Investing Together: Wiz Defend and Google Security Operations

Continuing to deepen the integration between Wiz Defend and Google Security Operations, helping teams work faster wherever they choose to investigate

The AI era is putting new pressure on security teams to detect, investigate, and respond faster. As we explored in Pillar 4 of our AI Threat Readiness Framework, keeping pace with AI-driven threats requires comprehensive context, automated investigation, and response that can move as fast as the threat itself. But speed isn’t just about what one security tool can do- it’s also about removing the friction between the tools teams rely on every day. When investigations span multiple platforms, context and workflows must move seamlessly between them.

That’s why we’re continuing to invest in the integration between Wiz Defend and Google Security Operations. We’re bringing Wiz’s deep cloud context and analysis capabilities into Google Security Operations, streamlining the experience across both platforms. This will allow analysts to investigate Wiz threats in the platform they already use and help security teams work faster, wherever they choose to investigate. 

A shared data model across platforms

Wiz Defend and Google Security Operations are now working across a shared data model, allowing teams to investigate alerts directly within either platform. The official Wiz Content Pack, now available for Google Security Operations customers, provides access to all out-of-the-box Wiz content, including rules, dashboards, search queries, playbooks, and response policies. 

The integration is available with a single click, allowing teams to investigate Wiz threats directly in Google Security Operations. Now, analysts working across both platforms can work from a single, unified investigation, instead of triaging disconnected alerts across two tools.

The Wiz Content Pack is now available in Google Security Operations

Accelerate Google Security Operations investigations with Blue Agent analysis

The Wiz Blue Agent brings AI-powered threat investigation to every Wiz threat, automatically correlating cloud context, runtime signals, identity data, and other evidence to understand what happened and determine whether a threat is actually malicious. Trained on a knowledge base maintained by our Research and Customer Incident Response teams, Blue goes beyond surface-level triage, investigating like a trained incident responder by determining root cause, correlating data, and drawing conclusions from information available in the environment. Analysts can review and audit the investigation and verdict, helping them improve MTTR while maintaining accuracy. 

Blue Agent threat analysis is now available directly in Google Security Operations. For threats that Blue has investigated, analysts can access those findings directly in Google Security Operations without leaving their existing workflow. 

Playbooks are now available to fetch Wiz Blue Agent Analysis
Teams can automatically view Blue Agent analysis in Google Security Operations cases

Always current, wherever you work

Status, severity, and comments now bidirectionally sync between Wiz threats and Google Security Operations cases in real time, so teams always have the latest information, regardless of where they’re working. Deep links make it easy to move between the platforms, giving analysts the flexibility to go deeper in either while keeping the investigation connected.

See status, severity, and comments across both platforms

Get started

Our teams are continuing to work closely together and deepen the integration between Wiz Defend and Google Security Operations. We’re focused on making it easy for customers to work across both platforms with workflows that work seamlessly between the two. Try it yourself by enabling the Wiz Content Pack and exploring the new integration.

계속 읽기

맞춤형 데모를 받아보세요

맞춤형 데모 신청하기

"내가 본 최고의 사용자 경험은 클라우드 워크로드에 대한 완전한 가시성을 제공합니다."
데이비드 에슬릭CISO
"Wiz는 클라우드 환경에서 무슨 일이 일어나고 있는지 볼 수 있는 단일 창을 제공합니다."
아담 플레처최고 보안 책임자(CSO)
"우리는 Wiz가 무언가를 중요한 것으로 식별하면 실제로 중요하다는 것을 알고 있습니다."
그렉 포니아토프스키위협 및 취약성 관리 책임자