Try our new research platform with insights from 80,000+ expert users

Parasoft SOAtest vs PortSwigger Burp Suite Professional comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 8, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Parasoft SOAtest
Ranking in Static Application Security Testing (SAST)
28th
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
31
Ranking in other categories
Functional Testing Tools (20th), API Testing Tools (11th), Test Automation Tools (21st)
PortSwigger Burp Suite Prof...
Ranking in Static Application Security Testing (SAST)
6th
Average Rating
8.6
Reviews Sentiment
7.9
Number of Reviews
63
Ranking in other categories
Application Security Tools (8th), Fuzz Testing Tools (1st)
 

Mindshare comparison

As of May 2025, in the Static Application Security Testing (SAST) category, the mindshare of Parasoft SOAtest is 0.5%, up from 0.5% compared to the previous year. The mindshare of PortSwigger Burp Suite Professional is 2.0%, down from 2.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Static Application Security Testing (SAST)
 

Featured Reviews

Ajit Kumar Rout - PeerSpot reviewer
Good API testing and RIT feature; clarity could be improved
In general, this is a hassle free, user friendly tool and it doesn't require much knowledge if you're using the manual testing. Automated testing is also good but requires some knowledge in that field. It has some great features. It's a good tool compared to some of the other paid tools; input and output can be stored before extension and there is also a verification assessment that can be implemented by using some different methodologies inside the tool. If the licensing cost is suitable then I recommend this solution. If you have automation people with in-depth knowledge in coding that will be helpful. I rate this solution a seven out of 10.
Anuradha.Kapoor Kapoor - PeerSpot reviewer
Offers efficient scanning of entire websites but presence of false positive bugs, leading to time-consuming efforts in distinguishing real bugs from false alarms
We have found that so many times, false positive bugs are there, and then we spend a lot of time basically separating them from real bugs. So that's the reason we are looking for some other tool. So we were in discussion with Acunetix. Therefore, the false positive rate is, like, something that we would like to improve. What we are looking for is if this false positive rate goes down because we were OWASP Zap tool users, which was free anyway. But there were a lot of false positives there, and we used to spend a lot of time, like, for security reasons, reproducing those bugs for the development team to fix it. So then we thought, okay, why not we go with the tool? Even if it is not very expensive. But still, every year, we have to renew the license. And we got this tool. Again, we found that in this tool also, even if it is less, there are still a lot of false positive bugs out there. So we again have to spend so much time. So we hired a security tester, who was basically using Acunetix in his previous company for almost three years, and then you said that in that scanning is very slow. The scanning is also slow. Like, sometimes the site scan takes eight hours, six to eight hours. Yeah. And whereas in Acunetix, it took three to four hours. And plus, there are no false positives. I'm not saying none but there's very little. But here, the rate sometimes is very high. These are the two features I think we would like to improve further.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Generating new messages, based on the existing .EDN and .XML messages, is a crucial part or the testing project that I’m currently in."
"Every imaginable source in the entire world of information technology can be accessed and used."
"Since the solution has both command line and automation options, it generates good reports."
"The solution is scalable."
"Good write and read files which save execution inputs and outputs and can be stored locally."
"They have a feature where they can record traffic and create tests on the report traffic."
"Parasoft SOAtest has improved the quality of our automated web services, which can be easily implemented through service chaining and service virtualization."
"We have seen a return on investment."
"I have found the best features to be the performance and there are a lot of additional plugins available."
"Some of the extensions, available using Burp Extender, are also very good and we have found issues by using them."
"The intercepting feature is the most valuable."
"The reporting part is the most valuable. It also has very good features. We use almost all of the features for different kinds of customers and needs."
"The technical support from PortSwigger is excellent, managing response time and quality efficiently without any issues."
"The initial setup is simple."
"The solution scans web applications and supports APIs, which are the main features I really like."
"The feature that we have found most valuable is that it comes with pre-set configurations. They have a set of predefined options where you can pick one and start scanning. We also have the option of creating our own configurations, like how often do the applications need to be scanned."
 

Cons

"UI testing should be more in-depth."
"Tuning the tool takes time because it gives quite a long list of warnings."
"The performance could be a bit better."
"The summary reports could be improved."
"The feedback that we received from the DevOps of our organization was that the tool was a little heavy from the transformation perspective."
"Compatibility with HTTP 1.1 and TLS 1.2 needs to be improved."
"The product is very slow to start up, and that is a bit of a problem, actually."
"Reporting facilities can be better."
"There were a lot of false positives there, and we used to spend a lot of time, like, for security reasons, reproducing those bugs for the development team to fix it."
"We'd like to have more integration potential across all versions of the product."
"The vendor must provide documentation on how to use the new API feature."
"The Iran market does not have after-sales support. PortSwigger Burp Suite Professional needs to provide after-sales support."
"The pricing of the solution is quite high."
"PortSwigger Burp Suite Professional could improve the static code review."
"The use of system memory is an area that can be improved because it uses a lot."
"BurpSuite has some issues regarding authentication with OAT tokens that need to be improved."
 

Pricing and Cost Advice

"The price is around $5,000 USD."
"I think it would be a great step to decrease the price of the licenses."
"The license price is a little expensive, but it provides a better outcome in terms of the end-to-end automation process."
"The cost of Parasoft seems to have gotten higher with a projection that wasn't really stipulated for our company. They've done a tremendous job at negotiating those deals."
"We are completed satisfied with Parasoft SOAtest. The ROI is more than 95%."
"They do have a confusing licensing structure."
"It is an expensive product, so think carefully about whether it fits your purposes and is the right tool for you."
"From what I understand, Parasoft SOAtest isn't the cheapest option. But it has a lot to offer."
"PortSwigger Burp Suite Professional is an expensive solution."
"The price for the solution is expensive and could be cheaper. We pay an annual license and our team has several of them."
"Pricing is not very high. It was around $200."
"The pricing of the solution is reasonable. We only need to pay for the annual subscription. I rate the pricing five out of ten."
"We pay a yearly licensing fee for the solution, which is neither cheap nor expensive."
"It is a cheap solution, but it may not be cheaper than other solutions."
"I rate the pricing a four out of ten."
"PortSwigger is reasonably-priced. It's fair."
report
Use our free recommendation engine to learn which Static Application Security Testing (SAST) solutions are best for your needs.
850,028 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
24%
Manufacturing Company
16%
Computer Software Company
11%
University
5%
Computer Software Company
16%
Financial Services Firm
12%
Government
12%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Parasoft SOAtest?
Since the solution has both command line and automation options, it generates good reports.
What is your experience regarding pricing and costs for Parasoft SOAtest?
Parasoft SOAtest is expensive, but it was acquired because the company was dissatisfied with Quick Test Pro. The new management does not want subscription tools around, aiming for scripted tests us...
What needs improvement with Parasoft SOAtest?
One area that could use improvement is the cryptography capabilities in Parasoft SOAtest. It did not support enough of the protocols or cryptography formats we needed, which led us to create our ow...
Is OWASP Zap better than PortSwigger Burp Suite Pro?
OWASP Zap and PortSwigger Burp Suite Pro have many similar features. OWASP Zap has web application scanning available with basic security vulnerabilities while Burp Suite Pro has it available with ...
What do you like most about PortSwigger Burp Suite Professional?
The solution helped us discover vulnerabilities in our applications.
What is your experience regarding pricing and costs for PortSwigger Burp Suite Professional?
I find the price of PortSwigger Burp Suite Professional to be very cost-efficient.
 

Also Known As

SOAtest
Burp
 

Overview

 

Sample Customers

Charter Communications, Sabre, Caesars Entertainment, Charles Schwab, ING, Intel, Northbridge Financial, Capital Services, WoodmenLife
Google, Amazon, NASA, FedEx, P&G, Salesforce
Find out what your peers are saying about Parasoft SOAtest vs. PortSwigger Burp Suite Professional and other solutions. Updated: April 2025.
850,028 professionals have used our research since 2012.