JFrog and Wiz Unite to Slash AI-Era Threat Remediation Time from Days to Hours

2 Sources

Share

JFrog has partnered with Wiz, now part of Google Cloud, to bridge a critical security gap in the AI era. The integration connects software supply chain context with cloud runtime visibility, enabling security and engineering teams to remediate threats in hours instead of days as attackers exploit vulnerabilities faster than ever.

JFrog Wiz Partnership Addresses Critical Security Gap

JFrog Ltd has announced a strategic integration with Wiz, now part of Google Cloud, designed to dramatically reduce time between risk detection and remediation in an era where AI-era threats evolve faster than traditional security responses. The partnership connects JFrog's software supply chain context with Wiz's cloud runtime visibility, creating a unified view of software supply chains that enables security and engineering teams to move from detection to fix in hours rather than days

1

2

.

Source: CXOToday

Source: CXOToday

"Today's enterprise security teams are caught between two sources of information: AppSec teams see what was built but lose visibility once software ships. Cloud security teams see what is running but lack the supply chain context to understand the real risks," said Gal Marder, Chief Strategy Officer at JFrog. "Our partnership and integration with Wiz solves this by delivering a unified view from build to production - so teams can move from detection to remediation in hours vs. days"

1

.

Frontier AI Models Accelerate Threat Landscape

The threat landscape has shifted fundamentally as frontier AI models enable attackers to weaponize vulnerabilities at unprecedented speed. According to recent Forrester research, the median time to exploit is now under a day

2

. This acceleration makes Mean Time to Remediate (MTTR) more consequential than ever. Previously, teams measured threat remediation in days; now, the difference between hours and days can determine whether an organization suffers a breach. The bottleneck has shifted from detection to manual investigation, as teams struggle to stitch together context across disconnected tools, turning threat response into weeks-long investigations rather than hours-long fixes

1

.

How the Integration Delivers Faster Risk-to-Fix Workflows

The integration operates through an API-based data workflow that connects both halves of the security picture in real time. Wiz identifies vulnerable and exposed workloads across cloud environments, while JFrog traces each workload back to its source artifacts in JFrog Artifactory. The system enriches this data with JFrog Advanced Security vulnerability findings, Contextual Analysis, and AppTrust provenance data

2

. Security teams gain full control over what's running, where it came from, whether it's trusted, and how to fix itโ€”without building custom dashboards or performing manual correlation. What previously required days of manual investigation now takes hours, as teams see Wiz findings and JFrog supply chain context in one unified view on the Wiz Security Graph

1

.

Continuous Compliance Validation and Automatic Ownership Routing

The partnership enables continuous compliance validation rather than snapshot-based periodic assessments. JFrog AppTrust cryptographic verification confirms every running workload matches what was signed and approved, creating an environment for ongoing compliance rather than periodic audits

2

. Every artifact carries metadata identifying the team, build pipeline, and individual who promoted it. When a threat is identified, automatic ownership routing eliminates time wasted chasing down who owns the fix. The system also enables detection of untrusted deployments, automatically flagging untrusted images running from unapproved registries and tracing remediation paths directly to the build pipeline

1

.

Zero-Friction Integration Available Immediately

The zero-friction integration requires no new agents, no cluster instrumentation, and no elevated cloud permissions. Customers running both JFrog Advanced Security and Wiz can operationalize this integration in just minutes

2

. "We're happy to collaborate with JFrog to bring cloud runtime visibility and software supply chain context together in one unified view," said Oron Noah, VP of Product, Extensibility & Partnerships at Wiz. "This integration helps customers spend less time on manual correlation and more time remediating risk"

1

. The integration is available to customers immediately and ships as part of JFrog Advanced Security, positioning organizations to respond to vulnerabilities at the speed required in an era where attackers leverage AI to move faster than traditional defenses can counter.

Today's Top Stories

ยฉ 2026 TheOutpost.AI All rights reserved