CxSAST – On-Premises Static Application Security Testing | Checkmarx

On-Premises

CxSAST

Balancing speed and security, Checkmarx’ CxSAST scan delivers the best developer experience: up to 90% faster scanning with up to 80% fewer false positives.

image_Hero_SAST

What Makes CxSAST Stand Out?

No need to choose between speed and security. Get the best of both worlds by streamlining your security testing while securing mission-critical enterprise applications.

Adaptive Vulnerability Scanning

Adaptive Vulnerability Scanning

Scans quickly to find the most relevant results, while identifying the top risks for mission-critical applications.

Best Fix Location

Best Fix Location

Get to the root of a vulnerability, so you can identify the best place to fix code and remediate multiple vulnerabilities at once.

In-Depth Security Insights

comprehensive_reporting_2x

Get detailed and insights into code vulnerabilities for effective risk management and create custom reports.

Integrate into your SDLC

integrate_into_your_sdlc__2x

Embed your SAST scans and result orchestration to create mature DevSecOps pipelines into your SCM tools, using CxFlow, CxSAST’s powerful integration tool.

Wide Language & Framework Coverage

wide_language_and_framework_coverage

CxSAST supports over 35 languages and 80 language frameworks, from the newest to legacy languages, promoting multi-platform development.

  • Adaptive Vulnerability Scanning

    Scans quickly to find the most relevant results, while identifying the top risks for mission-critical applications.

  • Best Fix Location

    Get to the root of a vulnerability, so you can identify the best place to fix code and remediate multiple vulnerabilities at once.

  • In-Depth Security Insights

    Get detailed and insights into code vulnerabilities for effective risk management and create custom reports.

  • Integrate into your SDLC

    Embed your SAST scans and result orchestration to create mature DevSecOps pipelines into your SCM tools, using CxFlow, CxSAST’s powerful integration tool.

  • Wide Language & Framework Coverage

    CxSAST supports over 35 languages and 80 language frameworks, from the newest to legacy languages, promoting multi-platform development.

Adaptive Vulnerability Scanning
Best Fix Location
comprehensive_reporting_2x
integrate_into_your_sdlc__2x
wide_language_and_framework_coverage
Mid Page CTA Background

With CxSAST,
You’re in Charge.

Get on top of your security, reduce both false negatives & false positives, and ensure your released apps are secure.

What Chexkmarx’ CxSAST Can Do For You

Trusted By the World’s Largest Enterprises

CxSAST is trusted by enterprises around the world to empower their entire organization in creating innovative and secure applications.

cxsast_i01

Ultra-Fast Speed, Unparalleled Security

Get the best of both worlds: The most relevant results quickly or a deep dive into mission-critical apps. Secure your application footprint and provide the best developer experience.

cxsast_i02

Prioritize Findings with Accurate Results

Avoid false positives and false negatives with custom presets and queries, while getting close optimization guidance along the way.

cxsast_i03

Secure Data Retention

Your data is up to you. Determine the number of saved scans and manually trigger data retention processes by number of scans or a specific data range.

cxsast_i04

Control Your Scan Schedule

Schedule scans to run when it’s most convenient to you. Run full scans overnight or on weekends, to get comprehensive updates, without interrupting work.

cxsast_i05

Manage, Triage, and Fix Vulnerabilities Faster

Analytics and dashboards provide a holistic view of your AppSec posture. Slice and dice the data to spot anomalies and efficiently analyze vulnerabilities.

What Our Customers Say About Us

See why enterprises trust our approach to AppSec to secure their business-critical applications.

“Checkmarx One definitely checks all my boxes from a security standpoint and has a great interface that’s engaging and easy to use. Some of the solutions we considered were more complicated. With Checkmarx One, it’s easy to get right to the problem with little to no learning curve.”

“Incorporating Checkmarx’s technology has revolutionized our development culture. It’s more than just technology; it serves as the foundation of our security strategy, ensuring that our applications are secure by design.”

“The success of our AppSec program can be directly attributed to the tooling, processes and support provided by Checkmarx managed services. Our mission revolves around providing secure and compliant lottery and gaming applications and services to our clients around the globe, and with Checkmarx SAST, SCA and associated components enhanced by their stellar service support, we deliver on this promise with confidence and certainty.”

“After nearly nine years of using Checkmarx’s SAST, CGI’s journey has been one of seamless integration and consistent satisfaction. The last three years have been particularly smooth, reflecting the solution’s reliability and our successful partnership.”

“After reviewing the Checkmarx platform, I’m not sure how Veracode is able to exist while being at a similar price point.”

“Checkmarx’s execution is impressive; it’s brought all the products under one cloud platform.”

“By Far The Best AppSec Tooling Decision We Have Made!!”

“We were thrilled to find Checkmarx, which helped us improve the SLA for identifying and remediating risk, reduce risk and the number of vulnerabilities, and eliminate high- and medium-risk issues.”

“Checkmarx made security team and developers life easier.”

FAQ

What other solutions does Checkmarx have in addition to SAST?

Checkmarx’ SAST tool is available both on-premises and as part of the Checkmarx One platform. Checkmarx One allows a complete enterprise application security program to run on a single platform, reducing total cost of ownership and allowing for correlation and better actionable insights.

The Checkmarx One platform includes:

  • SAST
  • DAST
  • SCA
  • SCS
  • API Security
  • IaC Security
  • Container Security

What languages does CxSAST support?

CxSAST supports over 35 programming languages and 80 development frameworks out-of-the-box. The full list of supported languages and frameworks is listed in our documentation.

Where can I learn more and explore documentation?

You can explore all Checkmarx’ documentation on the documentation page.

How does CxSAST differ from SAST on Checkmarx One?

CxSAST is on-premises, while Checkmarx One SAST is included in our enterprise cloud-native platform.

Both CxSAST and SAST on Checkmarx One use the same SAST engine.

How can Professional Services help me with my SAST solution?

Professional Services help accelerate value. This starts with our Checkmarx Assess (APMA) framework, which provides actionable steps to improve your AppSec maturity.

Professional Services also helps you optimize your solution to focus on finding exploitable vulnerabilities, as well as providing training and managed services to improve your AppSec journey.

See It in Action

Find Critical Vulnerabilities in Your Applications

CxSAST identifies critical vulnerabilities and gives you the flexibility to deliver secure applications.

Trusted By: