• HOME
  • CATEGORIES

    • CATEGORIES

    • Browse All Categories
  • FOR VENDORS

    • FOR VENDORS

    • Log In to Vendor Portal
    • Get Started
  • REVIEWS

    • REVIEWS

    • Write a Review
    • Product Reviews
    • Vendor Directory
    • Product Comparisons
  • GARTNER PEER COMMUNITY™
  • GARTNER.COM
  • Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQPrivacyTerms of Service
    ©2026 Gartner, Inc. and/or its affiliates.
    All rights reserved.
  • Categories

    • No categories available

      Browse All Categories

      Select a category to view markets

  • For Vendors

    • Log In to Vendor Portal 

    • Get Started 

  • Write a Review

Join / Sign In
  1. Home
  2. /
  3. Apiiro
Logo of Apiiro

Apiiro

byApiiro
in
4.7
Market Presence: Application Security Posture Management (ASPM) Tools, Software Supply Chain Security

Overview

Product Information on Apiiro

Updated 24th July 2024

What is Apiiro?

Deep Code Analysis: Apiiro extrapolates application components, going beyond vulnerability detection to identify changes introducing risk. Its patented technology forms the foundation for the Risk GraphTM, connecting risks to identify toxic combinations and surface invaluable context. Code to Runtime Modeling: Connecting to runtime via API, Apiiro uses modeling technology to generate context and prioritize findings based on deployment, internet exposure, or WAF protection. This technology matches runtime APIs, containers, and security alerts to their source code and maps the entire exposure path of risks. Risk-Based, Developer-Centric Policy Engine: Apiiro offers out-of-the-box and custom risk-based policies and workflows to define, automate, and validate security controls. With extensive developer tool integrations, the policy engine enables continuous, proactive guardrails to prevent business-critical risks from reaching the cloud.

Apiiro Pricing

Apiiro Product Images

ASPM-Dashboard-Workflow
ASPM-Dashboard-Workflow

Overall experience with Apiiro

Lead Information Security Egnineer
30B + USD, Banking
FAVORABLE

“Visibility, Context, Governance, & Reporting for Risk-Based Oversight”

5.0
Feb 27, 2026
Apiiro has become a key part of our application security & supply chain security strategies. Prior to Apiiro, we had minimal visibility across our multiple SDLC security tools, with limited ways to use real business context for prioritization & triage of security findings (i.e. a risk-based methodology that balances security requirements with developer experience). With its native integrations, Apiiro gives us a level of visibility, governance workflows, & reporting that we haven't had before. Apiiro is still a startup, and has some of the typical startup growing pains, but excels at listening to customer feedback & addressing our needs (usually before we ask). Apiiro's deep code analysis has been extremely valuable, as it provides a continuous automated method of obtaining real context without self-attestation or questionnaires. We have also actively used Apiiro to respond to supply chain security events like the Shai Hulud worm, using some of Apiiro's native SCA, bill of materials, querying, & alerting features
There are no reviews in this category.
CRITICAL

About Company

Company Description

Updated 26th March 2024

Apiiro's application security posture management (ASPM) solution unifies risk visibility, prioritization, and remediation with deep code analysis and runtime context. With its proprietary Risk Graph, Apiiro contextualizes security alerts from third-party tools and native solutions based on the likelihood and impact of risk to minimize alert backlogs and triage time. By tying risks to code owners, providing LLM-enriched remediation guidance, and embedding risk-based guardrails in developer workflows, Apiiro improves remediation times.

Company Details

Updated 26th March 2024
Year Founded
2019
Head office location
New York, United States
Number of employees
51 - 200
Website
https://apiiro.com

Do You Manage Peer Insights at Apiiro?

Access Vendor Portal to update and manage your profile.

Key Insights

A Snapshot of What Matters - Based on Validated User Reviews

Top Apiiro Alternatives

Logo of InsightVM
1. InsightVM
4.3
(743 Ratings)
Logo of Tenable Nessus
2. Tenable Nessus
4.6
(665 Ratings)
Logo of Qualys VMDR
3. Qualys VMDR
4.3
(525 Ratings)
View All Alternatives

Peer Discussions

Apiiro Reviews and Ratings

4.7

(30 Ratings)

Rating Distribution

5 Star
67%
4 Star
33%
3 Star
0%
2 Star
0%
1 Star
0%
Why ratings and reviews count differ?

Customer Experience

Evaluation & Contracting

4.7

Integration & Deployment

4.7

Service & Support

4.6

Product Capabilities

4.5

Filter Reviews
Sort By:
Most helpful
Last 12 Months
Star Rating
Reviewer Type
Reviewer's Company Size
Reviewer's Industry
Reviewer's Region
Reviewer's Job Function
  • Lead Information Security Egnineer
    10B+ USD
    Banking
    Review Source

    Visibility, Context, Governance, & Reporting for Risk-Based Oversight

    5.0
    Feb 27, 2026
    Apiiro has become a key part of our application security & supply chain security strategies. Prior to Apiiro, we had minimal visibility across our multiple SDLC security tools, with limited ways to use real business context for prioritization & triage of security findings (i.e. a risk-based methodology that balances security requirements with developer experience). With its native integrations, Apiiro gives us a level of visibility, governance workflows, & reporting that we haven't had before. Apiiro is still a startup, and has some of the typical startup growing pains, but excels at listening to customer feedback & addressing our needs (usually before we ask). Apiiro's deep code analysis has been extremely valuable, as it provides a continuous automated method of obtaining real context without self-attestation or questionnaires. We have also actively used Apiiro to respond to supply chain security events like the Shai Hulud worm, using some of Apiiro's native SCA, bill of materials, querying, & alerting features
  • VP, IT Security and Risk Management
    50M-1B USD
    Banking
    Review Source

    Implementation Enables Rapid Risk Analysis Across Diverse Code Bases and Environments

    4.0
    Feb 20, 2026
    Apiiro has been a strong addition to our application security program, especially for detecting material code changes and using those insights to trigger the right level of downstream testing. In practice, it helps us move from reliance on developer opinion regarding material change to quantifiable criteria so we can focus additional testing where true risk exists. We've also been able to rapidly onboard acquisition code bases for visibility into code inventory and risk. Our traditional SAST and SCA tools are difficult to implement into heterogeneous environments, instead we've been able to implement Apiiro within days to begin risk analysis of their code bases.
  • IT Security & Risk Management Associate
    10B+ USD
    Banking
    Review Source

    From security noise to risk-driven prioritisation with real impact

    4.0
    May 5, 2026
    Apiiro helps us cut through AST noise and focus on what actually matters in our code. As an ASPM platform, it provides the context and prioritisation needed to identify and remediate the most critical risks efficiently.
  • SENIOR ENGINEERING MANAGER, INFOSEC
    50M-1B USD
    IT Services
    Review Source

    Deep context-aware Application Security platform

    5.0
    Mar 12, 2026
    Apiiro's deep context of the software we build enables us to continuously assess and manage risk across the development lifecycle. The integrated nature of the solutions it brings (such as SCA, SAST, pipeline scanning, secret scanning) gives us a unified and holistic view of our Application Security posture in a way that allows us to drive and quantify improvements.
  • Group Director, Information Security
    10B+ USD
    Retail
    Review Source

    Apiiro drove significant ROI for our security organization

    5.0
    Feb 18, 2026
    Apiiro continues to innovate and deliver forward-thinking solutions in a space that is evolving quickly. They are key partners for our organization and have save us significant amounts in productivity and risk reduction.
Showing Result 1-5 of 32

Recommended Gartner Insights

Powered by Google TranslateThis service may contain translations provided by Google. Google disclaims all warranties related to the translations, express or implied, including any warranties of accuracy, reliability, and any implied warranties of merchantability, fitness for a particular purpose and noninfringement. Gartner's use of this provider is for operational purposes and does not constitute an endorsement of its products or services.

Gartner Peer Insights content consists of the opinions of individual end users based on their own experiences, and should not be construed as statements of fact, nor do they represent the views of Gartner or its affiliates. Gartner does not endorse any vendor, product or service depicted in this content nor makes any warranties, expressed or implied, with respect to this content, about its accuracy or completeness, including any warranties of merchantability or fitness for a particular purpose.

This site is protected by hCaptcha and its Privacy Policy and Terms of Use apply.


Software reviews and ratings for EMMS, BI, CRM, MDM, analytics, security and other platforms - Peer Insights by Gartner
Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQsPrivacyTerms of Use

©2026 Gartner, Inc. and/or its affiliates.

All rights reserved.

Reviewer Insights for: Apiiro
Performance of Apiiro Across Market Features

Apiiro Likes & Dislikes

Like

The visibility across multiple application security tools/domains, the governance policy engine, some of the out of box tool integrations, the explorer query engine, reporting, dashboarding. The constant stream of meaningful platform updates & improvements, often directly based on our feedback

Like

what changed intelligence - strong at identifying security-relevant/material code changes and triggering the appropriate follow up actions. Clear, consolidated view across applications/repos with ownership and context, making it easier to understand where the risk lives. Prioritization that reduces noise; ranks issues by risk and exploitability/context so teams focus on remediation of vulnerabilities that have the highest probability of exploitation.

Like

Apiiro helped us to improve how we handle application security testing, mainly because our existing SAST and SCA tools were generating a lot of noise and very little prioritization. What quickly stood out is that Apiiro doesnt just scan code and list findings. It actually puts those findings in context of how the application is built and used. That's made a huge difference for us in terms of figuring out what is actually worth fixing vs what can wait. We are now spending a lot less time triaging alerts and more time addressing real risk. It's also helped us catch issues earlier in the SDLC without slowing down teams.

Dislike

The basic out-of-the-box integrations are great and provide real value, but run into limits when doing very deep queries & analysis for specific scenarios & integrations (e.g. GitLab). The vendor's workflow works best with its own native solutions - using third party solutions sometimes leaves more to be desired (depending on the specific integration). That said, the 3rd party integration experience has improved significantly over time - the depth of specific integrations is constantly being improved

Dislike

This is not a dislike of the product, as we have not had issues with the product that are notable beyond a learning curve as it is configured to function within our environment. It is simply a new product, that has innovative capabilities beyond the more traditional application security scanning tools. As such there is a learning curve for the team and the need to rewrite procedures and process documentation to a new way of execution and management.

Dislike

Access control and usability limitations could be better as currently RBAC capabilities are limited.