IBM Security QRadar is security information and event management (SIEM) Software.
N/A
LogicMonitor
Score 9.0 out of 10
Mid-Size Companies (51-1,000 employees)
LogicMonitor’s SaaS-based platform, LM Envision, enables observability across on-prem and multi-cloud environments. It provides IT and business teams operational visibility and predictability across their technologies and applications.
N/A
Pricing
IBM Security QRadar SIEM
LogicMonitor
Editions & Modules
No answers on this topic
Enterprise
Contact sales team
Website Monitoring
Contact sales team
Offerings
Pricing Offerings
IBM Security QRadar SIEM
LogicMonitor
Free Trial
Yes
Yes
Free/Freemium Version
No
No
Premium Consulting/Integration Services
No
Yes
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
—
Our platform is broken down into Pro and Enterprise Pricing. Pro includes monitoring for all of your cloud, hybrid, and on-premises infrastructure. Our Enterprise package includes all of this, plus our AIOps and Machine Learning functionality that provides dynamic thresholds, root cause analysis, anomaly detection and more!
LogicMonitor only charges by the device. What is considered a device? A device is anything with an IP address that you want to monitor, including a physical device or a cloud resource. This means multiple data sources under the same IP address can be monitored for the same price. Unlike some monitoring platforms. we don’t charge per node, interface, or metric.
As a part of core security service provider, we could not stand with the tools that are used as a generic data processor. The compliance, log reading and events are well managed in QRadar compared to other tools
I would only recommend IBM Security QRadar SIEM in a few situations. For one, it's very easy to setup and use if all your log sources are generic from known vendors. It's also significantly cheaper than Splunk, which is nice if you're trying to save money or be more efficient. I would not recommend IBM Security QRadar SIEM for environments with a lot of custom logs and complicated detection requirements.
The example I will give will explain my rating for it. One employee left our company due to a personal issue, and at that time, our team was working on a highly secure project. He wanted to take revenge on our company, so he began hacking our systems from the outside. Since it appears that someone without authorization is attempting to access our systems, LogicMonitor simultaneously alerted our team to the problem. We stopped that threat with LogicMonitor.
Need to spend more time configuring the system to properly interpret and normalize different type of data collected from multiple resources.
While Rule creation QRadar uses that rules to detect security threats and generate alerts, but to creating and managing rules is bit complex & tedious work to complete.
IBM Security QRadar SIEM is excellent in handling large & complex systems that requires in-depth knowledge and extensive training to configure and maintain the system which includes upgrading, optimization of performance & issue troubleshooting.
QRadar is an established and stable product, we have been using it for many years and want to continue to focus on it. Anyone who has used the product and knows it knows how reliable it is and how it facilitates continuous monitoring of threats from outside and inside. it is an exceptional product that is very useful for us.
This product has met virtually all of our needs. It was easy to implement and has been simple to support. Customization has been intuitive with many options available. They keep adding features and expanding available options. The future of LogicMonitor looks even better than it is today which is very promising. The management and support teams at LogicMonitor are always helpful
As a grade I give 8 as QRadar is not easy to learn. It requires some time to master it. It also needs a team of people actively working on the product. Once you learn to use it the software works very well and it is easy to correlate and understand detected threats. It only takes time to learn how to use it well and configure it properly.
Set up is super easy. Just stand up a small Linux or Windows server to act as a collector. There are no agents to install on monitored devices and all you need is SNMP or WMI access. When creating dashboards, all you have to do is find the widget on the device you want to show up and choose the menu option to add it.
Customer support is Good of IBM, While Using IBM QRadar its deployment is to slow and suddenly stop working and crashed we have contacted IBM Support and Rised a Ticket within a few minute we get call back from customer support and Query Resolved by them Fast And Rapid Support of Ibm
The sales team support we received was top notch. They worked hand in hand to make sure the product met all expectations. So far we have not really had to work with support that much; we have worked with setup team after purchase to deploy product fully. No issues so far and we are four weeks in.
The training was very useful and the people who taught us were very knowledgeable. Although the software may initially seem difficult to learn they made things much easier for us.
The training was very useful and the people who taught us were very knowledgeable. Although the software may initially seem difficult to learn they made things much easier for us.
Initial patience is required to learn how to use the product, and it takes a dedicated team to use it. One person is not enough, and it's not enough to just set it up and check it once in a while. It has to be used daily and kept under control to be used effectively
I did not truly dedicate myself to implementing LogicMonitor. However, I overheard the IT team members explain that "LogicMonitor is perfect for us as it has made most of the work automated, and implementation and training sessions were perfect for us." Thus, I can state that everything went smoothly with our implementation.
IBM Qradar takes the best from its competitors. Reliable and stable but sometimes very expensive, the SIEM from IBM offers a wide range of scenarios in which the customers can suite and size their own infrastructures. IBM Qradar doesn't really needs to stack up againt its competitors because it already sets an example in the SIEM world.
Basically, we did not have any idea about it and how to choose, but we asked one of our former bosses, as they were very experienced with it, so they helped us by clarifying a few things between New Relic and LogicMonitor, as they told us that if you are looking for an automated option, then there is no better option than LogicMonitor.
Pricing seems to be getting more and more aggressive, I worry that it's going to turn into ServiceNow or SAP and everything minor feature will be an extreme cost that prices out us and our customers
Haven't really used it but our initial onboarding PS was disappointing. Felt like we were being told what we needed to cover as opposed to what we wanted to cover. In addition, we were pushed into using the PS in tight time frames and we were not ready to do so.