Cisco Umbrella vs. IBM Security QRadar SIEM

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Cisco Umbrella
Score 8.9 out of 10
N/A
Cisco now offers OpenDNS Umbrella Web Filtering. Cisco acquired OpenDNS in August 2015, and rebranded the product as Cisco Umbrella.N/A
IBM Security QRadar SIEM
Score 8.7 out of 10
N/A
IBM Security QRadar is security information and event management (SIEM) Software.N/A
Pricing
Cisco UmbrellaIBM Security QRadar SIEM
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Cisco UmbrellaIBM Security QRadar SIEM
Free Trial
YesYes
Free/Freemium Version
YesNo
Premium Consulting/Integration Services
YesNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Cisco UmbrellaIBM Security QRadar SIEM
Features
Cisco UmbrellaIBM Security QRadar SIEM
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
Cisco Umbrella
-
Ratings
IBM Security QRadar SIEM
8.6
69 Ratings
9% above category average
Centralized event and log data collection00 Ratings9.927 Ratings
Correlation00 Ratings8.869 Ratings
Event and log normalization/management00 Ratings9.527 Ratings
Deployment flexibility00 Ratings7.827 Ratings
Integration with Identity and Access Management Tools00 Ratings8.765 Ratings
Custom dashboards and workspaces00 Ratings7.469 Ratings
Host and network-based intrusion detection00 Ratings9.725 Ratings
Data integration/API management00 Ratings9.07 Ratings
Behavioral analytics and baselining00 Ratings7.848 Ratings
Rules-based and algorithmic detection thresholds00 Ratings8.449 Ratings
Response orchestration and automation00 Ratings7.75 Ratings
Reporting and compliance management00 Ratings8.147 Ratings
Incident indexing/searching00 Ratings8.97 Ratings
Best Alternatives
Cisco UmbrellaIBM Security QRadar SIEM
Small Businesses

No answers on this topic

AlienVault USM
AlienVault USM
Score 6.8 out of 10
Medium-sized Companies

No answers on this topic

Sumo Logic
Sumo Logic
Score 8.9 out of 10
Enterprises
Zscaler Internet Access
Zscaler Internet Access
Score 8.9 out of 10
Sumo Logic
Sumo Logic
Score 8.9 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Cisco UmbrellaIBM Security QRadar SIEM
Likelihood to Recommend
8.6
(108 ratings)
8.5
(89 ratings)
Likelihood to Renew
8.0
(15 ratings)
8.3
(5 ratings)
Usability
7.7
(10 ratings)
8.3
(2 ratings)
Availability
8.9
(11 ratings)
9.0
(1 ratings)
Performance
9.2
(2 ratings)
9.0
(1 ratings)
Support Rating
7.5
(63 ratings)
8.2
(62 ratings)
In-Person Training
-
(0 ratings)
9.0
(1 ratings)
Online Training
8.0
(1 ratings)
9.0
(1 ratings)
Implementation Rating
9.4
(11 ratings)
8.0
(1 ratings)
Configurability
8.0
(1 ratings)
8.0
(1 ratings)
Contract Terms and Pricing Model
-
(0 ratings)
9.0
(1 ratings)
Ease of integration
9.4
(10 ratings)
8.0
(58 ratings)
Product Scalability
8.0
(2 ratings)
8.0
(1 ratings)
Professional Services
-
(0 ratings)
10.0
(1 ratings)
Vendor post-sale
8.1
(3 ratings)
9.0
(1 ratings)
Vendor pre-sale
8.1
(3 ratings)
9.0
(1 ratings)
User Testimonials
Cisco UmbrellaIBM Security QRadar SIEM
Likelihood to Recommend
Cisco
It is good for whole network protection, and individual PCs with the client. Provide good reporting on where your network is going on the net. One thing I would like is a longer history with the logs 14 and 30 days are too short some times.
Read full review
IBM
I would only recommend IBM Security QRadar SIEM in a few situations. For one, it's very easy to setup and use if all your log sources are generic from known vendors. It's also significantly cheaper than Splunk, which is nice if you're trying to save money or be more efficient. I would not recommend IBM Security QRadar SIEM for environments with a lot of custom logs and complicated detection requirements.
Read full review
Pros
Cisco
  • So for example, we had the problem in the past. We are connecting users to our own managed data centers. We had seven locations around the world, put them with Cisco, any connect to our on-prem data center and let them out to the internet. So that's causing some high latency bad experiences with teams and so on. And with Umbrella we can directly connect the user to the cloud and to the internet so the users have a good experience with speed with latency and it's much better than back hauling the traffic to their own company and then processing them there.
Read full review
IBM
  • Enables identification and prioritization of vulnerabilities in IT infrastructure for corrective action.
  • Facilitates security incident investigation and forensic analysis.
  • Provides a real-time view of security events, enabling immediate incident response.
  • Can integrate with external threat intelligence sources to enrich data and improve threat detection.
  • Enables the generation of detailed and customized reports.
Read full review
Cons
Cisco
  • The smart search feature in Cisco Umbrella is great addition for sure which helps us to identify malicious domain just by searching the URL and there is scoring system of Cisco Umbrella which mark the URL in low, medium and high risk. Sometimes Cisco Umbrella mark well known and good domain as malicious whether sometimes they mark malicious sites/domain as low risk. So, it's something that they should focus on, I think.
  • The live activity search is great for checking internet activities, but the filtering options could be improved. It would be helpful if we could filter by multiple parameters at once like combining username, destination IP and time range.
Read full review
IBM
  • Need to spend more time configuring the system to properly interpret and normalize different type of data collected from multiple resources.
  • While Rule creation QRadar uses that rules to detect security threats and generate alerts, but to creating and managing rules is bit complex & tedious work to complete.
  • IBM Security QRadar SIEM is excellent in handling large & complex systems that requires in-depth knowledge and extensive training to configure and maintain the system which includes upgrading, optimization of performance & issue troubleshooting.
Read full review
Likelihood to Renew
Cisco
First off I never give anything a "10" unless it's perfect. LOL - I grade on the curve. I think OpenDNS/Umbrella is a very good product. I think that fact that Cisco absorbed them is one of the proofs of that. I have used the product back when it was free for companies our size. I have not always appreciated the cost - but in the post pandemic cyber chaos, I believe the cost benefit ratio is still very high. I have honestly not looked at other products because Umbrella continues to work to my satisfaction. I consider Umbrella to be one of the key layers in my cyber security strategy.
Read full review
IBM
QRadar is an established and stable product, we have been using it for many years and want to continue to focus on it. Anyone who has used the product and knows it knows how reliable it is and how it facilitates continuous monitoring of threats from outside and inside. it is an exceptional product that is very useful for us.
Read full review
Usability
Cisco
Better features and easy to manage system with great customer support and overall usability is great as it works for hybrid environment with ease as it is having features for on prem users as wells as cloud users with great customer support and great team of trained engineers to support our opeartions.
Read full review
IBM
As a grade I give 8 as QRadar is not easy to learn. It requires some time to master it. It also needs a team of people actively working on the product. Once you learn to use it the software works very well and it is easy to correlate and understand detected threats. It only takes time to learn how to use it well and configure it properly.
Read full review
Reliability and Availability
Cisco
Cisco umbrella services in the cloud are always available. However, the weakness is the VM installed in the data center that are the first resolvers. If the VMs become unavailable for any reason or the vSphere goes down, then all DNS is affected
Read full review
IBM
No answers on this topic
Performance
Cisco
our experience with cisco products has always been awesome and same is the case with cisco umbrella .Under umbrella cisco provides flexible and scalable software solution to use across different dept and sites . These softwares are very user friendly ,pages load quickly as these applications are designed for minimum latency and reports are also provided quickely
Read full review
IBM
No answers on this topic
Support Rating
Cisco
Whilst the support is good once you get through to them, it's email only and the response is slow. This is a issue, because its a core system that needs to work. We have had issues in the past where several of our companies have gone down due to Umbrella and support is nowhere to be seen. It is very difficult to know whether Umbrella is having service issues, since they do not regularly update customers on the status of their services, such as is seen by providers such as Microsoft (status.umbrella.com just seems to show up all of the time, I'm not sure it's even updated)
Read full review
IBM
Customer support is Good of IBM, While Using IBM QRadar its deployment is to slow and suddenly stop working and crashed we have contacted IBM Support and Rised a Ticket within a few minute we get call back from customer support and Query Resolved by them Fast And Rapid Support of Ibm
Read full review
In-Person Training
Cisco
No answers on this topic
IBM
The training was very useful and the people who taught us were very knowledgeable. Although the software may initially seem difficult to learn they made things much easier for us.
Read full review
Online Training
Cisco
Quite easy to understand training modules prepared by knowledgeable trainers. Training modules have included all the desired features of these softwares and the content delivery is very good from the respective module trainers and it explains in details the features and apart from that further training material support is also provided if needed.
Read full review
IBM
The training was very useful and the people who taught us were very knowledgeable. Although the software may initially seem difficult to learn they made things much easier for us.
Read full review
Implementation Rating
Cisco
At the time we were forced to move from Cloud Web Security to Cisco Umbrella, Cisco Umbrella was far from being a direct replacement. It was frustrating and difficult to migrate due to the lack of functionality. This has since been addressed, however we now have legacy rulesets that were built as bandaids that cannot be removed. Hopefully the migration to Secure Access will address this.
Read full review
IBM
Initial patience is required to learn how to use the product, and it takes a dedicated team to use it. One person is not enough, and it's not enough to just set it up and check it once in a while. It has to be used daily and kept under control to be used effectively
Read full review
Alternatives Considered
Cisco
Different products in different spaces. The Z3 was more of a VPN endpoint so that users didn't have to worry about a client. If they are at home, they are on their corporate network and able to access resources. Cisco Umbrella can be used then to serve corporate DNS across the VPN tunnel to the Z3 device and extend the capabilities of Cisco Umbrella.
Read full review
IBM
IBM Qradar takes the best from its competitors. Reliable and stable but sometimes very expensive, the SIEM from IBM offers a wide range of scenarios in which the customers can suite and size their own infrastructures. IBM Qradar doesn't really needs to stack up againt its competitors because it already sets an example in the SIEM world.
Read full review
Scalability
Cisco
Cisco umbrella provides fleaxible and scalable software solutions which are easy deploy across multiple departments and sites wherever needed and this softwares are very easy to use and provides the best interface along with cisco support for other devices apart from cisco infrastructure but still there is scope for improvement on the inclusion of latest features
Read full review
IBM
No answers on this topic
Return on Investment
Cisco
  • So it's always very hard to calculate return on investment, especially on security and especially in a physical product. So it's not like I'm going to be selling a lot more plastic or a lot more aviation fuel because I implemented Cisco Umbrella. What I know is that definitely, the return on investment is on the ability of the business to continue to run and give the assurance that our users are safe.
Read full review
IBM
  • Offense investigation was really helped in tackling the incidents. It was accurate and brief
  • The automation with IBM resilient (SOAR) was a milestone in elimination of user mistakes
  • The X-Force threat intelligence supported us in getting the work done without any 3rd party enterprise OSINT database
Read full review
ScreenShots

IBM Security QRadar SIEM Screenshots

Screenshot of QRadar SIEM Cloud native- Threat intelligence preview