NetIQ Sentinel Competitors and Alternatives

The top NetIQ Sentinel competitors are
Read reviews of NetIQ Sentinel competitors and alternatives
Consultant
Security Consultant at a tech services company with 11-50 employees
Mar 30 2017

What is most valuable?

The most valuable features are: * Auto update: QRadar will download new logs from the database on the supported security device, so that it will automatically normalize the new log format and you will not need to rewrite all your... more»

How has it helped my organization?

You will learn something that you don't know on the user/machine behaviour.

What needs improvement?

The dashboards and reports may need to improve. We need to export the CSV results to create a report by Excel.
Micro Focus
Real User
Sales Engineer at a tech services company with 1,001-5,000 employees
Jan 29 2017

What do you think of ArcSight?

Valuable Features It is easy to use when we created some dashboards for analytics. ArcSight allows you to create a dashboard and provides an on-the-fly filter. • Improvements to My Organization It makes things easy when I create a new alert. • Room for Improvement They need to improve the Web UI, similar to how it is done with Splunk. ArcSight is still using a Java app to do analytics. ArcSight Express is using HTML5, which is good. However, the capabilities of ArcSight Express are not good when the data grows. • Stability Issues I did not have any issues with stability. • Scalability Issues I did not have any issues with scalability. • Customer Service and Technical Support Technical support responds quickly. • Previous Solutions We previously used...
Splunk
Real User
Java Developer with 201-500 employees
Jun 05 2018

What is most valuable?

UBA, User Behavior Analytics.

How has it helped my organization?

For a long period of time we analyzed logs, traffic, something like tcpdump. Splunk UBA is useful for fraud detection and for detection of APTs, advanced persistent threats. It's really important for our business because I work a PSP, a... more»

What needs improvement?

In the next release of Splunk, I think the machine learning should be emphasized. Now, it's really important to analyze Big Data, data mining. A SIEM solution, like Splunk, needs an improved data mining solution, artificial intelligence.... more»

Sign Up with Email