We performed a comparison between IBM Security QRadar, IBM SevOne Network Performance Management (NPM), and Quest InTrust based on real PeerSpot user reviews.
Find out what your peers are saying about Splunk, Wazuh, Datadog and others in Log Management."It's a state-of-the-art product for security information and event management (SIEM)."
"The tool is already automated in many ways, but there are some additional functions which should be automated, like sending an email, mobile notification, and integration of XFS."
"The product provides a complete platform for ingesting the log, doing the correlations and handling the runtime."
"It provides many options for searching. I can see devices from different vendors, like Cisco, in one interface, which is good for me."
"It'll get you from point A to B."
"The ability to add extensions is the most valuable feature. For example, extensions that provide valuable test ports."
"The scalability is awesome, because QRadar includes other solutions in the same console."
"I have found its network traffic log, network bit log, and QBI most valuable."
"The automation feature is good because if your CMDB is OK and it is already in sync, then the automation part is good to go."
"The out of the box reports and workflows are pretty good and they meet our requirements well."
"It's a great solution for highlighting and discovering useful information regarding our network's elements."
"The SMP and the xStats, which is for flat file integration, are both useful for integrating the various metrics that the device provides to monitor the performance of those systems."
"One of the solution's biggest strengths is its capacity management performance, with out-of-the-box reports through NMS, as well as its ability to collect NetFlow-related data from devices. The collection of network performance and flow data is important because we have many critical business applications."
"SevOne’s data collection functionality is very good. From a collection point of view, we pull SNMP data, which is simple. It is easy to manipulate the pull in the estate. It is really simple compared to some of the other products that we have used. However, for deferred data, i.e., things that we import or don't pull directly, we tend to have a preplanned integration. So, its Universal Collector is really useful."
"The network data collection has been very flexible for us. It's been thorough in areas that were lacking. They have a team that I've worked with to add other pieces to it. So if it's missing something out of the box, they work with me to add it. I was able to collect that data. It's not perfect, but it's pretty thorough."
"One of the most valuable features is the graphs, which you can build instantly. I have used some open-source platforms in the past, but they are not as good. With SevOne, the sampling in the graph can be every few seconds, not just every few minutes, and that's really helpful. It's really fast."
"I would rate the technical support very well as they are knowledgeable and quick to respond."
"You can scale IBM QRadar User Behavior Analytics, but it has room for improvement."
"The AI engine could be smarter."
"IBM QRadar User Behavior Analytics could improve machine learning use cases because they are limited and most of the use cases are rule-based. They should develop more use cases, such as in Securonix or Exabeam because they will detect a threat. Using machine learning is mainly on the correlation rules, but if you think about Exabeam or Securonix, they detect using machine learning or machine learning-based algorithms."
"The user interface and configurability of IBM QRadar User Behavior Analytics can be improved. It has a lot of pre-configured settings and not many things can be changed. It also needs more integrations. Currently, User Behavior Analytics is integrated only with IBM QRadar. It could have deeper integrations. It can also have more complicated scoring models. Currently, it has a very simple linear scoring model for users."
"There are areas in IBM Security QRadar that could benefit from improvement. Its ability to customize knowledge for specific purposes could be enhanced. Also, it lacks clarity in presenting details. It is also difficult to see the reports."
"The solution could improve by having more out-of-the-box use cases."
"Some of the cloud apps need improvement."
"We sometimes get an error about the hard drive. Approximately once in two months, we can't find the logs, and they go missing, which is a terrible issue. We are getting support for this issue from our support company."
"I would like to see live maps as an added feature. Also, build modules on AI and EML to provide better data insights that would proactively tell us what we should be looking after."
"Their virtualization solution is not compatible with our Kubernetes environment, which is one of the reasons we are ending our relationship with them."
"The reports are easy to configure but they are a bit outdated in terms of appearance and visualization."
"The reporting of NMS is good, but it could be better."
"Software upgrades can be tricky is not easy."
"The customizations are very hard. The person doing it has to be very good at analytics and has to be very good in all languages"
"NMS has several areas for improvement. It should be more user-friendly inside of NMS for some of the functionality in there. It's been getting better the last version or two, but the there have been bugs in there whenever I've gone to new versions."
"The user management features need to be improved. It would be nice if we had more granular control, or layers of control, out of the box."
"It needs to have better reporting. "
"It was very complex. There was poor native correlation. "
More IBM SevOne Network Performance Management (NPM) Pricing and Cost Advice →
Earn 20 points