Reviews from AWS Marketplace
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
External reviews are not included in the AWS star rating for the product.
It's very good I love this tool
What do you like best about the product?
Vanurability logs siem clod platform also
What do you dislike about the product?
Just only the heavy setup nothing else .
What problems is the product solving and how is that benefiting you?
Logs siem odc information security
- Leave a Comment |
- Mark review as helpful
About the Qradar Productivity and features.
What do you like best about the product?
The benefits are flexible and scalable architecture, efficient reporting, The data consolidation and search capabilities, Integrate with solutions like IBM BigFix, MaaS360.
What do you dislike about the product?
Need to more focus on false positive cases, for that develop with more features and detection capabilities.
What problems is the product solving and how is that benefiting you?
So flexible, scalability architecture, Efficine reporting worked with other tools but for QRadar will having many solutions,l. if you comparing with other tools will get actually scenario of QRadar tool.
Recommendations to others considering the product:
Need to focus on false positive cases.
Best SIEM product found so far.
What do you like best about the product?
Its enablement and customizations. And the idea of extensions make it more valuable.
What do you dislike about the product?
There are less search customisations in offenses tab.
What problems is the product solving and how is that benefiting you?
It pretty much covers everything due to its versatility.
I have a 4 years with Perform tuning of the Qradar SIEM , and integration with various systems
What do you like best about the product?
1. Easy to integration for most devices
2. UBA App and other APP
3. Offences tab easy to tracking logs and events, log activity tab
4.Easy to learn
5.Network hierarchy
2. UBA App and other APP
3. Offences tab easy to tracking logs and events, log activity tab
4.Easy to learn
5.Network hierarchy
What do you dislike about the product?
If they have integrated some applications with QRadar and need support for this application, you will not find full support, as the application works as a third party,
For example, if you have a site error on QRadar and have opened a ticket with the support they reported, you should open a ticket with MaxMind, because the Maxmind database is a third-party tool. IBM doesn't own it, QRadar just uses it There is nothing IBM can do about it.
Or if you encounter any problem with the CISCO FMC app, you should open a ticket with CISCO and I think they should have full support for any merger with any vendor and they have the ability to deal with the third-party linked in the Qardar system in order not to lose the advantage of this added application
I hate filter search as there no option to edit your search, you must delete the filter search and new filter.
Offenses Dashboard has sometimes error on details you need to move deeply analysis to check the MAC address as an example.
For example, if you have a site error on QRadar and have opened a ticket with the support they reported, you should open a ticket with MaxMind, because the Maxmind database is a third-party tool. IBM doesn't own it, QRadar just uses it There is nothing IBM can do about it.
Or if you encounter any problem with the CISCO FMC app, you should open a ticket with CISCO and I think they should have full support for any merger with any vendor and they have the ability to deal with the third-party linked in the Qardar system in order not to lose the advantage of this added application
I hate filter search as there no option to edit your search, you must delete the filter search and new filter.
Offenses Dashboard has sometimes error on details you need to move deeply analysis to check the MAC address as an example.
What problems is the product solving and how is that benefiting you?
You can customize rules, use cases
Real-time analysis
Real-time analysis
Recommendations to others considering the product:
I think QRadar is the best choice for you, but keep adding logs and tune it always
Very effective and user friendly product for financial institution
What do you like best about the product?
Log Monitoring, Analysing and investigation
What do you dislike about the product?
Nothing, everything is user friendly and easy to understand
What problems is the product solving and how is that benefiting you?
Analysis and Investigation and resolution of the issues raised by clients
Because it is a very easy approach.
What do you like best about the product?
The way the dashboard is arranged. Which inturn makes the user comfortable.
What do you dislike about the product?
Sometimes the troubleshooting part feels a bit difficult.
What problems is the product solving and how is that benefiting you?
We basically solve investigation part.
Recommendations to others considering the product:
Qradar is the best SIEM tool for companies who wants to start their journey in CyberSecurity Domain.
IBM Qradar is a good tool for log analysis , it is fast and user friendly.
What do you like best about the product?
In IBM Qradar almost all customization can be done from GUI only, We can create custom parser/user cases/co relation rule from gui which is very friendly.
What do you dislike about the product?
IBM Qradar crashes because of heavy search which I will keep as a negative point as other SIEM tool are competing in this area.
What problems is the product solving and how is that benefiting you?
I solved problems like getting analytics/report about top malicious domain visit. co relation between multiple device logs for better cyber protection. Created custom parser easily in GUI for important raw logs.
IBM QRadar review of product.
What do you like best about the product?
QRadar deployment and log integration are easy. it can consolidate data from anywhere. Monitor traffic & analyze user behavior. capability it detect threats & vulnerabilities.
What do you dislike about the product?
IBM Qradar licensing model are complicated compare to other SIEM
What problems is the product solving and how is that benefiting you?
IT provide solving the minimize the risk of cyber Security breach
Recommendations to others considering the product:
Licensing need to make more easy.
The user interface is very good when compared to others and
What do you like best about the product?
The dashboards are the best as we can have full control on what we want and what not
What do you dislike about the product?
Once we gets comfortable with all the features it's hard to do the work manually
What problems is the product solving and how is that benefiting you?
Full network and interface monitaring
Threat and incident alerts
Escalations and remainders
24/7 monitoring on overall security
Latest patches and continuous support forum
Threat and incident alerts
Escalations and remainders
24/7 monitoring on overall security
Latest patches and continuous support forum
Recommendations to others considering the product:
It's overall a great security management tool and the security learning academy has all the course content for free to learn as well as great support forums online
wonderful experience efficient and scale-able SIEM solution but its bi costly
What do you like best about the product?
IBM Qradar UBA module its very helpful to detect the unknown attacks
What do you dislike about the product?
should be more user friendly and cost should be less so that small org can able to use it
What problems is the product solving and how is that benefiting you?
Log aggregation, Alert generation complete security posture of our organization
Recommendations to others considering the product:
N/A
showing 331 - 340