IBM QRadar is typically deployed in a SOC environment for security monitoring. It is used for log and packet capturing. It has some supporting technology, such as data leakage prevention and data encryption.
AVP - Security at a tech services company with 501-1,000 employees
Scalable, high visibility, and good technical support
Pros and Cons
- "I have found visibility very helpful for analytics."
- "This solution is on-premise and many customers are moving to the cloud base solution."
What is our primary use case?
What is most valuable?
I have found visibility very helpful for analytics.
What needs improvement?
This solution is on-premise and many customers are moving to the cloud base solution.
For how long have I used the solution?
I have been using this solution for approximately one year.
Buyer's Guide
IBM Security QRadar
September 2025

Learn what your peers think about IBM Security QRadar. Get advice and tips from experienced pros sharing their opinions. Updated: September 2025.
868,787 professionals have used our research since 2012.
What do I think about the stability of the solution?
I have not had any complaints from my clients about the stability of the solution.
What do I think about the scalability of the solution?
The solution is scalable. Our customers that are using this solution are mainly large-sized companies, such as the government.
How are customer service and support?
The technical support is very good.
What other advice do I have?
Nowadays cloud stack security is very good. Some of my customers are planning to build their data center over the cloud, or implement cloud-based services using some of the beneficial services, such as threat intelligence services.
I rate IBM QRadar a ten out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Integrator

Professional Services at a tech services company with 51-200 employees
Powerful user behavior analytics capabilities, and the log and process collection functionality is good
Pros and Cons
- "The most valuable feature is user behavior analytics (UBA)."
- "The whole process for support is something that needs to be improved."
What is most valuable?
The most valuable feature is user behavior analytics (UBA).
The EPS and FPS graphs are helpful.
The collecting of logs and processes is very good.
What needs improvement?
The support process needs to be improved.
Every SIEM solution has issues with plugins, as they have to connect to different log systems. It can affect security, infrastructure, and other things. IBM should continue to expand its database and cover as many systems as possible.
For how long have I used the solution?
I have been using IBM QRadar for about one year.
What do I think about the stability of the solution?
QRadar is a very stable product.
How are customer service and technical support?
The whole process for support is something that needs to be improved. You have to create a case, export the log and attach it to the case, then an engineer will clarify what you need to export and attach it to the ticket or support case, and so on. When you're working with a system that does not have good bandwidth, it makes it even more stressful. It is a lot of work and it should be easier to do.
My colleague has worked more with support and the feedback that I have heard is that they are quite good. It's the process that I am complaining about.
How was the initial setup?
The initial setup is pretty straightforward. We had several logs to integrate so it took a week and perhaps a few days.
What other advice do I have?
I would rate this product a nine out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
IBM Security QRadar
September 2025

Learn what your peers think about IBM Security QRadar. Get advice and tips from experienced pros sharing their opinions. Updated: September 2025.
868,787 professionals have used our research since 2012.
Pre-Sale Consultant (Technical) at a tech services company with 51-200 employees
Easy to set up, but we have had some problems with the networking support
Pros and Cons
- "We are using the platform version, which I like."
- "We have had problems with networking."
What is our primary use case?
We are a system integrator and IBM QRadar is one of the security and monitoring products that we implement for our clients. It is used for monitoring applications such as Windows virtual desktop access (VDA) and computer-managed instruction (CMI).
What is most valuable?
We are using the platform version, which I like.
What needs improvement?
We have had problems with networking.
For how long have I used the solution?
I have been using QRadar for about half a year.
What do I think about the scalability of the solution?
We have not tried to scale because it is installed all in one machine.
How was the initial setup?
The initial setup was easy and it took one day to install it.
What other advice do I have?
Overall, I like this product and I think that the features are good enough.
I would rate this solution a seven out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Buyer's Guide
Download our free IBM Security QRadar Report and get advice and tips from experienced pros
sharing their opinions.
Updated: September 2025
Product Categories
Security Information and Event Management (SIEM) Log Management User Entity Behavior Analytics (UEBA) Endpoint Detection and Response (EDR) Security Orchestration Automation and Response (SOAR) Managed Detection and Response (MDR) Extended Detection and Response (XDR)Popular Comparisons
CrowdStrike Falcon
Fortinet FortiEDR
Dynatrace
Splunk Enterprise Security
Microsoft Sentinel
Darktrace
SentinelOne Singularity Complete
Microsoft Defender XDR
Cortex XDR by Palo Alto Networks
Elastic Security
Grafana Loki
Trellix Endpoint Security Platform
Buyer's Guide
Download our free IBM Security QRadar Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Which would you recommend to your boss, IBM QRadar or Splunk?
- What SOC product do you recommend?
- Has anyone got experience in deployment of a SIEM solution?
- IBM QRadar is rated above competitors (McAfee, Splunk, LogRhythm) in Gartner's 2020 Magic Quandrant. Agree/Disagree?
- What is your opinion of IBM QRadar?
- What are the biggest differences between Securonix UEBA, Exabeam, and IBM QRadar?
- Why do most companies prefer IBM QRadar?
- What Solution for SIEM is Best To Be NIST 800-171 Compliant?
- When evaluating Security Information and Event Management (SIEM), what aspect do you think is the most important feature to look for?
- What are the main differences between Nessus and Arcsight?