Great SAST Tool.
Use Cases and Deployment Scope
We have been using many Rapid 7 products in the long term, we do a lot of vulnerability assessments and analysis and our primary tool is Rapid7 Nexpose and InsightVM. Rapid 7 AppSpider complements our portfolio of services with the capability to allow us to perform web-based security testing in our customer DevOps cycle or directly on the production website with great info an analytics.
Pros
- OWASP Top 10.
- Crawling web applications.
- Web application security testing.
Cons
- Scan might be slow compared to other tools.
- Not a lot of training on the vendor side.
Most Important Features
- OWASP TOP 10
- Pentesting
- Authenticated Scan
Return on Investment
- Great ROI for consultant projects.
Alternatives Considered
Rapid7 InsightVM, Rapid7 Managed Security Services (Rapid7 MDR) and Rapid7 Cybersecurity Advisory Services

