Try our new research platform with insights from 80,000+ expert users

HCL AppScan vs IBM Engineering Test Management comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
3.2
HCL AppScan enhances architecture with fewer errors and improved security, achieving 50% return and 20% cost savings.
Sentiment score
8.2
IBM Engineering Test Management improves efficiency, reduces defects, integrates well with IBM software, enhancing workflow and providing cost savings.
 

Customer Service

Sentiment score
6.8
HCL AppScan's support is responsive with mixed reviews, facing regional challenges and lagging behind competitors like Veracode.
Sentiment score
7.1
IBM Engineering Test Management's customer support is praised for responsiveness and effectiveness, with improvements in response times and satisfactory experiences.
Veracode provides excellent assistance and regularly scheduled calls to address customer concerns and updates.
 

Scalability Issues

Sentiment score
5.4
HCL AppScan is scalable yet varies by license, integration issues, infrastructure compatibility, and CI/CD pipeline design effectiveness.
Sentiment score
7.7
IBM Engineering Test Management scales smoothly for large organizations with thousands of users and test cases, including automated ones.
 

Stability Issues

Sentiment score
5.0
HCL AppScan is stable and reliable, with minor hardware issues, improved by recent upgrades enhancing performance and stability.
Sentiment score
6.9
IBM Engineering Test Management is reliable and stable, with good performance but occasionally impacted by server configuration and database space issues.
 

Room For Improvement

HCL AppScan requires improvements in vulnerability detection, usability, integration, performance, support, pricing, and language/codebase compatibility to stay competitive.
IBM Engineering Test Management requires a user-friendly interface, enhanced usability, data handling, hierarchical structuring, and seamless integration with automated pipelines.
 

Setup Cost

HCL AppScan is considered expensive but cost-effective, with varied pricing opinions influenced by its premium features and discounts.
<p>IBM Engineering Test Management provides robust features and customization with flexible pricing, ideal for large enterprises needing comprehensive test management.</p>
Companies often choose based on budget constraints, with Veracode being on the higher end cost-wise.
 

Valuable Features

HCL AppScan detects vulnerabilities, integrates with agile processes, offers scalability, user-friendly features, and AI-enhanced rapid scanning for security.
IBM Engineering Test Management is praised for fast, reliable customizable workflows, and robust integrations, particularly in testing and tracking functionality.
AppScan's most valuable features include its ability to identify vulnerabilities accurately, provide detailed remediation steps, and the newly introduced AI-powered features that enhance its functionality further.
 

Categories and Ranking

HCL AppScan
Average Rating
7.8
Reviews Sentiment
6.1
Number of Reviews
43
Ranking in other categories
Application Security Tools (14th), Static Application Security Testing (SAST) (12th), Dynamic Application Security Testing (DAST) (1st)
IBM Engineering Test Manage...
Average Rating
7.6
Reviews Sentiment
7.4
Number of Reviews
11
Ranking in other categories
Test Management Tools (9th), Load Testing Tools (10th)
 

Mindshare comparison

While both are Quality Assurance solutions, they serve different purposes. HCL AppScan is designed for Application Security Tools and holds a mindshare of 2.7%, up 2.6% compared to last year.
IBM Engineering Test Management, on the other hand, focuses on Test Management Tools, holds 2.7% mindshare, down 3.0% since last year.
Application Security Tools
Test Management Tools
 

Featured Reviews

Gladwin Christian - PeerSpot reviewer
A useful tool to scan applications that can be easily installed
Given that we have been using HCL AppScan for many years, I think the setup process is not difficult at all. Sometimes, some issues stop or prevent my company from moving forward with the product's setup phase. We have to call HCL's support team and engage in long discussions to smoothly carry out the setup phase. In general, the product's setup phase is not difficult in our company. The solution is deployed on an on-premises model. The licenses for the solution are available only on cloud deployments nowadays. The solution is already installed in our environment. Every time a new release or software comes out from HCL, our company does a scan, which takes maybe a day or two.
HZ
Scalable and Stable solution with good integration function and support team
IBM Rational has the RFT, which is rational functional testing. We do test automation with rational functional testing. So after we do that, we can put in all the code, then I can build it, then put all the test cases, and put all the build code for the shared location. And then rational that shared location means that RQM has access to the shared location. So, when we execute, if a test case is automated, we can run it from RQM. We need to have the environment ready for it to execute. Once we have that, then we can select the task case. So, by clicking on one button, the other environment is automatically plugged in. Then test results will be automatically transferred back to our RQM. So, in RQM, we can view it, and it is integrated. So we can run the test and the automation from RQM, and the test results will come back. Azure DevOps first test case is there, but then we tried to use Selenium to do half automation. Still, we realized that it wouldn't have the integration. We could do something in the pipeline, but it fires the Selenium test automation code. But then the test results won't be brought back or added to AzureDesk DevOps. That's something that I do hope that there can be another other system that can have this kind of integration. RQM can be improved because it's not related to our server and could be faster. We need to find out how much database storage is needed and keep increasing it. We heard that the latest version of RQM can clean up some old ones and give the same test result. But that one feature we are yet to use. It's a setting that we can set up, and then it goes automatically or gives me the choice to do it manually.
report
Use our free recommendation engine to learn which Application Security Tools solutions are best for your needs.
852,780 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
18%
Financial Services Firm
14%
Government
12%
Manufacturing Company
9%
Healthcare Company
20%
Financial Services Firm
15%
Manufacturing Company
13%
Computer Software Company
12%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about HCL AppScan?
The most valuable feature of HCL AppScan is its integration with the SDLC, particularly during the coding phase.
What needs improvement with HCL AppScan?
AppScan needs to improve its handling of false positives. It also requires enhancements in customer support, similar to what Veracode provides. Regularly scheduling calls with clients to discuss fe...
What is your primary use case for HCL AppScan?
The primary use case for AppScan is for security purposes. I compare AppScan with other tools such as Veracode. We use AppScan for vulnerability detection and auto-remediation of vulnerabilities wi...
What do you like most about IBM Rational Quality Manager?
The one feature that has not allowed us to switch to any other solution is the integration with functional testing.
What needs improvement with IBM Rational Quality Manager?
IBM Rational has the RFT, which is rational functional testing. We do test automation with rational functional testing. So after we do that, we can put in all the code, then I can build it, then pu...
What is your primary use case for IBM Rational Quality Manager?
We create test cases, and then we need to plan a new task plan feature from the existing task case file and execute the test results, which will be saved in RQM. So that is how we are using the too...
 

Also Known As

IBM Security AppScan, Rational AppScan, AppScan
IBM Rational Quality Manager, Rational Quality Manager
 

Overview

 

Sample Customers

Essex Technology Group Inc., Cisco, West Virginia University, APIS IT
Ehrhardt, Cisco Systems, Anadolu Hayat Emeklilik, CareCore National, ItaÒ BBA, Barr
Find out what your peers are saying about Sonar, Veracode, Checkmarx and others in Application Security Tools. Updated: May 2025.
852,780 professionals have used our research since 2012.