QRadar review
August 04, 2023

QRadar review

Marco Mondelli | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User

Software Version

Other

Modules Used

  • SIEM
  • SOAR

Overall Satisfaction with IBM Security QRadar SIEM

Use cases monitored 24x7 from SOC Team about traffic and user abnormal behaviour, EDR monitor and Cloud.
  • Dashboard
  • Log source integration portfolios support
  • Application
  • Extension on the Marketplace IBM
  • Query
  • Pre-made Use Case
  • INterconnection beetween application and log sources
  • Query Speed UP
  • Intuitive correlation
  • Report improvement
  • We are currently implemented Qradar in various enterprise company.
  • Quality alert if finely tuned for a 24x7 SOC
  • Still lack on hardware cost
RHEL Enterprise gives you the ability to move very quickly on the backend side, if you are an expert Linux user you will find the open source architecture very intuitive and usefull for issue fixing and so on.
Very good support, both from the Ireland expert guys and the teams from all around the world.
It's in the middle of this chart, Splunk from my point of view it's still the best SIEM actually and Sentinel it's very easy to use.

Do you think IBM Security QRadar SIEM delivers good value for the price?

Yes

Are you happy with IBM Security QRadar SIEM's feature set?

Yes

Did IBM Security QRadar SIEM live up to sales and marketing promises?

I wasn't involved with the selection/purchase process

Did implementation of IBM Security QRadar SIEM go as expected?

Yes

Would you buy IBM Security QRadar SIEM again?

Yes

A very good SIEM, needs to be undestood very well before to use it with it's full power.

IBM Security QRadar SIEM Feature Ratings

Correlation
6
Integration with Identity and Access Management Tools
7
Custom dashboards and workspaces
7
Behavioral analytics and baselining
7
Rules-based and algorithmic detection thresholds
6
Reporting and compliance management
6