Try our new research platform with insights from 80,000+ expert users

Checkmarx One vs Ixia BreakingPoint comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 8, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Checkmarx One
Ranking in Static Application Security Testing (SAST)
3rd
Average Rating
7.6
Reviews Sentiment
6.9
Number of Reviews
71
Ranking in other categories
Application Security Tools (3rd), Vulnerability Management (24th), Static Code Analysis (3rd), API Security (5th), DevSecOps (4th), Risk-Based Vulnerability Management (9th)
Ixia BreakingPoint
Ranking in Static Application Security Testing (SAST)
35th
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
8
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of June 2025, in the Static Application Security Testing (SAST) category, the mindshare of Checkmarx One is 9.5%, down from 12.8% compared to the previous year. The mindshare of Ixia BreakingPoint is 0.2%, up from 0.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Static Application Security Testing (SAST)
 

Featured Reviews

Syed Hasan - PeerSpot reviewer
Partner experiences excellent technical support and seamless initial setup
In my opinion, if we are able to extract or show the report, and because everything is going towards agent tech and GenAI, it would be beneficial if it could get integrated with our code base and do the fix automatically. It could suggest how the code base is written and automatically populate the source code with three different solution options to choose from. This would be really helpful.
Sai Prasad - PeerSpot reviewer
Works better for testing traffic, mix profile, and enrollment scenarios than other solutions
Once, when I raised a ticket regarding a hardware or software issue, the solution's support team visited our company to discuss and find out ways to solve the problem. Sometimes, they asked us to send several photos from the back and front end to identify the issue. It was time-consuming as we were occupied with some other testing simultaneously. Instead, it would have been great if they could have visited our company and rectified the problem.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature is that it actually identifies the different criteria you can set to meet whatever standards you're trying to get your system accredited for."
"It can integrate very well with DAST solutions. So both of them are combined into an integrated solution for customers running application security."
"The UI is user-friendly."
"The most valuable features of Checkmarx are its integration with multiple SCM solutions and CICD tools, its ability to scale according to user licenses, and the quick scanning process."
"Overall, the ability to find vulnerabilities in the code is better than the tool that we were using before."
"The administration in Checkmarx is very good."
"The solution has good performance, it is able to compute in 10 to 15 minutes."
"Checkmarx offers many valuable features, including Static Application Security Testing (SAST), Software Composition Analysis (SCA), Infrastructure as Code (IAC), Supply Chain Security, and API Security."
"There is a virtual version of the product which is scaled to 100s of virtual testing blades."
"We use Ixia BreakingPoint for Layer 7 traffic generation. That's what we like."
"The DDoS testing module is useful and quick to use."
"I like that we can test cloud applications."
"The solution has many protocols and options, making it very flexible."
"It is a scalable solution."
"The most valuable feature of Ixia BreakingPoint is the ransomware and malware database for simulated attacks."
 

Cons

"It provides us with quite a handful of false positive issues. If Checkmarx could reduce this number, it would be a great tool to use."
"Micro-services need to be included in the next release."
"The solution's user interface could be improved because it seems outdated."
"We would like to be able to run scans from our local system, rather than having to always connect to the product server, which is a longer process."
"The lack of ability to review compiled source code. It would then be able to compete with other scanning tools, such as Veracode."
"This product requires you to create your own rulesets. You have to do a lot of customization."
"Some of the descriptions were found to be missing or were not as elaborate as compared to other descriptions. Although, they could be found across various standard sources but it would save a lot of time for developers, if this was fixed."
"If it is a very large code base then we have a problem where we cannot scan it."
"The production traffic simulations are not realistic enough for some types of DDoS attacks."
"The integration could improve in Ixia BreakingPoint."
"They should improve UI mode packages for the users."
"I would appreciate some preconfigured network neighborhoods, which are predefined settings for testing networks."
"The quality of the traffic generation could be improved with Ixia BreakingPoint, i.e. to get closer to being accurate in what a real user will do."
"The solution originally was hard to configure; I'm not sure if they've updated this to make it simpler, but if not, it's something that could be streamlined."
"The price could be better."
 

Pricing and Cost Advice

"This solution is expensive. The customized package allows you to buy additional users at any time."
"Its price is fair. It is in or around the right spot. Ultimately, if the price is wrong, customers won't commit, but they do tend to commit. It is neither too cheap nor too expensive."
"We have a subscription license that is on a yearly basis, and it's a pretty competitive solution."
"​Checkmarx is not a cheap scanning tool, but none of the security tools are cheap. Checkmarx is a powerful scanning tool, and it’s essential to have one of these products."
"The pricing is competitive and provides a lower TCO (total cost of ownership) for achieving application security."
"I believe pricing is better compared to other commercial tools."
"I would rate the solution’s pricing an eight out of ten. The tool’s pricing is higher than others and it is for the license alone."
"For around 250 users or committers, the cost is approximately $500,000."
"The price is high. We pay for the license monthly."
"The solution is expensive."
"There is no differentiation in licenses for Breaking Point. For one license, you will get all the features. There is no complexity in that."
"or us, the pricing is somewhere around $12,000 a year. I'm unsure as to what new licenses now cost."
"The price of the solution is expensive."
"We have a one year subscription license for $25,000 US Dollars."
report
Use our free recommendation engine to learn which Static Application Security Testing (SAST) solutions are best for your needs.
859,129 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
21%
Computer Software Company
14%
Manufacturing Company
10%
Government
6%
Computer Software Company
17%
Manufacturing Company
14%
Financial Services Firm
11%
Comms Service Provider
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What alternatives are there for Fortify WebInspect and Fortify SCA?
I would like to recommend Checkmarx. With Checkmarx, you are able to have an all in one solution for SAST and SCA as well. Veracode is only a cloud solution. Hope this helps.
What do you like most about Checkmarx?
Compared to the solutions we used previously, Checkmarx has reduced our workload by almost 75%.
What is your experience regarding pricing and costs for Checkmarx?
The pricing is relatively expensive due to the product's quality and performance, but it is worth it.
Ask a question
Earn 20 points
 

Overview

 

Sample Customers

YIT, Salesforce, Coca-Cola, SAP, U.S. Army, Liveperson, Playtech Case Study: Liveperson Implements Innovative Secure SDLC
Corsa Technology
Find out what your peers are saying about Checkmarx One vs. Ixia BreakingPoint and other solutions. Updated: June 2025.
859,129 professionals have used our research since 2012.