We performed a comparison between ArcSight Logger and IBM Security QRadar based on real PeerSpot user reviews.
Find out in this report how the two Log Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."ArcSight provides the basic information that we want."
"It's an efficient solution."
"The log digestion features from threat intelligence platforms like Recorded Future or Talos are valuable."
"We haven't had any crashes or bugs. It is stable."
"In terms of ArcSight Logger's most valuable feature, it is their scalability. ArcSight's real advantage is its scalability because they have two layers, including the logger layer."
"We have a trigger. So, Logger automatically blocks these IP addresses. We could have Logger put them on a blacklist."
"The most valuable feature is the search capability, which is simple to use."
"It's a brilliant log collection tool, and it can handle hundreds of thousands of servers in a single shot to ingest the data."
"Senses, tracks, and links significant incidents and threats."
"It has improved comprehensive visibility for what is going on in the perimeters, and on the inside, as well."
"It is a very optimized engine."
"It provides many options for searching. I can see devices from different vendors, like Cisco, in one interface, which is good for me."
"The features that I have found most valuable in QRadar are its data enrichment, use case creations, and adding references - those kinds of features are very good. Also QRadar's event filtration and device integration are perfect."
"This solution has excellent security analytics."
"The best feature of IBM QRadar is visualization which shows you when there's a spike in the system, and this makes you realize that there's something wrong with the log."
"It also has a graph that shows the traffic history. I can see what happened yesterday or today. If there's an incident, I can check the traffic behavior on QRadar."
"The console in older versions is not user-friendly."
"The integration with other systems could be improved."
"I would rate the technical support only 5 out of 10. The technical support is not satisfactory."
"I had some latency issues for two months. I had to increase our storage capacity significantly to reduce the latency."
"The next release should have AI capabilities."
"In the next release, I want to see more intelligence."
"It's not a new product and is a bit complex. So, it requires a person dedicated to working on it and to know about it in and out. It is a huge product, and the search operation is a bit complicated for a new user or someone who has not used it for long. So for that person, it becomes a bit difficult."
"Using the ArcSight Logger dashboard is not particularly intuitive or efficient, so it is important to be trained in its use."
"The solution is difficult to understand in the beginning and has complex management configurations that can be improved."
"The whole process for support is something that needs to be improved."
"QRadar needs to be more specialized, along the lines of what other SIEM solutions are."
"We have had problems with networking."
"I would like for them to develop a detection management solution. It does not have a detecting management solution in it, you have to buy it as it is, on top of the extended solution."
"IBM QRadar has outdated technology, and this is its area for improvement. When you try to implement an analytic expression, it's not updated. The solution doesn't support newer technologies, and it doesn't update regularly. For example, around the world, others implement new technologies, while IBM updates later than others."
"In terms of additional features, a mobile app would be nice. Also, the reporting is definitely okay, but you have to make sure that everybody with different roles can understand it. There is room for improvement in the reporting."
"Whenever we are upgrading or installing any type of patch, at that time we have some delays."
ArcSight Logger is ranked 28th in Log Management with 31 reviews while IBM Security QRadar is ranked 6th in Log Management with 198 reviews. ArcSight Logger is rated 7.8, while IBM Security QRadar is rated 8.0. The top reviewer of ArcSight Logger writes "A scalable and stable solution that enables users to see all the event logs in one place". On the other hand, the top reviewer of IBM Security QRadar writes "A highly stable and scalable solution that provides good technical support". ArcSight Logger is most compared with Splunk Enterprise Security, Elastic Security, Wazuh, LogRhythm SIEM and syslog-ng, whereas IBM Security QRadar is most compared with Splunk Enterprise Security, Microsoft Sentinel, Wazuh, LogRhythm SIEM and Securonix Next-Gen SIEM. See our ArcSight Logger vs. IBM Security QRadar report.
See our list of best Log Management vendors.
We monitor all Log Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.