What users are saying about
<a href='https://www.trustradius.com/static/about-trustradius-scoring#question3' target='_blank' rel='nofollow noopener noreferrer'>Customer Verified: Read more.</a>
Top Rated
87 Ratings

IBM QRadar

<a href='https://www.trustradius.com/static/about-trustradius-scoring#question3' target='_blank' rel='nofollow noopener noreferrer'>Customer Verified: Read more.</a>
Top Rated
87 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener noreferrer'>trScore algorithm: Learn more.</a>
Score 9 out of 100
22 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener noreferrer'>trScore algorithm: Learn more.</a>
Score 9.4 out of 100

Likelihood to Recommend

IBM QRadar

If you have a small-to-large company looking for a SIEM solution that "does the job" and is easy to deploy/use, QRadar is your tool. If you're looking for a complex solution that supports integration with data-mining solutions (e.g. ELK), then you may need a different solution. Overall, QRadar fits the needs of 99% of the companies. It is one of the easiest SIEM solutions to deploy and use.
No photo available

Tenable.sc (formerly SecurityCenter)

SecurityCenter is definitely the juggernaut of the industry. You don't see many shops that are not using Nessus and or SecurityCenter. As a pen tester, I do not judge shops that use Nessus as a catch all, as there are a lot of things you can get hyper focused on and a tool like this helps you see things you may have missed.
No photo available

Feature Rating Comparison

Security Information and Event Management (SIEM)

IBM QRadar
9.2
Tenable.sc (formerly SecurityCenter)
Centralized event and log data collection
IBM QRadar
9.5
Tenable.sc (formerly SecurityCenter)
Correlation
IBM QRadar
9.9
Tenable.sc (formerly SecurityCenter)
Event and log normalization
IBM QRadar
9.5
Tenable.sc (formerly SecurityCenter)
Deployment flexibility
IBM QRadar
9.1
Tenable.sc (formerly SecurityCenter)
Integration with Identity and Access Management Tools
IBM QRadar
8.7
Tenable.sc (formerly SecurityCenter)
Custom dashboards and views
IBM QRadar
9.1
Tenable.sc (formerly SecurityCenter)
Host and network-based intrusion detection
IBM QRadar
8.8
Tenable.sc (formerly SecurityCenter)

Pros

IBM QRadar

  • It allows us to have visibility to potential problems both on premise and in the cloud which was key as we have become a hybrid consumer.
  • It has automated monitoring which has allowed us to see threats faster and also allowed us to be proactive.
  • By having over 20,000 employees, QRadar has also allowed us to be aware of internal threats that are brought into the company by unsuspecting employees.
No photo available

Tenable.sc (formerly SecurityCenter)

  • Correlating log data to security scans.
  • Active and passive scanning.
  • Data reporting.
No photo available

Cons

IBM QRadar

  • There is a steep learning curve compared to other platforms. Qradar is incredibly powerful but does require some homework.
  • There is a glaring lack of threat feed utilization outside of STIXX/TAXII which remains very limited at this time.
  • May require a considerable amount of tuning during deployment with very little "out of the box" offense information.
No photo available

Tenable.sc (formerly SecurityCenter)

  • Tenable could make it easier to report on missing reg key.
  • Tenable can also make it easier to report on os level patches vs application patches.
Joevanne Velez profile photo

Support

IBM QRadar

IBM QRadar 8.5
Based on 4 answers
I've had many issues with QRadar, and the support would hear and respond to my question all the time (more so than in the case of IBM Resilient support). They were very quick to respond, were helpful, and provided remote access.
larbi belmiloud profile photo

Tenable.sc (formerly SecurityCenter)

Tenable.sc (formerly SecurityCenter) 8.0
Based on 2 answers
On all of the occasions that I have had to reach out to Tenable for assistance, they have been extremely helpful and knowledgeable. Solutions and support are provided quickly, and they work on the issue until it is resolved.
No photo available

Alternatives Considered

IBM QRadar

Splunk Enterprise Security I've found is the easiest of all major SIEM's to deploy due to its event normalization capabilities. It lags behind QRadar in event correlation but is better in user GUI customization. One issue where QRadar beats it is in cost. Splunk starts off cheap, but as you expand (due to it's licensing model), it quickly becomes very expensive. It is the monster that keeps on feeding.
Douglas Concepcion profile photo

Tenable.sc (formerly SecurityCenter)

We selected Tenable because is one of the best solution at the moment. Tenable is a powerful tool that we use for validation of our patching methodology. This is very helpful if you are only patching what the vendor deems as critical and then with this external validation you now have a new source for what is important. The user interface is clean and easy to navigate. Low false positives rapid signature release frequent product enhancement and updates.
No photo available

Return on Investment

IBM QRadar

  • QRadar has helped us improve our rating when going through an IT audit.
  • It has allowed us to answer some security related contract questions much more positively when going through contract negotiation.
  • It helps us to protect our company and investors from Outside and Internal threats.
No photo available

Tenable.sc (formerly SecurityCenter)

  • ROI from Tenable suite of products has been well worth its cost.
  • Their pricing model has changed and they charge higher than their competitors but for the usage we have currently it serves us well.
  • Customization might not be what was expected but I believe we are using the tool to the fullest.
No photo available

Pricing Details

IBM QRadar

General

Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No

Tenable.sc (formerly SecurityCenter)

General

Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No

Rating Summary

Likelihood to Recommend

IBM QRadar
9.3
Tenable.sc (formerly SecurityCenter)
9.9

Support

IBM QRadar
8.5
Tenable.sc (formerly SecurityCenter)
8.0

Add comparison