Select your cookie preferences

We use essential cookies and similar tools that are necessary to provide our site and services. We use performance cookies to collect anonymous statistics, so we can understand how customers use our site and make improvements. Essential cookies cannot be deactivated, but you can choose “Customize” or “Decline” to decline performance cookies.

If you agree, AWS and approved third parties will also use cookies to provide useful site features, remember your preferences, and display relevant content, including relevant advertising. To accept or decline all non-essential cookies, choose “Accept” or “Decline.” To make more detailed choices, choose “Customize.”

Sign in
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Reviews from AWS Marketplace

0 AWS reviews
  • 5 star
    0
  • 4 star
    0
  • 3 star
    0
  • 2 star
    0
  • 1 star
    0

External reviews

35 reviews
from G2

External reviews are not included in the AWS star rating for the product.

Sort by
Filter by

    himanshu g.

An efficient application to check vulnerability in the software

  • August 25, 2019
  • Review provided by G2

What do you like best about the product?
CheckMarx has been used an application to scan the applications to rectify vulnerability in the code and to check the security lapses. I have been using checkMarx to check the same in my .NET application and have found checkMarx to be great use. I would like to mention few good things about the same .
1.) It has support to many languages . In my case it can find the lapses in C#, Java script, J query , Typescript .
2.) The description is quite clear about the issues which makes it easier to understand the problem statement behind the security lapse.
3.) The online community present for CheckMarx is quite good which makes it easier to find the resolution
What do you dislike about the product?
Even though CheckMarx is quite helpful to check the security threats in the application code there are few things which can be improved by the CheckMarx team to make it more useful and efficient .
1.) There are many false positives which increase a lot of issues which in turn are required to marked as non exploitable
2.) Per user cost of CheckMarx subscription is high which makes it difficult for the small organisation to own it completely.
What problems is the product solving and how is that benefiting you?
I have been using CheckMarx in my organisation to find the code related issues in the .NET application. This has helped in a great way to re mediate the security lapses and refactor the code to make it more efficient.
Recommendations to others considering the product:
Use it to refactor the code of your application and re mediate the security lapses


    Information Technology and Services

Good and very useful sast tool

  • June 27, 2019
  • Review provided by G2

What do you like best about the product?
The report generated by this tool is comprehensive and easy to understand
It has good charts
What do you dislike about the product?
The report some times have false positives and duplication
What problems is the product solving and how is that benefiting you?
Performing security testing using this tool


    Roman P.

The lightest and most complete static analysis tool with best place to fix

  • January 29, 2019
  • Review provided by G2

What do you like best about the product?
ease of deployment. Number of supported languages and best place to fix function.
What do you dislike about the product?
Too much detail in the report for small security shops.
What problems is the product solving and how is that benefiting you?
Fixed code flaws before deployment. Dramatically decreased rework and refactoring.
Recommendations to others considering the product:
Filter the final report by severity and concentrate on the most important issues first.


    Banking

Great application for Software security

  • October 23, 2018
  • Review provided by G2

What do you like best about the product?
Results are pretty good with CheckMarx. This tool is helpful to build secure source code. CheckMarx scan report gives detailed view of each issue and flowchart is given for the variables which might cause security threat. Code scanning is fast.
What do you dislike about the product?
Sometimes reports generated by the CheckMarx scan contain lot of false positive issues even though code is designed in a way that ensures security. This decreases the readability of the reports.
What problems is the product solving and how is that benefiting you?
Sotware application is tested using CheckMarx.
Benefits:
1. Secure code development and best coding practices
2. Possible vulnerabilities and threats identification to assure software quality
3.
Recommendations to others considering the product:
Great tool designed for security scan.


    Financial Services

Great for finding overlooked or unthought of issues

  • September 30, 2018
  • Review provided by G2

What do you like best about the product?
I like the way that the checkmarx report provides a detailed account of al potential vulnerabilities and then provides examples of how the issue can be fixed. This is very helpful when it comes to trying to resolve all issues.
What do you dislike about the product?
As with anything automated, some issues that are found are just non-issues. We use several different security gating products like Checkmarx and I would say that it is less often incorrect than the others.
What problems is the product solving and how is that benefiting you?
We are making our application more secure and staying in the know about new threats and vulnerabilities.
Recommendations to others considering the product:
It is a good way to catch potential vulnerabilities in your code. With a large code base and many contributors this can be next to impossible if you rely on manual methods (ie. code review).


    vidya vignan c.

We use it for checking the test cases

  • August 30, 2018
  • Review provided by G2

What do you like best about the product?
Automation has been much more easier with the checkmarx
What do you dislike about the product?
Even if 1 test fails it shows the everything as failed
What problems is the product solving and how is that benefiting you?
Automation is the main purpose of our use.


    Shebin P.

Code quality using Checkmarx

  • August 11, 2018
  • Review provided by G2

What do you like best about the product?
It gives suggestions of technical issues correctly.
What do you dislike about the product?
Its a little confusing with existing code bases.
What problems is the product solving and how is that benefiting you?
Better code quality is obtained using Checkmarx.
Recommendations to others considering the product:
Better in finding code issues.


    Marketing and Advertising

nice

  • July 30, 2018
  • Review provided by G2

What do you like best about the product?
providing the scan report in multiple formats
What do you dislike about the product?
integrating with build tools is not fun
What problems is the product solving and how is that benefiting you?
scanning the vulnerabilities in source code


    Martin D.

Very easy to use tool for improving security

  • January 18, 2018
  • Review provided by G2

What do you like best about the product?
The tool uses your credentials to generate a report and that report is very comprehensive, yet very easy to understand, it makes very easy to solve potential security issues.
What do you dislike about the product?
The report generated by CheckMarx always contains a lot of false positives or duplicated positives, making it bigger than it should, although to be fair it would not be easy to develop a tool that analyses code so thoroughly without displaying a fair amount of duplicates.
What problems is the product solving and how is that benefiting you?
Performing security reviews of my project's code. It gives the user a comprehensive look into the potential security risks and the explanation of such risks which is helpfull for people like me who is not a security expert.


    Raju K.

Best security tool

  • January 12, 2018
  • Review provided by G2

What do you like best about the product?
We used the tool to find security flaws in our software it helped us to find cross side scripting bugs in an easy way
What do you dislike about the product?
When we integrate with Jenkins the report sent by CheckMarx is not easily redable
What problems is the product solving and how is that benefiting you?
Security
Code Analysis
Cross side scripting
SQL injections