We use Wiz in our cloud security management by connecting it to our main cloud environment and other multi-cloud solutions. It helps us consolidate and manage information and risks, dividing them between VPCs and business units. Wiz keeps all information up-to-date and helps us identify any toxic connections within our cloud implementations.
External reviews
External reviews are not included in the AWS star rating for the product.
Game Changer for Cloud Asset; Cloud Application & Cloud Workload Protection
Being able to provide vulnerability & configuration management based on priority saves time end effort.
The automated remediation process & system integrations (integration into our CICD process) are the most exciting feature about Wiz providing real time insights as applications are progressed from development to production environments.
CTO
A Single Pane of Glass for our GCP Security Needs
Wiz regularly releases useful new features and integrations and the level of support we have received has generally been top-tier. The detailed system activity log and audit logs also increase our confidence that we will be able to view any actions taken inside of our Wiz console - either from our own users or from Wiz.
Onboarding Wiz was a breeze and their documentation is excellent and covers the vast majority of questions that have come up during our usage of the product.
* Providing coverage via Threat Detection Rules
* Helping us identify misconfigurations in our cloud platforms
* Helping us cut costs by identifying assets that are oversized or unused
* Integrating with third-party tooling (Google Workspace, Github, etc)
* Easily integrated with other tools
* Flexible and well documented API
Very good
Visibility into your cloud env
The customer support is amazing! They are always available for urgent situations, with representatives ready to assist and jump on calls as needed.
Security graph allows you proactive threat hunting by utilizing Wiz capabilities effectively.
The Best Cloud Security Platform
Easy to get access to customer support
The constant release of new features to add to an already broad feature set
The attack path mapping creates a contextual view beyond that of cloud native security services such as AWS Inspector/Security hub.
Assisting us in cloud vulnerability management
Demonstrating compliance to CIS/PCI DSS to our regulators
Wiz helped us solve multiple challenges and has identified multiple ongoing risks in our cloud
The best cloud security tool so far
Wiz Review - Nearly 1 Year In
Helps us consolidate and manage information and risks, dividing them between VPCs and business units
What is our primary use case?
What is most valuable?
The most valuable feature of Wiz is that it keeps information up to date without needing to perform scans or schedule maintenance windows. It provides a fresh snapshot of our vulnerability metrics. It also helps us make decisions on improvements, maintenance, or updates for our systems. Regarding compliance and governance, Wiz streamlines our vulnerability management to meet specific needs effectively.
What needs improvement?
The reporting should be improved because until a few months ago, the reports were only in CSV format, which made it difficult to clean up. Wiz tried to improve the reporting process, but it's not as valuable as Tenable.
For how long have I used the solution?
I have experience of using Wiz for more than a year.
What do I think about the scalability of the solution?
Wiz was quite scalable and easy to manage initially. However, as the solution became more costly with our growth, it posed some challenges. We had to work on managing costs and scaling according to our needs, which required some effort, but we were able to find a balance in terms of pricing and performance.
How are customer service and support?
It is difficult to get in touch with them initially. We had to get in touch every for our queries related to AWS and GCP marketplaces. However, once you need to discuss numbers, they are very responsive.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I have worked with Tenable and Qualys. Wiz stands out in deployment ease and resource consumption compared to Qualys or Tenable. Its simplified processes and snapshot features make it a preferred choice.
How was the initial setup?
The initial setup was easy. We need to key details, therefore setting up Wiz very easily. It’s easier than Tenable, which requires deploying infrastructure and handling the associated costs. Deploying Wiz took about one month due to our multi-cloud services, but the main cloud service took less than a week.
Wiz requires no maintenance since it is a SaaS, but if we need to deploy a new service or have any issues, the technical support is really helpful without additional costs. Once integrated, it is very easy to maintain.
What about the implementation team?
We took help from an external account manager and a technical account manager from Wiz. Our team consisted of three people: a DevOps engineer, a TechOps engineer, and the person responsible for the implementation.
What was our ROI?
Using Wiz has significantly reduced our costs compared to having three separate solutions. We estimate a cost reduction of around 35% to 50%, or even more, due to consolidating our security management into one platform. This operational impact has been one of the most significant benefits we've experienced with Wiz.
What's my experience with pricing, setup cost, and licensing?
Regarding pricing, it’s more than $100k because we have a very big infrastructure. Our environment supports around three thousand people, and we offer business-to-client financial services to around one million clients, so we rely heavily on Wiz.
What other advice do I have?