Reviews from AWS Marketplace
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
External reviews are not included in the AWS star rating for the product.
QRadar's Strengths: Impact of Intuitive Interface and Easy Integration
What do you like best about the product?
One of Qradar's strenghts is certainly the intuitive user interface, which can help less experienced users move more easily within SIEM pages. One other good thing is the scalability and easy integration with most of the products on the market, which is critical for correlating events from different log source types.
What do you dislike about the product?
The main problem encountered in 5 years of product is the the technical support received from IBM in case of major problems. Working in cyber security, I believe that response times are a fundamental point, in a world where even a few minutes can make the difference
What problems is the product solving and how is that benefiting you?
Working in a Cyber Security Operating Center with IBM QRadar Siem i can monitoring a lot of different types of host oncustomer's infrastrcuture.
- Leave a Comment |
- Mark review as helpful
QRadar- an ideal SIEM solution
What do you like best about the product?
The features like advanced threat detection, user friendly UI, scalability, AI powered automation etc. are good offerings from QRadar. And I like these features.
What do you dislike about the product?
I found some difficulties in the initial setup , customization limitation, delayed response time when load is high. If the organization size is small, then cost to acquire QRadar license can be high which makes it inaccesible.
What problems is the product solving and how is that benefiting you?
IBM Security QRadar SIEM is solving log management, risk management, incident response, threat detection etc. And prevention is better than cure. It is good to remain alerted before threat agent could do any harm.
IBM Qradar review
What do you like best about the product?
It helps into deep packet inspection to identify threat as well correlate the data for analysis and threat hunting.
What do you dislike about the product?
Cannot handle large data sets requires and ELK for data injections, memory intensive which increases the chances of instability, the latest version doesn't have a gpt kind of functions which helps adminstrator run simple query to get output as not every one can learn the query language
What problems is the product solving and how is that benefiting you?
Qradar help provide a good siem function which strengthen our society team in deep packet analysis to identify threats and help mitigate via incident response.
Good SIEM tool for SOC operations
What do you like best about the product?
Easy to user user interface, good addons of Threat intel and other capabilities. Easy integration of log sources and other resources
What do you dislike about the product?
For large organisations pricing is not good andit sometimes consumes too much resources
What problems is the product solving and how is that benefiting you?
It has helped us with SOC operations for larger customer organization with its easy to use features
Very expensive for what little it offers
What do you like best about the product?
Integration with QRADAR and some IBM tools
What do you dislike about the product?
We have some bugs due to lack of integrations with Trend Micro solutions. In my opinion, the U.B.A tool is still not 100% complete.
What problems is the product solving and how is that benefiting you?
Enrich events
Great software for incident detection and response
What do you like best about the product?
The facility operation and the variety of informations
What do you dislike about the product?
Take some time to get learned how to use
What problems is the product solving and how is that benefiting you?
Enhanced Threat Detection and Response: Improved ability to detect and respond to threats quickly, reducing the potential impact of security incidents.
Improved Compliance: Simplified compliance reporting and audit processes, ensuring adherence to regulatory requirements.
Improved Compliance: Simplified compliance reporting and audit processes, ensuring adherence to regulatory requirements.
Analise Soar Qradar
What do you like best about the product?
facilidade de uso e iterface facil e facil implementação
What do you dislike about the product?
parece um pouco antigo o layout em comparação com outros
What problems is the product solving and how is that benefiting you?
estamos automatizando os alertas e demorando menos tempo na atuação, com isso nossa resposta a incidente ficam mais rapidas e precisas
Intuitive after prolonged use
What do you like best about the product?
It has several options and the API ends up being very interesting to use for those who understand the subject.
It ends up being easy to implement using the documentation presented.
It ends up being easy to implement using the documentation presented.
What do you dislike about the product?
Several tabs are opened when viewing an event, something that was supposed to be simple ends up getting in the way.
What problems is the product solving and how is that benefiting you?
Making the environment we use safe
Siem since the implementation and exploitation of the application
What do you like best about the product?
easy deployment and integration with your collectors
What do you dislike about the product?
When integrating equipment that is not natively registered, parcing is cumbersome.
What problems is the product solving and how is that benefiting you?
Critical equipment alerts and active monitoring, benefiting possible attacks or vulnerabilities to the monitored systems
IBM Security QRadar SOAR
What do you like best about the product?
Seamless integration with security and ticketing tools, makes routine work easy
Very flexible customization options
Very flexible customization options
What do you dislike about the product?
Sometimes, workflows end up in errors and have to restart the workflows
Also experiences lagging/slowness sometimes
Also experiences lagging/slowness sometimes
What problems is the product solving and how is that benefiting you?
QRadar SOAR is helping us deal with daily routine work of raising incidents based on SIEM tool alerts.
With SOAR workflows, it has become very easy to gather required data and provide this data in very structured format to our clients via tickets, all automated to be simple workflows
With SOAR workflows, it has become very easy to gather required data and provide this data in very structured format to our clients via tickets, all automated to be simple workflows
showing 1 - 10