

Find out what your peers are saying about SonarSource Sàrl, Checkmarx, Veracode and others in Application Security Tools.
Veracode provides excellent assistance and regularly scheduled calls to address customer concerns and updates.
There is still room for improvement when it comes to the speed of response.
Sometimes, the documentation is not readable, being too long or too detailed and not connected to my problem.
Since we've been using HCL AppScan for about three months, we really have not encountered a false positive.
Currently, you can find out the components belonging to a specific software, but if detailed reporting became available, you would be in a better position to identify vulnerabilities.
Additionally, in Visual Studio Code, we have an agent mode for GitHub Copilot, which is very helpful in testing or development phases, while Visual Studio's GitHub Copilot is a bit tricky and sometimes does not provide my desired output.
The product needs contextual help integrated within its interface.
Sometimes, the library version is not compatible with other libraries, causing errors in my application.
Companies often choose based on budget constraints, with Veracode being on the higher end cost-wise.
The price is expensive.
We were able to identify security issues such as certificate-related issues, authentication-related issues, and weak encryption-related issues.
AppScan's most valuable features include its ability to identify vulnerabilities accurately, provide detailed remediation steps, and the newly introduced AI-powered features that enhance its functionality further.
It supports cross-platform functionality.
Visual Studio Test Professional is highly valuable because it provides extensive extensions and plugins that assist in measuring code quality.
We have a retrospective in our auto projects that we are using frequently to get lessons learned, what went well, and what is going wrong.
| Product | Mindshare (%) |
|---|---|
| HCL AppScan | 2.4% |
| SonarQube | 13.6% |
| Checkmarx One | 8.8% |
| Other | 75.2% |
| Product | Mindshare (%) |
|---|---|
| Visual Studio Test Professional | 2.0% |
| Tricentis Tosca | 10.1% |
| OpenText Functional Testing | 6.8% |
| Other | 81.1% |


| Company Size | Count |
|---|---|
| Small Business | 14 |
| Midsize Enterprise | 6 |
| Large Enterprise | 31 |
| Company Size | Count |
|---|---|
| Small Business | 15 |
| Midsize Enterprise | 14 |
| Large Enterprise | 24 |
HCL AppScan offers quick vulnerability detection with effective SDLC integration and is known for its user-friendly interface and seamless security integration.
HCL AppScan provides dynamic and static scanning to identify vulnerabilities like XSS and SQL injection. It integrates well into CI/CD pipelines, supports multiple languages, and offers web and dynamic scanning, helping businesses ensure security across development lifecycles. Users benefit from API coverage, Postman integration, and its ability to function in cloud and on-premise environments, facilitating a shift from DevOps to DevSecOps practices.
What features define HCL AppScan?HCL AppScan is leveraged in sectors requiring rigorous security checks, such as finance and healthcare, where it conducts comprehensive scans and offers insights into potential vulnerabilities. Its robust scanning capabilities aid companies in maintaining compliance and security standards.
Visual Studio Test Professional offers sophisticated testing capabilities with a focus on integration with Azure DevOps. Supporting software development, it aids in application creation, lifecycle management, and testing, accommodating a wide array of programming languages.
Visual Studio Test Professional delivers robust features essential for software developers, including seamless integration with C# and .NET projects and extensive customization options. The platform's robust debugging, unit testing, and memory analysis help streamline the development process. Its intuitive interface and integration with tools like IntelliSense and NuGet package manager enhance productivity, alongside its collaboration capabilities with Azure DevOps. While beneficial, it faces challenges such as integration issues with CI tools, high technical skill requirements, and concerns about pricing and stability. Refinements in user interface design, platform compatibility, and support for AI and machine learning technologies remain necessary.
What are the most important features of Visual Studio Test Professional?Visual Studio Test Professional finds its application in software development and automation testing industries, where technical teams use it to create and manage applications across multiple environments. It supports test-driven development, ensuring secure and functional project outputs, and aids in the integration of DevOps practices, enhancing collaborative efforts in software solutions creation.
We monitor all Application Security Tools reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.