Overview
QRadar provides log management, offence correlation, network flow analytics (QNI), and a rich app exchange. IBM has agreed to transition QRadar SaaS customers to Palo Alto Networks Cortex XSIAM; on-premises QRadar continues to be supported.
Offence-based investigation
Yes
Network flow analytics (QNI)
Yes
User Behaviour Analytics (UBA)
Yes
App exchange ecosystem
Yes
Features
5 itemsOffence-based investigation
Yes
Network flow analytics (QNI)
Yes
User Behaviour Analytics (UBA)
Yes
App exchange ecosystem
Yes
On-premises or cloud
Yes
Pricing
Pricing Snapshot
Custom quote
Pricing details are summarized from the current product dataset. Check the vendor website for final quotes, plan structure, and regional availability.
Frequently Asked Questions
Related Products
View moreSplunk Enterprise Security
Splunk LLC (a Cisco company)
Splunk Enterprise Security is a market-leading SIEM built on the Splunk data platform with correlation searches, risk-based alerting, and SOAR integration.
Pricing
Custom quote (ingestion-based)
Microsoft Sentinel
Microsoft Corporation
Microsoft Sentinel is a cloud-native SIEM and SOAR built on Azure, with deep integration to Microsoft 365 Defender, AI investigation, and a broad connector catalogue.
Pricing
Pay-as-you-go ingestion; commitment tiers available
Elastic Security
Elasticsearch B.V.
Elastic Security is an open SIEM built on the Elastic Stack, with EDR, threat hunting, and limitless log analytics on Elasticsearch.
Pricing
Self-managed (free tier) or Elastic Cloud subscription
LogRhythm Axon
LogRhythm, Inc. (Exabeam)
LogRhythm Axon is a cloud-native SIEM with structured investigations, behavioural analytics, and SmartResponse automation, now part of Exabeam.
Pricing
Custom quote
Ensign InfoSecurity Managed SOC (SIEM/SOAR)
Ensign InfoSecurity Pte. Ltd.
Ensign InfoSecurity operates a managed SOC delivering 24/7 SIEM-based monitoring, threat hunting and incident response for enterprises and CII operators in Singapore.
Pricing
Custom enterprise pricing
