{"slug": "databricks-completes-acquisition-of-panther-accelerating-the-security-lakehouse", "title": "Databricks Completes Acquisition of Panther: Accelerating the Security Lakehouse Era", "summary": "Databricks has completed its acquisition of Panther, an AI SOC platform, to accelerate its security lakehouse vision by integrating Panther's 100+ out-of-the-box integrations with Lakewatch, its agentic SIEM. The combined offering aims to unify security, IT, and business data in an open, governed lakehouse to help SOC teams detect and respond to AI-driven threats at scale.", "body_md": "See how the open, governed security lakehouse unifies security, IT, and business data to power modern SOCs\n\nby [Andrew Krioukov](/blog/author/andrew-krioukov), [Jack Naglieri](/blog/author/jack-naglieri), [Taylor Kain](/blog/author/taylor-kain) and [Dave Herrald](/blog/author/dave-herrald)\n\nToday, we are thrilled to announce that Databricks has officially completed the acquisition of Panther, an AI SOC platform built for modern security operations. Cybersecurity has fundamentally transformed into a data management and AI problem. The ability to collect, retain, and analyze data at scale and in real time is now the limiting factor in how fast a SOC can detect and respond. Attackers are leveraging automation and AI to move faster, hide within massive volumes of complex data, and launch increasingly sophisticated, multi-stage attacks across cloud, identity, and SaaS environments. To defend modern enterprises, security teams require an architecture capable of processing petabytes of telemetry with continuous context and automated intelligence.\n\nLegacy SIEMs were built more than a decade ago around limited data ingestion, strict sampling trade-offs, rigid compute architectures, and manual alert triage. Constrained by high compute costs and inflexible processing power, this legacy approach simply cannot scale to defend against AI-driven threats and rapid zero-day attacks. The industry needs a new paradigm. Databricks established that paradigm with the security lakehouse: an open, governed lakehouse that unifies security, IT, and business data in one place so SOC teams can run detection, investigation, and response directly on top of that data.\n\nEarlier this year, Databricks introduced [Lakewatch](https://www.databricks.com/product/lakewatch) as our agentic SIEM built on the security lakehouse. Today, the addition of Panther dramatically accelerates the security lakehouse vision by bringing mature, proven operational SOC workflows and 100+ out-of-the-box integrations directly on top of Lakewatch’s open data foundation.\n\nFor years, security teams have been forced into an impossible compromise. Ingest everything and absorb escalating SIEM costs and noisy output, or ingest less to control cost and leave gaps in coverage. When alerts do trigger, analysts are left jumping between disconnected tools, manually stitching together logs from cloud services, endpoints, identity providers, and SaaS applications.\n\nThe security lakehouse eliminates this compromise by breaking down data silos and uniting security, IT, and business telemetry in an open, governed architecture. With Lakewatch and Panther, security teams no longer have to choose between rich data scale and fast, actionable workflows. They get both on day one.\n\nLakewatch is the core product powering the security lakehouse foundation, providing the high-fidelity, open-data ecosystem required to operationalize an agentic SOC. It enables organizations to seamlessly collect, govern, and analyze petabyte-scale security telemetry alongside IT and business data in an open lakehouse format. With Lakewatch and Panther working in tandem, security teams no longer just collect data. They deploy proven autonomous AI agents that actively triage alerts, conduct threat hunts, and continuously refine detection logic.\n\nBy running natively on the Databricks Data + AI platform, Lakewatch provides:\n\nPanther bridges the gap between raw lakehouse data and real-time security execution. Engineered specifically for modern, cloud-native teams, Panther pairs software engineering practices and deep detection logic with native AI workflows embedded directly into the data layer. Instead of basic alert summarization, security teams can deploy intelligent agents that actively investigate incidents, draft detection rules, and execute response actions at machine speed.\n\nWhen you pair Lakewatch's open, petabyte-scale data foundation with Panther's software-driven workflow layer, the practical impact on day-to-day security operations is transformative. Together, Databricks and Panther will streamline the entire lifecycle of detection and response:\n\nBeyond capabilities, Databricks and Panther share a foundational belief: customers must own their data. Legacy SIEM providers maintain business models built on proprietary data formats and steep ingestion fees. Databricks and Panther are committed to an open ecosystem. Security telemetry stored in the security lakehouse remains accessible, governed, and interoperable across the entire enterprise stack. Security teams retain complete ownership of their data in open formats, enabling them to analyze their telemetry with best-of-breed tools without friction or artificial barriers.\n\nTogether, Databricks and Panther deliver the complete blueprint for the modern agentic SOC. Lakewatch provides the open, petabyte-scale data foundation, while Panther delivers the agentic automation engine to act on it. The result is a self-improving security organization ready for the speed and scale of modern threats.\n\nBy bringing native agentic workflows directly onto the security lakehouse, Databricks gives defenders the scale, automation, and speed needed to outpace modern threats. We are excited to welcome the Panther team to Databricks as together we redefine security operations for the agentic era.\n\nSubscribe to our blog and get the latest posts delivered to your inbox.", "url": "https://wpnews.pro/news/databricks-completes-acquisition-of-panther-accelerating-the-security-lakehouse", "canonical_source": "https://www.databricks.com/blog/databricks-completes-acquisition-panther-accelerating-security-lakehouse-era", "published_at": "2026-08-03 13:00:00+00:00", "updated_at": "2026-08-03 14:46:10.174401+00:00", "lang": "en", "topics": ["artificial-intelligence", "ai-products", "ai-infrastructure"], "entities": ["Databricks", "Panther", "Lakewatch"], "alternates": {"html": "https://wpnews.pro/news/databricks-completes-acquisition-of-panther-accelerating-the-security-lakehouse", "markdown": "https://wpnews.pro/news/databricks-completes-acquisition-of-panther-accelerating-the-security-lakehouse.md", "text": "https://wpnews.pro/news/databricks-completes-acquisition-of-panther-accelerating-the-security-lakehouse.txt", "jsonld": "https://wpnews.pro/news/databricks-completes-acquisition-of-panther-accelerating-the-security-lakehouse.jsonld"}}