Best Software for 2025 is now live!
Save to My Lists
Paid
Claimed

Contrast Security Reviews & Product Details

Verified User in Logistics and Supply Chain
AL
Enterprise(> 1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Contrast Security?

Contrast Security is a very agile security service product provider, they listen to customers and react quickly to customer's feedback, and release often to address issues. Support is excellent to work with when issue comes up.

Contrast security platform enables realtime security testing with quick turn around on vulnerability findings, it is also capable of doing WAF functions to protect application in real-time. Review collected by and hosted on G2.com.

What do you dislike about Contrast Security?

Not much negtive things could be said regarding Contrast Security as a whole. There are still some security risk categories are not comvered under Assess evaluation process, it could be mainly due to that it is installed behind firewall. Also the Protect module does not cover certains type of attacks. As they continue to enhance/improve they product, will expect more to be covered. Review collected by and hosted on G2.com.

What problems is Contrast Security solving and how is that benefiting you?

Security testing via real-time traffic will be accurate in security evaluation, the Assess has good visibilities to vulnerabilites on application side. Also protection could block attacks as requests come in. Review collected by and hosted on G2.com.

Contrast Security Overview

What is Contrast Security?

Contrast Security is the leading Runtime Application Security company, embedding code analysis and attack prevention directly into the SDLC. Contrast’s patented security instrumentation disrupts traditional AppSec approaches with integrated and comprehensive security observability that delivers highly accurate assessment and continuous protection of an entire application portfolio. The Contrast Runtime Security Platform enables powerful Application Security Testing and Application Detection and Response, allowing developers, AppSec teams, and SecOps teams to better protect and defend their applications against the ever-evolving threat landscape. Application Security programs need to modernize and Contrast empowers teams to innovate with confidence.

Contrast Security Details
Product Website
Languages Supported
English, Japanese
Show LessShow More
Product Description

Is a production app and API protection blocking attacks and reducing false positives, that helps developer and security teams prioritize vulnerability backlogs

How do you position yourself against your competitors?

Contrast is the only code security platform that covers the entire SDLC from development to production. In addition, Contrast is the only solution that delivers code security in real time with the highest accuracy scores in the industry.


Seller Details
Company Website
Year Founded
2014
HQ Location
Pleasanton, CA
Twitter
@contrastsec
5,605 Twitter followers
LinkedIn® Page
www.linkedin.com
294 employees on LinkedIn®
Description

Contrast Security is a leading provider of application security solutions that focus on protecting software from vulnerabilities throughout its lifecycle. By leveraging its innovative technology, Contrast Security offers real-time vulnerability detection, analysis, and remediation capabilities, enabling organizations to secure their applications without disrupting development processes. Their platform integrates seamlessly into DevOps workflows, promoting a proactive approach to security and compliance. For more information, visit their website at [contrastsecurity.com](https://contrastsecurity.com).


Gerhard J.
GJ
Overview Provided by:

Recent Contrast Security Reviews

SO
Slobodan O.Enterprise (> 1000 emp.)
5.0 out of 5
"Contrast Security is manageable"
The default scoring, for libraries sometimes be discouraging. There are some security risk categories that are not covered I have noticed that the ...
SD
Sibila D.Small-Business (50 or fewer emp.)
5.0 out of 5
"Security and compliance of our applications"
Contrast Security provide language support is a bit slow, on occasion.It is customized to prioritize vulnerability detection.
Verified User
A
Verified UserMid-Market (51-1000 emp.)
5.0 out of 5
"Contrast Security makes application security simple"
Contrast makes understanding vulnerabilities easy. For every vulnerability found in custom code, there is an answer to what the vulnerability is, w...
Security Badge
This seller hasn't added their security information yet. Let them know that you'd like them to add it.
0 people requested security information

Contrast Security Media

Contrast Security Demo - The World's Leading IAST Solution
Now development teams can secure every line of code with breakthrough IAST technology that continuously detects and prioritizes vulnerabilities and guides them on how to eliminate risks.
Contrast Security Demo - Rapid Zero-Day Protection
Rapid response to zero-day attacks with virtual patching Administrators can quickly create and apply virtual patches Standardize protection to zero days within hours
Contrast Security Application Detection & Response (ADR)
Play Contrast Security Video
Contrast Security Application Detection & Response (ADR)

Official Downloads

Answer a few questions to help the Contrast Security community
Have you used Contrast Security before?
Yes

48 out of 49 Total Reviews for Contrast Security

4.5 out of 5
The next elements are filters and will change the displayed results once they are selected.
Search reviews
Popular Mentions
The next elements are radio elements and sort the displayed results by the item selected and will update the results displayed.
Hide FiltersMore Filters
The next elements are filters and will change the displayed results once they are selected.
The next elements are filters and will change the displayed results once they are selected.

Contrast Security Pros and Cons

How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Cons

Overall Review Sentiment for Contrast SecurityQuestion

Time to Implement
<1 day
>12 months
Return on Investment
<6 months
48+ months
Ease of Setup
0 (Difficult)
10 (Easy)
Log In
Want to see more insights from verified reviewers?
Log in to view review sentiment.
G2 reviews are authentic and verified.
KS
Enterprise(> 1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Contrast Security?

Contrast allows us to test an application during the run-time, which reduces the number of false positives we have to deal with in traditional SAST scans. The IAST testing combines SAST and DAST into one while identifying the issues in open-source libraries and custom code. The Integrations are easy and don't consume more system resources to run the agent. The Sales, TAM, management, and Support team has the customer-first approach; their support is amazing they cater to your needs. Review collected by and hosted on G2.com.

What do you dislike about Contrast Security?

Language Support in IAST is a bit slow and manageable, but handling legacy applications is tough without having to scan some old versions of programming languages if they could expand their language support and have backward compatibility, that would be great. Review collected by and hosted on G2.com.

What problems is Contrast Security solving and how is that benefiting you?

Securing our application in Run-time is a huge advantage, while developers can remediate the vulnerabilities during the development phases. Their platform provides us the 360 visibility and security for our application, which is a key business problem for any fin-tech company. Review collected by and hosted on G2.com.

Verified User in Higher Education
AH
Mid-Market(51-1000 emp.)
Validated Reviewer
Verified Current User
Review source: Organic
What do you like best about Contrast Security?

Contrast makes understanding vulnerabilities easy. For every vulnerability found in custom code, there is an answer to what the vulnerability is, why it is a risk, and how to fix the vulnerability. It is also great at identifying libraries used within the application and the potential vulnerabilites for each library. Review collected by and hosted on G2.com.

What do you dislike about Contrast Security?

Although Contrast is great at identitfying libraries, the default scoring for the libraries can be very particular. It can make developers feel discouraged seeing an F score because the library is a version behind. There is a way to change the scoring to only look at associated vulnerabilities, but there is still a benefit to seeing libraries that are behind on updates. Review collected by and hosted on G2.com.

What problems is Contrast Security solving and how is that benefiting you?

With Contrast's IAST product we are able to see vulnerabilities at runtime and it reduces the amount of false positives that we see with other tools. Communication with development teams has improved because the breakdown of vulnerabilities is so clear. Review collected by and hosted on G2.com.

NM
Enterprise(> 1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Contrast Security?

It has a great product portfolio, besides the backend code analysis there's also a front end analysis for popular frameworks such as react or angular. Also it has a configuration for the pipelines, a lot of products doesn't have all in one Review collected by and hosted on G2.com.

What do you dislike about Contrast Security?

It will be really useful to get some kind of log for the vulnerabilities that were closed as remediated/fixed/not a problem to know why contrast reopened them as resported status Review collected by and hosted on G2.com.

What problems is Contrast Security solving and how is that benefiting you?

Contrast is helping us to go deeper on the pentesting activities, to find vulnerabilities that cannot be seen by just assesing the front end, it helps us to find CVEs on the application libraries and insecure code in the back end Review collected by and hosted on G2.com.

Verified User in Medical Devices
AM
Enterprise(> 1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Contrast Security?

Automation options and accuracy of vulnerabilities, easy to integrate with all of our dev ops tools, and amazing level of support documentation and knowledge. The team is always willing to help when we are stuck on any issues impacting our service. Review collected by and hosted on G2.com.

What do you dislike about Contrast Security?

Some SCA options are weakly implemented. I also dislike the fact that contrast does not have a SAST option for my front end UI code available. Contrast can also benefit from some strong analystics options built into Team center UI for my team to glean better insights into our application security program. Review collected by and hosted on G2.com.

What problems is Contrast Security solving and how is that benefiting you?

We are able to reduce our time to discover and remediate new security bugs in our code. The SCA feature allows us to better assess the true risk of a CVE by telling us if the method is called and the code is actually being used in third party libraries. This reduces our need to patch everything immediately upon discovery of new CVEs. We are able to empower our devs to resolve all issues quickly without too much hand holding by the security team. Review collected by and hosted on G2.com.

SO
Advisor
Food & Beverages
Enterprise(> 1000 emp.)
Validated Reviewer
Review source: G2 invite
Incentivized Review
What do you like best about Contrast Security?

The default scoring, for libraries sometimes be discouraging. There are some security risk categories that are not covered I have noticed that the product keeps improving. There is room for improvement in terms of SCA options and UI functionalities. Review collected by and hosted on G2.com.

What do you dislike about Contrast Security?

The absence of alerts also limits our ability to proactively solve security threats. Navigating through the interface is difficult for users. Review collected by and hosted on G2.com.

What problems is Contrast Security solving and how is that benefiting you?

Contrast Security has transformed our cybersecurity approach. It continuously monitors our applications in time and identifies vulnerabilities promptly. It automates security testing and removes the necessity, for code reviews. Review collected by and hosted on G2.com.

DH
Enterprise(> 1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Contrast Security?

The most helpful features of contrast security would be real time protection and its accuracy. Our company really benefits from the continuous security monitoring and protection during runtime as well as the high accuracy rate of detecting vulnerablities Review collected by and hosted on G2.com.

What do you dislike about Contrast Security?

The only downside I can think of is the amount of false positive/negatives. Review collected by and hosted on G2.com.

What problems is Contrast Security solving and how is that benefiting you?

Hybrid testing... monitor our applications inner working. Accessing HTTP requests/responses and call stacks. Contrast Protect.. runtime protection is very important to the security of our applications Review collected by and hosted on G2.com.

Verified User in Insurance
AI
Enterprise(> 1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Contrast Security?

Contrast has a great breadth of technologies on offer. The insights that the tools provides are in depth, but also explain everything simply. When looking at vulnerabilities that were found, it is very easy to trace what has happened. Review collected by and hosted on G2.com.

What do you dislike about Contrast Security?

Contrast is a bit hard to implement in our environment. We were forced to use a deprecated package due to our environment being a bit outdated. The licensing with the RASP solution is not what we initially thought when purchasing the product. Review collected by and hosted on G2.com.

What problems is Contrast Security solving and how is that benefiting you?

Contrast is helping us identify vulnerabilities that are presenting themselves during the running of an application through IAST, while RASP is helping us to block attacks, and see what avenues attacks are coming through. Review collected by and hosted on G2.com.

TM
Mid-Market(51-1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Contrast Security?

Best service from the support team and tool is accurate enough to hand over to any dev team Review collected by and hosted on G2.com.

What do you dislike about Contrast Security?

UI functionalities are little bit on the down side Review collected by and hosted on G2.com.

What problems is Contrast Security solving and how is that benefiting you?

RASP products help to protect our legacy applications, and IAST provides a better overview of the application vulnerabilities. SCA is also a good way of identifying libraries. Review collected by and hosted on G2.com.

AB
Enterprise(> 1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Contrast Security?

Ease of use. Customer service. The Contarst Dashboard provides a good view of security posture for your organization. Review collected by and hosted on G2.com.

What do you dislike about Contrast Security?

Contrast Scan tool needs to be improved. The scan has limited language and framework support. Review collected by and hosted on G2.com.

What problems is Contrast Security solving and how is that benefiting you?

Contrast Security allows us to control the quality of software getting deployed to Production from a Security view point. Review collected by and hosted on G2.com.

Verified User in Food & Beverages
AF
Mid-Market(51-1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Contrast Security?

I like that it is very easy to implement and use, they are always looking for improvements to their platform. Sales and support staff always have a great sense of support. Review collected by and hosted on G2.com.

What do you dislike about Contrast Security?

over the last year we had one or two web service outages.They can improve the documentation of the products, how to solve problems, integrations, route coverage. Review collected by and hosted on G2.com.

What problems is Contrast Security solving and how is that benefiting you?

The need to acquire Contrast was to improve the security of our CICD for web applications. Contrast has added great value to the security of our applications in the company. Review collected by and hosted on G2.com.