Our review of RQ from using their services for more that 6 months.
Rating: 7 out of 10
IncentivizedUse Cases and Deployment Scope
ReliaQuest provides us with Managed SOC services. They manage our Splunk infrastructure and they use our data from our servers to provide security services for us. They have created good custom content for us that meets our use cases and they try to provide end-to-end coverage of our SOC.
Pros
- SOC service.
- Managed services.
- Correlation searches.
Cons
- Some Analysts are relatively fresh to SOC. They sometimes get put into supporting large infrastructures.
- RQ has a ton of correlation searches that they use to provide end-to-end visibility. Most of them can be restructured to get the same results and this can reduce the number of correlation searches.
Likelihood to Recommend
Our company generates more than a terrabyte of log a day and it can easily go above 2 TB a day. We were using out of the box SOC Solution from splunk to manage our SOC. We lacked the know how of using splunk and also lacked the staff to keep the product up to date to help us tackle the latest threats. We outsourced our SIEM/SOAR service to RQ and they helped us with creating new use cases which addressed the latest threat to our organization. RQ has people who research the latest threats and helps us keep up to date on the day-to-day security operations. RQ also helps with data onboarding if required. So we would recommend RQ to customers who are short-staffed and who lack personnel who could research security threats to keep your organization safe from threat actors.