IBM Security QRadar SIEM v7.4.3 (BYOL)
IBM Security | IBM Security QRadar SIEM v7.4.3 (BYOL)Linux/Unix, Red Hat Enterprise Linux RHEL-7.7 - 64-bit Amazon Machine Image (AMI)
Reviews from AWS Marketplace
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
External reviews are not included in the AWS star rating for the product.
Advanced SIEM Tool IBM QRadar
What do you like best about the product?
GUI is very user friendly... Tabs provided to nevigate is very easy to work with. Easy to integrate multiple network devices. Creating custom rules are user friendly. Putting filter for perfirming search is also very easy.
What do you dislike about the product?
Not much i came through till now... QRadar is best SIEM tool in the market currently.
What problems is the product solving and how is that benefiting you?
I am working on QRadar for analysing real time attack in client environment. Also creating custom dashboard to monitor unusual traffic. Also creating manual and automatic reports to be shared with client. All in one tool.
- Leave a Comment |
- Mark review as helpful
Very wide range of features, but it is complicated
What do you like best about the product?
Very wide range of features, alot of inigration with other IBM security products, truely it is a do covery the needs in correlation, very fat system, specially in logs retrieval
What do you dislike about the product?
Very complicated product, hard to Manage, bad support, to much issues, requires alot of resources
What problems is the product solving and how is that benefiting you?
Is is cover siem solution and provide good correlation rules in addyion to network configuration analysis
Recommendations to others considering the product:
Make sure to get professional services from IBM directly, or at least make sure local vendor have enough experience to implement the solution
Make aure you need all the features in the system, if not go with other solution which may cover your requirements and have less issue and easier in support and implementation
Make aure you need all the features in the system, if not go with other solution which may cover your requirements and have less issue and easier in support and implementation
IBM Security QRadar a SIEM tool
What do you like best about the product?
This SIEM tool is now available in on premises and cloud environment also, which make us very confident during analysis the log of every configured devices ,servers, workstations and app which are available on own network or cloud based.
What do you dislike about the product?
Tool should be available live chat bot to support to their user if they have any operational or logical queries during the operational activities.Price is little high it's should be simplified.
What problems is the product solving and how is that benefiting you?
Live event analysis like trigger the logs,operational events filtering the data events to high end analysis . correlates of data events with particularly applications and systems.
Recommendations to others considering the product:
Yes,I would like to recommend to the users.
One of the best SIEM software available in budget terms
What do you like best about the product?
It gives you all-around visibility of account data or customer data, whether on on-premise infrastructure or cloud infrastructure, on one page.
What do you dislike about the product?
It usually gives support issues and syncing issues when used with any third-party threat management tool.
What problems is the product solving and how is that benefiting you?
We use it for threat management and alerting.
Automation cuts down the manual effort, which consists of human errors.
Search query is always easy to understand.
Automation cuts down the manual effort, which consists of human errors.
Search query is always easy to understand.
SIEM360+
What do you like best about the product?
I like best the integration with the IBM Security SOAR Plattform. And the new way of investigation of Offenses using the IBM Security Analyst Workflow App.
What do you dislike about the product?
I dislike nothing special. The downside of QRadar is to deal with assets.
What problems is the product solving and how is that benefiting you?
I solve the problem of detecting possible IoCs in a more automated and intelligent way. That saves time and resources.
Overall good but there are some minor flaws
What do you like best about the product?
It supports many protocols in terms of logging. It has a lot of options on the configuration side. Thanks to its architecture, you don't experience any contraction problems. Making rules for SOC teams is easy. The reporting side is very flat but successful. The interface design looks a bit old, but it is good in terms of functionality. When you want to enlarge your structure, you can add new physical or virtual devices. If you're going to get your logs from a different city, it's nice to be able to set up an event collector there and transfer it over that device.
What do you dislike about the product?
We had some very serious problems. You cannot easily make improvements such as disk upgrades on devices. Wincollect can't fully manage its agents, it gets in the way. While updating, you may cause log interruption for a short time.
What problems is the product solving and how is that benefiting you?
SOC and logging
best technically well known SIEM solution
What do you like best about the product?
A lot of Technical Used to work on and have lots of know how on
What do you dislike about the product?
The development of the solution is not that fats
What problems is the product solving and how is that benefiting you?
Most of the customer didn't implement the solutions correctly
Recommendations to others considering the product:
the best well known SIEM solution with lots of support from IBM
QRADAR Review based on my experienced as a Distributor
What do you like best about the product?
Our Clients have excellent satisfaction with their Qrdar SEIM compared to the last security tools they had.
What do you dislike about the product?
I think the price compared to the other SIEM
What problems is the product solving and how is that benefiting you?
false negatives and advance threat management
Threat Hunting on QRadar
What do you like best about the product?
Log Activity tab and custom event properties
What do you dislike about the product?
Lack of dashboard functionality unlike Kibana
What problems is the product solving and how is that benefiting you?
We are operating SOC on Qrada on large scale and also provide assistant in threat Hunting
Recommendations to others considering the product:
Good product to manage events and SOC.
Very handy and easy to use.
Multiple features addressing users requirements.
Good Community support
Very handy and easy to use.
Multiple features addressing users requirements.
Good Community support
Investigation made easy
What do you like best about the product?
Logging and Parsing of data with easy search capabilities.
What do you dislike about the product?
Creating use case with AQL is difficult to learn.
What problems is the product solving and how is that benefiting you?
SOC Services.
Recommendations to others considering the product:
Use UEBA that is very helpful.
showing 161 - 170