IBM Security QRadar SIEM Review
March 31, 2024

IBM Security QRadar SIEM Review

Anonymous | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User

Software Version

QRadar Advisor with Watson (legacy branding)

Modules Used

  • SIEM

Overall Satisfaction with IBM Security QRadar SIEM

With IBM Security QRadar SIEM, my team can identify, respond and contain many threats in our environment, because the SIEM IBM QRADAR brings insights about our security. Is easy to looking for any indicators compromise and other kinds of the artifacts. Anyone can perform a search on the console web and use many filter to perform a custom filters.
  • Investigations is easy
  • Agents to collect infos is great
  • Stability is good
  • Some updates cause errors
  • Unsupport for high traffics on http receiver protocol
  • Need a big configuration of hardware
  • Enrich incident events
  • High cost with virtual machines
  • Reducing time for detect threats
IBM Security QRadar SIEM no have many options to integration with solutions in our environment, so in some cases, we cannot explore more features of IBM Security QRadar SIEM using our data, and this case, we still need use our console the others cyber security solutions for bring informations about indicators of attack or contain threats.
The support team is really fast to contact us and we need, but in most times, they cannot give the root cause for somes bugs and or error on QRADAR, because that, we know and feel this lack of transparently from IBM when those troubles happened. Is important IBM improve that.
We select a IBM Security QRadar SIEM because is better to integrate a our SIEM QRADAR.

Do you think IBM Security QRadar SIEM delivers good value for the price?

No

Are you happy with IBM Security QRadar SIEM's feature set?

No

Did IBM Security QRadar SIEM live up to sales and marketing promises?

I wasn't involved with the selection/purchase process

Did implementation of IBM Security QRadar SIEM go as expected?

Yes

Would you buy IBM Security QRadar SIEM again?

No

IBM Security QRadar SIEM is great to collect, process and search events, but sometimes have some bugs and or incompatibilities with some tools in our organisation, because that, sometimes, we need open a case on support to investigate the root cause and in most times, the root cause is not identify by support team.

IBM Security QRadar SIEM Feature Ratings

Correlation
7
Integration with Identity and Access Management Tools
4
Custom dashboards and workspaces
3
Behavioral analytics and baselining
3
Rules-based and algorithmic detection thresholds
3
Reporting and compliance management
2