

The products IBM Security QRadar and ManageEngine Log360 compete in the security information and event management (SIEM) category. IBM Security QRadar seems to have the upper hand with its advanced integration capabilities and detailed analytics, although ManageEngine Log360 offers notable cost advantages and a flexible architecture.
Features: IBM Security QRadar excels with its integration capabilities, comprehensive threat detection, and user behavior analytics, augmented by Watson Analyzer. It handles data with detailed analytics for robust threat correlation. ManageEngine Log360 is highlighted for its cost-effectiveness, modular architecture, and ability to customize, which appeals to medium-sized organizations seeking flexible solutions.
Room for Improvement: IBM Security QRadar faces challenges with its licensing complexity, support response times, and an outdated UI. Setup and operation require technical expertise, posing a barrier for some users. ManageEngine Log360 lacks some advanced features available in competitors, with users suggesting UI enhancements and improved integrations with newer technologies.
Ease of Deployment and Customer Service: IBM Security QRadar offers both on-premises and cloud deployment options but has a steep learning curve, needing knowledgeable personnel for optimal use. Customer service experiences are mixed. ManageEngine Log360, primarily on-premises, benefits from a straightforward deployment process and is praised for consistent customer service despite resource constraints.
Pricing and ROI: IBM Security QRadar is often seen as expensive, with costs driven by its premium features and a pricing model based on events per second, offering significant ROI for large enterprises. ManageEngine Log360 provides more affordable pricing and a clearer cost structure, making it appealing to mid-sized organizations looking for measurable operational savings and ROI.
With SOAR, the workflow takes one minute or less to complete the analysis.
AWS gives the chance to implement a solution out of the box with use cases that are already in IBM Security QRadar.
Investing this amount was very much worth it for my organization.
If unauthorized personnel attempt to add logs, the monitoring informs the administrator, enabling them to act promptly, leading to savings in both time and money for the company.
They assist with advanced issues, such as hardware or other problems, that are not part of standard operations.
Support needs to understand the issue first, then escalate it to the engineering team.
The support is really good; for instance, if a critical ticket is submitted, you will get paged right away as it gets logged, and their analyst will look into it, letting you know as soon as possible so you can work on it.
The solutions they provide are valuable.
The support provided by ManageEngine Log360 is fantastic.
For EPS license, if you increase or exceed the EPS license, you cannot receive events.
The technical support from ManageEngine is very good.
On cloud, you don't see any disconnections or instability.
I think QRadar is stable and currently satisfies my needs.
The product has been stable so far.
We receive logs from different types of devices and need a way to correlate them effectively.
If AI-related support can suggest rules and integrate with existing security devices like MD, IPS, this SIM can create more relevant rules.
IBM Security QRadar does not support Canvas, so we had to create custom scripts and workarounds to pull logs from Canvas.
Without needing to purchase an add-on module, ManageEngine Log360 should include more in-depth reporting capabilities in the current module.
Log360 currently cannot gather information from Intune logs or cloud-integrated systems.
ManageEngine Log360 uses PostgreSQL as its own database but does not automatically parse and allow creation of alarms the way it does in MS SQL.
Splunk is more expensive than IBM Security QRadar.
It was costly mainly because of the value you can get right now compared to other solutions.
It depends on how much you want to spend.
The price is suitable from a perspective of different pricing options.
Recently, I faced an incident, a cyber incident, and it was detected in real time.
IBM Security QRadar gives the opportunity to improve the time to market of the releases with a great evaluation of cybersecurity breaches.
Compared to ArcSight, Splunk, or any other SIEM tools where you need their processing language such as structured query language, SPL, and in Sentinel there is KQL query languages, IBM Security QRadar doesn't require reliance on query languages.
All mandatory regulatory compliance reports are available with the integrated system, and companies can easily customize reports without coding to meet their policy or reporting requirements.
ManageEngine Log360 could integrate with all systems, making it possible to integrate everything to the central location, which made it a useful and necessary tool.
ManageEngine Log360 was selected because AlienVault was moving strictly away from on-premises to the cloud, and an on-premises solution was required.
| Product | Mindshare (%) |
|---|---|
| IBM Security QRadar | 4.2% |
| ManageEngine Log360 | 1.3% |
| Other | 94.5% |


| Company Size | Count |
|---|---|
| Small Business | 92 |
| Midsize Enterprise | 39 |
| Large Enterprise | 107 |
| Company Size | Count |
|---|---|
| Small Business | 14 |
| Midsize Enterprise | 2 |
| Large Enterprise | 2 |
IBM Security QRadar offers real-time threat detection, data correlation, and integration with third-party solutions, providing a user-friendly interface, scalability, and extensive reporting capabilities for SIEM needs.
IBM Security QRadar is designed for comprehensive security monitoring in diverse environments, aiding sectors like telecom and finance with advanced threat detection and breach management. It aggregates data and analyzes user behavior, while its customizable and out-of-the-box rules deliver robust security insights and vulnerability management. The platform seeks enhancements in integration, performance, and user interface, with a focus on AI and cloud service compatibility.
What are the most important features of IBM Security QRadar?Telecom, finance, and cloud-based industries implement IBM Security QRadar for threat detection, compliance, and security monitoring. It is deployed for log collection and correlation, user behavior analytics, and ensuring secure data transfer and incident management, focusing on compliance and anomaly detection.
ManageEngine Log360 offers comprehensive log management and security alerting, integrating advanced analytics for threat detection and compliance reporting. Scalable for on-premise and hybrid deployments, it facilitates incident response with seamless system integration and user-friendly monitoring.
ManageEngine Log360 enhances visibility across IT infrastructures by aggregating logs from Active Directory, file servers, and network devices, aiding in security incident detection with User Behavior Analytics and threat identification tools. Its modular approach supports compliance in vital sectors such as aerospace, contributing significantly to centralized monitoring and anomaly detection. By reducing manual log examination, Log360 aligns with both security and operational goals across diverse environments, though areas like integration with Active Directory and interface improvements are avenues for advancement. Streamlining data retention and expanding automation are priorities for its evolution, ensuring effective incident management with reduced administrative burdens.
What are the key features of ManageEngine Log360?In sectors like aerospace, Log360 supports compliance demands by integrating log management for enhanced security and regulatory reporting. Its adaptability to on-premises and hybrid structures makes it valuable for technology-driven environments, where security and efficiency are paramount.
We monitor all Log Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.