Wiz is a comprehensive cloud security platform that provides visibility and risk assessment across various cloud environments, including Amazon Web Services (AWS) and Google Cloud Platform (GCP). Integrating Wiz into your cloud infrastructure enables proactive identification and remediation of security risks. Below is a step-by-step guide to setting up Wiz in both AWS and GCP environments.
Setting Up Wiz in AWS
Integrating Wiz with AWS allows for continuous security monitoring and risk assessment. Follow these steps to establish the integration:
1. Prerequisites
- Wiz Account: Ensure you have an active Wiz account.
- AWS Administrative Access: Access to an AWS account with administrative privileges is required.
2. Wiz Integration with AWS Security Hub (Optional but Recommended)
Wiz can integrate with AWS Security Hub to centralize security findings. To set up this integration:
- Enable AWS Security Hub:
- Navigate to the AWS Management Console.
- Access Security Hub under the Security, Identity, & Compliance section.
- Click Enable Security Hub.
- Configure Wiz Integration:
- In the Wiz portal, go to the Integrations section.
- Select AWS Security Hub and follow the on-screen instructions to authorize the integration.
This integration allows Wiz to send security issues detected in AWS resources to Security Hub, providing a comprehensive view of your security posture. citeturn0search2
3. Deploy Wiz in Your AWS Environment
To deploy Wiz:
- Access the Wiz Portal:
- Log in to your Wiz account.
- Initiate AWS Integration:
- Navigate to the Environments section.
- Click Add Environment and select Amazon Web Services (AWS).
- Set Up CloudFormation Stack:
- Wiz will provide a CloudFormation template.
- In the AWS Management Console, go to CloudFormation.
- Create a new stack using the template URL provided by Wiz.
- Follow the prompts to deploy the stack, which sets up the necessary roles and permissions for Wiz to access your AWS environment.
- Verify Integration:
- Once the stack is deployed, return to the Wiz portal.
- Confirm that your AWS environment is connected and that data is being ingested.
For detailed instructions, refer to Wiz’s official documentation on integrating with AWS. citeturn0search0
Setting Up Wiz in Google Cloud Platform (GCP)
Integrating Wiz with GCP enables comprehensive security assessments of your cloud projects. Follow these steps to set up the integration:
1. Prerequisites
- Wiz Account: Ensure you have an active Wiz account.
- GCP Administrative Access: Access to a GCP project with administrative privileges is required.
2. Deploy Wiz in Your GCP Environment
To deploy Wiz:
- Access the Wiz Portal:
- Log in to your Wiz account.
- Initiate GCP Integration:
- Navigate to the Environments section.
- Click Add Environment and select Google Cloud Platform (GCP).
- Set Up Service Account:
- Wiz will provide instructions to create a service account in GCP with the necessary read-only permissions.
- In the GCP Console, go to IAM & Admin > Service Accounts.
- Create a new service account and assign the roles as specified by Wiz.
- Provide Credentials to Wiz:
- Generate a JSON key for the service account.
- Upload this key to the Wiz portal to establish the connection.
- Verify Integration:
- After uploading the key, confirm in the Wiz portal that your GCP environment is connected and data is being ingested.
For detailed instructions, refer to Wiz’s official documentation on integrating with GCP. citeturn0search8
3. Optional Integrations
Wiz offers additional integrations to enhance security operations:
- Google Security Operations: Integrate Wiz with Google Security Operations to centralize and streamline security findings. citeturn0search6
- Elastic Integration: Combine Wiz with Elastic to enrich security data and improve threat detection capabilities. citeturn0search9
By following these steps, you can effectively integrate Wiz into your AWS or GCP environments, enhancing your cloud security posture through continuous monitoring and proactive risk management.