Cyber Security News

Entro Security and Wiz Announce Integration for Improved Non-Human Identity & Cloud Security

Entro Security, a pioneer in Non-Human Identity (NHI) and Secrets Security, and Wiz, a leading cloud security platform, have announced a strategic partnership that brings together Entro’s NHI security platform with Wiz’s Data Security Posture Management (DSPM) capabilities.

Announced on May 13, 2025, this integration provides security and IAM teams with comprehensive insights into which non-human identities can access sensitive data, enabling them to stop threats before they propagate.

As cloud adoption accelerates, enterprises face an explosion of programmatic access credentials from service accounts to API keys. These non-human identities frequently possess excessive permissions to sensitive data, including financial records, PII, and PHI.

When misconfigured or compromised, these NHIs create significant security risks and expand the attack surface.

Addressing Critical Cloud Security Challenges

“Linking Wiz’s data security insights with Entro’s identity risk platform is a force multiplier for cloud and NHI defense,” said Itzik Alvas, CEO and co-founder of Entro Security.

This partnership lets enterprises pinpoint high-risk machine identities tied to sensitive data and address those threats in real time, helping teams regain control of their cloud risks.

The integration addresses alarming statistics from both companies’ research. According to Wiz’s 2025 State of Code Security Report, 61% of organizations have secrets exposed in public code repositories.

Additionally, Entro’s 2025 State of Non-Human Identities Report revealed that 90% of NHIs have excessive permissions and access authorizations beyond what’s necessary.

By integrating Entro’s NHI governance capabilities with Wiz’s deep data classification technology, security teams can now detect risks, correlate NHI activity with sensitive data, and automatically remediate misconfigurations before they’re exploited.

Key Use Cases for Enhanced Security

The integration targets two critical use cases:

  1. Compromised NHIs: Entro detects exposed or compromised NHIs and their associated secrets. Using Wiz’s DSPM insights, it enriches this context by understanding the sensitivity and type of data these NHIs can access. For example, when Entro detects a publicly exposed AWS access key, it leverages Wiz’s DSPM to label the type of sensitive data that the key could potentially compromise within AWS resources, such as Amazon S3 buckets or RDS databases.
  2. Sensitive Data Exposure: Wiz inventories cloud data assets and classifies the types of sensitive data they contain, such as PCI, PHI or PII. Entro ingests these data findings and determines which NHIs have access to the sensitive data, surfacing over-permissioned, orphaned, or misconfigured NHIs.

Using lineage mapping, the integration visualizes relationships between NHIs and their entitlements, sensitive data, and cloud resources. This capability shows security teams clear paths to investigate and shut down potential attack vectors, enabling rapid identification and disruption of threats before they’re exploited.

“Entro brings deep expertise in securing non-human identities and secrets, an area that complements our focus on data security in the cloud,” said Oron Noah, VP of Product Extensibility & Partnerships at Wiz.

By combining Entro’s identity intelligence with Wiz’s DSPM, we’re giving customers a new level of context to uncover and remediate complex, data-centric risks.

Entro is now part of the Wiz Integration Network (WIN), making it the first NHI and secrets security solution integrated with Wiz’s ecosystem. The integration is immediately available to joint customers, delivering faster risk detection, richer context, and streamlined incident response.

By combining data-centric and identity-centric defenses, Entro and Wiz have created a holistic cloud security solution that enables security teams to focus on the most critical threats and effectively reduce their attack surface.

Guru Baran

Gurubaran KS is a cybersecurity analyst, and Journalist with a strong focus on emerging threats and digital defense strategies. He is the Co-Founder and Editor-in-Chief of Cyber Security News, where he leads editorial coverage on global cybersecurity developments.

Recent Posts

Google Chrome 153 Update Fixes 42 Security Flaws, Including 3 Critical Ones

Google has released an important Chrome 153 security update that fixes 42 vulnerabilities across the…

2 hours ago

CISA and NIST Release Technical Checklist for Safeguarding Identity Tokens From Theft and Misuse

The Cybersecurity and Infrastructure Security Agency (CISA) and the National Institute of Standards and Technology…

12 hours ago

CISA Shares 17 Techniques Used by Hackers to Compromise Active Directory Environments

CISA and five international cybersecurity agencies have released detailed guidance describing 17 common techniques hackers…

13 hours ago

Apple Rolls Out Massive Security Update Fixing 273 Vulnerabilities Across Its Devices

Apple has released one of its largest coordinated security rollouts, addressing 273 distinct critical vulnerabilities…

13 hours ago

How to Keep Malware’s Rotating Infrastructure From Becoming a Detection Gap

You can’t detect today's attacks with yesterday’s threat intelligence; that’s how you could briefly formulate…

13 hours ago

Microsoft Bans Its AI Models From Launching Cyberattacks or Escalating Their Own Access

Microsoft has published a draft Humanist AI Code of Conduct that would prohibit its in-house…

14 hours ago