Wiz Completes IRAP Assessment to Support Australian Government Cloud Security

Empowering Australian government agencies with enhanced cloud security

Wiz has completed the Infosec Registered Assessors Program (IRAP) assessment at the Protected level — enabling Australian government agencies to adopt cloud securely, confidently, and in alignment with the Australian Government Information Security Manual (ISM).

Why This Matters

IRAP is the gold standard for assessing the security of cloud services in Australia. For public sector agencies, selecting an IRAP-assessed platform is essential for protecting sensitive data, meeting regulatory requirements, and accelerating cloud adoption.
By completing the rigorous IRAP assessment of Wiz’s Commercial offering against the Information Security Manual’s Protected level controls, Wiz demonstrates its adherence to strict security controls and standards, providing Australian public sector agencies with the assurance they need to confidently move sensitive data and critical workloads to the cloud.

Trusted by Governments Worldwide

Wiz is used by government agencies globally — including organizations across the U.S. public sector. The Wiz platform includes Wiz for Government, which holds FedRAMP Moderate authorization and GovRAMP authorization, meeting some of the highest security standards in the world. The U.S. Navy, for example, uses Wiz to secure its COSMOS platform, prioritize risk by severity and impact, and automate time-consuming compliance documentation.

With our first IRAP assessment now complete for Wiz Commercial, Australian agencies now have streamlined access to the same trusted capabilities.

How Wiz Empowers Australian Government Agencies

Wiz is a cloud-native application protection platform (CNAPP) designed for how modern public sector teams operate. It replaces multiple point solutions — from CSPM and CWPP to KSPM, CIEM, IaC scanning, and vulnerability management — with a single platform that helps agencies:

  • Gain full visibility without agents – Connect in minutes to see every layer of infrastructure, including virtual machines, containers, serverless, and AI services, without blind spots.

  • Prioritize and reduce real risk – The Wiz Security Graph correlates vulnerabilities, misconfigurations, identities, network exposures, secrets, and malware to uncover toxic combinations that create attack paths.

  • Continuously meet IRAP and ISM-aligned compliance – Built-in frameworks including many from NIST, the Essential Eight, and benchmarks like CIS Linux, Windows, and Red Hat STIG, help customers automate evidence collection and monitor posture year-round. And Wiz itself is audited annually against SOC 2 Type 2, ISO 27001/27701/27017/27018, and PCI DSS.

  • Secure AI initiatives – Detect shadow AI, monitor AI service usage, and secure AI pipelines to accelerate innovation without adding risk.

  • Support a Zero Trust journey – Assess and reduce risk across the five pillars of the Zero Trust Maturity Model, building a secure foundation from the start of any migration.

Built for What Matters Most

Public sector teams are balancing rapid modernization with the need to protect critical systems. Wiz brings everything into one platform, making it easier to see what’s happening, focus on what matters most, and reduce risk fast.

With IRAP now complete, Australian agencies can join 50% of the Fortune 100 to move securely and confidently in the cloud.

Learn more about Wiz for the public sector

Continue reading

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management