Veracode, a global leader in application risk management, has announced a partnership with cloud security provider Wiz, integrating its Veracode Risk Manager (VRM) into the Wiz Integration (WIN) platform to enhance cloud and application security posture for mutual customers.
Security teams frequently face challenges managing an overwhelming volume of vulnerability data spread across numerous disconnected tools. Veracode Risk Manager (VRM), an Application Security Posture Management (ASPM) solution, is designed to address this by unifying risk insights from code to cloud and automating prioritization and remediation. Through VRM connectors, which ingest findings from third-party tools like Wiz, security teams gain a consolidated view of risk across the entire software development lifecycle, enabling them to trace root causes, prioritize, and remediate effectively.
Derek Maki, Head of Product at Veracode, stated, “Security teams are overwhelmed—not by a lack of data, but by too much of it, spread across too many disconnected tools. By integrating Wiz’s deep cloud security findings directly into Veracode Risk Manager and correlating with Veracode application security testing detections, we’re giving security teams a clearer, faster, and prioritized view of risk so they can take immediate action.”
The WIN platform facilitates the sharing of prioritized security findings with context, including inventory, vulnerabilities, issues, and configuration findings between Wiz and Veracode. This collaboration offers several key benefits to mutual customers:
Smarter, more accurate risk prioritization: Wiz’s findings feed directly into Veracode Risk Manager, enhancing its scoring model and enabling more accurate prioritization of security issues based on real-time, contextual risk data.
Less noise, less burnout: By aggregating all risk data and applying the right context and prioritization, the integration helps security teams focus on the most critical issues, reducing alert fatigue and improving operational efficiency.
Certified, reliable integration: A rigorous certification process ensures the connector between Wiz and VRM is reliable, consistent, and jointly supported, providing confidence in data flow and troubleshooting capabilities.
Oron Noah, Vice President of Product Extensibility & Partnerships at Wiz, commented, “By bringing Veracode into the WIN ecosystem, we’re expanding the power of cloud-native context to help organizations connect the dots between application and cloud risk.”
WIN supports a cloud security operating model that fosters collaborative work between security and cloud teams to understand and control risks across their Continuous Integration/Continuous Delivery (CI/CD) pipeline. The partnership between Wiz and Veracode aims to optimize operational efficiency through an integrated solution strategy. Current Veracode Risk Manager customers can enable the Wiz connector today through the Wiz Integrations Page.
Veracode provides a platform for Application Risk Management in the AI era. The platform is utilized by organizations globally to build and maintain secure software from code creation to cloud deployment, offering capabilities that secure the entire software development lifecycle.