In-depth Threat Intelligence and Incident Response Analysis
November 28, 2023

In-depth Threat Intelligence and Incident Response Analysis

Abhishek Kumar | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User

Software Version

QRadar Advisor with Watson (legacy branding)

Modules Used

  • SIEM

Overall Satisfaction with IBM Security QRadar SIEM

IBM Security Qradar help our Organization by real-time Monitoring of Logs and events to Provide a safe and secured Environment and Interface. we use multiple servers and router switches and end devices are connected to each others ,Qradar helps to monitor all logs and events of all intregated devices and gives update with customs rules engine. If any misbehavior happens in server or in any devices ,it was investigated with Qradar and Creates offenses and give us alert of unethical activity.
  • Log and Event Monitoring
  • open Architecture to integrate with other software's
  • Automate Report
  • Sometime its lag and slow Working
  • Deployment is slow
  • automatic Offences are not updated need to manual.
  • No alarm system for offences
  • Quality of Investigation & Efficiency to use
  • Reduced risk and cost of a major security breach.
  • Analyst time spent investigating incidents has been reduced.
QRadar's open architecture facilitates integration with a wide range of security technology and third-party tools and other applications , including data sources such as firewalls, antivirus systems, systems for detecting and preventing intrusions, and others. X-force is one of the best libraries for external applications or other tools that are easily integrated with QRadar.
Customer support is Good of IBM, While Using IBM QRadar its deployment is to slow and suddenly stop working and crashed we have contacted IBM Support and Rised a Ticket within a few minute we get call back from customer support and Query Resolved by them Fast And Rapid Support of Ibm

Do you think IBM Security QRadar SIEM delivers good value for the price?

Yes

Are you happy with IBM Security QRadar SIEM's feature set?

Yes

Did IBM Security QRadar SIEM live up to sales and marketing promises?

I wasn't involved with the selection/purchase process

Did implementation of IBM Security QRadar SIEM go as expected?

Yes

Would you buy IBM Security QRadar SIEM again?

Yes

IIBM Security QRadar SIEM is one of the best tools for real-time monitoring of unethical activity or Occurrence on Qradar-connected servers or devices. We can easily find logs and activity by using the AQl and advanced search options. If any occurrence or unethical activity has been identified, the offenses will be automatically triggered using CRE.

IBM Security QRadar SIEM Feature Ratings

Correlation
8
Integration with Identity and Access Management Tools
7
Custom dashboards and workspaces
9
Behavioral analytics and baselining
9
Rules-based and algorithmic detection thresholds
9
Reporting and compliance management
9