IBM QRadar Incident Forensics to Help Organizations Protect Critical Data


QRadar Incident Forensics is IBM’s newest appliance for helping help security teams retrace the step-by-step actions of sophisticated cyber criminals. This software is built as an extension to IBM’s QRadar Security Intelligence platform allowing organizations to detect malicious activity earlier, therefore reducing the potential loss of data.

“Every breach is a race against time. This new forensics module further expands the breadth and depth of IBM’s security intelligence capabilities,” said Brendan Hannigan, general manager of IBM Security Systems. “QRadar Incident Forensics further helps IT staff prevent emerging threats and better determine the impact of any intrusion.”

IBM Security QRadar Incident Forensics will help any member of an IT security team quickly and efficiently research security incidents or test for conditions associated with an observed attack pattern from an Internet threat intelligence feed such as X-Force. By using this guidance, security teams can avoid spending valuable time searching through petabytes of network traffic, and potentially discovering nothing of immediate value. With QRadar, security analysts can quickly collect security data related to an incident.

This solution is just one of IBM’s new initiatives to expand its security intelligence capabilities. In the second quarter of 2014, IBM will introduce new capabilities to help organizations better understand the threat landscape. IBM Advanced Cyberthreat Intelligence Service will provide customers with insight into the threat landscape, targeted attacks and attacker tools, tactics and practices, incorporating IBM’s own research with that of strategic partners specializing in threat visibility.

Additionally, IBM’s Active Threat Assessment complements this ongoing threat intelligence and visibility. It leverages technical assessment capabilities and best-of-breed tools to identify previously unrealized, active threats while also modeling threats to unmitigated vulnerabilities in an enterprise environment.

IBM Security QRadar Incident Forensics will be made available in the second quarter of 2014.