Best Software for 2025 is now live!
Show rating breakdown
Save to My Lists
Claimed
Claimed

Top Rated DefectDojo Alternatives

DefectDojo Reviews & Product Details

DefectDojo Overview

What is DefectDojo?

DefectDojo is a security program and vulnerability management tool. DefectDojo allows you to manage your application security program, maintain product and application information, schedule scans, triage vulnerabilities and push findings into defect trackers.

DefectDojo Details
Show LessShow More
Product Description

DefectDojo is a security program and vulnerability management tool. DefectDojo allows you to manage your application security program, maintain product and application information, schedule scans, triage vulnerabilities and push findings into defect trackers.


Seller Details
Year Founded
2017
HQ Location
Austin, US
Twitter
@defectdojo
678 Twitter followers
LinkedIn® Page
www.linkedin.com
3 employees on LinkedIn®

Greg A.
GA
Overview Provided by:

Recent DefectDojo Reviews

Anjali A.
AA
Anjali A.Mid-Market (51-1000 emp.)
4.5 out of 5
"DefectDojo: Ultimate Vulnerability Management Solution"
Defectdojo has all the Possible features which is needed for Vulnerability Management. if you want to showcase the test which is done in last month...
DN
Divi N.Small-Business (50 or fewer emp.)
4.0 out of 5
"Free to use vulnerability management tool"
-Since its opensourced its free to use -Supports importing reports from lots of other tools - Easy to integrate with other tools -SSO supported ...
HE
Henry E.Small-Business (50 or fewer emp.)
4.5 out of 5
"A pertinacious and authentic platform for security programs in the organization"
The product has a very simple user interface that enables most users to easily navigate around without any hardship or challenge as it is a straigh...
Security Badge
This seller hasn't added their security information yet. Let them know that you'd like them to add it.
0 people requested security information

DefectDojo Media

Answer a few questions to help the DefectDojo community
Have you used DefectDojo before?
Yes

11 DefectDojo Reviews

4.6 out of 5
The next elements are filters and will change the displayed results once they are selected.
Search reviews
Popular Mentions
The next elements are radio elements and sort the displayed results by the item selected and will update the results displayed.
Hide FiltersMore Filters
The next elements are filters and will change the displayed results once they are selected.
The next elements are filters and will change the displayed results once they are selected.
11 DefectDojo Reviews
4.6 out of 5
11 DefectDojo Reviews
4.6 out of 5

DefectDojo Pros and Cons

How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Cons
G2 reviews are authentic and verified.
Anjali A.
AA
Offensive security Analyst
Mid-Market(51-1000 emp.)
More Options
Validated Reviewer
Verified Current User
Review source: G2 invite
Incentivized Review
(Original )Information
What do you like best about DefectDojo?

Defectdojo has all the Possible features which is needed for Vulnerability Management. if you want to showcase the test which is done in last month you can showcase that with easy matric. Review collected by and hosted on G2.com.

What do you dislike about DefectDojo?

Enterprise version is too slow if i upload large file /. Review collected by and hosted on G2.com.

What problems is DefectDojo solving and how is that benefiting you?

Defectdojo is majorlly helping with me is manage monthly vulnerability . if previous month vulnerability not in present month so it will be automatically closed in current month. Review collected by and hosted on G2.com.

HE
Systems Analyst
Information Technology and Services
Small-Business(50 or fewer emp.)
More Options
Validated Reviewer
Review source: G2 invite
Incentivized Review
What do you like best about DefectDojo?

The product has a very simple user interface that enables most users to easily navigate around without any hardship or challenge as it is a straightforward tool to most beginners. The software integration with Jira has a huge impact hence it enhances productivity. The software has a very great source vulnerability management tool and because of this, I would recommend it to all the users. Review collected by and hosted on G2.com.

What do you dislike about DefectDojo?

I can't give five stars to the platform as it has poor customer support that doesn’t respond and solve customers' issues as supposed to be as it is an open-source solution. Review collected by and hosted on G2.com.

What problems is DefectDojo solving and how is that benefiting you?

The platform is best as it puts together many scan reports in one single platform. The product enables security engineers to spend less time when logging in vulnerability it is achieved by the platform having a vulnerability testing system. The fact that DefectDojo has an open- source model of vulnerability management makes it reduce all the huge costs of solution. Review collected by and hosted on G2.com.

MS
Software Engineer
Staffing and Recruiting
Small-Business(50 or fewer emp.)
More Options
Validated Reviewer
Review source: G2 invite
Incentivized Review
What do you like best about DefectDojo?

DefectDojo is a straightforward platform hence any user can use it effortlessly with any difficulty when using it. The product helps its users to be always updated as it provides them with notifications via Slack or email. The product has integration features hence it integrates with other reporting tools increasing productivity. Review collected by and hosted on G2.com.

What do you dislike about DefectDojo?

There is not much to dislike about the product but customer support is not prioritized as the support team could take days to solve customer’s issues. Review collected by and hosted on G2.com.

What problems is DefectDojo solving and how is that benefiting you?

Defectdojo with the right SLA and stakeholders helps in managing the identified vulnerabilities. The product has helped most of the security experts to spend less time logging vulnerabilities. The product favors its users as it is easy to use, manage, and easy to set up hence great for all beginners as it is effortless to mavigate. Review collected by and hosted on G2.com.

DN
software developer
Small-Business(50 or fewer emp.)
More Options
Validated Reviewer
Review source: G2 invite
Incentivized Review
What do you like best about DefectDojo?

-Since its opensourced its free to use

-Supports importing reports from lots of other tools

- Easy to integrate with other tools

-SSO supported

-Easy to install Review collected by and hosted on G2.com.

What do you dislike about DefectDojo?

-They are removing features from opensource version and putting them into paid version

-UI is bit finicky Review collected by and hosted on G2.com.

What problems is DefectDojo solving and how is that benefiting you?

DefectDojo in my opinion was one of the best VM tool. I have used it for my multiple projects, its very easy to have multiple projects and project under same account and get statuses from all the projects at once. DefectDojo also has REST APIs hence it is very easy to integrate with other services. Review collected by and hosted on G2.com.

RV
Mid-Market(51-1000 emp.)
More Options
Validated Reviewer
Verified Current User
Review source: G2 invite
Incentivized Review
What do you like best about DefectDojo?

If you are looking for a good open source vulnerability management tool, than this is it. It can be integrated with different VAPT scanner reports and the complete lifecycle management can be done for the Vulnerabilites identified. Review collected by and hosted on G2.com.

What do you dislike about DefectDojo?

It should also have APIs available that can be easily integrated with certain SIEM tools. Review collected by and hosted on G2.com.

What problems is DefectDojo solving and how is that benefiting you?

DefectDojo is providing an open-source model of Vulnerability Management tool and it reduces the cost of the solution. Review collected by and hosted on G2.com.

DD
software engineer
Small-Business(50 or fewer emp.)
More Options
Validated Reviewer
Verified Current User
Review source: G2 invite
Incentivized Review
(Original )Information
What do you like best about DefectDojo?

Free to use, Very powerful vulnerability management tool, very structured REST APIs, and easy to integrate with other reporting tools. Review collected by and hosted on G2.com.

What do you dislike about DefectDojo?

Nothing much I can think of at the moment. But I have had trouble sometimes when deploying, like dependency errors at the first time installing. Review collected by and hosted on G2.com.

What problems is DefectDojo solving and how is that benefiting you?

Very powerful tool used by the VAPT team. we're mainly using this tool with Caldera. Caldera does the vulnerability assessment and we pushed reports generated by Caldera to DefectDojo. Review collected by and hosted on G2.com.

Verified User in Computer & Network Security
AC
Mid-Market(51-1000 emp.)
More Options
Validated Reviewer
Review source: Organic
(Original )Information
What do you like best about DefectDojo?

Easy to Use, Easy to set up. easy to manage, best vulnerability management tool Review collected by and hosted on G2.com.

What do you dislike about DefectDojo?

Least Direct tools integration and automatic import scan result is not there Review collected by and hosted on G2.com.

Recommendations to others considering DefectDojo:

Best tool to use for vulnerabilty management and easy to set up. Easy to use. Review collected by and hosted on G2.com.

What problems is DefectDojo solving and how is that benefiting you?

Scanning in house server for vulnerabilty managemnet and import those results in other tools Review collected by and hosted on G2.com.

SA
Red Team Director
Mid-Market(51-1000 emp.)
More Options
Validated Reviewer
Review source: G2 invite
Incentivized Review
(Original )Information
What do you like best about DefectDojo?

Ease of use, opensource, developed by OWASP team, compatible with lots of security scanners Review collected by and hosted on G2.com.

What do you dislike about DefectDojo?

very less tools are supported with direct console integration, we have to manually import the scan files Review collected by and hosted on G2.com.

Recommendations to others considering DefectDojo:

for the quick setup and running defectdojo use docker based installation Review collected by and hosted on G2.com.

What problems is DefectDojo solving and how is that benefiting you?

Vulnerability Management, De-duplications of vulnerabilities, Single console to track all the vulnerabilities and status Review collected by and hosted on G2.com.

TA
Security Consultant
Mid-Market(51-1000 emp.)
More Options
Validated Reviewer
Review source: G2 invite
Incentivized Review
What do you like best about DefectDojo?

DefectDojo's main purpose is to cut down on the time security professionals spend logging vulnerabilities. DefectDojo achieves this by providing a vulnerability templating system, imports for popular vulnerability scanners, report production, and metrics. Review collected by and hosted on G2.com.

What do you dislike about DefectDojo?

not find any unusual. haven't found any bug yet. Review collected by and hosted on G2.com.

Recommendations to others considering DefectDojo:

A nice and very useful tool for application vulnerability management. Review collected by and hosted on G2.com.

What problems is DefectDojo solving and how is that benefiting you?

DefectDojo's main purpose is to help security experts spend less time logging vulnerabilities. DefectDojo does this by providing a vulnerability templating system, vulnerability scanner imports, report production, and metrics. Review collected by and hosted on G2.com.

Elyes C.
EC
Application Security Engineer
Mid-Market(51-1000 emp.)
More Options
Validated Reviewer
Verified Current User
Review source: G2 invite
Incentivized Review
What do you like best about DefectDojo?

The most positive side is that there is a dockerized solution for Defectdojo. On another side, the fact that you can integrate it with Jira is a huge plus.

I also appreciate the notifications via Slack and email. Review collected by and hosted on G2.com.

What do you dislike about DefectDojo?

The fact that DefectDojo is an open-source solution, there is no part for customer support. Sometimes it takes you days to solve an issue. Review collected by and hosted on G2.com.

What problems is DefectDojo solving and how is that benefiting you?

We are integrating too many scan reports in one single platform. Review collected by and hosted on G2.com.