No more typing reviews! Try our Samantha, our new voice AI agent.

Akamai API Security vs Invicti comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 4, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Akamai API Security
Ranking in API Security
1st
Average Rating
7.8
Reviews Sentiment
6.5
Number of Reviews
12
Ranking in other categories
No ranking in other categories
Invicti
Ranking in API Security
9th
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
31
Ranking in other categories
Static Application Security Testing (SAST) (10th), Container Security (24th), Software Composition Analysis (SCA) (8th), Dynamic Application Security Testing (DAST) (4th), Application Security Posture Management (ASPM) (5th)
 

Mindshare comparison

As of May 2026, in the API Security category, the mindshare of Akamai API Security is 7.4%, down from 19.2% compared to the previous year. The mindshare of Invicti is 3.6%, up from 2.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
API Security Mindshare Distribution
ProductMindshare (%)
Akamai API Security7.4%
Invicti3.6%
Other89.0%
API Security
 

Featured Reviews

Jibin Thomas - PeerSpot reviewer
Cloud Engineer at HCLtech
Stronger API defenses have reduced suspicious traffic and now protect sensitive data confidently
The standout features include automated API discovery, which helps us find even undocumented endpoints. The real-time behavioral analysis is valuable, as Akamai API Security detects abnormal patterns quickly. I also value schema validation to block improper requests and their bot management integration, which keeps malicious automation at bay.It has made a significant difference in reducing risk. We have had fewer incidents of API abuse, such as scraping or suspicious traffic spikes. Our security posture is stronger because we have better visibility into all our APIs, even ones we did not initially know were exposed. Ultimately, it has given us confidence that our data and services are well-protected.
Valavan Sivgalingam - PeerSpot reviewer
Senior Manager, Security Engineering at ESS
Dynamic testing regularly identifies web vulnerabilities and has strong false positive confirmations
It has good false positive confirmations, confirmed issues identification, and proof of exploit-related features as part of it. We use Invicti for these things in our portfolios. The solution includes Proof-Based Scanning technology. Invicti is part of our SSDLC portfolio, and DAST dynamic testing is very important for our web applications and portfolios. For both the API endpoints and web applications, we do regular testing on a monthly basis for all our releases. Invicti does a good job. The only concern is on the performance side, but other than that, we find it really helpful in identifying web vulnerabilities. A full scan takes more time based on your website and other factors, but for us, it takes more than two to three days. The scan performance can be improved upon. When we check with them, they discuss proof-based scanning and related aspects. However, there could be intermittent results that could help us.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature of this solution is its integration with API gateways, WAP and with part of their SDLC."
"Akamai API Security has impacted my organization positively because when a user tries to access our servers from all over the world, the traffic first hits the DNS security or Akamai edge firewall before reaching our perimeter or infrastructure."
"The API part is effective."
"Akamai API Security has made a positive difference for our organization by improving our security posture and saving our team time, as we can actually prioritize tasks unless there are some false positives, but it is definitely saving a lot of time."
"API throttling is the most valuable feature of Akamai API Security."
"If I had to say something positive about the product that brings me the biggest benefit, I would say visibility."
"The support from Akamai API Security is good, the employment and support are of excellent quality."
"Akamai API Security has positively impacted my organization by greatly improving my visibility into API exposure and risk posture, which has translated into concrete benefits as I can now proactively identify risky endpoints and apply protection policies, improving overall security and reducing response times to incidents."
"This tool is really fast and the information that they provide on vulnerabilities is pretty good."
"I like that it's stable and technical support is great."
"Crawling feature: Netsparker has very detail crawling steps and mechanisms. This feature expands the attack surface."
"High level of accuracy and quick scanning."
"Invicti's best feature is the ability to identify vulnerabilities and manually verify them."
"The most attractive feature was the reporting review tool. The reporting review was very impressive and produced very fruitful reports."
"Technical support is very professional, 10/10."
"The best features of Invicti are its ability to confirm access vulnerabilities, SSL injection vulnerabilities, and its connectors to other security tools."
 

Cons

"However, there is one drawback regarding technical support. Akamai API Security makes back-end changes because a SaaS solution is being used; sometimes they inform about changes, and sometimes they do not, which impacts clients as a P1 or P2 incident."
"I believe Akamai API Security could be improved specifically in the integrations so that they can be executed more effectively with platforms such as a SIEM or SOAR, which would help me automate workflows for incident response."
"The challenge I found was with contextualization and how analytics are generated."
"One area where I feel it can be improved is in simplifying policy tuning and configuration."
"The main challenges we had with Akamai API Security were how to set it up on the AWS cloud environment and how to access this portal."
"I see some areas for improvement in Akamai API Security because the adoption is not easy since it takes time to learn and configure."
"More features would be beneficial."
"I think it would be good if they can integrate more with API gateways as this is currently limited."
"The scanner itself should be improved because it is a little bit slow."
"It would be better for listing and attacking Java-based web applications to exploit vulnerabilities."
"Invicti's reporting capabilities need enhancement. We need enterprise-level information instead of repo-level details. Unlike Appiro, Invicti does not provide portfolio-level insights into vulnerability remediation over time."
"The proxy review, the use report views, the current use tool and the subset requests need some improvement. It was hard to understand how to use them."
"Reporting should be improved. The reporting options should be made better for end-users."
"Currently, there is nothing I would like to improve."
"The solution's false positive analysis and vulnerability analysis libraries could be improved."
"Invicti's reporting capabilities need enhancement."
 

Pricing and Cost Advice

"We have a limit to the number of APIs we can use inside a bundle, and we have to pay extra if we exceed that limit."
"The solution is very expensive. It comes with a yearly subscription. We were paying 6000 dollars yearly for unlimited scans. We have three licenses; basic, business, and ultimate. We need ultimate because it has unlimited scan numbers."
"We never had any issues with the licensing; the price was within our assigned limits."
"Netsparker is one of the costliest products in the market. It would help if they could allow us to scan multiple URLs on the same license."
"The price should be 20% lower"
"It is competitive in the security market."
"We are using an NFR license and I do not know the exact price of the NFR license. I think 20 FQDN for three years would cost around 35,000 US Dollars."
"Invicti is best suited for large enterprises. I don't think small and medium-sized businesses can afford it. Maintenance costs aren't that great."
"I think that price it too high, like other Security applications such as Acunetix, WebInspect, and so on."
report
Use our free recommendation engine to learn which API Security solutions are best for your needs.
893,244 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
21%
Computer Software Company
12%
Manufacturing Company
8%
Retailer
5%
Financial Services Firm
16%
Manufacturing Company
9%
Computer Software Company
7%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business5
Large Enterprise9
By reviewers
Company SizeCount
Small Business14
Midsize Enterprise4
Large Enterprise13
 

Questions from the Community

What needs improvement with Akamai API Security?
One thing that really surprised me was how effective the behavioral-based detection is in identifying the anomalies that traditional rule-based systems might miss. It gives much better visibility i...
What is your primary use case for Akamai API Security?
Akamai API Security's main use case in my environment is to protect critical APIs that are exposed to the internet, especially for banking and financial applications. I primarily use it to secure A...
What is your experience regarding pricing and costs for Netsparker Web Application Security Scanner?
The setup cost is pretty competitive. For example, if you want to talk about the SAST license, it comes to about $150 or sometimes less than $100, depending on the conversion or the number of licen...
What needs improvement with Invicti?
At this time, there is nothing that comes to mind. However, most of the products in the market are pretty much neck-to-neck competitors. Speaking about it, there are a couple of factors which they ...
What is your primary use case for Invicti?
I have worked on a couple of products, specifically in web application security. I have worked on Invicti, and with respect to PAM, I have worked with BeyondTrust. I have not worked specifically fo...
 

Also Known As

Noname Security
Netsparker
 

Overview

 

Sample Customers

Information Not Available
Samsung, The Walt Disney Company, T-Systems, ING Bank
Find out what your peers are saying about Akamai API Security vs. Invicti and other solutions. Updated: April 2026.
893,244 professionals have used our research since 2012.