---
description: If you're in a hunt for the best solution for your business, learn what Checkmarx has to offer thanks to GetApp Singapore. We provide the most detailed information on pricing, benefits, and disadvantages of software.
image: https://gdm-localsites-assets-gfprod.imgix.net/images/getapp/og_logo-94fd2a03a6c7a0e54fc0c9e21a1c0ce9.png
title: Checkmarx Price, Reviews & Ratings | GetApp Singapore 2026
---

Breadcrumb: [Home](/) > [Generative AI Tools](/directory/3874/generative-ai/software) > [Checkmarx](/software/2077511/checkmarx-one)

# Checkmarx

Canonical: https://www.getapp.sg/software/2077511/checkmarx-one

Page: 1 / 2\
Next: [Next page](https://www.getapp.sg/software/2077511/checkmarx-one?page=2)

> Checkmarx is a cloud-native AppSec platform for enterprises, delivering SAST, SCA, DAST, API security, ASPM, and agentic AI.
> 
> Verdict: Rated **3.9/5** by 7 users. Top-rated for **Likelihood to recommend**.

-----

## Overview

### Key benefits of Checkmarx

\* Unifies risk visibility across code, AI agents, open-source dependencies, containers, and runtime in a single platform, reducing the need to correlate findings across multiple point tools.&#10;\* Embeds security scanning directly into CI/CD pipelines and developer IDEs, surfacing vulnerabilities at the point of code authorship to reduce remediation cost and cycle time.&#10;\* Correlates and deduplicates findings across scanning engines, prioritizing results by exploitability and business impact to focus remediation effort on the highest-risk issues.&#10;\* Delivers AI-assisted fix recommendations inline within developer workflows, reducing dependency on security team intervention for common vulnerability classes.&#10;\* Supports SAST, SCA, DAST, IaC scanning, API security, and container security from a single platform, consolidating AppSec tooling and licensing overhead.&#10;\* Provides policy configuration and compliance reporting aligned to OWASP, CWE, NIST, and PCI-DSS, supporting audit and regulatory requirements across regulated industries.&#10;\* Offers role-based access controls and audit logging for enterprise governance, enabling security and engineering teams to operate with appropriately scoped permissions.&#10;\* Scales across multi-team, multi-repository environments with integrations for major SCM platforms, ticketing systems, and cloud providers, fitting into existing enterprise toolchains.&#10;\* Delivers separate reporting views for AppSec leadership and individual developers, providing program-level metrics alongside code-level, actionable findings.

## Quick Stats & Ratings

| Metric | Rating | Detail |
| **Overall** | **3.9/5** | 7 Reviews |
| Ease of Use | 3.7/5 | Based on overall reviews |
| Customer Support | 4.0/5 | Based on overall reviews |
| Value for Money | 3.0/5 | Based on overall reviews |
| Features | 4.3/5 | Based on overall reviews |
| Recommendation percentage | 70% | (7/10 Likelihood to recommend) |

## About the vendor

- **Company**: Checkmarx
- **Location**: Ramat Gan, US

## Commercial Context

- **Pricing Details**: Please contact CHECKMARX for pricing details.
- **Target Audience**: Self Employed, 2–10, 11–50, 51–200, 201–500, 501–1,000, 1,001–5,000, 5,001–10,000, 10,000+
- **Deployment & Platforms**: Cloud, SaaS, Web-based
- **Supported Languages**: English, Korean
- **Available Countries**: Australia, Austria, Brazil, Canada, China, Colombia, France, Germany, India, Israel, Italy, Mexico, Netherlands, Philippines, Poland, Portugal, Singapore, South Korea, Spain, Switzerland and 3 more

## Features

- API
- Access Controls/Permissions
- Alerts/Notifications
- Application Security
- Collaboration Tools
- Compliance Management
- Dashboard
- Data Import/Export
- Debugging
- For Developers
- Integrated Development Environment
- Multi-Language Scanning
- Real-Time Analytics
- Reporting/Analytics
- Security Testing
- Software Development
- Source-Code Scanning
- Third-Party Integrations
- Vulnerability Scanning

## Integrations (6 total)

- AWS Lambda
- Azure Pipelines
- Elsevier Pure
- GitLab
- Jenkins
- TeamCity

## Support Options

- Email/Help Desk
- FAQs/Forum
- Knowledge Base
- Phone Support
- 24/7 (Live rep)

## Category

- [Generative AI Tools](https://www.getapp.sg/directory/3874/generative-ai/software)

## Related Categories

- [Generative AI Tools](https://www.getapp.sg/directory/3874/generative-ai/software)
- [Static Application Security Testing (SAST) Software](https://www.getapp.sg/directory/3785/static-application-security-testing-sast/software)
- [Vulnerability Scanner Tools](https://www.getapp.sg/directory/3772/vulnerability-scanner/software)
- [Container Security Tools](https://www.getapp.sg/directory/3792/container-security/software)
- [App Development Software](https://www.getapp.sg/directory/370/application-development/software)

## Alternatives

1. [CodeScene](https://www.getapp.sg/software/2057397/codescene) — 4.7/5 (11 reviews)
2. [GitHub](https://www.getapp.sg/software/90537/github) — 4.8/5 (6204 reviews)
3. [GitLab](https://www.getapp.sg/software/112635/gitlab) — 4.6/5 (1226 reviews)
4. [SonarQube](https://www.getapp.sg/software/2034691/sonarqube) — 4.5/5 (68 reviews)
5. [Moderne](https://www.getapp.sg/software/2069628/moderne) (0 reviews)

## Reviews

### "Gives a full 360 degree view of vulnerabilities in static code" — 5.0/5

> **Daniel** | *22 January 2023* | Hospital & Health Care | Recommendation rating: 10.0/10
> 
> **Pros**: The ability to use CI/CD pipelines so when the build task kicks off, scanning for static code and open source libraries is done at build time.
> 
> **Cons**: The only thing I do not like is we have some languages that the product does not support like ColdFusion and R-Code.
> 
> My personal overall experience with SAST is positive. I like that I can tweak queries myself and if there is something I can't do, support is just a phone call/ticket away. They respond to all inquiries very quickly.

-----

### "Checkmarx a strong and reliable competitor" — 4.0/5

> **Juan** | *18 November 2021* | Banking | Recommendation rating: 8.0/10
> 
> **Pros**: Easy of use, the 0 complexity it adds to configure a new project, it feels to work in a collaborative way even in an on premise environment.
> 
> **Cons**: The implementation requires Windows and SQL, i would prefer that it runs on linux with postgresql.&#10;The reporting could be improved.
> 
> It has been a good experience, the support is fast and reliable. The tool work as expected and you can use the api integration to go even further.

-----

### "Super expensive but also feels outdated" — 1.0/5

> **Donovan** | *25 March 2022* | Financial Services | Recommendation rating: 3.0/10
> 
> **Pros**: It certainly covers all the vulnerability rules you would ever need.
> 
> **Cons**: It is SUPER expensive, very slow and the reporting is too messy. It would have been better if it can take a more integrated into the code approach like Sonar.
> 
> Overall I did not enjoy using it.

-----

### "CxSAST - A great static software analyzer" — 5.0/5

> **Tiennot** | *15 January 2021* | Computer & Network Security | Recommendation rating: 10.0/10
> 
> **Pros**: CXSast has several very important advantages. The first is that the code is scanned before it is even compiled, this means that de developers can scan and fix  while they are still in the coding process. &#10;&#10;Second CXSAST fully integrates in any devops proces. Scanning and reporting will be doen from within the screens developers work in, so no unneccesary switching between screens. (see extention CXflow)&#10;&#10;Nex to that the rules (or queries) are open, every one can see them or a organisation can tailor them to their own need. If needed a FP free setup can be created\!&#10;&#10;V9.3 now enable installation of the engines on Linux, you can dockarize the stuff&#10;&#10;Last but not least CXSast can be setup with additions such as CX-SCA (opensource analysis) and CX-IAST (passive IAST scanning)
> 
> **Cons**: The installation can sometimes be difficult. However Checkmarx counters this by offering free installation services for their costumers.

-----

### "Preferred Vulnerability Management Tool" — 4.0/5

> **Shreyans** | *12 November 2022* | Banking | Recommendation rating: 8.0/10
> 
> **Pros**: Can be used to analyse application, source code, byte code, and binaries for coding and design conditions.Key elements of the checkmarx dashboard can be split into two sections, namely scan, statistics and scan trends.
> 
> **Cons**: Unavailable or downtime of application causes delay in deploying the code through pipeline which is integrated with Checkmarx.

-----

Page: 1 / 2\
Next: [Next page](https://www.getapp.sg/software/2077511/checkmarx-one?page=2)

## Links

- [View on GetApp](https://www.getapp.sg/software/2077511/checkmarx-one)

## This page is available in the following languages

| Locale | URL |
| de | <https://www.getapp.de/software/2077511/checkmarx-one> |
| de-AT | <https://www.getapp.at/software/2077511/checkmarx-one> |
| en | <https://www.getapp.com/all-software/a/checkmarx-one/> |
| en-AE | <https://www.getapp.ae/software/2077511/checkmarx-one> |
| en-AU | <https://www.getapp.com.au/software/2077511/checkmarx-one> |
| en-CA | <https://www.getapp.ca/software/2077511/checkmarx-one> |
| en-GB | <https://www.getapp.co.uk/software/2077511/checkmarx-one> |
| en-IE | <https://www.getapp.ie/software/2077511/checkmarx-one> |
| en-NZ | <https://www.getapp.co.nz/software/2077511/checkmarx-one> |
| en-SG | <https://www.getapp.sg/software/2077511/checkmarx-one> |
| en-ZA | <https://www.getapp.za.com/software/2077511/checkmarx-one> |
| fr | <https://www.getapp.fr/software/2077511/checkmarx-one> |
| fr-BE | <https://fr.getapp.be/software/2077511/checkmarx-one> |
| fr-CA | <https://fr.getapp.ca/software/2077511/checkmarx-one> |

-----

## Structured Data

<script type="application/ld+json">
  {"@context":"https://schema.org","@graph":[{"name":null,"address":{"@type":"PostalAddress","addressLocality":null,"addressRegion":null,"postalCode":null,"streetAddress":null},"description":"Review, Compare and Evaluate small business software. GetApp Singapore has software offers, SaaS and Cloud Apps, independent evaluations and reviews.","email":"info@getapp.sg","url":"https://www.getapp.sg/","logo":"https://dm-localsites-assets-prod.imgix.net/images/getapp/getapp-logo-light-mode-5f7ee07199c9b3b045bc654a55a2b9fa.svg","@id":"https://www.getapp.sg/#organization","@type":"Organization","parentOrganization":"G2.com, Inc.","sameAs":["https://twitter.com/getapp","https://www.facebook.com/GetAppcom","https://www.instagram.com/getappcom/","https://www.youtube.com/c/GetAppCom"]},{"name":"Checkmarx","description":"Checkmarx is a cloud-native application security platform delivered as SaaS, with on-premises and hybrid deployment options for enterprises requiring flexible infrastructure. It consolidates static application security testing (SAST), software composition analysis (SCA), dynamic application security testing (DAST), infrastructure-as-code (IaC) scanning, API security, and container security into a unified platform. Target industries include financial services, healthcare, technology, retail, and government sectors where regulatory compliance and secure software delivery are critical priorities.\n\nThe platform integrates directly into CI/CD pipelines and developer IDEs, surfacing security findings at the point of code authorship rather than post-deployment. Correlation engines aggregate vulnerabilities across code, open-source dependencies, containers, and runtime environments into a consolidated risk view, reducing alert duplication and prioritizing findings by exploitability and business impact. AI-assisted remediation guidance delivers fix recommendations inline, supporting developer workflows without requiring context switching to external security tooling.\n\nCheckmarx supports large enterprise environments with role-based access controls, audit logging, and policy configuration aligned to frameworks such as OWASP, CWE, NIST, and PCI-DSS. Reporting and dashboards provide AppSec program metrics for security and engineering leadership, while developer-facing outputs are scoped to actionable, code-level findings. The platform scales across multi-team, multi-repository environments and supports integration with ticketing systems, SCM platforms, and cloud providers.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductScreenshot/7265541d-b41b-4cfd-828c-f7a5cd4cf9bb.webp","url":"https://www.getapp.sg/software/2077511/checkmarx-one","@id":"https://www.getapp.sg/software/2077511/checkmarx-one#software","@type":"SoftwareApplication","publisher":{"@id":"https://www.getapp.sg/#organization"},"applicationCategory":"BusinessApplication","aggregateRating":{"@type":"AggregateRating","ratingValue":3.9,"bestRating":5,"ratingCount":7},"operatingSystem":"Cloud"},{"@id":"https://www.getapp.sg/software/2077511/checkmarx-one#breadcrumblist","@type":"BreadcrumbList","itemListElement":[{"name":"Home","position":1,"item":"/","@type":"ListItem"},{"name":"Generative AI Tools","position":2,"item":"/directory/3874/generative-ai/software","@type":"ListItem"},{"name":"Checkmarx","position":3,"item":"/software/2077511/checkmarx-one","@type":"ListItem"}]}]}
</script>
