Introducing G2.ai, the future of software buying.Try now

Compare Contrast Security and SonarQube

Save
    Log in to your account
    to save comparisons,
    products and more.
At a Glance
Contrast Security
Contrast Security
Star Rating
(49)4.5 out of 5
Market Segments
Enterprise (67.3% of reviews)
Information
Entry-Level Pricing
No pricing available
Learn more about Contrast Security
SonarQube
SonarQube
Star Rating
(119)4.4 out of 5
Market Segments
Enterprise (44.4% of reviews)
Information
Entry-Level Pricing
Free
Browse all 4 pricing plans
AI Generated Summary
AI-generated. Powered by real user reviews.
  • Users report that SonarQube Server excels in Static Code Analysis with a score of 9.0, highlighting its ability to provide detailed insights into code quality. In contrast, Contrast Security, while still strong, has a slightly lower score of 8.8, indicating that users find SonarQube's analysis more comprehensive.
  • Reviewers mention that Contrast Security shines in API / Integrations with a remarkable score of 9.5, making it easier for teams to integrate security into their existing workflows. SonarQube Server, with a score of 7.7, is perceived as less flexible in this area, which may hinder seamless integration for some users.
  • G2 users highlight the Quality of Support for Contrast Security, which received a high score of 9.3. Users appreciate the responsiveness and helpfulness of the support team, while SonarQube Server's score of 8.0 suggests that there is room for improvement in customer service.
  • Reviewers say that SonarQube Server provides excellent Documentation with a score of 8.9, making it easier for users to understand and utilize the software effectively. In comparison, Contrast Security's documentation received a lower score of 7.6, indicating that users may face challenges in finding the information they need.
  • Users on G2 report that Contrast Security offers superior Compliance Testing capabilities, scoring 8.5, which is essential for organizations needing to meet regulatory requirements. SonarQube Server, with a score of 7.1, may not meet the same level of compliance needs for some users.
  • Reviewers mention that SonarQube Server's Repository Integration is rated at 7.8, which some users find limiting compared to Contrast Security's higher score of 8.8. This difference suggests that users may find it easier to work with various repositories when using Contrast Security.
Featured Products
Pricing
Entry-Level Pricing
Contrast Security
No pricing available
SonarQube
Community Edition
Free
Browse all 4 pricing plans
Free Trial
Contrast Security
Free Trial is available
SonarQube
Free Trial is available
Ratings
Meets Requirements
8.7
40
8.9
102
Ease of Use
8.6
41
8.5
104
Ease of Setup
7.8
27
8.0
63
Ease of Admin
8.9
27
8.5
58
Quality of Support
9.3
39
8.3
85
Has the product been a good partner in doing business?
9.0
27
8.4
52
Product Direction (% positive)
9.1
38
8.5
98
Features by Category
Static Application Security Testing (SAST)Hide 14 FeaturesShow 14 Features
8.6
11
7.5
18
Administration
9.5
7
7.8
15
8.8
8
5.9
16
Analysis
9.0
10
7.5
17
8.8
10
8.2
16
8.8
10
9.0
18
8.7
10
9.1
18
Testing
8.6
7
6.7
14
8.3
7
5.9
15
8.3
5
5.9
17
8.5
8
7.0
14
9.0
7
7.1
13
8.5
9
8.2
17
7.5
10
6.7
17
Agentic AI - Static Application Security Testing (SAST)
Not enough data
Not enough data
Dynamic Application Security Testing (DAST)Hide 13 FeaturesShow 13 Features
8.3
15
Not enough data
Administration
8.7
14
Not enough data
8.5
13
Not enough data
Analysis
8.9
15
Not enough data
8.1
15
Not enough data
8.5
12
Not enough data
8.8
15
Not enough data
8.6
14
Not enough data
Testing
7.9
12
Not enough data
8.3
10
Not enough data
8.1
13
Not enough data
8.1
12
Not enough data
8.2
15
Not enough data
7.0
15
Not enough data
Not enough data
Not enough data
Performance
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Network
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Application
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Agentic AI - Vulnerability Scanner
Not enough data
Not enough data
Not enough data
Not enough data
Software Development Analytics ToolsHide 6 FeaturesShow 6 Features
Not enough data
7.9
28
Functionality
Not enough data
7.9
26
Not enough data
8.3
25
Not enough data
8.2
24
Management
Not enough data
7.6
22
Not enough data
7.5
20
Not enough data
7.9
22
Not enough data
Not enough data
Bug Reporting
Not enough data
9.0
7
Not enough data
9.3
7
Not enough data
9.0
7
Bug Monitoring
Not enough data
8.8
7
Not enough data
8.8
7
Not enough data
9.3
7
Agentic AI - Bug Tracking
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Software Composition AnalysisHide 6 FeaturesShow 6 Features
8.7
16
Not enough data
Functionality - Software Composition Analysis
8.1
16
Not enough data
8.8
16
Not enough data
9.1
15
Not enough data
Effectiveness - Software Composition Analysis
8.3
16
Not enough data
9.0
16
Not enough data
8.9
16
Not enough data
Not enough data
7.5
30
Documentation
Not enough data
7.8
29
Not enough data
7.5
29
Not enough data
8.2
30
Security
Not enough data
6.9
27
Not enough data
7.0
26
Not enough data
8.0
27
Application SecurityHide 1 FeatureShow 1 Feature
Not enough data
Not enough data
Generative AI
Not enough data
Not enough data
Application Security Posture Management (ASPM)Hide 11 FeaturesShow 11 Features
Not enough data
Not enough data
Risk management - Application Security Posture Management (ASPM)
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Integration and efficiency - Application Security Posture Management (ASPM)
Not enough data
Not enough data
Not enough data
Not enough data
Reporting and Analytics - Application Security Posture Management (ASPM)
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Agentic AI - Application Security Posture Management (ASPM)
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
AI Compliance
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Risk Management & Monitoring
Not enough data
Not enough data
Not enough data
Not enough data
AI Lifecycle Management
Not enough data
Not enough data
Access Control and Security
Not enough data
Not enough data
Collaboration and Communication
Not enough data
Not enough data
Agentic AI - AI Governance Tools
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Runtime Application Self-Protection (RASP) ToolsHide 4 FeaturesShow 4 Features
Not enough data
Not enough data
Threat Detection & Response - Runtime Application Self-Protection (RASP)
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Static Code AnalysisHide 3 FeaturesShow 3 Features
Not enough data
Not enough data
Agentic AI - Static Code Analysis
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Cloud Visibility
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Security
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Identity
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Interactive Application Security Testing (IAST)Hide 1 FeatureShow 1 Feature
Not enough data
Not enough data
Agentic AI - Interactive Application Security Testing (IAST)
Not enough data
Not enough data
Reviews
Reviewers' Company Size
Contrast Security
Contrast Security
Small-Business(50 or fewer emp.)
12.2%
Mid-Market(51-1000 emp.)
20.4%
Enterprise(> 1000 emp.)
67.3%
SonarQube
SonarQube
Small-Business(50 or fewer emp.)
17.1%
Mid-Market(51-1000 emp.)
38.5%
Enterprise(> 1000 emp.)
44.4%
Reviewers' Industry
Contrast Security
Contrast Security
Insurance
14.3%
Information Technology and Services
10.2%
Telecommunications
8.2%
Financial Services
8.2%
Computer Software
8.2%
Other
51.0%
SonarQube
SonarQube
Information Technology and Services
25.6%
Computer Software
22.2%
Financial Services
6.8%
Hospital & Health Care
3.4%
Computer & Network Security
3.4%
Other
38.5%
Most Helpful Reviews
Contrast Security
Contrast Security
Most Helpful Favorable Review
Verified User
G
Verified User in Insurance

Contrast delivers easy and fast vulnerability data about our applications (IDE environments) that continues through production with the RASP functionality.

Most Helpful Critical Review
Verified User
G
Verified User in Hospital & Health Care

Less robust features for .NET-based workloads: Azure functions/serverless not available (only app services), Azure DevOps integrations work but are not intensive, Contrast support are generally less-knowledgeable on .NET environments (optimized for Java &...

SonarQube
SonarQube
Most Helpful Favorable Review
KB
Kevin B.
Verified User in Computer Software

What I love about SonarQube is how it digs deep into my code and finds hidden issues which are not as obvious when writing the code, especially bugs and security problems, across different programming languages. It hooks up smoothly with my CI/CD pipelines,...

Most Helpful Critical Review
Verified User
G
Verified User in Computer Software

no real support whatsoever for the $20k price tag; set up can be hellish if you haven't been through it before. With a database that has prevented updates to newer versions

Alternatives
Contrast Security
Contrast Security Alternatives
Wiz
Wiz
Add Wiz
GitHub
GitHub
Add GitHub
GitLab
GitLab
Add GitLab
Dynatrace
Dynatrace
Add Dynatrace
SonarQube
SonarQube Alternatives
GitHub
GitHub
Add GitHub
GitLab
GitLab
Add GitLab
Embold
Embold
Add Embold
Coverity
Coverity
Add Coverity
Discussions
Contrast Security
Contrast Security Discussions
Monty the Mongoose crying
Contrast Security has no discussions with answers
SonarQube
SonarQube Discussions
Monty the Mongoose crying
SonarQube has no discussions with answers