Databricks launches AI-powered platform to unify cybersecurity data
Databricks has launched Data Intelligence for Cybersecurity, a platform aimed at helping organisations respond to AI-driven cyber threats with increased accuracy, governance and flexibility.
The new solution integrates with existing security frameworks, using Databricks' cloud-based Lakehouse architecture to unify and analyse organisational data. This approach is designed to provide security teams with a more complete view of their threat landscape and enable real-time threat detection and response.
AI and data fragmentation challenges
As cyber attackers increasingly employ artificial intelligence, security teams face substantial challenges due to fragmented data and limited use of AI in their defence strategies. Many organisations have struggled with conventional, generic threat models and siloed data stores, which can result in slower response times and increased exposure to risk.
According to Databricks, its Data Intelligence for Cybersecurity platform addresses this problem by consolidating data and applying AI-driven analytics to help teams detect previously hidden threats and understand the full context of potential attacks. The Lakehouse architecture enables this unified approach without the limitations often seen in legacy security information and event management systems.
Features and partner ecosystem
The solution includes Agent Bricks, a component that enables enterprises to build and deploy artificial intelligence agents for security operations. These agents are designed to analyse threats and take action governed by the organisation's security protocols. Additionally, Databricks provides dashboards, natural language search, and real-time analytics to allow both technical and non-technical stakeholders to gain insights into security threats as they emerge.
Omar Khawaja, Vice President of Security and Field Chief Information Security Officer at Databricks, stated:
"With Data Intelligence for Cybersecurity, Databricks is making data and AI every organization's strongest defense strategy. Security teams can now gain a more accurate, governed and flexible approach to building AI agents that proactively combat today's modern and AI-based threats."
The platform's introduction is paired with partner integrations from several security and consulting companies. Databricks is working with firms such as Abnormal AI, Accenture Federal, ActiveFence, Alpha Level, Arctic Wolf, BigID, DataBahn, DataNimbus, Deloitte, Entrada, Obsidian Security, Panther, PointGuard AI, Rearc, SPLX, Theom, Varonis and ziggiz. These partnerships aim to extend the platform's coverage and assist customers in achieving more unified outcomes in their cybersecurity efforts.
Customer experiences
Several leading customers have reported improvements in detection speed, investigation, and cost reduction when employing Data Intelligence for Cybersecurity.
Arctic Wolf processes more than 8 trillion security events each week and attributes its ability to scale and innovate in AI-driven cybersecurity to its use of Databricks. Dan Schiappa, President of Technology and Services at Arctic Wolf, commented:
"Cybersecurity is increasingly a data challenge, shaped by the scale, speed, and diversity of telemetry across modern environments. The Aurora Platform processes over 8 trillion security events each week, and Databricks is part of the foundation that allows us to unify and analyze this data in real time- enabling Arctic Wolf to scale the platform, accelerate AI innovation, and expand our AI-powered SOC to deliver faster threat detection, more reliable protection, and outcomes that security teams can trust."
Barracuda Networks has reported a 75% reduction in daily processing and storage costs and swift, real-time alerting, while SAP Enterprise Cloud Services cites an 80% reduction in engineering time and over a fivefold increase in rule deployment speed. Palo Alto Networks has used Databricks' system to unify fragmented data and triple the speed of AI-powered threat detection features, leading to cost savings and real-time insights across its cloud ecosystem.
Partner perspectives
Amanda Satterwhite, Cyber Practise Lead at Accenture Federal Services, highlighted the implications of the Databricks partnership for government security initiatives:
"We're accelerating integration with partners like Databricks to help co-engineer new standards for federal cybersecurity and secure AI. The fusion of Databricks' Data Intelligence Platform with our deep federal expertise, delivers an advantage for cyber defenders. This is how we modernize at the speed of AI and win the data war in the federal space."
Aditya Sundararam, Chief Product Officer at DataBahn, said:
"Enterprises are at a crossroads where cybersecurity must keep pace with the speed of evolving threats. Partnering with Databricks demonstrates what's possible when AI-native pipelines converge with a modern data intelligence platform. This is not just an integration-it's the blueprint for the next era of security operations. We see security data not as something to simply store, but as a strategic resource to harness-unlocking real-time insights that drive faster, smarter decisions."
Adnan Amjad, US Cyber Leader at Deloitte, commented:
"It's critical for businesses to integrate advanced data intelligence into cybersecurity strategies. Our alliance with Databricks helps enable organizations to fully utilize AI-driven insights, helping them transform their security operations to meet the challenges of today's digital landscape. Together, we are paving the way for a more secure and resilient future."
William Lowe, Chief Executive Officer at Panther, added:
"Every organization has unique security needs and data architectures. This partnership with Databricks gives our customers unprecedented choice and flexibility-whether you're cloud-native or hybrid, we're meeting you where you are and giving you the tools to scale security operations on your terms."
David Bass, Executive Vice President of Engineering and Chief Technology Officer at Varonis, said:
"Securing the massive datasets that fuel AI is a challenge and a necessity. Organisations rely on Databricks for scalable analytics and Varonis to continuously discover, classify, and protect sensitive data. With our integration, we have streamlined access governance and real-time threat detection across the Databricks Data Intelligence Platform. Companies can gain end-to-end visibility and proactive data security for their critical business data with Varonis and Databricks."