The most complete and reliable SIEM
August 04, 2023

The most complete and reliable SIEM

Anonymous | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User

Software Version

Other

Modules Used

  • SIEM
  • NDR

Overall Satisfaction with IBM Security QRadar SIEM

IBM QRadar is one of the best SIEM available. Year of experience, continous improvements and constant innovations makes this product one of the most stable and reliable Cybersecurity platforms in commerce. I use QRadar on a daily basis both on operational and administrative levels in order to address the cybersecurity issues in my company and other companies.
  • Event correlation
  • Rule Alerting and Response
  • Data parsing and normalization
  • Customizations
  • User interface
  • Cloud services integration
  • NDR Integration like QNI can improve a lot
  • Like any cybersecurity product, any money you don't lose on a prevented attack is money that you saved
  • Most of the apps are free and provides great enrichment like User Behaviour Analytics
  • Top quality alerts gives enormous value to the "passive" data that flows into the infrastructure
One of the selling points for IBM QRadar is the number of default integrations that comes out of the box with the product. More than 400 products and vendors from any kind of technology and even so, if you have a custom application that you want to normalize and correlate with, the parsing engine is fully customizable and allows the normalization of any kind of data.
The support from IBM is another golden point for the product. Given the huge documentation available from IBM, the support is there 24/7 with a wide range of experts and teams that are specialized in various section of the product allowing IBM to provide cutting edge support and to solve even the most complicated and unusual problem.
IBM Qradar takes the best from its competitors. Reliable and stable but sometimes very expensive, the SIEM from IBM offers a wide range of scenarios in which the customers can suite and size their own infrastructures. IBM Qradar doesn't really needs to stack up againt its competitors because it already sets an example in the SIEM world.

Do you think IBM Security QRadar SIEM delivers good value for the price?

Yes

Are you happy with IBM Security QRadar SIEM's feature set?

Yes

Did IBM Security QRadar SIEM live up to sales and marketing promises?

No

Did implementation of IBM Security QRadar SIEM go as expected?

Yes

Would you buy IBM Security QRadar SIEM again?

Yes

IBM QRadar is well suited for medium/large companies that needs to monitor their IT infrastructure on a trasversal level. Given that a SIEM is fundamental for a good cybersecurity environment, IBM QRadar is the rocksteady answer to all the needs that an IT Operation or SOC team may ask. Both on premise or in cloud, all-in-one or distributed, QRadar is scalable for any kind of scenario. This is a cutting edge product that needs to be followed constantly so it can be less appropriate for companies that doesn't have the required workforce to keep the product healty and up to date.

IBM Security QRadar SIEM Feature Ratings

Correlation
10
Integration with Identity and Access Management Tools
6
Custom dashboards and workspaces
8
Behavioral analytics and baselining
9
Rules-based and algorithmic detection thresholds
8
Reporting and compliance management
8