Overview
Product Information on Legit Security
What is Legit Security?
Legit Security Pricing
Overall experience with Legit Security
“The ASPM”
About Company
Company Description
Legit is a new way to manage your application security posture for security, product and compliance teams. With Legit, enterprises get a cleaner, easier way to manage and scale application security, and address risks from code to cloud. Built for the modern SDLC, Legit tackles the toughest problems facing security teams, including GenAI usage, proliferation of secrets and an uncontrolled dev environment. Fast to implement and easy to use, Legit lets security teams protect their software factory from end to end, gives developers guardrails that let them do their best work safely, and delivers metrics that prove the success of the security program. This new approach means teams can control risk across the business – and prove it.
Company Details
Do You Manage Peer Insights at Legit?
Access Vendor Portal to update and manage your profile.
Key Insights
A Snapshot of What Matters - Based on Validated User Reviews
User Sentiment About Legit Security
Reviewer Insights for: Legit Security
Performance of Legit Security Across Market Features
Legit Security Likes & Dislikes
1. Visibility: It automatically discovers and inventories all SDLC assets, including environments and systems we didn't know about. 2. Risk prioritization: It automatically enriches every vulnerability finding with business and operational context to determine the true impact of the risk. 3. Responsive team: Nice service and support - willingness to help solve our issues, quickly developing new features based on our needs, e.t.c.
The Product Unit feature is exactly what we needed, it has helped us with our security champions programme. The team has clear visibility on the findings and the Actions tab is the icing on the cake which correlates all the similar findings belonging to the same product unit.
innovative insights into key areas like AI use before any competitors.
1. Overly complex UI: Not always intuitive UI - sometimes it is challenging to navigate and locate specific assets. 2. Risk score is not transparent: No ability to easily view and drill down into exactly which weighted factors are driving the score up or down. Instead, you see the final number. 3. Historical Graph: When we implement a new tool or policy, the historical graph often looks like a messy jumble of thousands of spikes and drops, making it difficult to differentiate between issues
To be honest the UI/UX of the platform was not good when we became their customers, but we saw the potential of this tool. But now, the team has started to focus on the UI/UX and it is clearly better. Apart from the UX, the other thing I dislike in the product is the level of customization that is available out of the box. They do have very good API documentation; but having customization out of the box will be very easy for not so techy users of this platform.
ui reporting could be better but APIs and raw data allows exports. Out of the box tools work well and align with ASPM as a core tool without getting lost in engine development. More advanced detection use cases require specific point tools Legit supports as an integretion. Source code repo needs to be built out with labels, tags, and owners for developer RBAC and developer teams reporting to work out of the box, otherwise some custom work has to be done.
Top Legit Security Alternatives
Peer Discussions
Legit Security Reviews and Ratings
- IT Security & Risk Management Associate50M-1B USDSoftwareReview Source
The ASPM
Their team is exceptionally focused and responsive to our needs, consistently going above and beyond to resolve our issues. Not only are they willing to build new features based on our specific requirements, but their engineers deliver these solutions with impressive speed. - Product Security Engineer50M-1B USDIT ServicesReview Source
Platform Excels at Correlating Findings but Needs More Out-of-the-Box Customization to be great at this game
The platform did an outstanding job of correlating the findings from different tools that we use in the organization. Their product has matured a long way since we became their customers, the team has been very supportive and they have really valued our feedback. They have even included us as early adopters of certain features and made customizations that would benefit our organization and their other customers. - Chief Information Security Officer50M-1B USDSoftwareReview Source
Leadership and Team Engagement Drive Program Success Through Innovation
leadership and team is engaged in the success of our program - VP, IT Security and Risk Management10B+ USDIT ServicesReview Source
Scan you code and Legit find what matters and while automatically eliminating the noise.
Wonderful partner that is quick to accept input to enhance the product line, the solution is easy to integrate in standard and bespoke pipelines, and is introducing true value add AI capabilities to increase efficacy. - Director, IT Security and Risk Management10B+ USDInsurance (except health)Review Source
Full SDLC Visibility Enhances Risk Context Despite Incomplete Dashboard Information
Legit security has been a game-changer for our application security and DevSecOps programs. As a financial-services organization with complex CI/CD pipelines and multiple dev and engineering teams, we needed a single platform that could unify visibility across repos, build systems, and deployment environments - while providing actionable risk context.



