AlienVault vs. IBM QRadar

As of February 2019, AlienVault is ranked 4th in Security Information and Event Management (SIEM) with 61 reviews vs IBM QRadar which is ranked 3rd in Security Information and Event Management (SIEM) with 58 reviews. The top reviewer of AlienVault writes "Provides us with flexible deployment architecture". The top reviewer of IBM QRadar writes "Correlates data across our global enterprise and integrates third-party solutions". AlienVault is most compared with Splunk, ELK Logstash and LogRhythm NextGen SIEM. IBM QRadar is most compared with Splunk, LogRhythm NextGen SIEM and ArcSight. See our AlienVault vs. IBM QRadar report.
Cancel
You must select at least 2 products to compare!
AlienVault Logo
36,304 views|13,902 comparisons
IBM QRadar Logo
51,873 views|26,402 comparisons
Most Helpful Review
Find out what your peers are saying about AlienVault vs. IBM QRadar and other solutions. Updated: January 2019.
316,268 professionals have used our research since 2012.
Quotes From Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:

Pros
AlienVault provides a checklist answer when using SIEM.It provides a single pane of glass view, coupled with a whole security ecosystem. The ability to manage everything from a central point, including vulnerability assessments, asset management - including the services provided by the various hosts, NIDS, HIDS, etc. - provides a very efficient way of dealing with things.The IDS and the threat intelligence are very useful. They are very intuitive and data-rich.On any given day I could give you a different answer regarding the most valuable features of the product. The feature that is most important is the fact that it has a lot of features, that it's not just a log collection and correlation system, that it has a lot of other components built in. The bundle of features is really the killer feature.Log-monitoring and alerting enable us to know when things happen that we need to know about.The dashboards are very descriptive and contain just the right amount of information. The activity alarms and events contain a plethora of data that is very descriptive and useful.AlientVault has helped us in improving our visualization and incident response during cybersecurity situations.I can easily check (in one place) all the logs and data in relation to attacks. It also gives me an overview if a server is not configured properly.

Read more »

The ability to add extensions is the most valuable feature. For example, extensions that provide valuable test ports.Providing real-time visibility for threat detection and prioritization - QRadar SIEM provides contextual and actionable surveillance across the entire IT infrastructure.It is very stable. We have not faced interruptions in the past four and a half years.It has improved comprehensive visibility for what is going on in the perimeters, and on the inside, as well.It is really helpful to us from the compliance point of view.The initial setup is not complex or difficult.QRadar has somewhat of a new structure recently from last gen. They have moved from the standard UI based infrastructure.It has improved my efficiency.

Read more »

Cons
We develop additional rules and scripts to make it more usable.The reporting module could be a little easier to handle, as it requires quite some trial and error until you get the reports you want. Also, it would be great to have a graphical interface for the Network Intrusion Detection System's rule management.One area that has room for improvement is storage. AllienVault is a good place to put logs, but sometimes it's a tough place to go get logs... The logger can only hold so much data. If they improved that, that would help.Search performance can be slow. The Raw Logs feature is painfully slow. And if we're talking about the newer, the Anywhere product, you can't even schedule reports on the thing. There are probably a dozen other features I'd really like to see there, but that would be one of the biggies.We've had some stability problems, not a lot, but a few. Updates seem to be the worst. That seems to be when the stability problems come up.they seem to have bugs from time to time that go unfixed for a while and that is frustrating. I'm not saying the product needs to be bug-free, but they need to be responsive to bugs.The only room for improvement I can mention is the initial installation procedures. I found that the online installation instructions for the product were missing important details, they lacked necessary steps.Different functions to customize reports should be added.

Read more »

Their technical support is not good. We opened a lot of cases and from my experience, they are not complicated issues but it takes forever to get an answer.AI is superb but need improvements.Technical support is good, but not great.The tech support is not that good.The Indian tech support is not helpful.It is not app based.The initial setup was complex, and it took six months.QRadar needs a lot of fine tuning

Read more »

Pricing and Cost Advice
​The vulnerability management solution is worse than buying a Nessus Professional license.​So far, it has been a good solution for a tight budget.It allows you to do a lot with a small price tag... The pricing is the best on the market.It's very reasonably priced. It was one of the lowest among the ones I looked at. Licensing is pretty flexible. They can do a two-year or a three-year, even a one-year, perhaps.The pricing is a good value. The key thing is that for the new product, the licensing of it, is subscription-based and it's based on data. Clients need to be really careful when thinking about that, because odds are they're going to need to put a lot more data into it than what they initially estimate, which is going to drive their subscription costs up.I don't think the product's pricing is a good value because they try to raise the price 50 percent every year... AlienVault needs to understand that not all customers are huge enterprises... Their sales team is way too aggressive. The price they advertise is not always the price you get.So far, I feel the product's pricing is a good value. The technology is decent. You get what you pay for. I think it's fair.The ROI is quite good.

Read more »

It is cheaper than ArcSight.The cost of this product is expensive.It is very expensive.A good approach would be to begin with an On Cloud subscription, then later on do a more exact sizing.Pricing and licensing are competitive. Their new licensing options allow logs to bypass the correlation engine for a flat rate, which is also appealing for log data that is compliance-driven for a small amount of money.Pricing (based on EPS) will be more accurate.An X-Force feed is free with QRadar.It is expensive. It is not a product that I can provide for SMBs. It is a program that I can only provide for really large enterprises.

Read more »

report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
316,268 professionals have used our research since 2012.
Ranking
Views
36,304
Comparisons
13,902
Reviews
58
Followers
1,609
Avg. Rating
8.7
Views
51,873
Comparisons
26,402
Reviews
54
Followers
2,096
Avg. Rating
8.4
Top Comparisons
Compared 24% of the time.
Compared 10% of the time.
Compared 10% of the time.
Compared 41% of the time.
Compared 10% of the time.
Compared 8% of the time.
Also Known As
AlienVault Unified Security Management, AlienVault USMQRadar SIEM, QRadar UBA, QRadar on Cloud, QRadar
Learn
AlienVault
IBM
Overview

AlienVault USM Anywhere is a cloud-based security management solution that accelerates and centralizes threat detection, incident response, and compliance management for your cloud, hybrid cloud, and on-premises environments. USM Anywhere includes purpose-built cloud sensors that natively monitor your Amazon Web Services (AWS) and Microsoft Azure cloud environments. On premises, lightweight virtual sensors run on Microsoft Hyper-V and VMware ESXi to monitor your virtual private cloud and physical IT infrastructure.

With USM Anywhere, you can rapidly deploy sensors into your cloud and on-premises environments while centrally managing data collection, security analysis, and threat detection from the AlienVault Secure Cloud.

Five Essential Security Capabilities in a Single SaaS Platform

AlienVault USM Anywhere provides five essential security capabilities in a single SaaS solution, giving you everything you need for threat detection, incident response, and compliance management—all in a single pane of glass. With USM Anywhere, you can focus on finding and responding to threats, not managing software. An elastic, cloud-based security solution, USM Anywhere can readily scale to meet your threat detection needs as your hybrid cloud environment changes and grows.

  1. Asset Discovery
  2. Vulnerability Assessment
  3. Intrusion Detection
  4. Behavioral Monitoring
  5. SIEM

Try USM Anywhere in your environment—free for the first 14 days. 
www.alienvault.com/products/usm-anywhere/free-trial

The IBM QRadar security and analytics platform is a lead offering in IBM Security's portfolio. This family of products provides consolidated flexible architecture for security teams to quickly adopt log management, SIEM, user behavior analytics, incident forensics, and threat intelligence and more. As an integrated analytics platform, QRadar streamlines critical capabilities into a common workflow, with tools such as the IBM Security App Exchange ecosystem and Watson for Cyber Security cognitive capability.

With QRadar, you can decrease your overall cost of ownership with an improved detection of threats and enjoy the flexibility of on-premise or cloud deployment, and optional managed security monitoring services.

Offer
Learn more about AlienVault
Learn more about IBM QRadar
Sample Customers
Abel & Cole, Bank of Ireland, Bluegrass Cellular, CareerBuilder, Claire's, Hays Medical Center, Hope International, McCurrach, McKinsey & Company, Party Delights, Pepco Holdings, Richland School District, Ricoh, SaveMart, Shake Shack, Steelcase, TaxAct, Taylor Morrison, Vonage and ZoomClients across multiple industries, such as energy, financial, retail, healthcare, government, communications, and education use QRadar.
Top Industries
REVIEWERS
Financial Services Firm22%
Healthcare Company17%
Comms Service Provider9%
University7%
VISITORS READING REVIEWS
Healthcare Company18%
Financial Services Firm13%
Marketing Services Firm11%
Comms Service Provider9%
REVIEWERS
Financial Services Firm27%
Transportation Company17%
Health, Wellness And Fitness Company7%
Security Firm7%
VISITORS READING REVIEWS
Financial Services Firm18%
Philanthropy12%
Comms Service Provider12%
University7%
Company Size
REVIEWERS
Small Business49%
Midsize Enterprise28%
Large Enterprise23%
VISITORS READING REVIEWS
Small Business37%
Midsize Enterprise28%
Large Enterprise35%
REVIEWERS
Small Business29%
Midsize Enterprise13%
Large Enterprise57%
VISITORS READING REVIEWS
Small Business39%
Midsize Enterprise14%
Large Enterprise47%
Find out what your peers are saying about AlienVault vs. IBM QRadar and other solutions. Updated: January 2019.
316,268 professionals have used our research since 2012.
We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.

Sign Up with Email