Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
fAST Dynamic serves as a dynamic application security testing (DAST) tool that is seamlessly integrated into the Black Duck Polaris™ Platform, aimed at enhancing the efficiency of security evaluations for contemporary web applications. By simplifying the process of conducting thorough security scans, it removes the barriers of complicated configurations and the necessity for advanced security expertise. fAST Dynamic adeptly explores and assesses web applications, minimizing the requirement for extensive manual intervention and specialized knowledge, thereby providing thorough coverage without increased complexity. Its optimized checkers are designed to yield low false positives while ensuring precise vulnerability identification, focusing on critical checks that reveal the most significant risks to streamline the testing process. Tailored to align with agile development practices, fAST Dynamic enables swift security evaluations and can easily scale to handle numerous web applications without sacrificing performance, thus making it an invaluable asset in a rapidly evolving digital landscape. This adaptability not only enhances security but also promotes a culture of continuous improvement and responsiveness within development teams.
Description
Recognized as the top-rated DAST solution by an independent research organization for three consecutive years, this tool automatically evaluates contemporary web applications and APIs while minimizing false positives and overlooked vulnerabilities. It accelerates remediation efforts through comprehensive reporting and seamless integrations, keeping compliance and development teams informed. Regardless of the scale of your application portfolio, it enables effective management of security assessments. The solution autonomously navigates and evaluates web applications to uncover vulnerabilities such as SQL Injection, XSS, and CSRF. With a modern interface and user-friendly workflows built on the Insight platform, InsightAppSec is straightforward to deploy, manage, and operate. Additionally, it can scan applications hosted on isolated networks with the optional on-premise engine. Furthermore, InsightAppSec provides assessments and reports on your web application's compliance with PCI-DSS, HIPAA, OWASP Top Ten, and various other regulatory standards, ensuring a comprehensive approach to application security. This multifaceted solution supports organizations in enhancing their security posture while streamlining assessment processes.
API Access
Has API
Yes
API Access
Has API
Yes
Integrations
BMC Helix ITSM
No
CR-8000 Design Force
Yes
Carbon Black EDR
No
Cisco pxGrid
No
Coalfire
No
CyberArk Privileged Access Manager
No
FreeRTOS
Yes
Jenkins
No
Jira
No
Microsoft 365
No
Integrations
BMC Helix ITSM
Yes
CR-8000 Design Force
No
Carbon Black EDR
Yes
Cisco pxGrid
Yes
Coalfire
Yes
CyberArk Privileged Access Manager
Yes
FreeRTOS
No
Jenkins
Yes
Jira
Yes
Microsoft 365
Yes
Pricing Details
No price information available.
Free Trial
No
Free Version
No
Pricing Details
$2000 per app per year
Free Trial
Yes
Free Version
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
Yes
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Customer Support
Business Hours
No
Live Rep (24/7)
No
Online Support
Yes
Customer Support
Business Hours
No
Live Rep (24/7)
No
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
No
In Person
No
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
No
In Person
No
Vendor Details
Company Name
Black Duck
Founded
2002
Country
United States
Website
www.blackduck.com
Vendor Details
Company Name
Rapid7
Founded
2000
Country
United States
Website
www.rapid7.com/products/insightappsec/
Product Features
Product Features
Application Security
Analytics / Reporting
No
Open Source Component Monitoring
No
Source Code Analysis
No
Third-Party Tools Integration
No
Training Resources
No
Vulnerability Detection
No
Vulnerability Remediation
No
Static Application Security Testing (SAST)
Application Security
No
Dashboard
No
Debugging
No
Deployment Management
No
IDE
No
Multi-Language Scanning
No
Real-Time Analytics
No
Source Code Scanning
No
Vulnerability Scanning
No