IBM Security QRadar SIEM v7.4.3 (BYOL)
IBM Security | IBM Security QRadar SIEM v7.4.3 (BYOL)Linux/Unix, Red Hat Enterprise Linux RHEL-7.7 - 64-bit Amazon Machine Image (AMI)
Reviews from AWS Marketplace
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
![](https://d32gc0xr2ho6pa.cloudfront.net/img/reviews/G2.png)
External reviews are not included in the AWS star rating for the product.
Qradar Easy to use
What do you like best about the product?
Easy to use, very helpful for Security Monitoring and Investigations with single dashboard including many plugins dashboard, such as fortigate dashboard plugins.
What do you dislike about the product?
On latest version, everytime to view log source list Qradar pop up to open mew tabs, i hope its can stay on single tab back again like oldest version. Soon SOAR is can be bundle on Qradar.
What problems is the product solving and how is that benefiting you?
Ticket respond from support is always satisfied, because every cases can be solved by remote session, this is amazing since another SIEM tools need subscription to solve problem with their Proffesional Support team.
Recommendations to others considering the product:
Stay on single dashboard, no need to open new tab when click something.
- Leave a Comment |
- Mark review as helpful
For OWASP security standard it is excellent tool to use of SIEM
What do you like best about the product?
By using it's to handling best security practice and it's event management. Also, incidence handling by to OWASP standards in our application is highly provided by us.
What do you dislike about the product?
Overall need to upgrade it every month to newly genrated events that may use daily in our applications and infrastructure to possible new genrated to get dffrent type of event handling.
What problems is the product solving and how is that benefiting you?
For better security and business contueneous improvement we have best practicess following by using it. As compare to other SIEM tool it is fast forword to grow up.
SIEM IBM QRadar Review
What do you like best about the product?
QRadar Provides user friendly interface with easy searching method and returning the search results in both logs & Graphical view for better anlaysis. It provides distributed and standalone architecture and easy to deploy in any scale of orgnization. Also, it supports large set of device source types.
What do you dislike about the product?
My observation is QRadar is bit weak in Parsing many of the supported devices running on latest version which could cause issues in correlation of events and reporting.
What problems is the product solving and how is that benefiting you?
QRadar takes input from various sources like logs from devices, packets from TAPs, flows from Firewall/switches, Endpoint data from Sysmon/EDR providing complete visibility over organization network and uncovering blind spots. Can correlate both logs/flows together to drill down to the source of the incident.
Its overall a good tool for SIEM
What do you like best about the product?
Easy to use queries, efficient ways to import logs from multiple sources, in-depth analysis of the log data.
What do you dislike about the product?
It is little complicated for beginners and threat analysis could be simplified.
What problems is the product solving and how is that benefiting you?
It helps to solve the threats faced by the organisation by detecting them in real time.
Qradar review
What do you like best about the product?
I liked the most is speed and correlation engine and analytical capability.
What do you dislike about the product?
It's bit slower when we access the historical data like 1 year past or 6 month , it should be fast enough.
What problems is the product solving and how is that benefiting you?
It is great helpful for us to monitor the security incident and event across all devices in our company network.
It solved the problem of loggin into each devices to check logs.
It solved the problem of loggin into each devices to check logs.
It is swift and new features make it very obvious choise .
What do you like best about the product?
Mitre integration, faster log fetching .
What do you dislike about the product?
We can't search offense by keeping multiple domain together.
What problems is the product solving and how is that benefiting you?
In comparision to Arcsight it is faster and smooth while fetching logs for advisories.
Easy to setup and Use
What do you like best about the product?
I found IBM Security QRadar very easy to set up and use in comparison to other SIEM solutions.
What do you dislike about the product?
Log collection and analysis part seems easy but setting up custom correlation rules is hard for me. I wish there could be an easy guide on setting up correlation rules.
What problems is the product solving and how is that benefiting you?
It is helping us to analyze chunks of logs in an easily visualized way, alerting security teams to the possible weak area to mitigate security threats.
Top notch protection mechanism
What do you like best about the product?
The best thing about IBM QRadar is it's monitoring dashboard. I like the way how I can see summarized threats
What do you dislike about the product?
Well, I guess there is not any missing thing in this product. However, being the giant in SIEM world they should lower the license prices
What problems is the product solving and how is that benefiting you?
With IBM Security QRadar I can monitor all my organizational security events and manage those events accordingly
Very good security solutions
What do you like best about the product?
Preloaded correlation rules and data set
What do you dislike about the product?
Granularity of making making correlation rules.
What problems is the product solving and how is that benefiting you?
Identify the security braches in network and malicious IOCs communication
Very easy to use
What do you like best about the product?
The filter features which is very easy to use and very user friendly.
What do you dislike about the product?
The market for qradar is not big and not many company use qradar
What problems is the product solving and how is that benefiting you?
They have improved the event details view and added few extra fields.
showing 81 - 90