---
title: IBM QRadar SIEM Reviews
meta_title: 'IBM QRadar SIEM Reviews 2026: Details, Pricing, & Features | G2'
meta_description: Filter 338 reviews by the users' company size, role or industry
  to find out how IBM QRadar SIEM works for a business like yours.
aggregate_rating:
  rating_value: 4.4
  review_count: 338
  scale: '5'
date_modified: '2026-08-07'
parent_category:
  name: System Security
  url: https://www.g2.com/categories/system-security
---


# IBM QRadar SIEM Reviews
**Vendor:** IBM  
**Category:** [Security Information and Event Management (SIEM) Software](https://www.g2.com/categories/security-information-and-event-management-siem)  
**Average Rating:** 4.4/5.0  
**Total Reviews:** 338
## About IBM QRadar SIEM
Outsmart threats with an end-to-end award-winning security suite; proven to prevent, endure and recover from both known &amp; unknown IT hazards faced by SoCs in the modern-day.



## IBM QRadar SIEM Pros & Cons
**What users like:**

- Users find IBM QRadar SIEM highly **user-friendly** , appreciating its ease of implementation and integration with other platforms. (23 reviews)
- Users appreciate the **seamless integration capabilities** of IBM QRadar SIEM, enhancing overall log management and analytics functionality. (19 reviews)
- Users value the **advanced threat detection and centralized log management** features of IBM QRadar SIEM for enhanced security. (18 reviews)
- Users value the **easy integrations** of IBM QRadar SIEM, simplifying collaboration with various platforms and tools. (15 reviews)
- Users find the **user-friendly interface** of IBM QRadar SIEM makes it easy for non-tech users to navigate. (15 reviews)
- Monitoring (14 reviews)
- Insights (13 reviews)
- Log Management (13 reviews)
- Threat Detection (13 reviews)
- Customer Support (10 reviews)

**What users dislike:**

- Users find the **UI improvements lacking** , with search limitations and poor report building hindering their experience. (11 reviews)
- Users find IBM QRadar SIEM to be **expensive** , especially for small or mid-size companies due to high costs. (9 reviews)
- Users note the **high costs** associated with IBM QRadar SIEM, which may burden smaller organizations significantly. (7 reviews)
- Users are frustrated by **dashboard issues** , including limited editing rights and difficulties in offense management and reporting. (7 reviews)
- Users find the **time-consuming search queries** to be frustrating and inefficient for log retrieval in QRadar SIEM. (7 reviews)
- Complexity (6 reviews)
- Limited Features (6 reviews)
- Missing Features (6 reviews)
- Poor Interface Design (6 reviews)
- Poor Reporting (6 reviews)

## IBM QRadar SIEM Reviews
  ### 1. Best SIEM for small to medium organizations

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Construction | Enterprise (> 1000 emp.)

**Reviewed Date:** July 28, 2022

**What do you like best about IBM QRadar SIEM?**

Easy to integrate with other tools, availability of extentions, simple rule creation, good customer support, large community to discuss queries, able to trigger alertsin real time

**What do you dislike about IBM QRadar SIEM?**

Tool is very bulky due to this problems occurs during upgrading, search is slow if data is High, some time refrence set cause problem

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

It is event management system, Central console to collect all events, you can build rules to trigger alerts for anomalies

  ### 2. Best SIEM product in the market. Easy to integrate new devices and other security technologies.

**Rating:** 4.0/5.0 stars

**Reviewed by:** kunal a. | SOC administrator, Enterprise (> 1000 emp.)

**Reviewed Date:** July 26, 2022

**What do you like best about IBM QRadar SIEM?**

Simple GUI and ease to configure rules, dashboards, reports and searches

**What do you dislike about IBM QRadar SIEM?**

There are issues related to the wincollect agent wherein the services stops automatically and log reception stops

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Compliance
security
visibility
Threat intelligence

  ### 3. This is a very much good product. Users can relies without worrying.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Md. Mehedy H. | Technical Account Manager, Small-Business (50 or fewer emp.)

**Reviewed Date:** July 04, 2022

**What do you like best about IBM QRadar SIEM?**

The hardware is excellent.  Performance is smooth.

**What do you dislike about IBM QRadar SIEM?**

I have nothing to mention about this. I have not found any negative with the solution.

**Recommendations to others considering IBM QRadar SIEM:**

You can reply on IBM Security QRadar.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

The possibility of losing data is close to zero. Data is safe here.

  ### 4. Its overall a good tool for SIEM

**Rating:** 4.5/5.0 stars

**Reviewed by:** Pradeep K. | Security Engineer, Small-Business (50 or fewer emp.)

**Reviewed Date:** June 23, 2022

**What do you like best about IBM QRadar SIEM?**

Easy to use queries, efficient ways to import logs from multiple  sources, in-depth analysis of the log data.

**What do you dislike about IBM QRadar SIEM?**

It is little complicated for beginners and threat analysis could be simplified.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

It helps to solve the threats faced by the organisation by detecting them in real time.

  ### 5. IBM Security QRadar

**Rating:** 5.0/5.0 stars

**Reviewed by:** Moiz H. | Information Security Internee, Enterprise (> 1000 emp.)

**Reviewed Date:** March 15, 2022

**What do you like best about IBM QRadar SIEM?**

I like this software it collects user log data from an enterprise, monitors user activity the tool is awesome easy to use on the front end and back end and the design is fantastic.

**What do you dislike about IBM QRadar SIEM?**

I dislike this software it bad supports, is very complicated, then things get stuck up at times and ultimately it leads to the cancellation of respective searches and it does not offer anything different.

**Recommendations to others considering IBM QRadar SIEM:**

I recommend to others using this software which is fast and easy to use software to exploit and maintain logs.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Exploit vulnerabilities & timely monitor suspicious activities.

  ### 6. The UI although has everything in place, but it looks a little cluttered.

**Rating:** 3.0/5.0 stars

**Reviewed by:** Deepak S. | Senior Security Analyst, Enterprise (> 1000 emp.)

**Reviewed Date:** April 30, 2022

**What do you like best about IBM QRadar SIEM?**

The ease of making correlation rules using building blocks.

**What do you dislike about IBM QRadar SIEM?**

The overall appearance of the dashboard.

**Recommendations to others considering IBM QRadar SIEM:**

The overall efficiency of the User Interface can be improved.
It's sometimes difficult to go through the Network flows.
Also, adding comments to offences can be made more user friendly.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Used it for security monitoring.
We receive offences based on the log sources and rules and it helps have an insight what's going around in the organization.

  ### 7. Efficient and overall good experience

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Research | Small-Business (50 or fewer emp.)

**Reviewed Date:** May 16, 2022

**What do you like best about IBM QRadar SIEM?**

I like the way we can integrate many systems, and keep the flow and correlation between them, able to create rules in a convienet way.

**What do you dislike about IBM QRadar SIEM?**

Slow response times, usually the requested is not being solved, and gets delayed until we reach a conclusion together with IBM team. also takes time for them to understand who should be able to work on the request, even tho details are written.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

To be honest, my enterprise uses it and its the second SIEM i've used, first was ArcSight. I can say its much more convienet to the eye.

  ### 8. Excellent

**Rating:** 4.5/5.0 stars

**Reviewed by:** Muhammad U. | Manager VAPT (Vulnerability Assessment & Penetration Testing), Enterprise (> 1000 emp.)

**Reviewed Date:** May 28, 2022

**What do you like best about IBM QRadar SIEM?**

I love the integrations of log sources easy parsers

**What do you dislike about IBM QRadar SIEM?**

Unncessary plugins and bundles. Also work on robustness on long queries

**Recommendations to others considering IBM QRadar SIEM:**

My Advice is to must do  POC IBM Qradar while evaluating different SIEM solutions

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

its basically giving us insights of intrusions catering mostly and very important insider threat i.e. TOP RISK

  ### 9. Its ease of use

**Rating:** 3.5/5.0 stars

**Reviewed by:** Mayank A. | Associate Consultant, Small-Business (50 or fewer emp.)

**Reviewed Date:** June 28, 2022

**What do you like best about IBM QRadar SIEM?**

All round security , application console

**What do you dislike about IBM QRadar SIEM?**

Nothing as such.Its jst easy for everyone

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

We are using Qradar SIEM for Monitioring and analysing security threat.Its shows much accurate results and help us in defending threats

  ### 10. It is a good tool for monitor the alert for all the security application.

**Rating:** 4.5/5.0 stars

**Reviewed by:** Ravi G. | IT Analyst, Enterprise (> 1000 emp.)

**Reviewed Date:** June 01, 2022

**What do you like best about IBM QRadar SIEM?**

It integrates with any one of the security tools abd give proper logs in the offense, which makes analysis simple.

**What do you dislike about IBM QRadar SIEM?**

Sometimes, it doesn't work fir automation of the report which is scheduled on the Application.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

IBM Security vendor is very helpful for any circumstances of the alerts.

  ### 11. Siem Qradar and I have ever best experience with with Qradar as compared to other SIEM.

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Banking | Enterprise (> 1000 emp.)

**Reviewed Date:** May 17, 2022

**What do you like best about IBM QRadar SIEM?**

Ioc based hunting and fetching massive accurate logs form various devices. User interface was simple and easy to understand for new comers. Reporting made more easy from Qradr.

**What do you dislike about IBM QRadar SIEM?**

As per current era IBM should have to update its products because from starting onwards they have not highlighted any new functionality. Some forensics features they have removed.

**Recommendations to others considering IBM QRadar SIEM:**

Strong

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Working on Alerts which triggers on daily basis. Maintain all log sources data on priority. Easy to create daily, monthly  dashboard from Qradr. Reduces some level of time to do IOC based hunting.

  ### 12. A decent SIEM solution

**Rating:** 3.5/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Mid-Market (51-1000 emp.)

**Reviewed Date:** May 30, 2022

**What do you like best about IBM QRadar SIEM?**

*we use around 1500 EPS*
The SIEM offers an impressive parse logging ability.

**What do you dislike about IBM QRadar SIEM?**

In general I think that the integrations offered by QRadar are not being kept up to date (Sometimes some integrations that I think are pretty standard just don't exist).
In addition i think that the system itself demands tons of resources and can be quite expensive in terms of infratstructure

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

it helps us monitor applications and evnironments that do not have out-of-the-box alerts such as CSP's, server logging (syslog level).

  ### 13. Qradar review

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Hospital & Health Care | Enterprise (> 1000 emp.)

**Reviewed Date:** June 22, 2022

**What do you like best about IBM QRadar SIEM?**

I liked the most is speed and correlation engine and analytical capability.

**What do you dislike about IBM QRadar SIEM?**

It's bit slower when we access the historical data like 1 year past or 6 month , it should be fast enough.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

It is great helpful for us to monitor the security incident and event across all devices in our company network.
It solved the problem of loggin into each devices to check logs.

  ### 14. QRadar SIEM Service Delivery Manager

**Rating:** 4.0/5.0 stars

**Reviewed by:** Ragunathan M. | Cyber Security Consultant, Mid-Market (51-1000 emp.)

**Reviewed Date:** July 05, 2022

**What do you like best about IBM QRadar SIEM?**

Content Management, Administration, Reporting, Quality & Incident Management

**What do you dislike about IBM QRadar SIEM?**

Threat Intelligence Feeds Clean Up, Upgradation Period

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Multi-Tenanting & Ease of Use & Dashboards

  ### 15. Good

**Rating:** 5.0/5.0 stars

**Reviewed by:** Pritam S. | Technical Support, Information Technology and Services, Small-Business (50 or fewer emp.)

**Reviewed Date:** June 06, 2022

**What do you like best about IBM QRadar SIEM?**

I liked the system of IBM. It is the best system in the world.

**What do you dislike about IBM QRadar SIEM?**

Actually I liked it so much. Qradar is the Best option i found.

**Recommendations to others considering IBM QRadar SIEM:**

Yes

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

It's good to analyst for research security threats

  ### 16. User Friendly and easy to setup

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Chemicals | Mid-Market (51-1000 emp.)

**Reviewed Date:** May 11, 2022

**What do you like best about IBM QRadar SIEM?**

GUI and the ability to drill down deep in logs for investigation, Qradar apps which provide enhanced functions and widely supported integrations to a lot of third party products.

**What do you dislike about IBM QRadar SIEM?**

The GUI works great but it looks outdated. Most modern SIEMs nowadays have better-looking interfaces which attract analysts who have to look at it most of the time.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Offence investigation, SOC monitoring, Incident Management,  Third Party integrations, SOC reporting. Qradar has a wide range of features which can be utilized in the form of different Apps.

  ### 17. One of the best SIEM Tools in the market

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Mid-Market (51-1000 emp.)

**Reviewed Date:** April 01, 2022

**What do you like best about IBM QRadar SIEM?**

Device Support Module, Correlation Engine, Offense Chaining, easy integrations with ticketing tools and most of the threat Intel platforms

**What do you dislike about IBM QRadar SIEM?**

The user interface and product support could be better

**Recommendations to others considering IBM QRadar SIEM:**

Best SIEM tools I have ever used.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Cybersecurity breach analysis, reduce the time between detection and response.

  ### 18. Security Analyst & Admin

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Security and Investigations | Mid-Market (51-1000 emp.)

**Reviewed Date:** May 30, 2022

**What do you like best about IBM QRadar SIEM?**

Qradar is user-friendly and easy to use.

**What do you dislike about IBM QRadar SIEM?**

Log retention period.
Restoration
Down-time activity
Version upgradation

**Recommendations to others considering IBM QRadar SIEM:**

Learn log analysis and admin tasks. It will be fun while use Qradar

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

All functionality is easy to find.
Faster than other SIEM tool
Multi-Language
Threat intelligence website Plugins are available.
Dig-down of any data is easy (IP, Hostname, UserID)
New Watchlist, rule creation, Health checkups and data extraction are so smooth and easy.
Nontechnical candidates can learn quickly.

  ### 19. Very good security solutions

**Rating:** 4.0/5.0 stars

**Reviewed by:** Abbad Ur Rahman T. | Security Team Lead - Tabadul MSS Project, Mid-Market (51-1000 emp.)

**Reviewed Date:** June 19, 2022

**What do you like best about IBM QRadar SIEM?**

Preloaded correlation rules and data set

**What do you dislike about IBM QRadar SIEM?**

Granularity of making making correlation rules.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Identify the security braches in network and malicious IOCs communication

  ### 20. Integration experience for IBM Security QRadar

**Rating:** 5.0/5.0 stars

**Reviewed by:** Vikram  K. | Security Administrator, Small-Business (50 or fewer emp.)

**Reviewed Date:** March 29, 2022

**What do you like best about IBM QRadar SIEM?**

We have enabled the API for the Qualys and then we integrated and we must need to check whether we are having the license for the API module first.

**What do you dislike about IBM QRadar SIEM?**

We need Qualys Team support for the entire operation for some help with the integration

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

We need some help from the Qradar Support team to solve any issue.

  ### 21. It is a well organised tool to enhance security operations

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Enterprise (> 1000 emp.)

**Reviewed Date:** June 02, 2022

**What do you like best about IBM QRadar SIEM?**

Log collection and streamlining them with which our team uses to make a decision

**What do you dislike about IBM QRadar SIEM?**

May be the GUI could be better...it has been ages to be intuitive and creative with it

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Definitely the security team is at the best place while having insights and updates mainly with ever growing attack surfaces. I can vouch for the tool and have it your way.

  ### 22. Loved the tool.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Mokshi K. | Security Analyst, Mid-Market (51-1000 emp.)

**Reviewed Date:** May 30, 2022

**What do you like best about IBM QRadar SIEM?**

Very helpful for dfir.Really helped in going in depth for analyzing the digital forensics part.

**What do you dislike about IBM QRadar SIEM?**

Nothing as of now. Currently practicing it.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Everything is benefitiing me.

  ### 23. SIEM

**Rating:** 4.5/5.0 stars

**Reviewed by:** Altaf H. | SOC Analyst L2, Enterprise (> 1000 emp.)

**Reviewed Date:** May 30, 2022

**What do you like best about IBM QRadar SIEM?**

SIEM product is the best and i am using it

**What do you dislike about IBM QRadar SIEM?**

dsm feauteru needs to be a bit tricky can be omproved

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

secuirty events and coorelation engine

  ### 24. Very good product but lack support

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Financial Services | Enterprise (> 1000 emp.)

**Reviewed Date:** June 01, 2022

**What do you like best about IBM QRadar SIEM?**

Easyto use and understand for new analysts.

No steep learning curve.

Easy to integrate multiple log sources using multiple protocols.

**What do you dislike about IBM QRadar SIEM?**

Lack of quality  support is major concern.

Regex and property extration can be headache sometime.

Kasper integration is  a pain.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Single tool  to investigate any incident in depth without the  need of jumping between tools to join pieces of puzzle regarding  investigation.

  ### 25. IBM QRadar : The SIEM Solution

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Enterprise (> 1000 emp.)

**Reviewed Date:** May 25, 2022

**What do you like best about IBM QRadar SIEM?**

There are many log ingestion built-in connectors, This makes our task easier for ingestion of logs.

**What do you dislike about IBM QRadar SIEM?**

The QRadar User Interface looks very complex and need a lot of time to understand where some features are present.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

We use QRadar to ingest logs from various sources and based on rules offense gets triggered and passe into our SOAR platform where our SOC team resides.

  ### 26. Great tool to use and working is easy

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Enterprise (> 1000 emp.)

**Reviewed Date:** April 10, 2022

**What do you like best about IBM QRadar SIEM?**

Graphical user interface is the best and easiest to use without any conditions

**What do you dislike about IBM QRadar SIEM?**

Learning and certificate  is costly and we need to look in external training

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Used for siem and creating filters is easy

  ### 27. IBM QRadar

**Rating:** 4.0/5.0 stars

**Reviewed by:** Gerald V. | SDM - Cyber security, Small-Business (50 or fewer emp.)

**Reviewed Date:** May 04, 2022

**What do you like best about IBM QRadar SIEM?**

Complete suite of products.. ease of use

**What do you dislike about IBM QRadar SIEM?**

Nothing at the moment.. licence costs could be lower

**Recommendations to others considering IBM QRadar SIEM:**

Can recommend

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Single source for monitoring for our agents. Easy to colorate and plugin multiple sources of input

  ### 28. Working with QRadar

**Rating:** 5.0/5.0 stars

**Reviewed by:** Dr.Sanjeev Kumar  M. | Assistant Professor, Enterprise (> 1000 emp.)

**Reviewed Date:** May 14, 2022

**What do you like best about IBM QRadar SIEM?**

Threat detection system for providing a complete protection

**What do you dislike about IBM QRadar SIEM?**

Everything is working perfectly but little bit improvement required to filter threats

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Network security issues which means threats detection

  ### 29. IBM Security QRadar a SIEM tool

**Rating:** 4.0/5.0 stars

**Reviewed by:** Nikhil K. | web application security researcher, Enterprise (> 1000 emp.)

**Reviewed Date:** November 06, 2021

**What do you like best about IBM QRadar SIEM?**

This SIEM tool is now available in on premises and cloud environment also, which make us very confident during analysis the log of every configured devices ,servers, workstations and app which are available on own network or cloud based.

**What do you dislike about IBM QRadar SIEM?**

Tool should be available live chat bot to support to their user if they have any operational or logical queries during the operational activities.Price is little high it's should be simplified.

**Recommendations to others considering IBM QRadar SIEM:**

Yes,I would like to recommend to the users.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Live event analysis like trigger the logs,operational events filtering the data events to high end analysis . correlates of data events with particularly applications and systems.

  ### 30. Overall good but there are some minor flaws

**Rating:** 3.5/5.0 stars

**Reviewed by:** muhammet furkan . | Cyber Security Specialist, Enterprise (> 1000 emp.)

**Reviewed Date:** June 27, 2021

**What do you like best about IBM QRadar SIEM?**

It supports many protocols in terms of logging. It has a lot of options on the configuration side. Thanks to its architecture, you don't experience any contraction problems. Making rules for SOC teams is easy. The reporting side is very flat but successful. The interface design looks a bit old, but it is good in terms of functionality. When you want to enlarge your structure, you can add new physical or virtual devices. If you're going to get your logs from a different city, it's nice to be able to set up an event collector there and transfer it over that device.

**What do you dislike about IBM QRadar SIEM?**

We had some very serious problems. You cannot easily make improvements such as disk upgrades on devices. Wincollect can't fully manage its agents, it gets in the way. While updating, you may cause log interruption for a short time.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

SOC and logging

  ### 31. one of the best tool for soc analysts

**Rating:** 5.0/5.0 stars

**Reviewed by:** shahzad h. | Senior Officer Threat & Vuln Analysis, Enterprise (> 1000 emp.)

**Reviewed Date:** April 12, 2022

**What do you like best about IBM QRadar SIEM?**

Qradar is very user-friendly. 

easy to integrate other infra.

huge support available locally as well as international

ariel query language help to find the logs easily.

**What do you dislike about IBM QRadar SIEM?**

currently, I don't dislike any feature. because I find everything smooth.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

threat intelligence, event managment

  ### 32. Recommendation

**Rating:** 5.0/5.0 stars

**Reviewed by:** Shahzad A. | SOC Analyst, Small-Business (50 or fewer emp.)

**Reviewed Date:** March 27, 2022

**What do you like best about IBM QRadar SIEM?**

Qradar tools and all the applications provide us with complete information events log details to provide complete security to the environment.

**What do you dislike about IBM QRadar SIEM?**

nothing else they support us well. they just needed to focus on their updates.

**Recommendations to others considering IBM QRadar SIEM:**

best for SIEM purpose.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

at any problem, they provide us with great solutions.

  ### 33. QRadar - Scalable SIEM tool

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Enterprise (> 1000 emp.)

**Reviewed Date:** December 22, 2021

**What do you like best about IBM QRadar SIEM?**

The most attractive feature of QRadar is the scalability options it provides for all the type of network environments. The all-in-one appliance is capable of managing all the activities of a logger, collector and processor in a limited environment.

**What do you dislike about IBM QRadar SIEM?**

The limited DSM modules available for different security products is one such thing that I dislike. If some more DSM modules are created for the upcoming new security devices in the market for parsing.

**Recommendations to others considering IBM QRadar SIEM:**

Anyone who doesn't want to invest a lot of money on SIEM tool should definitely go for QRadar.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

IBM Security QRadar is used in our organization as a SIEM tool for soc operations and for the fast searching capabilities of the tool. Performance wise yes the business has gotten a boost.

  ### 34. Leader for a reason

**Rating:** 4.5/5.0 stars

**Reviewed by:** Amit S. | Security Lead (Cyber Defence), Enterprise (> 1000 emp.)

**Reviewed Date:** May 10, 2022

**What do you like best about IBM QRadar SIEM?**

Fast log search, onboarding protocols, content creation ease and flexibility.

**What do you dislike about IBM QRadar SIEM?**

Not so user-friendly User Interface for log search.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Need flexible autoscaling model.

  ### 35. Great experience with ibm qradar

**Rating:** 4.0/5.0 stars

**Reviewed by:** Hafiz Hassnain J. | SOC Analyst, Enterprise (> 1000 emp.)

**Reviewed Date:** March 12, 2022

**What do you like best about IBM QRadar SIEM?**

I loved all features it helps in monitoring all offense very efficiently . It helps to magiticate and investigate the offense very efficiently

**What do you dislike about IBM QRadar SIEM?**

Its searches are very difficult to build sometimes it takes alot of time

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Monitoring got easy and investigation got very much and need to more simply things

  ### 36. Easy to understand

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Enterprise (> 1000 emp.)

**Reviewed Date:** July 10, 2022

**What do you like best about IBM QRadar SIEM?**

Fetching logs for investigation and analysis

**What do you dislike about IBM QRadar SIEM?**

Use case creation conditions formatting, loading of data and putting conditions

**Recommendations to others considering IBM QRadar SIEM:**

Easy ton setup and on board devices

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Holistic view of events

  ### 37. Qradar security Review

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Enterprise (> 1000 emp.)

**Reviewed Date:** May 16, 2022

**What do you like best about IBM QRadar SIEM?**

Use cases building and logs parsing was easy. You can manage all the use cases from an app.

**What do you dislike about IBM QRadar SIEM?**

UI throws unexpected errors and logs search takes a lot of time.

**Recommendations to others considering IBM QRadar SIEM:**

Make sure you check the available integration and make sure it meets your requirements.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Single pane for all the logs coming from cloud,infra and network.

  ### 38. Qradar for SOC

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Mid-Market (51-1000 emp.)

**Reviewed Date:** May 10, 2022

**What do you like best about IBM QRadar SIEM?**

simple to use and understand and requires limited knowledge on working of SIEM

**What do you dislike about IBM QRadar SIEM?**

Time to pull logs is slow compared to others

**Recommendations to others considering IBM QRadar SIEM:**

Good for small to medium scale enterprises with servers/data points (log sources) less than 100

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

SOC monitoring for small to medium organizations and benefits include low cost and minimum SIEM knowledge for starters

  ### 39. Number 1 Recommendation for Monitoring

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Banking | Enterprise (> 1000 emp.)

**Reviewed Date:** July 31, 2020

**What do you like best about IBM QRadar SIEM?**

1. The Console is very User Friendly like any new user can use it with ease. 
2. IBM Qradar Team provide the Communtity Edition for newbie for learning without expiration which is on of the best service.

**What do you dislike about IBM QRadar SIEM?**

IBM Qradar supports is not up to the mark most of the time if we raise ticket. It takes long to get resolve our problem.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Reduce Threats, Real time monitoring, Compliance

  ### 40. Good Out of the box parsing or various devices and good security use cases

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Mid-Market (51-1000 emp.)

**Reviewed Date:** April 12, 2022

**What do you like best about IBM QRadar SIEM?**

Great device integration
Good apps for various security devices 
Excellent network and security data collection 
Excellent coorelation and normalization 
Very good UBA

**What do you dislike about IBM QRadar SIEM?**

Tuning of Rules and alerts require some insights  and knowledge of logs sources.
Reduce alert generated and focus on main alerts and reducing unnecessary rule triggers

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Network Visibility.
Security Alerts from  single Console.
Vulnerability Information of all assets.
Operational Information related to network. Network Traffic Visibility

  ### 41. It have very user friendly interface.

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Mid-Market (51-1000 emp.)

**Reviewed Date:** June 30, 2022

**What do you like best about IBM QRadar SIEM?**

Its log activity tab which is for search

**What do you dislike about IBM QRadar SIEM?**

It's little bit slow while we add a long search.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

incident response which allow analys to escalate

  ### 42. QRadar expensive but worth it

**Rating:** 4.0/5.0 stars

**Reviewed by:** Saish S. | Cyber Security Consultant, Small-Business (50 or fewer emp.)

**Reviewed Date:** March 23, 2022

**What do you like best about IBM QRadar SIEM?**

All the features provided which are missing in ELK like freewares

**What do you dislike about IBM QRadar SIEM?**

High price. IBM Qradar is an expensive licence to have.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

IBM Qradar helps in all SOC and SIEM related issues and alerts are well configured.

  ### 43. It is swift and new features make it very obvious choise .

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Enterprise (> 1000 emp.)

**Reviewed Date:** June 21, 2022

**What do you like best about IBM QRadar SIEM?**

Mitre integration, faster log fetching .

**What do you dislike about IBM QRadar SIEM?**

We can't search offense by keeping multiple domain together.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

In comparision to Arcsight it is faster and smooth while fetching logs for advisories.

  ### 44. Best Security Monitoring tool

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Banking | Enterprise (> 1000 emp.)

**Reviewed Date:** January 20, 2022

**What do you like best about IBM QRadar SIEM?**

It has easy to use interface as compared to tools like Splunk, easy to write correlation rules which helps in giving insights across environments and help in detecting threats and act on it immediately.

IBM threat feed support is great and also you get benifit of adding open source threat feeds like STIIX AND TAXII.

Solution supports almost all of the data sources  and great support for custom devices

**What do you dislike about IBM QRadar SIEM?**

sometimes it gets difficult to parse unknown data. It takes times. Asset management is also a pain.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

We have been using ibm qradar for compliance issues in multiple bank projects. it's affordable.

  ### 45. User friendly, easy to filter and extraction of data,

**Rating:** 5.0/5.0 stars

**Reviewed by:** Junaid M. | i, Mid-Market (51-1000 emp.)

**Reviewed Date:** March 11, 2022

**What do you like best about IBM QRadar SIEM?**

Use case management, customized dashboards, AQL filters , user account management and ease of integrations with available documentation.

**What do you dislike about IBM QRadar SIEM?**

Sometimes performance degradation issues occur in older versions.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Threat Hunting
Logs storage
Automation of playbooks by integrating it with SOAR platforms.

  ### 46. One of the best for security

**Rating:** 5.0/5.0 stars

**Reviewed by:** Mohammed Q. | Infrastructure & Operation Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** April 04, 2022

**What do you like best about IBM QRadar SIEM?**

All the features are best, but i like tracking major threats

**What do you dislike about IBM QRadar SIEM?**

There is nothing to dislike, overall product features are great.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Tracking major threats

  ### 47. superior SoC capabilities along with threat hunting

**Rating:** 5.0/5.0 stars

**Reviewed by:** Heera M. | Security Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** March 20, 2022

**What do you like best about IBM QRadar SIEM?**

Integration with third party security solutions for better security posture

**What do you dislike about IBM QRadar SIEM?**

Parcing of logs from custom Solution with AI and ML capabilities

**Recommendations to others considering IBM QRadar SIEM:**

NA

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Automation, visibility and control

  ### 48. Very useful product. Get insight of events in your network

**Rating:** 4.0/5.0 stars

**Reviewed by:** MUHAMMAD A. | Senior Network Security Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** April 02, 2022

**What do you like best about IBM QRadar SIEM?**

threat intelligence and events corelation.

**What do you dislike about IBM QRadar SIEM?**

integration issues with non ibm products.

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

events correlation. incident response and mitigation.

  ### 49. IBM QRADAR REVIEW

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Enterprise (> 1000 emp.)

**Reviewed Date:** June 01, 2022

**What do you like best about IBM QRadar SIEM?**

Log Ingestion
Use cases creation
Enrichment

**What do you dislike about IBM QRadar SIEM?**

Troubleshooting issues
Bugs
App slowness

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Advance threat detection
User entity Behaviour analytics
Soar
Huge data storage
Data processing speed.

  ### 50. One of the Leading Siem Tool

**Rating:** 2.5/5.0 stars

**Reviewed by:** Rakesh R. | Sr Security Analyst, Enterprise (> 1000 emp.)

**Reviewed Date:** March 20, 2022

**What do you like best about IBM QRadar SIEM?**

Analyst part, Apps, Integratigration, User case, DashBoard, Reporting

**What do you dislike about IBM QRadar SIEM?**

User interface, work on the complex use case system.

**Recommendations to others considering IBM QRadar SIEM:**

Yes

**What problems is IBM QRadar SIEM solving and how is that benefiting you?**

Integration, frequently disk utilization


## IBM QRadar SIEM Discussions
  - [What are the challenges you are facing in further improvement of the technology?](https://www.g2.com/discussions/what-are-the-challenges-you-are-facing-in-further-improvement-of-the-technology) - 1 upvote
  - [Need to know is there any way out to stop unsyncing of devices](https://www.g2.com/discussions/52041-need-to-know-is-there-any-way-out-to-stop-unsyncing-of-devices) - 1 upvote
  - [How do you compare it with Splunk?](https://www.g2.com/discussions/30589-how-do-you-compare-it-with-splunk)
  - [How to make qreadar portable](https://www.g2.com/discussions/30181-how-to-make-qreadar-portable)
  - [can this product integrate with endpoint security.](https://www.g2.com/discussions/29480-can-this-product-integrate-with-endpoint-security)

- [View IBM QRadar SIEM pricing details and edition comparison](https://www.g2.com/products/ibm-ibm-qradar-siem/reviews?page=3&section=pricing&secure%5Bexpires_at%5D=2026-08-10+17%3A43%3A15+-0500&secure%5Bsession_id%5D=0a88221e-1645-4cdd-8a33-e8299791ba27&secure%5Btoken%5D=aef5cfa509fab8488c2d0b4e13c1d436cffd823baea6ec2582ff02fa9a59ef5c&format=llm_user)
## IBM QRadar SIEM Integrations
  - [Cisco Umbrella](https://www.g2.com/products/cisco-umbrella/reviews)
  - [Palo Alto Networks IoT/OT Security](https://www.g2.com/products/palo-alto-networks-iot-ot-security/reviews)

## IBM QRadar SIEM Features
**Additional Functionality**
- Penetration Testing
- Alerts/Notifications
- Audit Trail
- Anti Virus
- Vulnerability Scanning
- Remote Monitoring & Management
- VPN
- Behavior Analytics
- Reporting/Analytics
- Real-Time Notifications
- Access Controls/Permissions
- SSL Security
- Patch Management
- Event Logs
- Anomaly/Malware Detection
- DNS Leak Protection
- Third-Party Integrations
- Server Monitoring
- Real-Time Monitoring
- Compliance Management
- Network Provisioning
- API
- Email Alerts
- Security Auditing
- Intrusion Detection System
- Data Visualization
- Two-Factor Authentication
- Generative AI
- Firewalls
- AI Copilot
- Anti Spam
- Threat Response
- Activity Monitoring
- Risk Alerts
- Data Loss Prevention
- Single Sign On
- Intrusion Prevention System
- Secure Login
- Policy Management
- Activity Dashboard

**Automation**
- Metadata Management
- Artificial Intelligence & Machine Learning
- Response Automation
- Continuous Analysis

**Analysis**
- File Analysis
- Memory Analysis
- Registry Analysis
- Email Analysis
- Linux Analysis
- Event Analysis
- Network Analysis

**Activity Monitoring**
- Usage Monitoring
- Database Monitoring
- API Monitoring
- Activity Monitoring

**Agentic AI - User and Entity Behavior Analytics (UEBA)**
- Autonomous Task Execution
- Multi-step Planning
- Proactive Assistance
- Decision Making

**Response**
- Resolution Automation
- Resolution Guidance
- System Isolation
- Threat Intelligence
- Incident Investigation

**Cloud Visibility**
- Data Discovery
- Cloud Registry
- Cloud Gap Analytics

**Network Management**
- Activity Monitoring
- Asset Management
- Log Management
- Network Monitoring
- Server Monitoring
- File Integrity Monitoring
- Real-Time Monitoring
- User Management
- Endpoint Management
- Compliance Management
- Incident Management
- Vulnerability Management
- Policy Management
- Event Logs

**Functionality**
- Multi-Network Capability
- Anomaly Detection
- Network Visibility
- Scalability

**Functionality**
- Incident Alerts
- Anomaly Detection
- Continuous Analysis
- Decryption

**Analysis**
- Continuous Analysis
- Behavioral Analysis
- Data Context
- Activity Logging

**Security**
- Compliance Monitoring
- Risk Analysis
- Reporting

**Records**
- Incident Logs
- Incident Reports

**Security**
- Data Security
- Data loss Prevention
- Security Auditing
- Real-Time Data
- Cloud Application Security
- SSL Security

**Incident Management**
- Event Management
- Automated Response
- Incident Reporting
- Real-Time Reporting

**Incident Management**
- Incident Logs
- Incident Alerts
- Incident Reporting

**Remediation**
- Incident Reports
- Remediation Suggestions
- Response Automation
- Threat Response
- Customizable Reports

**Detection**
- Anomaly Detection
- Incident Alerts
- Activity Monitoring

**Administration**
- Security Automation
- Security Integration
- Multicloud Visibility

**Management**
- Incident Alerts
- Incident Case Management
- Workflow Management

**Identity**
- SSO
- Governance
- User Analytics
- Real-Time Analytics
- Visual Analytics
- Reporting/Analytics

**Security Intelligence**
- Threat Intelligence
- Vulnerability Assessment
- Behavioral Analytics
- Data Examination
- Real-Time Data

**Generative AI**
- AI Text Generation
- AI Text Summarization
- Generative AI

**Agentic AI - Security Information and Event Management (SIEM)**
- Autonomous Task Execution
- Multi-step Planning
- Proactive Assistance
- Decision Making

**Agentic AI - Cloud Security Monitoring and Analytics**
- Autonomous Task Execution
- Proactive Assistance
- Decision Making

**Additional Functionality**
- Alerts/Notifications
- AI Copilot
- Access Controls/Permissions
- Endpoint Management
- Intrusion Detection System
- Compliance Management
- HIPAA Compliant
- Search/Filter
- API
- Two-Factor Authentication
- Data Visualization
- Risk Assessment
- Real-Time Monitoring
- Event Logs
- Activity Dashboard
- Audit Management
- Cloud Security Policy Management
- Vulnerability Protection
- Anti Virus
- Incident Management
- Threat Intelligence
- Real-Time Reporting
- Reporting & Statistics
- User Management
- Encryption
- Vulnerability Scanning
- Generative AI
- Status Tracking
- Third-Party Integrations
- Real-Time Notifications
- Patch Management
- Monitoring
- Cloud Encryption

**Additional Functionality**
- Activity Dashboard
- Reporting/Analytics
- Threat Intelligence
- AI Copilot
- Secure Data Storage
- Case Management
- Text Extraction
- Search/Filter
- Multiple File Format Support
- Prioritization
- Web Data Extraction
- Reporting & Statistics
- Real-Time Chat
- Optical Character Recognition
- Third-Party Integrations
- Access Management
- Task Management
- Data Extraction
- Data Security
- Data Import/Export
- Incident Management
- User Management
- Web Threat Management
- API
- IT Incident Management
- Data Visualization
- Data Recovery
- Vulnerability/Threat Prioritization
- Real-Time Reporting
- Investigation Management
- Incident Reporting
- Messaging
- Endpoint Protection
- Analytics
- Dashboard
- Threat Protection
- Access Control
- Network Monitoring
- Behavioral Analytics
- Customizable Dashboard
- Access Controls/Permissions
- Alerts/Notifications

**Additional Functionality**
- Real-Time Notifications
- Audit Trail
- Application Security
- Risk Analysis
- AI Copilot
- Data Import/Export
- Alerts/Notifications
- Prioritization
- Security Auditing
- Search/Filter
- Compliance Tracking
- Generative AI
- API
- Third-Party Integrations
- Activity Dashboard
- Data Visualization

**Generative AI**
- AI Text Generation
- AI Text Summarization
- Generative AI

**Additional Functionality**
- SSL Security
- HIPAA Compliant
- API
- Threat Response
- Endpoint Protection
- Maintenance Scheduling
- Third-Party Integrations
- Security Auditing
- Application Security
- Encryption
- Network Security
- Real-Time Reporting
- AI Copilot
- Reporting/Analytics
- Authentication
- Financial Data Protection
- Anti Virus
- Secure Data Storage
- Virus Definition Update
- Activity Dashboard
- VPN
- Audit Trail
- Anti Spam
- Access Controls/Permissions
- Data Visualization
- Alerts/Escalation
- Data Security

## Top IBM QRadar SIEM Alternatives
  - [Sumo Logic](https://www.g2.com/products/sumo-logic/reviews) - 4.3/5.0 (392 reviews)
  - [Rapid7 Next-Gen SIEM](https://www.g2.com/products/rapid7-next-gen-siem/reviews) - 4.4/5.0 (69 reviews)
  - [Datadog](https://www.g2.com/products/datadog/reviews) - 4.4/5.0 (715 reviews)

