# QRadar MCP Server

> QRadar MCP Server — caohonghoa98-mcpsiem. Use this tool when you need to integrate Large Language Models (LLMs) with IBM QRadar SIEM systems, enabling natural language queries for security-related data. It solves problems of complex query formulation and data retrieval by providing a bridge to 728 REST API endpoints via 4 intelligent MCP tools. This tool is ideal for use cases where simplified and intuitive access to QRadar data is required, such as offense analysis, asset management, and rule configuration.

Canonical page: https://skillsregistry.net/skills/caohonghoa98-mcpsiem  
JSON: https://api.skillsregistry.net/v1/skills/caohonghoa98-mcpsiem

## Description

Bridges LLMs to IBM QRadar SIEM via 4 intelligent MCP tools covering 728 REST API endpoints, enabling natural language queries for offenses, assets, rules, and more.

## Trust

- **Trust score (0–1):** 0.69
- **Verification tier:** scanned
- **Last scanned:** 2026-09-03

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** ai-ml
- **Updated:** 2026-09-03

## Source

- **Source listing:** [Glama](https://glama.ai/mcp/servers/hg5y44fs2y)
- **Repository:** <https://github.com/caohonghoa98/mcpsiem>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "caohonghoa98-mcpsiem"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/caohonghoa98-mcpsiem` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/caohonghoa98-mcpsiem/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
