Academia CloudSec

Bem-vindo à CloudSec Academy, seu guia para navegar pela sopa de letrinhas dos acrônimos de segurança em nuvem e jargão do setor. Livre-se das distrações com conteúdo claro, conciso e habilmente elaborado, cobrindo os fundamentos para as melhores práticas.

What is CVE scanning?

Equipe de especialistas do Wiz

CVE scanning is the automated process of checking your software, systems, and networks against a database of known security flaws to identify vulnerabilities before attackers can exploit them.

What is container image scanning?

Equipe de especialistas do Wiz

Container image scanning is the automated process of analyzing container images for security vulnerabilities, misconfigurations, and compliance violations.

What is API scanning?

Equipe de especialistas do Wiz

API scanning is the automated process of analyzing APIs to detect security vulnerabilities, misconfigurations, and logic flaws.

What is SAST scanning? How it works in cloud development

Equipe de especialistas do Wiz

SAST scanning, or Static Application Security Testing, is a "white-box" testing method that analyzes your application's source code, bytecode, or binaries to find security flaws

Veja o Wiz em ação

O Wiz conecta os pontos em toda a sua nuvem, do código ao tempo de execução.

Para obter informações sobre como a Wiz lida com seus dados pessoais, consulte nosso Política de Privacidade.

Wiz wand

What is internal vulnerability scanning?

Equipe de especialistas do Wiz

Internal vulnerability scanning is the process of identifying security weaknesses within an organization’s internal network infrastructure.

What is attack surface scanning? A complete guide

Equipe de especialistas do Wiz

Attack surface scanning is the process of continuously discovering and monitoring internet-facing assets to identify entry points attackers can exploit.

AWS Budgets vs. Cost Explorer: Why you need both

Equipe de especialistas do Wiz

This article will help you understand the benefits of using both tools together, along with a solution like Wiz to fill the cross-cloud visibility gap and optimize both costs and security.

How to Evaluate Wiz: Common FAQs

Equipe de especialistas do Wiz

This FAQ is designed to help teams evaluate whether Wiz is the right cloud security solution for them by answering the most common technical, strategic, and logistical questions.

Attack surface discovery: From blind spots to visibility

Equipe de especialistas do Wiz

Attack surface discovery (ASD) is the continuous, automated process of identifying and mapping every asset, connection, and service an attacker could target across your entire digital footprint (cloud, hybrid, and on-premises environments).

Container runtime scanning best practices

Equipe de especialistas do Wiz

Runtime scanning answers a critical question: 'What is runtime security for containers?' It focuses on detecting live behaviors, active threats, and anomalies that only appear when containers execute under real production traffic.

Source code scanning best practices for cloud security

Equipe de especialistas do Wiz

Source code scanning is automated analysis of your code, dependencies, and infrastructure definitions to find security issues before you deploy. This means a tool reads your code the way a careful reviewer would, but at high speed and at scale.

How to implement CI/CD security scanning: Best practices

Equipe de especialistas do Wiz

CI/CD security scanning is the practice of adding automated security checks into your build and deployment pipelines. This means every meaningful code change is tested for risk before it can reach production.