Try our new research platform with insights from 80,000+ expert users

Veracode False-Positive Rate

What is your impression of the solution’s false-positive rate? Please explain.

SA
Manager IT at a tech company with 201-500 employees
We see a few false positives in Veracode but not many. It's negligible.
View full review »
Robert Hood - PeerSpot reviewer
Information Security Architect at a tech vendor with 5,001-10,000 employees
Veracode's false positive rate is very low based on what we have found.
View full review »
Boyapati Sivannarayana - PeerSpot reviewer
Devops Engineer at Accenture
The false positive rate we haven't really looked into. We need to learn more about it.
View full review »
Oluseyi Osifalujo - PeerSpot reviewer
Executive Director at Precise Financial Systems Limited
At first, we experienced a high number of false positives, but the Veracode team provided guidance that enabled us to significantly reduce the count.
View full review »
reviewer1699062 - PeerSpot reviewer
Sales Engineer at a computer software company with 51-200 employees
Veracode has the lowest false positive rate in the market. Its results are accurate. In some cases, it is very difficult to see a false positive. We report it to the engineers, and they analyze it. If it is truly a false positive, the engineers will update the engine to provide better results at the next scan. The false positive rate of the static analysis has not affected the time we spend on tuning policies.
View full review »
Arnab Paul - PeerSpot reviewer
Cyber Security Consultant at a consultancy with 10,001+ employees
After the scanning is completed, with other solutions from a DAST perspective, we would receive a report. If there are any false positives, we would have to identify them ourselves. However, with Veracode, one of their engineers or a support team member will verify the information, which helps to minimize the number of false positives.
View full review »
RB
Security Analyst at a insurance company with 10,001+ employees
When it comes to visibility, I am not sure whether it is through Veracode, but we have our pipelines built on Azure. We do get to see whenever a scan is kicked off and whether the Veracode check has passed. There is no direct visibility in Veracode apart from the dashboard, which does have information about what type of scan has been performed and whether it is a policy sandbox or just a testing sandbox.
View full review »
Devid William - PeerSpot reviewer
Application Security Coordinator at Banco Votorantim
There are very few false positives. I'd rate the false positive rate as nine out of ten. It's very good. It's very positive on developer confidence.
View full review »
SM
Security Analyst at a tech services company with 11-50 employees
The false positives depend on the code. Veracode provides around 5% false positives.
View full review »
AU
CEO at CareerCraftly
The false positive rate is quite low, which is critical.
View full review »
PB
ML engineer at a consultancy with 10,001+ employees
The false positive rate of static analysis can affect the time spent on tuning policies. It took at least one day for me to raise that mitigation and approval ticket to look into it.
View full review »
Pradeep Kumar. - PeerSpot reviewer
Founder and Director at Bizcarta Technologies India Pvt Ltd
The product's false-positive rate is low.
View full review »
Alex Fuglaar - PeerSpot reviewer
Manager at a financial services firm with 1,001-5,000 employees
When it comes to eliminating false positives, you're never going to have 100%. While it did introduce a little frustration, what did remediate that was the explanations that the software provided.
View full review »
GR
System Engineer at a tech vendor with 10,001+ employees
Veracode's false positive rate is low.
View full review »
Alice William - PeerSpot reviewer
Senior Web Developer at a insurance company with 1,001-5,000 employees
I recently encountered a Veracode false positive, but we immediately mitigated it on our end. Veracode also filed the case and will include it in their code to mark it as a false positive. We took action after that.
View full review »
reviewer2296401 - PeerSpot reviewer
CyberSec professional at a manufacturing company with 5,001-10,000 employees
We can see that false positives are quite low, around five to ten percent.
View full review »
PavanKumar18 - PeerSpot reviewer
Senior Testing Engineer at TollPlus LLC.
We don't have many false positives. We're using the tool's default rules and haven't done much customization. We can feel confident in the solution's results.
View full review »