Wiz
Wiz is a new approach to cloud security that finds the most critical risks and infiltration vectors with complete coverage across the full stack of multi-cloud environments. Find all lateral movement risks such as private keys used to access both development and production environments. Scan for vulnerable and unpatched operating systems, installed software, and code libraries in your workloads prioritized by risk. Get a complete and up-to-date inventory of all services and software in your cloud environments including the version and package. Identify all keys located on your workloads cross referenced with the privileges they have in your cloud environment. See which resources are publicly exposed to the internet based on a full analysis of your cloud network, even those behind multiple hops. Assess the configuration of cloud infrastructure, Kubernetes, and VM operating systems against your baselines and industry best practices.
Learn more
Sonrai Security
Identity and Data Protection for AWS, Azure, Google Cloud, and Kubernetes. Sonrai’s public cloud security platform provides a complete risk model of all identity and data relationships, including activity and movement across cloud accounts, cloud providers, and 3rd party data stores. Uncover all identity and data relationships between administrators, roles, compute instances, serverless functions, and containers across multi-cloud accounts and 3rd-party data stores. Inside the platform, our critical resource monitor continuously monitors your critical data sitting inside object stores (e.g. AWS S3, Azure Blob) and database services (e.g. CosmosDB, Dynamo DB, RDS). Privacy and compliance controls are monitored across multiple cloud providers and 3rd party data stores. Resolutions are coordinated with relevant DevSecOps teams.
Learn more
Mend.io
Mend.io offers the first AI native application security platform, empowering organizations to build and run a proactive AppSec program tuned for AI powered development. The unified platform secures AI generated code and embedded AI components, drives risk reduction through AI powered remediation, automates compliance, and provides a holistic enterprise scale view of risks and clear actions for developers across your entire codebase.
Learn more
Massdriver
Massdriver is a self-service infrastructure platform designed around the principle of prevention, not permission. It empowers operations teams to encode their expertise, and your organization’s security, compliance, and cost requirements, into pre-approved modules using the Infrastructure-as-Code tools you already know, such as Terraform, Helm, or OpenTofu.
These modules become functional software assets, integrating policy and governance so developers can easily discover and provision them from a central service catalog. With built-in secrets management, monitoring, and ABAC, teams can manage multi-cloud deployments across AWS, Azure, GCP, and Kubernetes faster and more reliably.
By replacing traditional, brittle CI/CD pipelines with ephemeral pipelines that spin up automatically from each module’s tooling, Massdriver frees DevOps and Platform teams to focus on innovation rather than maintenance. In short, it’s a self-service approach that cuts operational overhead, accelerate
Learn more