TrustRadius: an HG Insights company

Save this comparison

Save this comparison

Add Product

Recommended Comparisons

    Overview
    ProductRatingMost Used ByProduct SummaryStarting Price

    IBM Security QRadar EDR

    Score8 out of 10
    N/AIBM Security QRadar EDR (formerly ReaQta) combines automation and dashboards to minimize analyst workloads, detect anomalous endpoint behavior and remediate threats in near real time. With visibility across endpoints, it combines expected features, like MITRE ATT&CK mapping and attack visualizations, with dual-engine AI and automation. For teams that need extended support, managed detection and response (MDR) services offers 24/7 monitoring and response to help keep users…N/A

    Zabbix

    Score8.5 out of 10
    N/AZabbix is an open-source network performance monitoring software. It includes prebuilt official and community-developed templates for integrating with networks, applications, and endpoints, and can automate some monitoring processes.N/A
    Pricing
    IBM Security QRadar EDRZabbix
    Editions & Modules
    No answers on this topic
    No answers on this topic
    Offerings
    Pricing Offerings
    IBM Security QRadar EDRZabbix
    Free Trial
    YesNo
    Free/Freemium Version
    NoNo
    Premium Consulting/Integration Services
    NoNo
    Entry-level Setup FeeOptionalNo setup fee
    Additional Details——
    More Pricing Information
    Community Pulse
    IBM Security QRadar EDRZabbix
    Considered Both Products
    IBM
    No answer on this topic
    Zabbix
    No answer on this topic
    Key User Insights
    Would buy again
    100%
    Would buy again
    11 Answers
    100%
    Would buy again
    15 Answers
    Delivers good value for the price
    88%
    Delivers good value for the price
    7 Answers
    100%
    Delivers good value for the price
    15 Answers
    Happy with the feature set
    100%
    Happy with the feature set
    11 Answers
    93%
    Happy with the feature set
    14 Answers
    Lived up to sales and marketing promises
    88%
    Lived up to sales and marketing promises
    7 Answers
    90%
    Lived up to sales and marketing promises
    9 Answers
    Implementation went as expected
    100%
    Implementation went as expected
    9 Answers
    100%
    Implementation went as expected
    13 Answers
    Features
    IBM Security QRadar EDRZabbix
    Endpoint Security
    Comparison of Endpoint Security features of IBM Security QRadar EDR and Zabbix
    Feature
    IBM Security QRadar EDR
    7.5
    10 Ratings
    13% below category average
    Zabbix
    -
    Ratings
    Anti-Exploit Technology7.39 Ratings00 Ratings
    Endpoint Detection and Response (EDR)7.410 Ratings00 Ratings
    Centralized Management7.310 Ratings00 Ratings
    Hybrid Deployment Support7.39 Ratings00 Ratings
    Infection Remediation7.310 Ratings00 Ratings
    Malware Detection8.110 Ratings00 Ratings
    Best Alternatives
    IBM Security QRadar EDRZabbix
    Small Businesses
    SentinelOne Singularity
    Score9 out of 10
    No answers on this topic
    Medium-sized Companies
    BlackBerry Protect (CylancePROTECT)
    Score9.1 out of 10
    Icinga
    Score9 out of 10
    Enterprises
    ESET PROTECT
    Score8.8 out of 10
    HPE OneView
    Score6 out of 10
    All AlternativesView all alternativesView all alternatives
    User Ratings
    IBM Security QRadar EDRZabbix
    Likelihood to Recommend
    7.0
    (11 ratings)
    8.3
    (28 ratings)
    Likelihood to Renew
    -
    (0 ratings)
    9.0
    (3 ratings)
    Usability
    -
    (0 ratings)
    8.6
    (4 ratings)
    Support Rating
    -
    (0 ratings)
    5.0
    (5 ratings)
    Implementation Rating
    -
    (0 ratings)
    8.0
    (2 ratings)
    User Testimonials
    IBM Security QRadar EDRZabbix
    Likelihood to Recommend
    IBM
    IBM Security QRadaar EDR provides all the security features at one place with a reasonable price. Though for smaller organizations, the price may be quite high. Plus since it can detect threats and malwares in real time, every business should try them out.
    Incentivized
    Read full review
    Zabbix
    Zabbix is great for monitoring your servers and seeing alerts when the system uses too much CPU or memory. This allowed the system Engineer to be proactive and add resources to these systems to avoid interrupting the services. Especially servers running operations applications and services. This is one of the best usages for Zabbix.
    Incentivized
    Read full review
    Pros
    IBM
    • Detect known and unknown endpoint security threats
    • Remediate these threats near real time
    • Automation in threat detection
    • Threat attack attack visualization storyboards
    • Alert management authomation
    Incentivized
    Read full review
    Zabbix
    • Collecting hardware data - CPU, Memory, Network, and Disk Metrics are collected and reported on.
    • Flexible design - It is very easy to build out even very large environments via the templating system. You can also start where you are - network monitoring, server monitoring, etc. and then build it out from there as time and resources permit.
    • Provides a "plugin architecture" (via XML templates) to allow end users to extend it to monitor all kinds of equipment, software, or other metrics that are not already added into the software already.
    • Very complete documentation. Almost every aspect of Zabbix has been documented and reported on.
    • Cost - Zabbix is FOSS software and always free. Support is reasonably priced and readily available.
    Incentivized
    Read full review
    Cons
    IBM
    • use AI to review previous false negatives that contributed wrongly in the AI suggestion on the follow alerts
    • easily run a script based on values from an hash, ips, path inside the boxes on the behavioral tree
    • apply the remediation to a range of endpoint instead to only the endpoint of the current alert
    • use ajax for example to update the alert page automatically while actions are happening
    • for api have profiles that allow only get actions, or just post on some actions
    • create users in bulk
    Incentivized
    Read full review
    Zabbix
    • Creating an alert & its trigger can be made easier.
    • More VM-based data collection counters should be introduced to have better VM monitoring.
    • The raw counters collection agent in every node is relatively weak. It goes down often, which needs more stability.
    Incentivized
    Read full review
    Likelihood to Renew
    IBM
    No answers on this topic
    Zabbix
    It is free. It didn't cost anything to implement (other than my time and the cost incurred for it) and it is filling a badly needed gap in our IT infrastructure. Support is available if we have issues and can be done annually or paid for on a per incident basis as needed. Expansion, updates, and all other future lifecycle activities are likewise free of cost, so as long as someone is able to implement/maintain the software (and the OSS project is maintained) then I imagine the company will never leave it.
    Incentivized
    Read full review
    Usability
    IBM
    No answers on this topic
    Zabbix
    I think every organization, especially the IT department, needs a tool like this. I know of another product like Zabbix that gives a similar or the same solution, but its range makes it very useful. You can see almost all the device info in one place: disk usage, disk space, network usage, etc.
    Incentivized
    Read full review
    Support Rating
    IBM
    No answers on this topic
    Zabbix
    The setup is the most time-consuming portion of using zabbix. It takes a lot of effort to shape it into a usable format and even then it can get very messy. It's not exactly intuitive and as mentioned the UI seems a bit antiquated. If I was to roll out a monitoring solution from scratch, I'd probably look for alternatives which are easier to use and maintain.
    Incentivized
    Read full review
    Implementation Rating
    IBM
    No answers on this topic
    Zabbix
    We are a mainly Windows environment, so it would be useful if we could have used Active Directory to deploy agents. As of version 4.2, Zabbix has announced a new agent MSI file to allow exactly that. Unfortunately, we didn't have that option. Also, for Linux and MAC deployments, there is no simple way to deploy that. Using remote scripts you may be able to create something, but most places will opt for either SNMP (agentless) or manual installation of agents to add to Zabbix. A way of deploying agents via discovery would go a long way to helping in the adoption of the tool.
    Incentivized
    Read full review
    Alternatives Considered
    IBM
    Bitdefender GravityZone combines multiple security services into a single platform to reduce the cost of building a trusted environment for endpoints. bit the IBM provides a vast support and always there to guide when in need With the majority of our users working in hybrid mode we needed a strong security control that could provide top-class protection with the minimum amount of False Positives (and, of course, of True Positives).
    Incentivized
    Read full review
    Zabbix
    We're using the Solarwinds suite as our global monitoring standard, but it is very complex and its licensing model makes it difficult to monitor a wide range of technologies. So, we're using Zabbix as a complement on our monitoring process. Zabbix is a way more flexible and has free integrations to a wide range of technologies. It is also more 'user friendly' and easy to manage.
    Incentivized
    Read full review
    Return on Investment
    IBM
    • NOCs and SOCs heavily use IBM Security QRadar EDR and IBM Security QRadar EDR reduced labor costs to identify endpoint security threats and the treat remediation
    • IBM Security QRadar EDR offers a consistent approach to endpoint threat identification and resolution, reduces enterprise security operations support costs
    • In general, IBM Security QRadar EDR enhances enterprise security posture
    Incentivized
    Read full review
    Zabbix
    • Good ROI when trying to get ahead of network related problems instead of waiting for users to complain
    • Good ROI when doing upgrades or exploratory work on a neglected network
    • Good ROI when showing usage trends to management showing higher actual usage versus what was thought to be happening
    Read full review
    ScreenShots

    IBM Security QRadar EDR Screenshots

    Screenshot of Behavioral tree: 
A behavioral tree provides full alert and attack visibility.Screenshot of Behavioral tree storyline: 
A visual storyline is automatically created as an attack unfolds, including mapping to MITRE ATT&CK, for full visibility.Screenshot of Cyber Assistant alerts: 
The Cyber Assistant, an AI-powered alert management system, can autonomously handle alerts, reducing analysts’ workloads.Screenshot of Cyber Assistant recommends:
The Cyber Assistant learns from analyst decisions, then retains the intellectual capital and learned behaviors to make recommendations and help reduce false positives.Screenshot of Custom detection strategies: 
Detection Strategy (DeStra) scripting allows users to build custom detection strategies — beyond preconfigured models — to address compliance or company-specific requirements without the need to reboot the endpoint.