Try our new research platform with insights from 80,000+ expert users

CrowdStrike Observability vs IBM Security QRadar comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 5, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

CrowdStrike Observability
Ranking in Log Management
35th
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
2
Ranking in other categories
No ranking in other categories
IBM Security QRadar
Ranking in Log Management
6th
Average Rating
8.0
Reviews Sentiment
6.8
Number of Reviews
207
Ranking in other categories
Security Information and Event Management (SIEM) (4th), User Entity Behavior Analytics (UEBA) (1st), Endpoint Detection and Response (EDR) (18th), Security Orchestration Automation and Response (SOAR) (4th), Managed Detection and Response (MDR) (10th), Extended Detection and Response (XDR) (12th)
 

Mindshare comparison

As of February 2025, in the Log Management category, the mindshare of CrowdStrike Observability is 0.5%, down from 0.6% compared to the previous year. The mindshare of IBM Security QRadar is 4.0%, down from 5.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management
 

Featured Reviews

SM
Efficient resource management but backup extension needs improvement
The intelligence database provided by CrowdStrike is very impressive. It does not affect system performance, which is crucial for development purposes. Unlike other software that requires a lot of local resources, CrowdStrike is a thin tool and does not significantly impact the development environment. Additionally, manual intervention is minimal, leading to resource savings.
Md. Shahriar Hussain - PeerSpot reviewer
Real-time incident detection and user-friendly dashboard benefit daily operations
There are many types of AI, and this AI is very limited in SQL and features. There may be potential for improvement. So far, it seems very limited. It shows some good features in the correlation part, but I think there is room for improvement. For instance, when creating rules, it can suggest more rules, reducing the effort needed. If AI-related support can suggest rules and integrate with existing security devices like MD, IPS, this SIM can create more relevant rules. Sometimes logs I receive don't mean anything, and I need technical stakeholders to share or forward logs, but these are sometimes inadequate. Keywords can help identify insufficient logs. I often lack time to verify logs. Sharing false positive results could be reduced to help my team.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The log aggregation and correlation of data are notable features that enhance our operations."
"The intelligence database provided by CrowdStrike is very impressive."
"The price is worth it."
"The intelligence database provided by CrowdStrike is very impressive."
"The pre-canned rules and reports in this product are a huge plus."
"One of the most valuable features of this solution is it has very good data correlation."
"What I like about IBM QRadar User Behavior Analytics is that it uses machine learning algorithms to generate risk scoring for the user activity. I also like that it syncs with our Active Directory users, so it really has full coverage for all users in our environment."
"IBM Security QRadar has significantly improved our incident response procedures."
"This is a good tool to have because it gives you the ability to track what is currently happening in your environment."
"It has improved my efficiency."
"IBM QRadar has improved my organization by introducing many functions. It collects logs from all of our systems in the organization and has functioned very well. It alerts and correlates the aggregate events or offenses we receive through all the applications we use."
"The scalability is awesome, because QRadar includes other solutions in the same console."
 

Cons

"For reporting or log management, having a longer duration for backup without needing to purchase a paid subscription would be beneficial. Currently, there is a default ninety-day backup period."
"For reporting or log management, having a longer duration for backup without needing to purchase a paid subscription would be beneficial."
"Integration with Huawei should be more straightforward."
"Integration with Huawei should be more straightforward."
"The solution could improve by having more out-of-the-box use cases."
"There was some complexity in the initial setup due to bandwidth issues."
"The implementation of the solution's technology needs to be simplified."
"AI is superb but need improvements."
"Before we didn't have any security issues but recently a few of the user emails were hacked. We had to actually recreate their emails for them."
"Whenever we are upgrading or installing any type of patch, at that time we have some delays."
"I would like for them to develop a detection management solution. It does not have a detecting management solution in it, you have to buy it as it is, on top of the extended solution."
"The biggest problem was built on top of the QRadar in the executive operations center network. The integration was not using the network security specialist properly, and all the incidents were inferior with QRadar. Its compatibility is not really good."
 

Pricing and Cost Advice

Information not available
"They can give us some scalability and flexibility on pricing. If its pricing can be reduced, it would help a lot of customers in bringing in a new SIEM environment and grow business in the market. If I start a license today and take around 10,000 EPS, and after a month, there is an increase in the number of clients on my platform, I can increase the number of licenses. I can add 5,000 EPS on a yearly basis."
"The pricing needs to be such that they are more competitive with other vendors."
"There is an annual license required for this solution."
"The solution is priced fairly, there is a license for the solution, and we pay annually."
"QRadar UBA's price is a little more than street price and could be reduced."
"The pricing is always fine."
"It's too expensive."
"There is a license required for this solution and it is an annual payment. I have found all solutions in the category to be expensive, including Splunk."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
838,713 professionals have used our research since 2012.
 

Comparison Review

VS
Jun 28, 2015
Qradar vs. ArcSight
Continuing with the SIEM posts we have done at Infosecnirvana, this post is a Head to head comparison of the two Industry leading SIEM products in the market – HP ArcSight and IBM QRadar Both the products have consistently been in the Gartner Leaders Quadrant. Both HP and IBM took over niche SIEM…
 

Top Industries

By visitors reading reviews
Computer Software Company
17%
Financial Services Firm
15%
Manufacturing Company
7%
University
6%
Educational Organization
24%
Computer Software Company
14%
Financial Services Firm
10%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What needs improvement with CrowdStrike Observability?
Integration with Huawei should be more straightforward.
What is your primary use case for CrowdStrike Observability?
In my organization, the financial aspect in the bank is a significant factor influencing our operations.
What advice do you have for others considering CrowdStrike Observability?
The price is worth it. If I were to rate it on a scale from one to ten, with ten meaning a very good solution, I would rate it nine out of ten.
What are the biggest differences between Securonix UEBA, Exabeam, and IBM QRadar?
It mostly depends on your use-cases and environment. Exabeam and Securonix have a stronger UEBA feature set, friendlier GUI and are not licensed based on capacity (amount of logs and information in...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What is your experience regarding pricing and costs for IBM Security QRadar?
The cost depends. The price I negotiated varies by region and relationship with the OEM. Cost is not shared due to another procurement team handling negotiations, but it was reasonable as far as I ...
 

Also Known As

No data available
IBM QRadar, QRadar SIEM, QRadar UBA, QRadar on Cloud, IBM QRadar Advisor with Watson
 

Overview

 

Sample Customers

Information Not Available
Clients across multiple industries, such as energy, financial, retail, healthcare, government, communications, and education use QRadar.
Find out what your peers are saying about Splunk, Wazuh, Datadog and others in Log Management. Updated: February 2025.
838,713 professionals have used our research since 2012.