Cyber News / Article / Wiz Expands Runtime Protection to Serverless Containers

Wiz Expands Runtime Protection to Serverless Containers
Wiz extends its cloud-native runtime sensor to secure serverless containers, providing deep visibility, blocking, and hunting capabilities for AWS Fargate and Azure Container Apps.
Serverless containers are reshaping how developers build and deploy applications. By removing the need to manage the underlying infrastructure, serverless containers likeAWS FargateandAzure Container Apps (ACA)allow developers to focus on what they do best—writing code—while the cloud service provider takes care of the servers, scaling, and maintenance. This approach accelerates development cycles and simplifies operations, making it a popular choice for modern applications.
Today, we’re excited to announce that Wiz is extending the coverage of ourruntime sensorto serverless containers, offering adefense-in-depth strategythat provides visibility, blocking, and hunting across the entire lifecycle of serverless workloads. With this new capability, organizations using AWS Fargate and Azure Container Apps (ACA) can achieve the same level of security that they’ve come to expect from our Kubernetes and Linux workload coverage.
Wiz is an essential part of our container security strategy, enabling us to scan containers and container images for vulnerabilities. For the first time, we can easily identify and report on issues across our complex landscape of serverless environments—all in a single pane of glass.
The adoption of serverless containers introduces a new security model. Withserverlessofferings like AWS Fargate and ACA, theshared responsibility modelshifts. Customers no longer have direct access to the host and kernel, as these layers are fully managed by the cloud provider. This limits traditional security methods but offers the advantage of focusing only on securingnetwork configurations, runtime behaviors, and identity management.
Serverless containers bring new opportunities but also present uniquesecurity challenges:
Ephemeral nature of tasks: The short lifespan of tasks makes detecting and responding to potential threats more difficult, as traditional security tools may struggle to keep up.
Restricted host access: Without direct access to the host infrastructure, organizations must find alternative ways to gain visibility into runtime activities.
Configuration risks: Misconfigured network settings or identity permissions can create vulnerabilities, making it crucial to have a solution that can detect and remediate risks at runtime.
Wiz’sruntime sensorhas been a game-changer in providing deep visibility into workloads, and now, this same capability extends to serverless containers. As part of ourdefense-in-depth strategy, our sensor delivers comprehensive protection throughout theserverless container lifecycle, ensuring that security doesn’t end with deployment.
Our sensor achieves this by leveragingptrace, a technique that allows us to monitor serverless containers at runtime, even without host access. This means that customers using AWS Fargate and ACA can maintaindeep visibility into container processeswithout needing to alter their serverless setup.
6sense uses a range of container technologies to create a top-notch platform for our customers. Wiz provides a complete view of our container environments from start to finish, allowing our team to quickly detect and respond to any threats, which is essential for our business. With Wiz, we have comprehensive visibility and coverage across our entire cloud-native stack on a singular platform.
The sensor can be deployed as a sidecar or embedded, offering flexibility to adapt to various architectural needs. And, just like oureBPF sensorfor Kubernetes and Linux workloads, our serverless container sensor provides:
Threat Detection and Response: Detect and respond in realtime on the host. Create custom threat detection rules and use predefined rules to block complex threats, malware, unwanted behaviors, suspicious activity, malicious processes and more.
Custom Rules:Create complex rules tailored to your environment to detect suspicious processes and network behavior. Each rule can trigger specific response actions, such as generating a finding, creating an issue, or blocking the behavior. Rules are applied at the project or environment level to ensure comprehensive detection coverage.
Runtime hunting:The Wiz sensor monitors all serverless container events, including processes, commands, DNS requests, and more. It centralizes these events across all workloads, enabling proactive identification of indicators of compromise (IOCs) and simplifying the investigation process.
Expand Cloud Detection and Response:Leverage runtime behavioral baselines to detect anomalies and reduce detection noise. Correlate runtime events with control plane, data, identity, network, and PaaS events. Reduce investigation time with runtime forensic data and respond immediately at the control plane or workload level.
Vulnerability Validation at Runtime:Understanding which vulnerabilities are actually exploitable in the runtime environment, helping prioritize remediation efforts based on real-world risks.
By providing these capabilities, Wiz ensures that serverless environments are protected against advanced threats while maintaining the agility that makes serverless so appealing.
With the addition of theserverless container sensor, Wiz continues to lead the way incloud-native security, offering unmatched coverage that spans fromcode to runtime. As organizations increasingly adoptserverless containerssolutions for their ease of use and scalability, having a security solution that is purpose-built for these environments becomes essential.
Wiz’scomprehensive security platformensures that your serverless workloads are not only monitored but actively protected—allowing your team to innovate without sacrificing security. By bridging the gap between development speed and robust security, Wiz enables organizations to embrace the benefits of serverless while maintaining full control and visibility over their dynamic environments.
If you have serverless container environments and want to secure them right now, we invite you to explore ourdocumentation(login required) to find out all the details of how it works and how to deploy it. What's more, our team can provide customized demonstrations tailored to your specific needs and challenges. Contact us today toschedule a demoand discover the full potential of Wiz for your organization.
Wiz extends support to Okta with identity modeling on the Wiz Security Graph, visibility, risk assessment, and real-time threat detection for your Okta environment
AskAI – Text to Security Graph Query
We are excited to announce the addition of the Wiz Sensor to Wiz for Gov’s ATO. The lightweight eBPF based sensor improves risk prioritization, deepens threat detection, and adds runtime protection for container hosts and VMs.
Get a personalized demo
©2026Wiz, Inc.
StatusPrivacy PolicyTerms of UseModern Slavery StatementCookie Settings
Related articles
CrowdStrike Named Strongest Overall Leader in 2026 Frost Radar™: Cloud Workload Protection Platforms
22 days ago
FAQs from the Field: Is Wiz a Runtime Security Tool?
2026-07-06
Uncovering Hidden Attack Paths in Cloud Environments Using Runtime Signals
2026-06-25
You might Also like

Ukrainian Conti Ransomware Developer Sentenced to 4 Years in US Prison

cPanel ConfigServer Security & Firewall Vulnerability Allows Remote Attacker to Execute Arbitrary Commands

