Fortify by OpenText vs. Cenzic Hailstorm / App Scanner (discontinued)

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Fortify by OpenText
Score 9.0 out of 10
N/A
An AppSec solution formerly from Micro Focus, spanning SCA, SAST and DAST that supports the breadth and management of any application portfolio, used to secure code. Features API discovery and testing for any application, throughout the software lifecycle.N/A
Cenzic Hailstorm / App Scanner (discontinued)
Score 7.2 out of 10
N/A
App Scanner was based on the "Hailstorm" technology acquired with the company Cenzic (March, 2014). A dynamic application security testing (DAST) software, it identified vulnerabilities in cloud and web applications. The product is no longer available for sale.N/A
Pricing
Fortify by OpenTextCenzic Hailstorm / App Scanner (discontinued)
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Fortify by OpenTextCenzic Hailstorm / App Scanner (discontinued)
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Fortify by OpenTextCenzic Hailstorm / App Scanner (discontinued)
Considered Both Products
Fortify by OpenText
Chose Fortify by OpenText
When compared to Insight Appsec, Focus Fortify WebInspect performs better in terms of speed, integration, and detection capabilities. The variety of vulnerabilities it detected as being against Insight Appsec is what I appreciated the most. In addition to detecting …
Chose Fortify by OpenText
Micro Focus Fortify WebInspect is better when it comes to speed, integration and detection capabilities as compared to Insight Appsec. What I loved the most is the broad coverage of vulnerabilities it identified as against Insight Appsec. Apart from detection capabilities the …
Chose Fortify by OpenText
  • Veracode is the product I've used that is most similar to Fortify WebInspect. They both do a good job at reporting code vulnerabilities and both allow for good automation.
  • SonarQube can be a free tool, but does a much better job at finding bugs that aren't necessarily …
Chose Fortify by OpenText
Fortify Application Defender is a little more timely and upfront with a lot of their information on cyber security. we like what they provide and how they communicate with our users. I think they have a good understanding and practice in their field. they seem best suited for …
Chose Fortify by OpenText
CAST in my opinion provides a far superior product in that it can parse in an entire suite of applications and do scans across modules. HP Fortify probably has deeper and more current scanning so I think both products complement each other. I would not rely solely on …
Cenzic Hailstorm / App Scanner (discontinued)
Chose Cenzic Hailstorm / App Scanner (discontinued)
These products are similar in nature. They all tend to do the same thing, in a similar way. Just need to watch for integration problems and consumer trust issues.
Best Alternatives
Fortify by OpenTextCenzic Hailstorm / App Scanner (discontinued)
Small Businesses
GitLab
GitLab
Score 8.7 out of 10
GitLab
GitLab
Score 8.7 out of 10
Medium-sized Companies
Veracode
Veracode
Score 8.7 out of 10
Veracode
Veracode
Score 8.7 out of 10
Enterprises
Veracode
Veracode
Score 8.7 out of 10
Veracode
Veracode
Score 8.7 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Fortify by OpenTextCenzic Hailstorm / App Scanner (discontinued)
Likelihood to Recommend
9.0
(0 ratings)
6.0
(0 ratings)
Likelihood to Renew
10.0
(0 ratings)
-
(0 ratings)
Usability
7.0
(0 ratings)
-
(0 ratings)
Support Rating
10.0
(0 ratings)
-
(0 ratings)
User Testimonials
Fortify by OpenTextCenzic Hailstorm / App Scanner (discontinued)
Likelihood to Recommend
I think Micro Focus Fortify WebInspect could fit really any organization well that needs to perform static code analysis on their applications (they do have dynamic scanning but I don't have any experience using it). Different static analysis tools scan code differently, Micro Focus Fortify WebInspect requires you to provide a full build of the application to be submitted with debugging files which could be easy or hard depending on how your organization is building it's apps.
Read full review
This scanner is helpful for financial services apps that need to prove their credibility to users, and in an environment where users might not be comfortable providing their PII.
Read full review
Pros
  • prevents malware
  • mitigates risks
  • visibility
  • safety
Read full review
  • Show that our app is credible
  • Give users the confidence to do business on our app
Read full review
Cons
  • It should focus on microservices and develop features
  • Performance need to be improved
  • Multiple apps should be easy to scan in parallel thus saving time
Read full review
  • Integration requires the development team
  • Takes up valuable real estate within the app
  • Requires bandwidth and may slow down primary functions
Read full review
Likelihood to Renew
Since every firm needs to perform static code analysis on their applications, I believe Micro Focus Fortify WebInspect would work well for them (they also offer dynamic scanning, although I haven't used it myself). Different static analysis tools scan code in different ways, and Micro Focus Fortify WebInspect asks you to submit a complete build of the application along with debugging files. Depending on how your company builds its apps, this requirement may be simple or challenging.
Read full review
No answers on this topic
Usability
It is a cloud-based platform which can provide us a very useful and unique features like Application Assessment, Scans, Vulnerability Test, Comprehensive Reporting, Monitoring, etc. Fortify by Open Text is also outstanding in various parameters for the support and integration and it is highly adaptable in various DevOps Program where you need secure app testing with all given features.
Read full review
No answers on this topic
Support Rating
Always receive excellent support from the vendor. No issues there.
Read full review
No answers on this topic
Alternatives Considered
Micro Focus Fortify WebInspect is better when it comes to speed, integration and detection capabilities as compared to Insight Appsec. What I loved the most is the broad coverage of vulnerabilities it identified as against Insight Appsec. Apart from detection capabilities the time taken is also less compared to Insight Appsec. Given the performance of Micro Focus Fortify WebInspect I would strongly recommend to everyone looking for DevSecOps and application security solutions
Read full review
These products are similar in nature. They all tend to do the same thing, in a similar way. Just need to watch for integration problems and consumer trust issues.
Read full review
Return on Investment
  • Good as part of our security suite to help prevent successful attacks.
  • Reporting of defects helps to educate developers.
  • Worth the price we paid.
Read full review
  • Increases usage of mobile devices
  • Reduces the need for live client services
  • Improves user conference
Read full review
ScreenShots