Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Reviews from AWS customer

5 AWS reviews
  • 5 star
    0
  • 5
  • 3 star
    0
  • 2 star
    0
  • 1 star
    0

External reviews

724 reviews
from and

External reviews are not included in the AWS star rating for the product.


4-star reviews ( Show all reviews )

    Mrinal Madhukar

Has consolidated multiple tools while improving issue detection and inventory tracking

  • October 30, 2025
  • Review from a verified AWS customer

What is our primary use case?

My use case for Wiz is basically for overall security, focusing on vulnerability management, infrastructure security, and application security, all of that combined. I have my AWS accounts where I run multiple services, so that's where I'm utilizing Wiz to the core optimum, utilizing all of its capabilities. Even as an inventory management tool, I think it has been really helpful because it keeps a record of every change, making it very functional.

How has it helped my organization?

Wiz has helped me consolidate some tools, as it is not just doing the job of the security tool alone. It has good inventory management, good vulnerability management, and we do not need to invest in multiple tools. All aspects such as infrastructure, application, vulnerabilities, and the regular security scoring patterns are in-built into Wiz along with the inventory manager, which has helped us reduce one or two tools here and there.Wiz has reduced alert fatigue in my organization, as it is very accurate in terms of reporting the issues, which has definitely improved, and I don't see a concern.

What is most valuable?

The best features of Wiz that I appreciate the most include trends of security, such as how we have been getting issues reported and how frequently we are closing them, along with the capabilities to notify a user and a channel on Slack, which have all been really helpful beyond just doing its main job as a security framework.The extent to which the Wiz runtime sensor has helped identify active threats more effectively compared to other solutions I've used is significant, as it refreshes based on a schedule in terms of the latest findings. It has been pretty effective for our use case, as I keep checking for anything new reported there. We also have a ticketing mechanism attached to it, so as soon as a security issue is figured out, it creates a ticket on Jira, allowing us to keep track of issues, and it is pretty responsive in terms of catching the latest issues.Wiz has helped me achieve zero criticals in issue queues, as it detects a range of issues whether it is the end of life of a product or an actual security issue, such as an exposed port or a compromised service.

What needs improvement?

In Wiz, the areas that have room for improvement would include some autonomous capabilities, such as having an agent declare where, since we are in the era of AI, it can auto-solve some low or medium alerts. High and critical issues would still need manual handling, but some level of alerts being handled autonomously would be good. More or less, Wiz is doing well, but the false alerts at random times would be another area for improvement. I would also appreciate seeing it go deeper on the security aspect, expanding beyond just infrastructure and application to include potential issues stemming from APIs, as currently it focuses more on the infrastructure pieces. Having more visibility in API endpoints, microservices, and application code running on the infrastructure would be beneficial.

For how long have I used the solution?

I have been using Wiz for the past 18 months.

What do I think about the stability of the solution?

The stability of Wiz has been good, with no downtime, bugs, or glitches. Just today I was not able to load it, but I wouldn't blame it that much as I have always been able to access the application when reaching out. I would rate the stability out of 10 as about nine or 10.

What do I think about the scalability of the solution?

Wiz is scaling well for our use case, so I would rate scalability a 10 out of 10.

How are customer service and support?

I would rate technical support as about nine, as we had a couple of cases where the responses were delayed quite a bit, but apart from that, they have been spot on.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I cannot name the vendor I used previously, but the reason for switching to Wiz was the added features that we were getting, which offered more control on cloud security.

How was the initial setup?

The deployment process of Wiz was easy and not complex. It was fairly straightforward, honestly. The internal configurations took time due to the different applications we have, but I don't think there was any delay from the Wiz side.It took about three to four weeks to deploy Wiz, as the time taken was more about how we wanted to structure the projects and boxes inside Wiz from our perspective. We were operational from the first week and integrated with SSO projects by the third or fourth week.

What about the implementation team?

The integration capabilities of Wiz were generally seamless, although we had some complications with Oracle accounts. Integration with AWS was pretty straightforward, but with Azure and Oracle, Oracle had some limitations regarding what it could report to Wiz. However, I think there was some more fine-tuning and adjustments done by the Wiz team to ensure Oracle could also be onboarded correctly, so that worked out.

What was our ROI?

The purchase of Wiz was a direct purchase rather than through the AWS marketplace or a partner purchase.

What's my experience with pricing, setup cost, and licensing?

My thoughts on the pricing of Wiz is that for our use case, it has been moderate, as I was using a different tool earlier, so it's not been a very large jump. I would say it resides in that moderate zone, and it's not something that raises eyebrows, so I think we're good.

Which other solutions did I evaluate?

I would say Wiz is in the top tier, and it might just be the leading product as well. While there are a couple more products out there, I think Wiz is definitely leading the course at this point.

What other advice do I have?

I have created some custom dashboards, charts, and counters, and I have created some custom reports that are sent out, including a lot of widgets for my reporting of all the accounts that I have. I have almost seven to eight accounts where very large workloads are running, and in total, there are almost 20 accounts, so it gives a very good view to summarize all of the accounts in one place.My business is a medium enterprise with about 5,000 employees.The maintenance of Wiz is fairly easy, with a few people looking into it, but it's not as though their whole time is dedicated to Wiz, which is a good part.I absolutely recommend Wiz to other users because of its ease, features, and user-friendliness, allowing anyone to come in, configure all the things they want out of Wiz, and start using it. There is no doubt about that. I would rate this review an 8 out of 10 overall.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)


    Shirisha D.

Wiz: A gamechanger for cloud risk management

  • October 17, 2025
  • Review provided by G2

What do you like best about the product?
I like best about wiz is its agentless architecture and instant visibility. Wiz connects directly through cloud APIs and starts discovering misconfigurations, vulnerabilities, and identity risks almost immediately.
What do you dislike about the product?
Some advanced features may require deeper technical knowledge to configure properly. Also the initial permissions setup for scanning can be a bit tricky if you are new to cloud security
What problems is the product solving and how is that benefiting you?
Wiz has helped us identify security gaps and misconfigurations that traditional tools miss.


    Wellington Franham

Has enabled consistent risk analysis and compliance tracking across multiple cloud environments

  • October 10, 2025
  • Review from a verified AWS customer

What is our primary use case?

We are a Wiz user and partner, so we have an environment using Wiz, and our use case is to provide risk analysis. We have dashboards to understand the main risks and categorize them, and we use these to get the baseline and reports. We personalize some reports.

What is most valuable?

The best features of Wiz are the AI, risk analysis, the framework, and the compliance frameworks, so we can check if our frameworks comply with CCPA or similar regulations, and the toxic combination. We can identify active threats more effectively with granularity in databases, operational systems, and access keys, so the granularity of the Wiz view is the key for this kind of risk analysis.

We can provide an inventory, which is crucial when managing large cloud databases or environments such as AWS, Azure, or Google environments, where it's difficult to have one view for all cloud components. Wiz can accomplish this and easily provide the total inventory in the cloud.

Wiz has helped us analyze critical issues, and it can provide guidance on how to mitigate these issues to resolve them, offering step-by-step instructions.

What needs improvement?

An area that Wiz can still continue to improve is FinOps.

For how long have I used the solution?

I have been using Wiz for almost one and a half years.

How are customer service and support?

My experience with Wiz's support has been satisfactory.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We analyzed other options before choosing Wiz. For example, we looked at Orca, which lacks functionality such as toxic combination or resolving issues easily. Wiz can provide a better way to resolve critical issues, while Orca can show the issues but not truly resolve them.

What other advice do I have?

We use Wiz in the cloud with AWS and GCP. We use both AWS and GCP almost equally. The time frame to achieve zero criticals in our issue queues depends on the environment. While we don't achieve zero criticals, some problems can be solved in two or three weeks while others may occur. It's optimal to work toward zero critical issues, but it depends on the installation or the cloud dynamics.

Some customers achieve zero critical issues, and Wiz has a program that rewards this achievement with a puzzle. Wiz offers pricing for both huge and small environments, and customers can purchase it from the Google Marketplace. In my opinion, Wiz has a competitive price.

I rate Wiz between 9 and 10 out of 10.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)


    Wellington Franham

Provides detailed analysis and helps manage risks effectively

  • October 10, 2025
  • Review from a verified AWS customer

What is our primary use case?

We are a Wiz user and partner. We have an environment using Wiz, and our use case is to provide risk analysis.

We have dashboards to understand and categorize the main risks. These dashboards help us generate baseline reports, and we have personalized some of these reports.

How has it helped my organization?

It can provide an inventory. When you have a large cloud database or environment, Wiz can provide you easily with the total inventory that you have in the cloud. 

Wiz has helped my organization by allowing us to analyze the critical issues and providing the best way to mitigate these issues with step-by-step guidance. We don't achieve zero criticals. This often depends on the environment, as solving some problems can lead to two or three others arising. Therefore, navigating through the critical issues is essential, but it relies on the specific installation you have or the dynamics of your cloud setup. Some customers have successfully reached a state of zero critical issues, and we have a program designed to support this. If they are interested in achieving this goal, we can provide them with materials or insights to help them.

What is most valuable?

Wiz's best features are the AI risk analysis and the compliance frameworks. We can check if frameworks are compliant, such as CCPA, and the toxic combination.

The Wiz runtime sensor identifies active threats more effectively by allowing us to run the analysis with granularity in databases, in operational systems, and some access keys. The granularity of the Wiz view is the key for this kind of risk analysis.

What needs improvement?

FinOps is an area where Wiz needs enhancement.

For how long have I used the solution?

I have been using Wiz for almost one and a half years.

How are customer service and support?

I had experience with Wiz's support, and I would rate it a nine out of ten.

How would you rate customer service and support?

Positive

What's my experience with pricing, setup cost, and licensing?

Wiz can accommodate both huge and small environments. You can purchase Wiz from Google Marketplace, for example. Wiz seems to have a competitive price.

Which other solutions did I evaluate?

We evaluated other options such as Orca before choosing Wiz. We analyzed Orca because it lacks certain functions, such as toxic combination or resolving issues easily. Wiz performs better at providing the best way to resolve critical issues, while Orca can only show the issues without resolving them.

What other advice do I have?

I would rate Wiz a nine out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)


    MatthewSnyder

Accelerates decision making and reduces alert fatigue with smart event consolidation

  • October 01, 2025
  • Review provided by PeerSpot

How has it helped my organization?

Wiz allows us to get a view into what's happening in our cloud environments, helping us see the gaps, how things are connected, and it aids in CVE monitoring, especially during incident response as we're able to look at what that environment or host might look like, how it connects, and how big of an issue this might be versus how small it could be, along with other indications gathered from Wiz's reporting that help us better understand what's happening and how it might have all started.

We have created a couple of custom dashboards and charts for Wiz to help keep track of specific environments. One example is when we were looking for certain types of activities; it allowed us to create a singular place to see the events in the subscriptions of interest that needed remediation, bringing it together quickly, allowing us to take action and track progress as things were fixed.

Zero Criticals is the dream for us; that's our goal, and we've made good progress, with Wiz allowing us to see everything together in an easy-to-understand way, giving us a path to have conversations with the business about what can be done from policy or user education standpoints to prevent recurring issues that need remediation, resulting in improved numbers and positively impacting our approach over time.

Wiz has enabled us to consolidate tools. Having multiple cloud providers presents challenges as each has its own versions of security products, leading to the problem of needing to monitor three different tools, which do different things. Wiz helps standardize alerting and responses while allowing us to fill in the gaps since many tools don't do CVE analysis and reporting, resulting in time savings and less effort in creating detections to fill those gaps.

Wiz helps us consolidate our alerting process. I am a strong advocate for avoiding alerts that do not add value to our environment. It's especially crucial to eliminate alerts that are single-instance or one-off occurrences. Instead, we need detections that tell a comprehensive story. Additionally, we require a way to drill down into these detections to understand them fully. Wiz has surpassed other tools across the multi-cloud landscape in alerting us to the issues that truly matter. It presents the information in a manner that allows us to address and remediate those issues effectively.

Wiz also includes excellent remediation steps within the detection, helping us understand what is happening. Our SOC team comprises individuals with varying levels of seniority and experience in the cloud, which can present challenges for skill development. Therefore, it is vital that we don’t just receive a barrage of noise in our SOC; we need information that clarifies what actually happened. Being able to communicate to the business how to resolve these issues is extremely important to us. Wiz has filled the gaps where other tools excelled in one or two areas but failed to provide a complete picture.

What is most valuable?

My favorite feature of Wiz is how it gathers information together; instead of generating a thousand independent signals, it rolls that up and shows you within that environment how all the different toxic combinations contribute to a critical alert, making it an issue worth responding to, unlike many other vendors or tools that show singular things which may appear small, but when looked at holistically, are actually part of a much bigger issue needing attention.

Wiz has significantly reduced alert fatigue in our organization. One of the key functions is that it groups together elements that can form toxic combinations. Instead of treating a policy violation and a critical CVE as separate issues that would generate two different alerts requiring two different tools, it consolidates them into a single event. This allows us to identify problems more effectively. For example, if I see a high or critical CVE alongside a policy misconfiguration tied to an account, I know I need to address both issues. This grouping enables us to take action rather than approaching it as a simple decision of whether or not to act on a single alert. Previously, I might see a policy issue and wonder if it’s significant enough to warrant attention. However, when these issues are combined, I can assess the full scope of what’s happening, allowing me to take appropriate action. I can also determine quickly whether something might be a false positive, preventing unnecessary investigations.With the critical issues we identify, we can confidently fix them and reach out to the right people without relying on a "hope" strategy or waiting for an hour of research to see if it turns into something actionable. Based on my experience with other tools, Wiz helps us bypass that frustrating process.

What needs improvement?

I believe they are on the right path. However, Wiz has a unique way of identifying issues. As part of its growth and maturity, I'm noticing that it is taking an approach where it not only detects problems but also provides solutions to fix them. This expansion into a more comprehensive ecosystem allows it to become a 360-degree product. Instead of just continuously pointing out findings and detections, it starts to integrate with existing solutions, reducing the cycle of repeated issues. We can learn from these mistakes, and ideally, they will only occur once, allowing us to address them effectively. I appreciate the continued growth in this partnership, as it aims to reduce the number of findings over time by tackling the root of the problem.

One significant area for improvement would be increasing automation. While they excel at identifying issues, we need assistance in minimizing the human hours required for tasks. Ideally, the process would become more automated, allowing us to quickly respond with steps such as: we found an issue, reached out, and fixed it immediately. In cybersecurity, if it takes several hours to address a concern and a human attacker is present, that delay can lead to severe consequences. We need more immediate measures in our response strategies.

For how long have I used the solution?

I have been using Wiz for almost two years.

What do I think about the stability of the solution?

Regarding stability, I was pleasantly surprised by the performance of this SaaS provider. We haven't encountered any outages or issues with reports not running, finishing, or data being incomplete or inaccurate.

What do I think about the scalability of the solution?

Scalability is great. We haven't faced any problems. There were no requirements like, “once you get to this point, you have to do this or that.” We were simply able to connect our accounts, and during our last round, our environment quadrupled in size. We didn’t have to make any adjustments or configuration changes; it just accommodated the growth. Even as some environments scaled back down, the service scaled back down with us, which has been a great benefit.

How are customer service and support?

Regarding technical support, we haven't needed to contact them. All the questions and issues we encountered were addressed by our account team. It was very helpful not having to open a ticket and wait for assistance; our account team was knowledgeable about the tool and could provide immediate answers. This level of support was refreshing, as we didn’t have to deal with delays or uncertainty. Overall, we were very satisfied with the support we received.

For support, I would rate them a ten out of ten. They have great documentation and excellent support from the account team, which reduces how much you have to rely on technical support. I've dealt with other tools where the account team couldn't answer any questions, and the only option was to open a ticket and wait, sometimes for a day or two, for someone to respond. However, with this service, we received answers immediately and at the level we needed. Additionally, we received plenty of training and education without having to pay for expensive classes. So, I would definitely give them a ten in that area.

How would you rate customer service and support?

Positive

How was the initial setup?

It was very easy to deploy. We were able to get everything set up quickly during a call with our Wiz account team. They walked us through the process, and once we connected the accounts, it was off and running. From that standpoint, it was great to easily tap into the different cloud providers. The experience was positive overall.

After the initial setup, the team also assisted us with health checks to ensure everything was functioning properly. They provided feedback and helped us make any necessary adjustments to permissions so that the tool would work effectively.

As for the setup time, we had a 30-minute call scheduled, and we managed to complete the setup within that timeframe. It mostly involved connecting the parent account and giving Wiz access to deploy the tool. After that, we were able to start viewing the results. So, in total, we spent about 10 to 15 minutes actually configuring it during that 30-minute window.

What's my experience with pricing, setup cost, and licensing?

I’m familiar with their pricing. I believe it aligns well with what we typically see for security tools. It’s not unreasonable or outrageous. They have a great product that works effectively and fulfills its intended purpose. I don’t think there’s anyone else out there offering the same level, scale, or efficiency. While their pricing may be a bit on the premium side, it also enables users to consolidate tools, which can offset some of those costs.

Which other solutions did I evaluate?

A significant alternative out there is AWS GuardDuty. It operates within a single scope, analyzing your logs and identifying signals of potential issues. However, this can lead to high alert fatigue because it focuses on individual events. Instead of grouping and triaging alerts, it may send you multiple separate notifications for a single host or device performing several actions.

In addition, we've utilized scanners for Common Vulnerabilities and Exposures (CVEs) like Rapid7. This tool effectively scans for CVEs, but it requires thorough configuration, continuous monitoring of output, and the creation of reports to take necessary actions. This process is not on the same level as Wiz, which consolidates all of these tools into one platform.

What other advice do I have?

We haven't used Wiz Runtime Sensor; we've seen demos and it looks really cool, but it's not something we have implemented.

I believe there isn't a perfect tool, but Wiz comes very close, continuously growing and expanding to add more value into its ecosystem, and I'm happy with it. I would rate Wiz a nine out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)


    Avi L.

A Game-Changer for Cloud Security team

  • September 01, 2025
  • Review provided by G2

What do you like best about the product?
What I like best about Wiz is its clear visibility across our entire cloud environment without requiring agents. The platform maps risks end-to-end — from infrastructure misconfigurations to vulnerabilities, secrets, and compliance gaps — in a single dashboard.

For SecOps, it’s extremely valuable that Wiz prioritizes issues by context (e.g., exposed to the internet, contains sensitive data, exploitable path), so we don’t waste time chasing noise. Integrations with existing workflows (SIEM, ticketing, etc.) make it easy to operationalize findings.

From an admin perspective, the ease of deployment and scalability stand out. It’s quick to onboard new accounts, and visibility is almost immediate, which is rare in this space.
What do you dislike about the product?
What I dislike about Wiz is that the platform is not yet truly unified in management. With the number of products and capabilities they’ve added, it feels like they could be consolidated better — today it’s more like managing three different consoles instead of a single pane of glass.

The DSPM (Data Security Posture Management) capabilities are promising but still relatively immature compared to Wiz’s core strengths. Coverage is not as deep as I’d like, and it still needs more development to give us the same confidence we have with vulnerability and misconfiguration findings.

In addition, the volume of findings can be overwhelming, especially early on, and it requires tuning and integrations to avoid alert fatigue. Wiz is improving here, but out-of-the-box prioritization can still surface too much noise for smaller teams.
What problems is the product solving and how is that benefiting you?
Wiz helps us address several critical areas in cloud security, including monitoring and analytics, detection and response, compliance, vulnerability management, exposure management, and DSPM. Providing agentless visibility across our cloud environment eliminates blind spots and gives our SecOps team clear insight into risks and misconfigurations.
Its cloud detection and response features stand out because alerts are contextualized, allowing us to focus on real threats instead of noise.
Continuous compliance checks against industry frameworks save significant time during audits, while vulnerability scanning and exposure management prioritize issues based on exploitability and exposure paths, so we can remediate what truly matters first.
The DSPM capabilities are still maturing, but already help us locate sensitive data and highlight where it may be at risk, and help us to map most of our data.

Benefits to Us:

Time savings—Instead of manually correlating risks, Wiz shows the attack path in context, which accelerates the response.
Risk reduction – Prioritized findings ensure our limited SecOps resources focus on the most dangerous issues first.
Audit readiness – Compliance reporting is much faster and less painful.
Operational efficiency – With Wiz’s agentless deployment, onboarding new cloud accounts takes minutes, not days.


    Ahammed A.

Wiz: Simplifying Cloud Security Visibility and Risk Management

  • August 07, 2025
  • Review provided by G2

What do you like best about the product?
Wiz offers comprehensive visibility across cloud infrastructure without requiring agents, making it incredibly easy to deploy and scale. Its security graph provides a clear view of vulnerabilities, misconfigurations, and potential attack paths in a unified interface. The platform integrates seamlessly with major cloud providers and supports rapid detection and remediation workflows, which helps security teams respond faster.
What do you dislike about the product?
While powerful, the interface can feel overwhelming at first due to the sheer volume of data presented. Custom policy creation and fine-tuning require a learning curve. Additionally, pricing may be a concern for smaller organizations or teams with limited cloud footprints.
What problems is the product solving and how is that benefiting you?
Wiz is solving the problem of fragmented and complex cloud security by providing agentless, full-stack visibility into cloud infrastructure. It identifies vulnerabilities, misconfigurations, secrets, malware, and exposed services across virtual machines, containers, and serverless functions—all in a single, unified platform.

This benefits me by drastically reducing the time and effort required to gain security insights across multi-cloud environments. Instead of juggling multiple tools or manual audits, I get a clear risk prioritization view that helps focus on what truly matters—like exploitable paths attackers might use. It improves security posture, supports compliance efforts, and enables faster remediation with less operational overhead.


    Financial Services

WIZ a CSPM for CISO's

  • July 29, 2025
  • Review provided by G2

What do you like best about the product?
powerful tools bring a lot of features and innovations in one platform
What do you dislike about the product?
not very intuitive , controls and issues need to be defined separately
What problems is the product solving and how is that benefiting you?
mainly CSPM and vulnerability management on hybrid and decentralized could environment including aws and gcp


    Samuel Egbaiyelo

Enables efficient management of vulnerabilities and project inventories

  • May 08, 2025
  • Review provided by PeerSpot

What is our primary use case?

We are using Wiz for many deployments in terms of vulnerability and also our Microsoft tenants, two different Microsoft tenants. We use it to manage our projects.

Wiz's automated compliance checks are the reason for our use case. I am actually working on the GCCR audit, which is the reason I was looking at it. There are still some things I need clarity on in my own meeting this morning.

What is most valuable?

I might not be able to give substantial information as I do not use the most valuable features of Wiz day-to-day in full capacity. I can check managing each of my projects and check vulnerabilities across each of those projects across each of the tenants. It allows you to manage your inventories that you have in different subscriptions or different tenants on your technology. Then you can configure different kinds of policies that you use around each of those.

What needs improvement?

I have not used Wiz in full capacity, so I cannot provide detailed improvement suggestions. I just started fully going through each feature to have a basic, comprehensive understanding of the product itself.

I cannot recommend Wiz to others until I have a clear understanding of its full capacity and benefits. In my organization, we have Rapid7, which is a vulnerability management tool, we have Wiz, and we have Microsoft Defender. I need to understand the reason for that decision in the first place to be able to look at the benefit to my organization.

For how long have I used the solution?

I started with Wiz some months ago.

What was my experience with deployment of the solution?

I do not know how long it took for us to actually deploy Wiz, as I was not within the corporation when it was deployed.

What do I think about the stability of the solution?

So far, I would say Wiz is stable to the best of my knowledge.

What do I think about the scalability of the solution?

My thoughts on the scalability of Wiz so far is that it is scalable for me and good for us.

On a scale of one to ten, I would rate the scalability of Wiz as nine.

How are customer service and support?

I rate Wiz's customer service as ten out of ten.

How would you rate customer service and support?

Positive

How was the initial setup?

I find the initial setup of Wiz straightforward in my opinion.

On a scale of one to ten, I would rate how easy it is to set up Wiz as nine, if ten is the easiest.

What about the implementation team?

I do not know how many people it took to deploy Wiz. However, it is always the vendor and probably my director that was in the position which I was before.

What was our ROI?

I do not know if Wiz has impacted our operational costs related to cloud security or any kind of return on investment or operational impact that it has for us.

Which other solutions did I evaluate?

I do not really know the main differences between Wiz and other vulnerability management solutions such as Defender, but they perform similar functions.

When comparing Wiz to Defender, I think they do almost the same thing. The only difference is that Defender will give you RISK call. However, Wiz can give you a risk call against your investment because it is not a Microsoft solution.

What other advice do I have?

I work in accounting with Wiz in a large enterprise business.

Wiz does not require a lot of maintenance on our side. It is just ease of use. Wiz maintains most of it.

I have not used Wiz's AI capabilities to enhance our security threat detection as I just started looking at it. I have not really done much with that so far.

Overall, I would rate Wiz as good. I get everything I want, just the same way it is for every other solution, so I am going to rate it nine out of ten.

I rate Wiz a nine out of ten instead of a ten until I use the solution based on use cases and exploitation of the product, and what it gives me. If I am able to do that in full capacity, then I will give it ten. This is just based on what I still see so far. Until I get to see the benefits and everything, then my rating might be different in two weeks' time. At this moment, this is how it is.

RISC call is what I mean by that, RISC (R I S K).

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?


    Anshu Kumari

Identifying vulnerabilities efficiently and providing remediation options

  • April 29, 2025
  • Review provided by PeerSpot

What is our primary use case?

We are primarily using Wiz for vulnerability scanning on our servers. If there is a vulnerability, we work on remediating it.

What is most valuable?

A valuable feature is that Wiz helps in identifying vulnerabilities. We can get information like remediation suggestions and links to understand vulnerabilities better. Additionally, we can download reports for all servers at the same time, which saves us the need to check each server individually.

What needs improvement?

In Wiz, if there is one vulnerability that occurs multiple times, it is listed only once. However, even if it is a single vulnerability in the same category, it repeats multiple times. This feature can be time-consuming as it requires continuous scrolling.

For how long have I used the solution?

I have been using Wiz for one year.

How are customer service and support?

Our team manager and the director have communicated with the vendor for support.

How would you rate customer service and support?

Neutral

What about the implementation team?

There is another team responsible for the deployment part, so I did not work on that.

Which other solutions did I evaluate?

We also use Qualys.

What other advice do I have?

We use both cloud and on-premises versions. I mainly work on the cloud side but we use on-premises as well. I would rate the overall solution an eight out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other