Try our new research platform with insights from 80,000+ expert users

IBM Security QRadar vs Secureworks Taegis Managed XDR / MDR comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jul 13, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

IBM Security QRadar
Ranking in Managed Detection and Response (MDR)
9th
Average Rating
8.0
Reviews Sentiment
6.8
Number of Reviews
209
Ranking in other categories
Log Management (5th), Security Information and Event Management (SIEM) (4th), User Entity Behavior Analytics (UEBA) (1st), Endpoint Detection and Response (EDR) (15th), Security Orchestration Automation and Response (SOAR) (4th), Extended Detection and Response (XDR) (13th)
Secureworks Taegis Managed ...
Ranking in Managed Detection and Response (MDR)
12th
Average Rating
7.8
Reviews Sentiment
7.1
Number of Reviews
14
Ranking in other categories
Managed Security Services Providers (MSSP) (2nd)
 

Mindshare comparison

As of July 2025, in the Managed Detection and Response (MDR) category, the mindshare of IBM Security QRadar is 0.8%, up from 0.7% compared to the previous year. The mindshare of Secureworks Taegis Managed XDR / MDR is 3.7%, down from 5.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Managed Detection and Response (MDR)
 

Featured Reviews

Mahmoud Younes - PeerSpot reviewer
Reliable installation and diverse use cases provide strong value
IBM Security QRadar has some areas for improvement. We have missed some DSM components. We need to customize logs where there is no DSM or connector for certain products. We can integrate but we have missed the DSM, which is the connector to pass logs coming from different applications. For example, with a university customer, we tried onboarding Canvas service. IBM Security QRadar does not support Canvas, so we had to create custom scripts and workarounds to pull logs from Canvas.
Tom Kar - PeerSpot reviewer
Has a user-friendly setup process, but its query language needs improvement
The product has valuable features for the EDR section. We can easily isolate affected machines in the network. It helps us prevent the spreading of malware or ransomware further Secureworks Taegis ManagedXDR's query language and stability need improvement. Additionally, its price could be better…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The correlation and the parsing are important features, since it is very important for a SIEM to have a good scalability and performance."
"The most valuable features of IBM Security QRadar are flexibility, IBM support, and scalability."
"I have found IBM QRadar to be stable."
"I have used IBM QRadar User Behavior Analytics in a Cloud Pak on Amazon, and there it runs on top of it and is easy to assess. Additionally, I have installed processes and characters."
"In addition to using this solution for our security operations center, we are using it for our other customers."
"The visibility it gives you into your infrastructure has been great."
"The most valuable features are log monitoring, easy-to-fix issues, and problem-solving."
"Currently, it is very stable."
"We don't have a full SOC, so it's helpful to have them sifting through our alerts and only bringing actionable items to us."
"The most valuable feature is the support. The support chat. It's always connecting to people. And you open the chat, and it's not about that automated response. It's actually a human being that responds to you."
"The most valuable feature is the fast alerting and response time."
"It provides more visibility and more control over endpoints. It reduces the noise. It clears things and only shows things that are really important. It only shows those things that need to be looked at or need to be investigated further. Other similar solutions give you a lot of alerts and other things, but Secureworks gives you a defined or less noisy view so that you can work or focus on things that are important in terms of investigation, response, and remediation."
"The most valuable features are IDS and IPS."
"Secureworks Taegis Managed XDR MDR is a great product that has not posed any challenges from my perspective."
"We can easily isolate affected machines in the network."
"The pricing is flexible."
 

Cons

"A lot of information that we receive for the devices is IP-based, but it would help if we could have a default dashboard in which we can add more details about the assets for which we are receiving the information. For example, if it is a Windows or Linux device, we only get the IP for that particular device. We don't really get the name and other details of that particular device. For that, you have to drill down into your own asset management system. It would be good to have a place where we can probably add this information so that we don't have to look into other tools."
"QRadar needs to be improved on the storage side, particularly when the disc exceeded the maximum threshold."
"The technical support is poor. Mostly because when I open a PMR for IBM, I am stuck with Level 1 staff. As an engineer, nothing that I am bringing them does not require Level 2 or Level 3 support."
"I need a solution which will send alerts in the event of any behavior."
"I have noticed the interface has room for improvement."
"The dashboard and reports are not user-friendly or efficient so are of little help with threat hunting activity."
"The solution is expensive compared to other products."
"Improving the integration with IBM Server for MetaMask for correlation rules would be beneficial. Currently, I use Sentinel in Azure, and I would prefer creating one rule to roll it out to both Sentinel and QRadar. However, this is not possible because QRadar lacks this capability."
"The integration would look better with other products, with other EDRs, with other firewalls, with other older versions of firewalls, and the versions of software and hardware."
"Tamper-proofing or tamper protection is still pending in Secureworks. Tamper protection will make it more secure. If I'm an admin of a device, I can uninstall an agent without the knowledge of the security or Secureworks admin. If someone gets hold of one endpoint with admin credentials, he can remove anything, and an organization will lose visibility. They need to work on providing more visibility across endpoints. A couple of times it has happened that the cloak agent is there, but it did not get activated, or there were some issues. The machine was restarted, but the cloak agent didn't run. In such cases, you have to troubleshoot. It is a big issue if a cyber attack is happening, and your machine is rebooted, but the events are not captured."
"In the next release of this solution, I would like to see file integrity monitoring."
"We did a PoC of their next-gen antivirus product, but it wasn't ready yet. It was underdeveloped and caused a lot of issues. We'd like to move away from Carbon Black, but they said that it's probably still not to a point where we'd be happy with it. Carbon Black and RedCloak seem to work fine for us."
"In terms of ROI, I'd be surprised if there is any investment return on the SIM."
"It would be nice if the solution were a little more affordable."
"The deployment could definitely be improved."
"Dell Secureworks could improve its integration with other third-party solutions."
 

Pricing and Cost Advice

"I feel that the price is reasonable but compared to other products that are on the market, such as an offering by Microsoft, it is more expensive."
"The pricing is always fine."
"When compared with other SIM solutions, QRadar is considerably less expensive."
"In terms of additional costs, it depends on the subscription that you choose. There are plenty of options to choose from."
"We use QRadar as a managed service and we pay licensing fees to the partner."
"IBM Security QRadar is a very expensive tool."
"Customers have to purchase a license based on the number of users, devices, and applications they want to protect. It allows you to take a license on a subscription basis for three years or five years."
"There are different types of subscriptions available. We were on an annual subscription, but our customers typically choose the two years subscription option."
"The pricing of Dell Secureworks is very reasonable."
"Initially, the cost was going to be something around $160 or $170. And eventually, I think they brought it down to $110 and they also threw in some endpoint protection platforms."
"It is expensive but there is no better product than this."
"The Red Cloak agent is free."
"The pricing for this solution is reasonable. One agent costs approximately 270 dirhams/70 USD for one year. There is a reduction in cost per licence as the number of licences used increases."
"The price is kind of on par. The licensing was comparable to other solutions. It's not particularly high or low."
"Secureworks Taegis ManagedXDR is very expensive and could be more cost-effective."
report
Use our free recommendation engine to learn which Managed Detection and Response (MDR) solutions are best for your needs.
861,524 professionals have used our research since 2012.
 

Comparison Review

VS
Jun 28, 2015
Qradar vs. ArcSight
Continuing with the SIEM posts we have done at Infosecnirvana, this post is a Head to head comparison of the two Industry leading SIEM products in the market – HP ArcSight and IBM QRadar Both the products have consistently been in the Gartner Leaders Quadrant. Both HP and IBM took over niche SIEM…
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Financial Services Firm
12%
Manufacturing Company
7%
Government
7%
Computer Software Company
22%
Financial Services Firm
8%
Manufacturing Company
8%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What are the biggest differences between Securonix UEBA, Exabeam, and IBM QRadar?
It mostly depends on your use-cases and environment. Exabeam and Securonix have a stronger UEBA feature set, friendlier GUI and are not licensed based on capacity (amount of logs and information in...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What is your experience regarding pricing and costs for IBM Security QRadar?
When comparing with Splunk, IBM Security QRadar's cost is reasonable. Splunk is more expensive than IBM Security QRadar.
What do you like most about Secureworks Taegis ManagedXDR?
The most valuable feature is the support. The support chat. It's always connecting to people. And you open the chat, and it's not about that automated response. It's actually a human being that res...
What is your experience regarding pricing and costs for Secureworks Taegis ManagedXDR?
It is worth the money. It is expensive but there is no better product than this.
What needs improvement with Secureworks Taegis ManagedXDR?
I would not say there is a potential area of improvement. I am also waiting to see what Sophos will bring in terms of enhancement. There is room for AI integration as the industry evolves, and more...
 

Also Known As

IBM QRadar, QRadar SIEM, QRadar UBA, QRadar on Cloud, IBM QRadar Advisor with Watson
Secureworks Red Cloak Managed Detection and Response, Dell Secureworks, SecureWorks Taegis Managed TDR
 

Overview

 

Sample Customers

Clients across multiple industries, such as energy, financial, retail, healthcare, government, communications, and education use QRadar.
RICOH, Owens and Minor
Find out what your peers are saying about IBM Security QRadar vs. Secureworks Taegis Managed XDR / MDR and other solutions. Updated: June 2025.
861,524 professionals have used our research since 2012.