No more typing reviews! Try our Samantha, our new voice AI agent.

Cybereason Managed Detection & Response vs IBM Security QRadar comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cybereason Managed Detectio...
Ranking in Managed Detection and Response (MDR)
22nd
Average Rating
8.0
Reviews Sentiment
6.9
Number of Reviews
4
Ranking in other categories
No ranking in other categories
IBM Security QRadar
Ranking in Managed Detection and Response (MDR)
8th
Average Rating
8.0
Reviews Sentiment
6.6
Number of Reviews
218
Ranking in other categories
Log Management (5th), Security Information and Event Management (SIEM) (2nd), User Entity Behavior Analytics (UEBA) (3rd), Endpoint Detection and Response (EDR) (11th), Security Orchestration Automation and Response (SOAR) (5th), Extended Detection and Response (XDR) (8th)
 

Mindshare comparison

As of September 2026, in the Managed Detection and Response (MDR) category, the mindshare of Cybereason Managed Detection & Response is 0.9%, up from 0.4% compared to the previous year. The mindshare of IBM Security QRadar is 1.4%, up from 0.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Managed Detection and Response (MDR) Mindshare Distribution
ProductMindshare (%)
IBM Security QRadar1.4%
Cybereason Managed Detection & Response0.9%
Other97.7%
Managed Detection and Response (MDR)
 

Featured Reviews

Peter Nowak - PeerSpot reviewer
Business Development Manager for Cybereason at Bechtle
Quick response and reliable restoration enhance security operations
If the language barrier was addressed, it would lower the barrier for a number of German customers. It would take away a unique selling point for our own specialist managed service. I'm a bit hesitant, however, this would improve the product or the offering. Detection time already is very quick. The completeness of the offering was integrating more data. I am discussing with a customer who wishes to include identity data. Detecting early when someone tries to compromise your ID would be a nice feature.
HarshBhardiya - PeerSpot reviewer
SOC Engineer at a outsourcing company with 10,001+ employees
Have managed daily asset and alert monitoring effectively but have encountered limitations with manual processes and interface usability
It's still very manual and doesn't work on its own. It's still in an early stage and not on par where we can consider it a really successful detection system. The accuracy is not there. The UI could be better when compared to Sentinels where we can use flags and tagging. It could be much more user-friendly. IBM Security QRadar has all features and is fully competitive with other SIEM tools, but when it comes to user-friendliness, a new user takes time to get used to it. More intuitive, user-friendly interfaces and more helpful documentation would be beneficial. The query searching and data fetching could be faster. In large to very large organizations with around 5,000 or 6,000 assets or beyond, even with proper configurations and RAM and hardware backing up, the query is fairly slow.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The quick reaction and the ability to restore the state before within a short time are significant."
"The most valuable feature of the solution is endpoint management...The solution's support team is quite good at giving us feedback if there is an issue."
"Automated information on zero-day threats is provided without us needing to ask."
"We have evaluated Secureonix and this solution is far superior."
"Their support is excellent, they are available when we need them."
"I think it has improved our organization by the speed at which I can run queries compared to other software that I've used in the past."
"Technical support has been very supportive."
"The simplicity of the solution is the best feature."
"IBM in Indonesia provides great support."
"I have found the most important features to be the flexibility, tech framework, and disk manager."
"The dashboard is easy to use and easy to understand what's going on and what the alerts mean."
 

Cons

"The interface, particularly the dashboard we use for looking at alerts, could be improved."
"For every new client or every new case, my company has to spin up a new instance, because of which there is a new URL."
"If the language barrier was addressed, it would lower the barrier for a number of German customers. It would take away a unique selling point for our own specialist managed service."
"Trying to get answers out of IBM is like trying to get blood out of a stone. They need to be more helpful and responsive."
"It would be better if it were more stable and more secure. The price for maintenance could be better. It's too high. In the next release, I think they should focus on the price and the operation."
"Some of the cloud apps need improvement."
"I'd like them to improve the offense. When QRadar detects something, it creates what it calls offenses. So, it has a rudimentary ticketing system inside of it. This is the same interface that was there when I started using it 12 years ago. It just has not been improved. They do allow integration with IBM Resilient, but IBM Resilient is grotesquely expensive. The most effective integration that IBM offers today is with IBM Resilient, which is an instant response platform. It is a very good platform, but it is very expensive. They really should do something with the offense handling because it is very difficult to scale, and it has limitations. The maximum number of offenses that it can carry is 16K. After 16K, you have to flush your offenses out. So, it is all or nothing. You lose all your offenses up until that point in time, and you don't have any history within the offense list of older events. If you're dealing with multiple customers, this becomes problematic. That's why you need to use another product to do the actual ticketing. If you wanted the ticket existence, you would normally interface with ServiceNow, SolarWinds, or some other product like that."
"I would like to see more APIs available in order to provide tighter integrations between other IBM products and third-party solutions."
"They should provide more integration with more devices."
"The Indian tech support is not helpful."
"I'm not sure about the stability just yet. We've observed a few issues and we raised a supporting ticket for it."
 

Pricing and Cost Advice

"Price-wise, Cybereason Managed Detection & Response is effective for larger companies, but if you have a small company with less than 1,000 employees, then it gets expensive."
"Pricing and licensing are competitive. Their new licensing options allow logs to bypass the correlation engine for a flat rate, which is also appealing for log data that is compliance-driven for a small amount of money."
"The solution comes with a high price tag, while some of the competitors provide identical functionality in their offerings at no extra cost."
"I feel that the price is reasonable but compared to other products that are on the market, such as an offering by Microsoft, it is more expensive."
"There is a license required for this solution."
"We use QRadar as a managed service and we pay licensing fees to the partner."
"I think that the price is fair, but we can always say that the price could be cheaper."
"It is costlier as compared to the other alternatives available in the market."
"There are different types of subscriptions available. We were on an annual subscription, but our customers typically choose the two years subscription option."
report
Use our free recommendation engine to learn which Managed Detection and Response (MDR) solutions are best for your needs.
913,683 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Jun 28, 2015
Qradar vs. ArcSight
Continuing with the SIEM posts we have done at Infosecnirvana, this post is a Head to head comparison of the two Industry leading SIEM products in the market – HP ArcSight and IBM QRadar Both the products have consistently been in the Gartner Leaders Quadrant. Both HP and IBM took over niche SIEM…
 

Top Industries

By visitors reading reviews
Outsourcing Company
17%
Construction Company
14%
Performing Arts
13%
Manufacturing Company
9%
Outsourcing Company
12%
Financial Services Firm
10%
Construction Company
9%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business93
Midsize Enterprise39
Large Enterprise107
 

Questions from the Community

What is your experience regarding pricing and costs for Cybereason Managed Detection & Response?
The valuable aspect of pricing is that we do not need our own data center and software licensing, which reduces costs.
What needs improvement with Cybereason Managed Detection & Response?
Initially, we observed multiple false positive alerts with Cybereason Managed Detection & Response. We've worked with Cybereason to whitelist and fine-tune alerts, particularly those related to...
What is your primary use case for Cybereason Managed Detection & Response?
We have configured multiple scenario-based alerts for Cybereason Managed Detection & Response, such as known malware, potential unwanted programs, and PowerShell execution. We monitor suspiciou...
What are the biggest differences between Securonix UEBA, Exabeam, and IBM QRadar?
It mostly depends on your use-cases and environment. Exabeam and Securonix have a stronger UEBA feature set, friendlier GUI and are not licensed based on capacity (amount of logs and information in...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What is your experience regarding pricing and costs for IBM Security QRadar?
I am overall satisfied with the licensing cost for IBM Security QRadar.
 

Also Known As

Cybereason MDR
IBM QRadar, QRadar SIEM, QRadar UBA, QRadar on Cloud, IBM QRadar Advisor with Watson
 

Overview

 

Sample Customers

CONNECTICUT WATER, BEAM SUNTORY, CADWALADER, WICKERSHAM & TAFT, RTI Surgical, HOSPITAL REVENUE CYCLE MANAGEMENT COMPANY, MCBEE ASSOCIATES, FORTUNE 500 BANK
Clients across multiple industries, such as energy, financial, retail, healthcare, government, communications, and education use QRadar.
Find out what your peers are saying about Cybereason Managed Detection & Response vs. IBM Security QRadar and other solutions. Updated: September 2026.
913,683 professionals have used our research since 2012.