USM Anywhere and Wiz compete in the realm of security management platforms, with USM Anywhere excelling in on-premise capabilities and Wiz leading in cloud-native solutions. Wiz appears to have the upper hand due to its advanced cloud features and automation efficiencies.
Features: USM Anywhere's key features include an all-in-one security management system offering SIEM, intrusion detection, and vulnerability scanning. Its centralized logging and asset discovery help achieve PCI and ISO 27001 compliance. Wiz offers robust cloud posture management and contextual risk prioritization, featuring the Security Graph for visualizing security risks and automated remediation capabilities.
Room for Improvement: USM Anywhere could enhance its log search capabilities, report customization, and performance with large-scale data. It also needs improvements in vulnerability scanning and custom rule deployment. Wiz could benefit from better reporting functionalities, stronger API integrations, and enhancements in risk assessment and prioritization tools.
Ease of Deployment and Customer Service: USM Anywhere provides flexible deployment across cloud, on-premises, and hybrid settings but requires expertise for its complex setup. Its technical support receives mixed reviews. Wiz excels in ease of deployment with its agentless architecture, quick feature updates, and responsive support, making it ideal for public cloud environments.
Pricing and ROI: USM Anywhere's asset-based pricing model appeals to small and medium businesses, offering significant ROI through cost savings and security management efficacy. Wiz employs a premium pricing approach, justified by its comprehensive cloud security capabilities, with customers finding value in its rich features and potential savings through solution consolidation.
Customers see ROI as they save on staff and other resources.
We have seen ROI from Wiz and we continued to see value in Wiz.
We estimate a cost reduction of around 35% to 50%, or even more, due to consolidating our security management into one platform.
We realized value immediately after implementing Wiz.
At the next meeting, they follow up with me, and it's usually resolved pretty fast.
We have a dedicated channel with Wiz and are always in communication with them.
The solution's technical support was excellent.
USM Anywhere faces scalability issues because of a 60 TB limit.
We have deployed Wiz in three organizations on AWS, each with approximately 70 to 80 accounts, totaling more than 120 accounts.
Scalability-wise, I rate the solution a ten out of ten.
We were able to find a balance in terms of pricing and performance.
We've only had downtime from maintenance and updates, and they notify us in advance, so we aren't impacted.
Stability-wise, I rate the solution an eight to nine out of ten.
The solution is very stable.
There are scalability issues due to a 60 TB limit, which restricts its use for large customers like banks.
We would like to see preventive controls that can be applied through Wiz to protect against vulnerabilities that we're not going to be able to remediate immediately.
Given the level of visibility into all the cloud environments Wiz provides, it would be nice if they could integrate some kind of mechanism to better manage tenants on multiple platforms.
We need an agent that can be installed, or that can overview all the containers and Kubernetes so that it can detect malicious activities that are happening in them.
The pricing is amazing and really cheap.
We are paying 250k per year.
In some cases, it has a very aggressive price, so very cheap.
What I do like is that the pricing seems pretty simple.
The 365-day block query is a major feature.
The feature leads to minimal false positives and a low volume of alerts, which is highly valuable for our operations.
It's highly customizable, allowing us to manage many custom features effectively.
Regarding compliance and governance, Wiz streamlines our vulnerability management to meet specific needs effectively.
USM Anywhere centralizes security monitoring of networks and devices in the cloud, on premises, and in remote locations, helping you to detect threats virtually anywhere.
Discover
Analyze
Detect
Respond
Assess
Report
Wiz is a highly efficient solution for data security posture management (DSPM), with a 100% API-based approach that provides quick connectivity and comprehensive scans of platform configurations and workloads. The solution allows companies to automatically correlate sensitive data with relevant cloud context, such as public exposure, user identities, entitlements, and vulnerabilities.This integration enables them to understand data accessibility, configuration, usage, and movement within their internal environments.
Wiz's Security Graph delivers automated alerts whenever risks emerge, allowing teams to prioritize and address the most critical issues before they escalate into breaches. Furthermore, Wiz ensures rapid and agentless visibility into critical data across various repositories, enabling organizations to easily determine the location of their data assets.
Wiz provides various features in the following categories:
Agentless Scanning: The solution can scan every layer of a cloud environment without requiring agents, managing the entire process and providing comprehensive visibility.
Workflow Integration: Users can create customized workflows within Wiz to identify and assign actions based on urgency, integrating them with ticketing systems for quick and efficient remediation.
Vulnerability Management: Wiz's vulnerability management modules provide detailed analytics and visibility across cloud systems, streamlining the manual process of vulnerability discovery. The automated attack path analysis helps identify risks and trace potential points of exposure, allowing users to understand and mitigate them effectively and proactively.
CSPM (Cloud Security Posture Management): Wiz's CSPM module offers instant visibility into high-level risks to an enterprise’s cloud environment, covering all accounts without the need for agents.
Out-of-the-Box Reporting and Custom Queries: The service supports comprehensive reporting with asset context, allowing users to perform complex custom queries on the solution’s user-friendly interface.
Automation Roles and Dashboards: The solution facilitates automation by providing essential roles and dedicated dashboards that enable teams to understand security information quickly, even those with limited expertise.
Contextual Risk Evaluation: The service contextualizes the various components contributing to an issue, providing a risk evaluation framework that helps prioritize remediation efforts.
Security Graph and Visibility: Wiz's security graph offers visibility across the entire organization, even with multiple accounts, enabling users to understand their environment and assets effectively.
Wiz offers the following benefits:
Comprehensive agentless scanning
Effective identification and mitigation of vulnerabilities
Streamlined vulnerability management
Robust reporting capabilities and customizable queries
Enhanced automation and role-based access control
Prioritized risk evaluation for efficient remediation
Security posture across multiple accounts
Kamran Siddique, VP Information Security at boxed.com, remarks his company has seen a ROI while using Wiz, as it simplifies the process by integrating multiple useful tools into one solution.
According to a Senior Security Architect at Deliveroo, Wiz has given their company a fresh approach to vulnerability management, as Wiz's native integrations are extremely useful and paramount to the operational success of their platform.
We monitor all Compliance Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.