them are very costly. Its price could be reduced because it can be very costly for unlimited IT scans, etc. I'm not sure, but it can go up to $40,000 to $50,000 or more than that."
"Our licensing is such that you can only run one scan at a time, which is inconvenient."
"The price is okay."
"Fortify WebInspect is a very expensive product."
"It’s a fair price for the solution."
"This solution is very expensive."
report
Use our free recommendation engine to learn which DevSecOps solutions are best for your needs.
802,829 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
21%
Financial Services Firm
18%
Government
11%
Manufacturing Company
10%
Financial Services Firm
17%
Computer Software Company
16%
Government
14%
Manufacturing Company
13%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Spectral?
We have had a number of real events where developers accidentally made commits of API keys, and we were able to detect and begin response actions in minutes. We had the API key revoked in less than...
What needs improvement with Spectral?
The solution should improve vulnerability in-depth, false-positive reduction, integration with other tools, performance optimization, and the user interface.
What do you like most about Fortify WebInspect?
The solution's technical support was very helpful.
What needs improvement with Fortify WebInspect?
I want to enhance automation. Currently, Fortify WebInspect can scan and find vulnerabilities, but users with specific skills need to interpret the results and understand how to address them. While...
 

Also Known As

Spectral
Micro Focus WebInspect, WebInspect
 

Learn More

 

Overview

 

Sample Customers

Doddle, Bangalore International Airport, Grupo financiero ACOBO, DigitalTrack
Aaron's
Find out what your peers are saying about Check Point CloudGuard Code Security vs. Fortify WebInspect and other solutions. Updated: July 2024.
802,829 professionals have used our research since 2012.