Try our new research platform with insights from 80,000+ expert users

Fortify Software Security Center vs Tricentis Tosca comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortify Software Security C...
Average Rating
7.8
Reviews Sentiment
8.3
Number of Reviews
6
Ranking in other categories
Static Application Security Testing (SAST) (26th)
Tricentis Tosca
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
110
Ranking in other categories
Functional Testing Tools (1st), Mobile App Testing Tools (1st), Regression Testing Tools (1st), API Testing Tools (1st), Test Automation Tools (1st)
 

Featured Reviews

Jonathan Steyn - PeerSpot reviewer
Comprehensive vulnerability analysis and customization features with decent pricing
Software Security Center is highly customizable and helps me test all vulnerability data against the latest conventions like OWASP Top Ten, CVE Top twenty-five, and several other legal compliances. WebInspect supports a number of APIs and web endpoints. I find its feature of macro recording allows for testing vulnerabilities during multi-factor authentication sessions very valuable. I appreciate the ability to further analyze data with tools like Audit Workbench.
PrabhuKrishnamoorthy - PeerSpot reviewer
Has transformed testing by reducing scripting effort and enhancing productivity with advanced features
The self-healing feature of Tricentis Tosca needs significant improvement. Currently, it is static and not dynamic. For example, if a button in an application changes, Tricentis Tosca should be smart enough to detect the change and still execute the script seamlessly. Improvements are needed to ensure it responds dynamically to changes in the application.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Fortify Analytics' AI function helps scan and provides more detailed explanations and recommendations about vulnerabilities."
"You can easily download the tool's rule packs and update them."
"The reporting is very useful because you can always view an entire list of the issues that you have."
"I like the explanation of issues provided by Fortify Software Security Center."
"Software Security Center is highly customizable and helps me test all vulnerability data against the latest conventions like OWASP Top Ten, CVE Top twenty-five, and several other legal compliances."
"The overall rating for this tool is ten out of ten."
"This is a stable solution at the end of the day."
"The most valuable features of Tricentis Tosca are the Salesforce scanning. There are two scanning for Salesforce applications. There is Salesforce scanning and normal application scanning. Object identification has been really useful in Tricentis Tosca."
"The most valuable feature of Tricentis Tosca is it is a completely scriptless automation tool, which I liked a lot. They keep on continuously improving their tools, wherever we are facing any challenges they are able to provide a solution for it. It is easy to learn, everyone can easily read and understand what is happening with the scripts. Any business user or function tester can use the tool efficiently. This is a complete solution package."
"The most valuable feature is being able to create a test case by recording some scenarios and then leasing that task case to other scenarios."
"It's integrated with different technologies, desktop applications, package solutions like SAP, and mobile applications."
"For beginners, the product is good, especially for those who are interested in the quality side of software testing."
"The scriptless automation tool is one of the important features."
"Overall, I rate Tricentis Tosca as a ten out of ten."
"I rate the overall solution a ten out of ten as I am satisfied with it."
 

Cons

"Improvements needed for Software Security Center include better aggregation views of datasets."
"This solution is difficult to implement, and it should be made more comfortable for the end-users."
"Improvements needed for Software Security Center include better aggregation views of datasets."
"We are having issues with false positives that need to be resolved."
"Fortify Software Security Center's setup is really painful."
"I am not satisfied with the percentage of false positives, which is around eighteen percent."
"The product's overlap feature is restrictive and requires more customization efforts, which can be expensive."
"I would like to see more implementation of AI on the self-healing aspect. That would be like the next step."
"One thing to improve in Tricentis Tosca is that it's not compatible with Excel based forms. Another area for improvement is that the tool is not compatible with OpenText applications. The support and licensing cost for it also need improvement. The tool also needs cloud support, as it's currently on-premises only."
"Needs a UI to visualize the test case development."
"It needs better integration with JIRA."
"More and more artificial intelligence (AI) is coming in. So, some amount of AI to create natural language processing (NLP)-based test cases and manage defects would be very helpful. This is because the technologies have evolved in the last five to six months, so there is a potential opportunity there."
"First, Tricentis could improve Tosca's Linux scripting. We can automate Linux scripting, but there are a few commands that Tosca doesn't support. DVS support and the object identification mechanism could also be better."
"I have found that some of the functions could be missed in the solution for new users. They are not obviously present."
"The document object model or some aspects of it has a bit of a learning curve."
 

Pricing and Cost Advice

"This is a costly solution that could be cheaper."
"The solution is priced fair."
"As a Fortify partner company providing technical support, I find the product expensive in our country, where local, inexpensive products are available."
"I'm not sure if I'm at liberty to talk about the pricing, but it has some significant costs. For example, you have to pay a license and maintenance fee. Then the rest of the terms are negotiable. We have to consider what we need and what benefit we get from it."
"The pricing is high, but altogether it offers you the ability to automate all sorts of applications: desktop, web, mobile, etc."
"Tricentis Tosca is an expensive solution and there is an annual license required. The whole licensing process is confusing and it could be made easier."
"I would like to see better costing packs. There are several features but USD $11,000 for one license is expensive."
"On a scale of one to ten, where one is very cheap and ten is very expensive, I rate the pricing a ten. The licensing model is based on a yearly basis."
"A competitor of Tricentis Tosca: Katalon Studio, is very similar and offers lower pricing, though Tricentis Tosca offers more features and benefits."
"I am satisfied with the cost."
"I rate the price of Tricentis Tosca a two out of five."
report
Use our free recommendation engine to learn which Regression Testing Tools solutions are best for your needs.
849,190 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
20%
Financial Services Firm
16%
Computer Software Company
12%
Government
5%
Computer Software Company
14%
Financial Services Firm
13%
Manufacturing Company
13%
Retailer
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about Micro Focus Software Security Center?
You can easily download the tool's rule packs and update them.
What is your experience regarding pricing and costs for Micro Focus Software Security Center?
In the beginning, it was difficult for me to verify that our usage of Fortify Software Security Center corresponded to the license and criteria. Now, we have negotiated a number of details to respe...
What needs improvement with Micro Focus Software Security Center?
I would like the false positive issue to diminish. I have experienced a lot of false positives, but I think this is due to using an older version. I hope the new version will resolve my problem.
How does Micro Focus UFT One compare to Tricentis Tosca?
We reviewed MicroFocus UFT One but ultimately chose to use Tricentis Tosca because we needed API testing. MicroFocus UFT is a performance and functional testing tool. We tested it, and it was well...
How does Tricentis Tosca compare with Worksoft Certify?
Tosca fulfills our business needs better because it is an end-to-end solution across technologies. We like that it is scriptless, so even non-experienced staff can use it. To put it simply, with To...
What do you like most about Tricentis Tosca?
For beginners, the product is good, especially for those who are interested in the quality side of software testing.
 

Also Known As

Micro Focus Software Security Center, Application Security Center, HPE Application Security Center, WebInspect
No data available
 

Overview

 

Sample Customers

Neosecure, Acxiom, Skandinavisk Data Center A/S, Parkeon
HBO, AMEX, BMW Group, ING, Bosch, Austrian Airlines, Deutsche Bank, Henkel, Allianz, Bank of America, UBS, Orange, Siemens, Swiss Re, Vodafone
Find out what your peers are saying about Tricentis, Katalon Studio, OpenText and others in Regression Testing Tools. Updated: April 2025.
849,190 professionals have used our research since 2012.