What is our primary use case?
I use
Tenable.io Web Application Scanning to scan our code base once a month to enhance our security operations.
What is most valuable?
Tenable.io Web Application Scanning provides a detailed report, identifying functions that are complex and need to be more maintainable and readable. It offers features such as generating an executive summary and detailed reports highlighting issues in specific lines of the code. However, it does not provide coverage reports in the free version, which is a limitation.
What needs improvement?
Improvements could include providing coverage reports in the free version and features related to security reports. Also, enhancing technical support would be beneficial as there is room for improvement.
For how long have I used the solution?
I have been using Tenable.io Web Application Scanning for about five to six months.
What was my experience with deployment of the solution?
For the free version, the initial setup takes around half an hour, and then it becomes very useful.
What do I think about the stability of the solution?
In terms of stability, I would rate it eight out of ten.
What do I think about the scalability of the solution?
Regarding scalability, I would rate it nine out of ten.
How are customer service and support?
The technical support needs improvement. Currently, it takes time, which might be due to the free version, but providing some level of support could encourage future purchase decisions.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
I have used SonarQube and am currently checking
Snyk and ZAP tools.
How was the initial setup?
The setup for the free version takes some time initially, approximately half an hour.
What about the implementation team?
A colleague of mine installed Tenable.io Web Application Scanning, which can be managed by one person including installation and configuration.
What's my experience with pricing, setup cost, and licensing?
Pricing and cost considerations are important because there are many scanning software options in the market like
Snyk. Any purchase decision would depend on favorable pricing compared to others.
Which other solutions did I evaluate?
We've evaluated solutions like Snyk and ZAP tools.
What other advice do I have?
I would recommend Tenable.io Web Application Scanning as it provides us with good reports, which help improve our code base, despite the lack of financial benefits. Overall, I would rate it seven out of ten.
Which deployment model are you using for this solution?
On-premises