SonarQube vs Trend Vision One - Cloud Security comparison

Cancel
You must select at least 2 products to compare!
Sonar Logo
53,062 views|42,321 comparisons
80% willing to recommend
Trend Micro Logo
375 views|108 comparisons
100% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between SonarQube and Trend Vision One - Cloud Security based on real PeerSpot user reviews.

Find out in this report how the two Application Security Tools solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed SonarQube vs. Trend Vision One - Cloud Security Report (Updated: March 2024).
769,479 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"It's enabled us to improve software quality and help us to disseminate best practices.""We have worked with the support from SonarQube and we have had good experiences.""SonarQube is scalable. My company has 50 users.""The most valuable features are that it is user-friendly, easy to access, and they provide good training files.""The most valuable function is its usability.""Provides local scanning for developers.""The most valuable features are the segregation containment and the suspension of product services.""SonarQube is designed well making it easy to use, simple to identify issues and find solutions to problems."

More SonarQube Pros →

"The the most valuable feature is the scanning engine. It does not impact server performance. It's very lightweight.""The stability is quite good.""The perfect package for all security platforms, providing more than any other endpoint solution.""Trend Vision One - Cloud Security's best features are security analysis, remote access security, and driver security.""The security is good.""Detection response and cloud conformity are valuable features.""The product helps us understand our environment better.""I like the conformity and workload security modules. Workload security is all about intrusion detection and prevention. Trend Vision One - Cloud Security has behavioral rules that are auto-populated based on organizational structure. That's one aspect that we liked most."

More Trend Vision One - Cloud Security Pros →

Cons
"The solution could improve by providing more advanced technologies.""Technical support and the price could be better.""We could use some team support, but since we are using the community version, it's not available.""It should be user-friendly.""The implementation of the solution is straightforward. However, we did have some initial initialization issues at the of the projects. I don't think it was SonarQube's fault. It was the way it was implemented in our organization because it's mainly integrated with many software, such as Jira, Confluence, and Butler.""The product's user documentation can be vastly improved.""The solution could improve the management reports by making them easier to understand for the technical team that needs to review them.""For improvement, this solution could be offered on Docker and the cloud and the support for this solution could be improved. Customizing rules could also be made simpler."

More SonarQube Cons →

"Documentation on cloud architecture and job architecture would be helpful.""The initial setup can be complex for the inexperienced.""Trend Vision One - Cloud Security seems to have a preference for AWS Cloud over Azure and would be improved by focusing equally on both.""There are also some loopholes because it's a new product that they have recently migrated to the cloud. We do see some issues with the policies we have assigned when it comes to a particular account. There are some issues with system support, such as a particular server kernel version that is not supported.""The product could use a little bit of automation.""Securing S3 using Trend Vision One - Cloud Security can cost too much. Trend Vision One - Cloud Security has a tool that requires lots of privileges. From my understanding, it's only for static application testing, so they need to add dynamic application testing, and there should be more collaboration with the application testing tools on the market. We have not used this product, and I don't know if they plan to decommission it or something. They should focus on application security because this tool's unique feature is multi-cloud support. However, they should improve integration with tools for these kinds of use cases, especially application security and dynamic scanning. For example, I would like it to support Dell SecureOps. I'd also like to see some enhancements to API gateway security.""Trend Vision One - Cloud Security could improve connections with different types of authentication and user groups concerning cloud services.""The local agent should be able to show more logs. At present, the logs are only available from the web console and not from the local agent."

More Trend Vision One - Cloud Security Cons →

Pricing and Cost Advice
  • "This is open source."
  • "We did not purchase a license (required for C++ support), but this option was considered."
  • "Get the paid version which allows the customized dashboard and provides technical support."
  • "People can try the free licenses and later can seek buying plugins/support, etc. once they started liking it."
  • "This product is open source and very convenient."
  • "The licence is standard open source licensing"
  • "The price point on SonarQube is good."
  • "Some of the plugins that were previously free are not free now."
  • More SonarQube Pricing and Cost Advice →

  • "It's a slightly expensive product."
  • "Pricing for Trend Micro Cloud One Container Security in the corporate market is okay."
  • "The is price is 25% cheaper than it was a couple of years ago, which is good."
  • "The price could be lower. That is a bit of a consideration."
  • "The pricing for Cloud One is reasonable because my costs scale up and down based on my infrastructure usage."
  • "With everything I deal with, Trend Micro Cloud One's pricing is somewhere in the middle."
  • "One year ago, Trend transitioned to a credit system for licensing, which has confused users."
  • More Trend Vision One - Cloud Security Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Application Security Tools solutions are best for your needs.
    769,479 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:I am not very familiar with SonarQube and their solutions, so I can not answer But if you are asking me about which tools that are the best for for Static Code Analysis, I suggest you have  a look… more »
    Top Answer:SonarQube is easy to deploy and configure, and also integrates well with other tools to do quality code analysis. SonarQube has a great community edition, which is open-source and free. Easy to use… more »
    Top Answer:We researched Coverity, but in the end, we chose SonarQube. SonarQube is a tool for reviewing code quality and security. It helps to guide our development teams during code reviews by providing… more »
    Top Answer:The the most valuable feature is the scanning engine. It does not impact server performance. It's very lightweight.
    Top Answer:The is price is 25% cheaper than it was a couple of years ago, which is good.
    Top Answer:The local agent should be able to show more logs. At present, the logs are only available from the web console and not from the local agent.
    Ranking
    Views
    53,062
    Comparisons
    42,321
    Reviews
    18
    Average Words per Review
    358
    Rating
    8.1
    Views
    375
    Comparisons
    108
    Reviews
    14
    Average Words per Review
    1,092
    Rating
    8.6
    Comparisons
    Also Known As
    Sonar
    Trend Micro Cloud One , Cloud One Workload Security, Trend Micro Cloud One Container Security, Trend Micro Cloud One Application Security, Cloud One File Storage Security, Cloud One Network Security, Cloud One Conformity
    Learn More
    Interactive Demo
    Overview

    SonarQube is a self-managed open-source platform that helps developers create code devoid of quality and vulnerability issues. By integrating seamlessly with the top DevOps platforms in the Continuous Integration (CI) pipeline, SonarQube continuously inspects projects across multiple programming languages, providing immediate status feedback while coding. SonarQube’s quality gates become part of your release pipeline, displaying pass/fail results for new code based on quality profiles you customize to your company standards. Following Sonar’s Clean as You Code methodology guarantees that only software of the highest quality makes it to production.

    At its core, SonarQube includes a static code analyzer that identifies bugs, security vulnerabilities, hidden secrets, and code smells. The platform guides you through issue resolution, fostering a culture of continuous improvement. SonarQube’s comprehensive reporting is a valuable tool for dev teams to monitor their codebase's overall health and quality across multiple projects in their portfolio. With SonarQube, you can achieve a state of Clean Code, leading to secure, reliable, and maintainable software.

    Sonar is the only solution combining the power of industry-leading software quality analysis with static application security testing (SAST) and real-time coding guidance in the IDE (with SonarLint) to meet the DevOps and DevSecOps demand of putting agility, automation, and security in the hands of developers. Further accelerate DevOps continuous integration by helping developers find and fix issues in code before the software testing stage, reducing the churn of finding, fixing, rebuilding, and retesting your app.

    With over 5,000 Clean Code rules, SonarQube analyzes 30+ of the most popular programming languages, including dozens of frameworks, the top DevOps platforms (GitLab, GitHub, Azure DevOps, and Bitbucket, and more), and the leading infrastructure as code (IaC) platforms.

    SonarQube is the most trusted static code analyzer used by over 7 million developers and 400,000 organizations globally to clean over half a trillion lines of code.

    Trend Vision One- Cloud Security Security provides comprehensive cloud security, threat protection, and compliance monitoring. Users commend its advanced features, ease of use, and strong performance in keeping digital assets safe. The platform improves efficiency and productivity for organizations while offering excellent customer support.

    Sample Customers
    * **ABN AMRO** * **Accenture** * **Acer** * **Adidas** * **Aetna** * **AIG** * **Air France-KLM** * **Airtel** * **Allianz** * **Amazon** * **American Express** * **Amadeus** * **Aon** * **Apple** * **AT&T** * **Audi** * **Aviva** * **Bank of America** * **Bank of China** * **Bank of Montreal** * **Barclays** * **Bayer** * **Berkshire Hathaway** * **BNP Paribas** * **Boeing** * **BT** * **Cadbury** * **Carrefour** * **Caterpillar** * **Cisco** * **Coca-Cola** * **Comcast** * **ConocoPhillips** * **Credit Suisse** * **Danone** * **Dell** * **Deutsche Bank** * **Disney** * **Eni** * **Ericsson** * **ExxonMobil** * **FedEx** * **Fiat Chrysler** * **Ford** * **Freescale** * **GE** * **Google** * **H&M** * **Honda** * **Honeywell** * **HSBC** * **IBM** * **Intel** * **JPMorgan Chase** * **Kellogg's** * **Konica Minolta** * **L'Oréal** * **LVMH** * **Mastercard** * **McDonald's** * **Merck** * **MetLife** * **Microsoft** * **Mitsubishi** * **Nissan** * **Nike** * **Nokia** * **Oracle** * **Panasonic** * **PepsiCo** * **Philip Morris** * **Prudential** * **Qualcomm** * **Rakuten** * **Renault** * **SAP** * **Samsung** * **Santander** * **Schneider Electric** * **Siemens** * **Sony** * **Spotify** * **Starbucks** * **Tesla** * **Toyota** * **Unilever** * **Visa** * **Vodafone** * **Walmart** * **WeWork** * **Western Digital** * **WPP** * **Xerox** * **Yamaha** * **Zara**
    Top Industries
    REVIEWERS
    Computer Software Company30%
    Financial Services Firm21%
    Manufacturing Company7%
    Comms Service Provider7%
    VISITORS READING REVIEWS
    Financial Services Firm17%
    Computer Software Company15%
    Manufacturing Company11%
    Government6%
    REVIEWERS
    Government13%
    Retailer13%
    Computer Software Company13%
    Hospitality Company13%
    VISITORS READING REVIEWS
    Educational Organization27%
    Computer Software Company14%
    Financial Services Firm6%
    Energy/Utilities Company5%
    Company Size
    REVIEWERS
    Small Business25%
    Midsize Enterprise16%
    Large Enterprise59%
    VISITORS READING REVIEWS
    Small Business17%
    Midsize Enterprise13%
    Large Enterprise70%
    REVIEWERS
    Small Business53%
    Midsize Enterprise16%
    Large Enterprise32%
    VISITORS READING REVIEWS
    Small Business22%
    Midsize Enterprise35%
    Large Enterprise43%
    Buyer's Guide
    SonarQube vs. Trend Vision One - Cloud Security
    March 2024
    Find out what your peers are saying about SonarQube vs. Trend Vision One - Cloud Security and other solutions. Updated: March 2024.
    769,479 professionals have used our research since 2012.

    SonarQube is ranked 1st in Application Security Tools with 110 reviews while Trend Vision One - Cloud Security is ranked 12th in Application Security Tools with 17 reviews. SonarQube is rated 8.0, while Trend Vision One - Cloud Security is rated 8.6. The top reviewer of SonarQube writes "Easy to integrate and has a plug-in that supports both C and C++ languages". On the other hand, the top reviewer of Trend Vision One - Cloud Security writes "We can quickly deploy cloud conformity, provides good visibility, and control". SonarQube is most compared with Checkmarx One, SonarCloud, Coverity, Veracode and Snyk, whereas Trend Vision One - Cloud Security is most compared with Microsoft Defender for Cloud, AWS GuardDuty, Check Point Harmony Email & Collaboration, Prisma Cloud by Palo Alto Networks and Orca Security. See our SonarQube vs. Trend Vision One - Cloud Security report.

    See our list of best Application Security Tools vendors.

    We monitor all Application Security Tools reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.