๐ŸŒFreshcollected in 70m

Databricks acquires Panther Labs to boost AI security

Databricks acquires Panther Labs to boost AI security
PostLinkedIn
๐ŸŒRead original on The Next Web (TNW)
#cybersecurity#ma#data-lakedatabricks-/-panther-labs

๐Ÿ’กDatabricks expands its security footprint to challenge CrowdStrike with AI-powered analytics.

โšก 30-Second TL;DR

What Changed

Databricks acquires Panther Labs

Why It Matters

This acquisition positions Databricks as a more formidable player in the security data lake market, leveraging AI to detect and respond to cyber threats.

What To Do Next

Explore Databricks' security data lake architecture to see how it compares to traditional SIEM solutions for your AI security needs.

Who should care:Enterprise & Security Teams

๐Ÿง  Deep Insight

AI-generated analysis for this event.

๐Ÿ”‘ Enhanced Key Takeaways

  • โ€ขPanther Labs is recognized for its cloud-native SIEM (Security Information and Event Management) platform, which utilizes a 'Detection-as-Code' approach using Python for security rules.
  • โ€ขThe acquisition integrates Panther's real-time threat detection capabilities directly into the Databricks Data Intelligence Platform, specifically leveraging the Unity Catalog for unified security governance.
  • โ€ขDatabricks aims to leverage Panther's technology to reduce the 'data tax' associated with traditional SIEMs by allowing security teams to query data in its native format within the Data Lakehouse.
  • โ€ขThis acquisition follows Databricks' previous security-focused investments, including the acquisition of Arcion and the development of its own internal security monitoring tools.
  • โ€ขThe deal is expected to accelerate Databricks' 'Lakehouse Security' initiative, enabling customers to perform security analytics at petabyte scale without moving data to proprietary, expensive storage silos.
๐Ÿ“Š Competitor Analysisโ–ธ Show
FeatureDatabricks (w/ Panther)SplunkCrowdStrike (Falcon)
Core ArchitectureData Lakehouse (Open)Proprietary IndexingEndpoint-First / Cloud-Native
Data StorageDecoupled (S3/ADLS)ProprietaryProprietary
Detection LogicDetection-as-Code (Python)SPL (Splunk Processing Lang)Behavioral/ML Models
Pricing ModelCompute/Storage UsageData Ingestion VolumePer-Endpoint/Module
Primary StrengthUnified Data/AI AnalyticsMature Ecosystem/SIEMEndpoint/Workload Protection

๐Ÿ› ๏ธ Technical Deep Dive

  • Panther Labs utilizes a serverless architecture built on AWS, allowing for massive horizontal scaling of log ingestion and processing.
  • The platform supports 'Detection-as-Code' via Python, enabling security engineers to version control, test, and deploy detection logic through CI/CD pipelines.
  • Integration with Databricks involves mapping Panther's normalized security schemas (based on Panther's internal schema or OCSF) to Delta Lake tables.
  • The system leverages Databricks' Photon engine to accelerate complex SQL-based security queries across massive datasets stored in Parquet format.
  • Security telemetry is processed via a streaming pipeline, allowing for sub-second alerting on high-fidelity threats before data is fully persisted to the Lakehouse.

๐Ÿ”ฎ Future ImplicationsAI analysis grounded in cited sources

Databricks will launch a native 'Security Lakehouse' product by Q4 2026.
The integration of Panther's detection engine with Databricks' storage layer provides the necessary foundation for a dedicated security-focused data product.
Splunk will face increased churn among enterprise customers seeking to consolidate security and data engineering budgets.
Databricks' ability to offer security analytics on existing data lakes eliminates the need for redundant data ingestion into expensive proprietary SIEM platforms.

โณ Timeline

2018-09
Panther Labs founded by Jack Naglieri to modernize SIEM with cloud-native detection.
2021-09
Panther Labs raises $120 million Series B funding led by Coatue Management.
2023-10
Databricks acquires Arcion to enhance data ingestion and replication capabilities.
2024-06
Databricks announces the expansion of its Data Intelligence Platform with enhanced security features.
2026-06
Databricks officially acquires Panther Labs to integrate security analytics into the Lakehouse.
๐Ÿ“ฐ

Weekly AI Recap

Read this week's curated digest of top AI events โ†’

๐Ÿ‘‰Related Updates

AI-curated news aggregator. All content rights belong to original publishers.
Original source: The Next Web (TNW) โ†—

Databricks acquires Panther Labs to boost AI security | The Next Web (TNW) | SetupAI | SetupAI