HCL AppScan vs. IBM Spectrum Accelerate

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
HCL AppScan
Score 5.1 out of 10
N/A
AppScan (formerly Rational AppScan) is an application security testing solution acquired by HCL Technologies from IBM in late 2018. Appscan supports both dynamic (DAST) and static (SAST) application security testing.N/A
IBM Spectrum Accelerate
Score 9.0 out of 10
N/A
IBM Spectrum Accelerate is an enterprise software defined block storage solution.N/A
Pricing
HCL AppScanIBM Spectrum Accelerate
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
HCL AppScanIBM Spectrum Accelerate
Free Trial
YesNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
HCL AppScanIBM Spectrum Accelerate
User Ratings
HCL AppScanIBM Spectrum Accelerate
Likelihood to Recommend
8.3
(0 ratings)
9.0
(0 ratings)
User Testimonials
HCL AppScanIBM Spectrum Accelerate
Likelihood to Recommend
I would say that HCL AppScan is very simple to understand and use since it uses a user-friendly interface and the terminologies that are used in the interface of the application is very clear. We can automate a scan with any third party like Jenkins. The fact, I don't like is the time takes to execute the application, it should be better.
Read full review
An IBM Spectrum Accelerate system requires sufficient physical connectivity with 10-Gigabit Ethernet (10 GigE) connections. Virtual networking switches must be associated with the physical network and the virtual network ports. In addition, it is highly recommended to provide multiple physical network device connections to each IBM Spectrum Accelerate module for network redundancy in case of network device failure.1. Distributed RAID2. Easy Tier3. Comrpession4. Storage Pool Balancing.
Read full review
Pros
  • AppScan works well in finding application vulnerabilities such as SQL injection, cross-site scripting and all of the OWASP top 10.
  • Flexible reporting allows us to generate executive reports for application owners as well as separate technical reports for developers and system engineers.
  • Technical reports include remediation information and cross reference CVSS scores
  • Because it maintains data on all repeated assessments it helps us to do trending and metrics on compliance
Read full review
  • Performance
  • Agility
  • Reliability
  • Multi-tenancy
Read full review
Cons
  • The functions you want, the points that are difficult to understand.
  • Issues presented in the vulnerability diagnostic report may not be fully explained and not well understood.
  • You may think it is very basic and natural, "diagnose screen after login" "diagnose according to input transition ⇒ confirmation ⇒ completion" but to do all this, you need regular expressions, and macros, there are many products that require you to write scripts.
Read full review
  • Once it is successfully deployed, the XIV technology software-defined storage solution – namely IBM Spectrum Accelerate – is reasonably easy to operate, manage, monitor, and maintain.
  • As a virtual appliance application, IBM Spectrum Accelerate must run on a VMware ESXi hypervisor. Consequently, the planning must necessarily encompass different ESXi environment aspects, including network, storage, virtual machine resources, and general cluster configuration.
Read full review
Alternatives Considered
When we used Veracode, it takes a-lot of time to run a source code analysis. It's user interface is also bit clumsy. So we switched to HCL AppScan. It enables enterprises to scan internal and external applications for vulnerabilities. It provides quick and easy access to the most updated security guidelines by scanning applications against the OWASP Top 10 vulnerabilities.
Read full review
The most important feature is the robustness; it is always online, apart from allowing us to unify our file and database storage.
Read full review
Return on Investment
  • Reduced manual effort by 20-30%
  • Integrate 3-4 security solutions with other tools in the system
  • prevent sql injection attacks in our business
Read full review
  • Positive: Unify file and database Storage
  • Positive: agility
  • Negative: the implementation was not easy
  • Negative: doesn't integrate as well with Veeam
Read full review
ScreenShots

HCL AppScan Screenshots

Screenshot of Cloud Security: AppScan will scan Docker containers and container images to ensure that third party components have not introduced vulnerabilities to an application. Software composition analysis (SCA) tools help organizations inventory third-party commercial and open source components used within their software to understand which components and versions are being used and to identify security vulnerabilities affecting those components.Screenshot of API Testing: This dangerous attack vector can be secured by identifying vulnerable third-party components, automating and integrating API testing and detecting issues in the IDE.Screenshot of Auto Issue Correlation: AppScan leverages three technologies (DAST, SAST, IAST) to enrich results, validate fixes and reduce the number remediation tasks by grouping issues together.Screenshot of 30+ Code Languages Supported: HCL AppScan offers an extensive list of supported code languages.