---
sourceDocument: Australia Security Management
sourceDocumentLink: https://www.servicenow.com/docs/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Wiz Vulnerability Response Integration

# Understanding the Wiz Vulnerability Response Integration {#ariaid-title1}

Release version: Australia  
Updated September 3, 2026  
![](https://www.servicenow.com/docs/portal-asset/ico-clock) 3 minutes to read
Summarize  
![AI sparkle icon](https://servicenow.com/docs/portal-asset/ai-sparkle-icon) Summarized using AI  
This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.  

## Summary of Understanding the Wiz Vulnerability Response Integration

The Wiz Vulnerability Response Integration allows ServiceNow customers to import comprehensive vulnerability and compliance data from Wiz scanners directly into their ServiceNow AI Platform instance.
This integration enhances insights into cloud infrastructure risks and supports effective remediation actions within your instance, improving your overall cloud security posture.
Show full answer Show less  

## Key Features

* **Data Import:** Imports asset, vulnerability, compliance, container, application, and secrets data from Wiz.
* **Configurable Resource Types:** Allows you to select specific resource types (assets) for import using the Wiz Vulnerability Integration Configuration module.
* **Multiple Specialized Integrations:** Covers various data types and use cases including:
  * **Application Vulnerability Response:** Imports software composition analysis (SCA) findings and secrets data (passwords, tokens, keys) to support vulnerability managers, analysts, AppSec, and access management teams.
  * **Application Inventory:** Imports application records to link findings for vulnerability and compliance tracking.
  * **Asset and Host Vulnerabilities:** Imports cloud asset data and early detection vulnerabilities on running hosts (virtual machines and serverless assets), creating records to manage remediation workflows.
  * **Container Vulnerabilities:** Imports container image vulnerabilities mapped to container vulnerable items (CVITs) to enable risk prioritization and remediation for container workloads.
  * **Configuration Compliance:** Imports configuration test results (e.g., for virtual machines), Wiz Issues identifying toxic vulnerability combinations, and cloud configuration assessments to enforce security policies.
* **Optional Activations:** Activating the Wiz Asset Integration is optional and no longer requires pre-scheduling before other integrations.
* **Integration with AI Security Exposure Management:** Enables importing cloud configuration and AI security scan findings as test results for comprehensive exposure management.

## Key Outcomes

* Gain detailed visibility into vulnerabilities and compliance status across cloud assets, hosts, containers, and applications.
* Enable targeted remediation workflows through mapped vulnerability and compliance findings (Host Vulnerable Items, Container Vulnerable Items, Cloud Test Results).
* Support collaboration among vulnerability managers, analysts, cloud security teams, AppSec teams, and application owners.
* Facilitate enforcement of security policies and standards with imported compliance test results and Wiz Issue tracking.

## Next Steps for ServiceNow Customers

* Activate and configure the Wiz Vulnerability Response Integration application in your ServiceNow AI Platform instance.
* Define resource types and import filters for host vulnerabilities, container vulnerabilities, test results, and Wiz Issues to tailor data import to your environment.
* Review field mapping to ensure imported data is properly linked and actionable within the Vulnerability Response, Container Vulnerability Response, and Configuration Compliance applications.
* Use the integrated data to drive remediation and improve your cloud security posture effectively.  
Import vulnerability and compliance data from Wiz scanners into your ServiceNow® AI Platform instance to help you get deeper insights into your cloud infrastructure risks. These integrations provide you with a comprehensive assessment of your overall cloud security posture and help
you drive remediation actions directly from your instance.

## Integrations included with the Vulnerability Response Integration with Wiz {#vr-wiz-exploring-host-cf__cf-exploring-parent-overview}

The Vulnerability Response Integration with Wiz includes the following integrations that import your asset, vulnerability, compliance, container, application, and secrets (passwords, tokens and keys) data.

Youn can review more information about the Vulnerability Response Integration with Wiz at [SecOps articles on the Security Operations Community](https://www.servicenow.com/community/secops-articles/announcement-wiz-integration-with-servicenow-secops/ta-p/3325055).

You identify the specific Resource Types (assets) that you want to import with the Wiz Vulnerability Integration Configuration module in your ServiceNow AI Platform instance.

## Benefits and users {#vr-wiz-exploring-host-cf__section_ssm_phh_bgc}

{#vr-wiz-exploring-host-cf__table_dhr_p3t_rfc__entry__4}

| Supporting core application | Benefit | Wiz Integration | Users |
|-|-|-|-|
| Application Vulnerability Response | Import application, Software Composition Analysis (SCA) findings data. | Wiz SCA Findings Integration | Vulnerability managers and analysts and AppSec teams. |
| Application Vulnerability Response | Import Secrets (passwords, tokens and keys) data | Wiz Secret Findings Integration | Vulnerability managers and analysts, Cloud security and access management teams. |
| Application Vulnerability Response | Import an application inventory from Wiz and create application records that vulnerability and compliance findings can be linked back to. | Wiz Application List Integration | Vulnerability managers and analysts, software asset managers and teams, and application owners. |
| Vulnerability Response | Import data about your cloud assets reported by the Wiz scanner. Create and update discovered item records for cloud assets in your ServiceNow AI Platform instance. Note: Activating the Wiz Asset Integration is optional. You are no longer required to schedule or run it so it runs before the other integrations. | Wiz Asset Integration | Vulnerability managers, analysts, and Cloud security teams |
| Vulnerability Response | Import and evaluate early detections vulnerabilities on running hosts. The host vulnerability integration imports findings related to virtual machines and serverless assets in your cloud environment. These findings are mapped to Host Vulnerable Items (VITs) within the Vulnerability Response application to support remediation workflows. | Wiz Host Vulnerability Integration. | Vulnerability managers, analysts, and Cloud security teams |
| Configuration Compliance | Import test results associated with the resource type, VIRTUAL MACHINE. | Wiz Host Test Result Integration | Vulnerability managers, analysts, and Cloud security teams |
| Container Vulnerability Response | Import and evaluate container image vulnerability data for vulnerable and non-compliant assets in your cloud infrastructure. Findings are mapped to container vulnerable items (CVITs) to support triage, risk prioritization, and targeted remediation workflows for container-based workloads. | Wiz Container Vulnerability Integration, Wiz Container Grouped Vulnerability Integration, Wiz Container Deployment Context Integration | Vulnerability managers, analysts, and Cloud security teams |
| Configuration Compliance | Import and evaluate configuration test results from Wiz to detect non-compliant cloud configurations. Findings are mapped to cloud test results (CTRs) in the Configuration Compliance application to help you enforce security policies and standards across your cloud environment. | Wiz Configuration Compliance Integration (Wiz Test Results). | Vulnerability managers, analysts, and Cloud security teams |
| Configuration Compliance | Import Wiz Issues that identify assets involved in toxic combinations of vulnerabilities and misconfigurations. These findings are mapped to CTRs and labeled with Wiz Issues as the source to help you track and remediate assets that might pose complex, multi-vector risks. | Wiz Issues Integration. | Vulnerability managers, analysts, and Cloud security teams |
| Vulnerability Response, Container Vulnerability Response, and the Configuration Compliance applications. Note: If you have installed [AI Security Exposure Management](https://www.servicenow.com/docs/bLpXjCstnGn06kIxPnEKnQ "AI Security Exposure Management is a part of the Unified Security Exposure Management product suite of applications. AI Security Exposure Management integrates with third-party AI security products to help you manage various types of potential AI exposure across your environment.") you can import cloud configuration and AI security scan findings from the integration as Test Results into Configuration Compliance. | Apply remediation steps across host vulnerable items (VITs), container vulnerable items (CVTs), cloud test results (CTRs) and CTRs labeled Wiz Issues. | Integrations included with the Vulnerability Response Integration with Wiz | Remediation owners |
[ ]

{#vr-wiz-exploring-host-cf__table_dhr_p3t_rfc}

## What to explore next {#vr-wiz-exploring-host-cf__cf-exploring-parent-links}

For more information about installing, configuring, and viewing imported data with the Wiz Vulnerability Response Integration, see:

* [Activate the Wiz Vulnerability Response Integration application](https://www.servicenow.com/docs/pndQBEC2LDYa4~DfSP8wMg "Activate the required application.")
* [Configure the Wiz Vulnerability Response Integration](https://www.servicenow.com/docs/FbcsqPQ~sLsKDLREXvLhFA "Configure the integration in your Wiz service account and assign roles in your ServiceNow AI Platform instance.")
* [Activate the Wiz Asset Integration and identify resource types for import](https://www.servicenow.com/docs/RkLiGYShUzP0YYz21yFCyg "Activate the Wiz Asset Integration and identify only the resource types (assets) with this integration that you want to import.")
* [Set filtering for the Wiz Host Vulnerabilities Integration](https://www.servicenow.com/docs/oR2QRsVKmv_QmhJvulZmjQ "Set the filtering values to import the host vulnerability data that you want.")
* [Set filtering for the Wiz Container Vulnerabilities Integration](https://www.servicenow.com/docs/AE_WqpTSpFp678FR4s~vKw "Set the filtering values to import the container vulnerability data that you want.")
* [Runtime exposure visibility for container images](https://www.servicenow.com/docs/e4Qc9eoxGNfrayGXAkWJhQ "Chained Wiz integrations create container vulnerable items for images deployed across unlimited clusters, removing the previous 16-cluster limitation.")
* [Set filtering for the Wiz Test Results Integration](https://www.servicenow.com/docs/D~qMeOMGg1Jzzds9h~kSDw "Set the filtering values to import the cloud test results data that you want.")
* [Set filtering for the Wiz Issues Integration](https://www.servicenow.com/docs/oZf2YTJYaAWiloIDw12W4A "Set the filtering values to import Wiz Issues that identify assets involved in toxic combinations of vulnerabilities and misconfigurations.")
* [Set filtering for the Wiz Host Test Results Integration](https://www.servicenow.com/docs/ZMfgRJr1lKn3~lW19mYRHA "Set the filtering values to import Wiz host test results.")
* [Field mapping for the Wiz Vulnerability Response Integrations](https://www.servicenow.com/docs/vWC5KYKqFuusYXVud_szNQ "Review source and target fields and view imported data on tables and records in your ServiceNow AI Platform instance.")
{#vr-wiz-exploring-host-cf__ul_ehr_p3t_rfc}

