Please share with the community what you think needs improvement with Dell Secureworks.
What are its weaknesses? What would you like to see changed in a future version?
Log integration should be improved. If they can add SIEM, the event monitoring, then that would be great. Scalability is an area that needs to be improved. In the next release of this solution, I would like to see file integrity monitoring. I also hope that they will provide threat intelligence scripts for free.
GUI for resolving tickets is terrible. Non-intuitive, offering a dizzying array of options, often none of which made sense even for common problems. I ended up choosing "Other" way more than I should have had to, to categorize an issue resolution.