Skip to main content
Glama
binhnguyen143

IBM QRadar SIEM MCP Server

Related Servers

Alternatives to IBM QRadar SIEM MCP Server

No user-submitted related servers found.

    Related Servers

    • A
      license
      Not graded
      quality
      Not graded
      maintenance
      Bridges LLMs with IBM QRadar SIEM by providing access to over 728 REST API endpoints through four intelligent tool definitions. It enables security analysts to interact with offenses, assets, and rules using natural language while maintaining high token efficiency.
      MIT
    • F
      license
      Not graded
      quality
      C
      maintenance
      Bridges LLMs to IBM QRadar SIEM via 4 intelligent MCP tools covering 728 REST API endpoints, enabling natural language queries for offenses, assets, rules, and more.
      -
    • A
      license
      A
      quality
      F
      maintenance
      Enables AI assistants to interact with Rapid7 InsightIDR SIEM for investigating incidents, searching logs with LEQL, managing alerts and assets, analyzing user behavior, and handling threat intelligence.
      26
      6 npm
      4
      MIT
    • A
      license
      Not graded
      quality
      C
      maintenance
      A Model Context Protocol (MCP) server that provides comprehensive access to IBM QRadar security intelligence platform. Query logs, events, offenses, agents, assets, and more directly from your AI assistant.
      2
      MIT
    • A
      license
      Not graded
      quality
      B
      maintenance
      Connects AI agents with the CrowdStrike Falcon platform to programmatically access detections, threat intelligence, host management, and other security capabilities for intelligent security analysis and automation.
      1
      MIT
    • F
      license
      Not graded
      quality
      B
      maintenance
      MCP server for IBM QRadar SIEM that consolidates 728 REST API endpoints into 4 intelligent tools, enabling natural language interaction for security tasks like managing offenses, assets, rules, and reference data.
      -

    TDQS

    A3.6/5.0

    Scored across 27 tools

    Disambiguation5/5

    Each tool maps to a distinct QRadar resource/action: offenses, Ariel searches, reference sets/maps/tables, rules, assets, log sources, and health. Even the similar reference-data tools are clearly separated by resource type and operation.

    Naming Consistency4/5

    The qradar_ prefix and verb_noun style are highly consistent across list/get/update/add/delete operations. Minor deviations like qradar_health_check and qradar_add_to_reference_set break the strict pattern slightly, but they remain readable and predictable.

    Tool Count2/5

    At 27 tools, the server exceeds the 25-tool threshold for too many. While the QRadar domain is broad, many tools are parallel list/get pairs, making the overall surface heavier than necessary for agent selection.

    Completeness3/5

    Core workflows like offense triage, Ariel search, and reference-set enrichment are well covered. However, reference collections lack create/delete lifecycle operations, and rules, log sources, building blocks, and servers are mostly read-only, leaving notable gaps for full SIEM administration.

    Maintenance

    ActivityMaintained
    ResponsivenessNo issues