App comparison
Add up to 4 apps below to see how they compare. You can also use the "Compare" buttons while browsing.
Learn why GetApp is free
Q. Who are the typical users of IBM Security QRadar?
Q. What languages does IBM Security QRadar support?
Q. What other apps does IBM Security QRadar integrate with?
IBM QRadar SIEM is a security information and event management platform for security analysts to accurately detect, prioritize, investigate and quickly respond to threats across cloud-based and on-premises environments. QRadar monitors the enterprise network using machine learning and AI algorithms, providing teams with intelligent insights which enable security analysts to formulate a response plan before attackers are able to damage systems, steal data, or disrupt business operations.
Typical customers
Platforms supported
Support options
Starting from
No pricing info
Starting from
No pricing info
Value for money
4.3
/5
26
Starting from
No pricing info
Value for money contenders
Functionality
4.5
/5
26
Total features
16
2 categories
Functionality contenders
Overall Rating
4.5
/5
26
Positive reviews
14
11
1
0
0
Overall rating contenders
SUCCESS I.
Computer Software, 10,001+ employees
Used daily for 2+ years
Review source
Share this review:
Security Innovation event management system is excellent as it has endless layers of security for a company's firewall
To be sincere, the only way this system can be flawed is when pass codes are compromised within
Josh A.
Retail, 51-200 employees
Used daily for 1-2 years
Review source
Share this review:
Collect in secure mode all critical events from our critical resources. Identify and analysis incidents and attacks.
The IBM QRadar SIEM is a powerful tool. A mature solution to collect event and investigate incidents and attacks. The tool store in secure mode all events. The tool is easy to use. Easy to add log sources and analysis offenses.
The documentation of the tool can be more detailed.
Idaly M.
Semiconductors, 10,001+ employees
Used daily for 2+ years
Review source
Share this review:
With IBM Security QRadar we reduce the risk of being vulnerable to a cyber attack, since the protection of this software is intuitive and prioritizes threats to be more effective in the security of our IT environment. It is a truly automatic process that guarantees the total protection of our data, has detailed reports and a very powerful response to cyber attacks.
It is a necessary software for all our business environment, since it guarantees that our information is safe, the dashboard is intuitive and understandable, the analyzes are effective so that threats do not enter and damage our information, I like the prioritization of threats, since neutralizes in order of importance, network forensics is very good, advanced searches are good, protection of our entire IT infrastructure is high, and we really like the trust that IBM Security QRadar places in us.
It has many features that somewhat limit the understanding of early adopters, it can be overwhelming the first time, but the quality of the results keeps our data safe and threats away.
Kevin H.
Computer & Network Security, 51-200 employees
Used daily for 2+ years
Review source
Share this review:
I used QRadar for over 10 years, and have found great success in using it in a reactive sense when other staff bring up security or connectivity issues; the ability to quickly show normalized logs -- along with the raw log output for the skeptical staff out there -- is a real boon to quickly finding the root cause of an issue and moving on. The pricing and licensing schemes of the product have gotten more cumbersome since the purchase of the product by IBM, and their support channels exhibit the kind of mind-numbing bureaucracy you can expect out of such a large organization.
When aggregating log information, the ability to quickly click and pivot around between data sources and filter results on-the-fly worked very well for any reactive kind of events. The software also did a relatively decent job on identifying data and log sources and classifying them correctly.
The software can be very involved and cumbersome; expect to dedicate significant staff time towards it in order to keep it operational and to continually tune the software for false positives. For example, at an organization with over 2,000 employees I had to dedicate almost a single employee to perform tasks within QRadar, and nothing else. Along with that, in order to be successful your support staff must be extremely familiar with networking and understanding the reasons why devices send the logs that they do. This is not the case where you can point-and-click a few things and have a system that alerts you properly when attacks are taking place.
Danielle P.
Information Services, 201-500 employees
Used daily for 1-2 years
Review source
Share this review:
We integrated IBM Security QRadar because it is a much more functional SIEM software than the others, the usability, security, analysis and incident resolution features are amazing, it also allows a quick response to threats found in the network. It is the perfect software to monitor our infrastructure and prevent threats from entering and damaging our system.
I like that it has an easy to understand user interface, detection of threats is accurate and neutralizes them before they cause damage to our system, it is customizable and reduces the risk of damage to our system. It has detailed reports that help us understand what is happening and does not detect false positives.
It is a high quality SIEM product, it has big differences in functions and results compared to others and although it is not so easy to use the software for the first time, it has a simple interface that you can learn to use and customize in a short time.