2 Sources
[1]
JFrog Partners with Wiz to Accelerate AI-Era Threat Remediation
The JFrog-Wiz integration is designed to close this gap by connecting both halves of the picture in real time. The integration operates through an API-based data workflow. JFrog Ltd the system of record for trusted software artifacts announced a new integration with Wiz, now part of Google Cloud,
[2]
JFrog Partners with Wiz to Close the Gap on AI-Era Threats, Keeping Global Businesses Secure
The leader in software supply chain collaborates with the leading cloud and AI security platform to deliver a single source of truth from code to cloud to runtime - giving teams the visibility and speed to remediate threats before attackers exploit them JFrog Ltd today announced a new integration
Share
Copy Link
JFrog has partnered with Wiz, now part of Google Cloud, to bridge a critical security gap in the AI era. The integration connects software supply chain context with cloud runtime visibility, enabling security and engineering teams to remediate threats in hours instead of days as attackers exploit vulnerabilities faster than ever.
JFrog Ltd has announced a strategic integration with Wiz, now part of Google Cloud, designed to dramatically reduce time between risk detection and remediation in an era where AI-era threats evolve faster than traditional security responses. The partnership connects JFrog's software supply chain context with Wiz's cloud runtime visibility, creating a unified view of software supply chains that enables security and engineering teams to move from detection to fix in hours rather than days
1
2
.
Source: CXOToday
"Today's enterprise security teams are caught between two sources of information: AppSec teams see what was built but lose visibility once software ships. Cloud security teams see what is running but lack the supply chain context to understand the real risks," said Gal Marder, Chief Strategy Officer at JFrog. "Our partnership and integration with Wiz solves this by delivering a unified view from build to production - so teams can move from detection to remediation in hours vs. days"
1
.The threat landscape has shifted fundamentally as frontier AI models enable attackers to weaponize vulnerabilities at unprecedented speed. According to recent Forrester research, the median time to exploit is now under a day
2
. This acceleration makes Mean Time to Remediate (MTTR) more consequential than ever. Previously, teams measured threat remediation in days; now, the difference between hours and days can determine whether an organization suffers a breach. The bottleneck has shifted from detection to manual investigation, as teams struggle to stitch together context across disconnected tools, turning threat response into weeks-long investigations rather than hours-long fixes1
.The integration operates through an API-based data workflow that connects both halves of the security picture in real time. Wiz identifies vulnerable and exposed workloads across cloud environments, while JFrog traces each workload back to its source artifacts in JFrog Artifactory. The system enriches this data with JFrog Advanced Security vulnerability findings, Contextual Analysis, and AppTrust provenance data
2
. Security teams gain full control over what's running, where it came from, whether it's trusted, and how to fix it—without building custom dashboards or performing manual correlation. What previously required days of manual investigation now takes hours, as teams see Wiz findings and JFrog supply chain context in one unified view on the Wiz Security Graph1
.Related Stories
The partnership enables continuous compliance validation rather than snapshot-based periodic assessments. JFrog AppTrust cryptographic verification confirms every running workload matches what was signed and approved, creating an environment for ongoing compliance rather than periodic audits
2
. Every artifact carries metadata identifying the team, build pipeline, and individual who promoted it. When a threat is identified, automatic ownership routing eliminates time wasted chasing down who owns the fix. The system also enables detection of untrusted deployments, automatically flagging untrusted images running from unapproved registries and tracing remediation paths directly to the build pipeline1
.The zero-friction integration requires no new agents, no cluster instrumentation, and no elevated cloud permissions. Customers running both JFrog Advanced Security and Wiz can operationalize this integration in just minutes
2
. "We're happy to collaborate with JFrog to bring cloud runtime visibility and software supply chain context together in one unified view," said Oron Noah, VP of Product, Extensibility & Partnerships at Wiz. "This integration helps customers spend less time on manual correlation and more time remediating risk"1
. The integration is available to customers immediately and ships as part of JFrog Advanced Security, positioning organizations to respond to vulnerabilities at the speed required in an era where attackers leverage AI to move faster than traditional defenses can counter.Summarized by
Navi
11 Mar 2026•Business and Economy

10 Sept 2024

22 Nov 2024•Business and Economy

1
Technology

2
Policy and Regulation

3
Technology
