Installation is easy, as the product works with Windows 2000/XP/Vista/2003 and does not require a database backend. Licensing is automated and painless as well.
AppScan's interface allows for productive management and configuration of scans, results and reporting. As you would expect with a mature product, the interface is both easy to use for its intended audience as well as flexible enough to allow for robust customisation.
We felt that AppScan's documentation is outstanding. Included in the remediation sections are several web-based training modules. These consist of automated slide shows with narrative voiceover to help the user understand the vulnerability in greater detail. Although they may be aimed at less experienced security professionals, they add some nice value to the product.
Pricing for IBM Rational AppScan Standard Edition 7.7 starts at US$17,500 and is based on term licenses. Standard support is included with the product. Forum and user community support information on the product was challenging to find via the IBM Rational support site.
For: Powerful scanning engine, robust set of options, excellent documentation
Against: True enterprise management requires the purchase of additional AppScan products
Verdict: A web application-assessment tool that delivers quality and value