IBM Security QRadar SIEM v7.5.0UP4 (BYOL)
IBM Security | IBM Security QRadar SIEM v7.5.0UP4 (BYOL)Linux/Unix, Red Hat Enterprise Linux 7.9 - 64-bit Amazon Machine Image (AMI)
Reviews from AWS Marketplace
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
External reviews are not included in the AWS star rating for the product.
SIEM IBM QRadar
What do you like best about the product?
The most valuable about Qradr is a single pan or single window into your network. It will always capture the full packet. Less overhead like query writing. It will narrow down the search with full packet normalization, Best in behavior analysis and less hardware utilization to run effectively
Small to medium enterprises and best for large organization
Small to medium enterprises and best for large organization
What do you dislike about the product?
The tool is excellent, nothing much about to dislike the product. but only one i would say High cost for small organization
What problems is the product solving and how is that benefiting you?
Provide a centralized paltform to Monitoring and analyze the logs and discard the false positives. Monitor the risk and scan the vulnerability on scheduled dates.
- Leave a Comment |
- Mark review as helpful
Collectively admiring
What do you like best about the product?
The user interface is simpler and has enamourous of plugin.
The threat intelligence is fantastic.
As a beginners in monitoring area i feel very easy and seamless.
The threat intelligence is fantastic.
As a beginners in monitoring area i feel very easy and seamless.
What do you dislike about the product?
As a beginner i dont feel any hurdle while working with such best UI.
By the process if i face any difficulties i will definitely go ahead and put a feedback and get it resolved.
By the process if i face any difficulties i will definitely go ahead and put a feedback and get it resolved.
What problems is the product solving and how is that benefiting you?
The intergrated features which is available in IMB
QRadar called ibm xforce exchange. Which helps a analyst to furthermore analyse the reputation and the detail activity of a particular ip.
QRadar called ibm xforce exchange. Which helps a analyst to furthermore analyse the reputation and the detail activity of a particular ip.
Alert handling tool - SIEM
What do you like best about the product?
1) User friendly
2) Has advanced treat detection capabilities
3) CRE works effectively and helps to get logs in well classified form
4) Makes workflow easy and compatible
2) Has advanced treat detection capabilities
3) CRE works effectively and helps to get logs in well classified form
4) Makes workflow easy and compatible
What do you dislike about the product?
When working on huge ammount of data or when we check query for long time period then it lags a bit and sometimes stop responding.
What problems is the product solving and how is that benefiting you?
It is helping to keep environment clean by alerting each and every event for every particular time across the organisation.
User friendly SIEM tool
What do you like best about the product?
UI is compatible and friendly, easy to understand and easy to use, real time monitoring made easy to track every Event or in a particular time frame.
What do you dislike about the product?
Sometime it takes more time to configure the system to properly interpret and normalize different type of data collected from multiple resources
What problems is the product solving and how is that benefiting you?
It is parsing data for analysis in such a way that is easy to understand and analyse to classify the alerts.
Is it really protecting our organization?
What do you like best about the product?
In addition to its advanced threat detection capabilities, IBM Security QRadar SIEM offers a range of features that make it a popular choice among organizations. One notable aspect is its centralized log management functionality.
What do you dislike about the product?
Complexity of Implementation as we have found the initial implementation and setup of QRadar SIEM to be complex and time consuming process. The platform's rich feature set and extensive configuration options may require experienced personnel or additional training to fully utilize its capabilities
What problems is the product solving and how is that benefiting you?
One of the significant challenges in is managing and analyzing security event logs from various sources. QRadar SIEM provides a centralized platform for collecting, storing, and analyzing logs from network devices, servers, applications, and endpoints and There it is benefiting us
Review for SIEM tool IBM Qradar
What do you like best about the product?
It's use full very friendly and easiet tool use for person or Cyber Security Analyst it's desig to Event and Logs analysis in one certerlized platform
What do you dislike about the product?
Facing for someone trouble shoot during the deployment or generate the Regex
What problems is the product solving and how is that benefiting you?
IBM Qradar to solve in different asset logs to generate in different platform to cover in a single platform
Very user friendly tool interface with Ease in Administration
What do you like best about the product?
Seamless interface with Log sources.
Out of the box support to many log sources.
Good dashboard creation tools.
Out of the box support to many log sources.
Good dashboard creation tools.
What do you dislike about the product?
Search queries should be made more simpler.
Syntax needs to be available on demand
Syntax needs to be available on demand
What problems is the product solving and how is that benefiting you?
High volume data ingestion. Mitigating the hassle of managing logs
Best SIEM
What do you like best about the product?
IBM QRadar is very easy to use, we will easily manage our dashboard according to us. Easy to create rules and building blocks.
What do you dislike about the product?
DSM update alert comes frequently and its not going away after the TAC help.
What problems is the product solving and how is that benefiting you?
IBM QRadar helps us in monitoring the real-time alerts; from here we will easily monitor our whole infra, create rules according to our requirements.
Deep dive into what's happening in your network!
What do you like best about the product?
Very easy to dive deep into a situation to view how incidents are linked.
What do you dislike about the product?
Can be overwhelming if you have no training. Realy requires training or you will get lost.
What problems is the product solving and how is that benefiting you?
The best thing I like about QRadar is that it can automatically launch other tools when an incident happens
Rapid Threat Hunting and SIEM Solution
What do you like best about the product?
IBM QRadar is the fastest platform to analyze and detect incidents in real-time.
What do you dislike about the product?
Long deployment time and not available for debian-based operating systems.
What problems is the product solving and how is that benefiting you?
I configure agent and send system logs, then it starts to work, detects all types of incidents.
showing 41 - 50