We performed a comparison between HCL AppScan and Rapid7 InsightAppSec based on real PeerSpot user reviews.
Find out in this report how the two Dynamic Application Security Testing (DAST) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."There's extensive functionality with custom rules and a custom knowledge base."
"The solution offers services in a few specific development languages."
"The most valuable feature of HCL AppScan is scanning QR codes."
"It is a stable solution...It is a scalable solution...The initial setup or installation of HCL AppScan is easy."
"We use it as a security testing application."
"This solution saves us time due to the low number of false positives detected."
"It highlights, with several grades of severity, the types of vulnerabilities, so we can focus on the most severe security vulnerabilities in the code."
"The most valuable feature of the solution is Postman."
"It's very easy to use and user-friendly. It does the job."
"It is very convenient to get reports from the tool, which offers high-level environmental statistics."
"You have various attack modules, and you also have the Attack Replay feature for the attack sequence. You can reproduce an attack and see it. That is a very good feature I noticed in this solution. It helps developers as well."
"We have seen measurable decrease in the mean time to respond to threats by 20 percent."
"The templates feature is very easy. You just choose the kind of attack you want on your web application, and you run it against that template and receive a report. It's great."
"The solution is stable."
"The initial setup for us was easy enough. We didn't face too many issues. Deployment took maybe 30 minutes. It's quite quick and doesn't cause too much trouble at the outset."
"It is a very robust solution."
"I would like to see the roadmap for this product. We are still waiting to see it as we have only so many resources."
"The product has some technical limitations."
"One thing which I think can be improved is the CI/CD Integration"
"HCL AppScan needs to improve security."
"Scans become slow on large websites."
"Improving usability could enhance the overall experience with AppScan. It would be beneficial to make the solution more user-friendly, ensuring that everyone can easily navigate and utilize its features."
"The dashboard, for AppScan or the Fortified fast tool, which we use needs to be improved."
"The solution often has a high number of false positives. It's an aspect they really need to improve upon."
"We get a lot of false positives during the tests."
"We'd like to see integrations with WAF solutions."
"The reporting is definitely an aspect of the solution that's in need of some work. We found that we'd try to use widgets, but often getting them to work for us wasn't very clear. They need to be more user friendly or offer better instructions."
"In the future, if they can have integration with a lot of ticketing systems then it would be amazing."
"I would like more details of what the product can do."
"Rapid7 InsightAppSec needs improvement in detecting phishing pages."
"The only concern I have with Rapid7 is that it does not provide enough information about vulnerabilities within AppSec."
"The interface should be a little bit easier to manage. Sometimes, the logic that they use is kind of strange. They need to work a little bit more on their interface to make it more understandable. The interface is the only problem. I'm using Rapid7, which is very intuitive. There are other applications available in the market with a better interface. They can include more techniques or options to test different types of security because the templates are limited. It would be great to see them follow the MITRE ATT&CK framework or what is there in tools like Veracode and Synopsys."
HCL AppScan is ranked 1st in Dynamic Application Security Testing (DAST) with 41 reviews while Rapid7 InsightAppSec is ranked 3rd in Dynamic Application Security Testing (DAST) with 12 reviews. HCL AppScan is rated 7.8, while Rapid7 InsightAppSec is rated 8.6. The top reviewer of HCL AppScan writes " A stable and scalable product useful for application security scanning". On the other hand, the top reviewer of Rapid7 InsightAppSec writes "A highly scalable and robust product that enables users to automate scans". HCL AppScan is most compared with SonarQube, Veracode, Acunetix, PortSwigger Burp Suite Professional and OWASP Zap, whereas Rapid7 InsightAppSec is most compared with Rapid7 AppSpider, OWASP Zap, PortSwigger Burp Suite Professional, Fortify WebInspect and Qualys Web Application Scanning. See our HCL AppScan vs. Rapid7 InsightAppSec report.
See our list of best Dynamic Application Security Testing (DAST) vendors.
We monitor all Dynamic Application Security Testing (DAST) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.