TrustRadius: an HG Insights company

Save this comparison

Save this comparison

Add Product

Recommended Comparisons

    Overview
    ProductRatingMost Used ByProduct SummaryStarting Price

    CrowdStrike Falcon

    Score9 out of 10
    N/ACrowdStrike offers the Falcon Endpoint Protection suite, an antivirus and endpoint protection system emphasizing threat detection, machine learning malware detection, and signature free updating. Additionally the available Falcon Spotlight module delivers vulnerability assessment with no performance impact, no additional agents, hardware, scheduled scans, firewall exceptions or admin credentials.

    $59.99

    per endpoint/month (minimum number of endpoints applies)

    IBM Security QRadar SIEM

    Score8.9 out of 10
    N/AIBM Security QRadar is security information and event management (SIEM) Software.N/A
    Pricing
    CrowdStrike FalconIBM Security QRadar SIEM
    Editions & Modules
    Falcon Go (Small Business)
    $59.99
    per endpoint/month (minimum number of endpoints applies)
    Falcon Go (Small Business)
    $59.99
    Falcon Pro
    $99.99
    per endpoint/month (for 5-250 endpoints, billed annually)
    Falcon Enterprise
    $184.99
    per endpoint/month (minimum number of endpoints applies)
    No answers on this topic
    Offerings
    Pricing Offerings
    CrowdStrike FalconIBM Security QRadar SIEM
    Free Trial
    YesYes
    Free/Freemium Version
    NoNo
    Premium Consulting/Integration Services
    YesNo
    Entry-level Setup FeeNo setup feeNo setup fee
    Additional Details——
    More Pricing Information
    Community Pulse
    CrowdStrike FalconIBM Security QRadar SIEM
    Considered Both Products
    CrowdStrike
    Chose CrowdStrike Falcon
    I have evaluated Cortex XDR and SentinelOne Singularity alongside CrowdStrike Falcon, and while all three are capable enterprise-grade solutions, Falcon ultimately stood out due to its cloud-native architecture, broader modular coverage, and stronger identity-focused detection. …
    Incentivized
    Chose CrowdStrike Falcon
    Falcon is a bundle of antivirus solutions designed to block numerous types of attacks, including ransomware, trojans and other types of malware, from the most basic to the most advanced. The solution leverages a global network of threat intelligence and technology for immediate …
    Incentivized
    IBM
    Chose IBM Security QRadar SIEM
    It's in the middle of this chart, Splunk from my point of view it's still the best SIEM actually and Sentinel it's very easy to use.
    Incentivized
    Chose IBM Security QRadar SIEM
    We chose QRadar based on its flexibility and open platform for integrations. Compared to the other tools that we review QRadar just had the most of the features that we felt were relevant.
    Incentivized
    Chose IBM Security QRadar SIEM
    IBM is more user-friendly if we compare it with ELK stack and ArcSight. Much reliable, and have better Support. Onboarding data, creating correlation searches, and easier to integrate with 3rd party solutions as well. LogOps projects and less time-consuming products. Qradar …
    Incentivized
    Key User Insights
    Would buy again
    98%
    Would buy again
    82 Answers
    92%
    Would buy again
    67 Answers
    Delivers good value for the price
    95%
    Delivers good value for the price
    75 Answers
    97%
    Delivers good value for the price
    61 Answers
    Happy with the feature set
    100%
    Happy with the feature set
    84 Answers
    96%
    Happy with the feature set
    70 Answers
    Lived up to sales and marketing promises
    93%
    Lived up to sales and marketing promises
    68 Answers
    86%
    Lived up to sales and marketing promises
    38 Answers
    Implementation went as expected
    96%
    Implementation went as expected
    75 Answers
    94%
    Implementation went as expected
    59 Answers
    Features
    CrowdStrike FalconIBM Security QRadar SIEM
    Endpoint Security
    Comparison of Endpoint Security features of CrowdStrike Falcon and IBM Security QRadar SIEM
    Feature
    CrowdStrike Falcon
    8.7
    98 Ratings
    2% above category average
    IBM Security QRadar SIEM
    -
    Ratings
    Anti-Exploit Technology8.989 Ratings00 Ratings
    Endpoint Detection and Response (EDR)9.296 Ratings00 Ratings
    Centralized Management8.997 Ratings00 Ratings
    Hybrid Deployment Support8.24 Ratings00 Ratings
    Infection Remediation8.993 Ratings00 Ratings
    Vulnerability Management7.772 Ratings00 Ratings
    Malware Detection9.396 Ratings00 Ratings
    Security Information and Event Management (SIEM)
    Comparison of Security Information and Event Management (SIEM) features of CrowdStrike Falcon and IBM Security QRadar SIEM
    Feature
    CrowdStrike Falcon
    -
    Ratings
    IBM Security QRadar SIEM
    8.5
    69 Ratings
    7% above category average
    Centralized event and log data collection00 Ratings9.927 Ratings
    Correlation00 Ratings8.669 Ratings
    Event and log normalization/management00 Ratings9.527 Ratings
    Deployment flexibility00 Ratings7.827 Ratings
    Integration with Identity and Access Management Tools00 Ratings8.965 Ratings
    Custom dashboards and workspaces00 Ratings7.569 Ratings
    Host and network-based intrusion detection00 Ratings9.725 Ratings
    Data integration/API management00 Ratings9.07 Ratings
    Behavioral analytics and baselining00 Ratings7.648 Ratings
    Rules-based and algorithmic detection thresholds00 Ratings8.049 Ratings
    Response orchestration and automation00 Ratings7.75 Ratings
    Reporting and compliance management00 Ratings7.947 Ratings
    Incident indexing/searching00 Ratings8.97 Ratings
    Best Alternatives
    CrowdStrike FalconIBM Security QRadar SIEM
    Small Businesses
    SentinelOne Singularity
    Score9 out of 10
    No answers on this topic
    Medium-sized Companies
    BlackBerry Protect (CylancePROTECT)
    Score9.1 out of 10
    Sumo Logic
    Score8.9 out of 10
    Enterprises
    ESET PROTECT
    Score8.8 out of 10
    SolarWinds Security Event Manager (SEM)
    Score8 out of 10
    All AlternativesView all alternativesView all alternatives
    User Ratings
    CrowdStrike FalconIBM Security QRadar SIEM
    Likelihood to Recommend
    8.9
    (101 ratings)
    8.6
    (89 ratings)
    Likelihood to Renew
    10.0
    (3 ratings)
    8.8
    (5 ratings)
    Usability
    10.0
    (2 ratings)
    8.0
    (2 ratings)
    Availability
    -
    (0 ratings)
    9.0
    (1 ratings)
    Performance
    -
    (0 ratings)
    9.0
    (1 ratings)
    Support Rating
    10.0
    (9 ratings)
    8.1
    (62 ratings)
    In-Person Training
    9.0
    (1 ratings)
    9.0
    (1 ratings)
    Online Training
    -
    (0 ratings)
    9.0
    (1 ratings)
    Implementation Rating
    10.0
    (1 ratings)
    8.0
    (1 ratings)
    Configurability
    -
    (0 ratings)
    8.0
    (1 ratings)
    Contract Terms and Pricing Model
    -
    (0 ratings)
    9.0
    (1 ratings)
    Ease of integration
    -
    (0 ratings)
    8.1
    (58 ratings)
    Product Scalability
    -
    (0 ratings)
    8.0
    (1 ratings)
    Professional Services
    -
    (0 ratings)
    10.0
    (1 ratings)
    Vendor post-sale
    -
    (0 ratings)
    9.0
    (1 ratings)
    Vendor pre-sale
    -
    (0 ratings)
    9.0
    (1 ratings)
    User Testimonials
    CrowdStrike FalconIBM Security QRadar SIEM
    Likelihood to Recommend
    CrowdStrike
    Crowdstrike is a unified platform for monitoring endpoint devices, whether they're workstations, servers, cloud-native machines, or even mobile devices. It uses AI/ML to monitor anomalies and suspicious behavior, including zero-day attacks. It is suitable for large organizations but may be costlier or less appropriate for smaller organizations, those who want an on-prem EDR setup, and those who need custom scanning based on compliance requirements.
    Incentivized
    Read full review
    IBM
    I would only recommend IBM Security QRadar SIEM in a few situations. For one, it's very easy to setup and use if all your log sources are generic from known vendors. It's also significantly cheaper than Splunk, which is nice if you're trying to save money or be more efficient. I would not recommend IBM Security QRadar SIEM for environments with a lot of custom logs and complicated detection requirements.
    Incentivized
    Read full review
    Pros
    CrowdStrike
    • The Log analysis is very detailed and easy to use.
    • Prevent and block all type of malwares.
    • Great threat intelligence which is very up-to-date with the recent cyber attacks
    • very user friendly in access and management
    • Automated feature of detecting, taking action and closing incidents using fusion workflow.
    Incentivized
    Read full review
    IBM
    • Enables identification and prioritization of vulnerabilities in IT infrastructure for corrective action.
    • Facilitates security incident investigation and forensic analysis.
    • Provides a real-time view of security events, enabling immediate incident response.
    • Can integrate with external threat intelligence sources to enrich data and improve threat detection.
    • Enables the generation of detailed and customized reports.
    Incentivized
    Read full review
    Cons
    CrowdStrike
    • Support - we are often tasked with running down problems rather than being directed by support.
    • The sales staff we have dealt with are not very responsive or timely.
    • I believe this is a product built for installations of 300 users or more.
    Incentivized
    Read full review
    IBM
    • Need to spend more time configuring the system to properly interpret and normalize different type of data collected from multiple resources.
    • While Rule creation QRadar uses that rules to detect security threats and generate alerts, but to creating and managing rules is bit complex & tedious work to complete.
    • IBM Security QRadar SIEM is excellent in handling large & complex systems that requires in-depth knowledge and extensive training to configure and maintain the system which includes upgrading, optimization of performance & issue troubleshooting.
    Incentivized
    Read full review
    Likelihood to Renew
    CrowdStrike
    Crowdstrike has a large suite of tools built for helping the engineers triage and respond to security event whenever identified. The ability to customize the security policies and implement more granular policies to different devices based on the functionality is unmatched. Crowdstrike provides so much of ability in a decent budget which ascertains the value for money or ROI.
    Incentivized
    Read full review
    IBM
    QRadar is an established and stable product, we have been using it for many years and want to continue to focus on it. Anyone who has used the product and knows it knows how reliable it is and how it facilitates continuous monitoring of threats from outside and inside. it is an exceptional product that is very useful for us.
    Incentivized
    Read full review
    Usability
    CrowdStrike
    I think it is a complete and very trustful XDR platform, with very few False Positives. It is very well supported by highly skilled professionals on all levels: from pre-sales engineers, Customer Account Managers and support engineers.
    Incentivized
    Read full review
    IBM
    As a grade I give 8 as QRadar is not easy to learn. It requires some time to master it. It also needs a team of people actively working on the product. Once you learn to use it the software works very well and it is easy to correlate and understand detected threats. It only takes time to learn how to use it well and configure it properly.
    Incentivized
    Read full review
    Support Rating
    CrowdStrike
    Any time we need to engage the Crowdstrike Falcon Complete Team, their response is switch, thorough, and they are sure to not close out any request until the customer confirms that they have provided an acceptable resolution. If I ever need anything from the account team related to the product, I also get a response from them within minutes typically to address my question. Top notch customer service!
    Incentivized
    Read full review
    IBM
    Customer support is Good of IBM, While Using IBM QRadar its deployment is to slow and suddenly stop working and crashed we have contacted IBM Support and Rised a Ticket within a few minute we get call back from customer support and Query Resolved by them Fast And Rapid Support of Ibm
    Incentivized
    Read full review
    In-Person Training
    CrowdStrike
    There is limited amount of learning that can be completed in an in-person training available. In my opinion, the self-paced learning provided by Falcon portal is more useful over in-person training. The support from Falcon is great and useful to overcome difficulties, if any.
    Incentivized
    Read full review
    IBM
    The training was very useful and the people who taught us were very knowledgeable. Although the software may initially seem difficult to learn they made things much easier for us.
    Incentivized
    Read full review
    Online Training
    CrowdStrike
    The training provided by Crowdstrike Falcon is complete in terms of the depth of technical knowledge and teaches the users about going through with the platform. There are lots of jargons for different tools that Crowdstrike Falcon has and this training teaches them all which helps in managing the platform better. Plus, the regular knowledge checks are also very helpful for the end user.
    Incentivized
    Read full review
    IBM
    The training was very useful and the people who taught us were very knowledgeable. Although the software may initially seem difficult to learn they made things much easier for us.
    Incentivized
    Read full review
    Implementation Rating
    CrowdStrike
    Read the documentation
    Incentivized
    Read full review
    IBM
    Initial patience is required to learn how to use the product, and it takes a dedicated team to use it. One person is not enough, and it's not enough to just set it up and check it once in a while. It has to be used daily and kept under control to be used effectively
    Incentivized
    Read full review
    Alternatives Considered
    CrowdStrike
    It was just a legacy AV program onboarded during initial setup days. As the org. As it expanded, its threat landscape also grew, and we needed a next-gen solution to protect against evolving threat vectors. Falcon EDR was the one that solved all these in a single place.
    Incentivized
    Read full review
    IBM
    IBM Qradar takes the best from its competitors. Reliable and stable but sometimes very expensive, the SIEM from IBM offers a wide range of scenarios in which the customers can suite and size their own infrastructures. IBM Qradar doesn't really needs to stack up againt its competitors because it already sets an example in the SIEM world.
    Incentivized
    Read full review
    Return on Investment
    CrowdStrike
    • CrowdStrike Falcon's proactive threat mitigation has significantly reduced the risk of successful cyber attacks, resulting in tangible savings related to potential data breaches or system compromises.
    • The cloud-native architecture and automated features have improved operational efficiency.
    • The platform's real-time visibility and threat hunting capabilities have drastically improved incident response times.
    Incentivized
    Read full review
    IBM
    • Offense investigation was really helped in tackling the incidents. It was accurate and brief
    • The automation with IBM resilient (SOAR) was a milestone in elimination of user mistakes
    • The X-Force threat intelligence supported us in getting the work done without any 3rd party enterprise OSINT database
    Incentivized
    Read full review
    ScreenShots

    IBM Security QRadar SIEM Screenshots

    Screenshot of QRadar SIEM Cloud native- Threat intelligence preview