--- title: IBM Security QRadar NDR Reviews meta_title: 'IBM Security QRadar NDR Reviews 2026: Details, Pricing, & Features | G2' meta_description: Filter reviews by the users' company size, role or industry to find out how IBM Security QRadar NDR works for a business like yours. aggregate_rating: rating_value: 3.8 review_count: 3 scale: '5' date_modified: '2026-09-22' parent_category: name: System Security url: https://www.g2.com/categories/system-security ---

IBM Security QRadar NDR Reviews & Product Details

Profile Status

This profile is currently managed by IBM Security QRadar NDR but has limited features.

Are you part of the IBM Security QRadar NDR team? Upgrade your plan to enhance your branding and engage with visitors to your profile!

SP
sagar p.
AVP
Small-Business (50 or fewer emp.)
"Powerful Real-Time Monitoring and Easy Integration, but the Cost Runs High"
3.5/5
What do you like best about IBM Security QRadar NDR?

QRadar is very useful to monitor continuous network traffic and packet data in real time

QRadar has feature of behavior analysis which helps to monitor machine traffic in real-time and also monitors behavior of machines with help of machine learning feature.

Integration is very easy with components of SIEM and SOAR

QRadar provide actionable items which helps to troubleshoot the issue easily Review collected by and hosted on G2.com.

What do you dislike about IBM Security QRadar NDR?

Cost is too high

We can see multiple false positive alerts which in turn leads to many false incidents.

High resource are used due to large network traffic logs getting generated. Review collected by and hosted on G2.com.

Seatiel Y.
SY
Seatiel Y.
Cybersecurity Manager
Mid-Market (51-1000 emp.)
"Good tool for network traffic visibility and analysis."
3.5/5
What do you like best about IBM Security QRadar NDR?

What I like most is the ability to offer deep visibility into network traffic and detect anomalous behaviors that could indicate threats. Integration with QRadar SIEM allows for event correlation and improved incident detection. Additionally, alerts and reports are useful for continuous monitoring and incident response. Review collected by and hosted on G2.com.

What do you dislike about IBM Security QRadar NDR?

The initial deployment can be complex and requires experienced personnel. The learning curve is high compared to other market solutions. Occasionally, the generation of false positives can require additional time for analysis and rule tuning. Review collected by and hosted on G2.com.

AR
Adesh R.
Security analyst
Enterprise (> 1000 emp.)
"improved threat detection and faster investigation with Qradar NDR"
4.5/5
What do you like best about IBM Security QRadar NDR?

It provides deep, real-time network visibility and detects advanced threats through behavioral analytics. Review collected by and hosted on G2.com.

What do you dislike about IBM Security QRadar NDR?

Qradar NDR can be challenging to configure and comes with a high cost. Review collected by and hosted on G2.com.

There are not enough reviews of IBM Security QRadar NDR for G2 to provide buying insight. Below are some alternatives with more reviews:

1
CrowdStrike Falcon Endpoint Protection Platform Logo
CrowdStrike Falcon Endpoint Protection Platform
4.7
(582)
CrowdStrike Falcon endpoint protection unifies the technologies required to successfully stop breaches: next-generation antivirus, endpoint detection and response, IT hygiene, 24/7 threat hunting and threat intelligence. They combine to provide continuous breach prevention in a single agent.
2
KnowBe4 PhishER/PhishER Plus Logo
KnowBe4 PhishER/PhishER Plus
4.5
(576)
KnowBe4 PhishER is the key ingredient of an essential security workstream. It's your lightweight Security Orchestration, Automation and Response (SOAR) platform to orchestrate your threat response and manage the high volume of potentially malicious email messages reported by your users. And, with automatic prioritization of emails, PhishER helps your InfoSec and Security Operations team cut through the inbox noise and respond to the most dangerous threats more quickly.
3
Tines Stories Logo
Tines Stories
4.7
(430)
Tines Stories is an intelligent workflow platform that powers the world’s most important workflows. IT and security teams of all sizes, from Fortune 50 to startups, trust Tines for everything from phishing response, vulnerability and patch management, software lifecycle management, employee lifecycle management, and everything in between. Leaders across a wide array of industries –including Canva, Databricks, Elastic, Kayak, Intercom, and McKesson– use Tines AI-powered workflows to operate more effectively, mitigate risk, reduce tech debt, and do the work that matters most. Our workflow platform gives teams of any skillset (the most technical to your least technical) the tools to orchestrate, automate, and integrate your people, processes, and technology.
4
Sumo Logic Logo
Sumo Logic
4.3
(418)
Sumo Logic enables enterprises to build analytical power that transforms daily operations into intelligent business decisions
5
Microsoft Sentinel Logo
Microsoft Sentinel
4.4
(298)
Microsoft Azure Sentinel is a cloud-native SIEM that provides intelligent security analytics for your entire enterprise, powered by AI.
6
Cynet Logo
Cynet
4.7
(261)
Cynet is the unified, AI-powered cybersecurity platform that delivers robust and comprehensive protection for security teams while maximizing operational efficiency for managed service providers (MSPs). This platform consolidates a wide array of security capabilities into a single, user-friendly interface, ensuring that organizations can effectively safeguard their digital assets without the complexity often associated with multi-solution environments.
7
Splunk Enterprise Security Logo
Splunk Enterprise Security
4.3
(248)
Splunk Enterprise Security (ES) is a SIEM software that provides insight into machine data generated from security technologies such as network, endpoint, access, malware, vulnerability and identity information to enables security teams to quickly detect and respond to internal and external attacks to simplify threat management while minimizing risk and safeguarding business
8
Intezer Logo
Intezer
4.5
(193)
Automate your malware analysis. Get answers quickly about any suspicious file, URL, endpoint or memory dump.
9
Torq AI SOC Platform Logo
Torq AI SOC Platform
4.8
(152)
Torq is the AI SOC platform that combines agentic insights and automation so that enterprises can triage, investigate, and respond to actual risks, faster. Torq streamlines every step from alert through resolution. The platform analyzes your risk context to identify your biggest threats. Working alongside your SecOps staff, the Torq platform integrates with your security stack to facilitate containment and remediation workflows.
10
LogRhythm SIEM Logo
LogRhythm SIEM
4.2
(152)
LogRhythm empowers organizations on six continents to successfully reduce risk by rapidly detecting, responding to, and neutralizing damaging cyberthreats
Show More
Pricing

Pricing details for this product isn’t currently available. Visit the vendor’s website to learn more.