Good tool for large organization.
November 20, 2024

Good tool for large organization.

Mirosław Heimrath | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User

Modules Used

  • IBM Security Guardium Data Protection
  • IBM Security Guardium Vulnerability Assessment
  • IBM Security Discover and Classify

Overall Satisfaction with IBM Guardium

Guardium is a standard method for enabling activity logging for different DB vendors. It simplifies maintaining logs for different DB types. The agent method is easy to deploy and could be easily repeated and automated. The area that requires improvement is the reporting mode (lack of centralization, not user-friendly GUI).

Pros

  • Deployment.
  • Supporting DB's.
  • Avoiding performance issue on DB servers.

Cons

  • Maintenance of Guardium infrastructure.
  • Reporting mode (Entities, Centralization).
  • Audit function.
  • Decreases risk of unauthorized access by DBA's.
  • Compliance over GDPR or PCI-DSS regulations.
  • Secure visibility over DB layer.
The GUI is not modern, but after a few days, a specialist should easily be able to take complete control of the product. Nevertheless, maintaining a large-scale environment could be challenging.
Building compliance on working on the DB layer. Working as a camera around the most important places where the company stores data.
It is possible to connect the product with SIEM and SOAR systems.

Do you think IBM Guardium delivers good value for the price?

Yes

Are you happy with IBM Guardium's feature set?

Yes

Did IBM Guardium live up to sales and marketing promises?

I wasn't involved with the selection/purchase process

Did implementation of IBM Guardium go as expected?

No

Would you buy IBM Guardium again?

Yes

Well suited: Large scale in numbers of servers with different DB vendors. We are establishing more sophisticated security controls based on session and SQL levels. Less appropriate: DB's with enabled default native logging. Reporting activities from a time range older than 3 months. Lack of willingness to create a dedicated team to manage the solution.

Comments

More Reviews of IBM Guardium