


Find out what your peers are saying about SonarSource Sàrl, Checkmarx, Veracode and others in Application Security Tools.
| Product | Mindshare (%) |
|---|---|
| Checkmarx One | 8.8% |
| SonarQube | 13.6% |
| Snyk | 5.1% |
| Other | 72.5% |
| Product | Mindshare (%) |
|---|---|
| NAVEX One | 1.4% |
| RSA Archer | 5.9% |
| MetricStream | 3.2% |
| Other | 89.5% |
| Product | Mindshare (%) |
|---|---|
| Veracode | 4.4% |
| SonarQube | 13.6% |
| Checkmarx One | 8.8% |
| Other | 73.2% |

| Company Size | Count |
|---|---|
| Small Business | 32 |
| Midsize Enterprise | 9 |
| Large Enterprise | 46 |
| Company Size | Count |
|---|---|
| Small Business | 69 |
| Midsize Enterprise | 45 |
| Large Enterprise | 115 |
Checkmarx One delivers robust security through seamless integration with SCM and CI/CD tools, ensuring reliable SAST and SCA. Primarily used by organizations for vulnerability detection, it supports cloud and on-premises deployment to enhance secure coding practices.
Checkmarx One provides organizations with comprehensive tools for secure software development, integrating effectively with CI/CD pipelines to scan thousands of applications. Its capabilities extend to identifying vulnerabilities in both code bases and third-party software. Enhancing workflow by supporting SCM solutions, it assists in maintaining secure coding standards and compliance. While excelling in various areas, it requires improvements in scan speed, reduction of false positives, and broader platform integration, particularly for COBOL and Swift. Its pricing model is noted as high, and demand exists for better tutorials and documentation.
What are the key features of Checkmarx One?Industries implement Checkmarx One for secure coding compliance and vulnerability management across varying environments, choosing between cloud and on-premises deployment based on requirements. Its extensive language support and integration with DevSecOps practices make it a popular choice for organizations aiming to enhance software security.
NAVEX One is a comprehensive compliance management platform designed to address corporate governance, risk management, and compliance (GRC) needs efficiently.
It provides a centralized environment for organizations to streamline processes, mitigate risks, and maintain regulatory compliance. With tools that simplify workflows, NAVEX One enhances transparency and eases the burden of compliance management. Its versatility makes it suitable for a wide range of industries, enabling businesses to optimize their GRC strategies effectively.
What are the key features of NAVEX One?Industries such as finance, healthcare, and manufacturing have successfully implemented NAVEX One to cater to sector-specific compliance needs. Its adaptable framework allows for tailored deployment strategies, ensuring that each industry can leverage its full potential in addressing their GRC requirements.
Veracode is a leading provider of application security solutions, offering tools to identify, mitigate, and prevent vulnerabilities across the software development lifecycle. Its cloud-based platform integrates security into DevOps workflows, helping organizations ensure that their code remains secure and compliant with industry standards.
Veracode supports multiple application security testing types, including static analysis (SAST), dynamic analysis (DAST), software composition analysis (SCA), and manual penetration testing. These tools are designed to help developers detect vulnerabilities early in development while maintaining speed in deployment. Veracode also emphasizes scalability, offering features for enterprises that manage a large number of applications across different teams. Its robust reporting and analytics capabilities allow organizations to continuously monitor their security posture and track progress toward remediation.
What are the key features of Veracode?
What benefits should users consider in Veracode reviews?
Veracode is widely adopted in industries like finance, healthcare, and government, where compliance and security are critical. It helps these organizations maintain strict security standards while enabling rapid development through its integration with Agile and DevOps methodologies.
Veracode helps businesses secure their applications efficiently, ensuring they can deliver safe and compliant software at scale.