IBM QRadar Incident Forensics
En savoir plus sur IBM QRadar Incident Forensics
IBM QRadar Incident Forensics - Prix
IBM QRadar Incident Forensics n'est pas disponible en version gratuite et ne propose pas d'essai gratuit.
Produits similaires à IBM QRadar Incident Forensics
IBM QRadar Incident Forensics - Avis
Évaluation des fonctionnalités
Tous les avis sur IBM QRadar Incident Forensics
- Secteur d'activité : Services et technologies de l'information
- Taille de l'entreprise : 51–200 employés
- Logiciel utilisé tous les jours pendant 6 à 12 mois
-
Provenance de l'avis
Detect and analyse the cyber threats.
Best security tool to monitor our environment live and safe
Avantages
I like the most thing is log analysis and device integration and rule integration and correlation process. Threat hunting is accuracy. Dashboard creation according to our work environment.
Inconvénients
Much more graphical interface required and most and important is cost, it could be made less. While application upgrading we are facing some monitor loss.
- Secteur d'activité : Informatique et sécurité réseau
- Taille de l'entreprise : 5 001–10 000 employés
- Logiciel utilisé tous les jours pendant 6 à 12 mois
-
Provenance de l'avis
Digital forensic -Qradar
Different problems in network came daily basis related to incidents but qradar incident forensics helps to create report , remediation steps , evidence etc during critical issue to organization.
Avantages
Inspection , case management, and incidents management features helps us to identify the critical threats of network and proactive remediate the issue and aware the user for the malicious malware.
Inconvénients
It's provides the proper document in the IBM academy for learning but creates some incident management vedio and troubleshooting tips vedios with documentation that helps to get better under to administrator .
Alternatives envisagées
Splunk EnterprisePourquoi passer à IBM QRadar Incident Forensics
It's depend on the organizat budget to manage and what's purpose of the product according to requirement that better , easy to implement and use for network team.- Secteur d'activité : Équipements publics
- Taille de l'entreprise : 201–500 employés
- Logiciel utilisé tous les jours pendant plus de deux ans
-
Provenance de l'avis
Qradar review
Avantages
Integrated with different systems, servers, network appliances etc.
Inconvénients
Vulnerability module is not working as expected.
Alternatives envisagées
Splunk EnterprisePourquoi choisir IBM QRadar Incident Forensics
Solid regid product.- Secteur d'activité : Services et technologies de l'information
- Taille de l'entreprise : 201–500 employés
- Logiciel utilisé toutes les semaines pendant plus de deux ans
-
Provenance de l'avis
IBM QRadar
Avantages
It makes us easy to investigate and check the incident logs from the exploit start and after it .we integrate it with AWS WAF logs and VPC logs and it raised the incident automatically with least human efforts
Inconvénients
There is a delay in logs sync and from source to processing in Qradar.It's not work in real-time it takes a minimum of 5 minutes to investigate it.Integration with real-time stream is not an easy task