Compare Black Duck and Checkmarx

At a Glance
Black Duck
Black Duck
Star Rating
(27)4.0 out of 5
Market Segments
Enterprise (50.0% of reviews)
Information
Pros & Cons
Entry-Level Pricing
No pricing available
Learn more about Black Duck
Checkmarx
Checkmarx
Star Rating
(36)4.2 out of 5
Market Segments
Enterprise (53.1% of reviews)
Information
Pros & Cons
Entry-Level Pricing
No pricing available
Learn more about Checkmarx
AI Generated Summary
AI-generated. Powered by real user reviews.
  • G2 reviewers report that Checkmarx excels in user-friendliness, with many users finding it easy to navigate and become familiar with its numerous features. One user highlighted the intuitive scanning tools that effectively identify vulnerabilities, making it a strong choice for teams looking for a straightforward solution.
  • Users say that Black Duck is a powerful tool for identifying open source issues, with its extensive knowledge base being a significant advantage. Reviewers appreciate its ability to minimize false positives and provide alerts for newly discovered vulnerabilities, which is crucial for maintaining security in development environments.
  • According to verified reviews, Checkmarx has a slight edge in quality of support, with users praising the responsiveness and helpfulness of the support team. This can be a deciding factor for organizations that prioritize ongoing assistance and partnership in their software tools.
  • Reviewers mention that while Checkmarx offers a robust set of features, some users have found challenges with the implementation process. However, many still describe it as relatively straightforward, indicating that the benefits may outweigh the initial setup hurdles.
  • G2 reviewers highlight that Black Duck's strength lies in its comprehensive analysis capabilities, particularly for security experts who need to track vulnerabilities over time. Users have noted that its ability to analyze potential vulnerabilities is a key feature that supports their DevSecOps practices.
  • Users report that Checkmarx's product direction is viewed positively, with many feeling confident in the company's innovative approach and commitment to enhancing their offerings. This forward-thinking mindset can be appealing for organizations looking for a long-term partner in application security.
Pricing
Entry-Level Pricing
Black Duck
No pricing available
Checkmarx
No pricing available
Free Trial
Black Duck
Free Trial is available
Checkmarx
Free Trial is available
Ratings
Meets Requirements
7.9
15
8.6
27
Ease of Use
8.0
15
8.2
27
Ease of Setup
8.1
9
7.7
13
Ease of Admin
8.3
9
7.9
13
Quality of Support
7.7
13
8.3
22
Has the product been a good partner in doing business?
8.3
11
8.3
12
Product Direction (% positive)
6.4
16
7.5
23
Features by Category
Static Application Security Testing (SAST)Hide 14 FeaturesShow 14 Features
Not enough data
7.8
6
Administration
Not enough data
8.3
5
Not enough data
8.3
5
Analysis
Not enough data
8.6
6
Not enough data
8.1
6
Not enough data
8.3
6
Not enough data
8.7
5
Testing
Not enough data
7.7
5
Not enough data
7.3
5
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
5.3
5
Agentic AI - Static Application Security Testing (SAST)
Not enough data
Not enough data
Dynamic Application Security Testing (DAST)Hide 13 FeaturesShow 13 Features
Not enough data
Not enough data
Administration
Not enough data
Not enough data
Not enough data
Not enough data
Analysis
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Testing
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Software Composition AnalysisHide 6 FeaturesShow 6 Features
8.4
6
Not enough data
Functionality - Software Composition Analysis
Not enough data
Not enough data
8.0
5
Not enough data
Not enough data
Not enough data
Effectiveness - Software Composition Analysis
8.3
5
Not enough data
8.0
5
Not enough data
9.3
5
Not enough data
Not enough data
Not enough data
Documentation
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Security
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Static Code AnalysisHide 3 FeaturesShow 3 Features
Not enough data
Not enough data
Agentic AI - Static Code Analysis
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
AI AppSec AssistantsHide 6 FeaturesShow 6 Features
Not enough data
Not enough data
Performance - AI AppSec Assistants
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Integration - AI AppSec Assistants
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Interactive Application Security Testing (IAST)Hide 1 FeatureShow 1 Feature
Not enough data
Not enough data
Agentic AI - Interactive Application Security Testing (IAST)
Not enough data
Not enough data
Categories
Categories
Shared Categories
Black Duck
Black Duck
Checkmarx
Checkmarx
Black Duck and Checkmarx are categorized as AI AppSec Assistants
Reviews
Reviewers' Company Size
Black Duck
Black Duck
Small-Business(50 or fewer emp.)
15.4%
Mid-Market(51-1000 emp.)
34.6%
Enterprise(> 1000 emp.)
50.0%
Checkmarx
Checkmarx
Small-Business(50 or fewer emp.)
18.8%
Mid-Market(51-1000 emp.)
28.1%
Enterprise(> 1000 emp.)
53.1%
Reviewers' Industry
Black Duck
Black Duck
Information Technology and Services
30.8%
Computer Software
30.8%
Computer & Network Security
7.7%
Utilities
3.8%
Telecommunications
3.8%
Other
23.1%
Checkmarx
Checkmarx
Computer Software
15.6%
Information Technology and Services
15.6%
Banking
9.4%
Computer & Network Security
9.4%
Automotive
6.3%
Other
43.8%
Alternatives
Black Duck
Black Duck Alternatives
SonarQube
SonarQube
Add SonarQube
Snyk
Snyk
Add Snyk
Veracode Application Security Platform
Veracode Application...
Add Veracode Application Security Platform
GitHub
GitHub
Add GitHub
Checkmarx
Checkmarx Alternatives
Veracode Application Security Platform
Veracode Application...
Add Veracode Application Security Platform
SonarQube
SonarQube
Add SonarQube
GitLab
GitLab
Add GitLab
GitHub
GitHub
Add GitHub
Discussions
Black Duck
Black Duck Discussions
Monty the Mongoose crying
Black Duck has no discussions with answers
Checkmarx
Checkmarx Discussions
What is Checkmarx used for?
2 Comments
Sujeet S.
SS
Checkmarx is a static code analysis tool used for SAST (Static application security testing)Read more
Which testing method does Checkmarx support?
1 Comment
sanjay s.
SS
Checkmarx does support all these testing methodologies -Sast, Dast, IAST, SCA Read more
Does Checkmarx support DAST?
1 Comment
Soven Kumar R.
SR
You cannot test DAST Testing using CheckmarxRead more