We only used these products to do some demos. The feedback was very positive.
Adds value to our customers to validate what they receive.
Pros and Cons
- "The technical support is very good, and we have received valid answers to our questions."
- "The pricing and licensing models are poor."
What is most valuable?
How has it helped my organization?
Our organization is a product distributor. We don’t use the product internally. But for the customers/leads we presented it to, they see that it can add a lot of value to validate what they receive from their providers.
What needs improvement?
From a maketing perspective, I would suggest demonstrating that using these tools will make money for the customer. The customer should have a clear vision of what they purchsed and what they received. They should push more technical articles on LinkedIn. There is always space to make things better, but for now, it is making a difference.
These products have some dreams, as I heard from some Dev Managers, but I’m sure that with a closer relationship, we can upscale that.
For how long have I used the solution?
We are only showing the product to leads as demos.
Buyer's Guide
Kiuwan
April 2026
Learn what your peers think about Kiuwan. Get advice and tips from experienced pros sharing their opinions. Updated: April 2026.
893,221 professionals have used our research since 2012.
How are customer service and support?
The technical support is very good. We have received valid answers to our questions.
Which solution did I use previously and why did I switch?
We had some experienced with Rational and Compuware, in addition to the APM tools that we distribute.
What's my experience with pricing, setup cost, and licensing?
The pricing and licensing models are poor. If it has a SaaS, the hybrid solution will be enough.
Which other solutions did I evaluate?
We did very careful research of solutions on the market and chose this one for our demos.
What other advice do I have?
“A fool with a tool is still a fool”. Chose somebody who can add the right processes, methods, and techniques to actually implement the customers' objectives. We try to build a eco-system to cross-sell our solutions.
There is a mix between maturity and money. That is the barrier to break before showing the customer that he is purchasing something without risks before he goes into production. They should focus on a product that adds value to the corporation.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Process and Software Quality Lead at a non-tech company with 10,001+ employees
Offers integration with SDLC tools and API.
Pros and Cons
- "Software analytics for a lot of different languages including ABAP."
- "We have been using this solution for one and a half years."
- "I would like to see additional languages supported."
- "I would like to see additional languages supported."
What is most valuable?
- Constant evolution
- Software analytics for a lot of different languages including ABAP
- Excellent feedback
- Integration with SDLC tools
- API
How has it helped my organization?
SAP and no-SAP static source code analysis, including security integrated in the continuous delivery process of our SDLC.
What needs improvement?
I would like to see additional languages supported.
For how long have I used the solution?
We have been using this solution for one and a half years.
What do I think about the stability of the solution?
There were no stability issues.
What do I think about the scalability of the solution?
There were no scalability issues.
How are customer service and technical support?
I would give technical support a rating of 9/10.
Which solution did I use previously and why did I switch?
We used Sonar and we switches due to costs with ABAP and the iOS modules.
How was the initial setup?
The initial setup could not be simpler. It is a SaaS solution. Integration with Jenkins and the local analyzer is a great solution.
What's my experience with pricing, setup cost, and licensing?
Check with your account manager.
What other advice do I have?
Integrate it with your SDLC.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Kiuwan
April 2026
Learn what your peers think about Kiuwan. Get advice and tips from experienced pros sharing their opinions. Updated: April 2026.
893,221 professionals have used our research since 2012.
Gerente at a tech services company with 51-200 employees
I have found the security and QA in the source code to be most valuable
Pros and Cons
- "I have found the security and QA in the source code to be most valuable."
- "The solution will measure your development team, give a KPI for the CISO, reduce the time it takes to find and correct coding errors, and more."
- "The QA developer and security could be improved."
- "The QA developer and security could be improved."
How has it helped my organization?
The solution gave us a KPI regarding risk and quality in the development process.
What is most valuable?
I have found the security and QA in the source code to be most valuable. I test code to pass PCI DSS requirements. I have improved my QA acceptance process with risk evaluation.
What needs improvement?
The QA developer and security could be improved.
What do I think about the stability of the solution?
I have not encountered any issues with stability.
What do I think about the scalability of the solution?
I have not encountered any issues with scalability.
How are customer service and technical support?
I would give technical support a rating of 10 out of 10.
Which solution did I use previously and why did I switch?
I did not use a different solution in the past.
How was the initial setup?
The initial setup was easy.
Which other solutions did I evaluate?
I did not evaluate other options before choosing this one.
What other advice do I have?
Try the solution and you will likely want to implement it into your organization. The solution will measure your development team, give a KPI for the CISO, reduce the time it takes to find and correct coding errors, and more.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Manager
Supports continuous integration tools.
Pros and Cons
- "With Kiuwan, we were able to help our clients get a better visibility of their development activities and to mitigate risks."
Our client requests our expertise to audit their business-critical applications. Before using Kiuwan, we were using other solutions. We switched to Kiuwan for 8 reasons:
- Ease of use and deployment: No hidden expenses, no complex deployment or complex administration. At last, we were able to help our clients to focus on improving quality without getting delayed by infrastructure issues. Upgrades are done automatically, no migration...
- Clear licensing model: Kiuwan has different licensing models, all easy to understand. We were able to select the model suitable to our client needs without paying extra money for unwanted features.
- Technology coverage: Kiuwan covers most of the known technologies including mobile applications.
- The quality model: We have the complete freedom to customise the quality model, per application, per technology or per client. On the ground, every application has its own context and should be monitored differently with a different quality model. Having the possibility to customise the quality model, to modify existing rules configuration or to remove some is a must and with Kiuwan, we can do it easily. Developing new rules was never that easy; Kiuwan have the best tools to develop new rules.
- Integration: Kiuwan supports continuous integration tools. Beside that, most of the features, like launching an analysis, or creating reports, can be automated. Once the analysis is industrialised, all we to have to do is focus on providing recommendations to improve quality, nothing else.
- Speed of analysis: Do you know any other tools that can analyse 2.5 millions line of code in 3 hours? The tools we used before took 15 hours for a single analysis on the same code. Real time saving.
- Support team: We can chat with the support team directly from the interface. This saves us lot of time, when we have a question or facing a critical issue. The support team is always here, reliable and fast. We had most of our questions answered in a couple of hours.
- Great features: Follow-up quality evolution, compare analysis versions to detect new or removed defects, define and prioritise action plans, security analysis, governance dashboard. We have all we need to help our clients set up SLAs, detect risks, repair critical issues...
With Kiwuan, we were able to help our clients get a better visibility of their development activities and to mitigate risks. We are using Kiuwan for 4 years now and we are getting good feedback from our clients.
What could be improved:
Kiuwan has two levels of KPIs, compared to ISO 9126-3 that defines 3 levels of KPIs. Adopting the ISO 9126-3 model definitively simplifies quality investigations. But the ISO 9126-3 makes the action plan management (or improvement plan) more tricky. Maybe a way of improving the quality model in Kiuwan would be adding the ISO 9126-3 model on top of the existing model to simplify investigations without complicating the action plan management.
Disclosure: My company has a business relationship with this vendor other than being a customer. Partnership
Managing Director at a tech vendor with 51-200 employees
Provides technology coverage from COBOL to JS through ABAP.
Pros and Cons
- "We switched because Kiuwan covers the entire SDLC; provides direct information to act upon, for the developer, architects, QA, CIO and CISO, in a few seconds; automatically, fully integrated in any CI/CD setup."
What is most valuable?
- Easy, intuitive UI loaded with information about the software quality
- Automated lifecycle management
- Application portfolio governance support
- Technology coverage from COBOL to JS through ABAP: ideal for large organizations with legacy core systems trying to leverage new digital capabilities
How has it helped my organization?
- Monitor outsourced development and maintenance to assert each € spent has adequate return in quality and security.
- Helped outsourcers to increase the capacity to deliver acceptable code.
What needs improvement?
- Identification of OSS usage and multiple versions in use throughout portfolio
For how long have I used the solution?
I have used it for one year.
What was my experience with deployment of the solution?
We have not encountered any deployment issues whatsoever; pretty straightforward analysis both on-premises or in the cloud.
What do I think about the stability of the solution?
We have not encountered any stability issues.
What do I think about the scalability of the solution?
We have not encountered any scalability issues; applied it both for small portfolios and millions-of-lines portfolios.
How are customer service and technical support?
Customer Service:
Customer service is excellent; extremely helpful and knowledgeable about the subject matter.
Technical Support:Technical support is excellent; only needed to revert to customer support once, and I got immediate support and resolution on my request.
Which solution did I use previously and why did I switch?
We previously used several tools. We switched because Kiuwan covers the entire SDLC; provides direct information to act upon, for the developer, architects, QA, CIO and CISO, in a few seconds; automatically, fully integrated in any CI/CD setup.
How was the initial setup?
It is extremely simple to setup, either to run on-site or in the cloud; and plenty of hooks to integrate with any automation engine.
What about the implementation team?
It was implemented by an in-house team with direct support from Kiuwan.
What's my experience with pricing, setup cost, and licensing?
- Loads of bang for the buck.
Which other solutions did I evaluate?
Before choosing this product, we evaluated other options.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Partner at a tech services company with 51-200 employees
Provides the ability to create specific action plans that determine the effort required by our teams to correct defects and ensure better code.
Pros and Cons
- "We have had an improvement of 20% in our time to market and it significantly improved the quality of our code."
- "More languages and frameworks would enhance this tool."
What is most valuable?
By far, the best feature we have found is the possibility of creating specific action plans that automatically determine the effort required by our teams in order to correct defects and ensure better code.
How has it helped my organization?
Code reviews have significantly improved, and it allows our teams to work together in a collaborative cloud environment.
What needs improvement?
More languages and frameworks would enhance this tool.
For how long have I used the solution?
I have used it for three years.
What was my experience with deployment of the solution?
We have not encountered any deployment issues.
What do I think about the stability of the solution?
We have not encountered any stability issues.
What do I think about the scalability of the solution?
We have not encountered any scalability issues.
How are customer service and technical support?
Customer Service:
Customer service is excellent. They have a very solid documentation site, as well as in-app support.
Technical Support:Technical support is 9/10.
Which solution did I use previously and why did I switch?
We previously used SonarQube. We have a portfolio of apps in different programming languages. With Sonar, our costs escalated too much, having to pay for plugins for each language.
How was the initial setup?
Initial setup is very straightforward; plug and play.
What about the implementation team?
We implemented it in-house with the aid of Kiuwan engineers.
What was our ROI?
We have had an improvement of 20% in our time to market and it significantly improved the quality of our code.
What's my experience with pricing, setup cost, and licensing?
I believe pricing varies according to the size of your apps.
Which other solutions did I evaluate?
We looked at Fortify and Checkmarx, but the costs were way too high
What other advice do I have?
We also use other features of the product. We scaled from security to the entire lifecycle and governance management of our stack, which has given us a full control over our application portfolio.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Technical Team Lead at a tech services company with 10,001+ employees
Integration with Jenkins and JIRA, and the security support, are valuable.
Pros and Cons
- "Customer service is excellent."
What is most valuable?
- Very easy to use
- Integration with Jenkins and JIRA
- Security support
How has it helped my organization?
Code reviews are quicker and more reliable.
What needs improvement?
- Indicators regarding metrics
For how long have I used the solution?
I have used it for three years.
What was my experience with deployment of the solution?
We have not encountered any deployment issues.
What do I think about the stability of the solution?
We have not encountered any stability issues.
What do I think about the scalability of the solution?
We have not encountered any scalability issues.
How are customer service and technical support?
Customer Service:
Customer service is excellent.
Technical Support:Technical support is very good.
Which solution did I use previously and why did I switch?
We previously used a different solution. I switched because of the quotes and security rules.
How was the initial setup?
Initial setup is straightforward, no doubt.
What about the implementation team?
An in-house team implemented it.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Download our free Kiuwan Report and get advice and tips from experienced pros
sharing their opinions.
Updated: April 2026
Popular Comparisons
SonarQube
Snyk
Checkmarx One
GitLab
Veracode
Coverity Static
Acunetix
Mend.io
OpenText Core Application Security
Sonatype Lifecycle
GitHub Advanced Security
OWASP Zap
HCL AppScan
GitHub
Qualys Web Application Scanning
Buyer's Guide
Download our free Kiuwan Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- If you had to both encrypt and compress data during transmission, which would you do first and why?
- When evaluating Application Security, what aspect do you think is the most important to look for?
- What are the threats associated with using ‘bogus’ cybersecurity tools?
- What are the Top 5 cybersecurity trends in 2022?
- Which application security solutions include both vulnerability scans and quality checks?
- We're evaluating Tripwire, what else should we consider?
- Is SonarQube the best tool for static analysis?
- Why Do I Need Application Security Software?
- Which Email Security enterprise solution would you choose: Cisco Secure Email vs Forcepoint Email Security vs Barracuda Email Security Gateway?
- What is the difference between "data protection in transit" vs "data protection at rest"?















