

Invicti and Rapid7 InsightAppSec are competing in application security testing. Invicti seems to have the upper hand in ease of use and scanning capabilities, while Rapid7 InsightAppSec excels in integration and threat intelligence features.
Features: Invicti's features include advanced vulnerability detection, automated scanning, and detailed reporting. Rapid7 InsightAppSec provides robust integration with security tools, comprehensive threat intelligence, and enhanced API security.
Room for Improvement: Invicti could enhance its scalability for larger enterprise environments, improve integration with third-party tools, and optimize performance for even faster scanning. Rapid7 InsightAppSec might benefit from streamlining its extensive setup procedures, reducing potential false positives, and enhancing the user interface for more intuitive navigation.
Ease of Deployment and Customer Service: Invicti offers straightforward deployment and responsive customer support, ensuring efficient setup and troubleshooting. Rapid7 InsightAppSec provides extensive documentation and an active support team but may require more initial configuration.
Pricing and ROI: Invicti’s competitive pricing model delivers swift ROI due to efficient scans. Rapid7 InsightAppSec has a slightly higher pricing considering its extensive integration capabilities and valuable long-term investment in threat intelligence benefits.
| Product | Market Share (%) |
|---|---|
| Rapid7 InsightAppSec | 9.6% |
| Invicti | 11.7% |
| Other | 78.7% |


| Company Size | Count |
|---|---|
| Small Business | 13 |
| Midsize Enterprise | 4 |
| Large Enterprise | 13 |
| Company Size | Count |
|---|---|
| Small Business | 11 |
| Midsize Enterprise | 2 |
| Large Enterprise | 5 |
Invicti helps DevSecOps teams automate security tasks and save hundreds of hours each month by identifying web vulnerabilities that matter. Combining dynamic with interactive testing (DAST + IAST) and software composition analysis (SCA), Invicti scans every corner of an app to find what other tools miss with 99.98% accuracy, delivering on the promise of Zero Noise AppSec. Invicti helps discover all web assets — even ones that are lost, forgotten, or created by rogue departments. With an array of out-of-the-box integrations, DevSecOps teams can get ahead of their workloads to hit critical deadlines, improve processes, and communicate more effectively while reducing risk and hitting the ROI goals.
Your web applications may be complex, but your application security testing tool doesn’t need to be. InsightAppSec brings Rapid7’s proven Dynamic Application Security Testing (DAST) technology to the Insight platform, combining powerful application crawling and attack capabilities, flexibility in scan scope and scheduling, and accuracy in results with a modern UI, intuitive workflows, and sensible data organization. This enables you to identify XSS, SQL injection, CSRF, and other vulnerabilities with unparalleled ease. The best part? All of these capabilities are delivered via the cloud so that you’re up and running in minutes to identify the critical security risks that exist in your applications.
We monitor all Dynamic Application Security Testing (DAST) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.