Verified User in Marketing and Advertising
AM
Verified User in Marketing and Advertising
Mid-Market (51-1000 emp.)
"Essential Visibility and Fast Risk Prioritization for Cloud Security"
4.5/5
What do you like best about Wiz?

Wiz has been an awesome addition to our security infrastructure. It gives us clear, agentless visibility across our entire cloud environment without drowning us in false positives. The attack path visualization makes it easy to spot real risks right away. Additionally, using Wiz’s AI capabilities has been a huge boost for our team—it simplifies complex queries and helps us triage potential security issues much faster than manual searches allow. Review collected by and hosted on G2.com.

What do you dislike about Wiz?

Honestly, very little to complain about. Wiz moves so fast and ships features so frequently that keeping up with every new update takes a bit of continuous learning, but that’s a great problem to have. Review collected by and hosted on G2.com.

Verified User in Government Administration
AG
Verified User in Government Administration
Mid-Market (51-1000 emp.)
"Wiz: agentless cloud visibility with Security Graph and truly prioritized risks"
4/5
What do you like best about Wiz?

The most useful aspect of Wiz, in my opinion, is the agentless approach combined with the Security Graph: it analyzes the entire cloud environment via API (without installing software) and clearly maps the relationships between vulnerabilities and access.

One of the advantages I appreciate the most is the Zero Alert Fatigue: it identifies only real risks and concrete attack paths (Toxic Combinations), minimizing false alarms. Review collected by and hosted on G2.com.

What do you dislike about Wiz?

The aspect I appreciate least about Wiz is the high cost, calculated based on the number of resources/workloads.

Among the main disadvantages is the complexity of the initial integration: even though the scanning is fast, correctly configuring policies, reports, and more advanced workflows requires in-depth expertise and some time to be set up properly. Review collected by and hosted on G2.com.

Verified User in Financial Services
AF
Verified User in Financial Services
Enterprise (> 1000 emp.)
"From Noise to Real Risk with Wiz"
5/5
What do you like best about Wiz?

What I like most about Wiz is how it helps you focus on what actually matters instead of drowning in findings. The security graph and attack path analysis, especially the way it highlights risky or “toxic” combinations, make a big difference in day‑to‑day work. Instead of reviewing huge vulnerability spreadsheets, you can quickly see which issues are actually exploitable and worth prioritizing. The agentless approach is also a big plus, since it gives you fast visibility without adding extra overhead.

Another thing I really appreciate is the overall depth of the platform without it feeling too heavy to use. Features like data security insights, contextual vulnerability details, and built‑in remediation guidance are genuinely useful.

The Advanced license adds a lot of value, and the Outpost setup is important for us because it allows sensitive data processing to stay within our environment while Wiz mainly works on metadata. On top of that, the support from our TAM has been excellent, very responsive and hands‑on, especially during onboarding and tuning phases. Review collected by and hosted on G2.com.

What do you dislike about Wiz?

Wiz is a very powerful platform, but that also means there’s a bit of a learning curve at the beginning. It takes some time to understand how to best use the different features (like projects, dashboards, and integrations) and to set up a structure that fits your organisation. In larger environments, initial scoping and configuration can require coordination across multiple teams.

Since the platform evolves quickly, some features are still maturing and from time to time that can lead to minor instability or changes in behavior that require adjustment. Also, because it provides so much visibility, it can feel a bit overwhelming at first until you fine‑tune filtering and prioritisation. That said, once everything is properly set up, it becomes much easier to manage and the value is very clear. Review collected by and hosted on G2.com.

Verified User in Computer Software
AC
Verified User in Computer Software
Mid-Market (51-1000 emp.)
"Concise, Precise Risk Detection with Automated Triage Agents"
5/5
What do you like best about Wiz?

The best thing about Wiz is its "Conciseness." Being able to pinpoint actual risks and threats, and not just "shout" about every vulnerability, combined with the new agents that automatically triage and even attack where needed, is priceless. Review collected by and hosted on G2.com.

What do you dislike about Wiz?

Since Wiz has grown into a much larger platform, the UI/UX has become somewhat messy and it’s sometimes hard to find the right path. Configuration for some features isn’t very straightforward, and the documentation is inconsistent (SSO, for example). Where possible, I prefer guided wizards to having to dig through docs. Review collected by and hosted on G2.com.

Verified User in Financial Services
AF
Verified User in Financial Services
Small-Business (50 or fewer emp.)
"Wiz Delivers Instant Agentless Visibility and Actionable Security Graphs"
5/5
What do you like best about Wiz?

What I like best about Wiz is the security graph and the agentless setup. Connecting it across our Azure subscriptions took minutes and there was nothing to install or keep running. We had full visibility on day one with no impact on production.

The graph is the part I'd actually recommend it for. Instead of a flat list of CVEs, it correlates misconfigurations, exposure, secrets and identity permissions into real attack paths, so you can see the toxic combinations that genuinely matter rather than chasing thousands of low-priority findings. That prioritisation has been the single biggest win — it tells us what to fix first and why, and an analyst that might have spent days hunting a toxic combination now gets it surfaced in hours.

It fits how we work too. The Terraform and CI/CD integration catches secrets and misconfigurations before they ship, and being able to write scoped ignore rules for findings we've already accepted keeps the dashboard clean without losing visibility around them. On the AI side, Mika is genuinely handy — it answers security questions in plain language and can write graph queries for you — and the newer agents have noticeably cut time-to-remediation on some issues.

It's become the tool I check when I want to know whether our cloud is actually in good shape, and it answers in a way I can act on. Review collected by and hosted on G2.com.

What do you dislike about Wiz?

The main downside is that Wiz gives you so much information it can feel overwhelming at first. There's a lot of functionality and it takes time to learn how to navigate it and prioritise findings, especially early on - the lenses and the various capabilities have a real learning curve before you're comfortable using it the way it's demo'd. Review collected by and hosted on G2.com.

Ankit B.
AB
Ankit B.
Lead Engineer
Mid-Market (51-1000 emp.)
"Holistic Cloud Asset Visibility with an Easy-to-Integrate UI"
5/5
What do you like best about Wiz?

single platform for all the consolidated cloud data and confiruration inforation, missing issues , configuration realted challenges and malware details which provide the holistic view of our cloud assets, The UI is good and easy to integerate with the existing AWS environment which increase the performnce of all the issues in one place. it is easy to onboarding with built in AI feature which help to navigate the result quickly, Review collected by and hosted on G2.com.

What do you dislike about Wiz?

retention period and lack of real time alerting needs to be fixed Review collected by and hosted on G2.com.

Razi A.
RA
Razi A.
Senior Engineer
Enterprise (> 1000 emp.)
"Wiz Unifies Cloud Services with an Easy, Configurable UI and Handy GraphQL Access"
5/5
What do you like best about Wiz?

Wiz integrates all my cloud services in one place. It provides connectors for each service and gives you the option to choose which ones to enable, so it’s quite configurable. The UI is also very easy to use. It also provides GraphQL to fetch data, which comes in handy. Review collected by and hosted on G2.com.

What do you dislike about Wiz?

At times, it’s hard to understand the pricing models and how the tokens work. Also, the Portal itself can lag a bit, which makes the overall experience less smooth. Review collected by and hosted on G2.com.

Verified User in Education Management
AE
Verified User in Education Management
Mid-Market (51-1000 emp.)
"Cloud Security with Wiz!"
5/5
What do you like best about Wiz?

A pleasant surprise has been the steady pace of new features and capabilities. Over the time we've been customers, the platform has kept expanding — deeper code-to-cloud correlation, broader coverage across our environment, and new capabilities that arrive without us having to re-architect anything. It's reassuring to invest in a tool that keeps getting more useful rather than standing still. Review collected by and hosted on G2.com.

What do you dislike about Wiz?

that it isn't free! no complaints with the product Review collected by and hosted on G2.com.

Adam N.
AN
Adam N.
Network Installation Engineer
Mid-Market (51-1000 emp.)
"Context-Aware Risk Alerts and Easy Multi-Cloud Integration"
4.5/5
What do you like best about Wiz?

Ease of integration to multiple Cloud Computing providers. I love how Wiz's Risk Issues work as they provide critical, context-aware security alerts, not like some random Vulnerability finding from a scanner which does not take into consideration the context and conifguration of my environment. Review collected by and hosted on G2.com.

What do you dislike about Wiz?

Doesn't cover all the IaaS technologies we currently make used of. I know some things are in the pipe-line or coming soon though. Review collected by and hosted on G2.com.

Verified User in Staffing and Recruiting
ES
Verified User in Staffing and Recruiting
Enterprise (> 1000 emp.)
"Intuitive Security Graph and Fast Agentless Multi-Cloud Visibility"
5/5
What do you like best about Wiz?

UI / UX

Wiz replaces traditional flat CVE lists with an intuitive Security Graph. It maps actual attack paths, showing how vulnerabilities, internet exposure, and permissions intersect to form true risks. Dashboards are clean, modern, and leadership-ready.

Integrations

The agentless, API-driven architecture connects AWS, Azure, and GCP tenants in minutes without impacting production. It also integrates smoothly into CI/CD pipelines and IaC (Terraform) to catch secrets and misconfigurations pre-deployment.

Performance

Operating out-of-band via cloud snapshots ensures zero impact on workload performance. Scanning is fast, comprehensive, and completely eliminates the deployment friction and stability risks of traditional host agents.

Pricing / ROI

Wiz is a premium enterprise investment with a steep price tag at scale. However, the ROI is realized through immediate tool consolidation (CSPM, CIEM, vulnerability scanning) and a massive reduction in alert noise, saving engineering teams countless hours.

Support / Onboarding

Time-to-value is nearly instant; you get full environment visibility on day one. The onboarding framework allows for a seamless, phased rollout. Customer support is highly proactive and technically sharp when dealing with complex enterprise setups.

AI / Intelligence

Its AI-SPM capabilities excel at discovering "Shadow AI"—automatically mapping out unmanaged models and training data. The built-in AI assistant also allows analysts to query the security graph using natural language for rapid triaging.

G2 Summary: Wiz is a top-tier CNAPP that eliminates tool sprawl and security friction. While it is a significant financial commitment, the ability to prioritize "toxic combinations" rather than endless alerts makes it indispensable for large-scale, multi-cloud environments. Review collected by and hosted on G2.com.

What do you dislike about Wiz?

While Wiz excels at high-level cloud visibility, the day-to-day operational reality introduces a frustrating amount of noise through false positives, particularly within application runtimes.

The primary issue stems from how Wiz analyzes vulnerabilities in container images and runtime environments. The platform frequently flags vulnerabilities in libraries that are technically present inside a container or file system, but are completely untouched, unimported, and unused by the running application.

When security dashboards fill up with these "phantom" risks, it creates friction between the security and platform engineering teams. Developers end up wasting time investigating and "fixing" vulnerabilities that pose zero actual runtime risk to the active application.

While the agentless snapshot model is fantastic for initial deployment, the platform needs to become more precise. It should correlate package presence with actual runtime execution paths or active memory loading before raising the alarm. Until Wiz can distinguish between an idle file on a disk and a library that is actually exposed in the application execution path, teams will continue to experience alert fatigue and strained internal relationships during remediation sprints. Review collected by and hosted on G2.com.