Project manager at Primus Software Corporation
Provides detailed reports that improve code maintainability while needing better coverage reports and technical support
Pros and Cons
- "Tenable.io Web Application Scanning provides a detailed report, identifying functions that are complex and need to be more maintainable and readable."
- "The technical support needs improvement. Currently, it takes time, which might be due to the free version, but providing some level of support could encourage future purchase decisions."
What is our primary use case?
I use Tenable.io Web Application Scanning to scan our code base once a month to enhance our security operations.
What is most valuable?
Tenable.io Web Application Scanning provides a detailed report, identifying functions that are complex and need to be more maintainable and readable. It offers features such as generating an executive summary and detailed reports highlighting issues in specific lines of the code. However, it does not provide coverage reports in the free version, which is a limitation.
What needs improvement?
Improvements could include providing coverage reports in the free version and features related to security reports. Also, enhancing technical support would be beneficial as there is room for improvement.
For how long have I used the solution?
I have been using Tenable.io Web Application Scanning for about five to six months.
Buyer's Guide
Application Security Tools
March 2025

Find out what your peers are saying about Tenable, Invicti, PortSwigger and others in Application Security Tools. Updated: March 2025.
842,592 professionals have used our research since 2012.
What was my experience with deployment of the solution?
For the free version, the initial setup takes around half an hour, and then it becomes very useful.
What do I think about the stability of the solution?
In terms of stability, I would rate it eight out of ten.
What do I think about the scalability of the solution?
Regarding scalability, I would rate it nine out of ten.
How are customer service and support?
The technical support needs improvement. Currently, it takes time, which might be due to the free version, but providing some level of support could encourage future purchase decisions.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
I have used SonarQube and am currently checking Snyk and ZAP tools.
How was the initial setup?
The setup for the free version takes some time initially, approximately half an hour.
What about the implementation team?
A colleague of mine installed Tenable.io Web Application Scanning, which can be managed by one person including installation and configuration.
What's my experience with pricing, setup cost, and licensing?
Pricing and cost considerations are important because there are many scanning software options in the market like Snyk. Any purchase decision would depend on favorable pricing compared to others.
Which other solutions did I evaluate?
We've evaluated solutions like Snyk and ZAP tools.
What other advice do I have?
I would recommend Tenable.io Web Application Scanning as it provides us with good reports, which help improve our code base, despite the lack of financial benefits. Overall, I would rate it seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Last updated: Mar 24, 2025
Flag as inappropriate

Buyer's Guide
Download our free Application Security Tools Report and find out what your peers are saying about Tenable, Invicti, PortSwigger, and more!
Updated: March 2025
Product Categories
Application Security ToolsPopular Comparisons
SonarQube Server (formerly SonarQube)
Checkmarx One
Fortify on Demand
CrowdStrike Falcon Cloud Security
Sonatype Lifecycle
PortSwigger Burp Suite Professional
Qualys Web Application Scanning
Fortify Application Defender
Sonatype Repository Firewall
Buyer's Guide
Download our free Application Security Tools Report and find out what your peers are saying about Tenable, Invicti, PortSwigger, and more!
Quick Links
Learn More: Questions:
- If you had to both encrypt and compress data during transmission, which would you do first and why?
- When evaluating Application Security, what aspect do you think is the most important to look for?
- What are the Top 5 cybersecurity trends in 2022?
- What are the threats associated with using ‘bogus’ cybersecurity tools?
- We're evaluating Tripwire, what else should we consider?
- Which application security solutions include both vulnerability scans and quality checks?
- Is SonarQube the best tool for static analysis?
- Why Do I Need Application Security Software?
- Which Email Security enterprise solution would you choose: Cisco Secure Email vs Forcepoint Email Security vs Barracuda Email Security Gateway?
- SAST vs. DAST: Which is better for application security testing?