Security analytics & SIEM · Panther Labs, Inc.
Panther
Cloud-native, detection-as-code SIEM built on a Snowflake-style data lake for security teams that prefer writing detections as code.
Panther is a cloud-native SIEM aimed at security engineering teams rather than traditional SOC analysts: detections are written as Python code (rather than point-and-click rule builders), version-controlled, and tested like software, which appeals to teams already running CI/CD for infrastructure. It separates cheap, scalable log storage from a real-time detection pipeline that evaluates rules as data streams in, and exposes stored data for SQL-based retrospective search. It targets high-growth, engineering-led security teams at cloud-native companies rather than compliance-first SOCs. Pricing is not published on the vendor's marketing pages and requires a sales conversation.
At a glance
| Vendor | Panther Labs, Inc. |
|---|---|
| Pricing model | Quote only |
| Free tier | No |
| Deployment | Cloud |
| Open source | No |
| Best for | Engineering-led security teams that want detections managed as version-controlled code rather than GUI rules. |
Pricing
Custom-quoted; no pricing tiers or rates published on the vendor site.
Checked on the vendor's own page on September 21, 2026: no prices are published. Expect to be quoted.
Features
- Detection-as-code using Python, version-controlled
- Real-time streaming detection pipeline
- SQL-based retrospective search over stored log data
- Prebuilt detection packs for common cloud services
- Case management and alert triage
- Cloud-native, SaaS-only deployment
Integrations
Profile last reviewed September 21, 2026