IBM Security QRadar EDR vs. Kaspersky EDR Optimum

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
IBM Security QRadar EDR
Score 7.4 out of 10
N/A
IBM Security QRadar EDR (formerly ReaQta) combines automation and dashboards to minimize analyst workloads, detect anomalous endpoint behavior and remediate threats in near real time. With visibility across endpoints, it combines expected features, like MITRE ATT&CK mapping and attack visualizations, with dual-engine AI and automation. For teams that need extended support, managed detection and response (MDR) services offers 24/7 monitoring and response to help keep users…N/A
Kaspersky EDR Optimum
Score 9.2 out of 10
Mid-Size Companies (51-1,000 employees)
Kaspersky Endpoint Detection and Response (EDR) Optimum helps identify, analyze and neutralize evasive threats by providing easy-to-use advanced detection, simplified investigation and automated response. It is a basic EDR tool for mid-market organizations who are just starting to build their incident response processes.
$14.50
per year on a 3 year license (Pricing is for a 3-year commitment, calculated per year). 1 and 2 year licenses also available. per endpoint
Pricing
IBM Security QRadar EDRKaspersky EDR Optimum
Editions & Modules
No answers on this topic
Kaspersky EDR Optimum
$14.50
per year on a 3 year license (Pricing is for a 3-year commitment, calculated per year). 1 and 2 year licenses also available. per endpoint
Offerings
Pricing Offerings
IBM Security QRadar EDRKaspersky EDR Optimum
Free Trial
YesYes
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeOptionalOptional
Additional Details
More Pricing Information
Features
IBM Security QRadar EDRKaspersky EDR Optimum
Endpoint Security
Comparison of Endpoint Security features of Product A and Product B
IBM Security QRadar EDR
7.9
Ratings
8% below category average
Kaspersky EDR Optimum
-
Ratings
Anti-Exploit Technology8.00 Ratings00 Ratings
Endpoint Detection and Response (EDR)8.30 Ratings00 Ratings
Centralized Management7.90 Ratings00 Ratings
Hybrid Deployment Support7.30 Ratings00 Ratings
Infection Remediation7.90 Ratings00 Ratings
Malware Detection7.90 Ratings00 Ratings
Best Alternatives
IBM Security QRadar EDRKaspersky EDR Optimum
Small Businesses
ThreatLocker
ThreatLocker
Score 9.5 out of 10
SentinelOne Singularity
SentinelOne Singularity
Score 8.7 out of 10
Medium-sized Companies
BlackBerry Protect (CylancePROTECT)
BlackBerry Protect (CylancePROTECT)
Score 9.1 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
Enterprises
BeyondTrust Endpoint Privilege Management
BeyondTrust Endpoint Privilege Management
Score 9.8 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
IBM Security QRadar EDRKaspersky EDR Optimum
Likelihood to Recommend
8.2
(0 ratings)
8.8
(0 ratings)
Performance
-
(0 ratings)
8.6
(0 ratings)
User Testimonials
IBM Security QRadar EDRKaspersky EDR Optimum
Likelihood to Recommend
IBM Security QRadaar EDR provides all the security features at one place with a reasonable price. Though for smaller organizations, the price may be quite high. Plus since it can detect threats and malwares in real time, every business should try them out.
Read full review
I’m convinced that the key is guaranteeing the 100% of coverage, with the best configuration possible and without pain or hit at resource consumption and harmonies performance.I would like that the solution detecting, inventorying, and alerting about some host/device unknow or don’t register in KSC. Don’t depend on Device Detection function.
Read full review
Pros
  • Uses advanced analytics to detect threats and malwares and vulnerabilities in real time.
  • Intuitive interface so everyone can use it.
  • Easy to implement and set it up.
Read full review
  • KEDR Optimum is helping to see threat kill chain formation, which helps to get clear picture of the what exactly attacker was trying to do during attack.
  • We are crating prevent execution rules to block the threat in our complete infra.
  • Ioc scan to validate and remove the any active threat entry from our endpoints
Read full review
Cons
  • use AI to review previous false negatives that contributed wrongly in the AI suggestion on the follow alerts
  • easily run a script based on values from an hash, ips, path inside the boxes on the behavioral tree
  • apply the remediation to a range of endpoint instead to only the endpoint of the current alert
  • use ajax for example to update the alert page automatically while actions are happening
  • for api have profiles that allow only get actions, or just post on some actions
  • create users in bulk
Read full review
  • Agent package size is little big, if it can be optimize with lite package would be great
  • If possible Host Integrity functionality can be added, to take action as quarantine the non-compliance machine to connect our enterprise network
  • Many times KSC cloud operating slow, if it can optimized for the faster response
Read full review
Likelihood to Renew
No answers on this topic
At the moment and unfortunately we'll not renew our licenses, due to the Russian conflict and the company policy that has forced us to get rid of any Russian related product. Before that incident, we were very happy with the product and we did not even think once about changing it... Maybe on the future...
Read full review
Performance
No answers on this topic
This item can always be improved, perhaps by pre-elaborating very long reports, such that they are built progressively so that when the user wants to consult them, the delay is minimal. It would also be interesting to have a warehouse of reports, which serves as a repository where they can be consulted whenever needed, adding AI capabilities that allow data to be linked together and improve the analysis and possible correlations of events.
Read full review
Alternatives Considered
Bitdefender GravityZone combines multiple security services into a single platform to reduce the cost of building a trusted environment for endpoints. bit the IBM provides a vast support and always there to guide when in need With the majority of our users working in hybrid mode we needed a strong security control that could provide top-class protection with the minimum amount of False Positives (and, of course, of True Positives).
Read full review
Kaspersky EDR Optimum is the evolution of Kaspersky Endpoint Bussiness, a more complete product, which runs the same software on Windows 11 and Windows Server. Now, we already use Kaspersky Sandbox on-premises, which has now been unified with KEDR as Cloud Sandbox. These improvements and unifications have made life easier for Security administrators.
Read full review
Return on Investment
  • NOCs and SOCs heavily use IBM Security QRadar EDR and IBM Security QRadar EDR reduced labor costs to identify endpoint security threats and the treat remediation
  • IBM Security QRadar EDR offers a consistent approach to endpoint threat identification and resolution, reduces enterprise security operations support costs
  • In general, IBM Security QRadar EDR enhances enterprise security posture
Read full review
  • In fact very positive, Advanced Threat Detection engine is strong
  • gives clear visibility as well and option respond on active threat immediately, Nice
  • Also implemented, Default deny using application control
  • Worth buying in single solution, many features
Read full review
ScreenShots

IBM Security QRadar EDR Screenshots

Screenshot of Behavioral tree: 
A behavioral tree provides full alert and attack visibility.Screenshot of Behavioral tree storyline: 
A visual storyline is automatically created as an attack unfolds, including mapping to MITRE ATT&CK, for full visibility.Screenshot of Cyber Assistant alerts: 
The Cyber Assistant, an AI-powered alert management system, can autonomously handle alerts, reducing analysts’ workloads.Screenshot of Cyber Assistant recommends:
The Cyber Assistant learns from analyst decisions, then retains the intellectual capital and learned behaviors to make recommendations and help reduce false positives.Screenshot of Custom detection strategies: 
Detection Strategy (DeStra) scripting allows users to build custom detection strategies — beyond preconfigured models — to address compliance or company-specific requirements without the need to reboot the endpoint.

Kaspersky EDR Optimum Screenshots

Screenshot of Screenshot of Screenshot of