Developer-Centric Enterprise DAST with Auto Remediation (STAR)
Bright SecurityReviews from AWS customer
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
29 reviews
from
External reviews are not included in the AWS star rating for the product.
Straightforward but flexible DAST
What do you like best about the product?
Bright allows teams with little-to-none AppSec training to conduct thourough scans and track issues and fixes in apps lifecycle.
What do you dislike about the product?
Sometimes error in the scanned app or in bright engine are not always fully understandable, sometimes requiring support assistance.
What problems is the product solving and how is that benefiting you?
Lack of highly skilled, on-demand AppSec professionals for every mission or app.
Streamline appsec tests with ci/cd integration.
This allows more flexibility and availability of security scans
Streamline appsec tests with ci/cd integration.
This allows more flexibility and availability of security scans
Bright Security Review
What do you like best about the product?
I find that the best thing is the support, always attentive to our requests and supporting in finding solutions. I would also like to mention the features available, which let us cover efficiently our needs.
What do you dislike about the product?
I am completely satisfied with Bright Security: no issues.
What problems is the product solving and how is that benefiting you?
Bright Security helps us having a good grasp on the security posture of the internet-facing infrastructure.
Bright DAST for scanning web applications
What do you like best about the product?
Were able to find vulnerabilities which other DASTs couldn't
Different authentication methods are supported and can be configured in a convenient way
Good support, very helpful and make sure every issue is being solved
Different authentication methods are supported and can be configured in a convenient way
Good support, very helpful and make sure every issue is being solved
What do you dislike about the product?
Crawling and scans can sometimes take long time.
What problems is the product solving and how is that benefiting you?
Automate security vulnerabilities identification
Best DAST Tool
What do you like best about the product?
Ease of use, easy to understand and very user friendly.
What do you dislike about the product?
Due to configuration changes or such from the Brightside often times the scan fails with no apparent reason.
What problems is the product solving and how is that benefiting you?
DAST is often looked down upon many organisations but with Brightsec it is easier to justify the importance of having a DAST scan for every release. Its preciseness in identifying vulnerabilities helps in confirming the True Positive.
A great experience
What do you like best about the product?
Bright Security is really simple to use. The cloud interface consents to perform high quality scan e to receive detailed reports. The repeater integration complete the features.
The scan engine consents to perform high frequency of use scan without loss of performance.
In Bright security i can appreciate the customer support quality.
The scan engine consents to perform high frequency of use scan without loss of performance.
In Bright security i can appreciate the customer support quality.
What do you dislike about the product?
The online guide, pheraps is too long, with few examples to perform an ease to implementation in some features (for example the repeater)
What problems is the product solving and how is that benefiting you?
Bright security helps me to assure a formerly correct security governance activity
DAST in the hands of Programmers
What do you like best about the product?
It is a general wisdom that DAST works starting at the Build phase, no later. Yet Bright Secuirty enables DAST as early as at Unit/Programming phase. It is a Shift-Left implementation for DAST in its best. Bright enables developers to run DAST at the earliest phase, when remediation is the least expensive and the easiest. DevOps personnel can use Bright’s DAST as often as necessary until it is ensured that the application if vulnerability-free.
What do you dislike about the product?
Bright has a complete set of DAST capabilities, including – we should underscore it – an API Secuirty Testing. We would only wish only that Bright, as vendor, added to its portfolio some sister-technologies, such as SCA and SAST
What problems is the product solving and how is that benefiting you?
Detecting vulnearbilities earkly in the software lifecycle
DAST that actually works and built for modern development and security teams
What do you like best about the product?
I have been collaborating with Bright Security since the early days of the company. The vision was always aligned to solve a major AppSec problem - creating a tool that can perform active security to tests in order to detect vulnerabilities as early as possible before shipped to production, decreasing penetration testing scope which has a significant cause, and embeding these capabilities in to high scale security environments.
After a long journey I can now say they achieved all these goals. No other DAST integrates smoother than Bright on high scale development environments.
After a long journey I can now say they achieved all these goals. No other DAST integrates smoother than Bright on high scale development environments.
What do you dislike about the product?
Some UI Changes are required to make configuration more coherent.
What problems is the product solving and how is that benefiting you?
Instead of spending enormous amounts of budgets on penetration tests - some of our customers have been able to reduce the necessity of full blown PT's by providing most detection for the same vulnerabilities using Bright's solution. Providing beneficial and easy-to-use capabilities for developers on their common platform is a game changer.
I'm really impressed by the speed at which Bright is implementing new technologies.
What do you like best about the product?
It is a solution that consistently introduces new features ahead of other DAST solutions. It has recently announced integrations with two SAST solutions (correlates SAST and DAST) and one API security solution.
It offers the possibility of integration in various phases of the SDLC, including the early stages.
I know that some new features were implemented because Bright listens to its customers' needs.
It offers the possibility of integration in various phases of the SDLC, including the early stages.
I know that some new features were implemented because Bright listens to its customers' needs.
What do you dislike about the product?
Some configurations settings are not so easy to find, especially when you are just starting to use Bright.
What problems is the product solving and how is that benefiting you?
Security and availability in the deployed web applications
Easy setup
What do you like best about the product?
Testing & remediation guidelines
Increased velocity of releases
Iterative scanning in SDLC
Minimal false positives
Depending on the framework, we can cover OWASP top 10, OWASP API top 10, MITRE 25, etc. at the unit testing level
Automatically receive remediation suggestions
Increased velocity of releases
Iterative scanning in SDLC
Minimal false positives
Depending on the framework, we can cover OWASP top 10, OWASP API top 10, MITRE 25, etc. at the unit testing level
Automatically receive remediation suggestions
What do you dislike about the product?
Difficulty performing exclusions in the crawler
What problems is the product solving and how is that benefiting you?
Automatedly identify vulnerabilities at runtime
Faster and fully integrated into the pipeline
What do you like best about the product?
Broad testing coverage, business logic vulnerabilities including LLM testing, simplified configurations,
fast scans, efficient support.
fast scans, efficient support.
What do you dislike about the product?
API security needs some improvements in schema handling to become more efficient and add new authentication objects.
What problems is the product solving and how is that benefiting you?
Contributes significantly throughout the SDLC, increasing shift-left operational performance.
showing 11 - 20