Try our new research platform with insights from 80,000+ expert users

OpenText Dynamic Application Security Testing vs Qualys Web Application Scanning comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

OpenText Dynamic Applicatio...
Average Rating
7.2
Reviews Sentiment
6.8
Number of Reviews
22
Ranking in other categories
Dynamic Application Security Testing (DAST) (3rd), DevSecOps (10th)
Qualys Web Application Scan...
Average Rating
7.8
Reviews Sentiment
6.3
Number of Reviews
39
Ranking in other categories
Application Security Tools (13th), Static Application Security Testing (SAST) (9th)
 

Mindshare comparison

While both are Application Lifecycle Management solutions, they serve different purposes. OpenText Dynamic Application Security Testing is designed for Dynamic Application Security Testing (DAST) and holds a mindshare of 18.1%, down 22.7% compared to last year.
Qualys Web Application Scanning, on the other hand, focuses on Application Security Tools, holds 2.2% mindshare, up 2.0% since last year.
Dynamic Application Security Testing (DAST)
Application Security Tools
 

Featured Reviews

Navin N - PeerSpot reviewer
Effective scanning of diverse file extensions with fast reporting and issue resolution
We develop software packages for clients, and these clients are mostly in the BFSI sector. The packages need to be scanned, and we engage Fortify WebInspect for this.  Customers typically perform their own application pen tests, but in some cases, we have engagements where customers want us to scan…
Kelvin Oladipo - PeerSpot reviewer
User-friendly scanning provides valuable vulnerability insights, but pricing improvements are needed
Qualys Web Application Scanning ( /products/qualys-web-application-scanning-reviews ) is user-friendly, easy to understand, easy to use, and easy to deploy. Credential scanning is very effective because it goes in-depth into the system, crawling the pages, and reporting on vulnerabilities. The product helps by providing options for remediating vulnerabilities it finds, making it really useful.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Fortify WebInspect is a scalable solution, it is good for a lot of applications."
"Reporting, centralized dashboard, and bird's eye view of all vulnerabilities are the most valuable features."
"The feature that has been most influential in identifying vulnerabilities is its ability to crawl the website, understand the structure, and analyze the network packets sent and received."
"The most valuable feature of this solution is the ability to make our customers more secure."
"The solution is able to detect a wide range of vulnerabilities. It's better at it than other products."
"I'm sorry, but there is no review content provided to extract a quote from."
"It is scalable and very easy to use."
"Good at scanning and finding vulnerabilities."
"Its most valuable features are patch management, vulnerability management, and PCI compliance."
"​We have experienced quick customer support. They have a complete list of our previous issues along with our history, which makes it faster for them to solve issues.​"
"Qualys Web Application Scanning is accurate and provides minimal false positives."
"It is a good product for website penetration testing to detect vulnerabilities."
"​QualysGuard web-based scanner is very useful for performing external penetration and PCI scans from remote locations.​"
"​This product is designed for easy scalability and can easily scale up ​without major challenges."
"I have found the detection of vulnerabilities tool thorough with good results and the graphical display output to be wonderful and full of colors. It allows many types of outputs, such as bar and chart previews."
"Licensing is the most valuable. Qualys provides the best licensing for companies. It is the best product for the development purposes of web applications. The product has a lot of integrations."
 

Cons

"It took us between eight and ten hours to scan an entire site, which is somewhat slow and something that I think can be improved."
"There are some file extensions, like .SER, that Fortify WebInspect doesn't scan."
"Fortify WebInspect could improve user-friendliness. Additionally, it is very bulky to use."
"A localized version, for example, in Korean would be a big improvement to this solution."
"Lately, we've seen more false negatives."
"The initial setup was complex."
"I would like WebInspect's scanning capability to be quicker."
"The main area for improvement in Fortify WebInspect is the price, as it is too high compared to the market rate."
"There should be better visibility into the application."
"The product's pricing could be better."
"They should try to include business logic vulnerabilities in the scanner testing."
"There could be better management and faster scanning."
"The software’s pricing could be improved."
"In certain cases, this product does have false positives, which the company should work on."
"The pricing does not seem to be competitive."
"The reporting contains too many false positives."
 

Pricing and Cost Advice

"Its price is almost similar to the price of AppScan. Both of them are very costly. Its price could be reduced because it can be very costly for unlimited IT scans, etc. I'm not sure, but it can go up to $40,000 to $50,000 or more than that."
"Our licensing is such that you can only run one scan at a time, which is inconvenient."
"Fortify WebInspect is a very expensive product."
"The pricing is not clear and while it is not high, it is difficult to understand."
"This solution is very expensive."
"The price is okay."
"It’s a fair price for the solution."
"​It is best to be an institutional buyer and directly contact the sales team, as they can provide over-the-top discounts for bulk orders​."
"The cost is $30,000 USD for one year to cover WAS (Web Application Security) and the VM (Virtual Machine) security in a company with 200 employees."
"We normally purchase an annual license."
"Qualys Web Application Scanning's pricing is a bit expensive compared to other solutions available in the market."
"Qualys WAS' pricing is competitive."
"The product has a very good licensing model."
"Pricing was reasonable and competitive. It was not too far above the other products."
"Try the free trial of the product to understand the basic working mechanisms.​"
report
Use our free recommendation engine to learn which Dynamic Application Security Testing (DAST) solutions are best for your needs.
864,574 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
15%
Government
15%
Manufacturing Company
13%
Computer Software Company
10%
Computer Software Company
15%
Financial Services Firm
14%
Manufacturing Company
11%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Fortify WebInspect?
The solution's technical support was very helpful.
What is your experience regarding pricing and costs for Fortify WebInspect?
The price of Fortify WebInspect is high, with the cost depending on the number of virtual users. It is approximately 25% higher than other solutions.
What needs improvement with Fortify WebInspect?
The main area for improvement in Fortify WebInspect is the price, as it is too high compared to the market rate. The cost of the license depends on the number of virtual users and, in comparison to...
What do you like most about Qualys Web Application Scanning?
The vulnerability management feature is a strong one. And also the patch management feature.
What needs improvement with Qualys Web Application Scanning?
I would like it to be cheaper because it is a bit expensive compared to competitors like Tenable Nessus ( /products/tenable-nessus-reviews ). After using the product for a year, I might have more s...
 

Also Known As

Micro Focus WebInspect, WebInspect
Qualys WAS
 

Overview

 

Sample Customers

Aaron's
BskyB, Cartagena, ClearPoint Learning Systems, Connect Group, du, Fortrex Technologies, HBOR, HDI, Highlights for Children, The Lithuanian State Enterprise Centre of Registers, City of Miami Beach, Microsoft, MidlandHR, MSCI Inc., Northern Arizona University, Ofgem, Olympus Europa, PhoneFactor, RTL Nederland, ThousandEyes, VGZ Organisatie B.V.
Find out what your peers are saying about OpenText Dynamic Application Security Testing vs. Qualys Web Application Scanning and other solutions. Updated: May 2022.
864,574 professionals have used our research since 2012.