---
title: Palo Alto Cortex XSIAM Reviews
meta_title: 'Palo Alto Cortex XSIAM Reviews 2026: Details, Pricing, & Features | G2'
meta_description: Filter 108 reviews by the users' company size, role or industry
  to find out how Palo Alto Cortex XSIAM works for a business like yours.
aggregate_rating:
  rating_value: 4.5
  review_count: 108
  scale: '5'
date_modified: '2026-09-18'
parent_category:
  name: System Security
  url: https://www.g2.com/categories/system-security
---


# Palo Alto Cortex XSIAM Reviews
**Vendor:** Palo Alto Networks  
**Category:** [Security Information and Event Management (SIEM) Software](https://www.g2.com/categories/security-information-and-event-management-siem)  
**Average Rating:** 4.5/5.0  
**Total Reviews:** 108  
**AI Verified:** At least 10 G2 reviewers have confirmed using this product&#39;s AI features and functionality.
## About Palo Alto Cortex XSIAM
Product Description: Palo Alto Networks&#39; Cortex XSIAM is an AI-driven security operations platform designed to transform traditional Security Operations Centers by integrating and automating key functions such as data centralization, threat detection, and incident response. By leveraging machine learning and automation, it enables organizations to detect and respond to threats more efficiently, reducing manual workloads and improving overall security posture. Key Features and Functionality: - Data Centralization: Aggregates data from various sources into a unified platform, providing comprehensive visibility across the enterprise. - AI-Powered Threat Detection: Utilizes machine learning algorithms to identify anomalies and potential threats in real-time. - Automated Incident Response: Streamlines response processes through automation, enabling rapid mitigation of security incidents. - Integrated SOC Capabilities: Combines functions such as Extended Detection and Response , Security Orchestration, Automation, and Response , Attack Surface Management , and Security Information and Event Management into a cohesive platform, eliminating the need for multiple disparate tools. - Scalability: Designed to handle large volumes of data and adapt to the evolving needs of modern enterprises. Primary Value and Problem Solved: Cortex XSIAM addresses the challenges of disjointed data, weak threat defense, and heavy reliance on manual work in traditional SOCs. By centralizing data and automating security operations, it simplifies processes, enhances threat detection accuracy, and accelerates incident response times. This transformation enables organizations to proactively outpace threats, reduce operational costs, and achieve a more robust security posture.



## Palo Alto Cortex XSIAM Pros & Cons
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.

**What users like:**

- Users value the **best-in-class log management** of Palo Alto Cortex XSIAM, benefiting from its effective alerting and integration features. (13 reviews)
- Users find the **user-friendly dashboard** of Palo Alto Cortex XSIAM essential for monitoring and understanding alerts effectively. (11 reviews)
- Users value the **real-time monitoring** capabilities of Palo Alto Cortex XSIAM, enhancing threat detection and response efficiency. (11 reviews)
- Users value the **simple and user-friendly interface** of Palo Alto Cortex XSIAM, making monitoring effortless. (11 reviews)
- Users value the **good dashboard creation tools** in Palo Alto Cortex XSIAM, enhancing ease of use and implementation. (9 reviews)
- Incident Management (9 reviews)
- Protection (8 reviews)
- Configuration Ease (7 reviews)
- Incident Response (7 reviews)
- Innovation (7 reviews)

**What users dislike:**

- Users note that Palo Alto Cortex XSIAM requires **significant resources** , impacting implementation time and increasing infrastructure costs. (9 reviews)
- Users find the **complexity of implementation** for Palo Alto Cortex XSIAM to be time-consuming and resource-intensive. (8 reviews)
- Users find the **cost** of Palo Alto Cortex XSIAM to be high, especially for smaller businesses. (7 reviews)
- Users face **dashboard issues** with XSIAM, finding it difficult to monitor assets and navigate the interface. (7 reviews)
- Users face **difficult setup** issues with Palo Alto Cortex XSIAM, requiring expertise and extensive time for initial implementation. (7 reviews)
- Not User-Friendly (7 reviews)
- Poor Interface Design (7 reviews)
- Poor Reporting (7 reviews)
- Time-Consuming (7 reviews)
- Training Required (7 reviews)

## Palo Alto Cortex XSIAM Reviews
  ### 1. Qradar Siem is user friendly gui, and avail with multiple application.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Gautam K. | Cyber Security Engineer (Soc Admin) , Enterprise (> 1000 emp.)

**Current User:** The reviewer uploaded a screenshot or submitted the review in-app verifying them as current user.

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** April 03, 2022

At G2, we prefer fresh reviews and we like to follow up with reviewers. They may not have updated their review text, but have updated their review.

**What do you like best about Palo Alto Cortex XSIAM?**

The application and monitoring tools also ucm is best for tool creation.pulse and use case manager is the best feature which ever i like in qradar, dashaboard is the tab which we can see all important things over here.

**What do you dislike about Palo Alto Cortex XSIAM?**

In qradar the building block,use case manager and Rule crieation is quite difficult for understanding, currently i am facing isse with threat Intelligence app, in that the download tab is note working properly.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Pls share error documention, because i have faved issue while installation it hits bug.Also i have worked with Thret feed document its casing error.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Threat Intelligence application download tab is note working, so i have continues working with IBM support team,apphost is another application we are facing isse.

  ### 2. Best security IBM service provider

**Rating:** 5.0/5.0 stars

**Reviewed by:** Faheem Ul Hasan A. | Security Professional, Enterprise (> 1000 emp.)

**Current User:** The reviewer uploaded a screenshot or submitted the review in-app verifying them as current user.

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** July 02, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

Best security alert and safeguarding without a physical security guard. That is most important in the digital world of 25th-century security. Safe and secure IT security.

**What do you dislike about Palo Alto Cortex XSIAM?**

Sometimes the password is missing, or if you enter the password, it clicks another button on the reader. There must be a button with a light and slightly larger to touch and read easily.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Best IT secure reader system

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Change or provide an online solution immediately. Work very fast and secure. IBM Qsecurity reader is best for doors and sensitive places to cover. Easy to install and good to use.

  ### 3. IBM QRadar

**Rating:** 4.0/5.0 stars

**Reviewed by:** Mohit V. | Senior Information Technology Security Engineer, Enterprise (> 1000 emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** August 08, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

It's a good SOC tool, and comes with a lot of handy features and functionalities. Captures data from multiple resources over the network and auto-generates red flags. I feel it's comparatively better than other tools like Splunk and provides better working flexibility.

**What do you dislike about Palo Alto Cortex XSIAM?**

I feel lots of functionality in a tool makes it difficult to manage on the UI and a lot of unrequired features can be provided as an addon which could be installed whenever required.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Centralized tool to collect all infrastructure details, network details, and security vulnerabilities as well, and helps manage large chunks of data in an organized manner which can be used in multiple ways.

  ### 4. One of the best SIEM tools we at Ebryx have ever used.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Syed Muhammad Hussain M. | Cyber Security Engineer, Mid-Market (51-1000 emp.)

**Current User:** The reviewer uploaded a screenshot or submitted the review in-app verifying them as current user.

**Validated Reviewer:** Validated through Google using a business email account

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** June 07, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

The ability to engineer custom Log Collectors as well as use HTTP Receivers to utilize integrations with other third-party tools like Cloudflare and the availability of tool specific certifications.

**What do you dislike about Palo Alto Cortex XSIAM?**

The overall graphical user interface of this Security Information and Event Management tool is not up to mark when compared with other tools. The pricing is also well above average.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Learn how to utilize Custom Data Connectors for third-party app integrations.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

The Security team at Ebryx has integrated IBM Security QRadar on all of our Financial Technology-based clients and so far we have not discovered any mishaps of any kind.

  ### 5. IBM Security QRadar

**Rating:** 5.0/5.0 stars

**Reviewed by:** Tristan Ray L. | Ethical Hacker, Small-Business (50 or fewer emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** March 26, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

The most helpful about IBM Security QRadar as it provides a non-technical overview of endpoint and user activity as well as monitoring in a graphical user interface.

**What do you dislike about Palo Alto Cortex XSIAM?**

There's nothing I dislike about the product as the security control provided by the product is what is currently essential on the threat landscape. As a security practitioner, detection and response as part of the layer of defense in depth is crucial for mitigating the risks that organizations are constantly facing daily as attacks have been more vivid about detection and response.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

IBM Security QRadar would solve the detection and response layer of defense an organization needs as it is the most critical security control an organization can have to be able to address the security policies that it requires. The benefits in regards to IBM Security QRadar is that it is a multipurpose security control combined into one platform that makes it easier to manage than having multiple GUIs that doesn't provide an analytical comparison between different sources of data or logs.

  ### 6. I love Qradar for its reliability

**Rating:** 4.5/5.0 stars

**Reviewed by:** Alex S. | Senior Infrastructure Engineer, Mid-Market (51-1000 emp.)

**Validated Reviewer:** Validated through a business email account

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** August 17, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

We feel safer everyday. Qradar protects our IT infrastructure and in case of any threats it send alerts with reports and the likely possible outcome plus ways to mitigate the risk

**What do you dislike about Palo Alto Cortex XSIAM?**

Qradar is a great and advanced solution that require documentation for beginners to use to learn the software

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

What Qradar gives us everyday is complete protection from outside threats, protection from data leaks, and remote management of devices that are connected to the company

  ### 7. An extremely powerful tool that makes system administration simpler and easier

**Rating:** 5.0/5.0 stars

**Reviewed by:** Hà T. | Cyber Security Engineer, Enterprise (> 1000 emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** June 26, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

IBM Security Qradar helps administrators monitor system details, processes as well as the activities of agents in their system, making it easier for administrators to analyze logs. From there, administrators can detect attacks on the system early.

**What do you dislike about Palo Alto Cortex XSIAM?**

The initial installation cost and license fee are quite large, so it is not suitable for agencies and organizations with network systems small and medium scale with limited resources

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

SIEM helps to manage, collect and analyze logs easily and efficiently to help detect possible cyber attacks against the system early, reducing the damage and risks that the organization may face. right if attacked.

  ### 8. A Great SIEM Solution

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Mid-Market (51-1000 emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Current User:** The reviewer uploaded a screenshot or submitted the review in-app verifying them as current user.

**Validated Reviewer:** Validated through a business email account

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** May 31, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

QRadar offers a lot of different applications that enrich the alerts received from the rules defined. It allows integrations with threat intelligence sources such as X-Force.

**What do you dislike about Palo Alto Cortex XSIAM?**

I think that the deployment and maintenance of QRadar is sometimes a bit demanding. This translates to quite intensive support from integrators (even though we have a very good understanding in QRadar's system administration.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

I really recommend the product. Just keep in mind that it is not SaaS and has infrastructure cost implications.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Allows log collection, parsing, and eventually monitoring (based on rules we define). There are also a lot of out-of-the-box rules and parsing mechanisms existing for many

  ### 9. IBM QRadar, Advanced Security

**Rating:** 4.5/5.0 stars

**Reviewed by:** Meherzad J. | Senior SOC Analyst, Mid-Market (51-1000 emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** July 25, 2020

At G2, we prefer fresh reviews and we like to follow up with reviewers. They may not have updated their review text, but have updated their review.

**What do you like best about Palo Alto Cortex XSIAM?**

Available Templates for rules and building blocks, categorisation of domain and tenants and DSM Editor. Auto integration of large no of devices. UBA, its AI models are phenomenal

**What do you dislike about Palo Alto Cortex XSIAM?**

GUI needs few user friendly moves like navigating back to original page and not the home page of offences, no support for huawei devices, overall complexity of the tool.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

QRadar has been instrumental in our fight against cyber threats. It helps identify and mitigate the threats effectively in a short time.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Better insider view
Great ROI
Improved loopholes in security, overall resulting in increased uptime of services.
Identifying vulnerabilities

  ### 10. IBM Security QRadar one of the best SIEM Solution

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Enterprise (> 1000 emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** July 22, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

What I like about IBM Security QRadar is that it can be managed in cloud that helps us detect any cyber security attacks and network breaches. Also, the detailed logging data that we collect usung this.

**What do you dislike about Palo Alto Cortex XSIAM?**

What I really dislike about IBM Security QRadar is that, you need to invest on it and spend money to have this. Because, IBM Security QRadar is really an expensive one.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

The common issues and troubleshooting that we always encounter is the auto patching or auto update problem of the versions. We experienced update download errors but the work around is that we always check for au-cert and that so much benefiting us.

  ### 11. A Great  SIEM Solution for your SOC

**Rating:** 4.5/5.0 stars

**Reviewed by:** Pradeep G. | Security Engineer II, Enterprise (> 1000 emp.)

**Current User:** The reviewer uploaded a screenshot or submitted the review in-app verifying them as current user.

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** May 04, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

Easy filtering of logs, Reporting, Alerting, User-friendly interface, Quick filtering and sorting, User and Entity Behavior Analytics,

**What do you dislike about Palo Alto Cortex XSIAM?**

The administration is not easy, there is documentation provided but, one can still face issues in the administration because of its complexity.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Incident Handling, Reporting, Log Collection, Alerting etc.
It is easy to handle incidents using this tool, one can easily fetch reports with filters, easy monitoring of logs from different devices.

  ### 12. Qradar user since 2015

**Rating:** 4.0/5.0 stars

**Reviewed by:** Khaled S. | IT Security Officer, Mid-Market (51-1000 emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** May 27, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

IBM X Force is by far the most valuable addition to the already complete SOC solution that Qradar is, AI to be added to the product is very exciting

**What do you dislike about Palo Alto Cortex XSIAM?**

need probably better integration with third-party products and faster development of the product to meet evolving security threats

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

centralized view of the threat landscape and automated response makes my life as IT Security officer much easier, reporting function is also very useful

  ### 13. IBM Security QRadar

**Rating:** 5.0/5.0 stars

**Reviewed by:** Tabarak  K. | Moderator, Small-Business (50 or fewer emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** June 24, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

It's really fast, so it detects threats faster than any other. It's automated with AI.

**What do you dislike about Palo Alto Cortex XSIAM?**

I guess according to me it's not that user-friendly. If a new user in the field uses this project, it will be a little challenging.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Anti-money laundering Audit management Ethics and compliance learning Policy management Risk management

  ### 14. Admin

**Rating:** 4.0/5.0 stars

**Reviewed by:** Avi L. | Security Administrator, Mid-Market (51-1000 emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** April 10, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

Integration to a lot of applications. Can be connected directly to the FW, <br><br>Very easy the search for any logs, easy filters

**What do you dislike about Palo Alto Cortex XSIAM?**

The search is a little bit slow, but it can be upgraded to big data, and it can help.<br><br>A bit accepted in the creation of "playbooks"

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

One central place in which we consolidate all the logos of information security systems and also systems that are related to the user's activity, and the creation of rules over all the logs

  ### 15. SOC Review

**Rating:** 4.0/5.0 stars

**Reviewed by:** Pankaj R. | Senior Security Analyst, Enterprise (> 1000 emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** July 01, 2022

At G2, we prefer fresh reviews and we like to follow up with reviewers. They may not have updated their review text, but have updated their review.

**What do you like best about Palo Alto Cortex XSIAM?**

LOG Correlation is up to the mark as use case.

**What do you dislike about Palo Alto Cortex XSIAM?**

Integration of devices and logs mechanism is difficult.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Yes

  ### 16. Best in class

**Rating:** 5.0/5.0 stars

**Reviewed by:** Manish K. | Technical Lead, Enterprise (> 1000 emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** July 01, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

Ease of use, Clean USER INTERFACE, Fast export, many reporting criteria.

**What do you dislike about Palo Alto Cortex XSIAM?**

Some queries takes time to pull the intended result / report.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Day to day incident reporting and investigative huge logs made life easy with QRADAR.

  ### 17. Best XDR in the market!!

**Rating:** 5.0/5.0 stars

**Reviewed by:** Emmanuel D. | IT Security Solution Support , Mid-Market (51-1000 emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** May 28, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

IBM Security QRadar has always been helpful to us in terms of monitoring any suspicious or malicious activity within our clients premise.

**What do you dislike about Palo Alto Cortex XSIAM?**

So far i don't have anything to dislike about the product.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

It helps our SOC to monitor a huge number of events and lets them correlate it for better reporting

  ### 18. IBM security QRadar one of best enterprise wide solution for SIEM

**Rating:** 3.0/5.0 stars

**Reviewed by:** Verified User in Accounting | Small-Business (50 or fewer emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** August 08, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

Time to value on-premises QRadar achieved full operational status in less than three months and it collects more logs, maintains controls, and QRadar on cloud.

**What do you dislike about Palo Alto Cortex XSIAM?**

Product is very slow. Data processing is very slow.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Security innovation event management system is excellent

  ### 19. Experience many SIEM Tool but QRadar is quite simple and easy to use understand the. GUI.

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Financial Services | Enterprise (> 1000 emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** May 14, 2022

At G2, we prefer fresh reviews and we like to follow up with reviewers. They may not have updated their review text, but have updated their review.

**What do you like best about Palo Alto Cortex XSIAM?**

It's convenient and easy to use, and anybody can easily use this tool within a couple of days.

**What do you dislike about Palo Alto Cortex XSIAM?**

Nothing such till now as per my use. Good to use.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Yes, please, if your organization requires the best SIEM tool to integrate your application server and other devices, monitor, and get the most true positive alerts to protect your organization. QRadar is the best one.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

IOC ALERT, day-to-day malicious attacks on our organization's system servers and endpoints.

  ### 20. IBM QRqdar review

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Computer Software | Small-Business (50 or fewer emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** June 26, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

Best to stop the threats incoming or outgoing

**What do you dislike about Palo Alto Cortex XSIAM?**

Need to look up on the zero day vulnerability

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

The /var/log partition continues to operate when disk usage reaches 100%. However, log data might not be written to the disk, which might affect IBM QRadar startup processes and components.

  ### 21. Intelligent security analytics for actionable insight into the most critical threats.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Computer Software | Small-Business (50 or fewer emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** July 17, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

Provides a most comprehensive view of IT infrastructure with Security Intelligence and a holistic approach to detect and respond to sophisticated threats.

**What do you dislike about Palo Alto Cortex XSIAM?**

Nothing was encountered that gave a bad experience.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Enables to unfold the unknown threats.

  ### 22. Excellent XDR

**Rating:** 3.5/5.0 stars

**Reviewed by:** Verified User in Management Consulting | Mid-Market (51-1000 emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** June 24, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

Most of the tools needed are in one platform. Which simplify the operations overall

**What do you dislike about Palo Alto Cortex XSIAM?**

Our personnel must be familiar with networking to operate it

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Should consider an on-premise architecture

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

They provide alerts to threats which helpful in our security posture

  ### 23. IBM Qradar best for threat hunting

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Security and Investigations | Small-Business (50 or fewer emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** June 04, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

Qradar is a pack of security tools, providing strong security to its vendor and stakeholders

**What do you dislike about Palo Alto Cortex XSIAM?**

Cost + package + harder to implement in terms of in-house team

**Recommendations to others considering Palo Alto Cortex XSIAM:**

For threat hunting + threat intelligence, I prefer Qradar

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Threat hunting + threat intelligence + VAPt

  ### 24. It's an advanced siem tool for security operations

**Rating:** 4.5/5.0 stars

**Reviewed by:** Munigala R. | Cyber Security Specialist, Mid-Market (51-1000 emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** June 03, 2021

At G2, we prefer fresh reviews and we like to follow up with reviewers. They may not have updated their review text, but have updated their review.

**What do you like best about Palo Alto Cortex XSIAM?**

More automated in creating rules reduces manual effort in it.

**What do you dislike about Palo Alto Cortex XSIAM?**

Maintenance errors which interrupt operations.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Good platform as siem compared to splunk and arcsight with respect to performance

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Monitoring the log sources of the customer unit and analysing the traffic. Faster in response with respect to analysis.

  ### 25. IBM QRadar

**Rating:** 3.5/5.0 stars

**Reviewed by:** Arun K. | Cyber Security Manager, Enterprise (> 1000 emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** March 21, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

Look and feel, user friendly interface, easy to build queries and report

**What do you dislike about Palo Alto Cortex XSIAM?**

Limited functionalities while creating correlation rules, minimum support to export outside content

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Helping customers to monitor, optimize and correlate their traffic

  ### 26. Highly recommended

**Rating:** 5.0/5.0 stars

**Reviewed by:** Aniket K. | Cyber Security Consultant, Enterprise (> 1000 emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** March 14, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

Threat hunting and analysing of threats and many more features

**What do you dislike about Palo Alto Cortex XSIAM?**

I do not dislike anything. It is perfect

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Highly recommended

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Threat Hunting and threat analysis. Cloud security monitoring

  ### 27. True SIEM Solution in the market

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Financial Services | Small-Business (50 or fewer emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** March 15, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

Log correlation and use case creation are one of the best SIEM Tool in the industry.

**What do you dislike about Palo Alto Cortex XSIAM?**

Supporting person is very difficult to get in IBM

**Recommendations to others considering Palo Alto Cortex XSIAM:**

If the team has a malware analyst and SOC Analyst, we can create a SOC operation

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Log correlation and system events are stored in SIEM, upon creation of usecase, we can able to manage the offensive on Threat hunting.

  ### 28. IBM Security QRadar Review

**Rating:** 5.0/5.0 stars

**Reviewed by:** Mohammad K. | Team Leader, Small-Business (50 or fewer emp.)

**Validated Reviewer:** Validated through a business email account

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** March 15, 2022

**What do you like best about Palo Alto Cortex XSIAM?**

Threat detection and response built to adapt

**What do you dislike about Palo Alto Cortex XSIAM?**

Integration Process was a little bit complicated

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Threat detection and response built to adapt

  ### 29. IBM Security QRadar is a decent solution for your security needs

**Rating:** 4.5/5.0 stars

**Reviewed by:** Bhavsheel K. | Research Specialist, Small-Business (50 or fewer emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** June 08, 2021

**What do you like best about Palo Alto Cortex XSIAM?**

IBM Security QRadar is among the leading solutions to automate your security practice and detect vulnerabilities for your digital assets. It's among the top platforms for Security Information and Event Management (SIEM). It helps me eliminate and reduce manual workload for my team by detecting threats and prioritizing them for further investigation.

**What do you dislike about Palo Alto Cortex XSIAM?**

IBM Security QRadar needs a better user experience for the team and additional resources for training team members will be great.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Need for functionalities and ability to use or see reports regarding security threats from smartphones. Also, the solution provides a lot of false positives that lead to overwork for my team. Integration with Wattson AI helps reduce and score threats based on IBM Security QRadar existing algorithms.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

With IBM Security QRadar, my team has been able to detect threats, view insider threats, meet local and national regulatory compliance, and automate workflows. Further, I'm able to see which threats have been addressed and what else needs to be done. The cloud security capability helps my team to address issues related to our cloud platforms and applications.

  ### 30. IBM QRadar Enterprise v7.4.1

**Rating:** 5.0/5.0 stars

**Reviewed by:** Tapan J. | Information Security Analyst, Enterprise (> 1000 emp.)

**Current User:** The reviewer uploaded a screenshot or submitted the review in-app verifying them as current user.

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal incentive as thanks for completing this review.

**Source: Seller invite:** Invitation from a seller or affiliate. This reviewer was offered a nominal incentive as thanks for completing this review.

**Reviewed Date:** September 13, 2019

At G2, we prefer fresh reviews and we like to follow up with reviewers. They may not have updated their review text, but have updated their review.

**What do you like best about Palo Alto Cortex XSIAM?**

Integration with quite a lot of other tools, software, and portals. Integration with Xforce Threat Intelligence as well we can integrate plugins from App Exchange platform too.

**What do you dislike about Palo Alto Cortex XSIAM?**

Nothing up till now. QRadar has nothing to dislike as compared to other SIEMS. But consumes a lot of memory, which in a way is quite beneficial for very good hardware that requires to protect critical infrastructure. But more memory usage turns out to be laggy a few times.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

IBM SIEM QRadar is definitely a good ROI on any organization's Security Posture but at the same time it is quite expensive as well as any Administrator needs to have a good level of understanding as well as experience regarding EPS and Logs integration in QRadar. IBM also provides Threat Intelligence via its XForce Threat Intelligence platform which can be subscribed to by purchasing its Premium and is Worth Resourceful even-though it is Expensive with only a limited number of Queries in a month. The App Exchange provides Addons/Integrations for almost every popular Security Tool across the globe across every Security Infra and Network Infra domain such as EDR-XDR, IDS-IPS, Firewall, Cloud Security and Governance, Threat Intelligence, and likewise. Every Analyst, Admin, Engineer working on QRadar is inherently Technically Competent but sometimes lack the proficiency of visualizing the Logs and other elements inside the Logs, and has to submit one's record of work done within a specific time-frame to the Management; where QRadar is a perfect choice of SIEM solution which leverages the Analysts' Technical Proficiency and transforming that into Statistical Charts-Graphs which helps the Management understand better regarding the ROI on the solution.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Helps me detect Threats and Intrusions in my network as well as Visualize the Technical expectations of the Management in a Statistical approach. QRadar is simply superb.!

  ### 31. Easy to operate, less complex, good for log analysis and integration.

**Rating:** 4.5/5.0 stars

**Reviewed by:** Tejas S. | Cyber Security Analyst, Small-Business (50 or fewer emp.)

**Current User:** The reviewer uploaded a screenshot or submitted the review in-app verifying them as current user.

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** July 22, 2020

**What do you like best about Palo Alto Cortex XSIAM?**

The first noticeable thing is the GUI of the tool easy to operate. Dashboard configuration is good, where it easy to monitor traffic in the single frame in the visual format. Can add multiple different parameters for log searching. ability to integrate with other solutions. Good Technical Support and Documentation. You can add multiple log sources easily. A large number of users in the market so easy to find a solution to the query. Can Integrate with different security devices for logs monitoring. User Analytics Behaviour feature is available. Useful in monitoring email trace logs after trace log source integration. Able to monitor large size organization due to the log source integration. Rule creation is easy to do and Building Block feature is good.

**What do you dislike about Palo Alto Cortex XSIAM?**

A mobile app can be useful. Can add sound or POP UP Notifications for the offense.Use too many resources. Default QRadar rules generate more False Positive offenses, can work on it.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

A good tool for all level of users starting from freshers to SME. Can use multiple features available in QRadar to secure your organization. Easy to operate and integrate.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

The primary job is to identify the security risks of the organization. QRadar is useful while threat hunting, log analysis, and reporting. Scheduled Daily, weekly and monthly reports which are useful while identifying anomaly. Integration with HIDS logs helped in monitoring host-level logs and security. Monitoring email trace logs of the user which helps to identify phishing campaign against the organization.

  ### 32. Unwieldly and Mostly Effective SIEM

**Rating:** 3.0/5.0 stars

**Reviewed by:** Kevin H. | CISO, Enterprise (> 1000 emp.)

**Validated Reviewer:** Validated through Google using a business email account

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** September 02, 2020

**What do you like best about Palo Alto Cortex XSIAM?**

The ability to quickly pull up, manipulate, drill down, and examine log data, even if it is months old. Additionally, being able to look at both the normalized log data as well as the raw log output allows me to confirm exactly what the system is doing and brings a level of comfort to the entire process. It was an invaluable tool in quickly showing other IT administrators exactly where problems existed or where there were potential connectivity issues.

**What do you dislike about Palo Alto Cortex XSIAM?**

There is a LOT of tuning that you need to perform in order for the product to be proactive. There are numerous system rules, groups, and building blocks that will require not only tuning, but great documentation on YOUR part so that you and your team can properly understand the components of your systems that are being watched, analyzed, and alerted on.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Make sure that you really understand your infrastructure and are willing to deploy significant staffing resources at this product. For an organization with over 2000 employees and 45,000 endpoints, we had to dedicate pretty much a single person full-time in order to fully realize the usefulness of this product.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Centralized logging management is solved very nicely, with the system able to ingest data from most of our products. For those that QRadar was not able to support, writing a parser manually was relatively painless and allowed us to integrate our homegrown applications very nicely with all the other normalized log sources.

  ### 33. QRadar is still a Leader in SIEM Technology

**Rating:** 5.0/5.0 stars

**Reviewed by:** Mohd D. | Engineer - GSOC, Enterprise (> 1000 emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** August 08, 2020

**What do you like best about Palo Alto Cortex XSIAM?**

It's scalability and advanced correlation capabilities to detect cyber threats. User Interface is pretty easy to use for user level analysts and for SIEM Administrators as well. I worked as an Analyst and you can easily drill down on an alert and investigate thoroughly with available logs and search for more related logs and create your investigation with searching related artifacts and create watchlists, alerts. Easily integrate with most of industry standard tools, which is the most important to get full-fledged benefits of complete security posture. Integrated QRadar with our automation tool and it worked very well with automation of incident response and Threat intelligence feeds.

**What do you dislike about Palo Alto Cortex XSIAM?**

A bit lack of automation capabilities for quick Incident Response

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Go for it, it's the market leader in SIEM technology improving day by day with latest features to comply with sophisticated methods of detecting cyber attacks. I would highly recommend QRadar for a Big size Organization, it can handle thousands of devices to be integrated with it and there is no challenges in scalability. Overall good product to invest and get your organization secure with market's best on the top technology.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Incident Response, Threat Hunting, Cyber security incident monitoring, Audit compliance

  ### 34. It is really beneficial for real time visibility to detect threat detection

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Banking | Small-Business (50 or fewer emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** June 03, 2021

**What do you like best about Palo Alto Cortex XSIAM?**

Priority of Alerts good for large network and find for particular subnet range

**What do you dislike about Palo Alto Cortex XSIAM?**

in offence tab should have right click filter for offence description

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

AqL advance search queries are easy to understand. Graphical representation is pretty nice

  ### 35. Qradar Security information and event management - SIEM

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Import and Export | Mid-Market (51-1000 emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Current User:** The reviewer uploaded a screenshot or submitted the review in-app verifying them as current user.

**Validated Reviewer:** Validated through a business email account

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** September 03, 2020

**What do you like best about Palo Alto Cortex XSIAM?**

The flexibility and ease of deployment Ability to quickly detect and prioritize potential threats. Mainly the ability to address internal dangers. Whether originating from a malicious or careless employee. This allows us to fix / Plug the hole / problem

**What do you dislike about Palo Alto Cortex XSIAM?**

Licence renewal Grace period. You do not get a view only access once license has expired.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

It is very helpful, When you can spend time to customise your reports and your dashboard. System Monitoring, Compliance Overview, Application overview, Network overview, Risk monitoring, System monitoring and Threat and security Monitoring as applicable.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

information and event management from multiple sources - Unix Servers, Routers and firewalls

  ### 36. Qradar Review

**Rating:** 5.0/5.0 stars

**Reviewed by:** Furqan L. | Information Security Engineer, Mid-Market (51-1000 emp.)

**Current User:** The reviewer uploaded a screenshot or submitted the review in-app verifying them as current user.

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** September 29, 2020

**What do you like best about Palo Alto Cortex XSIAM?**

Logs collection and rules correlation done in the most efficient way.

**What do you dislike about Palo Alto Cortex XSIAM?**

Automated action features are missing. AI must involve in qradar deeply.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Qradar is easy to use and efficiently detect cyber attacks and vulnerabilities.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Problem of mitigation with cyber attacks

  ### 37. It really helped me in many critical situations and I believe it will continue

**Rating:** 5.0/5.0 stars

**Reviewed by:** Mohamed F. | Application Security Consultant, Small-Business (50 or fewer emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** April 05, 2020

**What do you like best about Palo Alto Cortex XSIAM?**

Log Data collection and analyzing is the best part I love in QRadar, its ease of use and customization for security operations team makes it good. These are $M cost projects and will have ROI only if they have effectiveness from the security operations team. In the actual panorama, an IT staff would face a very hard task without using that tool, not to mention the costs. An organization deploying tools from different vendors to guarantee digital security is wasting resources and efforts: different results, rules, and reports. That's why I consider that QRadar is a great alternative to build and maintain the SOC. We should take into account also that they have greatly evolved. The QRadar market really is evolving from the basic log aggregation, storage, and compliance reporting to being the core security intelligence engine of the enterprise's IT infrastructure. What you're looking for today is an SIEM tool that can do real-time analysis of large amounts of such event data, correlate them across layers, devices, endpoints, etc., and most importantly across the other security systems in the enterprise, whether they're Identity & Access Management systems, network IPS, database security tools, and such. A good SIEM tool today has the ability to put in place an appropriate response to combat both insider and external threats, and maintaining the right consistent identity and session contexts across the layers, devices, endpoints with anomaly detection becomes all the more important.

**What do you dislike about Palo Alto Cortex XSIAM?**

Threat hunting comes in premium nothing else, I checked with all other alternatives but QRadar stands on the top

**Recommendations to others considering Palo Alto Cortex XSIAM:**

There are a number of SIEMs on the market today but not all are created equal, QRadar stands the top for ease of use

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Log Monitoring, Threat Hunting

  ### 38. Wonderful SIEM Solution To work With

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Enterprise (> 1000 emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Validated Reviewer:** Validated through LinkedIn

**Source: Seller invite:** Invitation from a seller or affiliate. This reviewer was not provided any incentive by G2 for completing this review.

**Reviewed Date:** July 20, 2020

**What do you like best about Palo Alto Cortex XSIAM?**

It's searching speed with the gui interface with ease the work of the employees for getting data much faster. Also this enables easy plug in to add with this tool.

**What do you dislike about Palo Alto Cortex XSIAM?**

Nothing found as of now in the current usage.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Which is one of the best industry standard tool for SIEM And which is so helpful for analysis of events from various log sources. The correlation also happens very fast. We can easily monitor the network traffic on this tool and in live.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Considerably there is no problem found on this Q radar SIEM Tool. And this tool gives out lot kore benefits when compared. It's a very fast searching experience with ease gui interface. Also the integration of components were also easily understandable.

  ### 39. Smart Product

**Rating:** 3.5/5.0 stars

**Reviewed by:** Mansour A. | Cyber Security Analyst, Mid-Market (51-1000 emp.)

**Validated Reviewer:** Validated through LinkedIn

**Source: Seller invite:** Invitation from a seller or affiliate. This reviewer was not provided any incentive by G2 for completing this review.

**Reviewed Date:** July 23, 2020

**What do you like best about Palo Alto Cortex XSIAM?**

It has great assistant tools, a modern interface and data visualization, and easy access to the tasks. Also, tracking the user behavior allows an easier way to manage incident response. I could say it works like a robot that investigates the malicious behavior of users.

**What do you dislike about Palo Alto Cortex XSIAM?**

Lack of elements in visualizing data; if they do, they will enrich the correlation process.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Using it with supported software

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Central monitoring control. Continuous monitoring of events over 3 months.

  ### 40. QRadar SIEM Review and Comparison

**Rating:** 3.5/5.0 stars

**Reviewed by:** Verified User in Banking | Enterprise (> 1000 emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal incentive as thanks for completing this review.

**Source: Seller invite:** Invitation from a seller or affiliate. This reviewer was offered a nominal incentive as thanks for completing this review.

**Reviewed Date:** September 28, 2019

At G2, we prefer fresh reviews and we like to follow up with reviewers. They may not have updated their review text, but have updated their review.

**What do you like best about Palo Alto Cortex XSIAM?**

QRadar App Exchange Log Source Integration and Custom Content Extraction from raw event QRadar Network Insight ADE - Anomaly Detection Engine

**What do you dislike about Palo Alto Cortex XSIAM?**

No correlation rule can be written if log sources integrated with different event processors Support (especially Indian support) is not very technical and unable to resolve issues in a timely manner

**Recommendations to others considering Palo Alto Cortex XSIAM:**

I have worked on multiple SIEM Tools and found QRadar SIEM is stable, flexible and has more features compared to other SIEM Tools I worked with including RSA SA, Symantec SSIM, ArcSight, McAfee Nitro.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Traffic profiling and triggering alerts for abnormalities

  ### 41. QRadar is a Wonderful SIEM tool-- Easy to understand and work

**Rating:** 4.5/5.0 stars

**Reviewed by:** Saiteja T. | Information Technology Security Analyst, Enterprise (> 1000 emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** August 13, 2020

**What do you like best about Palo Alto Cortex XSIAM?**

Adding or removing devices to QRadar and applying filters is easy. Creating new rules, reports is very simple. Network flow feature is amazing.

**What do you dislike about Palo Alto Cortex XSIAM?**

Cannot find anything at this point but will definitely edit this review if I find any.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Detecting malicious traffic in the network, unusual behavior of systems, new variants of malware by adding hash values.

  ### 42. Leading platform for identifying the events.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Zishan Ali D. | Security Professional, Small-Business (50 or fewer emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** July 08, 2020

At G2, we prefer fresh reviews and we like to follow up with reviewers. They may not have updated their review text, but have updated their review.

**What do you like best about Palo Alto Cortex XSIAM?**

I like this product because of the performance and the inbuilt features which is used to monitor the threats and report them correctly and accurately. The results may not come false positive The main feature of this tool has eliminate Tasks and real time threat detection.

**What do you dislike about Palo Alto Cortex XSIAM?**

Since from one years I did not found any dislike regarding this product.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Easy detects, easily manage the compliance and main is eliminate the manual tasks.

  ### 43. The Best SIEM tool in Market

**Rating:** 5.0/5.0 stars

**Reviewed by:** Rayudu B. | Information Security Engineer, Small-Business (50 or fewer emp.)

**Validated Reviewer:** Validated through LinkedIn

**Source: Seller invite:** Invitation from a seller or affiliate. This reviewer was not provided any incentive by G2 for completing this review.

**Reviewed Date:** July 14, 2020

**What do you like best about Palo Alto Cortex XSIAM?**

User friendly and greater visibility, availability of security information in single platform.

**What do you dislike about Palo Alto Cortex XSIAM?**

There is no automatic later moment detection and price is higher.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Threat hunting becomes very easy using query and time lines. used to alert the incident very easily.

  ### 44. Qradar review

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Arts and Crafts | Small-Business (50 or fewer emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal incentive as thanks for completing this review.

**Source: Seller invite:** Invitation from a seller or affiliate. This reviewer was offered a nominal incentive as thanks for completing this review.

**Reviewed Date:** October 06, 2020

**What do you like best about Palo Alto Cortex XSIAM?**

It can detect illegal connections and malicious softwares. Besides, the trainings are free.

**What do you dislike about Palo Alto Cortex XSIAM?**

One of the problems is troubleshooting is hard and licensing is very expensive

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Great in a word

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

None

  ### 45. User-friendly SIEM solution, but not mature enough

**Rating:** 4.0/5.0 stars

**Reviewed by:** Karmveer S. | Senior Security Analyst, Enterprise (> 1000 emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** June 20, 2020

**What do you like best about Palo Alto Cortex XSIAM?**

Offense rule creation, really easy and self explanatory

**What do you dislike about Palo Alto Cortex XSIAM?**

No option of Cros-Correlation which can help in advance use cases

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Go for it, IBM is doing good and giving new functionality and working towards maturity

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

We was using it as centralised log management system and security monitor platform

  ### 46. One Solution to monitor your environment (IBM Qradar)

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Enterprise (> 1000 emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** May 14, 2020

**What do you like best about Palo Alto Cortex XSIAM?**

QRadar has a greater ability to integrate with many other solutions with more than 200 apps developed, and this helps to harmonize customer fabric security.

**What do you dislike about Palo Alto Cortex XSIAM?**

There is nothing to dislike, if it were to dislike I would have never recommended it :P

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Detect advanced attacks with upgraded functionality systems when activating systems and auditing advanced logs on owers server to detect hidden infections. Detecting and monitoring the behavior of Active directory users to know the possibility of malicious infection. Analysing third-party applications, and writing parsers quickly. Investigate threats and write new rules for detecting new and correlated unknown attacks.

  ### 47. IBM Qradar review

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Mid-Market (51-1000 emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** April 06, 2020

At G2, we prefer fresh reviews and we like to follow up with reviewers. They may not have updated their review text, but have updated their review.

**What do you like best about Palo Alto Cortex XSIAM?**

Applications which give us more visibility to analyze an incident.

**What do you dislike about Palo Alto Cortex XSIAM?**

Qradar does not allow us third-party integration.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Nice tools for incident response.

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

We can analyze an offense deeply.

  ### 48. IBM QRadar SIEM

**Rating:** 4.0/5.0 stars

**Reviewed by:** Vivek S. | Sr. Consultant (Cyber-Security), Enterprise (> 1000 emp.)

**Validated Reviewer:** Validated through LinkedIn

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** April 05, 2020

**What do you like best about Palo Alto Cortex XSIAM?**

IBM QRadar has full range of security intelligence capabilities and possibility of automation to detect sources of security log data and new network flow traffic. Providing real time bird eye view on your critical devices.

**What do you dislike about Palo Alto Cortex XSIAM?**

QRadar filter should analyse all type of data source specially PIM

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Yes, We recommend industrial leading SIEM tools to our clients

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

QRadar was not able to capture IBM zOS (Vision Plus) logs

  ### 49. Excellent solution

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Retail | Enterprise (> 1000 emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Validated Reviewer:** Validated through a business email account

**Incentivized:** This reviewer was offered a nominal gift card as thank you for completing this review.

**Source: G2 invite:** Invitation from G2. This reviewer was offered a nominal gift card as thank you for completing this review.

**Reviewed Date:** July 22, 2020

**What do you like best about Palo Alto Cortex XSIAM?**

Integration with other apps and custom applications

**What do you dislike about Palo Alto Cortex XSIAM?**

User interface could have some improvements for enhancing user experience

**Recommendations to others considering Palo Alto Cortex XSIAM:**

I definitely recommend IBM QRadar for a SIEM solution and incident response plan

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Monitoring infrastructure, accounts and apps in real time, helps a lot in incident response and log analysis

  ### 50. Simply the best!

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in E-Learning | Small-Business (50 or fewer emp.)

This reviewer's identity has been verified by our review moderation team. They have asked not to show their 
name, job title, or picture.


**Current User:** The reviewer uploaded a screenshot or submitted the review in-app verifying them as current user.

**Validated Reviewer:** Validated through LinkedIn

**Source: Organic:** Organic review. This review was written entirely without invitation or incentive from G2, a seller, or an affiliate.

**Reviewed Date:** September 20, 2019

**What do you like best about Palo Alto Cortex XSIAM?**

Powerful tool that can monitor almost anything. Happy that they offer free training on it as well. It works well with the entire Security immune suite from IBM. It's rated number one in Gartner's magic quadrant for SIEM's. Brilliant product.

**What do you dislike about Palo Alto Cortex XSIAM?**

It can get complicated and difficult to understand at times. Licensing is very expensive and can limit what you want to use QRadar for. It's difficult to get practical experience due to the lack of test environments. There's not a big footprint in Africa. Customers lack the skills and it can be difficult to get to them to offer support and training.

**Recommendations to others considering Palo Alto Cortex XSIAM:**

Power product, It's simply the best

**What problems is Palo Alto Cortex XSIAM solving and how is that benefiting you?**

Single point to manage Security Event Information Management. Love how flexible the product is and how easy it is to integrate. Threat intelligence and full protection in terms of the kill chain analysis. Network traffic, events, and offenses can be queried from a single console. Very nice indeed.


## Palo Alto Cortex XSIAM Discussions
  - [What does QRadar stand for?](https://www.g2.com/discussions/what-does-qradar-stand-for) - 1 comment, 1 upvote
  - [How can I study more on IBM Security QRadar?](https://www.g2.com/discussions/how-can-i-study-more-on-ibm-security-qradar) - 1 comment, 1 upvote
  - [How to build visualization with standard deviations?](https://www.g2.com/discussions/how-to-build-visualization-with-standard-deviations) - 1 comment, 1 upvote
  - [Can IBM Qradar be integrated with our own software? apart from software from major vendors](https://www.g2.com/discussions/32099-can-ibm-qradar-be-integrated-with-our-own-software-apart-from-software-from-major-vendors) - 1 comment, 1 upvote
  - [How do I monitor app resource usage on the app host](https://www.g2.com/discussions/16208-how-do-i-monitor-app-resource-usage-on-the-app-host) - 1 comment, 1 upvote

- [View Palo Alto Cortex XSIAM pricing details and edition comparison](https://www.g2.com/products/palo-alto-cortex-xsiam/reviews?page=2&qs=pros-and-cons&section=pricing&secure%5Bexpires_at%5D=2026-09-19+05%3A02%3A33+-0500&secure%5Bsession_id%5D=fe64536a-5675-42c2-a2b0-e55584e722a0&secure%5Btoken%5D=dc9de492fae4e790fdcf24199d090d4df1889c351239d610a95216825e1bf20b&format=llm_user)

## Palo Alto Cortex XSIAM Features
**Additional Functionality**
- Penetration Testing
- Alerts/Notifications
- Audit Trail
- Anti Virus
- Vulnerability Scanning
- Remote Monitoring & Management
- VPN
- Behavior Analytics
- Reporting/Analytics
- Real-Time Notifications
- Access Controls/Permissions
- SSL Security
- Patch Management
- Event Logs
- Anomaly/Malware Detection
- DNS Leak Protection
- Third-Party Integrations
- Server Monitoring
- Real-Time Monitoring
- Compliance Management
- Network Provisioning
- API
- Email Alerts
- Security Auditing
- Intrusion Detection System
- Data Visualization
- Two-Factor Authentication
- Generative AI
- Firewalls
- AI Copilot
- Anti Spam
- Threat Response
- Activity Monitoring
- Risk Alerts
- Data Loss Prevention
- Single Sign On
- Intrusion Prevention System
- Secure Login
- Policy Management
- Activity Dashboard

**Additional Functionality**
- Search/Filter
- Risk Management
- Generative AI
- Alerts/Notifications
- Compliance Management
- Third-Party Integrations
- Certificate Assessment
- API
- Incident Management
- Automated Containment
- Real-Time Data
- Vulnerability Scanning
- Monitoring
- Policy Management
- Asset Discovery
- Penetration Testing
- Runtime Container Security
- Activity Dashboard
- Security Auditing
- Issue Tracking
- Threat Intelligence
- Patch Management
- Endpoint Management
- Collaboration Tools
- Vulnerability Management
- Goal Setting/Tracking
- Vulnerability Assessment
- Asset Tagging
- Assessment Management
- Access Controls/Permissions
- AI Copilot
- Vulnerability/Threat Prioritization
- Vulnerability Protection
- Risk Assessment
- Reporting/Analytics
- SQL Injections

**Automation**
- Metadata Management
- Artificial Intelligence & Machine Learning
- Response Automation
- Continuous Analysis

**Analysis**
- File Analysis
- Memory Analysis
- Registry Analysis
- Email Analysis
- Linux Analysis
- Event Analysis
- Network Analysis

**Risk Analysis**
- Risk Scoring
- Reporting
- Risk-Prioritization

**Activity Monitoring**
- Usage Monitoring
- Database Monitoring
- API Monitoring
- Activity Monitoring

**Detection & Response**
- Response Automation
- Threat Hunting
- Rule-Based Detection
- Real-Time Detection
- Threat Response

**Agentic AI - User and Entity Behavior Analytics (UEBA)**
- Autonomous Task Execution
- Multi-step Planning
- Proactive Assistance
- Decision Making

**Services - Endpoint Detection & Response (EDR) **
- Managed Services

**Additional Functionality**
- Generative AI
- Event Analysis
- Prioritization
- AI Copilot
- Whitelisting/Blacklisting
- Remediation Management
- Alerts/Notifications
- Behavioral Analytics
- Continuous Monitoring
- Root Cause Analysis
- Endpoint Management
- Anomaly/Malware Detection

**Response**
- Resolution Automation
- Resolution Guidance
- System Isolation
- Threat Intelligence
- Incident Investigation

**Cloud Visibility**
- Data Discovery
- Cloud Registry
- Cloud Gap Analytics

**Network Management**
- Activity Monitoring
- Asset Management
- Log Management
- Network Monitoring
- Server Monitoring
- File Integrity Monitoring
- Real-Time Monitoring
- User Management
- Endpoint Management
- Compliance Management
- Incident Management
- Vulnerability Management
- Policy Management
- Event Logs

**System Control**
- Device Control
- Web Control
- Application Control
- Asset Management
- System Isolation

**Functionality**
- Multi-Network Capability
- Anomaly Detection
- Network Visibility
- Scalability

**Functionality**
- Incident Alerts
- Anomaly Detection
- Continuous Analysis
- Decryption

**Analysis**
- Continuous Analysis
- Behavioral Analysis
- Data Context
- Activity Logging

**Automation**
- Workflow Mapping
- Workflow Automation
- Automated Remediation
- Log Monitoring

**Functionality**
- Centralized platform
- Automated response
- Breach notification law compliance
- Workflow
- Reporting

**Vulnerability Assesment**
- Vulnerability Scanning
- Vulnerability Intelligence
- Contextual Data
- Dashboards

**Security**
- Compliance Monitoring
- Risk Analysis
- Reporting

**Management**
- Extensibility
- Workflow Automation
- Unified Visibility
- API

**Records**
- Incident Logs
- Incident Reports

**Security**
- Data Security
- Data loss Prevention
- Security Auditing
- Real-Time Data
- Cloud Application Security
- SSL Security

**Incident Management**
- Event Management
- Automated Response
- Incident Reporting
- Real-Time Reporting

**Vulnerability Prevention**
- Endpoint Intelligence
- Firewall
- Malware Detection

**Incident Management**
- Incident Logs
- Incident Alerts
- Incident Reporting

**Remediation**
- Incident Reports
- Remediation Suggestions
- Response Automation
- Threat Response
- Customizable Reports

**Detection**
- Anomaly Detection
- Incident Alerts
- Activity Monitoring

**Orchestration**
- Security Orchestration
- Data Collection
- Threat Intelligence
- Data Visualization

**Automation**
- Automated Remediation
- Workflow Automation
- Security Testing
- Test Automation

**Administration**
- Security Automation
- Security Integration
- Multicloud Visibility

**Analytics**
- Threat Intelligence
- Artificial Intelligence & Machine Learning
- Data Collection

**Management**
- Incident Alerts
- Incident Case Management
- Workflow Management

**Identity**
- SSO
- Governance
- User Analytics
- Real-Time Analytics
- Visual Analytics
- Reporting/Analytics

**Security Intelligence**
- Threat Intelligence
- Vulnerability Assessment
- Behavioral Analytics
- Data Examination
- Real-Time Data

**Security Management**
- Incident Reports
- Security Validation
- Compliance 

**Response**
- Alerting
- Performance Baselin
- High Availability/Disaster Recovery

**Generative AI**
- AI Text Generation
- AI Text Summarization
- Generative AI

**Agentic AI - Security Information and Event Management (SIEM)**
- Autonomous Task Execution
- Multi-step Planning
- Proactive Assistance
- Decision Making

**Agentic AI - Cloud Security Monitoring and Analytics**
- Autonomous Task Execution
- Proactive Assistance
- Decision Making

**Agentic AI - Extended Detection and Response (XDR) Platforms**
- Autonomous Task Execution
- Proactive Assistance
- Decision Making

**Additional Functionality**
- Alerts/Notifications
- AI Copilot
- Access Controls/Permissions
- Endpoint Management
- Intrusion Detection System
- Compliance Management
- HIPAA Compliant
- Search/Filter
- API
- Two-Factor Authentication
- Data Visualization
- Risk Assessment
- Real-Time Monitoring
- Event Logs
- Activity Dashboard
- Audit Management
- Cloud Security Policy Management
- Vulnerability Protection
- Anti Virus
- Incident Management
- Threat Intelligence
- Real-Time Reporting
- Reporting & Statistics
- User Management
- Encryption
- Vulnerability Scanning
- Generative AI
- Status Tracking
- Third-Party Integrations
- Real-Time Notifications
- Patch Management
- Monitoring
- Cloud Encryption

**Additional Functionality**
- Activity Dashboard
- Reporting/Analytics
- Threat Intelligence
- AI Copilot
- Secure Data Storage
- Case Management
- Text Extraction
- Search/Filter
- Multiple File Format Support
- Prioritization
- Web Data Extraction
- Reporting & Statistics
- Real-Time Chat
- Optical Character Recognition
- Third-Party Integrations
- Access Management
- Task Management
- Data Extraction
- Data Security
- Data Import/Export
- Incident Management
- User Management
- Web Threat Management
- API
- IT Incident Management
- Data Visualization
- Data Recovery
- Vulnerability/Threat Prioritization
- Real-Time Reporting
- Investigation Management
- Incident Reporting
- Messaging
- Endpoint Protection
- Analytics
- Dashboard
- Threat Protection
- Access Control
- Network Monitoring
- Behavioral Analytics
- Customizable Dashboard
- Access Controls/Permissions
- Alerts/Notifications

**Additional Functionality**
- Real-Time Notifications
- Audit Trail
- Application Security
- Risk Analysis
- AI Copilot
- Data Import/Export
- Alerts/Notifications
- Prioritization
- Security Auditing
- Search/Filter
- Compliance Tracking
- Generative AI
- API
- Third-Party Integrations
- Activity Dashboard
- Data Visualization

**Additional Functionality**
- Generative AI
- Collaboration Tools
- Incident Management
- AI Copilot
- Reporting/Analytics
- Threat Response
- Key Performance Indicators
- Risk Alerts
- Performance Metrics
- Third-Party Integrations

**Generative AI**
- AI Text Generation
- AI Text Summarization
- Generative AI

**Services - Extended Detection and Response (XDR)**
- Managed Services

**Additional Functionality**
- SSL Security
- HIPAA Compliant
- API
- Threat Response
- Endpoint Protection
- Maintenance Scheduling
- Third-Party Integrations
- Security Auditing
- Application Security
- Encryption
- Network Security
- Real-Time Reporting
- AI Copilot
- Reporting/Analytics
- Authentication
- Financial Data Protection
- Anti Virus
- Secure Data Storage
- Virus Definition Update
- Activity Dashboard
- VPN
- Audit Trail
- Anti Spam
- Access Controls/Permissions
- Data Visualization
- Alerts/Escalation
- Data Security

**Additional Functionality**
- Mobile Access
- IT Asset Management
- Reporting/Analytics
- Data Import/Export
- Encryption
- Remediation Management
- Root Cause Analysis
- Customization
- Workflow Management
- Incident Management
- User Management
- Behavioral Analytics
- Ransomware Protection
- Activity Dashboard
- AI Copilot
- Data Security
- Authentication
- Firewalls
- Collaboration Tools
- Endpoint Protection
- Cloud Application Security
- Third-Party Integrations
- Access Controls/Permissions
- Alerts/Notifications
- Data Analysis Tools
- Risk Management
- Generative AI
- Network Scanning
- Vulnerability Management
- Search/Filter

## Top Palo Alto Cortex XSIAM Alternatives
  - [CrowdStrike Falcon Endpoint Protection Platform](https://www.g2.com/products/crowdstrike-falcon-endpoint-protection-platform/reviews) - 4.7/5.0 (543 reviews)
  - [Wiz](https://www.g2.com/products/wiz-wiz/reviews) - 4.7/5.0 (841 reviews)
  - [Splunk Enterprise](https://www.g2.com/products/splunk-enterprise/reviews) - 4.3/5.0 (414 reviews)

