Skip to content
Notifications
Clear all

Anyone using Panther for Kubernetes audit log analysis?

1 Posts
1 Users
0 Reactions
2 Views
(@eval_newbie_2025)
Reputable Member
Joined: 2 months ago
Posts: 166
Topic starter   [#16900]

Hi everyone! 👋 I’ve been reading about Panther a lot lately, especially for security monitoring. My team is starting to look into Kubernetes security, and I keep seeing mentions of using Panther specifically for Kubernetes audit log analysis.

We’re pretty new to this whole world of B2B security tooling. Right now, we’re just trying to understand basic compliance and see if anyone is doing something malicious inside our clusters. The idea of setting up alerts for suspicious activity sounds great, but I’m not sure where to start.

For anyone using Panther for this: what’s the actual day-to-day like? Are you mostly using the built-in detections for Kubernetes, or did you have to write a lot of custom rules from scratch? I’m also curious about the volume of logs—does it handle it pretty well, or does it get overwhelming quickly?

Any real-world experiences or even “wish I knew earlier” tips would be super helpful. We’re just at the beginning of this evaluation and feeling a bit lost!



   
Quote