

OpenText Core Application Security and Nucleus Security compete in application security. OpenText Core excels in pricing and support, while Nucleus Security leads in feature richness due to its comprehensive security management approach.
Features: OpenText Core Application Security includes robust threat intelligence integration, automation capabilities, and extensive compliance management. Nucleus Security provides advanced vulnerability tracking, real-time risk prioritization, and analytics-driven insights. These features highlight Nucleus Security's strength in delivering actionable visibility and detailed security assessments.
Ease of Deployment and Customer Service: OpenText Core offers streamlined cloud-based deployment with superior service responsiveness, resulting in minimal integration disruption. Nucleus Security offers versatile, flexible on-premises deployment and personalized customer support, meeting diverse organizational needs.
Pricing and ROI: OpenText Core Application Security offers competitive pricing with clear cost structures, enhancing immediate ROI through rapid deployment efficiencies. Nucleus Security requires a more significant initial investment, delivering long-term ROI through flexible configurations and high-level security analytics, indicating OpenText's cost-effectiveness advantage and Nucleus's deeper long-term value.
With security, it is always hard to quantify, and we did not really save money, but we used time more effectively and changed our way of working.
We have seen an absolutely clear return on investment in Nucleus Security, and it primarily shows up in massive time savings and vastly improved resource utilization.
Automation handles reporting on a scheduled basis and alerts system owners about their posture each week.
There is definitive ROI if OpenText Core Application Security is deployed properly; it substantially reduces efforts in securing the solution while averting various application-related risks.
I would describe Nucleus Security's customer support as absolutely fantastic.
Customer support is great; I have always had communication with executive leaders, been able to have roadmap calls, and talk with support.
Support tickets often stay open for one month to three months, which leads to customer frustration.
I had direct interaction with them, which facilitated how we onboarded Fortify.
The technical support from OpenText is very good.
The platform has done a great job of handling both stability and scalability excellently.
The scalability of Nucleus Security is fairly impressive; even when ingesting multiple assets, there is no noticeable impact.
If a customer wants to know the tools and the technology used for their application to scan their application, they provide less information on that.
OpenText Core Application Security is highly scalable; it is running on the cloud, and elasticity is one of the best points of a cloud environment.
Fortify is superior to many solutions because of its scalability and that it does not require massive compute capabilities for its SAST and sandboxing features.
We rarely, if ever, encounter downtime or performance degradation, even when the platform is running massive automation rules and background synchronization tasks during peak operational hours.
OpenText Core Application Security is stable and has minimal downtime, benefitting from AWS cloud availability.
Nucleus Security needs a better view into exposure management, as exposure management and attack path management are missing.
Having more intuitive step-by-step visualized wizards or guided templates for building complex triage workflows would make the onboarding process much smoother for new team members.
It could be integrated with SentinelOne, but it was not showing any SentinelOne alerts.
It would be beneficial if Fortify could check for CVEs (Common Vulnerabilities and Exposures) in third-party libraries, which I currently use a separate dependency checker tool for.
One thing I would highlight is if Fortify can focus more on the centralized dashboard of the tools because nowadays, tools such as SentinelOne also exist for identifying security issues, but they have a centralized dashboard that merges their cloud solution and application security side solution together.
I would say OpenText Core Application Security is not very user-friendly in terms of price; it is quite high.
The licensing model is straightforward, with one license across multiple assets for multiple connectors.
By centralizing everything, Nucleus Security has completely eliminated that friction and dramatically cut down on alert fatigue across our infrastructure and support teams because the platform prioritizes risk based on real-world threat intelligence.
The risk-based prioritization has helped my team focus on the most critical vulnerabilities by considering severity, asset context, and the remediation priorities.
The best features that Nucleus Security offers in my experience are the unified integrations with all of the different vulnerability management platforms.
Fortify helps me find serious issues, such as developers inadvertently leaving access tokens, including API access tokens, in the source code.
On demand you have two levels of reports: the first from the tool, which is the same as we can get from Fortify on-premises, and a next level reporting made by experts from OpenText, leading to a more condensed and precise report as level three.
Additionally, you can integrate Fortify in CICD pipeline, so you get real-time updates about the security issues in your pipeline.
| Product | Mindshare (%) |
|---|---|
| OpenText Core Application Security | 3.3% |
| Nucleus Security | 0.7% |
| Other | 96.0% |

| Company Size | Count |
|---|---|
| Small Business | 4 |
| Midsize Enterprise | 1 |
| Large Enterprise | 4 |
| Company Size | Count |
|---|---|
| Small Business | 18 |
| Midsize Enterprise | 8 |
| Large Enterprise | 46 |
Nucleus Security offers a scalable vulnerability management platform designed for effective risk reduction. By integrating with existing IT infrastructure, it enhances security measures and improves agility.
As a comprehensive security tool, Nucleus Security provides customizable vulnerability assessment, streamlined workflows, and integration capabilities with security tools to enhance threat detection and response. It's tailored for enterprises seeking an intuitive management platform that delivers actionable insights and increases efficiency. By leveraging robust automation and advanced analytics, the platform aids organizations in optimizing their cybersecurity posture.
What are the key features of Nucleus Security?In industries like healthcare, finance, and technology, Nucleus Security is implemented to address specific risks and compliance needs. It provides tailored solutions to safeguard sensitive data, manage regulatory pressures, and ensure robust threat detection. Industries benefit from its ability to adapt to sector-specific challenges while maintaining high security standards.
OpenText Core Application Security offers robust features like static and dynamic scanning, real-time vulnerability tracking, and seamless integration with development platforms, designed to enhance code security and reduce operational costs.
OpenText Core Application Security is a cloud-based, on-demand service providing accurate and deep scanning capabilities with detailed reporting. Its integrations with development platforms ensure an enhanced security layer in the development lifecycle, benefiting users by lowering operational costs and facilitating efficient remediation. The platform addresses needs for intuitive interfaces, API support, and comprehensive vulnerability assessments, helping improve code security and accelerate time-to-market. Despite its strengths, challenges exist around false positives, report clarity, and language support, alongside confusing pricing and package options. Enhancements are sought in areas like CI/CD pipeline configuration, report visualization, scan times, and integration with third-party tools such as GitLab, container scanning, and software composition analysis.
What features define OpenText Core Application Security?Industries like mobile applications, e-commerce, and banking leverage OpenText Core Application Security for its ability to identify vulnerabilities such as SQL injections. Integrating seamlessly with DevSecOps and security auditing processes, this tool supports developers in writing safer code, ensuring secure application deployment and enhancing software assurance.
We monitor all Application Security Tools reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.