Try our new research platform with insights from 80,000+ expert users

IBM Application Performance Management vs IBM Security QRadar comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

IBM Application Performance...
Average Rating
6.4
Reviews Sentiment
5.9
Number of Reviews
7
Ranking in other categories
Application Performance Monitoring (APM) and Observability (58th)
IBM Security QRadar
Average Rating
8.0
Reviews Sentiment
7.5
Number of Reviews
204
Ranking in other categories
Log Management (6th), Security Information and Event Management (SIEM) (4th), User Entity Behavior Analytics (UEBA) (1st), Endpoint Detection and Response (EDR) (18th), Security Orchestration Automation and Response (SOAR) (4th), Managed Detection and Response (MDR) (10th), Extended Detection and Response (XDR) (14th)
 

Mindshare comparison

IBM Application Performance Management and IBM Security QRadar aren’t in the same category and serve different purposes. IBM Application Performance Management is designed for Application Performance Monitoring (APM) and Observability and holds a mindshare of 0.4%, down 0.5% compared to last year.
IBM Security QRadar, on the other hand, focuses on Security Information and Event Management (SIEM), holds 9.5% mindshare, up 9.3% since last year.
Application Performance Monitoring (APM) and Observability
Security Information and Event Management (SIEM)
 

Featured Reviews

Daniel Tamiru - PeerSpot reviewer
A multi-functional solution but has poor stability and performance-related issues
We are using version 4 of IBM Application Performance Management, and it is deployed on-premises. We use it for internet banking and mainly for application performance on-site. For example, if we face performance-related issues in one of our software or managed services, we use this solution to…
Muzzamil Hussain - PeerSpot reviewer
Is easy to integrate and doesn't require maintenance
One major drawback we are facing is in the area of IBM Security QRadar integration with flat file databases. IBM Security QRadar does not support flat file database integration. We are currently facing an issue with respect to the database, which you normally call a NoSQL database. There is no direct integration mechanism available with IBM Security QRadar. We have to approach IBM and generate a ticket so that they can develop a custom method for the integration. In database integration, we are facing issues with IBM Security QRadar. The solution does not support the integration of flat file databases. Certain organizations have flat file databases. IBM does not support direct integration with some databases. We had to create a plug, and we requested IBM to develop a parser, but it is taking IBM a couple of months to develop it. I think a flat-file database should be supported directly instead of developing a parser plugin. There should be a more refined threat intelligence platform, and cross-integration should be possible with locally available threat intelligence platforms.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Because we have partnerships with other partners, I can share a bit about what I've noticed with IBM APM compared to other vendor solutions. Specifically, with IBM, the visibility into detailed process information is more tangible. On the OS level, APM displays all processes (or the top 10 processes) that are consuming CPU or resident memory. This is the most important thing that is not always available with other vendors."
"The initial setup was straightforward and took minimal effort."
"I would rate the scalability an eight out of ten."
"The most valuable feature is the breakdown that it provides, such as a description of the fields for a particular transaction."
"It's easy to use."
"The transaction tracking feature from IBM is the most important feature for us. It is something that provides a terrific value for us and our clients. It has a lot of data sources and agents that are collectors. It is also stable."
"IBM Application Performance Management helped us increased our response time by 80% and cost 60% less."
"It can analyze event logs, event security, and give a good consult."
"It is a pretty solid product for the type that it is representing. It is a CM solution as compared to Splunk or ArcSight from HP. It is also user friendly. It comes with some internal AI as well, in which it automatically maps multiple lots from unrelated devices and makes a smart decision to link them back and create an offense based on that. It is a smart tool."
"It has very rich functionality."
"The event collector, flow collector, PCAP and SOAR are valuable."
"The features that I have found most valuable in QRadar are its data enrichment, use case creations, and adding references - those kinds of features are very good. Also QRadar's event filtration and device integration are perfect."
"It is a scalable solution."
"The initial setup is not complex or difficult."
"The most valuable feature is the QRadar Vulnerability Manager which provides vulnerability scans. In addition, I like the way QRadar generates alerts."
 

Cons

"The stability is not great and should be better."
"Its web user interface is a little bit old in comparison to other solutions, such as New Relic, and it should be improved. Its scalability and technical support should also be improved. Currently, it is scalable, but only in a vertical way. They provide good technical support, but the initial steps for a new case can be improved to fasten the resolution process."
"It's still missing some platforms. For example, if you look to applications itself, it is missing the interface."
"They should focus on potentially enhancing the dashboard to make it more contemporary and adding some customization options. Furthermore, there might be room for improvement in the pricing policy."
"With APM, we noticed that the agent can cause a lot of issues for the application, making the agent very unreliable. Many issues are happening, and we've had to discuss it with support to try and get a fix. It affects application availability, and sometimes actions fail because of the agent, degrading the performance of the application."
"The demo that was provided to us is not working very well. At times, there are errors."
"Technical support can be slow and needs improvement."
"Their technical support is not good. We opened a lot of cases and from my experience, they are not complicated issues but it takes forever to get an answer."
"The initial setup requires that you have somebody with the proper skill set, and it would help if the configuration were easier."
"The solution is expensive compared to other products."
"The playbook guide which specifies the rules for security use cases needs to be provided to support in case the organization needs help."
"The IBM support can be better."
"From a functionality point of view there are issues sometimes."
"Do your research before implementing it, because it is tough to implement."
"The solution lacks vendor support."
 

Pricing and Cost Advice

"The licensing fees can be paid every six months or on a yearly basis."
"IBM APM is one of the cheaper products on the market, while everything necessary to get started is included in the license."
"As I previously indicated, I initiated the IBM and uncovered all its elements. Consequently, I'm not inclined towards a licensing approach."
"Most of the time, it is easier and cheaper to buy a new product or the QRadar box."
"On a scale of one to ten, I rate the price a one, where one is an extremely expensive product, and ten is a cheap product."
"I feel that the price is reasonable but compared to other products that are on the market, such as an offering by Microsoft, it is more expensive."
"As for licensing costs, I haven't seen the exact figures, but it is considered somewhat costly. On a scale from one to ten, where one is very expensive and ten is very cheap, I would rate it a six—it’s costly but worth the money."
"We use QRadar as a managed service and we pay licensing fees to the partner."
"It is overly expensive and overly complex in terms of licensing. They have many different appliances, which makes it extremely difficult to choose the technology. It is very difficult to choose the technology or QRadar components that you should be deploying. They have improved some of it in the last few years. They have made it slightly easy with the fact that you can now buy virtual versions of all the appliances, which is good, but it is still very fragmented. For instance, on some of the smaller appliances, there is no upgrade path. So, if you exceed the capacity of the appliance, you have to buy a bigger appliance, which is not helpful because it is quite a major cost. If you want to add more disks to the system, they'll say that you can't."
"This price is a little high, so it's an expensive product."
"Our licensing costs for this solution is on a yearly basis."
report
Use our free recommendation engine to learn which Application Performance Monitoring (APM) and Observability solutions are best for your needs.
816,406 professionals have used our research since 2012.
 

Comparison Review

VS
Jun 28, 2015
Qradar vs. ArcSight
Continuing with the SIEM posts we have done at Infosecnirvana, this post is a Head to head comparison of the two Industry leading SIEM products in the market – HP ArcSight and IBM QRadar Both the products have consistently been in the Gartner Leaders Quadrant. Both HP and IBM took over niche SIEM…
 

Top Industries

By visitors reading reviews
Financial Services Firm
21%
Computer Software Company
15%
Government
11%
University
7%
Educational Organization
23%
Computer Software Company
14%
Financial Services Firm
10%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What needs improvement with IBM Application Performance Management?
They should focus on potentially enhancing the dashboard to make it more contemporary and adding some customization options. Furthermore, there might be room for improvement in the pricing policy. ...
What is your primary use case for IBM Application Performance Management?
I monitor business applications for more than four end users.
What are the biggest differences between Securonix UEBA, Exabeam, and IBM QRadar?
It mostly depends on your use-cases and environment. Exabeam and Securonix have a stronger UEBA feature set, friendlier GUI and are not licensed based on capacity (amount of logs and information in...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What do you like most about IBM QRadar?
The event collector, flow collector, PCAP and SOAR are valuable.
 

Also Known As

IBM APM
IBM QRadar, QRadar SIEM, QRadar UBA, QRadar on Cloud, QRadar, IBM QRadar User Behavior Analytics, IBM QRadar Advisor with Watson
 

Learn More

 

Overview

 

Sample Customers

Mibtree, EatDrinkDeals.com, IT Performance Advisor
Clients across multiple industries, such as energy, financial, retail, healthcare, government, communications, and education use QRadar.
Find out what your peers are saying about Datadog, Dynatrace, New Relic and others in Application Performance Monitoring (APM) and Observability. Updated: November 2024.
816,406 professionals have used our research since 2012.