wiz-broker/Chart.yaml
index 5fa52a08..046fa896 100644
--- a/wiz-broker/Chart.yaml
+++ b/wiz-broker/Chart.yaml
@@ -1,24 +1,8 @@
 apiVersion: v2
-name: wiz-broker
-description: A Helm chart for Kubernetes
+name: "wiz-broker"
+description: Wiz Broker for tunneling http traffic to Wiz backend
-# A chart can be either an 'application' or a 'library' chart.
-# Application charts are a collection of templates that can be packaged into versioned archives
-# to be deployed.
-# Library charts provide useful utilities or functions for the chart developer. They're included as
-# a dependency of application charts to inject those utilities and functions into the rendering
-# pipeline. Library charts do not define any templates and therefore cannot be deployed.
 type: application
-# This is the chart version. This version number should be incremented each time you make changes
-# to the chart and its templates, including the app version.
-# Versions are expected to follow Semantic Versioning (
-version: 0.4.0
-# This is the version number of the application being deployed. This version number should be
-# incremented each time you make changes to the application. Versions are not expected to
-# follow Semantic Versioning. They should reflect the version the application is using.
-# It is recommended to use it with quotes.
-appVersion: "1.16.0"
+version: 1.0.0
+appVersion: "2.0.162274"
wiz-broker/templates/NOTES.txt
deleted file mode 100644
index efccdb30..00000000
--- a/wiz-broker/templates/NOTES.txt
+++ /dev/null
@@ -1,9 +0,0 @@
-0. Install service account with read permission using .Values.installRbac flag
-1. Get the service account connector properties by running these commands:
-   SECRET_NAME="{{ include "wiz-broker.rbacServiceAccountName" . }}-token"
-   echo "Service account CA certificate:"
-   kubectl get secrets -n "{{ .Values.namespace }}" "$SECRET_NAME" -o go-template='{{ "{{" }} index .data "ca.crt" }}'
-   echo "\nService account token:"
-   kubectl get secrets -n "{{ .Values.namespace }}" "$SECRET_NAME" -o go-template="{{ "{{" }} .data.token | base64decode }}"
-2. Create Wiz kubernetes connector using web portal or Wiz Terraform provider
-3. Install Wiz broker deployment using .Values.installBroker flag
\ No newline at end of file
wiz-broker/templates/_helpers.tpl
index d9fc4c3c..2505c2ac 100644
--- a/wiz-broker/templates/_helpers.tpl
+++ b/wiz-broker/templates/_helpers.tpl
@@ -38,37 +38,31 @@ {{ .Release.Name }}
 {{- end }}
-Create the name of the service account to use
+Create Wiz broker properties to use
-{{- define "wiz-broker.serviceAccountName" -}}
-{{- default (include "" .) }}
-{{- end }}
-Create the name of the service account to use for rbac
-{{- define "wiz-broker.rbacServiceAccountName" -}}
-{{- default (printf "%s-%s" (include "" .) "rbac") }}
+{{- define "wiz-broker.wizConnectorSecretData" -}}
+{{- if not }}
+CONNECTOR_ID: {{ required "A valid entry required!" | quote}}
+CONNECTOR_TOKEN: {{ required "A valid entry required!" | quote }}
+TARGET_DOMAIN: {{ required "A valid entry required!" | quote }}
+TARGET_IP: {{ required "A valid entry required!" | quote }}
+TARGET_PORT: {{ required "A valid entry required!" | quote }}
+{{- end }}
 {{- end }}
-Create Wiz connector properties to use
+Secrets names
-{{- define "wiz-broker.wizConnectorID" -}}
-{{ required "A valid .Values.wizConnector.connectorId entry required!" .Values.wizConnector.connectorId }}
-{{- end }}
-{{- define "wiz-broker.wizConnectorSecretData" -}}
-CONNECTOR_ID: {{ include "wiz-broker.wizConnectorID" . | quote}}
-CONNECTOR_TOKEN: {{ required "A valid .Values.wizConnector.connectorToken entry required!" .Values.wizConnector.connectorToken | quote }}
-TARGET_DOMAIN: {{ required "A valid .Values.wizConnector.targetDomain entry required!" .Values.wizConnector.targetDomain | quote }}
-TARGET_IP: {{ required "A valid .Values.wizConnector.targetIp entry required!" .Values.wizConnector.targetIp | quote }}
-TARGET_PORT: {{ required "A valid .Values.wizConnector.targetPort entry required!" .Values.wizConnector.targetPort | quote }}
-TUNNEL_SERVER_ADDR: {{ required "A valid .Values.wizConnector.tunnelServerAddress entry required!" .Values.wizConnector.tunnelServerAddress | quote }}
-TUNNEL_SERVER_PORT: {{ required "A valid .Values.wizConnector.tunnelServerPort entry required!" .Values.wizConnector.tunnelServerPort | quote }}
-{{- if .Values.wizConnector.httpProxy }}
-HTTP_PROXY: {{ .Values.wizConnector.httpProxy | quote}}
+{{- define "wiz-broker.apiTokenSecretName" -}}
+{{ coalesce ( (printf "%s-api-token" .Release.Name) }}
 {{- end }}
+{{- define "wiz-broker.proxySecretName" -}}
+{{ coalesce ( (printf "%s-proxy-configuration" .Release.Name) }}
 {{- end }}
+{{- define "wiz-broker.connectorSecretName" -}}
+{{ coalesce ( (printf "%s-connector" .Release.Name) }}
+{{- end }}
\ No newline at end of file
wiz-broker/templates/secret-proxy.yaml
similarity index 100%
rename from wiz-broker-v2/templates/secret-proxy.yaml
rename to wiz-broker/templates/secret-proxy.yaml
wiz-broker/templates/secrets.yaml
new file mode 100644
index 00000000..2c62aa2d
--- /dev/null
+++ b/wiz-broker/templates/secrets.yaml
@@ -0,0 +1,40 @@
+{{- if }}
+{{- if and }}
+apiVersion: v1
+kind: Secret
+  name: {{ include "wiz-kubernetes-connector.connectorSecretName" . | trim }}
+  namespace: {{ .Release.Namespace | quote }}
+  labels:
+    {{- include "wiz-kubernetes-connector.labels" . | nindent 4 }}
+  annotations:
+    "": pre-install,pre-upgrade
+    "": "-1"
+    {{- with }}
+      {{- toYaml . | nindent 4 }}
+    {{- end }}
+type: Opaque
+  {{- include "wiz-kubernetes-connector.wizConnectorSecretData" . | nindent 2 }}
+{{- end }}
+{{- end }}
+{{- if and }}
+apiVersion: v1
+kind: Secret
+  name: {{ include "wiz-kubernetes-connector.apiTokenSecretName" . | trim }}
+  namespace: {{ .Release.Namespace | quote }}
+  labels:
+    {{- include "wiz-kubernetes-connector.labels" . | nindent 4 }}
+  annotations:
+    "": pre-install,pre-upgrade
+    "": "-1"
+    {{- with }}
+      {{- toYaml . | nindent 4 }}
+    {{- end }}
+  clientId: {{ required "Missing required value wizApiToken.clientId is required" | b64enc | quote }}
+  clientToken: {{ required "Missing required value: wizApiToken.clientToken is required" | b64enc | quote }}
+{{- end }}
wiz-broker/templates/serviceaccount.yaml
index 40ed593d..72a6adbc 100644
--- a/wiz-broker/templates/serviceaccount.yaml
+++ b/wiz-broker/templates/serviceaccount.yaml
@@ -1,13 +1,15 @@
-{{- if and .Values.serviceAccount.create .Values.installBroker -}}
+{{- if }}
+{{- if }}
 apiVersion: v1
 kind: ServiceAccount
-  name: {{ include "wiz-broker.serviceAccountName" . }}
-  namespace: {{ .Values.namespace }}
+  name: {{ }}
+  namespace: {{ .Release.Namespace | quote }}
-    {{- include "wiz-broker.labels" . | nindent 4 }}
-  {{- with .Values.serviceAccount.annotations }}
+    {{- include "wiz-kubernetes-connector.labels" . | nindent 4 }}
+  {{- with }}
     {{- toYaml . | nindent 4 }}
   {{- end }}
 {{- end }}
+{{- end }}
wiz-broker/templates/wiz-broker-deployment.yaml
index 9312dd89..968696ce 100644
--- a/wiz-broker/templates/wiz-broker-deployment.yaml
+++ b/wiz-broker/templates/wiz-broker-deployment.yaml
@@ -1,56 +1,107 @@
-{{- if .Values.installBroker }}
+{{- if }}
+{{ $mountPath := "/etc/connectorData" }}
+{{ $connectorDataFileName := "data" }}
+{{ $connectorDataFilePath := printf "%s/%s" $mountPath "data" }}
 apiVersion: apps/v1
 kind: Deployment
-  name: {{ include "" . }}
-  namespace: {{ .Values.namespace }}
+  name: {{ include "" . }}-broker
+  namespace: {{ .Release.Namespace | quote }}
     {{- include "wiz-broker.labels" . | nindent 4 }}
-  replicas: {{ .Values.replicaCount }}
+  replicas: 1
       {{- include "wiz-broker.selectorLabels" . | nindent 6 }}
-      {{- with .Values.podAnnotations }}
+        rollme: {{ randAlphaNum 5 | quote }}
+        {{- with .Values.podAnnotations }}
         {{- toYaml . | nindent 8 }}
-      {{- end }}
+        {{- end }}
-        `labels` includes `selectorLabels`
-        */}}
-        {{- include "wiz-broker.labels" . | nindent 8 }}
+          `labels` includes `selectorLabels`
+          */}}
+          {{- include "wiz-broker.labels" . | nindent 8 }}
+      {{- with .Values.image.imagePullSecrets }}
+      imagePullSecrets:
+        {{- toYaml . | nindent 8 }}
+      {{- end }}
+      serviceAccountName: {{ }}
         {{- toYaml .Values.podSecurityContext | nindent 8 }}
-      serviceAccountName: {{ include "wiz-broker.serviceAccountName" . }}
+      volumes:
+        - name: connector-data
+          secret:
+            secretName: {{ include "wiz-broker.connectorSecretName" . | trim }}
+            items:
+              - key: connectorData
+                path: {{ $connectorDataFileName }}
+        {{- with }}
+          {{- toYaml . | nindent 8 }}
+        {{- end }}
         - name: {{ .Chart.Name }}
             {{- toYaml .Values.securityContext | nindent 12 }}
-          image: "{{ .Values.image.repository }}:{{ .Values.image.tag | default .Chart.AppVersion }}"
+          image: "{{ .Values.image.registry }}/{{ .Values.image.repository }}:{{ .Values.image.tag | default .Chart.AppVersion }}"
           imagePullPolicy: {{ .Values.image.pullPolicy }}
-          envFrom:  
-          - secretRef:
-              name: {{ .Values.secretName | default (printf "wiz-tunnel-client-%s-cfg" (include "wiz-broker.wizConnectorID" .))  }}
-{{- if not .Values.secretName }}
-apiVersion: v1
-kind: Secret
-  name: wiz-tunnel-client-{{ include "wiz-broker.wizConnectorID" . }}-cfg
-  namespace: {{ .Values.namespace }}
-  {{- with .Values.wizConnector.secret.annotations }}
-  annotations:
-    {{- toYaml . | nindent 4 }}
-  {{- end }}
-  labels:
-    {{- include "wiz-broker.labels" . | nindent 4 }}
-type: Opaque
-  {{- include "wiz-broker.wizConnectorSecretData" . | nindent 2 }}
-{{- end }}
+          volumeMounts:
+          - name: connector-data
+            mountPath: {{ $mountPath }}
+            readOnly: true
+          {{- with }}
+            {{- toYaml . | nindent 10 }}
+          {{- end }}
+          args: [
+            {{ $connectorDataFilePath }}
+          ]
+          env:
+          - name: WIZ_ENV
+            value: {{ | quote }}
+          {{- if not }}
+          - name: WIZ_CLIENT_ID
+            valueFrom:
+              secretKeyRef:
+                name: {{ include "wiz-broker.apiTokenSecretName" . | trim }}
+                key: clientId
+          - name: WIZ_CLIENT_TOKEN
+            valueFrom:
+              secretKeyRef:
+                name: {{ include "wiz-broker.apiTokenSecretName" . | trim }}
+                key: clientToken
+          {{- end }}
+          {{- if }}
+          - name: CLI_ENV_FILE
+            value: {{ }}
+          - name: USE_CLI_ENV_FILE
+            value: "true"
+          {{- end }}
+          - name: TARGET_IP
+            value: {{ }}
+          {{- if }}
+          - name: HTTP_PROXY
+            valueFrom:
+              secretKeyRef:
+                name: {{ include "wiz-broker.proxySecretName" . | trim }}
+                key: httpsProxy # The frp project supports only HTTP_PROXY, it uses it for both http and https.  Our broker always uses https, so we're using the httpsProxy value here (See:
+          {{- end }}
+          resources:
+            {{- toYaml .Values.resources | nindent 12 }}
+      {{- with .Values.nodeSelector }}
+      nodeSelector:
+        {{- toYaml . | nindent 8 }}
+      {{- end }}
+      {{- with .Values.affinity }}
+      affinity:
+        {{- toYaml . | nindent 8 }}
+      {{- end }}
+      {{- with .Values.tolerations }}
+      tolerations:
+        {{- toYaml . | nindent 8 }}
+      {{- end }}
 {{- end }}
wiz-broker/templates/wiz-rbac.yaml
deleted file mode 100644
index 2e4a46a6..00000000
--- a/wiz-broker/templates/wiz-rbac.yaml
+++ /dev/null
@@ -1,55 +0,0 @@
-{{- if .Values.installRbac }}
-{{- $rbacServiceAccountName := include "wiz-broker.rbacServiceAccountName" . -}}
-apiVersion: v1
-kind: ServiceAccount
-  name: {{ $rbacServiceAccountName }}
-  namespace: {{ .Values.namespace }}
-  labels:
-    {{- include "wiz-broker.labels" . | nindent 4 }}
-  {{- with .Values.rbacServiceAccount.annotations }}
-  annotations:
-    {{- toYaml . | nindent 4 }}
-  {{- end }}
-apiVersion: v1
-kind: Secret
-  namespace: {{ .Values.namespace }}
-  name: {{ $rbacServiceAccountName }}-token
-  labels:
-    {{- include "wiz-broker.labels" . | nindent 4 }}
-  annotations:
- {{ $rbacServiceAccountName }}
-    {{- with .Values.rbacSecret.annotations }}
-      {{- toYaml . | nindent 4 }}
-    {{- end }}
-kind: ClusterRole
-  name: {{ $rbacServiceAccountName }}
-  labels:
-    {{- include "wiz-broker.labels" . | nindent 4 }}
-  - apiGroups: ["*"]
-    resources: ["*"]
-    verbs: ["get", "list", "watch"]
-kind: ClusterRoleBinding
-  name: {{ $rbacServiceAccountName }}
-  labels:
-    {{- include "wiz-broker.labels" . | nindent 4 }}
-  apiGroup:
-  kind: ClusterRole
-  name:  {{ $rbacServiceAccountName }}
-- kind: ServiceAccount
-  name: {{ $rbacServiceAccountName }}
-  namespace: {{ .Values.namespace }}
-{{- end }}
wiz-broker/values.yaml
index fff6a342..69e1c85b 100644
--- a/wiz-broker/values.yaml
+++ b/wiz-broker/values.yaml
@@ -2,36 +2,16 @@
 # This is a YAML-formatted file.
 # Declare variables to be passed into your templates.
+# override default application name
 nameOverride: "wiz-broker"
-namespace: "kube-system"
-installRbac: false
-installBroker: false
-  name: "wiz-kube-connector"
-  annotations: {}
-  annotations: {}
-  create: true
-  # Annotations to add to the service account
-  annotations: {}
-  # The name of the service account to use.
-  name: wiz-broker
-  repository: wizsec/tunnel-client
-  pullPolicy: Always
+  registry:
+  repository: wiz-broker
+  pullPolicy: IfNotPresent
   # Overrides the image tag whose default is the chart appVersion.
-  tag: "latest"
-replicaCount: 1
-# Labels applied on all the resources (not used for selection)
-commonLabels: {}
+  tag: ""
+  imagePullSecrets: []
 podAnnotations: {}
@@ -39,24 +19,72 @@ podSecurityContext:
   runAsNonRoot: true
   runAsUser: 1000
-  runAsNonRoot: true
-  runAsUser: 1000
-  allowPrivilegeEscalation: false
-# required arguments
-  connectorId: ""
-  connectorToken: ""
-  targetDomain: ""
-  targetIp: ""
-  targetPort: ""
-  tunnelServerAddress: ""
-  tunnelServerPort: ""
-  httpProxy: ""
-  # Annotation to be set on the secret created
-  secret:
+  broker:
+    enabled: true
+    # Specifies whether the connector/api-token secrets should be create by the sub-chart
+    createSecret: true
+    targetIp: ""
+    serviceAccount:
+      create: true
+      # Annotations to add to the service account
+      annotations: { }
+      # The name of the service account to use.
+      name: "wiz-broker"
+    podCustomEnvironmentVariablesFile: ""
+    customVolumes: [ ]
+    customVolumeMounts: [ ]
+  httpProxyConfiguration:
+    enabled: false
+    # Specifies whether a proxy secret should be created
+    # If create is false you need to:
+    #  1. Create secret with httpProxy, httpsProxy and noProxyAddress.
+    #  2. Set secretName to reference your secret
+    create: true
+    annotations: {}
+    secretName: "" # Overriding default name for proxy secret name (.Release.Name + "-proxy-configuration" by default)
+    httpProxy: "" # http(s)://user:password@your-proxy:port (user, password and port are optional)
+    httpsProxy: "" # http(s)://user:password@your-proxy:port (user, password and port are optional)
+    noProxyAddress: "" # comma or space separated list of machine or domain names
+  wizApiToken:
+    clientId: ""
+    clientToken: ""
+    clientEndpoint: "" # Set custom endpoint (gov for example)
+    secret:
+      # Specifies whether an api token secret should be created
+      # If create is false you need to create it with clientId, clientToken
+      create: true
+      # Annotations to add to the secret
+      annotations: {}
+      # The name of the secret to use.
+      # If not set, a name is generated using the fullname template
+      name: ""
+    # API token should be read from an environment file, which is specified in podCustomEnvironmentVariablesFile
+    usePodCustomEnvironmentVariablesFile: false
+  wizConnector: # Relevant only for broker.enabled = true & autoCreateConnector = false
+    # Specifies whether a proxy secret should be created
+    # If createSecret is false you need to:
+    #  1. Create secret with this keys:
+    #  2. Set secretName to reference your secret
+    createSecret: true
+    # Annotations to add to the secret
     annotations: {}
+    secretName: ""
-# optional arguments
+    # Required arguments for autoCreateConnector = false
+    connectorId: ""
+    connectorToken: ""
+    targetDomain: ""
+    targetIp: ""
+    targetPort: ""
wiz-kubernetes-connector/Chart.yaml
index eace5b17..7bc8e40e 100644
--- a/wiz-kubernetes-connector/Chart.yaml
+++ b/wiz-kubernetes-connector/Chart.yaml
@@ -25,8 +25,7 @@ appVersion: "2.0.162274"
 # Add wiz-broker dependency to the chart
-  - name: "wiz-broker-v2"
+  - name: "wiz-broker"
     version: "1.0.0"
-#    repository: ""
-    repository: "file://../wiz-broker-v2"
-    condition: broker.enabled
\ No newline at end of file
+    repository: ""
+    condition:
\ No newline at end of file
wiz-kubernetes-connector/templates/NOTES.txt
index 96f7f59e..6438523c 100644
--- a/wiz-kubernetes-connector/templates/NOTES.txt
+++ b/wiz-kubernetes-connector/templates/NOTES.txt
@@ -7,13 +7,13 @@
    echo "\nService account token:"
    kubectl get secrets -n "{{ .Values.namespace }}" "$SECRET_NAME" -o go-template="{{ "{{" }} .data.token | base64decode }}"
 2. Create a Wiz Kubernetes connector using the web portal or the Wiz Terraform provider
-3. Install Wiz broker deployment using flag
+3. Install Wiz broker deployment using flag
 {{- end }}
 For uninstalling the wiz kubernetes connector you need to delete helm hooks resources manually.
 Please run the following commands:
 helm uninstall {{ .Release.Name | quote }} -n {{ .Release.Namespace | quote }}
-{{- if }}
+{{- if }}
 {{- if }}
 kubectl delete secret {{ include "wiz-kubernetes-connector.connectorSecretName" . | trim }} -n {{ .Release.Namespace | quote }}
 {{- end }}
wiz-kubernetes-connector/templates/_helpers.tpl
index 4759a0ae..a4f0faf6 100644
--- a/wiz-kubernetes-connector/templates/_helpers.tpl
+++ b/wiz-kubernetes-connector/templates/_helpers.tpl
@@ -42,7 +42,7 @@ Create Wiz connector properties to use
 {{- define "wiz-kubernetes-connector.wizConnectorSecretData" -}}
-{{- if not }}
+{{- if not .Values.autoCreateConnector.enabled }}
 CONNECTOR_ID: {{ required "A valid entry required!" | quote}}
 CONNECTOR_TOKEN: {{ required "A valid entry required!" | quote }}
 TARGET_DOMAIN: {{ required "A valid entry required!" | quote }}
@@ -75,7 +75,7 @@ Secrets names
 Input parameters
 {{- define "wiz-kubernetes-connector.apiServerEndpoint" -}}
-  {{- if and (not }}
+  {{- if and .Values.autoCreateConnector.enabled (not }}
     {{- required "A valid .Values.autoCreateConnector.apiServerEndpoint entry required!" .Values.autoCreateConnector.apiServerEndpoint -}}
   {{- else -}}
     {{ if .Values.autoCreateConnector.apiServerEndpoint }}
wiz-kubernetes-connector/templates/job-create-connector.yaml
index 0b26c3ab..e508020a 100644
--- a/wiz-kubernetes-connector/templates/job-create-connector.yaml
+++ b/wiz-kubernetes-connector/templates/job-create-connector.yaml
@@ -1,4 +1,4 @@
-{{- if }}
+{{- if .Values.autoCreateConnector.enabled }}
 apiVersion: batch/v1
 kind: Job
@@ -55,11 +55,11 @@ spec:
             {{ .Release.Namespace | quote }},
             {{ include "wiz-kubernetes-connector.clusterReaderToken" . | quote }},
-            {{- if }}
+            {{- if }}
             {{ include "wiz-kubernetes-connector.connectorSecretName" . | trim | quote | nindent 12 }},
             {{- end }}
-            "--is-on-prem={{ }}",
+            "--is-on-prem={{ }}",
             {{ with .Values.autoCreateConnector.connectorName }}
             {{ . | quote }},
diff --git a/wiz-kubernetes-connector/templates/secrets.yaml b/wiz-kubernetes-connector/templates/secrets.yaml
index 6084adab..35d9c73a 100644
--- a/wiz-kubernetes-connector/templates/secrets.yaml
+++ b/wiz-kubernetes-connector/templates/secrets.yaml
@@ -1,4 +1,4 @@
-{{- if }}
+{{- if }}
 {{- if }}
 apiVersion: v1
 kind: Secret
@@ -19,7 +19,7 @@ stringData:
 {{- end }}
 {{- end }}
-{{- if and }}
+{{- if and .Values.autoCreateConnector.enabled }}
 apiVersion: v1
 kind: Secret
wiz-kubernetes-connector/templates/service-account-create-connector.yaml
index ae993f30..826d4ff7 100644
--- a/wiz-kubernetes-connector/templates/service-account-create-connector.yaml
+++ b/wiz-kubernetes-connector/templates/service-account-create-connector.yaml
@@ -1,4 +1,4 @@
-{{- if and .Values.autoCreateConnector.serviceAccount.create }}
+{{- if and .Values.autoCreateConnector.enabled .Values.autoCreateConnector.serviceAccount.create }}
 apiVersion: v1
 kind: ServiceAccount
@@ -13,7 +13,7 @@ metadata:
     {{- toYaml . | nindent 4 }}
   {{- end }}
 {{- end }}
-{{- if and .Values.autoCreateConnector.serviceAccount.createRbac }}
+{{- if and .Values.autoCreateConnector.enabled .Values.autoCreateConnector.serviceAccount.createRbac }}
 kind: Role
diff --git a/wiz-kubernetes-connector/values.yaml b/wiz-kubernetes-connector/values.yaml
wiz-kubernetes-connector/values.yaml
--- a/wiz-kubernetes-connector/values.yaml
+++ b/wiz-kubernetes-connector/values.yaml
@@ -25,6 +25,7 @@ clusterReader:
     annotations: {}
+  enabled: true
   connectorName: "" # optional
   clusterFlavor: "" # optional (EKS, AKS, GKE, OKE, OpenShift, Kubernetes)
@@ -44,21 +45,6 @@ autoCreateConnector:
   customVolumes: []
   customVolumeMounts: []
-  enabled: true
-  targetIp: "kubernetes.default.svc.cluster.local"
-  serviceAccount:
-    create: true
-    # Annotations to add to the service account
-    annotations: {}
-    # The name of the service account to use.
-    name: "wiz-broker"
-  podCustomEnvironmentVariablesFile: ""
-  customVolumes: []
-  customVolumeMounts: []
 # Labels applied on all the resources (not used for selection)
 commonLabels: {}
@@ -93,10 +79,26 @@ affinity: {}
-  autoCreateConnector: true
+  broker:
+    enabled: true
+    # Specifies whether the connector/api-token secrets should be create by the sub-chart
+    createSecret: false
+    targetIp: "kubernetes.default.svc.cluster.local"
+    serviceAccount:
+      create: true
+      # Annotations to add to the service account
+      annotations: {}
+      # The name of the service account to use.
+      name: "wiz-broker"
+    podCustomEnvironmentVariablesFile: ""
+    customVolumes: []
+    customVolumeMounts: []
   # The API key identifying this installation (for comm with Wiz portal)
     clientId: ""
     clientToken: ""
     clientEndpoint: "" # Set custom endpoint (gov for example)