Try our new research platform with insights from 80,000+ expert users

Checkmarx One vs CucumberStudio comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Checkmarx One
Ranking in Dynamic Application Security Testing (DAST)
4th
Average Rating
7.6
Reviews Sentiment
6.9
Number of Reviews
71
Ranking in other categories
Application Security Tools (3rd), Static Application Security Testing (SAST) (3rd), Vulnerability Management (23rd), Container Security (22nd), Static Code Analysis (3rd), API Security (4th), DevSecOps (4th), Risk-Based Vulnerability Management (9th)
CucumberStudio
Ranking in Dynamic Application Security Testing (DAST)
8th
Average Rating
8.0
Reviews Sentiment
7.1
Number of Reviews
12
Ranking in other categories
Rapid Application Development Software (26th)
 

Mindshare comparison

As of August 2025, in the Dynamic Application Security Testing (DAST) category, the mindshare of Checkmarx One is 13.2%, down from 18.5% compared to the previous year. The mindshare of CucumberStudio is 0.7%, up from 0.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Dynamic Application Security Testing (DAST)
 

Featured Reviews

Syed Hasan - PeerSpot reviewer
Partner experiences excellent technical support and seamless initial setup
In my opinion, if we are able to extract or show the report, and because everything is going towards agent tech and GenAI, it would be beneficial if it could get integrated with our code base and do the fix automatically. It could suggest how the code base is written and automatically populate the source code with three different solution options to choose from. This would be really helpful.
Walter Wirch - PeerSpot reviewer
Facilitates integration of test scenarios while needing modernization of components
CucumberStudio is primarily used for designing test scenarios and automating testing. We have implemented it in conjunction with our own routines for integration into our infrastructure CucumberStudio aligns with our strategy for data-driven testing. It supports our product owners in designing…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The SAST component was absolutely 100% stable."
"The solution allows us to create custom rules for code checks."
"The setup is very easy. There is a lot of information in the documents which makes the install not difficult at all."
"The main thing we find valuable about Checkmarx is the ease of use. It's easy to initiate scans and triage defects."
"The user interface is modern and nice to use."
"It shows in-depth code of where actual vulnerabilities are."
"The report function is the solution's greatest asset."
"It can integrate very well with DAST solutions. So both of them are combined into an integrated solution for customers running application security."
"The most valuable feature of CucumberStudio is its use of action words, which allows me to avoid writing test cases from scratch for the most common scenarios."
"CucumberStudio has a very user-friendly interface."
"CucumberStudio aligns with our strategy for data-driven testing."
"CucumberStudio aligns with our strategy for data-driven testing."
"The solution is stable."
"The best thing is that a person without knowledge about the program can easily understand what happened in our testing process."
"The data table that helps in converting a single script to multiple test cases is very helpful."
"The URL is very useful, and it has a very good UI for deploying information of the scenarios created."
 

Cons

"I really would like to integrate it as a service along with the SAP HANA Cloud Platform. It will then be easy to use it directly as a service."
"Checkmarx could improve the speed of the scans."
"The cost per user is high and should be reduced."
"We would like to be able to run scans from our local system, rather than having to always connect to the product server, which is a longer process."
"I would like to see the tool’s pricing improved."
"There is nothing particular that I don't like in this solution. It can have more integrations, but the integrations that we would like are in the roadmap anyway, and they just need to deliver the roadmap. What I like about the roadmap is that it is going where it needs to go. If I were to look at the roadmap, there is nothing that is jumping out there that says to me, "Yeah. I'd like something else on the roadmap." What they're looking to deliver is what I would expect and forecast them to deliver."
"If it is a very large code base then we have a problem where we cannot scan it."
"The plugins for the development environment have room for improvements such as for Android Studio and X code."
"A key area for improvement is to revamp outdated components such as HipTest publisher."
"Another kind of deployment might be useful, perhaps an option to install the tool in a local deployment."
"I think it would be better if we could also do the reporting with CucumberStudio."
"The reporting needs to be improved."
"CucumberStudio's API integration could be improved both in terms of reliability and design."
"I would like to see better customer support."
"A key area for improvement is to revamp outdated components such as HipTest publisher."
 

Pricing and Cost Advice

"It's relatively expensive."
"Be cautious of the one-year subscription date. Once it expires, your price will go up."
"Checkmarx is comparatively costlier than other products, which is why some of the customers feel reluctant to go for it, though performance-wise, Checkmarx can compete with other products."
"It is not expensive, but sometimes, their pricing model or licensing model is not very clear. There are similar variables, such as projects or developers, and sometimes, it is a little bit confusing."
"The solution is costly."
"Its price is fair. It is in or around the right spot. Ultimately, if the price is wrong, customers won't commit, but they do tend to commit. It is neither too cheap nor too expensive."
"I would rate the solution’s pricing an eight out of ten. The tool’s pricing is higher than others and it is for the license alone."
"This solution is expensive. The customized package allows you to buy additional users at any time."
Information not available
report
Use our free recommendation engine to learn which Dynamic Application Security Testing (DAST) solutions are best for your needs.
865,384 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
20%
Computer Software Company
13%
Manufacturing Company
10%
Government
6%
Comms Service Provider
22%
Manufacturing Company
18%
Financial Services Firm
10%
Transportation Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What alternatives are there for Fortify WebInspect and Fortify SCA?
I would like to recommend Checkmarx. With Checkmarx, you are able to have an all in one solution for SAST and SCA as well. Veracode is only a cloud solution. Hope this helps.
What do you like most about Checkmarx?
Compared to the solutions we used previously, Checkmarx has reduced our workload by almost 75%.
What is your experience regarding pricing and costs for Checkmarx?
The pricing is relatively expensive due to the product's quality and performance, but it is worth it.
What needs improvement with Hiptest?
CucumberStudio's API integration could be improved both in terms of reliability and design. The API requires data to be sent in a specific format, which takes time to build. Additionally, the repor...
What is your primary use case for Hiptest?
I use CucumberStudio as a test case repository. All of our test cases are stored there. It is also part of our test planning process. For every sprint, we plan the test cases in CucumberStudio and ...
What advice do you have for others considering Hiptest?
For teams following a BDD style software development approach, CucumberStudio is a great collaborative tool that covers all the basic requirements of a test management tool. I would rate CucumberSt...
 

Also Known As

No data available
Hiptest
 

Overview

 

Sample Customers

YIT, Salesforce, Coca-Cola, SAP, U.S. Army, Liveperson, Playtech Case Study: Liveperson Implements Innovative Secure SDLC
Cisco, Cardinal Health, Intuit, Smartbox, Accenture, Deliveroo
Find out what your peers are saying about HCLSoftware , Rapid7, OpenText and others in Dynamic Application Security Testing (DAST). Updated: July 2025.
865,384 professionals have used our research since 2012.