Press Release

Checkmarx Named a Leader in Static Application Security Testing

Company recognized with the top score in current offering category and for its investment in AI

PARAMUS, N.J.–(BUSINESS WIRE)–Checkmarx, a global leader in application security testing solutions, today announced that it has been named a Leader in The Forrester Wave™: Static Application Security Testing (SAST), Q3 2025. Forrester evaluated the 10 most significant vendors in the market, assessing each of them across the categories of Current Offering, Strategy, and Customer Feedback. Checkmarx received the highest score in the current offering category of the 10 vendors evaluated.


Checkmarx scored the highest possible rating (5/5) in eight criteria that Forrester evaluates including risk prioritization, language and framework support, modern application development, policy management, application portfolio risk management, AI-powered tools in SDLC, roadmap, and supporting services and offerings.

According to Forrester, “Checkmarx stands out for its investment in AI.” The evaluation further notes that, “Checkmarx’s vision is to secure modern applications. To help customers develop AI with guardrails and executive visibility, Checkmarx is developing a suite of AI agents for code creation, policies, and insights. In addition, its SAST roadmap includes support for AI programming languages and frameworks, integration with AI code generators, and LLM security.”

Last month (August 2025), Checkmarx released the first of this suite of AI agents, Checkmarx One Developer Assist, into general availability. Accessible seamlessly through leading Integrated Development Environments (IDEs), Developer Assist provides developers with faster access to more accurate and complete threat alerts along with guided remediation. Early access users have reported a significant boost in speed and accuracy when addressing security vulnerabilities.

The Forrester report also notes that, “Checkmarx is ideal for enterprises leveraging existing and emerging technologies in their application development.”

Checkmarx continues to advance its SAST capabilities as part of the Checkmarx One platform, delivering deep code analysis, scalability for enterprise use cases, and seamless integrations across the modern software development lifecycle. Checkmarx demonstrates its ongoing investment in speed, accuracy, and optimizing developer experience.

“At Checkmarx, we see being recognized as the clear Leader in the Forrester Wave for SAST and the highest rated vendor in the current offering category as clear validation of our customer focus and innovation,” said Jonathan Rende, Chief Product Officer at Checkmarx. “In our view, Forrester’s recognition of our AI investments and roadmap underscores the value we’re delivering today and our belief that enterprises must prepare now to secure the future of AI-driven development.”

Since its release in December 2021, the Checkmarx One platform has achieved rapid adoption, now scanning more than 800 billion lines of code monthly for more than 850 enterprise customers and tens of thousands of developers who employ the technology to secure their organizations daily.

Download The Forrester Wave™: Static Application Security Testing (SAST), Q3 2025 to learn more about what to look for in a SAST vendor and for additional details on Checkmarx’s recognition here.

The Forrester Wave™: Static Application Security Testing Solutions, Q3 2025, Forrester Research, Inc., September 9, 2025

Forrester does not endorse any company, product, brand, or service included in its research publications and does not advise any person to select the products or services of any company or brand based on the ratings included in such publications. Information is based on the best available resources. Opinions reflect judgment at the time and are subject to change. For more information, read about Forrester’s objectivity here.

About Checkmarx

Checkmarx is the leader in agentic AI, cloud-native application security that empowers the world’s largest development organizations with real-time scanning and closed-loop remediation to boost developer productivity on security tasks by up to 50%. Based on the powerful Checkmarx One platform that scans trillions of lines of code each year, Checkmarx is designed for large-scale, hybrid human and AI-assisted development teams. Checkmarx. Follow Checkmarx on LinkedIn, YouTube, and X.

Contacts

For more information, contact:
Katie Brookes for Checkmarx

+1 732-284-7002

Author

Related Articles

Back to top button