Top Pick

Kiuwan Code Security Description

Security Solutions for Your DevOps Process

Automate scanning your code to find and fix vulnerabilities. Kiuwan Code Security is compliant with the strictest security standards, such OWASP or CWE. It integrates with top DevOps tools and covers all important languages.

Static application security testing and source analysis are both effective, and affordable solutions for all sizes of teams. Kiuwan provides a wide range of essential functionality that can be integrated into your internal development infrastructure.

Quick vulnerability detection: Simple and quick setup. You can scan your area and receive results in minutes.

DevOps Approach to Code Security: Integrate Kiuwan into your Ci/CD/DevOps Pipeline to automate your security process.

Flexible Licensing Options. There are many options. One-time scans and continuous scanning. Kiuwan also offers On-Premise or Saas models.

Pricing

Pricing Information:
For both Code Security and Insights pricing is accessible on request, scans and continuous scanning is available.

Integrations

API:
Yes, Kiuwan Code Security has an API

Reviews - 11 Verified Reviews

Total
ease
features
design
support

Company Details

Company:
Kiuwan
Year Founded:
2012
Headquarters:
Spain
Website:
www.kiuwan.com
Update This Listing
Recommended Products
Secure your business by securing your people. Icon
Secure your business by securing your people.

Over 100,000 businesses trust 1Password

Take the guesswork out of password management, shadow IT, infrastructure, and secret sharing so you can keep your people safe and your business moving.

Product Details

Platforms
SaaS
Windows
Mac
Linux
On-Premises
Type of Training
Documentation
Webinars
Customer Support
Online

Kiuwan Code Security Features and Options

Static Application Security Testing (SAST) Software

Application Security
Dashboard
Debugging
Deployment Management
IDE
Multi-Language Scanning
Real-Time Analytics
Source Code Scanning
Vulnerability Scanning

Static Code Analysis Software

Analytics / Reporting
Code Standardization / Validation
Multiple Programming Language Support
Provides Recommendations
Standard Security/Industry Libraries
Vulnerability Management

Vulnerability Scanners

Asset Discovery
Black Box Scanning
Compliance Monitoring
Continuous Monitoring
Defect Tracking
Interactive Scanning
Logging and Reporting
Network Mapping
Perimeter Scanning
Risk Analysis
Threat Intelligence
Web Inspection

IT Security Software

Anti Spam
Anti Virus
Email Attachment Protection
Event Tracking
IP Protection
Internet Usage Monitoring
Intrusion Detection System
Spyware Removal
Two-Factor Authentication
Vulnerability Scanning
Web Threat Management
Web Traffic Reporting

Kiuwan Code Security Lists

  • Name: Veronica D.
    Job Title: CMO
    Length of product use: 1-2 Years
    Used How Often?: Weekly
    Role: User
    Organization Size: 1 - 25
    Features
    Design
    Ease
    Pricing
    Support
    Likelihood to Recommend to Others
    1 2 3 4 5 6 7 8 9 10

    Automated scans helping securing our products

    Date: Jul 02 2021

    Summary: I can't think about not using Kiuwan for code vulnerabilities detection, it would be literally impossible to not use it. It's a great tool to analyse and improve the security of software.

    Positive: We find very valuable to allow Kiuwan integrate with our development lifecycle (CI/CD) and we don't have to google or find fixes since it recommends fixes and tells you exactly where to find the issue within the code.

    Negative: False positives take time to turn off since its a manual process and the tools somehow lacks intelligence to detect whether the issue is real or not (e.g. hardcoded passwords are the most likely under this).

    Read More...
  • Name: Humberto S.
    Job Title: Security Specialist
    Length of product use: 1-2 Years
    Used How Often?: Daily
    Role: User
    Organization Size: 20,000 or More
    Features
    Design
    Ease
    Pricing
    Support
    Likelihood to Recommend to Others
    1 2 3 4 5 6 7 8 9 10

    This is the best product for static code analysis

    Date: Jun 30 2021

    Summary: You must try Kiuwan to make your products secure and shorten development cycles since you can integrate to your CI/CD process through automation frameworks easily.

    Positive: Very accurate analysis provided by Kiuwan on code risks. The best is that Kiuwan even provides the recommended fix which makes the remediation process easier and faster.

    Negative: If they had to improve I'd suggest working on support. Sometimes support takes time to get back. Also, we've gone through platform upgrades and we weren't notified and broke our development cycles. Would be good to improve customer notifications somehow.

    Read More...
  • Name: Humberto S.
    Job Title: Chief Operations Office
    Length of product use: Less than 6 months
    Used How Often?: Weekly
    Role: Deployment
    Organization Size: 1 - 25
    Features
    Design
    Ease
    Pricing
    Support
    Likelihood to Recommend to Others
    1 2 3 4 5 6 7 8 9 10

    One of the best among others available

    Date: Jun 28 2021

    Summary: If you really want to take the next step on security and INVEST some money to of course do this you MUST use Kiuwan.

    Positive: I've tried some products (even free like Snyk) and Kiuwan provides a full picture of static code risks and vulnerabilities. It allows team to improve code security and development practices.

    Negative: It's not a CON being honest but would be nice if they could offer something to scan infrastructure like Tenable.sc does.

    Read More...
    Kiuwan Code Security Company Response
    Date: Jun 28 2021
    Thank you for your kind words, we are very happy to have you on Kiuwan!
  • Name: Anonymous (Verified)
    Job Title: APPSEC Engineer
    Length of product use: Free Trial
    Used How Often?: Daily
    Role: Administrator, Deployment
    Organization Size: 10,000 - 19,999
    Features
    Design
    Ease
    Pricing
    Support
    Likelihood to Recommend to Others
    1 2 3 4 5 6 7 8 9 10

    User friendly

    Date: Jun 24 2021

    Summary: Very good.

    Positive: Options are very open and clear, friendly to use.

    Negative: Initial installation steps & getting false positives.

    Read More...
    Kiuwan Code Security Company Response
    Date: Jun 28 2021
    Thank you for your review, sorry to hear about your issues with Kiuwan. If you still need help optimizing your use of Kiuwan please contact our support team: support@kiuwan.com
  • Name: Anonymous (Verified)
    Job Title: Security Analyst
    Length of product use: 1-2 Years
    Used How Often?: Daily
    Role: User, Administrator
    Organization Size: 500 - 999
    Features
    Design
    Ease
    Pricing
    Support
    Likelihood to Recommend to Others
    1 2 3 4 5 6 7 8 9 10

    One of the most practical Local / Cloud SAST solution

    Date: Jun 23 2021

    Summary: This is a excellent SAST tool that can help you to identify any potential issue with your source code.

    Positive: - Ease of use.
    - Local Analysis.
    - Centralized view of QA defects and Security Vulnerabilities.
    - SCA analysis available.
    - Friendly technical support.
    - Several security standards support.
    - Provides API
    - DevOps Integration
    - CSV and PDF reports

    Negative: - Partial support for SSO authentication (Only web).
    - No customizable metrics.
    - No API end points for management/governance metrics.
    - No plugin for Xcode.
    - Predefined values for rules can't be edited.

    Read More...
    Kiuwan Code Security Company Response
    Date: Jun 28 2021
    Thank you for your review, we are definitely taking your "cons" onboard for future versions.
  • Name: Chaitanya A.
    Job Title: Software developer
    Length of product use: Less than 6 months
    Used How Often?: Monthly
    Role: Deployment
    Organization Size: 20,000 or More
    Features
    Design
    Ease
    Pricing
    Support
    Likelihood to Recommend to Others
    1 2 3 4 5 6 7 8 9 10

    Review of Kiuwan code security

    Date: Jun 21 2021

    Summary: This product helps us to improve quality of our software. Nothing cons, everything is good. Great tool for developers to validate code compliance. Management for oversight progress and forecasting. This product helps us to improve quality of our software.

    Positive: Great tool for developers to validate code compliance. Management for oversight progress and forecasting. This product helps us to improve quality of our software.

    Negative: Nothing, everything is good. Nothing, everything is good.

    Read More...
    Kiuwan Code Security Company Response
    Date: Jun 28 2021
    Thank you for your kind words!
  • Name: Anonymous (Verified)
    Job Title: DevOps Engineer
    Length of product use: Free Trial
    Used How Often?: Weekly
    Role: User, Administrator, Deployment
    Organization Size: 1,000 - 4,999
    Features
    Design
    Ease
    Pricing
    Support
    Likelihood to Recommend to Others
    1 2 3 4 5 6 7 8 9 10

    Ease of use!

    Date: Sep 17 2021

    Summary: I like the product. I think it's very intuitive and provide a great insight in terms of SCA and SAST.

    Positive: The product is very easy to use. I was asked to try this out with not much information and was able to get the first scan in with not much struggle at all.

    Negative: I think a bit more customization in how to select the source for scanning would be great (exclude/include pattern, different set of rules for different source types, etc).

    Read More...
  • Name: Humberto S.
    Job Title: Scrum Master
    Length of product use: 1-2 Years
    Used How Often?: Daily
    Role: Deployment
    Organization Size: 20,000 or More
    Features
    Design
    Ease
    Pricing
    Support
    Likelihood to Recommend to Others
    1 2 3 4 5 6 7 8 9 10

    Good but very expensive

    Date: Jun 24 2021

    Summary: All orgs MUST have a static code analysis tool like this but prices can skyrocket due lines of code.

    Positive: Identifies code risks "invisible" to us and helps to secure our projects. We liked we were able to integrate to our devops automation cycle.

    Negative: Expensive throughout time and while we increase our codebase
    Support sometimes isn't quick/responsive.

    Read More...
    Kiuwan Code Security Company Response
    Date: Jun 28 2021
    Thank you for your comments, we appreciate your full feedback and they will be shared with our development team to optimize future iterations of Kiuwan.
  • Name: Anonymous (Verified)
    Job Title: Security Engineer
    Length of product use: 6-12 Months
    Used How Often?: Monthly
    Role: User, Deployment
    Organization Size: 100 - 499
    Features
    Design
    Ease
    Pricing
    Support
    Likelihood to Recommend to Others
    1 2 3 4 5 6 7 8 9 10

    Decent alternative to the more expensive commercial tools

    Date: Jun 21 2021

    Summary: Overall our experience is good, as the scanning process is straightforward and easy, has helped find some good bugs in our software.

    Positive: Easy and fast installation process. Regular updates. Finds a lot of common issues, OWASP Top 10 etc, good language support. SaaS based solution with a web UI to view the results

    Negative: Language support limited for the code insights section. Have come across some bugs already during the time we have had this deployed. Would not have expected such bugs.

    Read More...
    Kiuwan Code Security Company Response
    Date: Jun 28 2021
    Thank you for your review, new languages are always being added so stay tuned for our release announcements.
  • Name: Anonymous (Verified)
    Job Title: Software enginner
    Length of product use: 1-2 Years
    Used How Often?: Weekly
    Role: User
    Organization Size: 1,000 - 4,999
    Features
    Design
    Ease
    Pricing
    Support
    Likelihood to Recommend to Others
    1 2 3 4 5 6 7 8 9 10

    My review

    Date: Jun 21 2021

    Summary: On a whole we have been Kiuwan which is integrated to our pipelines and also we are also looking at other tools for few cons which i just stated above.
    It's so far good overall.

    Positive: Kiuwan code security helps analyze our code base and tells us potential vulnerabilities in it and it can be integrated well to your CI/CD pipeline seamlessly.

    Negative: It could improve much more on code coverage, unused code and code suggestions.

    Read More...
    Kiuwan Code Security Company Response
    Date: Jun 28 2021
    Thank you for your review, we will definitely take your feedback onboard.
  • Name: Anonymous (Verified)
    Job Title: CISO
    Length of product use: 6-12 Months
    Used How Often?: Weekly
    Role: User, Administrator, Deployment
    Organization Size: 26 - 99
    Features
    Design
    Ease
    Pricing
    Support
    Likelihood to Recommend to Others
    1 2 3 4 5 6 7 8 9 10

    Customer improvement features

    Date: Sep 17 2021

    Summary: Please work with customers and users to gather beneficial improvements to understand our businesses and challenges to ensure feedback and changes are incorporated.

    Positive: The number of languages supported. The white-labeled branding capability. The relatively good ease of use. Customer interface, access to run analysis and review reports.

    Negative: Confusing administration with challenging setup. No ability to export mute, notes, and comments. No way to export and remove an application and re-import the results, mutes, notes back into the portal. There should be a setup timing of allowing an application to be reviewed for 15 or 30 days before data is stale and should be removed. Need a comparison to the previous quarter, month, or year's results. This will show maturity and improvement over time.

    Read More...