Databricks has announced Lakewatch, a pioneering open, agentic SIEM designed to neutralize sophisticated AI-driven threats by unifying security, IT, and business data within a governed lakehouse environment. By leveraging open formats and a vast partner ecosystem-including Okta, Palo Alto Networks, and Wiz-Lakewatch eliminates vendor lock-in and allows organizations to analyze massive volumes of multi-modal data cost-effectively. The platform introduces “Agent Bricks” and integration with Anthropic’s Claude models to deploy autonomous defensive agents that automate threat detection, triage, and hunting at machine speed.
Also Read: o9 Introduces APEX Model for Agentic Enterprise Decisioning
“Security teams can no longer rely on manual workflows to outpace AI-driven attacks,” said Ali Ghodsi, Co-Founder and CEO of Databricks. “With Lakewatch, we are giving enterprises a new open data architecture and agentic capabilities to replace stagnating SIEM tools. Defenders must have even better visibility and speed than today’s agent attackers.” Bolstered by the acquisitions of Antimatter and SiftD.ai, Databricks provides a “Detection-as-Code” framework and robust governance through Unity Catalog, enabling leaders like Adobe and Dropbox to achieve unprecedented operational resilience against modern agentic adversaries.
Read More: Databricks Enters Security Market with Launch of Lakewatch: New Open, Agentic SIEM






















