Snyk and Wiz are competitors in the cybersecurity solutions sector. Based on features, Snyk has a competitive edge due to its developer-friendly tools and integration capabilities, while Wiz provides a comprehensive security management suite for cloud environments.
Features: Snyk offers strong integrations, a vast vulnerability database, and automated mitigation strategies. It excels in CI/CD pipeline integration and developer-friendly tools. Wiz focuses on cloud security posture management, risk prioritization, and threat intelligence, providing a centralized view of multi-cloud environments for better security insights.
Room for Improvement: Snyk needs enhanced integration capabilities and improved IDE plugins, as well as faster scanning times. Better documentation could also improve user experience. Wiz could benefit from enhanced reporting capabilities, better visibility in Kubernetes, and expanded remediation workflows. File integrity monitoring and more customizable dashboards would improve performance.
Ease of Deployment and Customer Service: Snyk provides flexible deployment options across cloud and on-premises setups, and its technical support is generally rated positively, although improvements in customer success engagement are suggested. Wiz is also versatile in deployment, offering excellent support, noted for responsive communication with developers and engineers.
Pricing and ROI: Snyk is considered cost-effective, offering flexible licensing models, which is valuable for early vulnerability mitigation and ROI through reduced development time. Wiz, while more expensive, justifies its higher cost with advanced features beneficial for larger environments. Its comprehensive security overview supports tool consolidation, although pricing is a concern for broader adoption.
The solution provides a good ROI, especially for regular customers, offering discounts for three-year licenses.
I don't think the tool in itself is very capable of doing that, but we have XSOAR and other tool integrations done on the platform, so this can be accomplished.
On average, we reduced the mean time to fix security issues by roughly 40 to 50% for the classes of vulnerabilities Snyk surfaced, which shortened our exposure window and reduced rework during upgrades.
I can see that Snyk saves the costs of hiring security developers for vulnerability scanning and security checks, as that responsibility is now managed by Snyk.
doing everything manually would take a lot of work and effort, and Wiz reduces both the workload and the need for manual thinking and human feedback.
Wiz Code allows us to scan all accounts within minutes.
I think we're reaching the point where we'll see a return on investment, and we'll be there by the end of the year.
If I make it a high priority, they have resolved one query within 20 minutes.
If local Indian support cannot resolve an issue, global tech support aligns promptly within the agreed SLA.
Fast response times and knowledgeable staff who understand the intricacies of the system.
Our long-standing association has ensured smooth communication, resulting in favorable support experiences and satisfactory issue resolution.
Their response time aligns with their SLA commitments.
We could understand the implementation of the product and other features without the need for human interaction.
On a scale from 1 to 10, I would give Wiz's support a 10.
The vendor was readily available to assist us over calls, clarifying both technical aspects and theoretical insights.
If I were to put Wiz support on a scale from one to ten, I would give them a ten.
For stability, scalability, mean time to response, and potential incident investigation improvements, I would give it a nine or probably even a ten.
Onboarding endpoints and assets on Cortex Cloud by Palo Alto Networks is very easy.
The platform is able to auto-shut certain resources that are not in use through the agentless scan feature.
Snyk allows for scaling across large organizations, accommodating tens of thousands of applications and over 60,000 repositories.
Snyk is very scalable and can handle my organization's growth and changing needs.
As the number of applications and upgrades grows, it continues to fit into our workflow without adding much overhead.
Our environment quadrupled in size. We didn’t have to make any adjustments or configuration changes; it just accommodated the growth.
In terms of scalability, I don't feel any issues.
In terms of cloud environment scalability, this is where Wiz Code generally excels, being built to handle thousands of AWS accounts, multi-cloud environments, and millions of cloud resources.
My impression of Cloud Runtime Security in stopping attacks in real-time is that I have never had an issue where it has let something through, causing an outage or concerns to the customer.
However, now in Cortex Cloud, I have not seen any lag or buffer.
My evaluation of how stable and reliable Cortex Cloud by Palo Alto Networks is very positive.
Snyk has been stable in our environment, and I have used it consistently during upgrades and security remediation work.
The stability of Wiz has been good, with no downtime, bugs, or glitches.
The best part is that their entire solution is built on APIs, allowing for easy integration without a codeless approach.
The services were stable, and we did not experience any downtime.
Regarding the generative AI security tool, I know for sure it's Agentic.
The solution is quite premium in cost compared to alternatives such as Wiz.
There is not a clear MSP model compared to other vendors such as CrowdStrike.
It lacks the ability to select branches on its Web UI, forcing users to rely on CLI or CI/CD for that functionality.
The inclusion of AI to remove false positives would be beneficial.
As we are moving toward GenAI, we expect Snyk to leverage AI features to improve code scanning findings.
One significant area for improvement would be increasing automation. While they excel at identifying issues, we need assistance in minimizing the human hours required for tasks.
Adding AI-driven features could significantly assist developers in addressing vulnerabilities more efficiently, thereby improving deployment times and adherence to deadlines.
Governance is the area where Wiz Code actually shines; for large enterprises, governance is not just finding vulnerabilities; it includes ownership, accountability, exceptions, policies, risk acceptance, and auditability.
The solution is costly, with high-end capabilities suitable for enterprises.
Today, it is smart and easy to calculate the licenses.
Snyk is recognized as the cheapest option we have evaluated.
After negotiations, we received a special package with a good price point.
Snyk is less expensive.
I don’t think there’s anyone else out there offering the same level, scale, or efficiency.
If you are a small scale enterprise organization, you probably would not pay such a hefty amount of money to protect your organization.
Wiz is less expensive than Microsoft and Palo Alto.
AI/ML aids in anticipating remediation for misconfigurations and vulnerabilities, and automatic remediation can be easily configured.
Cortex Cloud by Palo Alto Networks has reduced the time spent on incident investigations, and if I had to estimate, I would say it has cut our investigation time in half.
This simplifies the management of shared responsibility among different people and entities, allowing you to use one single tool instead of having dozens of different tools to orchestrate and integrate.
Our integration of Snyk into GitHub allows us to automatically scan codebases and identify issues, which has improved efficiency.
Snyk helps detect vulnerabilities before code moves to production, allowing for integration with DevOps and providing a shift-left advantage by identifying and fixing bugs before deployment.
Snyk has positively impacted my organization by improving the security posture across all software repositories, resulting in fewer critical vulnerabilities, more confidence in overall product security, and faster security compliance for project clients.
The ability to scan every layer without agents is a huge selling point because we're multi-agent.
My favourite is the EASM/External Exposure view and overall package - full risk visibility. It allows us to prioritize, and I mean truly prioritize, what should be addressed first.
The granularity of visibility that the platform provides is the most valuable aspect.


| Company Size | Count |
|---|---|
| Small Business | 7 |
| Midsize Enterprise | 1 |
| Large Enterprise | 4 |
| Company Size | Count |
|---|---|
| Small Business | 20 |
| Midsize Enterprise | 10 |
| Large Enterprise | 24 |
| Company Size | Count |
|---|---|
| Small Business | 16 |
| Midsize Enterprise | 12 |
| Large Enterprise | 48 |
Cortex Cloud by Palo Alto Networks enhances cloud security with features like AI/ML threat detection and automated remediation, ensuring real-time protection and efficient management across cloud environments.
Cortex Cloud by Palo Alto Networks offers comprehensive cloud security posture management and runtime protection. It reduces manual tasks and accelerates incident investigation through advanced threat detection and AI-driven anomaly detection. With integration to the MITRE ATT&CK framework, it boosts threat response while reducing incident resolution time. Although users find the UI complex and pricing high, its capabilities in securing AWS, Azure, and other environments, as well as its potential integration with CyberArk, emphasize its enterprise-ready design for cloud transformation across diverse industry sectors.
What are the key features of Cortex Cloud by Palo Alto Networks?Cortex Cloud by Palo Alto Networks is deployed across industries like telecom, BFSI, and manufacturing for robust cloud security. It's leveraged for detecting misconfigurations and vulnerabilities, aiding cloud transformation and compliance with standards such as GDPR and NIST. The integration across cloud infrastructures, including AWS and Azure, supports policy creation and threat management strategies for diverse enterprises.
Snyk excels in integrating security within the development lifecycle, providing teams with an AI Trust Platform that combines speed with security efficiency, ensuring robust AI application development.
Snyk empowers developers with AI-ready engines offering broad coverage, accuracy, and speed essential for modern development. With AI-powered visibility and security, Snyk allows proactive threat prevention and swift threat remediation. The platform supports shifts toward LLM engineering and AI code analysis, enhancing security and development productivity. Snyk collaborates with GenAI coding assistants for improved productivity and AI application threat management. Platform extensibility supports evolving standards with API access and native integrations, ensuring comprehensive and seamless security embedding in development tools.
What are Snyk's standout features?
What benefits can users expect?
Industries leverage Snyk for security in CI/CD pipelines by automating checks for dependency vulnerabilities and managing open-source licenses. Its Docker and Kubernetes scanning capabilities enhance container security, supporting a proactive security approach. Integrations with platforms like GitHub and Azure DevOps optimize implementation across diverse software environments.
Wiz enhances cloud security with features like CSPM, risk prioritization, and centralized visibility. Users benefit from agentless scanning and integration with CI/CD tools, improving threat detection and compliance management.
Wiz offers a comprehensive security solution for cloud environments by providing functionalities like threat intelligence, detailed risk analysis, and automated compliance mapping. It supports vulnerability management and risk analysis, utilizing agentless deployment for seamless integration across multi-cloud settings. The platform's ability to streamline workflows and reduce false positives enables users to improve remediation speed and bolster security posture. Despite impressive capabilities, there is a need for improvement in reporting, security functionality for Kubernetes, handling false positives, and integration with APIs. Enhanced dashboards and more flexibility in automation processes are also required.
What are the key features of Wiz?Industries integrate Wiz for cloud security posture management, ensuring compliance and managing vulnerabilities in multi-cloud environments. Users leverage its agentless capabilities to protect cloud-native applications, integrating with CI/CD pipelines to enhance security operations and automate remediation. This comprehensive approach offers robust cloud security solutions.
We monitor all AI Security reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.