--- title: Panther Reviews meta_title: 'Panther Reviews 2026: Details, Pricing, & Features | G2' meta_description: Filter 49 reviews by the users' company size, role or industry to find out how Panther works for a business like yours. aggregate_rating: rating_value: 4.7 review_count: 49 scale: '5' date_modified: '2026-09-28' parent_category: name: System Security url: https://www.g2.com/categories/system-security ---

Panther Pros and Cons: Top 5 Advantages and Disadvantages

Quick AI Summary Based on G2 Reviews

Generated from real user reviews

Users praise Panther's responsive customer support, which delivers expert assistance and resolves issues quickly and efficiently. (12 mentions)
Users laud Panther's detection efficiency, appreciating its swift JSON parsing and robust, adaptable detection capabilities. (9 mentions)
Users value Panther's ease of use, noting its intuitive interface and efficient operation for small teams. (9 mentions)
Users praise Panther's intuitive interface and responsive support, enhancing ease of use and effectiveness for security teams. (9 mentions)
Users praise the easy log source integration in Panther, simplifying onboarding and enhancing their security monitoring efforts. (7 mentions)
Users find the raw log view limited due to lack of summaries, customization options, and cumbersome configuration for alerts. (3 mentions)
Users face complex configuration challenges with Panther's setup, needing significant custom workflow adjustments and improvements. (3 mentions)
Users find the dashboard issues overwhelming, highlighting limitations in customization and functionality that hinder effective use. (3 mentions)
Users find Panther's limited access cumbersome, with challenges in integration, dashboards, and customizable alert features. (3 mentions)
Users note a difficult learning curve for Panther, especially for those not familiar with programming languages. (2 mentions)

5 Pros or Advantages of Panther

5 Cons or Disadvantages of Panther

Richard E.
RE
Richard E.
Security Engineer
Enterprise (> 1000 emp.)
"Panther’s SIEM + AI Makes Triage and Threat Hunting Fast and Seamless"
5/5
What do you like best about Panther?

Panther’s SIEM iteration into the AI security space has been a real shift in our security team’s capabilities. With AI Auto Triage, the triage process is quick, and the Panther AI integration enables automated threat hunting. Having threat intel pushed into the MCPs has also been helpful.

The price-to-capability balance feels fair, and it’s the only SIEM I’ve seen so far that has pushed this heavily into SIEM + AI integration. The standard plug-and-play integrations are limited to a typical security tech stack; however, it isn’t difficult to ship logs to S3 and normalize them directly in Panther.

Using a Snowflake datalake, queries are efficient and it’s one of the more seamless ways I’ve used to query log sources at scale. We also have monthly visits with the Panther team to help integrate and upgrade our instances, uncover new release items, and help us engineer the platform for success.

Lastly, the UI/UX is easy to navigate. Most SIEMs are difficult to work with, with buttons doing various things across different areas. This is a SIEM through and through: if you know what you want to find or what detection you want to build, you can do it easily since the backend query structure is SQL and the detections are all detection as code. Review collected by and hosted on G2.com.

What do you dislike about Panther?

The hardest part of working with Panther is making sure you manage your detections as code in a solid, maintainable way. It’s easy for your implementation to drift and become out of date compared with the upstream managed Panther repo. Before you start implementing rules and creating your own detections, it’s really important to think through the upstream conflicts that can come up when you customize things. If you account for that upfront while designing your detection-as-code infrastructure, you shouldn’t run into major problems. Review collected by and hosted on G2.com.

BK
Busra K.
Senior Security Engineer
Mid-Market (51-1000 emp.)
"Panther Makes Security Operations Simpler and Faster"
5/5
What do you like best about Panther?

What I like best about Panther is how quickly it helps us move from alert to action. It’s powerful and highly automated, with strong native integrations that made setup and onboarding easy across teams. Features like enrichment and AI-assisted analysis make SOC investigations much faster and simpler, and the support team is consistently responsive whenever we need help. Review collected by and hosted on G2.com.

What do you dislike about Panther?

At the moment, I don’t have any major dislikes. Our experience with Panther has been smooth so far, from onboarding to daily SOC operations. Review collected by and hosted on G2.com.

Verified User in Marketing and Advertising
AM
Verified User in Marketing and Advertising
Enterprise (> 1000 emp.)
"Compact, Powerful SIEM with Fast-Evolving AI Analytics"
5/5
What do you like best about Panther?

Panther is a compact, powerful SIEM with AI Analytics that are currently evolving by the day. Each category is easy to browse and use, there are several integrations that can be requested, the price is very competitive with other tools on the market, and the custom rule builder is very well designed. Review collected by and hosted on G2.com.

What do you dislike about Panther?

The tool is still in its infancy, however as it continues to grow and reaches action parity with larger, more advanced SIEMs, it will be world class Review collected by and hosted on G2.com.

Daichi H.
DH
Daichi H.
Corporate IT
Mid-Market (51-1000 emp.)
"Reliable SIEM with Strong Support and AI-Powered Efficient Operations"
5/5
What do you like best about Panther?

The support team is responsive and provides detailed guidance when we need help.

The platform is easy to implement and operate, even with a small team. Through its intuitive interface and AI capabilities, a small security team can work as effectively as larger ones.

Cost predictability is a significant advantage. Panther's cost structure allows us to forecast our security budget accurately, which is important for planning.

The MCP (Model Context Protocol) integration lets us build custom detection rules that combine Panther's data with our local data sources for tailored threat detection. MCP and PantherAI also help non-native English speakers quickly understand complex security information, reducing language barriers across our team. Review collected by and hosted on G2.com.

What do you dislike about Panther?

I don't have any significant concerns or areas where I feel Panther needs improvement. Review collected by and hosted on G2.com.

Mark H.
MH
Mark H.
Security Operations Manager
Enterprise (> 1000 emp.)
"Detection as Code and AI Triage Make Panther a Standout"
4/5
What do you like best about Panther?

Detection as code is handy for version control and creating an alert lifecycle (dev/staging/prod) Panther AI Triage is a game changer! Add in Panther MCP and GitHub Co-Pilot and we are on the cusp of fully automating a lot of our work! Review collected by and hosted on G2.com.

What do you dislike about Panther?

Alert pipeline includes unnecessary checks (via yaml and the test cases) that are really perfunctory and don't actually test the logic of the rule in question. Also fits unit testing approach which aligns more with software development than security. Review collected by and hosted on G2.com.

Tejas  P.
TP
Tejas P.
Senior Security Engineer
Small-Business (50 or fewer emp.)
"Awesome Detection as Code That Speeds Up Investigations"
5/5
What do you like best about Panther?

Detection as code is awesome. Also, the mcp allows me to work through investigations super quickly. Review collected by and hosted on G2.com.

What do you dislike about Panther?

Not all services are supported, in line with what you'd expect from a new product. Review collected by and hosted on G2.com.

Verified User in Health, Wellness and Fitness
AH
Verified User in Health, Wellness and Fitness
Enterprise (> 1000 emp.)
"Purpose-Built SIEM for SecOps at Scale with a Delightful Search and Top-Tier AI SOC"
5/5
What do you like best about Panther?

Built for what matters in SecOps, detection and response at scale. Panther does not waste time on useless features as everything has purpose and meaning. Their search function has 3 modes, with PantherFlow being very much like KQL and a delight to use. The DAC concepts are top notch and .. their AI SOC functions actually work, Panther AI may be one of the best on the market right now. Review collected by and hosted on G2.com.

What do you dislike about Panther?

I’d prefer if it also supported self-hosting in Azure, in addition to AWS. That said, AWS works perfectly fine for me—it’s really just a matter of personal preference. Review collected by and hosted on G2.com.

Verified User in Computer & Network Security
AC
Verified User in Computer & Network Security
Enterprise (> 1000 emp.)
"Panther AI Makes Log Analysis and Dashboard Queries Fast and Easy"
4.5/5
What do you like best about Panther?

The most useful feature is the Panther AI which helps to quickly skim through your logs, create search queries and also queries for creating the dashboard Review collected by and hosted on G2.com.

What do you dislike about Panther?

At times, I run into UI issues with Panther AI when fetching results, and I think this part of the experience could be improved. Review collected by and hosted on G2.com.

Billy B.
BB
Billy B.
"Effortless SIEM with Powerful Integrations"
5/5
What do you like best about Panther?

I appreciate Panther for precisely meeting our needs and offering great value. Setting up Panther was smooth and easy, and the onboarding mentoring was super helpful. The Terraform interface is very nice for its supported features. Panther closed a critical gap by centralizing security event logs from various systems, simplifying incident investigation and correlation. PantherAI has been a significant help, taking the guesswork out of security incidents and enabling quicker issue identification. The UI is easy to use and navigate, and the alert investigation tools are intuitive. Review collected by and hosted on G2.com.

What do you dislike about Panther?

I would like to see greater Terraform support and the ability to manage rules as code outside of the Panther Analysis repository mechanism. Review collected by and hosted on G2.com.

Alejandro V.
AV
Alejandro V.
Security Analyst
Mid-Market (51-1000 emp.)
"Great Alert Context and a Clear Development Pipeline"
5/5
What do you like best about Panther?

Context for alerts, easy easy log source integration and clear development pipeline Review collected by and hosted on G2.com.

What do you dislike about Panther?

Raw log view without a basic summary of each alert unless AI triage is run Review collected by and hosted on G2.com.