Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

IBM Security QRadar SIEM v7.4.3 (BYOL)

IBM Security | IBM Security QRadar SIEM v7.4.3 (BYOL)

Linux/Unix, Red Hat Enterprise Linux RHEL-7.7 - 64-bit Amazon Machine Image (AMI)

Reviews from AWS Marketplace

0 AWS reviews
  • 5 star
    0
  • 4 star
    0
  • 3 star
    0
  • 2 star
    0
  • 1 star
    0

External reviews

342 reviews
from G2

External reviews are not included in the AWS star rating for the product.


    Security and Investigations

Best SIEM for our network needs!

  • August 24, 2023
  • Review provided by G2

What do you like best about the product?
IBM Security QRadar SIEM is very easy to configure. When this product was first demonstrated to us, we easily understood how it works and how it can help us in our network. All events and incidents are easy to analyze because of this tool.
What do you dislike about the product?
Right now, we are still trying to enjoy this product and we haven't found anything to dislike yet. Just make sure to properly fine tune this SIEM and make sure all devices that forward logs have sufficient value.
What problems is the product solving and how is that benefiting you?
With IBM Security QRadar SIEM, we can easily identify events and findings in our network. We can easily detect if there are threats and because of this, we can mitigate all or most of them in a short period of time.


    Rajat s.

Qradar review

  • August 24, 2023
  • Review provided by G2

What do you like best about the product?
Its support all the log source type and have multi tenant function,it support nearly 450 type device support module ,support cloud infrastructure logs ,easily integrate most of log sources without any agent,provide IBM exchange to increase the functionality of SIEM.
What do you dislike about the product?
Its costly comparing to other SIEM tool.
Need some proper videos for integrating some of the log sources .
Need license for some of the additional component that will increase some additional cost.
What problems is the product solving and how is that benefiting you?
It helps us see all the logsources in a single console.It has the functionality to handle multiple clients at the same time by creating different domains.IT supports nearly all kind of log sources.it has functionality to increase the license as per our requirements. It supports threat intel platforms that helps us to update according the environment.


    Madan K.

Review of IBM QRadar SIEM

  • August 24, 2023
  • Review provided by G2

What do you like best about the product?
Do you like best about ibm security QRadar SIEM is central log management is very effective, but the assimilation of the data and ability to make the data actionable is somewhat lacking as Alerting and actual monitoring does not have all of the feature and customization required to be an actual SIEM.
What do you dislike about the product?
OEM support is really poor, there is no default parser for the Oracle 19C which got released in 2021. No proper SLA is being followed for support cases raised.also it has some issues with historical investigation.
What problems is the product solving and how is that benefiting you?
It is follow the proactive approach with provide to find threat before they get severe and remove by help of analysis of the offenses. That will provide deep visibility on the log and flow to get what happening in infrastructure.


    Muhammad Ashar A.

QRadar is easy to use.

  • August 22, 2023
  • Review provided by G2

What do you like best about the product?
Integration of Log Sources is very simple as compare to other SIEM.
What do you dislike about the product?
Reporting features of QRadar is not very good as compare to other SIEM solution. Other SIEM solution providing very good formats for reporting.
What problems is the product solving and how is that benefiting you?
Analyzing the network behaviour by anaylizng the payloads. Identify web attacks, malicious IPs, etc


    Syed Saud u.

Product is largely distributed and very flexible

  • August 22, 2023
  • Review provided by G2

What do you like best about the product?
customization and network visualization are exceptional, uses strong analytical techniques like user behaviour and machine learning analytics for log analysis..
What do you dislike about the product?
Technological enhancements can be done like extending APIs for detection component management and log collection from S3 buckets or any software installation, Data source or log source configuration can also be enhanced via API support.
What problems is the product solving and how is that benefiting you?
Network visualization and network level troubleshoot in verifying interface level configurations helps in forensic with the past logs help in retrospective log analysis.


    taha j.

IBM Security QRadar SIEM

  • August 15, 2023
  • Review provided by G2

What do you like best about the product?
IBM Security QRadar SIEM is very helped full to searching the incident and its dashboard has shown al the event and incident our all team like the IBM Security QRadar SIEM.
What do you dislike about the product?
nothing is dislike in IBM Security QRadar SIEM our team always like the IBM Security QRadar SIEM
What problems is the product solving and how is that benefiting you?
to give the free training to all bcz if people train in their will be more jobs is created .


    Junaid S.

Qradar review

  • August 14, 2023
  • Review verified by G2

What do you like best about the product?
I have been using qradar since February 2022, great tool to use and the thing I like the most about qradar is coalescing and group by functionality.
What do you dislike about the product?
The interface is quite messy need to improve dashboards as well.
What problems is the product solving and how is that benefiting you?
I think coalescing function helps me alot in incident response.


    MAHESH D.

System/Security Engineer

  • August 11, 2023
  • Review provided by G2

What do you like best about the product?
Providing Advanced threat intelligence and Analytics capabilities;
Log Management and Event Collection.
Integration Capability.
What do you dislike about the product?
Its Complexity
Customixation difficulty
Limited feature
What problems is the product solving and how is that benefiting you?
Providing Advanced threat intelligence and Analytics capabilities;
Log Management and Event Collection.
Integration Capability.
Realtime Event correlation
Collecting and analyzing necessary security event data.
Investigation Easiness.


    SHUBHAM KUMAR J.

Qradar SIEM evaluation

  • August 08, 2023
  • Review provided by G2

What do you like best about the product?
Qradar is more simpler and user friendly then in comparison to RSA netwitness or any other tool and in this creation of use cases or device integration is also easy
What do you dislike about the product?
Although there is nothing to dislike over here , because all integration of devices or use cases creation documents are easily available on internet so i can say there nothing to dislike over here.
What problems is the product solving and how is that benefiting you?
This SIEM is helping our client by analyzing the raw and meta deta and creating incidents against it and also helps in deep dive of malware analysis . Qradar graphical interpretation helps our L1 analyst to detect logs variation


    Phani K.

IBM QRadar: A Powerful and User-Friendly SIEM Solution

  • July 24, 2023
  • Review provided by G2

What do you like best about the product?
The things I like about IBM QRadar was it has Powerful threat detection and response capabilities and User-friendly interface and QRadar is a scalable solution that it can be deployed on-premises or in the cloud, and it can be scaled up or down as needed.The things that I find most helpful was the ability to correlate data from multiple sources, The ability to automate threat response & The ability to integrate with other security solutions
What do you dislike about the product?
Things that I find least helpful about IBM Security QRadar SIEM was The lack of a built-in threat intelligence feed, The lack of a centralized dashboard this can make it difficult to get a complete view of all security events,The lack of integration with other security solutions this can make it difficult to get a single view of the security posture of an organizat
What problems is the product solving and how is that benefiting you?
QRadar SIEM help organization solve a variety of security problems, including Incident detection and response, QRadar help organization detect and respond to security incidents more quickly and effectively. By correlating data from multiple sources, QRadar can provide a complete picture of an incident, which can help analysts to identify the root cause and take action to mitigate the damage, QRadar can help organizations to assess and manage their security risk. By identifying and tracking threats, QRadar can help organizations to take steps to mitigate those threats and reduce their overall risk exposure