惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

D
DataBreaches.Net
MongoDB | Blog
MongoDB | Blog
GbyAI
GbyAI
L
LangChain Blog
B
Blog
博客园 - 三生石上(FineUI控件)
Martin Fowler
Martin Fowler
博客园 - 【当耐特】
Recent Announcements
Recent Announcements
P
Proofpoint News Feed
U
Unit 42
Last Week in AI
Last Week in AI
WordPress大学
WordPress大学
有赞技术团队
有赞技术团队
雷峰网
雷峰网
Microsoft Security Blog
Microsoft Security Blog
T
The Blog of Author Tim Ferriss
爱范儿
爱范儿
小众软件
小众软件
I
InfoQ
G
Google Developers Blog
大猫的无限游戏
大猫的无限游戏
人人都是产品经理
人人都是产品经理
C
Check Point Blog

Wiz Blog | RSS feed

Meet Wiz for M365: Bringing SaaS into the Security Graph Bringing Security Visibility to Vercel with Wiz Axios NPM Distribution Compromised in Supply Chain Attack Tracking TeamPCP: Investigating Post-Compromise Attacks Seen in the Wild The Wiz Blue Agent, now Generally Available Beyond the Badge: What Achieving Microsoft’s Certified Software Designation Means for Your Cloud Security Introducing the Green Agent: AI-Powered Remediation for the Cloud Three’s a Crowd: TeamPCP trojanizes LiteLLM in Continuation of Campaign KICS GitHub Action Compromised: TeamPCP Strikes Again in Supply Chain Attack Introducing the Wiz Red Agent- AI-Powered Attacker Introducing Wiz AI Application Protection Platform (AI-APP) Introducing Wiz Agents & Workflows: Security at the Speed of AI AI Runtime Threat Detection: From Input to Real-World Impact Trivy Compromised: Everything You Need to Know about the Latest Supply Chain Attack It’s Official: Wiz Joins Google Understanding and Reducing AI Risk in Modern Applications Introducing Wiz Tenant Manager: Multi-Tenant Management for Federated Organizations The Agile FedRAMP Playbook, Part 4: Reactive Risk Management through Enriched Incident Response Wiz Achieves CPSTIC Certification in Spain Seeing AI Clearly: Building Visibility Across Modern AI Applications The Agile FedRAMP Playbook, Part 3: Preventative Risk Management by building Secure by Design Wiz Leads the 2026 Latio Application Security Report with awards in 4 categories Building an Agentic Cloud Security Ecosystem: A Reference Architecture with Wiz MCP and Infosys Cyber Next The Agile FedRAMP Playbook, Part 2: Proactive Risk Management with Continuous Monitoring Cloud-native Security for your Windows environment: Announcing the Wiz Runtime Sensor for Windows Would You Click ‘Accept’? Automatically detecting malicious Azure OAuth applications using LLMs Wiz Named a Leader in The Forrester Wave™: Cloud Native Application Protection Solutions, Q1 2026 From Detection to Remediation: It’s Time to Rethink AppSec Around Exploitability and Root Cause Fixes The Agile FedRAMP Playbook, Part 1: Why Risk is Your Best Starting Point Introducing AI Cyber Model Arena: A Real-World Benchmark for AI Agents in Cybersecurity
Uncover what is really deployed in your environment with ...
2022-12-08 · via Wiz Blog | RSS feed

Until today, CSPM tools offered visibility and risk analysis for only supported cloud services. We are excited to announce that starting today, Wiz provides full visibility to *all* cloud services your company may use, regardless of whether we fully support them for risk assessment or not. This means that our customers can now get a complete picture of their cloud infrastructure to prevent shadow IT. This provides our customers with even greater insight and security for their cloud usage.

Shadow IT is a concern for every organization. As cloud providers add more and more services on a regular basis, security teams have a hard time keeping track of what is even in use. Recently at AWS re:invent, AWS announced 50+ new and updated cloud services. Cloud builders may begin testing and using these new services without the knowledge and approval of security. This introduces several security and compliance risks as it is difficult for security to detect or review these technologies. Generation 1 CSPM tools can’t keep pace with new additions in real-time, so security often must wait months or longer for vendors to prioritize and develop support for each new technology, leaving them without a full inventory and a huge blind spot. 

The Wiz inventory already gives customers deep visibility into what cloud resources, applications, operating systems, and packages exist in their environment in minutes. We’re excited to release enhancements to the Wiz inventory to provide full coverage to detect cloud services to give customers: 

  • Full visibility into what cloud services are in use and where, including new services that may have just been released days ago. 

  • Governance over what cloud services can and cannot be used along with enforcement of related security policies. 

Wiz inventory provides visibility into cloud services running in the environment.

Shine a light on shadow IT 

Customers can now see any cloud service provider’s services in use with newly released services automatically detected. If someone in your organization begins to use a new cloud service (such as the newly announced Amazon OpenSearch Serverless), Wiz will automatically show that technology and map it to where it is being used in your environment. This enables security, DevOps, and FinOps teams to get rapid visibility over all technology usage and the ability to drill down into the region, account, or business unit it is being used in.  

Wiz detects usage of new services like Amazon OpenSearch Serverless in your environment.

Take control and prevent usage of unwanted cloud services 

In addition to visibility to prevent shadow IT, security teams also need the ability to control and govern cloud service usage. Wiz enables organizations to create and enforce different security policies based on business requirements. For example, you may require your teams to only use specific services that have been evaluated and approved by security and disallow all other services in your production environment. With Wiz, all new services will appear as unreviewed and you can mark the status as required, approved, or unwanted once security has reviewed it. Teams can then set up alerting or automation when policies are violated. In this case, as soon as an unwanted or unreviewed service is detected in the production environment, an alert will be automatically triggered so your teams can act quickly. 

Security and GRC teams can now review and manage all the services deployed in their cloud from a single location. Further, removal of unwanted and redundant technologies enables organizations to remove risk, ensure compliance, and reduce the costs associated with shadow IT.

Custom Wiz issue that alerts security teams when unreviewed or unwanted cloud services are detected.

The enhanced Wiz inventory is available now to all customers to better understand and control shadow IT. To learn more about Wiz and how you can gain full visibility over the cloud services deployed in your environment, contact us to see a demo.