Get to the head of the Q
February 14, 2019

Get to the head of the Q

Anonymous | TrustRadius Reviewer
Score 8 out of 10
Vetted Review

Overall Satisfaction with IBM QRadar

QRadar is being used for incident detection and escalation, as well as reporting of metrics of interest on top of some KPIs for response times.
  • Correlation
  • Ease of use for data
  • Customization for custom applications
  • Reporting configuration is still too convoluted
  • Coalescing is too tied down. I recommend an ability to adjust, with an appropriate limit, the fields used: in general, by log source type, and/or by log source.
  • Immediate perceived ROI by leadership using reporting data.
It was on the easier side for use and can be stable.
Bad for payload searching across multiple months.

Great for correlation.

IBM Security QRadar SIEM Feature Ratings

Centralized event and log data collection
8
Correlation
9
Event and log normalization/management
9
Deployment flexibility
5
Integration with Identity and Access Management Tools
8
Custom dashboards and workspaces
9
Host and network-based intrusion detection
7