ReportWire

Tag: CNAPP

  • CoreStack Announces Full Public Release of Graphion(TM) – a Cloud-Native, AI-Native CNAPP Built for Modern Enterprise Security

    [ad_1]

    CoreStack today announced the full public release of Graphion™, a Cloud-Native and AI-Native Cloud-Native Application Protection Platform (CNAPP) built to secure the hyper-connected, supply-chain-driven world of modern cloud applications. As enterprises assemble software from distributed components and deploy into fast-changing multi-cloud environments, Graphion introduces a fundamentally new approach to understanding and mitigating cloud risk.

    Graphion constructs a continuously updated, multi-layered graph of the entire cloud ecosystem, mapping code, containers, Kubernetes clusters, APIs, identities, and configurations into a single intelligence model that evolves with every change. Instead of treating vulnerabilities and misconfigurations as isolated findings, Graphion shows how issues relate, how they propagate, and which ones truly matter. This gives security teams the context required to prioritize the risks with real business impact.

    A Unified View of the Software and Infrastructure Supply Chain
    A defining innovation of Graphion is its integration of Software Bills of Materials (SBOM) with Infrastructure Bills of Materials (IBOM), linking what developers build with what operators deploy and what runs in production. With this combined view, enterprises can identify vulnerabilities earlier, trace supply-chain weaknesses to runtime assets, and detect code-to-cloud drift before exposure occurs. This SBOM+IBOM approach provides end-to-end traceability aligned with emerging software supply-chain mandates and gives organizations a practical, scalable way to operationalize them.

    Ontology-Driven LCGM That Adds Context and Reduces Hallucinations
    Graphion’s ontology-based Large Cloud Governance Model (LCGM) brings the missing layer of knowledge and application context absent in most security tools today. By understanding asset semantics, cloud relationships, and operational intent, the ontology constrains AI interpretation, limiting hallucinations while delivering precise, contextual recommendations.

    AI-Native Security That Reduces Noise and Accelerates Response
    Built with embedded agentic AI, Graphion learns each organization’s environment, understands business criticality, and provides explainable remediation paths. Rather than generating more alerts, Graphion reduces noise by interpreting relationships across assets, identities, configurations, and vulnerabilities-surfacing only the issues that matter. The AI-native design also automates guardrails, drift detection, and policy validation, enabling organizations to maintain continuous Authorization to Operate (cATO) and keep pace with modern DevSecOps pipelines.

    Purpose-Built for an Era of Cloud Complexity
    As cloud environments shift continuously and supply-chain attacks surge, traditional static tools cannot keep up. Graphion provides the connected, adaptive, continuously validating security architecture required to operate confidently in this new reality-enabling organizations to build, deploy, and scale cloud applications with far greater trust and velocity.

    CEO Statement
    “Cloud environments are now too dynamic and too interconnected for yesterday’s security approaches,” said Ezhilarasan (Ez) Natarajan, Founder & CEO of CoreStack. “Graphion was built to be Cloud-Native and AI-Native, delivering continuous graph intelligence, unified supply-chain visibility, and ontology-driven agentic AI that turns complexity into clarity. With Graphion, enterprises can secure every connection that matters and accelerate cloud initiatives with confidence.”

    Graphion™ is available immediately worldwide as part of the CoreStack Cloud Governance & Security Platform.

    Media Contact
    Robert Ford
    Chief Marketing Officer
    robert.ford@corestack.io

    Source: CoreStack Inc.

    [ad_2]

    Source link

  • Wiz Achieves FedRAMP ‘Moderate’ Authorization

    Wiz Achieves FedRAMP ‘Moderate’ Authorization

    [ad_1]

    Cloud security leader Wiz today announced that its top-ranked Cloud-Native Application Protection Platform achieved FedRAMP® Moderate Authorization and is now listed as such on the FedRAMP Marketplace, just four years since the company’s inception. 

    The milestone underscore Wiz’s commitment to enhancing cybersecurity for U.S. government agencies as they transition to cloud environments. The power of Wiz is already being felt by many of these organizations, one example being the U.S. Navy, which integrated Wiz into its COSMOS platform, allowing for centralized visibility across its cloud resources and effective detection of security risks while ensuring strict adherence to DoD requirements.

    FedRAMP is a government-wide program that ensures standardized security in the cloud, facilitating faster cloud adoption by federal agencies. Wiz’s rigorous security assessment and compliance with applicable National Institute of Standards and Technology (NIST) Special Publication 800-53 controls affirm its adherence to federal security standards. As the federal government is tasked with modernizing its approach to cybersecurity, Wiz enables agencies to ensure that their cloud security can keep pace with the complexity of cloud threats and effectively improve their security posture in the cloud.

    “We are excited about the timing of our FedRAMP authorization, given the ever-changing threat landscape,” said Assaf Rappaport, Co-Founder and CEO at Wiz. “As the U.S. Federal Government navigates the modern cybersecurity landscape amid cloud advancements and the rise of AI, Wiz is uniquely positioned to offer comprehensive risk management across all these domains.”

    Wiz’s platform significantly enhances operational efficiency and security. Its key benefits include comprehensive visibility based on the Wiz Security Graph, critical risk removal that focuses on high priority threats, supporting assessment of compliance to meet regulatory standards, proactive threat management, and secure use of AI. 

    For more information about our FedRAMP authorization visit https://www.wiz.io/blog/wiz-achieves-fedramp-moderate-authorization.

    About Wiz

    Wiz secures everything organizations build and run in the cloud. Founded in 2020, Wiz is the fastest-growing software company in the world. Wiz enables hundreds of organizations worldwide, including 40 percent of the Fortune 100, to rapidly identify and remove critical risks in cloud environments. Its customers include Salesforce, Slack, Mars, BMW, Avery Dennison, Priceline, Cushman & Wakefield, DocuSign, Plaid, and Agoda, among others. Wiz is backed by Andreessen Horowitz, Sequoia, Index Ventures, Lightspeed, Insight Partners, Cyberstarts, Thrive Capital, Greylock, Wellington, Salesforce, Blackstone, Advent, Greenoaks and Aglaé. Visit https://www.wiz.io for more information.

    Source: Wiz

    [ad_2]

    Source link