Try our new research platform with insights from 80,000+ expert users

CrowdStrike Falcon Cloud Security vs Veracode comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 16, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex Cloud by Palo Alto N...
Sponsored
Ranking in Application Security Posture Management (ASPM)
9th
Average Rating
10.0
Reviews Sentiment
8.7
Number of Reviews
1
Ranking in other categories
Vulnerability Management (35th), Cloud Workload Protection Platforms (CWPP) (19th), Cloud Security Posture Management (CSPM) (22nd), Cloud-Native Application Protection Platforms (CNAPP) (16th), Data Security Posture Management (DSPM) (13th), Software Supply Chain Security (14th), Cloud Infrastructure Entitlement Management (CIEM) (7th), Cloud Detection and Response (CDR) (8th)
CrowdStrike Falcon Cloud Se...
Ranking in Application Security Posture Management (ASPM)
4th
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
30
Ranking in other categories
Application Security Tools (12th), Container Security (4th), Cloud Workload Protection Platforms (CWPP) (5th), Cloud Security Posture Management (CSPM) (7th), Cloud-Native Application Protection Platforms (CNAPP) (6th), Cloud Infrastructure Entitlement Management (CIEM) (2nd)
Veracode
Ranking in Application Security Posture Management (ASPM)
1st
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
204
Ranking in other categories
Application Security Tools (2nd), Static Application Security Testing (SAST) (2nd), Container Security (8th), Software Composition Analysis (SCA) (3rd), Static Code Analysis (1st)
 

Featured Reviews

PG
Identifies vulnerabilities and enables proactive remediation through AI/ML capabilities
The solution helps me to understand misconfigurations in AWS or Azure cloud environments. It detects misconfigurations, suggests remedial actions, and helps identify vulnerabilities across cloud platforms. It provides action recommendations for CVEs against particular vulnerabilities The tool…
Chethan R - PeerSpot reviewer
Has improved threat detection accuracy and helped monitor endpoints across hybrid environments
The most valuable capabilities of CrowdStrike Falcon Cloud Security relate to preventing attacks caused by human error, such as when someone plugs in a USB device or downloads something without caution. It automatically blocks duplication and activities that could result in data loss, effectively preventing unintended copying of data to personal devices. Deduplication prevention is definitely the most valuable feature. CrowdStrike Falcon Cloud Security excels in threat detection with a vast investigation structure, allowing us to verify suspicious activities to identify root causes. It helps us trace back to the origin and fix issues, making it a user-friendly tool for this kind of detection. CrowdStrike Falcon Cloud Security is built on AI and ML technology, enabling it to detect various threats and block suspicious activities immediately, which is particularly effective compared to traditional AVs and EDRs. The analytics provided by CrowdStrike Falcon Cloud Security is key for maintaining a proactive security posture. Its AI and ML foundations offer extensive information on threats and suspicious activities, making it renowned for analysis in the industry.
Kv Rao - PeerSpot reviewer
Integrates pipelines smoothly and fortifies code against vulnerabilities
I use Veracode in multiple places including static code analysis, penetration testing, and dynamic code analysis. It is part of our pipeline and integrates well with Bitbucket and Git pipelines The ease of integration with Bitbucket pipelines and Git pipelines is vital for us. Veracode allows us…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Overall, Cortex Cloud by Palo Alto Networks is a technically strong product, and I rate it ten out of ten."
"There is a lot that it can do, but endpoint protection is the main thing about it. The fact that it uses machine learning and artificial intelligence to monitor and remediate the issues in real-time is probably the bread and butter of the product."
"It helps us by automatically blocking certain applications or activities."
"The most valuable feature of Falcon Cloud Security is its comprehensive threat-hunting ability."
"The most valuable feature is the auto-detection capability for threat hunting and issuing advisories on remedies."
"I think the overall solution should be rated a ten out of ten."
"The product's initial setup phase is easy."
"The threat detection capability of CrowdStrike Falcon Cloud Security has always been the major seller, and it works effectively."
"The alerts are clearer, and the capabilities are much better than the others."
"Vericode's policy reporting for ensuring compliance with industry standards and regulations is great. I"
"It has the ability to scale, and the fact that it doesn't produce a lot of false positives."
"The most valuable feature is the efficiency of the tool in finding vulnerabilities."
"It gives feedback to developers on the effectiveness of their secure coding practices."
"The most valuable feature of Veracode Static Analysis is the scanning."
"I like the sandbox, the ability to upload compiled code, and how easy it is."
"I believe the static analysis is Veracode's best and most valuable feature. Software composition analysis is a feature that most people don't use, and we don't use SCA for most of our applications. However, this is an essential feature because it provides insight into the third-party libraries we use."
"The integration of static testing with our Azure DevOps CI pipeline was easy."
 

Cons

"Some aspects of the GUI can be confusing and make it difficult for me to find certain options or navigate where needed."
"Incorporating threat intelligence into the system would be a valuable addition."
"The CrowdStrike partner portal documentation could be improved to provide proper instructions for integrating their products."
"Different file options should be available, and clients should be able to select from the options."
"The threat intelligence and user behavioral analysis could be more comprehensive."
"The log scale or Humio side of it where it collects the data and expands into the XDR world still needs time to develop in terms of the way it combines the data and metadata that flows into the platform. I know they're working on it."
"For the past six months, we have been facing some issues. Because it is a cloud-based infrastructure, it has been getting slower."
"The UI part needs to be improved."
"The user interface needs improvement as it's sometimes difficult to locate specific dashboards or reports."
"The interface is basic and has room for improvement."
"There are few languages that take time for scanning. It covers the majority of languages from C to Scala, but it doesn't support certain languages and the newer versions of certain languages. For example, it doesn't support SAP and new JavaScript frameworks such as Node.js and React JS. They can include support for these. If you go to their website, you can see the list of languages that are currently supported. The false-positive rates are also something they can work on."
"It would be ideal if it was able to demonstrate higher levels of cybersecurity certifications like becoming FedRAMP compliant or working in those areas."
"I would like to see more AI features. It's a current subject because with ChatGPT and other solutions being developed all the time, IT attacks will increase... To defend against those it's very important that the good guys use AI in ways that are good instead of bad."
"There is room for improvement in the speed of the system. Sometimes, the servers are very busy and slow... Also, the integration with SonarQube is very weak, so we had to implement a custom solution to extend it."
"Calypso (our application) is large and the results take up to two months. Further, we also have to package Calypso in a special manner to meet size guidelines."
"Mitigation review isn't always super easy."
"The training lab is not very user-friendly and takes a long time to set up."
 

Pricing and Cost Advice

Information not available
"It is expensive, but it adds value."
"I am not the one who handled the pricing. A different team worked on it, but it is pretty expensive."
"CrowdStrike Falcon Cloud Security is very expensive for us. Last month, we had a big issue that took much time and money to resolve. It slowed down our business and required our management team to get involved. We had a problem similar to the "Blue Screen of Death" issue many US companies faced. This incident used up many of our IT resources in just a few months. That's why we're looking for a replacement tool now."
"It's an expensive package but does what it says it will do."
"The pricing is reasonable, neither overly expensive nor excessively cheap, making it competitive compared to other market options."
"The pricing is fair for what you get. I'd rate them a solid nine out of ten in terms of pricing."
"Its price is moderate."
"It's an expensive product"
"Veracode's pricing is on the higher end, but it is acceptable."
"For enterprises, Veracode has done a fairly good job, but its pricing is not suitable for startups. The microservice distributed architecture for a startup is very small. I had to do a lot of discussions on the pricing initially. I previously worked in an enterprise organization where I used Veracode, and that's how I got to know about Veracode, but that was a big organization with more than a thousand employees. So, the cost is very different for them because the size of the application is different. Its pricing makes sense there, but when we try to onboard this solution for the startup ecosystem, pricing is not friendly. Because I knew the product and I knew its value, I onboarded it, but I don't think any other startup at our scale will onboard it."
"It's very expensive, especially when you are a very small organization. If you're using Veracode at an individual level, for example, you're a developer or you run agents, the pricing might not affect you, but if you're using it at a company level to troubleshoot security issues, the pricing is not quite favorable. It may affect ROI."
"It is pricey. There is a lot of value in the product, but it is a costly tool."
"The pricing for Veracode is high, making it difficult for beginners to afford."
"Veracode's price is reasonable."
"It can be expensive to do this, so I would just make sure that you're getting the proper number of licenses. Do your analysis. Make sure you know exactly what it is you need, going in."
"I have not examined Veracode's pricing in detail, but from an industry perspective, I see that there is a tendency toward Veracode, which suggests competitive pricing."
report
Use our free recommendation engine to learn which Application Security Tools solutions are best for your needs.
872,655 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Performing Arts
14%
Computer Software Company
9%
Manufacturing Company
8%
Comms Service Provider
7%
Computer Software Company
15%
Financial Services Firm
14%
Manufacturing Company
7%
Insurance Company
5%
Financial Services Firm
17%
Computer Software Company
15%
Manufacturing Company
9%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business13
Midsize Enterprise6
Large Enterprise12
By reviewers
Company SizeCount
Small Business69
Midsize Enterprise43
Large Enterprise112
 

Questions from the Community

What is your experience regarding pricing and costs for Cortex Cloud by Palo Alto Networks?
The solution is costly, with high-end capabilities suitable for enterprises. It is less affordable for startups or sm...
What needs improvement with Cortex Cloud by Palo Alto Networks?
Some aspects of the GUI can be confusing and make it difficult for me to find certain options or navigate where needed.
What is your primary use case for Cortex Cloud by Palo Alto Networks?
The solution helps me to understand misconfigurations in AWS or Azure cloud environments. It detects misconfiguration...
What do you like most about CrowdStrike Falcon Cloud Security?
It's easy to gather insights and conduct analysis about existing threats.
What is your experience regarding pricing and costs for CrowdStrike Falcon Cloud Security?
It's an expensive product. The solution costs around $60 for a single user on a yearly basis. I would rate the pricin...
What needs improvement with CrowdStrike Falcon Cloud Security?
I am not part of the current monitoring team, so I do not know how they feel about the tool. I am sharing information...
Which gives you more for your money - SonarQube or Veracode?
SonarQube is easy to deploy and configure, and also integrates well with other tools to do quality code analysis. Son...
What do you like most about Veracode Static Analysis?
I like its integration with GitHub. I like using it from GitHub. I can use the GitHub URL and find out the vulnerabil...
What is your experience regarding pricing and costs for Veracode Static Analysis?
When considering pricing, Veracode stands out due to its lower cost per service and more scalable options. It offers ...
 

Also Known As

No data available
CrowdStrike Falcon ASPM
Crashtest Security , Veracode Detect
 

Overview

 

Sample Customers

Information Not Available
Information Not Available
Manhattan Associates, Azalea Health, Sabre, QAD, Floor & Decor, Prophecy International, SchoolCNXT, Keap, Rekner, Cox Automotive, Automation Anywhere, State of Missouri and others.
Find out what your peers are saying about CrowdStrike Falcon Cloud Security vs. Veracode and other solutions. Updated: October 2025.
872,655 professionals have used our research since 2012.