Save to My Lists

Cobalt Reviews & Product Details - Page 2

Cobalt Overview

What is Cobalt?

Cobalt unifies the best of human security talent and effective security tools. Our end-to-end offensive security solution enables customers to remediate risk across a dynamically changing attack surface. We are best known for the speed and quality of our pentests, and driven by customer demand, we now offer a broad range of testing products and security services to support the needs of AppSec and InfoSec teams. Since 2013, we have secured over 10,000 assets, conducting over 4,000 pentests in 2023 alone. Over 1,300 customers rely on Cobalt, and our Cobalt Core of 450 elite pentesters. Our expert testers average 11 years of experience and hold top certifications. Combing the knowledge of the Core with the purpose-build Cobalt platform, we provide continuous collaboration through any engagement, including real-time findings reporting, access to Attack Surface Monitoring and Dynamic Application Security Testing (DAST), as well as integrations into over 50 business systems including Slack, Jira, and ServiceNow to speed remediation efforts.

Cobalt Details
Product Website
Discussions
Cobalt Community
Languages Supported
English
Show LessShow More
Product Description

Cobalt's Pen Testing as a Service (PTaaS) Platform transforms yesterday’s broken pen test model into a data-driven vulnerability management engine. Fueled by our global talent pool of certified freelancers, Cobalt's crowdsourced SaaS pen test platform delivers actionable results that empower agile teams to pinpoint, track, and remediate software vulnerabilities. Hundreds of organizations now benefit from high quality pen test findings, faster remediation times, and higher ROI for their pen test budget.

How do you position yourself against your competitors?

Our Pentesting as a service (PtaaS) approach delivers a comprehensive Pentesting and Offensive Security solution by combining an intuitive technology platform with an exclusive community of trusted, on-demand security experts. With pentests that start in as little as 24 hours, Cobalt provides the real-time insights you need to validate and remediate risk quickly and innovate securely. Our testing process from scheduling to remediation is 50% faster than traditional methods, with a depth and quality you won’t get from automated tools or low-budget pentest providers. Leave the offensive security testing to us, and focus on what matters most for your business.


Seller Details
Seller
Cobalt
Company Website
Year Founded
2013
HQ Location
San Francisco, California
Twitter
@cobalt_io
8,577 Twitter followers
LinkedIn® Page
www.linkedin.com
464 employees on LinkedIn®
Description

Cobalt combines talent and technology to provide offensive security testing for organizations to remediate risk across a dynamically changing attack surface. The innovators of Pentest as a Service, Cobalt empowers businesses to optimize their existing testing resources, access an on-demand community of trusted security experts, expedite remediation cycles, and share real-time updates and progress with internal teams to mitigate future risk.


JF
Overview Provided by:

Recent Cobalt Reviews

A
alexbreban .Enterprise (> 1000 emp.)
5.0 out of 5
"Pentest as a service - what a great business model"
CobaltIO is the best pentesting company I worked with. What makes them different is the manual testing of any discovered vulnerability rather than ...
JD
Joe D.Mid-Market (51-1000 emp.)
4.0 out of 5
"Professional and timely"
Professional and timely service for our compay
NP
Nishchay P.Mid-Market (51-1000 emp.)
4.5 out of 5
"Professional and Thorough Penetration Testing Service"
We engaged Cobalt to perform a penetration test on a small application, including some API testing. Our experience was very positive. Their team wa...

Pricing Insights

Averages based on real user reviews.

Time to Implement

1 month

Return on Investment

5 months

Average Discount

11%

Perceived Cost

$$$$$
View More Pricing Information

Cobalt Media

Official Downloads

Answer a few questions to help the Cobalt community
Have you used Cobalt before?
Yes

112 Cobalt Reviews

4.6 out of 5
The next elements are filters and will change the displayed results once they are selected.
Search reviews
Popular Mentions
The next elements are radio elements and sort the displayed results by the item selected and will update the results displayed.
Hide FiltersMore Filters
The next elements are filters and will change the displayed results once they are selected.
The next elements are filters and will change the displayed results once they are selected.
112 Cobalt Reviews
4.6 out of 5
112 Cobalt Reviews
4.6 out of 5

Cobalt Pros and Cons

How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Cons
G2 reviews are authentic and verified.
PN
Security Engineer
Enterprise(> 1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
What do you like best about Cobalt?

Cobalt offers Pentest as a service (PTaaS). When we started working on it, our goal was to strengthen our application security by incorporating on-demand pentesting services. The platform allows us to deploy faster pentests, and real-time collaboration with security experts. We use Cobalt's service every quarter. We have also integrated our CI/CD pipeline with Cobalt’s PTaaS model. The platform is also user-friendly to manage vulnerability findings seamlessly. Platform support is exceptional as usual. Review collected by and hosted on G2.com.

What do you dislike about Cobalt?

Cobalt is a little more expensive than other traditional penetration testing. For small organizations, it is on the higher side. Review collected by and hosted on G2.com.

What problems is Cobalt solving and how is that benefiting you?

Cobalt ensure that we get high-quality pensteting from their security professionals, which makes our product more secure. Review collected by and hosted on G2.com.

EB
Cloud Network&Security Lead
Mid-Market(51-1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
What do you like best about Cobalt?

It's really easy to set up a pentest. We use Cobalt a couple of times a year, so we can use predefined templates for the same products. Almost every time we create a new request, there are new features. Anytime we have a question or request, our CSM is there for us.

Our Platform Teams take advantage of Jira Integration to manage findings. The Slack channel is also a nice touch - it makes communication much easier. Review collected by and hosted on G2.com.

What do you dislike about Cobalt?

Sometimes it's hard to understand how credits work. Review collected by and hosted on G2.com.

What problems is Cobalt solving and how is that benefiting you?

Cobalt addresses our requirement of conducting external pentests on our applications. Review collected by and hosted on G2.com.

BH
Director of IT & Security
Mid-Market(51-1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
What do you like best about Cobalt?

It is very easy to setup and conduct a pen test.

Once your pen test is completed you have immediate access to multiple different reports to provide to your customers and internal stakeholders (attestation letter, full report, executive report, etc).

Customer support is very fast to respond if there are any issues. Review collected by and hosted on G2.com.

What do you dislike about Cobalt?

It would be nice if they would not have an upcharge to integrate with work item tracking (ADO etc). Review collected by and hosted on G2.com.

What problems is Cobalt solving and how is that benefiting you?

Third party, independent pen testing of our SaaS to meet compliance and contractual requirements and improve our overall security posture for our SaaS. Review collected by and hosted on G2.com.

AG
Software Engineer 2
Enterprise(> 1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
What do you like best about Cobalt?

Cobalt identifies vulnerabilities in our website that could be exploited by hackers. They provide recommendations for fixing the issues, and after the fixes are implemented, they review and offer feedback on the resolution. Good Customer support they offer and ease in understanding the issues. Review collected by and hosted on G2.com.

What do you dislike about Cobalt?

They do pentesting for 8-10days and in between that timeframe if site fail in that case the timeframe will be less for testing. Review collected by and hosted on G2.com.

What problems is Cobalt solving and how is that benefiting you?

They found http cross-scripting vulnerabilities for our website and suggested fix. Last year fixed this issue and now we are vulnerability free site. Review collected by and hosted on G2.com.

PL
Founder
Mid-Market(51-1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
What do you like best about Cobalt?

One of the things I like best about Cobalt is the ease of the entire process, from setting the scope and access to the way the findings are reported in their portal, and with Jira directly integrated, creating and closing issues make everything smooth. Review collected by and hosted on G2.com.

What do you dislike about Cobalt?

Honestly I do not have any constructive feedback at this time. Review collected by and hosted on G2.com.

What problems is Cobalt solving and how is that benefiting you?

Cobalt provides penetration testing services for us and helps us mantain our certifications. Review collected by and hosted on G2.com.

Verified User in Financial Services
AF
Small-Business(50 or fewer emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Cobalt?

Very easy to get into the platform and be interative. You can do one test and quickly move onto another without having tio go through the process of another engagement. The customizeable reporting and integrations come in handy. Well defined interface, can get expensive if you do a lot of testing but don't need a dedicated individual. Review collected by and hosted on G2.com.

What do you dislike about Cobalt?

The initial login is a little confusing. It could use a little more hand holding, especially if you have already registered and forgotten.

Feedback cycles vary depending on the individual working on you engagement. Review collected by and hosted on G2.com.

What problems is Cobalt solving and how is that benefiting you?

Getting penetration done quickly, with short feedback cycles, and actionable remediations. Also, the different levels of reporting help with different types of stakeholders. Review collected by and hosted on G2.com.

Verified User in Telecommunications
AT
Mid-Market(51-1000 emp.)
Validated Reviewer
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Cobalt?

The pen-test experience with Cobalt works just great for us. The main pros I enjoy when working with them are the following:

- Ease of setup. In your Cobalt account, you set up your app details, which have to be tested. Even if you're new to all this stuff, the form contains enough instructions to guide you through the whole process. If that information is not enough, you get in-person support, which will help you through the process.

- Quick start and turnaround. As soon as you decide to launch your test, it only takes Cobalt 48 hours to find test engineers according to your requirements. Or you can easily plan for many months. All will start on time.

- Real-time reporting. You don't need to wait two weeks for the test to be fully finished to learn about the findings. Once a vulnerability is identified, its details are added to your Cobalt account. If you're using Jira for project management, you can also set up an integration, which will create a Jira issue with all the vulnerability details. Your developer can jump straight on it and fix the problem without switching to any other account. Additionally, all vulnerabilities found come with remediation instructions.

- Ongoing communication. You get a Slack channel organized with the testers who report to you daily, who you can ask questions and get explanations. We asked to assign us the testers who can communicate during our timezone for better collaboration.

We've been using Cobalt for almost three years now and are fully satisfied with the whole experience. Review collected by and hosted on G2.com.

What do you dislike about Cobalt?

There is nothing to note; the experience with Cobalt makes the pent-test process easy and reliable. Review collected by and hosted on G2.com.

What problems is Cobalt solving and how is that benefiting you?

We conduct pen-tests on an annual basis for our SOC2 Type II. Review collected by and hosted on G2.com.

FS
Cyber Security Incident Response Team Manager and Red Team Engineering Lead
Enterprise(> 1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
What do you like best about Cobalt?

The talent and professionalism and customer service is second to none. We use Cobalt to establish a baseline with respect to vulnerability findings and security targets. Also the test are very agile, a big plus. Review collected by and hosted on G2.com.

What do you dislike about Cobalt?

No real downside. Seriously no issues with the product. Review collected by and hosted on G2.com.

What problems is Cobalt solving and how is that benefiting you?

We are using Cobalt to identify vulnerabilities in our security baselines as well as to plan our security investments to remedy short and long term their findings. Review collected by and hosted on G2.com.

IO
Cloud Security Specialist
Enterprise(> 1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
What do you like best about Cobalt?

Adversary Simulation and Red Teaming. Cobalt Strike isn’t your run-of-the-mill penetration testing tool. It goes beyond finding unpatched vulnerabilities and misconfigurations. Instead, it simulates the tactics and techniques of an advanced adversary within a network. Imagine slipping into the shoes of a stealthy, long-term infiltrator—someone who’s quietly embedded themselves in the digital shadows. Review collected by and hosted on G2.com.

What do you dislike about Cobalt?

Nothing ... I think Cobalt is a awesome tool... Review collected by and hosted on G2.com.

What problems is Cobalt solving and how is that benefiting you?

critical vulnerabilities... Review collected by and hosted on G2.com.

Verified User in Computer Software
UC
Mid-Market(51-1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Cobalt?

The account management and customer success team at cobalt is outstanding. Any issues that arose were handled quickly and resolved to my satisfaction. Review collected by and hosted on G2.com.

What do you dislike about Cobalt?

The quality and expertise of security testing engineers can vary widely. You may get a testing report with fantastic detail and accurate findings but other results may show a lack of understanding and detail. Review collected by and hosted on G2.com.

What problems is Cobalt solving and how is that benefiting you?

Cobalt is providing third party pentration testing services to verify security controls and reduce unknown security issues. This provides a healthy relationship between my company and our customers, assuring there have been multiple checks and balances within our security program. Review collected by and hosted on G2.com.