Communiqués de presse exposant / Exhibitor Press releases

Subpage Hero

Subpage Hero

Use the featured image to change the subpage hero.

26 Sep 2022

Lili achieves PCI DSS compliance using the visibility provided by Wiz

WIZ Stand: B62
Lili achieves PCI DSS compliance using the visibility provided by Wiz

Lili is an all-in-one banking app designed for anyone who runs a business on their own, whether they operate as sole proprietors (with or without DBA) or Single-Member LLC. By combining a business checking account with technology to save on taxes and built-in tools to streamline their accounting, Lili helps freelancers and small businesses alike improve their bottom line, and save time and energy throughout the year on the money stuff.

Lili looked to strengthen its cloud security posture with easy to use cloud security tools. Wiz helped the banking app remediate its most critical risks and perform architecture reviews as part of its PCI DSS audit process.

Wiz is my eyes. Without it, I would be blind.
Omri Nachum
CISO, Lili

Lili has been cloud-native from day one, leveraging the power and flexibility offered by Amazon Web Services (AWS) to manage its backend infrastructure. When CISO Omri Nachum joined Lili in 2021, he immediately set about strengthening Lili’s cloud security posture and processes. “We were already using other cloud security tools, but we were looking for a more user-friendly experience and better service as these solutions are very complex.”

Within minutes of connecting Wiz to their AWS environment, Lili started discovering new vulnerabilities and toxic combinations of risk factors that former tools had not. Thanks to its agentless scanning and hundreds of built-in controls, Wiz offers unparalleled visibility into the constellations of risks that malicious actors take advantage of. Lili also discovered that Wiz maps built-in policies to external compliance frameworks like PCI DSS. Moreover, every PCI DSS requirement is listed in Wiz, even those that cannot be automatically checked.

Wiz gives me a complete, detailed map to understand what needs to be done to achieve compliance. It’s my checklist.

Omri Nachum
CISO, Lili

The Payment Card Industry Data Security Standard (PCI DSS) is an information security standard maintained by the PCI Security Standards Council that seeks to enhance global payment account data security and reduce credit card fraud. Companies that process credit card payments are subject to PCI DSS requirements and can face fines from credit card issues for failing to demonstrate compliance.

To prepare for their annual PCI DSS audit, Lili used Wiz to proactively remediate their most critical risks and perform architecture reviews. During the audit, Ohad Zeruya, from Lili’s DevOps team, used Wiz to map network elements and quickly answer the auditor’s specific questions about scanning for vulnerabilities, testing firewall settings, patch management, and the inventory of all applications. Instead of struggling to integrate the siloed perspectives generated by several different tools, he had all of the information he needed in a single intuitive interface.

To answer the PCI auditor’s questions, I just opened Wiz and showed him all of the notifications and reports. He was amazed that Wiz scans for vulnerabilities every day, not just once every three months.

Ohad Zeruya
DevOps, Lili

Looking forward, Lili is building Wiz into its ongoing processes to monitor and maintain PCI compliance. These processes are a key aspect of maintaining PCI compliance, and Wiz provides Lili the visibility and automated alerting to streamline their execution. The DevOps team at Lili is empowered by Wiz to build more quickly, safely, and secure by truly becoming DevSecOps.

https://www.wiz.io/customers/lili

View all Communiqués de presse exposant / Exhibitor Press releases
Loading

Sponsors

Sponsor Théatre Keynote 2022

  • Terranova

Sponsor Théatre Keynote 2022

  • Cybereason

Sponsor Théatre 2022

  • Palo Alto

Sponsor Inscription 2022

  • SentinelOne

Sponsor Gold 2022

  • WIZ

Sponsor Silver 2022

  • Zero Trust

Sponsor Silver 2022

  • Blackberry

Sponsor Silver 2022

  • SentinelOne

Sponsor Silver 2022

  • Dynabook

Sponsor Silver 2022

  • ONE Identity

Sponsor Silver 2022

  • FORTINET

Sponsor Silver 2022

  • Global Sign

PARTENAIRES

Partenaire média

  • Global-Security-Mag.

 

Partenaire Média

  • MicrosoftTeams-image (3)

 

Partenaire Institutionnel

  • Cybermalveillance-logo

Partenaire Média

  • Women4Cyber

 

Partenaire Média

  • CESIA

 

Partenaire Média

  • IT Social

 

Partenaire Média

  • solutions numeriques

 

Partenaire Média

  • DefTech / Areion Group

 

Partenaire Média

  • Le Nouvel Economiste

 

Partenaire Média

  • Le Mag IT

 

Partenaire Média

  • E.D.I

 

Partenaire Média

  • Décideurs

 

Partenaire Média

  • IT for Business

 

Partenaire Média

  • Archimag

 

Partenaire Média

  • itespresso

 

Partenaire Média

  • Silicon

 

Partenaire Médiae

  • BFM Radio

 

Partenaire Média

  • zd net

 

Partenaire Média

  • les echos

 

Partenaire Média

  • cio logo

 

Partenaire Média

  • itpro

 

Partenaire Média

  • SMART_DSI_300_100

 

Partenaire Média

  • programmez logo

 

Partenaire Média

  • la revue du digital logo

 

Partenaire Média

  • Cloud Security Alliance

 

Partenaire Média

  • cyberexpert

 

Partenaire Média

  • markess

 

Inscription à la newsletter