A Robust Solution
July 12, 2021

A Robust Solution

Muhannad Zarour | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User

Overall Satisfaction with IBM QRadar

Consulting on the platform.
  • Scalable and modular (e.g., distributed architecture)
  • Many other IBM products enhance its capability (e.g., Guardium, Watson, QRM, QVM, X-force)
  • Full payload inspection and correlation using the QNI feature
  • Robust HA capabilities
  • Licensing model complexity
  • Abundance in documentation makes it a challenge to find relevant guidance
  • QVM enhancement many organizations prefer other third-party scanners
  • Enhanced SOC resource optimization
  • Value and benefits realization for strategic goals
  • Increased cost due to skills and training
Very close competition but IBM QRadar stands out; other IBM products support the cybersecurity monitoring and IR function.

Do you think IBM Security QRadar SIEM delivers good value for the price?

Yes

Are you happy with IBM Security QRadar SIEM's feature set?

Yes

Did IBM Security QRadar SIEM live up to sales and marketing promises?

Yes

Did implementation of IBM Security QRadar SIEM go as expected?

Yes

Would you buy IBM Security QRadar SIEM again?

Yes

IBM Resilient Security Orchestration, Automation and Response (SOAR), IBM Security Guardium, HCL AppScan (formerly from IBM)
Any organizations may benefit from IBM QRadar regardless of size, as offerings are available for all sizes and deployment types, including cloud (e.g., QRoC). But the organization needs to invest heavily in competency (e.g., skilled people, training).

IBM Security QRadar SIEM Feature Ratings

Centralized event and log data collection
10
Correlation
10
Event and log normalization/management
10
Deployment flexibility
10
Integration with Identity and Access Management Tools
9
Custom dashboards and workspaces
10
Host and network-based intrusion detection
10
Log retention
9
Data integration/API management
10
Behavioral analytics and baselining
9
Rules-based and algorithmic detection thresholds
10
Reporting and compliance management
10
Incident indexing/searching
10