Reviews from AWS Marketplace
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
External reviews are not included in the AWS star rating for the product.
Traffic monitoring with QRadar
What do you like best about the product?
Explicit dashboard and offence management being used in our incident investigations.
What do you dislike about the product?
Was quite slow sometimest but it was probably due to our connection to the client environment.
What problems is the product solving and how is that benefiting you?
Network traffic anomalies and analyzing suspicious IP addresses communication.
Recommendations to others considering the product:
Very efficient and high visibility on incidents and traffic .
- Leave a Comment |
- Mark review as helpful
Best Security Orchestration, Automation & Response Tool on the Market!
What do you like best about the product?
We recently built a Resilient solution in the IBM cloud. The Resilient tool is being used to demonstrate capabilities and train our internal personnel for the internal production SOAR deployment too. The set up was easy and within just a couple days we were already realizing the value of Resilient.
What do you dislike about the product?
I wish there was more guidance for the use of the Resilient SOAR tool. The documentation is lacking is some areas and is rudimentary. We need more guidance around how to set up playbooks, use of functions and workflows, how integrations can be further developed. There is a heavy reliance on GitHub and community development that can be difficult to find, validate and implement if inexperienced with the tool.
What problems is the product solving and how is that benefiting you?
We immediately realized time savings benefits for SOC analysts. The threat intelligence was easy to set up and showed value very quickly.
IBM has invested a great deal of resources to make QRadar a very versatile SIEM tool
What do you like best about the product?
Intuitive & wider Aspects of SIEM coupled with Ease of use, IBM's Dedication in Improving the tools
What do you dislike about the product?
Integration with Some kind of scripting engine to make scripting easy even for non programmers to solve specific tasks one of the best feature that is desirable & makes IBM the best SIEM in the market
What problems is the product solving and how is that benefiting you?
Other than general SIEM functionalities, Q Radar's Application provide a great deal of insights & integrations. AQL Provisioning is undoubtedly best.
Recommendations to others considering the product:
Power packed & Highly scalable SIEM with Wide range of options in terms of Customization to suite any organizational needs backed up by International Developers & International Support Matrix.
Interesting product
What do you like best about the product?
Useful information for account monitoring and providing nice overviews
What do you dislike about the product?
however, the version I used needs more updates in order to compete with other monitoring solutions. It needs to have more usability for the analysts, simulating command prompt searching
What problems is the product solving and how is that benefiting you?
Monitoring manipulation and usage of sensitive accounts
Recommendations to others considering the product:
Integrate cli searches like splunk
IBM Qradar an awesome security product.
What do you like best about the product?
Upgraded Technology and Support. SIEM, Digital Forensics, Cloud Security Monitoring and Analysis.
What do you dislike about the product?
This is a awesome product with multiple solutions in just one product and it is a State of the Art of IBM.
What problems is the product solving and how is that benefiting you?
Issue is resolved with the help of Support Team.
Network security Engineer
What do you like best about the product?
Helps you move away from large capital expenditures to a model based on operating expenses.
What do you dislike about the product?
threat hunting comes in premium nothing else,i checked with all other alternatives but QRadar stands on the top
What problems is the product solving and how is that benefiting you?
Dashboard seems to be hard to read. And too expensive
Very good tool .
What do you like best about the product?
Very good tool for Siem . I have 2 years experience in IBM qradar .
What do you dislike about the product?
Reports: If you want to design the custom report for you customer or management. It's gonna be difficult for you because Qradar has very limited features.
What problems is the product solving and how is that benefiting you?
Qradar was helping with In depth analysis of alerts, raw log, identify the suspicious traffic, create custom use cases.
Recommendations to others considering the product:
There are a number of SIEMs on the market today but not all are created equal, QRadar stands the top for ease of use
IBM Qradar in handy and user friendly
What do you like best about the product?
the most helpful about Qradar is its graphical user interface.
What do you dislike about the product?
well i dont think there something to dislike about it.
What problems is the product solving and how is that benefiting you?
Currently I have integrated Qradar with AV solution and its giving me quite a clear picture for what's happening within the user's systems.
dashboard is a valuable feature.
What do you like best about the product?
It's also scalable yes. You can adjust the number of devices it communicates with so there is no problem with scalability.
What do you dislike about the product?
The first area for improvement is the cost. It's a little bit too expensive for us.
Also, initially it was difficult to understand or to grasp, but once you get the hang of it is easier to understand and to analyze.
Also, initially it was difficult to understand or to grasp, but once you get the hang of it is easier to understand and to analyze.
What problems is the product solving and how is that benefiting you?
It's straightforward. We just had to connect it to our servers, to our security solutions, and that was it. Everything was already communicating
Recommendations to others considering the product:
would rate QRadar at eight out of ten. It's not perfect and the big issues would be the price and it that it takes some time to understand it. But so far, it's one of the best solutions out there.
It is very powerful SIEM solution. Easy to use. Easy to add log sources and analysis offenses.
What do you like best about the product?
A good solution to collect event and investigate incidents and attacks.
What do you dislike about the product?
Nothing. We like this tool. And recommend to other to use it
What problems is the product solving and how is that benefiting you?
Monitoring all logs from one console.
showing 311 - 320