Try our new research platform with insights from 80,000+ expert users

Fortinet FortiAnalyzer vs IBM Security QRadar comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 8, 2024
 

Categories and Ranking

Fortinet FortiAnalyzer
Ranking in Log Management
8th
Average Rating
8.0
Reviews Sentiment
7.5
Number of Reviews
89
Ranking in other categories
No ranking in other categories
IBM Security QRadar
Ranking in Log Management
6th
Average Rating
8.0
Reviews Sentiment
7.5
Number of Reviews
204
Ranking in other categories
Security Information and Event Management (SIEM) (4th), User Entity Behavior Analytics (UEBA) (1st), Endpoint Detection and Response (EDR) (18th), Security Orchestration Automation and Response (SOAR) (4th), Managed Detection and Response (MDR) (10th), Extended Detection and Response (XDR) (14th)
 

Mindshare comparison

As of November 2024, in the Log Management category, the mindshare of Fortinet FortiAnalyzer is 2.4%, down from 3.7% compared to the previous year. The mindshare of IBM Security QRadar is 4.7%, down from 5.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management
 

Featured Reviews

Kiarash Heydari - PeerSpot reviewer
We can automate event-based handling solutions, is stable, and is great for heavy traffic
The solution has very heavy features. Similar to when we get an app, usually, it's less than what we want. When we send all our logs over to the analyzer, it almost crashed on the first try. We must first get our logs tuned up and then set up the Fortinet FortiAnalyzer or it will crash. This is very complicated and heavy work for such a simple task, and it's a big issue for that app. The setup of the solution can be improved because it is currently complex. The cost of the solution is high and can be improved.
Muzzamil Hussain - PeerSpot reviewer
Is easy to integrate and doesn't require maintenance
One major drawback we are facing is in the area of IBM Security QRadar integration with flat file databases. IBM Security QRadar does not support flat file database integration. We are currently facing an issue with respect to the database, which you normally call a NoSQL database. There is no direct integration mechanism available with IBM Security QRadar. We have to approach IBM and generate a ticket so that they can develop a custom method for the integration. In database integration, we are facing issues with IBM Security QRadar. The solution does not support the integration of flat file databases. Certain organizations have flat file databases. IBM does not support direct integration with some databases. We had to create a plug, and we requested IBM to develop a parser, but it is taking IBM a couple of months to develop it. I think a flat-file database should be supported directly instead of developing a parser plugin. There should be a more refined threat intelligence platform, and cross-integration should be possible with locally available threat intelligence platforms.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Logging is the best feature."
"From my perspective, we need to see the traffic in a good way so we can know what has happened in our network. The analyzing tools and the monitoring tools and the logs are the important part in the network."
"Provides detailed log reports"
"I would say that Fortinet's tech support is really good."
"It is easy to integrate Fortinet FortiAnalyzer with other products. You have a better overview of what's going on."
"The reporting features, which offer customization, real-time insights, and compliance support, are particularly noteworthy aspects."
"It is one of the best firewall products."
"We use the solution for enterprise firewalls, URL filtering, and SD-WAN."
"The product has plenty of features and capabilities."
"Regarding the tool's ability to maintain high-security standards, I rate it ten out of ten."
"It is a very good SIEM."
"There are other third-party plugins that we can use."
"This solution has allowed us to correlate logs from multiple sources."
"Integration is very easy and the reporting is good."
"This is a distributed application, meaning that a customer can stack small and then scale it so that they can expand pretty effectively. You can use, basically, the same product in an SMB or a large enterprise."
"The most valuable feature is user behavior analytics (UBA)."
 

Cons

"Though FortiAnalyzer has improved over the last few versions, the user interface still has room for improvement. It's a bit dated-looking."
"The solution does not function well with third-party tools"
"Fortinet FortiAnalyzer can improve by introducing integration with other Fortinet solutions with automation with one interface would be helpful."
"We are concerned about the compliance of our policy and institutional philosophy."
"The integration between specific tenants and FortiAnalyzer can be simplified when utilizing a multi-tenant EMS for our FortiClient."
"They could always improve the interface and the user experience."
"FortiAnalyzer only integrates with Fortinet solutions. That is a limitation because many organizations use multiple vendors. It's often a mixture of Cisco network hardware and equipment from other vendors, such as switches, access points, etc."
"The interface or GUI does not work properly on Microsoft Edge. The behavior or the view is different on Microsoft Edge versus on Chrome or Firefox. When some buttons do not work, I am forced to switch to Firefox."
"QRadar needs a lot of fine tuning"
"It is not app based."
"What needs to be improved in IBM QRadar User Behavior Analytics is the user experience. It's not optimal. Some screens are a bit clunky. The solution needs to be more user-friendly."
"Their technical support is not good. We opened a lot of cases and from my experience, they are not complicated issues but it takes forever to get an answer."
"For future updates, I'd like to see more advanced threat intelligence features integrated with AI. This would help with analyzing traffic patterns and improving protection. QRadar currently doesn't integrate with AI for threat analysis. However, AI could enhance its capabilities by learning traffic patterns and automatically blocking or quarantining suspicious traffic. This would be especially useful when administrators are not actively monitoring. AI could help by analyzing incoming and outgoing traffic and adjusting policies accordingly."
"Whenever we are upgrading or installing any type of patch, at that time we have some delays."
"They should speed up the incident response and also, at the same time, reduce the amount of manual effort that is required."
"AI is superb but need improvements."
 

Pricing and Cost Advice

"I believe that these devices were procured with a five-year maintenance and support license up front. I work at a university, so the vendor provides a considerable higher ed discount."
"The company's choice to utilize Fortinet FortiAnalyzer was based on the overall security strategy and compatibility with existing solutions. It was deemed the best fit as it provided a centralized point of visibility for all of their security solution, including Fortinet FortiGate firewall, FortiClient, Forti EMS, and FortiAP. The company conducted a thorough evaluation of various solutions in the market but found that none of them could fully integrate and manage all their solutions as effectively as Fortinet FortiAnalyzer."
"The program is expensive."
"Its worth spending on FortiAnalyzer if you have multiple firewalls in your network."
"I believe that Fortinet is a cost-effective brand, making it a competitive option in terms of pricing."
"Its price is okay for us. Fortinet products are cheaper than other solutions."
"When comparing with other solutions such as Checkpoint and Cisco, Fortinet is priced well."
"The pricing of this solution is fair, and it is based on what you can manage."
"Go through a vulnerability assessment review for price breaks. A virtualized solution will also cut down on cost."
"An X-Force feed is free with QRadar."
"It is cheaper than ArcSight."
"It's too expensive."
"Only enterprise businesses can afford the tool."
"IBM's Qradar is not for small companie. Unfortunately, it would be 'overkill' to place it plainly. The pricing would be too much."
"The maintenance costs are high."
"When it comes to the initial pricing there can be a huge discount from there side and also I think they are open to competing with other products."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
816,406 professionals have used our research since 2012.
 

Comparison Review

VS
Jun 28, 2015
Qradar vs. ArcSight
Continuing with the SIEM posts we have done at Infosecnirvana, this post is a Head to head comparison of the two Industry leading SIEM products in the market – HP ArcSight and IBM QRadar Both the products have consistently been in the Gartner Leaders Quadrant. Both HP and IBM took over niche SIEM…
 

Top Industries

By visitors reading reviews
Computer Software Company
18%
Government
8%
Financial Services Firm
7%
Manufacturing Company
7%
Educational Organization
23%
Computer Software Company
14%
Financial Services Firm
10%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Fortinet FortiAnalyzer?
The reporting features, which offer customization, real-time insights, and compliance support, are particularly noteworthy aspects.
What is your experience regarding pricing and costs for Fortinet FortiAnalyzer?
Fortinet FortiAnalyzer is quite an expensive tool. On a scale from one to ten, where one is cheap and ten is expensive, I rate the solution's pricing an eight out of ten.
What needs improvement with Fortinet FortiAnalyzer?
Fortinet has a new bug every month, which needs to be improved.
What are the biggest differences between Securonix UEBA, Exabeam, and IBM QRadar?
It mostly depends on your use-cases and environment. Exabeam and Securonix have a stronger UEBA feature set, friendlier GUI and are not licensed based on capacity (amount of logs and information in...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What do you like most about IBM QRadar?
The event collector, flow collector, PCAP and SOAR are valuable.
 

Also Known As

No data available
IBM QRadar, QRadar SIEM, QRadar UBA, QRadar on Cloud, QRadar, IBM QRadar User Behavior Analytics, IBM QRadar Advisor with Watson
 

Learn More

 

Overview

 

Sample Customers

General Directorate of Information Technology
Clients across multiple industries, such as energy, financial, retail, healthcare, government, communications, and education use QRadar.
Find out what your peers are saying about Fortinet FortiAnalyzer vs. IBM Security QRadar and other solutions. Updated: October 2024.
816,406 professionals have used our research since 2012.