"The most valuable feature is the ability to download an application without actually putting in the APK. It gives us an option to put the APK in if we want to but we can download it from the App Store and Play Store."
"The templates feature is very easy. You just choose the kind of attack you want on your web application, and you run it against that template and receive a report. It's great."
"It uses a signature-based method to check for problems with your code and will provide an alert if anything is found."
"In this solution, there are two kinds of testing, static analysis, and dynamic analysis. There needs some improvement in testing with dynamic analysis because I have found it is not accurate"
"The interface should be a little bit easier to manage. Sometimes, the logic that they use is kind of strange. They need to work a little bit more on their interface to make it more understandable. The interface is the only problem. I'm using Rapid7, which is very intuitive. There are other applications available in the market with a better interface. They can include more techniques or options to test different types of security because the templates are limited. It would be great to see them follow the MITRE ATT&CK framework or what is there in tools like Veracode and Synopsys."
"In the future, if they can have integration with a lot of ticketing systems then it would be amazing."
NowSecure is ranked 19th in Application Security Testing (AST) with 1 review while Rapid7 InsightAppSec is ranked 2nd in Dynamic Application Security Testing (DAST) with 2 reviews. NowSecure is rated 7.0, while Rapid7 InsightAppSec is rated 9.6. The top reviewer of NowSecure writes "Scalable and reliable, but dynamic analysis needs improvement". On the other hand, the top reviewer of Rapid7 InsightAppSec writes "Easy to use, amazing technical support, and it provides alerts when problems in code are identified". NowSecure is most compared with Veracode, Checkmarx, ImmuniWeb, Micro Focus Fortify on Demand and GitLab, whereas Rapid7 InsightAppSec is most compared with Rapid7 AppSpider, OWASP Zap, PortSwigger Burp Suite Professional, Veracode and Invicti.
We monitor all Application Security Testing (AST) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.