Try our new research platform with insights from 80,000+ expert users

Checkmarx One vs SanerNow CyberHygiene Platform comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Checkmarx One
Ranking in Vulnerability Management
15th
Ranking in Risk-Based Vulnerability Management
5th
Average Rating
7.6
Number of Reviews
69
Ranking in other categories
Application Security Tools (3rd), Static Application Security Testing (SAST) (3rd), Static Code Analysis (2nd), API Security (4th), DevSecOps (2nd)
SanerNow CyberHygiene Platform
Ranking in Vulnerability Management
26th
Ranking in Risk-Based Vulnerability Management
11th
Average Rating
9.6
Number of Reviews
2
Ranking in other categories
Endpoint Detection and Response (EDR) (36th), Patch Management (15th)
 

Featured Reviews

Rahul Mane - PeerSpot reviewer
Feb 19, 2023
A highly recommended tool for delivering secure products
We use the solution for SAST and DAST testing Checkmarx has helped us deliver more secure products. We are able to do static code analysis with the tool before shipping our code to production. When the integration is in the pipeline, this tool gives us early notifications on code fixes.…
Sushil Raul - PeerSpot reviewer
Mar 7, 2023
Advanced vulnerability Management solution with out-of-the-box integrations
If customers are only looking for a patch management system, then I would definitely recommend SanerNow. But if you look at today's market, there are already many tools similar to SanerNow that give fragments of the overall functionality of an ITSM tool, and enterprise customers tend not to be interested in tools that only provide fragmented functionality. Instead, they need a tool that can give them complete IT service management, including service orchestration, assurance, and automation; that is, the entire gamut of modules in one solution. Vendors that can provide this include BMC, Micro Focus, and SolarWinds. These vendors cater to the overall requirements of the customer and not just a specific fragment, especially for those customers wishing to break down silos and unify their solutions. Thus, if you're looking for a more comprehensive solution that unifies ITSM and IT operations management as a whole, SanerNow needs to work towards a few additional modules which support observability.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Helps us check vulnerabilities in our SAP Fiori application."
"The main advantage of this solution is its centralized reporting functionality, which lets us track issues, then see and report on the priorities via a web portal."
"The UI is user-friendly."
"The solution is scalable, but other solutions are better."
"From my point of view, it is the best product on the market."
"I like that you don't have to compile the code in order to execute static code analysis. So, it's very handy."
"Both automatic and manual code review (CxQL) are valuable."
"Less false positive errors as compared to any other solution."
"Although it is, in fact, a complete vulnerability management solution, the most valuable feature is the patch management functionality. Most of our customers give preference to this tool over other tools when it comes to patch management."
"Our team uses the SanerNow CyberHygiene Platform for threat detection, focusing on features like vulnerabilities and asset exposure. The asset exposure feature is packaged with software licenses and machines. We get the latest updates and patches for Windows workstations and applications for remediation. We can automate these updates, which greatly improves our previous manual and scripting-based tools."
 

Cons

"You can't use it in the continuous delivery pipeline because the scanning takes too much time."
"The pricing can get a bit expensive, depending on the company's size."
"Licensing models and Swift language support are the aspects in which this product needs to improve. Swift is a new language, in which major customers require support for lower prices."
"In terms of dashboarding, the solution could provide a little more flexibility in terms of creating more dashboards. It has some of its own dashboards that come out of the box. However, if I have to implement my own dashboards that are aligned to my organization's requirements, that dashboarding feature has limited capability right now."
"There is nothing particular that I don't like in this solution. It can have more integrations, but the integrations that we would like are in the roadmap anyway, and they just need to deliver the roadmap. What I like about the roadmap is that it is going where it needs to go. If I were to look at the roadmap, there is nothing that is jumping out there that says to me, "Yeah. I'd like something else on the roadmap." What they're looking to deliver is what I would expect and forecast them to deliver."
"We are trying to find out if there is a way to identify the run-time null values. I am analyzing different tools to check if there is any tool that supports run-time null value identification, but I don't think any of the tools in the market currently supports this feature. It would be helpful if Checkmarx can identify and throw an exception for a null value at the run time. It would make things a lot easier if there is a way for Checkmarx to identify nullable fields or hard-coded values in the code. The accessibility for customized Checkmarx rules is currently limited and should be improved. In addition, it would be great if Checkmarx can do static code and dynamic code validation. It does a lot of security-related scanning, and it should also do static code and dynamic code validation. Currently, for security-related validation, we are using Checkmarx, and for static code and dynamic code validation, we are using some other tools. We are spending money on different tools. We can pay a little extra money and use Checkmarx for everything."
"One area for improvement in Checkmarx is pricing, as it's more expensive than other products."
"I would like to see the rate of false positives reduced."
"SanerNow CyberHygiene Platform needs to incorporate more documentation."
"SanerNow has good integration with the more well known ITSM tools, but at the same time there are many other ITSM (IT Service Management) tools available in the market, including local tools here in India, and I'm not sure how SanerNow plans to integrate with them all out of the box."
 

Pricing and Cost Advice

"The tool's pricing is fine."
"I would rate the solution’s pricing an eight out of ten. The tool’s pricing is higher than others and it is for the license alone."
"For around 250 users or committers, the cost is approximately $500,000."
"The interface used to create custom rules comes at an additional cost."
"The pricing was not very good. This is just a framework which shouldn’t cost so much."
"We have purchased an annual license to use this solution. The price is reasonable."
"It's relatively expensive."
"It is an expensive solution."
"The pricing is reasonable - we paid about 2.5 million for 3,500 nodes."
"As with several other solutions such as Microsoft MECM and SCCM, the licensing for SanerNow involves per-device pricing for each kind of product or service on offer."
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
805,335 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
21%
Computer Software Company
16%
Manufacturing Company
10%
Government
5%
Computer Software Company
17%
Financial Services Firm
11%
Manufacturing Company
11%
Educational Organization
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What alternatives are there for Fortify WebInspect and Fortify SCA?
I would like to recommend Checkmarx. With Checkmarx, you are able to have an all in one solution for SAST and SCA as well. Veracode is only a cloud solution. Hope this helps.
What do you like most about Checkmarx?
Compared to the solutions we used previously, Checkmarx has reduced our workload by almost 75%.
What do you like most about SanerNow?
Although it is, in fact, a complete vulnerability management solution, the most valuable feature is the patch management functionality. Most of our customers give preference to this tool over other...
What is your experience regarding pricing and costs for SanerNow?
The pricing is reasonable - we paid about 2.5 million for 3,500 nodes.
What needs improvement with SanerNow?
SanerNow CyberHygiene Platform needs to incorporate more documentation.
 

Also Known As

No data available
SecPod SanerNow, SanerNow RP
 

Overview

 

Sample Customers

YIT, Salesforce, Coca-Cola, SAP, U.S. Army, Liveperson, Playtech Case Study: Liveperson Implements Innovative Secure SDLC
Siemens, Aruba, SironLabs, POS Aviation, Kotak, Kaizen Automotive, Amagi, McNeilus Steel, Claremont, Glassbeam, Marlabs, Amazon Web Services
Find out what your peers are saying about Checkmarx One vs. SanerNow CyberHygiene Platform and other solutions. Updated: September 2024.
805,335 professionals have used our research since 2012.