
🎯Basically, Wiz helps teams see and secure their APIs better using Apigee.
What Happened
Wiz has announced a significant update by integrating Google Cloud Apigee into its Security Graph. This enhancement allows organizations to visualize their entire Apigee architecture, including gateways, environments, proxies, and endpoints. With APIs becoming a major attack surface, this integration aims to provide security teams with the visibility they need to manage API risks effectively.
Affected Services
The integration specifically focuses on Apigee X and Hybrid environments. It allows users to see how their APIs are configured, including authentication methods and connections to backend systems. This visibility is crucial as APIs often operate outside the traditional security perimeter, making them vulnerable to attacks.
Business Impact
The integration is designed to bridge the gap between security and platform teams. By mapping APIs onto the Security Graph, Wiz enables teams to understand the implications of API configurations better. For instance, if an authentication policy is removed from an API endpoint, security teams can immediately see the potential risk and take action, rather than treating it as a minor configuration issue.
Recommended Actions
Organizations using Apigee should leverage this integration to continuously monitor their API architecture. Here are a few steps to get started:
Immediate
- 1.Access the API Endpoints Inventory: Begin by visiting the API Endpoints inventory in Wiz to view your Apigee endpoints on the Security Graph.
- 2.Regular Scanning: Ensure that your GCP Connector is set up to continuously scan your environment for real-time updates on API configurations.
Long-term
Conclusion
With the rise of API-related vulnerabilities, Wiz's integration with Apigee is a timely enhancement for organizations looking to strengthen their cloud security posture. By providing comprehensive visibility into API configurations and their connections, Wiz empowers teams to respond swiftly to potential threats, ensuring that APIs are not just functional but secure.
🔒 Pro insight: This integration addresses the critical visibility gap in API security, essential for modern cloud environments.





