Wiz icon

Wiz

Cloud security platform with AI-powered threat detection and risk prioritisation

by WizUSUnited States🌐US, EU, AU (customer-selected cloud region)
TrustKit Score72%Strong

About Wiz

Wiz is a cloud-native application protection platform (CNAPP) that provides unified visibility into the security posture of cloud infrastructure without requiring agents or network sensors. By connecting directly to cloud provider APIs, Wiz builds a dynamic graph of all cloud resources, identities, data assets, and their relationships, enabling security teams to understand their entire cloud attack surface within minutes of deployment. The platform covers infrastructure as code (IaC) security, container and Kubernetes scanning, secrets detection, cloud entitlement analysis (CIEM), and runtime threat detection. The platform's AI capabilities, branded as Wiz AI, use large language models to generate human-readable explanations of complex security findings, suggest remediation steps, and enable natural-language querying of the cloud environment. Security analysts can ask questions such as 'which internet-exposed VMs contain sensitive data and have critical CVEs?' and receive answers drawn directly from the Wiz Security Graph, dramatically reducing investigation time. For compliance teams, Wiz ships with more than 80 built-in compliance frameworks including CIS benchmarks, NIST CSF, ISO 27001, SOC 2, PCI DSS, HIPAA, GDPR, and cloud-specific standards. The platform continuously assesses cloud resources against these frameworks, generates audit-ready reports, and tracks remediation progress. Custom policies can be authored using Wiz Query Language (WQL) to address organisation-specific or regulator-specific control requirements. Wiz holds SOC 2 Type II and ISO 27001 certifications and offers flexible data residency with tenant isolation hosted on the customer's preferred cloud region. Data Processing Agreements are available for GDPR compliance. Wiz does not store customer workload data; it processes cloud metadata only, which significantly reduces the data exposure surface compared to agent-based solutions. Adopted by more than 45% of the Fortune 100, Wiz has become the leading cloud security platform for enterprises with strict compliance requirements. Its breadth of supported frameworks, continuous posture monitoring, and AI-accelerated investigation workflow make it a strong fit for regulated industries including financial services, healthcare, and technology companies operating under DORA, SOX, or PCI DSS obligations.

Sentiment Score?
4.7/ 5

TrustKit Score Breakdown

?72% Strong
Data Residency
Where is your data stored and processed?
Tenant hosted in customer-selected cloud region; processes cloud metadata only, not workload data
4/5
Legal Jurisdiction
Which laws govern the company and your data?
US Delaware corporation subject to CLOUD Act; DPAs and SCCs available for EU/UK
2/5
Data Retention & Training
Is your data used for model training?
Processes cloud API metadata only; no persistent storage of workload content; configurable retention periods
4/5
Certifications
ISO 27001, SOC 2, Cyber Essentials, etc.
SOC 2 Type II and ISO 27001 certified; 80+ compliance frameworks built into the product
3/5
Regulatory Fit
Suitability for regulated industries and professional services
Designed for regulated cloud environments; built-in frameworks for HIPAA, PCI DSS, DORA, ISO 27001, NIST
5/5

Pricing

Custom30-day trial
Wiz CSPMContact Sales
Wiz CNAPPContact Sales
EnterpriseContact Sales
Full pricing details →

Quick Facts

Starting PriceCustom (contact sales)Data HostingUS, EU, AU (customer-selected cloud region)Trains on Your DataCloud metadata only; not used for model trainingFounded2020Employees1000+

Frequently Asked Questions

Is Wiz GDPR compliant?

Wiz has a TrustKit compliance score of 72% (Strong). Data Residency: Tenant hosted in customer-selected cloud region; processes cloud metadata only, not workload data. Legal Jurisdiction: US Delaware corporation subject to CLOUD Act; DPAs and SCCs available for EU/UK.

Where does Wiz store data?

Wiz hosts data in: US, EU, AU (customer-selected cloud region). Tenant hosted in customer-selected cloud region; processes cloud metadata only, not workload data

Does Wiz train on user data?

Wiz: Cloud metadata only; not used for model training. Processes cloud API metadata only; no persistent storage of workload content; configurable retention periods

What certifications does Wiz hold?

Wiz holds: SOC 2 Type II, ISO 27001. SOC 2 Type II and ISO 27001 certified; 80+ compliance frameworks built into the product

Compare Wiz With

Similar Tools