IBM Security QRadar

 View Only

Welcome to the IBM Security QRadar User Community
As a participant, connect with QRadar subject matter experts and get answers to your biggest concerns on detecting and stopping advanced threats, insider threats, compliance, and your cloud strategy. Also, share ideas, benchmarks, best practices, and lessons learned with other QRadar users.

As a member of this online user community, you gain:

  • Direct engagement with IBM subject matter experts
  • Tips and tricks from your industry peers
  • News, announcements, and enhancement details

You’ll also get information regarding our regional and virtual user group meetings, upcoming webinars, how-to blogs, and training.
We invite you to participate and ask that you contact with any questions.

Latest Discussions

  • i need someone to support me ------------------------------ Donald Lavag ------------------------------

  • This is the answer I got from Support: "There is no polling interval for the Azure Event Hub Protocol. We use azure event hub SDK provided class called EventProcessorHost to set up a persistent connection to receive event hub messages." ------------------------------ ...

  • Profile Picture

    RE: Offense URL

    Nikoloz Im terribly sorry cause my explanation was misunderstood. I'll try again. Your script is ok. However while you walk trhough your response process you work on events identified in the 1st place, right? If that is the case your offense id shown ...

Latest Blogs

  • Welcome one and welcome all! It's been a while since my last blog entry, and yes, I can say I've been a bit busy but that doesn't take away from the constant discovery of features around QRadar, including some that seem to be as of yet, not included ...

  • To all of our WinCollect users, we have some exciting news. With the previous release of WinCollect 10.1.1 and the support for mTLS that went along with it, the next release of WinCollect 10.1.2 comes with added support for using ...

    1 person likes this.
  • Hi guys I wanted to talk with you about a platform where you can look at the Mitre mapping of the QRadar content with another view . The platform I am talking about is Tidal ( Tidal website ). What Tidal allows you to do is to pivot in the att&ck ...

  • INTRODUCTION When a device sends logs to IBM QRadar, QRadar parses the events using a Device Support Module (DSM) so that it can fully utilize the normalized/parsed data for further processing. The DSM used depends on the type of device. A full list ...

    6 people like this.
  • Napatech Software Suite, which is the 3rd generation driver for Napatech adapters (3GD for short) is the Napatech's new stack that was released along with migration to RHEL7 in QRadar ("napatech" service is no longer supported in RHEL7). It is a broad ...

Upcoming Events

Community Members
3852 Members
group Admin
group Moderator
group Leadership
group Admin
group Admin
group Moderator