
I use Intruder for vulnerability scanning and annual pentesting. It gives me peace of mind on the evolving CVE landscape and helps me stay abreast of what's happening in the security landscape. I like that issues are almost always genuine, with the best false positive rate I've seen. Its thorough coverage, automatic weekly scanning, and integration with systems like Vanta and Jira for compliance purposes are also really valuable. The initial setup was pretty simple, taking about an hour or so. Review collected by and hosted on G2.com.
The container scanning feature has a lot of potential but could benefit from Github integration to monitor the underlying Dockerfiles Review collected by and hosted on G2.com.