Try our new research platform with insights from 80,000+ expert users

HCL AppScan vs SentinelOne Singularity Cloud Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

HCL AppScan
Average Rating
7.8
Reviews Sentiment
6.9
Number of Reviews
43
Ranking in other categories
Application Security Tools (14th), Static Application Security Testing (SAST) (10th), Dynamic Application Security Testing (DAST) (1st)
SentinelOne Singularity Clo...
Average Rating
8.8
Reviews Sentiment
7.8
Number of Reviews
109
Ranking in other categories
Vulnerability Management (6th), Cloud and Data Center Security (5th), Container Security (3rd), Cloud Workload Protection Platforms (CWPP) (4th), Cloud Security Posture Management (CSPM) (3rd), Cloud-Native Application Protection Platforms (CNAPP) (3rd), Compliance Management (2nd)
 

Mindshare comparison

HCL AppScan and SentinelOne Singularity Cloud Security aren’t in the same category and serve different purposes. HCL AppScan is designed for Application Security Tools and holds a mindshare of 2.6%, down 2.7% compared to last year.
SentinelOne Singularity Cloud Security, on the other hand, focuses on Cloud-Native Application Protection Platforms (CNAPP), holds 3.1% mindshare, up 1.2% since last year.
Application Security Tools
Cloud-Native Application Protection Platforms (CNAPP)
 

Featured Reviews

Rishi Anupam - PeerSpot reviewer
A stable and scalable scanning solution with good reporting feature
The solution is used for the vulnerabilities scan on the network side The reporting part is the most valuable feature. The penetration testing feature should be included. I have been using the solution for four years. It is a stable solution. I rate it seven out of ten. It is a scalable…
Andrew W - PeerSpot reviewer
Tells us about vulnerabilities as well as their impact and helps to focus on real issues
Looking at all the different pieces, it has got everything we need. Some of the pieces we do not even use. For example, we do not have Kubernetes Security. We are not running any K8 clusters, so it is good for us. Overall, we find the solution to be fantastic. There can be additional education components. This may not be truly fair to them because of what the product is going for, but it would be great to see additional education for compliance. It is not a criticism of the tool per se, but anything to help non-development resources understand some of the complexities of the cloud is always appreciated. Any additional educational resources are always helpful for security teams, especially those without a development background.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"You can easily find particular features and functions through the UI."
"The reporting part is the most valuable feature."
"It is easy it is to use. It is quick to find things, because of the code scanning tools. It's quite simple to use and it is very good the way it reports the findings."
"It comes with all of the templates that we need. For example, we are a company that is regulated by PCI. In order to be PCI compliant, we have a lot of checks and procedures to which we have to comply."
"The UI was very intuitive."
"The most valuable feature of HCL AppScan is scanning QR codes."
"This solution saves us time due to the low number of false positives detected."
"It highlights, with several grades of severity, the types of vulnerabilities, so we can focus on the most severe security vulnerabilities in the code."
"The offensive security feature is valuable because it publicly detects the offensive and vulnerable things present in our domain or applications. It checks any applications with public access. Some of the applications give public access to certain files or are present over a particular domain. It detects and lets us know with evidence. That is quite good. It is protecting our infrastructure quite well."
"PingSafe offers three key features: vulnerability management notifications, cloud configuration assistance, and security scanning."
"SentinelOne Singularity Cloud Security offers valuable features like runtime notifications. These alerts come to my account, ensuring that if any port or component within my infrastructure is opened or compromised, I am informed immediately. It highlights issues within minutes or even seconds."
"Our previous product took a lot of man hours to manage. Once we got Singularity Cloud Workload Security, it freed up our time to work on other tasks."
"The user-friendly dashboard offers both convenience and security by providing quick access to solutions and keeping us informed of potential threats."
"PingSafe can integrate all your cloud accounts and resources you create in the AWS account, We have set it up to scan the AWS transfer services, EC2, security groups, and GitHub."
"It is scalable, stable, and can detect any threat on a machine. It uses artificial intelligence and can lock down any virus."
"We use the infrastructure as code scanning, which is good."
 

Cons

"The solution often has a high number of false positives. It's an aspect they really need to improve upon."
"One thing which I think can be improved is the CI/CD Integration"
"The product has some technical limitations."
"AppScan is too complicated and should be made more user-friendly."
"The penetration testing feature should be included."
"The solution could improve by having a mobile version."
"The solution needs to improve in some areas. The tool needs to add more languages. It also needs to improve its speed."
"AppScan needs to improve its handling of false positives."
"The areas with room for improvement include the cost, which is higher compared to other security platforms. The dashboard can also be laggy."
"In some cases, the rules are strictly enforced but do not align with real-world use cases."
"We are getting reports only in a predefined form. I would like to have customized reports so that I can see how many issues are open or closed today or in two weeks."
"It took us a while to configure the software to work well in this type of environment, as the support documents were not always clear."
"The categorization of the results from the vulnerability assessment could be improved."
"here is a bit of a learning curve. However, you only need two to three days to identify options and get accustomed."
"The SentinelOne customer support needs improvement, as they are sometimes late in responding, which is critical in a production issue."
"The area of improvement is the cost, which is high compared to other traditional endpoint protections."
 

Pricing and Cost Advice

"The solution is cheap."
"HCL AppScan is expensive."
"With the features, that they offer, and the support, they offer, AppScan pricing is on a higher level."
"The price of HCL AppScan is okay, in my opinion. You just buy HCL AppScan and don't pay anything anymore, meaning it is just a one-time purchase."
"The solution is moderately priced."
"Our clients are willing to pay the extra money. It is expensive."
"The tool was expensive."
"The price is very expensive."
"It's not expensive. The product is in its initial growth stages and appears more competitive compared to others. It comes in different variants, and I believe the enterprise version costs around $55 per user per year. I would rate it a five, somewhere fairly moderate."
"SentinelOne Singularity Cloud Security is costly."
"The licensing is easy to understand and implement, with some flexibility to accommodate dynamic environments."
"PingSafe's pricing is good because it provides us with a solution."
"It is a little expensive. I would rate it a four out of ten for pricing."
"I am not involved in the pricing, but it is cost-effective."
"I understand that SentinelOne is a market leader, but the bill we received was astronomical."
"The pricing is somewhat high compared to other market tools."
report
Use our free recommendation engine to learn which Application Security Tools solutions are best for your needs.
848,253 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
18%
Financial Services Firm
14%
Government
11%
Manufacturing Company
9%
Computer Software Company
17%
Financial Services Firm
16%
Manufacturing Company
9%
Government
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about HCL AppScan?
The most valuable feature of HCL AppScan is its integration with the SDLC, particularly during the coding phase.
What needs improvement with HCL AppScan?
AppScan needs to improve its handling of false positives. It also requires enhancements in customer support, similar to what Veracode provides. Regularly scheduling calls with clients to discuss fe...
What is your primary use case for HCL AppScan?
The primary use case for AppScan is for security purposes. I compare AppScan with other tools such as Veracode. We use AppScan for vulnerability detection and auto-remediation of vulnerabilities wi...
What do you like most about PingSafe?
The dashboard gives me an overview of all the things happening in the product, making it one of the tool's best features.
What is your experience regarding pricing and costs for PingSafe?
It is cost-effective compared to other solutions in the market.
What needs improvement with PingSafe?
The documentation could be better. Besides improving the documentation, obtaining a professional or partner specializing in the implementation of SentinelOne Singularity Cloud Security is very impo...
 

Also Known As

IBM Security AppScan, Rational AppScan, AppScan
PingSafe
 

Overview

 

Sample Customers

Essex Technology Group Inc., Cisco, West Virginia University, APIS IT
Information Not Available
Find out what your peers are saying about Sonar, Veracode, Checkmarx and others in Application Security Tools. Updated: April 2025.
848,253 professionals have used our research since 2012.