

Checkmarx One and Rapid7 AppSpider are prominent contenders in the application security testing domain. Checkmarx One appears to have the upper hand in terms of support and pricing, while Rapid7 AppSpider's compelling features provide strong advantages.
Features: Checkmarx One delivers comprehensive vulnerability reports, smooth CI/CD integration, and effective pricing structures. Rapid7 AppSpider offers advanced scanning capabilities, extensive technology stack coverage, and detailed scan results, making it an attractive option despite cost considerations.
Room for Improvement: Checkmarx One would benefit from a simplified learning curve for new users, more extensive documentation, and improved user guidance. Rapid7 AppSpider could improve its reporting capabilities, enhance scan speed, and streamline user interaction experiences to meet user demands better.
Ease of Deployment and Customer Service: Checkmarx One provides cloud-based deployment flexibility and demonstrates a responsive customer support team. Rapid7 AppSpider is noted for straightforward deployment but has received mixed feedback on customer service quality, impacting user satisfaction.
Pricing and ROI: Checkmarx One is seen as a cost-effective solution, producing a positive ROI with manageable setup costs and efficient vulnerability management, offering budget-friendly options. Rapid7 AppSpider, while requiring a higher initial investment, justifies its cost with comprehensive feature sets that contribute to long-term security improvements.
| Product | Mindshare (%) |
|---|---|
| Checkmarx One | 10.1% |
| Rapid7 AppSpider | 0.8% |
| Other | 89.1% |

| Company Size | Count |
|---|---|
| Small Business | 32 |
| Midsize Enterprise | 9 |
| Large Enterprise | 46 |
| Company Size | Count |
|---|---|
| Small Business | 11 |
| Midsize Enterprise | 2 |
| Large Enterprise | 1 |
Checkmarx One delivers robust security through seamless integration with SCM and CI/CD tools, ensuring reliable SAST and SCA. Primarily used by organizations for vulnerability detection, it supports cloud and on-premises deployment to enhance secure coding practices.
Checkmarx One provides organizations with comprehensive tools for secure software development, integrating effectively with CI/CD pipelines to scan thousands of applications. Its capabilities extend to identifying vulnerabilities in both code bases and third-party software. Enhancing workflow by supporting SCM solutions, it assists in maintaining secure coding standards and compliance. While excelling in various areas, it requires improvements in scan speed, reduction of false positives, and broader platform integration, particularly for COBOL and Swift. Its pricing model is noted as high, and demand exists for better tutorials and documentation.
What are the key features of Checkmarx One?Industries implement Checkmarx One for secure coding compliance and vulnerability management across varying environments, choosing between cloud and on-premises deployment based on requirements. Its extensive language support and integration with DevSecOps practices make it a popular choice for organizations aiming to enhance software security.
Rapid7 AppSpider provides rapid vulnerability detection and comprehensive reporting, integrating seamlessly with development cycles to enhance web application security. It is widely recognized for its detailed remediation steps and compliance with international standards like ISO27001.
Renowned for its robust security assessment capabilities, Rapid7 AppSpider stands out by offering advanced crawling technology and interactive interface features. Despite its slower performance compared to some competitors, it efficiently manages applications with configurable reporting and a focus on reducing false positives. Users find its automation and extensive integration capabilities valuable, although they indicate a need for improved interface enhancements and better report localization for specific regions like Japan.
What are the key features of Rapid7 AppSpider?In sectors such as finance, healthcare, and technology, companies leverage Rapid7 AppSpider to enhance their security management. It plays an integral role in vulnerability assessment processes, aiding in the compliance with international security standards and reforms in security testing strategies, especially during auditing and routine application scans.
We monitor all Static Application Security Testing (SAST) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.