No more typing reviews! Try our Samantha, our new voice AI agent.

Coverity Static vs TrendAI Vision One – Cloud Security comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Coverity Static
Average Rating
7.8
Reviews Sentiment
6.5
Number of Reviews
43
Ranking in other categories
Static Application Security Testing (SAST) (16th)
TrendAI Vision One – Cloud ...
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
23
Ranking in other categories
Vulnerability Management (37th), Container Security (25th), Cloud Workload Protection Platforms (CWPP) (16th), Hybrid Cloud Computing Platforms (11th), Extended Detection and Response (XDR) (23rd), Cloud Security Posture Management (CSPM) (16th), Cloud-Native Application Protection Platforms (CNAPP) (17th), Attack Surface Management (ASM) (14th), Cloud Infrastructure Entitlement Management (CIEM) (6th), Cloud Detection and Response (CDR) (8th), AI Security (18th)
 

Mindshare comparison

Coverity Static and TrendAI Vision One – Cloud Security aren’t in the same category and serve different purposes. Coverity Static is designed for Static Application Security Testing (SAST) and holds a mindshare of 2.5%, down 6.6% compared to last year.
TrendAI Vision One – Cloud Security, on the other hand, focuses on Extended Detection and Response (XDR), holds 1.8% mindshare, up 0.5% since last year.
Static Application Security Testing (SAST) Mindshare Distribution
ProductMindshare (%)
Coverity Static2.5%
SonarQube12.7%
Checkmarx One8.3%
Other76.5%
Static Application Security Testing (SAST)
Extended Detection and Response (XDR) Mindshare Distribution
ProductMindshare (%)
TrendAI Vision One – Cloud Security1.8%
SentinelOne Singularity Endpoint6.4%
Wazuh5.4%
Other86.4%
Extended Detection and Response (XDR)
 

Featured Reviews

Jaile Sebes - PeerSpot reviewer
Senior Software Architect at a tech vendor with 10,001+ employees
Resolving critical software issues demands faster implementation and better integration
We use Coverity primarily to find issues such as software bugs and memory leaks, especially in C++ and C# projects. It helps us identify deadlocks, synchronization issues, and product crashes Coverity has been instrumental in resolving product crashes by detecting various issues like deadlocks.…
reviewer2793894 - PeerSpot reviewer
Platform Engineer Ii at a outsourcing company with 5,001-10,000 employees
Centralized cloud view has improved threat response and simplified compliance reporting
We are using Trend Vision One - Cloud Security for getting complete visibility of all the assets that exist within our cloud, and it helps us identify any sort of misconfigurations or fine-tuning that can be done to better our compliance. Trend Vision One - Cloud Security helps in onboarding all the cloud solutions or cloud providers that we have within our organization into a single dashboard, thereby providing greater visibility of all the assets. Earlier we used to have multiple dashboards to manage the same solution or capability, but with Trend Micro, we are able to get everything in a single pane of glass, benefiting our operations significantly. We are using the playbooks built into Trend Vision One - Cloud Security, which help us take a lot of response actions and bring automation capabilities into play. Trend Vision One - Cloud Security has positively impacted our organization by providing a single pane of glass visibility across all the cloud solutions that we have and reducing the number of threats we used to see earlier in the cloud. We are seeing that the number of cloud operations required earlier in terms of threat detection and response, and the time taken to detect a particular threat and take a response action, has considerably improved after onboarding Trend Micro.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature of Coverity is the wrapper. We use the wrapper to build the C++ component, then we use the other code analysis to analyze the code to the build object, and then send back the result to the SonarQube server. Additionally, it is a powerful capabilities solution."
"If you have enough budget, it is one of the best solutions right now."
"Coverity is helping us identify some of the critical defects at the early stages of the development life cycle, so overall, it is giving us a greater ROI and making our application more mature and robust."
"The most valuable feature is that there were not a whole lot of false positives, at least on the codebases that I looked at."
"The most valuable feature of Coverity is its interprocedural analysis, which is advantageous because it compares favorably with other tools in terms of security and code analysis."
"It provides reports about a lot of potential defects."
"In my opinion, the most effective Coverity feature for identifying critical vulnerabilities is the extra checks, which offers deep analysis."
"One of the most valuable features is Contributing Events. That particular feature helps the developer understand the root cause of a defect. So you can locate the starting point of the defect and figure out exactly how it is being exploited."
"The perfect package for all security platforms, providing more than any other endpoint solution."
"The product helps us understand our environment better."
"The security is good."
"Virtual patching is one of the key features, which is executed with their IPS."
"I like the conformity and workload security modules. Workload security is all about intrusion detection and prevention. Trend Vision One - Cloud Security has behavioral rules that are auto-populated based on organizational structure. That's one aspect that we liked most."
"I really like Trend Vision One - Cloud Security's dashboard."
"The stability is quite good."
"The the most valuable feature is the scanning engine. It does not impact server performance. It's very lightweight."
 

Cons

"Ideally, it would have a user-based license that does not have a restriction in the number of lines of code."
"The solution's user interface and quality gate could be improved."
"Right now, the Coverity executable is around 1.2GB to download. If they can reduce it to approximately 600 or 700MB, that would be great. If they decrease the executable, it will be much easier to work in an environment like Docker."
"The reporting tool integration process is sometimes slow."
"They could improve the usability. For example, how you set things up, even though it's straightforward, it could be still be easier."
"Zero-day vulnerability identification can be an add-on feature that Coverity can provide."
"The solution could use more rules."
"It would be great if we could customize the rules to focus on critical issues."
"The licensing could be made easier to understand."
"Currently, we must procure and configure the server hardware independently, as we obtain the software separately from Trend Micro."
"The firewall configuration should have been automated based on the understanding of the application, utilities, and protocols."
"The solution should include more integrations and a universal connector with other firewalls for SNMP protocols."
"There are also some loopholes because it's a new product that they have recently migrated to the cloud. We do see some issues with the policies we have assigned when it comes to a particular account. There are some issues with system support, such as a particular server kernel version that is not supported."
"Documentation on cloud architecture and job architecture would be helpful."
"Securing S3 using Trend Vision One - Cloud Security can cost too much. Trend Vision One - Cloud Security has a tool that requires lots of privileges. From my understanding, it's only for static application testing, so they need to add dynamic application testing, and there should be more collaboration with the application testing tools on the market. We have not used this product, and I don't know if they plan to decommission it or something. They should focus on application security because this tool's unique feature is multi-cloud support. However, they should improve integration with tools for these kinds of use cases, especially application security and dynamic scanning. For example, I would like it to support Dell SecureOps. I'd also like to see some enhancements to API gateway security."
"The initial setup can be complex for the inexperienced."
 

Pricing and Cost Advice

"The licensing fees are based on the number of lines of code."
"Offers varying prices for different companies"
"I would rate Coverity's pricing as a nine out of ten. It's already very expensive, and it's a problem for us to get more licenses due to the price. The pricing model has some good aspects - for example, a personal license gives access to all languages without code limitations, which is better than some competitors. However, it's still a lot of money for us to spend."
"Coverity is quite expensive."
"Coverity is very expensive."
"Coverity’s price is on the higher side. It should be lower."
"The pricing is very reasonable compared to other platforms. It is based on a three year license."
"The solution's pricing is comparable to other products."
"Pricing for Trend Micro Cloud One Container Security in the corporate market is okay."
"Two years ago, it cost $200 for 20 credits, which was a high cost."
"The is price is 25% cheaper than it was a couple of years ago, which is good."
"The pricing for Cloud One is reasonable because my costs scale up and down based on my infrastructure usage."
"I rate the solution's pricing a six out of ten."
"One year ago, Trend transitioned to a credit system for licensing, which has confused users."
"The price could be lower. That is a bit of a consideration."
"With everything I deal with, Trend Micro Cloud One's pricing is somewhere in the middle."
report
Use our free recommendation engine to learn which Static Application Security Testing (SAST) solutions are best for your needs.
914,322 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
27%
Computer Software Company
9%
Financial Services Firm
7%
Outsourcing Company
5%
Comms Service Provider
11%
Financial Services Firm
9%
Manufacturing Company
9%
Outsourcing Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise6
Large Enterprise31
By reviewers
Company SizeCount
Small Business12
Midsize Enterprise6
Large Enterprise10
 

Questions from the Community

How would you decide between Coverity and Sonarqube?
We researched Coverity, but in the end, we chose SonarQube. SonarQube is a tool for reviewing code quality and security. It helps to guide our development teams during code reviews by providing rem...
What needs improvement with Coverity?
The price is a concern, and there are a lot of false positives coming through. Support with Coverity is adequate, but they take a longer time to respond. The core support is not straightforward, an...
What is your experience regarding pricing and costs for Trend Micro Cloud One Container Security?
The pricing for Trend Vision One - Cloud Security is very straightforward; we are using credits for calculating the solution that is required, and in terms of setup cost and licensing, it is very f...
What needs improvement with Trend Micro Cloud One Container Security?
I would like to see more third-party integrations being added into Trend Vision One - Cloud Security, as it currently has a good amount of integrations but does not allow ingestion from many third-...
What is your primary use case for Trend Micro Cloud One Container Security?
The main use case for Trend Vision One - Cloud Security is to secure our cloud environment from threats and we had to also abide by compliances, which is why we procured cloud security from Trend M...
 

Also Known As

Synopsys Static Analysis
Trend Micro Cloud One , Cloud One Workload Security, Trend Micro Cloud One Container Security, Trend Micro Cloud One Application Security, Cloud One File Storage Security, Cloud One Network Security, Cloud One Conformity
 

Overview

 

Sample Customers

SAP, Mega International, Thales Alenia Space
Information Not Available
Find out what your peers are saying about SonarSource Sàrl, Checkmarx, Veracode and others in Static Application Security Testing (SAST). Updated: September 2026.
914,322 professionals have used our research since 2012.