HCL AppScan and OpenText Core Application Security compete in the application security category. OpenText Core seems to have the upper hand due to its strong automation features and ease of use.
Features: HCL AppScan offers extensive API support, a low false-positive rate, and effective dynamic application scanning. It integrates with many development environments and excels in QR code scanning. OpenText Core Application Security is known for its ease of use and automation in identifying vulnerabilities and provides detailed risk-related reports for various applications.
Room for Improvement: HCL AppScan requires improvements in reducing false positives and enhancing language support. Users have noted integration challenges, especially in CI/CD pipelines, and suggest the need for AI enhancements. OpenText Core Application Security could improve its reporting and needs better integration with DevOps tools. Users also suggest reducing false positives and incorporating runtime analysis to enhance threat detection.
Ease of Deployment and Customer Service: HCL AppScan supports on-premises, public, and hybrid cloud deployment but has room for improvement in customer service, especially post-IBM transitions. OpenText Core Application Security offers both on-premises and cloud options and is lauded for its responsive support. Users noted the ease of migration and operational readiness, with positive experiences in technical support.
Pricing and ROI: HCL AppScan is perceived as expensive, but users find the cost justified by the significant reduction in vulnerabilities and associated costs. OpenText Core Application Security, although costly and often compared to competitors like Burpsuite, is seen as cost-effective for regular use. Both solutions offer substantial returns on investment, particularly in enhancing app security and minimizing errors.
IBM Security AppScan enhances web application security and mobile application security, improves application security program management and strengthens regulatory compliance. By scanning your web and mobile applications prior to deployment, AppScan enables you to identify security vulnerabilities and generate reports and fix recommendations.
OpenText Core Application Security offers robust features like static and dynamic scanning, real-time vulnerability tracking, and seamless integration with development platforms, designed to enhance code security and reduce operational costs.
OpenText Core Application Security is a cloud-based, on-demand service providing accurate and deep scanning capabilities with detailed reporting. Its integrations with development platforms ensure an enhanced security layer in the development lifecycle, benefiting users by lowering operational costs and facilitating efficient remediation. The platform addresses needs for intuitive interfaces, API support, and comprehensive vulnerability assessments, helping improve code security and accelerate time-to-market. Despite its strengths, challenges exist around false positives, report clarity, and language support, alongside confusing pricing and package options. Enhancements are sought in areas like CI/CD pipeline configuration, report visualization, scan times, and integration with third-party tools such as GitLab, container scanning, and software composition analysis.
What features define OpenText Core Application Security?Industries like mobile applications, e-commerce, and banking leverage OpenText Core Application Security for its ability to identify vulnerabilities such as SQL injections. Integrating seamlessly with DevSecOps and security auditing processes, this tool supports developers in writing safer code, ensuring secure application deployment and enhancing software assurance.
We monitor all Application Security Tools reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.