Try our new research platform with insights from 80,000+ expert users

Checkmarx One vs NinjaOne comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Zafran Security
Sponsored
Ranking in Vulnerability Management
18th
Average Rating
9.4
Reviews Sentiment
8.2
Number of Reviews
5
Ranking in other categories
Continuous Threat Exposure Management (CTEM) (2nd)
Checkmarx One
Ranking in Vulnerability Management
24th
Average Rating
7.6
Reviews Sentiment
6.9
Number of Reviews
71
Ranking in other categories
Application Security Tools (3rd), Static Application Security Testing (SAST) (3rd), Static Code Analysis (3rd), API Security (5th), DevSecOps (5th), Risk-Based Vulnerability Management (9th)
NinjaOne
Ranking in Vulnerability Management
26th
Average Rating
8.2
Reviews Sentiment
7.4
Number of Reviews
18
Ranking in other categories
Network Monitoring Software (32nd), Server Monitoring (8th), IT Service Management (ITSM) (8th), Remote Access (20th), Mobile Device Management (MDM) (6th), IT Alerting and Incident Management (11th), Remote Monitoring and Management (RMM) (2nd), Patch Management (9th), MSP Backup (3rd), Unified Endpoint Management (UEM) (9th)
 

Mindshare comparison

As of July 2025, in the Vulnerability Management category, the mindshare of Zafran Security is 0.8%, up from 0.0% compared to the previous year. The mindshare of Checkmarx One is 0.8%, up from 0.4% compared to the previous year. The mindshare of NinjaOne is 0.6%, up from 0.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Vulnerability Management
 

Featured Reviews

Israel Cavazos Landini - PeerSpot reviewer
Weekly insights and risk analysis facilitate informed security decisions
I appreciate the weekly insights Zafran provides, which include critical topics for networks and IT security, allowing us to evaluate which insights apply to our environment. The organization score feature is valuable to keep the leadership team updated on how our infrastructure fares security-wise. The applicable risk level versus base risk level feature is beneficial because prior to Zafran, we only used the base risk level, but now understand that risk depends on the asset itself. Zafran is an excellent tool.
Syed Hasan - PeerSpot reviewer
Partner experiences excellent technical support and seamless initial setup
In my opinion, if we are able to extract or show the report, and because everything is going towards agent tech and GenAI, it would be beneficial if it could get integrated with our code base and do the fix automatically. It could suggest how the code base is written and automatically populate the source code with three different solution options to choose from. This would be really helpful.
Jörg Köhler - PeerSpot reviewer
Enhances remote access and integration with third-party tools
I use NinjaOne for managing smaller clients, specifically their devices and software, for small to medium businesses. I provide remote management services through NinjaOne. It allows clients to use NinjaOne for remote access to their computers for home office purposes. This feature is highly…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Overall, we have seen about eighty-seven percent reduction of the number of vulnerabilities that require urgency to remediate, specifically the number of criticals."
"Zafran is an excellent tool."
"We are able to see the real risk of a vulnerability on our environment with our security tools."
"Zafran has become an indispensable tool in our cybersecurity arsenal."
"We saw benefits from Zafran Security almost immediately after deploying it."
"The most valuable feature is the application tracking reporting."
"Vulnerability details is valuable."
"The identification of verification-related security vulnerabilities is really important and one of the key things. It also identifies vulnerabilities for any kind of third-party tool coming into the system or any third-party tools that you are using, which is very useful for avoiding random hacking."
"It has all the features we need."
"Compared to the solutions we used previously, Checkmarx has reduced our workload by almost 75%."
"The tool's valuable features include integrating GPT and Copilot. Additionally, the UI web representation is very user-friendly, making navigation easy. GPT has made several improvements to my security code."
"Helps us check vulnerabilities in our SAP Fiori application."
"The most valuable features of Checkmarx are difficult to pinpoint because of the way the functionalities and the features are intertwined, it's difficult to say which part of them I prefer most. You initiate the scan, you have a scan, you have the review set, and reporting, they all work together as one whole process. It's not like accounting software, where you have the different features, et cetera."
"The most relevant feature is the monitoring, which provides built-in tools for sending commands."
"The solution's most valuable feature is related to its remote access...I know that NinjaOne's technical support is good."
"The most valuable features of NinjaOne include remote desktop management, support and assistive tools, and screen sharing."
"The policies are probably the most valuable features. They're similar in function to Microsoft group policies where we can have it monitor certain things or push out software on a schedule. I would rate the policies eight out of 10. They're robust, I could monitor most of the things that Windows Performance Monitoring keeps tabs on."
"A significant feature of NinjaOne is its remote access capability, which is essential for my clients’ home office usage."
"The installation is easy, it only took two minutes."
"NinjaOne has a feature where we can create custom scripts that we can run on devices remotely."
"The tool's most valuable feature is third-party application updates."
 

Cons

"The dashboarding and reporting functionality of Zafran Security is an area that definitely could use some improvements."
"Initially, we were somewhat concerned about the scalability of Zafran due to our large asset count and the substantial amount of information we needed to process."
"I think the ability to have some enhanced reporting capabilities is something they can improve on, as they have good reports but we have asked for some specific reporting enhancements."
"Its pricing model can be improved. Sometimes, it is a little complex to understand its pricing model."
"Checkmarx has a slightly difficult compilation with the CI/CD pipeline."
"Some of the descriptions were found to be missing or were not as elaborate as compared to other descriptions. Although, they could be found across various standard sources but it would save a lot of time for developers, if this was fixed."
"We have received some feedback from our customers who are receiving a large number of false positives."
"The Dynamic Application Security Testing (DAST) feature should be better."
"They can support the remaining languages that are currently not supported. They can also create a different model that can identify zero-day attacks. They can work on different patterns to identify and detect zero-day vulnerability attacks."
"You can't use it in the continuous delivery pipeline because the scanning takes too much time."
"When we first ran it on a big project, there wasn't enough memory on the computer. It originally ran with eight gigabytes, and now it runs with 32. The software stopped at some point, and while I don't think it said it ran out of memory, it just said "stopped" and something else. We had to go to the logs and send them to the integrator, and eventually, they found a memory issue in the logs and recommended increasing the memory. We doubled it once, and it didn't seem enough. We doubled it again, and it helped."
"I would like to see more scripts for PowerShell commands."
"There was a lot of delay with NinjaOne's ticketing system. For example, when a user creates a ticket and raises an issue, it would take 30 to 40 minutes to appear on the IT side. So the time delay issue is the main point."
"The inclusion of XENServer and Proxmox as virtual platforms in NinjaOne is currently missing."
"The reporting is lackluster. NinjaOne is great for maintaining systems, but it's hard to use it to understand the state that systems are in without going in and mining the information myself. I rate the reporting two out of 10."
"The solution could improve by optimizing the internet connection being used."
"I would like to see the software reduced to focus on inventory or remote help tools since many of its current functionalities are not needed."
"The graphical user interface could be improved."
"I want NinjaOne to improve the reports."
 

Pricing and Cost Advice

Information not available
"For around 250 users or committers, the cost is approximately $500,000."
"We're using a commercial version of Checkmarx, and we paid for the solution for one year. The price is high and could be reduced."
"The average deal size was usually anywhere between $120K to $175K on an annual basis, which could be divided across 12 months."
"Checkmarx is comparatively costlier than other products, which is why some of the customers feel reluctant to go for it, though performance-wise, Checkmarx can compete with other products."
"The interface used to create custom rules comes at an additional cost."
"The number of users and coverage for languages will have an impact on the cost of the license."
"The tool's pricing is fine."
"It is the right price for quality delivery."
"We currently pay $1.20 per device on a monthly basis."
"NinjaOne is a little expensive but is still cheaper than competitors like Acronis or Veeam."
"Its pricing is great."
"I rate the solution’s pricing a five out of ten, where one is the lowest and ten is the most expensive."
"The pricing is reasonable and cheaper than ConnectWise."
"We got a pretty good deal. It was fairly affordable."
"It roughly costs $400 a month. It provides a good value because of the number of tools that you get in the solution. I would rate it a four out of five in terms of pricing. There are no additional costs other than the standard licensing fees."
"NinjaRMM uses a subscription model."
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
860,168 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Financial Services Firm
11%
Manufacturing Company
7%
Healthcare Company
6%
Financial Services Firm
21%
Computer Software Company
14%
Manufacturing Company
10%
Government
6%
Computer Software Company
14%
Government
8%
Retailer
7%
Financial Services Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for Zafran Security?
The current pricing of Zafran Security is fair overall. They were good to work with to accommodate our organization w...
What needs improvement with Zafran Security?
The dashboarding and reporting functionality of Zafran Security is an area that definitely could use some improvement...
What is your primary use case for Zafran Security?
Zafran Security is helping reduce the amount of critical vulnerabilities in our environments that require prompt reme...
What alternatives are there for Fortify WebInspect and Fortify SCA?
I would like to recommend Checkmarx. With Checkmarx, you are able to have an all in one solution for SAST and SCA as ...
What do you like most about Checkmarx?
Compared to the solutions we used previously, Checkmarx has reduced our workload by almost 75%.
What is your experience regarding pricing and costs for Checkmarx?
The pricing is relatively expensive due to the product's quality and performance, but it is worth it.
What do you like most about NinjaOne?
NinjaOne helps us view the status of software patching, whether the PC is locked or unlocked.
What is your experience regarding pricing and costs for NinjaOne?
The price or licensing of NinjaOne is a little bit high.
What needs improvement with NinjaOne?
The network monitoring needs to be improved.
 

Overview

 

Sample Customers

Information Not Available
YIT, Salesforce, Coca-Cola, SAP, U.S. Army, Liveperson, Playtech Case Study: Liveperson Implements Innovative Secure SDLC
Status Pros, Mitchell and Company
Find out what your peers are saying about Checkmarx One vs. NinjaOne and other solutions. Updated: June 2025.
860,168 professionals have used our research since 2012.