Securing the Cloud Together: Wiz and Splunk team up to secure your cloud resources

Use the Wiz App to consume and analyze data more easily in Splunk via a dedicated dashboard.

2 분 읽기

We're thrilled to announce an exciting partnership and integrated solution with Splunk, empowering our shared customers to seamlessly integrate our respective solutions. Customers can use this integration to share Wiz security findings — including Issues, vulnerabilities, and audit log data — to Splunk Enterprise and Cloud to investigate, analyze and report.  

SIEM: the heartbeat of your SOC 

Security Information and Event Management (SIEM) has emerged as a cornerstone of SOC, serving as a vital tool for organizations seeking to fortify their digital defenses. SIEM tools are designed to collect, correlate, and analyze various log sources across an organization's infrastructure. This capability empowers security teams to gain deep insights into potential threats, vulnerabilities, and anomalous activities, enabling them to respond swiftly to protect sensitive assets, maintain regulatory compliance, and uphold the integrity of their operations. 

Wiz + Splunk: Enhancing your cloud SecOps 

The new integration helps organizations connect their Wiz and Splunk platforms to collect security event data into a single response platform. Some of the benefits of this integration include:  

  • Incident Analysis: Wiz Issues, vulnerabilities, and audit logs can seamlessly integrate with SIEM tools like Splunk Enterprise Security to ingest and analyze logs. This integration enables Splunk Enterprise Security to monitor and correlate events and incidents specific to cloud-native environments. Additionally, customers can leverage this integration to analyze Wiz audit logs to identify anomalous behavior.   

  • Detect and Threat Response: Wiz can feed Splunk with data on cloud resource risks, allowing Splunk to detect and respond to security threats promptly. Customers can leverage Splunk’s automation and response capability to trigger alerts and response flows based on findings from Wiz. When a security incident occurs, Wiz works in conjunction with Splunk SIEM to provide contextual information about the incident, including details about the application, container, or microservices involved. Wiz provides cloud infrastructure risk information that can be combined with the threat detection logs that are ingested into Splunk Enterprise and Cloud.  This helps with incident response and forensic investigations, enabling a faster and more accurate resolution.  

  • Track progress of remediation: Get the complete picture of your cloud footprint and report on key security metrics. Analyze and report on your cloud assets, issues, and vulnerabilities over time. For example, you can track the progress of vulnerability resolution by severity or project. Analyze metrics across cloud environments, including AWS, GCP, and Azure. Security teams can easily report on powerful metrics such as: 
    - the number of outstanding issues per project 
    - the number of open vulnerability issues filtered by Wiz project 
    - the percentage of issues older than 30 days 
    - many other metrics 
    This information can be used to report on service SLAs or track the progress of different teams over time.  

In such a challenging cybersecurity environment it’s critical that our customers can detect, investigate and respond to threats as quickly as possible. Wiz joining the Splunk Partnerverse, and the launch of the Wiz Add on for Splunk, supports customers in that journey and will help them to keep pace with evolving threats.

Alexandra Turbitt, GVP, Alliance & Channels, EMEA, Splunk

Getting started is simple. Joint customers can get started in a few easy steps. All you need is outlined in the Wiz docs (login required), or download the Wiz Add-On for Splunk. This strategic partnership between Wiz and Splunk is just the start. Questions? We’d love to hear from you. Reach out and our team will be glad to assist.  

태그
#Security

계속 읽기

맞춤형 데모 받기

맞춤형 데모 신청하기

“내가 본 최고의 사용자 경험은 클라우드 워크로드에 대한 완전한 가시성을 제공합니다.”
데이비드 에슬릭최고정보책임자(CISO)
“Wiz는 클라우드 환경에서 무슨 일이 일어나고 있는지 볼 수 있는 단일 창을 제공합니다.”
아담 플레처최고 보안 책임자(CSO)
“우리는 Wiz가 무언가를 중요한 것으로 식별하면 실제로 중요하다는 것을 알고 있습니다.”
그렉 포니아토프스키위협 및 취약성 관리 책임자