Reviews from AWS customer
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
33 reviews
from
and
External reviews are not included in the AWS star rating for the product.
A modern SIEM for the ever growing log and event sources that leverages detections as code
What do you like best about the product?
Panther's approach to detections as code allows our team to implement the same SDLC processes to our detections as the rest of our tooling and in the same language, Python. We build flexible and resilient detections that are thoroughly tested and produce less noisy alerts. Deployments follow our change control processes reducing deployments times and ensuring all detections are peer-reviewed. The Panther team is responsive to requests for assistance, product improvements, and releases new features on a rapid basis.
What do you dislike about the product?
There isn't anything we currently dislike about the product. Forethought must be put into the management of detection rules and the process for merging upstream changes to prevent it from becoming time consuming or difficult.
What problems is the product solving and how is that benefiting you?
We are building fully auditable security detection and monitoring processes, reducing time to detect security events, and improving efficiency in investigations. The ability to make detections as code, use pipelines for testing and continuous deployment. A side effect of the detection as code philosophy is that it is easier to onboard security engineers with less traditional backgrounds, especially software engineering backgrounds.
Recommendations to others considering the product:
Review the set of natively supported systems and your ability to implement log shippers for anything not on the list.
Panther is a world-class solution to complex information security problems
What do you like best about the product?
Onboarding is incredibly simple, detections as code allow for nearly infinite power and possibility, and being able to query all my disparate data from a single location.
Panther is simple and intuitive to use yet still incredibly powerful and flexible.
Panther is simple and intuitive to use yet still incredibly powerful and flexible.
What do you dislike about the product?
I've had a few, but they've mostly been addressed via continued feature improvement. Nothing immediately comes to mind based on my current use cases.
What problems is the product solving and how is that benefiting you?
Problems:
Managing large volumes of log data across a variety of platforms and enormous cloud sprawl.
Threat hunting and detection
Cloud security misconfiguration detection and remediation
Benefits:
Force amplification for a small team
Data visibility
Flexible response mechanisms
Managing large volumes of log data across a variety of platforms and enormous cloud sprawl.
Threat hunting and detection
Cloud security misconfiguration detection and remediation
Benefits:
Force amplification for a small team
Data visibility
Flexible response mechanisms
A non-traditional SIEM that boosts detection as code
What do you like best about the product?
The possibility to write detections as code with Python
What do you dislike about the product?
We have not found anything that we dislike, that is why we have onboarded them as a vendor
What problems is the product solving and how is that benefiting you?
Building detections as code reliably and in a timely fashion and having a detection pipeline to continuously test and deploy them.
Recommendations to others considering the product:
Love the product, it just works and the team behind is always willing to listen and adapt the new features to meet our requirements.
showing 31 - 33