Reviews from AWS Marketplace
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews

External reviews are not included in the AWS star rating for the product.
An efficient application to check vulnerability in the software
What do you like best about the product?
CheckMarx has been used an application to scan the applications to rectify vulnerability in the code and to check the security lapses. I have been using checkMarx to check the same in my .NET application and have found checkMarx to be great use. I would like to mention few good things about the same .
1.) It has support to many languages . In my case it can find the lapses in C#, Java script, J query , Typescript .
2.) The description is quite clear about the issues which makes it easier to understand the problem statement behind the security lapse.
3.) The online community present for CheckMarx is quite good which makes it easier to find the resolution
1.) It has support to many languages . In my case it can find the lapses in C#, Java script, J query , Typescript .
2.) The description is quite clear about the issues which makes it easier to understand the problem statement behind the security lapse.
3.) The online community present for CheckMarx is quite good which makes it easier to find the resolution
What do you dislike about the product?
Even though CheckMarx is quite helpful to check the security threats in the application code there are few things which can be improved by the CheckMarx team to make it more useful and efficient .
1.) There are many false positives which increase a lot of issues which in turn are required to marked as non exploitable
2.) Per user cost of CheckMarx subscription is high which makes it difficult for the small organisation to own it completely.
1.) There are many false positives which increase a lot of issues which in turn are required to marked as non exploitable
2.) Per user cost of CheckMarx subscription is high which makes it difficult for the small organisation to own it completely.
What problems is the product solving and how is that benefiting you?
I have been using CheckMarx in my organisation to find the code related issues in the .NET application. This has helped in a great way to re mediate the security lapses and refactor the code to make it more efficient.
Recommendations to others considering the product:
Use it to refactor the code of your application and re mediate the security lapses
- Leave a Comment |
- Mark review as helpful
Good and very useful sast tool
What do you like best about the product?
The report generated by this tool is comprehensive and easy to understand
It has good charts
It has good charts
What do you dislike about the product?
The report some times have false positives and duplication
What problems is the product solving and how is that benefiting you?
Performing security testing using this tool
The lightest and most complete static analysis tool with best place to fix
What do you like best about the product?
ease of deployment. Number of supported languages and best place to fix function.
What do you dislike about the product?
Too much detail in the report for small security shops.
What problems is the product solving and how is that benefiting you?
Fixed code flaws before deployment. Dramatically decreased rework and refactoring.
Recommendations to others considering the product:
Filter the final report by severity and concentrate on the most important issues first.
Great application for Software security
What do you like best about the product?
Results are pretty good with CheckMarx. This tool is helpful to build secure source code. CheckMarx scan report gives detailed view of each issue and flowchart is given for the variables which might cause security threat. Code scanning is fast.
What do you dislike about the product?
Sometimes reports generated by the CheckMarx scan contain lot of false positive issues even though code is designed in a way that ensures security. This decreases the readability of the reports.
What problems is the product solving and how is that benefiting you?
Sotware application is tested using CheckMarx.
Benefits:
1. Secure code development and best coding practices
2. Possible vulnerabilities and threats identification to assure software quality
3.
Benefits:
1. Secure code development and best coding practices
2. Possible vulnerabilities and threats identification to assure software quality
3.
Recommendations to others considering the product:
Great tool designed for security scan.
Great for finding overlooked or unthought of issues
What do you like best about the product?
I like the way that the checkmarx report provides a detailed account of al potential vulnerabilities and then provides examples of how the issue can be fixed. This is very helpful when it comes to trying to resolve all issues.
What do you dislike about the product?
As with anything automated, some issues that are found are just non-issues. We use several different security gating products like Checkmarx and I would say that it is less often incorrect than the others.
What problems is the product solving and how is that benefiting you?
We are making our application more secure and staying in the know about new threats and vulnerabilities.
Recommendations to others considering the product:
It is a good way to catch potential vulnerabilities in your code. With a large code base and many contributors this can be next to impossible if you rely on manual methods (ie. code review).
We use it for checking the test cases
What do you like best about the product?
Automation has been much more easier with the checkmarx
What do you dislike about the product?
Even if 1 test fails it shows the everything as failed
What problems is the product solving and how is that benefiting you?
Automation is the main purpose of our use.
Code quality using Checkmarx
What do you like best about the product?
It gives suggestions of technical issues correctly.
What do you dislike about the product?
Its a little confusing with existing code bases.
What problems is the product solving and how is that benefiting you?
Better code quality is obtained using Checkmarx.
Recommendations to others considering the product:
Better in finding code issues.
nice
What do you like best about the product?
providing the scan report in multiple formats
What do you dislike about the product?
integrating with build tools is not fun
What problems is the product solving and how is that benefiting you?
scanning the vulnerabilities in source code
Very easy to use tool for improving security
What do you like best about the product?
The tool uses your credentials to generate a report and that report is very comprehensive, yet very easy to understand, it makes very easy to solve potential security issues.
What do you dislike about the product?
The report generated by CheckMarx always contains a lot of false positives or duplicated positives, making it bigger than it should, although to be fair it would not be easy to develop a tool that analyses code so thoroughly without displaying a fair amount of duplicates.
What problems is the product solving and how is that benefiting you?
Performing security reviews of my project's code. It gives the user a comprehensive look into the potential security risks and the explanation of such risks which is helpfull for people like me who is not a security expert.
Best security tool
What do you like best about the product?
We used the tool to find security flaws in our software it helped us to find cross side scripting bugs in an easy way
What do you dislike about the product?
When we integrate with Jenkins the report sent by CheckMarx is not easily redable
What problems is the product solving and how is that benefiting you?
Security
Code Analysis
Cross side scripting
SQL injections
Code Analysis
Cross side scripting
SQL injections
showing 11 - 20