17 anos ajudando empresas
a escolher o melhor software
Nexus Lifecycle
Conheça Nexus Lifecycle
A Nexus Platform da Sonatype dimensiona a supervisão de segurança de código aberto na cadeia de suprimento de software e recupera o tempo gasto combatendo riscos no ciclo de vida do desenvolvimento de software.
Desenvolvedores de software, profissionais de segurança de aplicativos e especialistas em DevSecOps recebem uma alta qualidade de inteligência de vulnerabilidade da Nexus para impulsionar versões com mais rapidez, diminuir falsos positivos e fornecer orientações detalhadas de correção a desenvolvedores.
Quem usa Nexus Lifecycle?
Desenvolvedores de software, profissionais de segurança de aplicativos, especialistas em DevSecOps, segurança da informação, gerentes de segurança cibernética, engenheiros de software, arquiteto de aplicativos.
Está em dúvida sobre o Nexus Lifecycle?
Compare com uma alternativa popular
Nexus Lifecycle
Avaliações do Nexus Lifecycle
Pontuação média
Avaliações por tamanho de empresa (funcionários)
- <50
- 51-200
- 201-1.000
- >1.001
Encontre avaliações segundo pontuações
Alternativas consideradas anteriormente:
vulnerability analysis tool
Comentários: my experience with Nexus Lifecycle is that it allows me to identify and secure vulnerable devices when doing development, which really allows me to work with peace of mind and confidence
Vantagens:
Firstly, what is good about Nexus Lifecycle is that it is easy to install and use, it supports several types of packages, has very good documentation and is available in several languages. secondly, the vulnerability feature is excellent when it comes to application vulnerability analysis
Desvantagens:
First of all, Nexus Lifecycle is more expensive than its competitors, so access to the paid version is not available to everyone, Then, its interface is often heavy when adding several components
Binary Repository for the large enterprise
Comentários: It's fairly easy to install, pricy from the enterprise version, supports all packages types.
Vantagens:
The Open Source version has enough functionality (comparing to competitors) to be one of the best in its field. It has vast support for all packages type and the installation is fairly easy
Desvantagens:
The issue will begin once you like to move from the Open Source version to the commercial one, it is pricy (again comparing to the competitors) it has a business module of per user per year cost and if your budget is limited you would find yourself with an issue of funding it. It is not the best in line with the enterprise versions out there.
Automatic vulnerability detection and mitigation tool in software development process
Comentários: I primarily used the tool to detect supply chain vulnerability to mitigate attacks for the development team.
Vantagens:
Easier to install, and use and helping our team in mitigating supply chain attacks.
Desvantagens:
It has a high per-year basis subscription and is not up to the mark with the other competitor with similar costs
Powerful artifact manager, but has some rough edges
Vantagens:
Supports all major artifact types, such as npm, helm, docker, etc. Powerful integrations with major 3rd party tools.
Desvantagens:
Open source version does not allow integrating with non-Maven deployment types, making it difficult to evaluate even for those preparing to use enterprise version.