Top Rated Intigriti Alternatives
29 Intigriti Reviews
Overall Review Sentiment for Intigriti
Log in to view review sentiment.
Intigriti's platform stands out for its user-friendly interface and an excellent bug bounty payout mechanism that attracts top-tier security researchers. Additionally, their hybrid pentests offer a valuable alternative to traditional pentesting, which we've successfully utilized multiple times, eliminating the need for conventional methods. The seamless integration with platforms like Slack enhances our workflow by providing immediate updates directly within our company's communication channels. Review collected by and hosted on G2.com.
Our experience with Intigriti's hybrid pentests has shown that their value significantly varies with the choice of security researcher. In some cases, researchers only uncover basic vulnerabilities, not meeting our expectations for thorough analysis. Review collected by and hosted on G2.com.
Intigriti makes managing vulnerability disclosures significantly easier. Both the researcher doing the disclosure and you as a company have pre-defined and agreed upon rules of engagement and a clear reward structure. Gone is the need for negotiating a reward with each researcher. In addition the clear rules of engagement means you do not need to explain over and over again why a certain vulnerability/report isn't relevant, and you aren't going to have to respond to black mail attempts.
The triage team helps filter out noise by replicating each issue and clarifying things with the security researcher, this is a huge time save. Since Intigriti acts as a more or less neutral middleman it makes it easier for us as a company and the researcher to find common ground.
Implementing the bug bounty program was easy, once setup it can theoretically keep going as is forever. If needed Intigriti offers helpful suggestions to improve your program. Referencing external issue trackers and similar was also trivial.
So far good experience with the Intigriti customer support, triage team, and account manager. Review collected by and hosted on G2.com.
Due to the nature of crowed sourced bug bounty programs you might sometimes have periods with almost no activity, followed by periods where it feels like you can't catch a break.
Since you pay per vulnerability disocvered budgeting can be a difficult topic since you are never sure how many vulnerabilities you will receive in a given time frame.
A successful program requires you to spend time nurturing it, this is not a downside/dislike per se but it's something to be aware of. Spend time building a relation with the researchers and you will be rewarded, do not expect to get the best results if you auto-pilot your program management. Review collected by and hosted on G2.com.

The speed of Triage is impressive. The quality delivered in form of reports and feedback from Triage is very pro active and competent. This really increase the quality of vulnerability management for us internally. Review collected by and hosted on G2.com.
Sometimes if some 3rd party integration breaks, we are not informed about it nor given the reason. We had to initiatite the chat with chatbot and get the feedback way after spending so many hours. This could be improved with common errors in integration documentation and maybe quick support. Review collected by and hosted on G2.com.
Continuously evolving platform with new features.
Great Success Managers in the customer support, just lovely and easy going.
Easy to manage.
Integration and implementation with our company was really easy.
Notifications in Slack when we need to interact make us interact with the platform when we need which make the frequency of visiting perfect. Review collected by and hosted on G2.com.
Sometimes hard to get the attention from the technical employees (forwarded tech questions) Review collected by and hosted on G2.com.
We've had a program go from internal to fully public. Tons of vulnerabilities have been reported which have helped us secure the platform and have provided a lot of value.
Intigriti has helped us move through the different phases, providing recommendations on how to get more engagement and how to reward specific vulnerabilities. Review collected by and hosted on G2.com.
It is hard to control that Bug Bounty hunters stay within scope (specially with the amount of requests/minute). Though challenge to solve.
It is also quite hard to get top up data from the platform. Review collected by and hosted on G2.com.

Collaboration and support. They think along and are not just after money. Easy to set up. Extensive platform that is still easy to manage! Review collected by and hosted on G2.com.
I can't think of anything right away, which is good news. Review collected by and hosted on G2.com.

The triaging of submissions is normally quite quick and the technical level of the triagers is good. We very rarely have to mark submissions negatively after they've passed through triage, which saves us a lot of time. Compared to other bug bounty platforms the pricing is competitive and their sales team is not pushy. They provide us with good ideas about how we can continuously improve the program to generate better engagement. Review collected by and hosted on G2.com.
Other (more expensive) platforms have a wider pool of registered researchers, so may generate more findings. But this is purely speculation. Review collected by and hosted on G2.com.
The entire process around working with intigriti has been great, from the initial calls through to the interactions with researchers and the triage folk.
The level of community engagement and the feel that the researchers are part of a tangible team is something that I have not experienced before. It is great to be able to get high quality folk on a program and engaging quickly but to also have direct contact and feedback is something that sets Intigriti apart. Review collected by and hosted on G2.com.
At the minute it is really hard to say. We have had great engagement both from Intigriti folk but also researchers. Given the nature of our industry it can be difficult to get a consistent flow of high quality researchers cycling through private programmes so this would be an area I could see growth in over the coming months. Review collected by and hosted on G2.com.
Our new CSM is awesome. We weren't that lucky before (they weren't bad either) but now we can notice she really cares and keeps up updated with recommendations and incredibly quick feedback for any possible issue.
The triage team is very responsive, technically skilled and they are open to discuss severity of the reports with us.
There's a big amount of very good researches who help us to find possible issues as soon as they are developed into QA. Review collected by and hosted on G2.com.
Nothing really. Maybe I would like our recommendations to improve the product to be added but I understand they need to be reviewed and that takes some time.
The reporting could be a bit better and they have some minor bugs but I know our CSM is on top of it and eventually everything will be fixed. Review collected by and hosted on G2.com.

The quality of service from the reviewers and triage is exactly what we need for our long running application. Review collected by and hosted on G2.com.
Fixed yearly costs feel on the high side. Altough we are very happy with the hybrid pentest and bounty fees. Review collected by and hosted on G2.com.