Summary
Wiz has 2 registry-verified rows and 12 vendor-stated rows in the CertReports index, last verified 17 Sep 2026. The strongest row is HIPAA: Vendor displays a HIPAA badge on its trust centre (claim; BAA availability not yet captured). This page is independent of the vendor’s own trust centre: dates, sources and caveats come from CertReports captures.
Reviewer brief
As of 2026-09-17, Wiz is listed in the FedRAMP registry as FedRAMP Authorized, with authorization issued 2025-09-25 and audited by Fortreum, LLC. As of 2026-09-17, Wiz is listed in the CSA STAR registry with a Level 1 self-assessment (CAIQ) dated 2024-02-16. As of 2026-09-17, Wiz states on its trust centre that it holds SOC 2 Type II, SOC 3, ISO/IEC 27001, ISO/IEC 27701, ISO/IEC 27017:2015, ISO/IEC 27018:2019, PCI DSS, CCPA, GovRAMP, TX-RAMP, and IRAP. As of 2026-09-17, Wiz displays a HIPAA badge on its trust centre, though BAA availability is not yet captured in the evidence. No public evidence was found for any additional frameworks beyond those listed in these rows as of 2026-09-17.
- FedRAMP: listed in FedRAMP registry as Authorized (issued 2025-09-25, auditor Fortreum, LLC), as of 2026-09-17.
- CSA STAR: listed in CSA STAR registry, Level 1 self-assessment (CAIQ) dated 2024-02-16, as of 2026-09-17.
- SOC 2 / HIPAA: Wiz states on its trust centre that it holds a SOC 2 Type II report; it also displays a HIPAA badge on its trust centre with BAA availability not yet captured, as of 2026-09-17.
Facts only, each dated; nothing here is inferred, scored or advised. Brief generated 17 Sep 2026; it is regenerated whenever a row changes.
Among security vendors
2verified rows
Category median 1, across 174 indexed security vendors. Wiz has more verified rows than 91 percent of them.
cloud securityposture managementthreat detectionvulnerability management
Compare with similar vendors
Pick your own comparisonCompliance grid
- HIPAAVendor-stated
Vendor displays a HIPAA badge on its trust centre (claim; BAA availability not yet captured)
as of 17 Sep 20261 source
SOC 2Vendor-statedVendor states SOC 2 Type II on its trust centre
as of 17 Sep 20261 source- FedRAMPVerified
FedRAMP Authorized
as of 17 Sep 20261 source · Fortreum, LLC
PCI DSSVendor-statedVendor states PCI DSS on its trust centre
as of 17 Sep 20261 source
ISO/IEC 27001Vendor-statedVendor states ISO 27001 on its trust centre
as of 17 Sep 20261 source- CSA STARVerified
STAR Level 1 self-assessment (CAIQ)
as of 17 Sep 20261 source
ISO/IEC 27701Vendor-statedVendor states ISO/IEC 27701 on its trust centre
as of 17 Sep 20261 source
SOC 3Vendor-statedVendor states SOC 3 on its trust centre
as of 17 Sep 20261 source
ISO/IEC 27017Vendor-statedVendor states ISO/IEC 27017:2015 on its trust centre
as of 17 Sep 20261 source
ISO/IEC 27018Vendor-statedVendor states ISO/IEC 27018:2019 on its trust centre
as of 17 Sep 20261 source- CCPA / CPRAVendor-stated
Vendor states CCPA on its trust centre
as of 17 Sep 20261 source
GovRAMPVendor-statedVendor states GovRAMP on its trust centre
as of 17 Sep 20261 source
TX-RAMPVendor-statedVendor states TX-RAMP on its trust centre
as of 17 Sep 20261 source
IRAPVendor-statedVendor states IRAP on its trust centre
as of 17 Sep 20261 source
No public evidence yet for GDPR, Cyber Essentials, ISO 42001. This does not mean the vendor lacks them; it means nothing public was found at the last check.
Legal artefacts
Subprocessors (2)
- GAGainsight and its integrations with Salesforce
- SMStatus Monitoring Amazon Web Services
Change history
- 17 Sep 2026CCPA / CPRA evidence addedA CCPA / CPRA row entered the index with state Vendor-stated.
- 17 Sep 2026GovRAMP evidence addedA GovRAMP row entered the index with state Vendor-stated.
- 17 Sep 2026HIPAA evidence addedA HIPAA row entered the index with state Vendor-stated.
- 17 Sep 2026IRAP evidence addedA IRAP row entered the index with state Vendor-stated.
- 17 Sep 2026ISO/IEC 27001 evidence addedA ISO/IEC 27001 row entered the index with state Vendor-stated.
- 17 Sep 2026ISO/IEC 27017 evidence addedA ISO/IEC 27017 row entered the index with state Vendor-stated.
- 17 Sep 2026ISO/IEC 27018 evidence addedA ISO/IEC 27018 row entered the index with state Vendor-stated.
- 17 Sep 2026ISO/IEC 27701 evidence addedA ISO/IEC 27701 row entered the index with state Vendor-stated.
- 17 Sep 2026PCI DSS evidence addedA PCI DSS row entered the index with state Vendor-stated.
- 17 Sep 2026SOC 2 evidence addedA SOC 2 row entered the index with state Vendor-stated.
Similar vendors with evidence
Related by product tags and the Security category, ranked by shared tags, description similarity and overlapping evidence. Never by popularity.
