Sign in
Categories
Migration Mapping Assistant Your Saved List Partners Sell in AWS Marketplace Amazon Web Services Home Help

IBM QRadar Security Intelligence Platform Console (BYOL)

IBM Security | QRadar Console v7.3.1 Patch 7 IF1

Linux/Unix, Red Hat Enterprise Linux RHEL-7.5 - 64-bit Amazon Machine Image (AMI)

Reviews from AWS Marketplace

0 AWS reviews
  • 5 star
    0
  • 4 star
    0
  • 3 star
    0
  • 2 star
    0
  • 1 star
    0

External reviews

184 reviews
from G2

External reviews are not included in the AWS star rating for the product.


    samir c.

Qradar is a very good product

  • September 14, 2018
  • Review provided by G2

What do you like best?
Qradar is very simple to use
we can integrate it with different log sources
I like that we can install application on Qradar (pulse, users behavior...)
What do you dislike?
qradar dosn't support some IBM product (IBM switch and IBM domino) for exemple
Qradar can't be integrated with TSM
What problems are you solving with the product? What benefits have you realized?
we get our PCI-DSS certificate using Qradar
we use Qradar every day to resolve network issues


    Information Technology and Services

IBM SECURITY QRADAR SIEM

  • August 27, 2018
  • Review verified by G2

What do you like best?
Probably the most comprehensive and powerful SIEM we’ve seen...We’ve seen with the added benefit of many next-gen features and superlative correlation...Excellent price for a very flexible SIEM with lots of features... Easy installation, configuration and management... Very fast search, quick and easy log source integration, easy and clear report and rule preparation, etc...
What do you dislike?
Qradar running stable can become inconsistent when we install some extention to qradar ...
is it possible cross query in two events and than match the same property and than two other events merges and than create new table/search/report from these matched events?
What problems are you solving with the product? What benefits have you realized?
It meets almost all our needs for siem.
Recommendations to others considering the product:
You should definitely try it before deciding on any siem product...


    Juan Carlos Q.

Qradar buena solución monitorización.

  • July 17, 2018
  • Review provided by G2

What do you like best?
Es una herramienta muy util en monitorización de sistemas de alerta temprana.
What do you dislike?
En mi opinion da la sensacion de estar muy limitado, no ofrece nada diferente.
What problems are you solving with the product? What benefits have you realized?
Analisis de eventos para generar alertas y reportes.
Recommendations to others considering the product:
Un buen sistema de monitorización. Es aceptable.


    Hospital & Health Care

Needs improvement.

  • March 27, 2018
  • Review provided by G2

What do you like best?
Results are fast. Supports hybrid environments.
What do you dislike?
No inverted index. I would like to see this feature.
What problems are you solving with the product? What benefits have you realized?
Suspicious activity.


    Financial Services

happy with ibm siem tool

  • March 20, 2018
  • Review provided by G2

What do you like best?
event querralation. easy to add end points. easy to save events
What do you dislike?
hard to navigate, too many buttons to click
What problems are you solving with the product? What benefits have you realized?
anamoly detection


    Information Technology and Services

Easy to learn for beginners

  • January 30, 2018
  • Review provided by G2

What do you like best?
IBM QRadar is a very good tool for the beginners. It has a good UI which allows us to get the information required easily. The tabs provide an easy overview of the events.
What do you dislike?
It doesn't provide all the details required. The raw data isn't enough for detailed analysis!
What problems are you solving with the product? What benefits have you realized?
We are able to determine which event is getting triggered more often and are able to check what is happening.


    Retail

Threat analysis at its best

  • December 19, 2017
  • Review provided by G2

What do you like best?
It is better than other SIEM out there in the market currently
What do you dislike?
A touch on the costlier side and need to have good back ground in SIEM to use this
What problems are you solving with the product? What benefits have you realized?
Advanced and persistent threat detection
Recommendations to others considering the product:
The SIEM system in the market currently with lot more potential to grow in the right direction


    Joe A.

Undecided

  • November 14, 2017
  • Review verified by G2

What do you like best?
Nothing particular. Layout is similar to other SIEM applications.
What do you dislike?
searching is not intuitive. Quick filter doesn't offer any tips or command/syntax help.
What problems are you solving with the product? What benefits have you realized?
We haven' identified business problems to solve yet.


    Financial Services

QRadar Review - Rick Jesse

  • November 14, 2017
  • Review provided by G2

What do you like best?
Ease of use. The ability to quickly find information. Rules are fairly straight forward to create and/or edit.
What do you dislike?
Auto detecting log sources are sometimes inaccurate, leading to duplicate and sometimes triplicate log sources. DSMs have a lot of issues with parsing for certain log sources, and there is a lack of some common DSMs. Specific reports can be difficult to create, the time series reports specifically give us the most issues.
What problems are you solving with the product? What benefits have you realized?
We are using QRadar as both a logger and SIEM. Detecting and Alerting of malicious activity has been the biggest benefit.


    Mark A.

QRadar Newbie.

  • November 14, 2017
  • Review provided by G2

What do you like best?
I like the discussed inter-operability between QRadar and other data sources that can be used as feeds or a database. I also like that it can be tailored to any environment with not too much effort if the environment is mature.
What do you dislike?
We have run into a timestamp issue whereby QRadar timestamps an event when it receives the data and creates an alert based on that timestamp vs when the event actually happened on the Network.
What problems are you solving with the product? What benefits have you realized?
We are implementing QRadar to better consolidate and cross correlate data to one console.
Recommendations to others considering the product:
Have a mature environment that is well documented, a well organized process flow for Security as a whole and well defined roles and responsibilities. It's always good to have done your homework on any product as it relates to your environment so as to have the ability to identify any gaps in either process flow or data sources availability/use in QRadar.