Product Avatar Image

Checkmarx

Show rating breakdown
60 reviews
  • 3 profiles
  • 8 categories
Average star rating
4.4
Serving customers since
2006

Checkmarx Solutions

Discover ready-made solutions that bring related products, reviews, and resources together in one place.

Profile Filters

All Products & Services

Product Avatar Image
Checkmarx

36 reviews

Identify software security vulnerabilities & fix them

Product Avatar Image
ZAP by Checkmarx

14 reviews

ZAP by Checkmarx, formerly known as Zed Attack Proxy , is a leading open-source web application security scanner designed to help developers, testers, and security professionals identify vulnerabilities in web applications. Actively maintained by a global community, ZAP offers both automated and manual testing capabilities, making it suitable for users with varying levels of security expertise. Key Features and Functionality: - Automated Security Scanning: ZAP provides simple, single-click automated scanning, enabling users to identify security flaws with ease. - Active and Passive Scanning: Utilizes both passive and active scanning techniques to uncover a wide range of security vulnerabilities. - Advanced User Controls: Offers tools like manual interception, fuzzing, and forced browsing for thorough penetration testing. - CI/CD Integration: Seamlessly integrates with Continuous Integration/Continuous Deployment pipelines, automating security testing within development workflows. - Cross-Platform Support: Compatible with Linux, Windows, and macOS operating systems. Primary Value and Problem Solved: ZAP by Checkmarx addresses the critical need for accessible and effective web application security testing. By offering a free, open-source solution with both automated and manual testing capabilities, ZAP empowers organizations to identify and remediate vulnerabilities early in the development lifecycle. Its integration with CI/CD pipelines ensures that security becomes an integral part of the development process, reducing the risk of security breaches and enhancing overall application security.

Product Avatar Image
Checkmarx Codebashing

10 reviews

Raising AppSec awareness simply cannot be thought of as a distinct step in the SDLC. It's all about inserting awareness into every step of the SDLC in a manner that actually fuels faster releases. Codebashing does exactly that - Through the use of just-in-time training, ongoing communication, and fun engagement, security managers cultivate a culture of software security that empowers developers to think and act securely in their day-to-day work.

Profile Name

Star Rating

37
20
2
1
0

Checkmarx Reviews

Review Filters
Profile Name
Star Rating
37
20
2
1
0
AJAYRAJ T.
AT
AJAYRAJ T.
Software Engineer | Backend Engineering • Frontend Development • AI Integrations • LLM Workflows • RestAPI Expert • Automations • AWS • Architecture and Implementation
05/08/2026
Validated Reviewer
Review source: G2 invite

Open-Source Powerhouse with Room for UI Improvement

I find the automated scans in ZAP by Checkmarx help me save time and offer valuable reports and suggestions. I like that the reports come in different formats, which is really convenient. Also, I appreciate that it's open-sourced, which adds to its flexibility. Plus, the initial setup was very easy.
Ján J.
JJ
Ján J.
12/10/2025
Validated Reviewer
Verified Current User
Review source: G2 invite
Incentivized Review

Great Automation and UI, But Needs Better Kotlin Support

Helps to automate a security review of a codebase. Easy to implement into existing repositories. Nice intuitive user interface and good vulnerability descriptions with a hints where in code and how to fix.
Verified User in Information Technology and Services
UI
Verified User in Information Technology and Services
09/27/2025
Validated Reviewer
Review source: Organic Review from User Profile

A tool I use just for Web/API Security Automation

The detection mechanisms developed for ZAP are quite effective. It's easy to initiate an active scan or start crawling, and the built-in integration with Firefox is convenient. However, I find the user interface to be cluttered, so I primarily use it only for Active scans.

About

Contact

HQ Location:
Paramus, NJ

Social

@Checkmarx

What is Checkmarx?

Checkmarx is the leader in agentic application security, delivering enterprise-grade protection while helping organizations lower engineering costs and accelerate development velocity. The Checkmarx One platform scans trillions of lines of code each year, enabling companies to cut vulnerability density by more than half. Autonomous security agents continuously detect and counter AI-driven threats across the software development lifecycle, delivering prevention-first protection for legacy, modern, and AI-generated code at enterprise scale.

Details

Year Founded
2006