Security analytics & SIEM · Panther Labs, Inc.

Panther

Cloud-native, detection-as-code SIEM built on a Snowflake-style data lake for security teams that prefer writing detections as code.

Panther is a cloud-native SIEM aimed at security engineering teams rather than traditional SOC analysts: detections are written as Python code (rather than point-and-click rule builders), version-controlled, and tested like software, which appeals to teams already running CI/CD for infrastructure. It separates cheap, scalable log storage from a real-time detection pipeline that evaluates rules as data streams in, and exposes stored data for SQL-based retrospective search. It targets high-growth, engineering-led security teams at cloud-native companies rather than compliance-first SOCs. Pricing is not published on the vendor's marketing pages and requires a sales conversation.

At a glance

Vendor Panther Labs, Inc.
Pricing model Quote only
Free tier No
Deployment Cloud
Open source No
Best for Engineering-led security teams that want detections managed as version-controlled code rather than GUI rules.

Pricing

Custom-quoted; no pricing tiers or rates published on the vendor site.

Checked on the vendor's own page on September 21, 2026: no prices are published. Expect to be quoted.

Features

  • Detection-as-code using Python, version-controlled
  • Real-time streaming detection pipeline
  • SQL-based retrospective search over stored log data
  • Prebuilt detection packs for common cloud services
  • Case management and alert triage
  • Cloud-native, SaaS-only deployment

Integrations

Profile last reviewed September 21, 2026

Alternatives

Panther in the index now

Terms to know

Related guides