Sign in
Categories
Your Saved List Partners Sell in AWS Marketplace Amazon Web Services Home Help

IBM Security QRadar SIEM v7.3.2 P1 - Console (BYOL)

IBM Security | QRadar Console v7.3.2 Patch 1

Linux/Unix, Red Hat Enterprise Linux RHEL-7.5 - 64-bit Amazon Machine Image (AMI)

Reviews from AWS Marketplace

0 AWS reviews
  • 5 star
    0
  • 4 star
    0
  • 3 star
    0
  • 2 star
    0
  • 1 star
    0

External reviews

354 reviews
from G2

External reviews are not included in the AWS star rating for the product.


    Mark A.

QRadar Newbie.

  • November 14, 2017
  • Review provided by G2

What do you like best about the product?
I like the discussed inter-operability between QRadar and other data sources that can be used as feeds or a database. I also like that it can be tailored to any environment with not too much effort if the environment is mature.
What do you dislike about the product?
We have run into a timestamp issue whereby QRadar timestamps an event when it receives the data and creates an alert based on that timestamp vs when the event actually happened on the Network.
What problems is the product solving and how is that benefiting you?
We are implementing QRadar to better consolidate and cross correlate data to one console.
Recommendations to others considering the product:
Have a mature environment that is well documented, a well organized process flow for Security as a whole and well defined roles and responsibilities. It's always good to have done your homework on any product as it relates to your environment so as to have the ability to identify any gaps in either process flow or data sources availability/use in QRadar.


    Information Technology and Services

Flexible, fast, data-intensive, and evolving at a rapid pace

  • November 13, 2017
  • Review provided by G2

What do you like best about the product?
The fact that it natively deals with flows and log sources. The QRadar app exchange is just putting the platform on steroids and expanding its capabilities limitlessly. The correlation and offense engine is very powerful, as is the framework for integrating threat and intel feeds. Tight integration with QVM, Forensics.
What do you dislike about the product?
The dashboards need more visualization options and flexibility.
What problems is the product solving and how is that benefiting you?
Orchestrating security incident response around IBM QRadar, with increased identification rates, faster triage, greater visibility into incidents from network flows and other security context sources.


    Brandon B.

IBM QRadar

  • November 09, 2017
  • Review verified by G2

What do you like best about the product?
Honestly the best thing about IBM QRadar is the support. It's a very complex tool and can be very daunting to newer admins. But an email here or there or a ticket can get almost any question possible answered in a friendly and professional manner.
What do you dislike about the product?
It's a very complex tool and can be daunting for new admins not familiar with it. Depending on the situation there can be a bit of a steep learning curve.
What problems is the product solving and how is that benefiting you?
Security visibility
Recommendations to others considering the product:
Try the new free 50 eps version of QRadar to test it in a small environment.


    Entertainment

Glad to be using QRadar

  • November 09, 2017
  • Review provided by G2

What do you like best about the product?
The ease of searching through massive amounts of data
What do you dislike about the product?
Not easy to deploy log sources especially wincollect, we have never been able to get auto log source creation to work correctly
What problems is the product solving and how is that benefiting you?
Compliance and security monitoring