Product Avatar Image

Checkmarx

Show rating breakdown
71 reviews
  • 3 profiles
  • 8 categories
Average star rating
4.3
Serving customers since
2006

Checkmarx Solutions

Discover ready-made solutions that bring related products, reviews, and resources together in one place.

Profile Filters

All Products & Services

Product Avatar Image
Checkmarx

47 reviews

Identify software security vulnerabilities & fix them

Product Avatar Image
ZAP by Checkmarx

14 reviews

ZAP by Checkmarx, formerly known as Zed Attack Proxy , is a leading open-source web application security scanner designed to help developers, testers, and security professionals identify vulnerabilities in web applications. Actively maintained by a global community, ZAP offers both automated and manual testing capabilities, making it suitable for users with varying levels of security expertise. Key Features and Functionality: - Automated Security Scanning: ZAP provides simple, single-click automated scanning, enabling users to identify security flaws with ease. - Active and Passive Scanning: Utilizes both passive and active scanning techniques to uncover a wide range of security vulnerabilities. - Advanced User Controls: Offers tools like manual interception, fuzzing, and forced browsing for thorough penetration testing. - CI/CD Integration: Seamlessly integrates with Continuous Integration/Continuous Deployment pipelines, automating security testing within development workflows. - Cross-Platform Support: Compatible with Linux, Windows, and macOS operating systems. Primary Value and Problem Solved: ZAP by Checkmarx addresses the critical need for accessible and effective web application security testing. By offering a free, open-source solution with both automated and manual testing capabilities, ZAP empowers organizations to identify and remediate vulnerabilities early in the development lifecycle. Its integration with CI/CD pipelines ensures that security becomes an integral part of the development process, reducing the risk of security breaches and enhancing overall application security.

Product Avatar Image
Checkmarx Codebashing

10 reviews

Raising AppSec awareness simply cannot be thought of as a distinct step in the SDLC. It's all about inserting awareness into every step of the SDLC in a manner that actually fuels faster releases. Codebashing does exactly that - Through the use of just-in-time training, ongoing communication, and fun engagement, security managers cultivate a culture of software security that empowers developers to think and act securely in their day-to-day work.

Profile Name

Star Rating

41
27
2
1
0

Checkmarx Reviews

Review Filters
Profile Name
Star Rating
41
27
2
1
0
Aman M.
AM
Aman M.
DevOps Engineer @Yudiz || AWS Certified X 1 || Azure Certified X 1 ⛈ || Aviatrix MCNA Certified ⚡️ || AWS community builder || CNCF Leader Rajkot Group☁️ || Docker 🐳 || Kubernetes ☸ || Jenkins
07/13/2026
Validated Reviewer
Verified Current User
Review source: G2 invite

Centralized Source Code Security with Seamless CI/CD Integration

Checkmarx is a centralized security tool that provides end-to-end insights into source code security and vulnerabilities. It also helps improve the efficiency of the source code by highlighting the associated risks and suggesting ways to remediate the vulnerabilities. In addition, it shows vulnerabilities in the open-source libraries and packages we use in our source code through SCA scans. One thing I like the most is how well it integrates with our CI/CD tooling. We can plug it into our DevSecOps CI/CD flow, and developers can see scan insights directly from the pipeline itself, without needing to log in to the Checkmarx UI separately.
NT
Naushad T.
07/09/2026
Validated Reviewer
Review source: G2 invite
Incentivized Review

Checkmarx: Reliable SAST Solution for Strengthening Application Security

I had a positive experience using Checkmarx as part of our application security process. What I appreciated most was how it helped us identify security vulnerabilities early in the development lifecycle, so teams could address issues before they reached production. The interface is fairly friendly once you're familiar with it, and the scan reports provide enough detail for developers and security teams to understand the root cause and recommended remediation.
Verified User in Computer Software
EC
Verified User in Computer Software
07/09/2026
Validated Reviewer
Review source: G2 invite
Incentivized Review

Strong Integrations and Support, but Pricing Is a Challenge for LatAm Startups

For us the most importante is the number of integrations that it has, sometimes de price is a little bit hi because we are startup that is based in Latam. The support also is good, and the performance UI and UX algo good.

About

Contact

HQ Location:
Paramus, NJ

Social

@Checkmarx

What is Checkmarx?

Checkmarx is the leader in agentic application security, delivering enterprise-grade protection while helping organizations lower engineering costs and accelerate development velocity. The Checkmarx One platform scans trillions of lines of code each year, enabling companies to cut vulnerability density by more than half. Autonomous security agents continuously detect and counter AI-driven threats across the software development lifecycle, delivering prevention-first protection for legacy, modern, and AI-generated code at enterprise scale.

Details

Year Founded
2006