Try our new research platform with insights from 80,000+ expert users

HCL AppScan vs IBM Engineering Test Management comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
3.2
HCL AppScan enhances architecture with fewer errors and improved security, achieving 50% return and 20% cost savings.
Sentiment score
8.2
IBM Engineering Test Management improves efficiency, reduces defects, integrates well with IBM software, enhancing workflow and providing cost savings.
 

Customer Service

Sentiment score
6.8
HCL AppScan's support is responsive with mixed reviews, facing regional challenges and lagging behind competitors like Veracode.
Sentiment score
7.1
IBM Engineering Test Management's customer support is praised for responsiveness and effectiveness, with improvements in response times and satisfactory experiences.
Veracode provides excellent assistance and regularly scheduled calls to address customer concerns and updates.
 

Scalability Issues

Sentiment score
5.4
HCL AppScan is scalable yet varies by license, integration issues, infrastructure compatibility, and CI/CD pipeline design effectiveness.
Sentiment score
7.7
IBM Engineering Test Management scales smoothly for large organizations with thousands of users and test cases, including automated ones.
 

Stability Issues

Sentiment score
5.0
HCL AppScan is stable and reliable, with minor hardware issues, improved by recent upgrades enhancing performance and stability.
Sentiment score
6.9
IBM Engineering Test Management is reliable and stable, with good performance but occasionally impacted by server configuration and database space issues.
 

Room For Improvement

HCL AppScan requires improvements in vulnerability detection, usability, integration, performance, support, pricing, and language/codebase compatibility to stay competitive.
IBM Engineering Test Management requires a user-friendly interface, enhanced usability, data handling, hierarchical structuring, and seamless integration with automated pipelines.
 

Setup Cost

HCL AppScan is considered expensive but cost-effective, with varied pricing opinions influenced by its premium features and discounts.
<p>IBM Engineering Test Management provides robust features and customization with flexible pricing, ideal for large enterprises needing comprehensive test management.</p>
Companies often choose based on budget constraints, with Veracode being on the higher end cost-wise.
 

Valuable Features

HCL AppScan detects vulnerabilities, integrates with agile processes, offers scalability, user-friendly features, and AI-enhanced rapid scanning for security.
IBM Engineering Test Management is praised for fast, reliable customizable workflows, and robust integrations, particularly in testing and tracking functionality.
AppScan's most valuable features include its ability to identify vulnerabilities accurately, provide detailed remediation steps, and the newly introduced AI-powered features that enhance its functionality further.
 

Categories and Ranking

HCL AppScan
Average Rating
7.8
Reviews Sentiment
6.1
Number of Reviews
43
Ranking in other categories
Application Security Tools (15th), Static Application Security Testing (SAST) (15th), Dynamic Application Security Testing (DAST) (1st)
IBM Engineering Test Manage...
Average Rating
7.6
Reviews Sentiment
7.4
Number of Reviews
11
Ranking in other categories
Test Management Tools (15th), Load Testing Tools (18th)
 

Mindshare comparison

While both are Quality Assurance solutions, they serve different purposes. HCL AppScan is designed for Application Security Tools and holds a mindshare of 2.7%, up 2.7% compared to last year.
IBM Engineering Test Management, on the other hand, focuses on Test Management Tools, holds 2.4% mindshare, down 2.7% since last year.
Application Security Tools
Test Management Tools
 

Featured Reviews

Sthembiso Zondi - PeerSpot reviewer
Has a straightforward setup process and valuable security features
We use AppScan primarily for security testing and performance monitoring across our systems The product's features for comprehensive code analysis (static) and live environment testing (dynamic) have significantly enhanced our ability to identify and address vulnerabilities, improving overall…
HZ
Scalable and Stable solution with good integration function and support team
IBM Rational has the RFT, which is rational functional testing. We do test automation with rational functional testing. So after we do that, we can put in all the code, then I can build it, then put all the test cases, and put all the build code for the shared location. And then rational that shared location means that RQM has access to the shared location. So, when we execute, if a test case is automated, we can run it from RQM. We need to have the environment ready for it to execute. Once we have that, then we can select the task case. So, by clicking on one button, the other environment is automatically plugged in. Then test results will be automatically transferred back to our RQM. So, in RQM, we can view it, and it is integrated. So we can run the test and the automation from RQM, and the test results will come back. Azure DevOps first test case is there, but then we tried to use Selenium to do half automation. Still, we realized that it wouldn't have the integration. We could do something in the pipeline, but it fires the Selenium test automation code. But then the test results won't be brought back or added to AzureDesk DevOps. That's something that I do hope that there can be another other system that can have this kind of integration. RQM can be improved because it's not related to our server and could be faster. We need to find out how much database storage is needed and keep increasing it. We heard that the latest version of RQM can clean up some old ones and give the same test result. But that one feature we are yet to use. It's a setting that we can set up, and then it goes automatically or gives me the choice to do it manually.
report
Use our free recommendation engine to learn which Application Security Tools solutions are best for your needs.
865,295 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
17%
Financial Services Firm
12%
Government
10%
Manufacturing Company
10%
Healthcare Company
25%
Manufacturing Company
16%
Financial Services Firm
11%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about HCL AppScan?
The most valuable feature of HCL AppScan is its integration with the SDLC, particularly during the coding phase.
What needs improvement with HCL AppScan?
AppScan needs to improve its handling of false positives. It also requires enhancements in customer support, similar to what Veracode provides. Regularly scheduling calls with clients to discuss fe...
What is your primary use case for HCL AppScan?
The primary use case for AppScan is for security purposes. I compare AppScan with other tools such as Veracode. We use AppScan for vulnerability detection and auto-remediation of vulnerabilities wi...
Ask a question
Earn 20 points
 

Also Known As

IBM Security AppScan, Rational AppScan, AppScan
IBM Rational Quality Manager, Rational Quality Manager
 

Overview

 

Sample Customers

Essex Technology Group Inc., Cisco, West Virginia University, APIS IT
Ehrhardt, Cisco Systems, Anadolu Hayat Emeklilik, CareCore National, ItaÒ BBA, Barr
Find out what your peers are saying about Sonar, Veracode, Checkmarx and others in Application Security Tools. Updated: July 2025.
865,295 professionals have used our research since 2012.