tools
Wiz Defend
Wiz Defend detects, investigates, and responds to threats across cloud workloads, identities, data, and AI applications.

In inglese
Wiz Defend provides runtime threat detection and response using cloud and SaaS logs, runtime signals, and Wiz Security Graph context. It helps security operations teams identify attack paths, investigate incidents, and assess potential blast radius.
The product includes Blue Agent for automated threat investigation, cloud-native containment playbooks, identity and data detection, and AI runtime protection. The Wiz Sensor is an add-on for runtime workload protection, and pricing is provided through a custom quote.
Features
- Correlates cloud logs, runtime signals, and risk context
- Maps telemetry coverage to MITRE ATT&CK
- Detects threats across AI workloads, models, and agentic applications
- Uses Blue Agent to investigate threats and produce a verdict
- Provides cloud-native containment playbooks and root-cause analysis
- Automates response actions with Wiz Workflows
- Detects identity anomalies and unusual access to sensitive data
- Wiz Sensor adds eBPF runtime workload protection
Use cases
- Investigate cloud threats with correlated workload, identity, and cloud evidence
- Detect prompt injection, model exfiltration, and MCP server attacks
- Map telemetry gaps before an incident occurs
- Contain compromised workloads using automated response playbooks
- Identify anomalous identity activity and sensitive-data access
- Coordinate investigations with Google Security Operations
Pros
Cons
Latest updates
- Bridging the Visibility Gap: A Unified Security Operating Model for Hybrid Cloud Teams
The Sensor Workload Scanner is now GA and extends our risk prioritization engine to on-premise environments.
- Uncovering Hidden Attack Paths in Cloud Environments Using Runtime Signals
Wiz now layers runtime signals into the Security Graph.
- Evidence at the Moment of Attack. Answers at AI Speed.
Wiz Sensor Forensics is now generally available, automatically capturing forensic artifacts at the moment of detection and using AI to accelerate investigation.
- The Wiz Blue Agent, now Generally Available
Accelerate your SecOps team with the Blue Agent for threat investigation, now Generally Available
- AI-Powered Forensics, at Cloud Speed
Announcing the public preview of forensics capabilities
Capabilities
- Real-time data — “Stay ahead of cloud threats and protect AI applications with real-time threat detection, investigation and response across every layer of your cloud environment.” source
Get it
Security
- SOC 2 Type II — “Our SOC 2 Type II + HIPAA report and our SOC 3 report are available in the Customer Trust Center below.” source
- SOC 2 — “Our SOC 2 Type II + HIPAA report and our SOC 3 report are available in the Customer Trust Center below.” source
- ISO 27001 — “Wiz is proud to announce its ISO 27001, ISO 27017, ISO 27018, and ISO 27701 recertification.” source
- HIPAA — “Our SOC 2 Type II + HIPAA report and our SOC 3 report are available in the Customer Trust Center below.” source
Pricing
- Prices checked
- 2026-09-25