Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

IBM Security QRadar SIEM v7.4.3 (BYOL)

IBM Security | IBM Security QRadar SIEM v7.4.3 (BYOL)

Linux/Unix, Red Hat Enterprise Linux RHEL-7.7 - 64-bit Amazon Machine Image (AMI)

Reviews from AWS Marketplace

0 AWS reviews
  • 5 star
    0
  • 4 star
    0
  • 3 star
    0
  • 2 star
    0
  • 1 star
    0

External reviews

339 reviews
from G2

External reviews are not included in the AWS star rating for the product.


    Security and Investigations

IBM QRadar seems to be it.IBM QRadar seems to be it.IBM QRadar seems to be it.

  • March 31, 2020
  • Review provided by G2

What do you like best about the product?
I like how it integrates TI with SIEM Solution, so it will make it as a single dashboard.

The visualization looks great, the automation seems great.IBM QRadar seems to be it.IBM QRadar seems to be it.IBM QRadar seems to be it.IBM QRadar seems to be it.IBM QRadar seems to be it.
What do you dislike about the product?
It needs more information for the integration part, Splunk provides it with their apps, for example if you want to integrate splunk with any solution such as Cisco ISE, there's a document for it.
So.. documentation.IBM QRadar seems to be it.IBM QRadar seems to be it.IBM QRadar seems to be it.IBM QRadar seems to be it.IBM QRadar seems to be it.IBM QRadar seems to be it.
What problems is the product solving and how is that benefiting you?
I'm a person who likes to read a comprehensive document.IBM QRadar seems to be it.IBM QRadar seems to be it.IBM QRadar seems to be it.
As I work as a TI person and in SOC team, adding them both in a single solution made it great for me.
Recommendations to others considering the product:
Look for the documents and how it is integrated with your other existing solution first.
Then contact IBM for further consulting as it will definitely help you in that part.
IBM QRadar seems to be it.
IBM QRadar seems to be it.
IBM QRadar seems to be it.IBM QRadar seems to be it.
IBM QRadar seems to be it.
IBM QRadar seems to be it.


    Financial Services

A good product at optimum cost

  • March 31, 2020
  • Review verified by G2

What do you like best about the product?
Ease of use to navigate. Correlation engine is good.
What do you dislike about the product?
Rule creating functionality is limited. You can only create rules as per specified template of QRadar. For you to create rule by yourself by writing some query you have to learn AQL.

If I have to learn AQL what is the point of QRadar rule template then. Why not allow rule creating using AQL only.
What problems is the product solving and how is that benefiting you?
Problems are mainly w.r.t organisation compliance.

We have all the logs at a single place and thus helps in effective organization monitoring.
Recommendations to others considering the product:
It is a good product but considering changing times and cost involved you should consider a product which can house a datalake or data warehouse. It caters to a lot of your requirements. It can handle 2k EPS as well as 1 Lakh EPS.


    Business Supplies and Equipment

IBM QRADAR

  • March 29, 2020
  • Review provided by G2

What do you like best about the product?
QRADAR provides excellent display of logs which is convenient for user to understand.
What do you dislike about the product?
IBM QRADAR certification is expensive for young professionals., there should be price cutting in it.
What problems is the product solving and how is that benefiting you?
I can save my infrastructure from outside cyber threats.


    Ledan B.

One of the best SIEM systems I worked with

  • March 29, 2020
  • Review verified by G2

What do you like best about the product?
The GUI is nice and easy to understand..
What do you dislike about the product?
The complexity of creating new rules could sometimes be frustrating.
What problems is the product solving and how is that benefiting you?
We use us as a monitoring system and security events alerting system and vulnerability scanner.
Recommendations to others considering the product:
You will need lots of external service provider hours to work and manage the Qradar SIEM.


    Human Resources

Easy integrations and we'll supported documents

  • March 28, 2020
  • Review provided by G2

What do you like best about the product?
Supported documents, parsing and default rule correlation. Easy query based searching and convenient UI based structure helps to quickly investigate or go through logs.
What do you dislike about the product?
Vendor support was not so good however can be managable with available documents
What problems is the product solving and how is that benefiting you?
Support at the required time was not provided. Centralized DSM structure and default event ID were useful and helped in easy import and export during custom DSM creation
Recommendations to others considering the product:
Easy Administration and parsing. Only one thing found negative is timely support from Vendor, rest all looks good.


    Nageshwar Rao P.

QRadar is a great SIEM solution

  • March 28, 2020
  • Review provided by G2

What do you like best about the product?
-Vulnerability Assessment
-Viewing information about historical correlation runs, Historical correlation
What do you dislike about the product?
API Integrations with some products and unsupported for SE linux
What problems is the product solving and how is that benefiting you?
Event Alerts, Analyzing the data and resolving the issue in the network. Easy as just plug and play, Integration with Vulnerability Manager and Risk Manager.
Recommendations to others considering the product:
I strongly recommended it. Because it fulfills our requirements. This is not a one of SIEM, this SIEM solution is perfect for collecting all logs from devices and endpoints and it maximizes visibility on the network, removes gaps/lapses and lack of monitoring.


    Kuber R.

A one stop solution for all your SIEM needs

  • March 28, 2020
  • Review provided by G2

What do you like best about the product?
Offenses, Out of the box support for so many devices, Custom Rules, Fast searches, Apps
What do you dislike about the product?
User Interface, it could definitely be better.
What problems is the product solving and how is that benefiting you?
Improving the security posture and monitoring of all kind of anomalies and suspicious activity inside my environment.


    Hospital & Health Care

Product is oriented to enterprise only in my oppinun.

  • March 27, 2020
  • Review provided by G2

What do you like best about the product?
It is really good product i like the way new functionalities can be added.
What do you dislike about the product?
Hard to manage,EPS license, UBA is not good.
What problems is the product solving and how is that benefiting you?
Pure SOC tasks. Monitoring security events. It is doing it's job as expected.


    Hariharann R.

Good and user friendly

  • March 26, 2020
  • Review provided by G2

What do you like best about the product?
First of all, this tool has documentation for everything even for writing regex. Ibm security learning academy helps us with the video tutorials. Sample use cases. Ibm support is there to help us if we face any issue. Overall it is very easy and user friendly to use.
What do you dislike about the product?
Some of the dsm are not there. For that we have to raise RFE and it will take months to develop in their end. But as from customer requirement, we need to ask permission regarding this.
What problems is the product solving and how is that benefiting you?
So far it is nice. While upgrading qradar version we have faced some issues and contacted ibm support. They have resolved the issue within minutes.
Recommendations to others considering the product:
Kindly use qradar for better understanding of the logs and integration of log sources is simple.


    Manav C.

IBM qradar

  • March 26, 2020
  • Review provided by G2

What do you like best about the product?
Usability of the product is quite good. Easy correlation and integration. Great features for automation
What do you dislike about the product?
User interface can get more friendly. I haven't used much complex features yet
What problems is the product solving and how is that benefiting you?
Security logging and aggregation, user account managements
Recommendations to others considering the product:
Yes sure it is great product, but splunk is also in competetion