Unleashing Tenable Hexa AI to automate exposure management
Discover how Tenable Hexa AI transforms exposure management by automating complex security workflows and turning exposure intelligence into coordinated actions. In this session, we explore key capabilities, demonstrate real-world use cases, and introduce how to secure your corporate AI tools with Tenable AI Exposure.
[00:00:02] Introduction to Tenable Hexa AI
We introduce Tenable Hexa AI, our agentic AI engine native to the Tenable One platform designed to act as a mission control center for your security program.
- Workflow orchestration: Hexa seamlessly bridges silos across IT, cloud, and identity to move you from detection to remediation faster.
- Unprecedented scale: The engine empowers your Tenable One Vulnerability Management team to operate at machine speed, drastically reducing cyber risk.
- Model Context Protocol support: You can bring your own AI and build custom agents tailored specifically to your unique environment.
[00:05:37] Built for trust: Governance and the exposure data fabric
Hexa is built on a foundation of trust, pulling context from a vast exposure data fabric while enforcing strict governance and security controls.
- Role-based access control: Every prompt operates strictly under your existing user permissions, ensuring no elevated privileges are ever used.
- Human in the loop: Hexa requires manual confirmation before executing actions, meaning nothing changes in your environment without explicit approval.
- Full auditability: Every action and interaction is fully audited and logged in standard Tenable audit logs for user-level attribution.
[00:18:44] Demo: Scan creation and management
We demonstrate how to interact with Hexa to automate routine tasks like creating and scheduling targeted vulnerability scans.
- Conversational scan creation: You can quickly define targets, select scanners, and configure schedules through simple conversational prompts.
- Bulk scan management: Upload an Excel file containing scan configurations, and Hexa will parse the data, build the scans, and schedule them simultaneously.
[00:24:26] Demo: Automating credential failure analysis
We showcase how Hexa simplifies post-scan troubleshooting by creating routines that analyze authentication failures across your environment.
- Automated routines: You can schedule daily analysis tasks in the agent center to monitor non-agent scans for credential failures.
- Root cause analysis: Hexa identifies the exact reasons for failures, such as blocked accessible paths or UAC token filtering.
- Actionable remediation: Receive clear, step-by-step recommendations on how to fix authentication issues and improve your overall scan hygiene.
[00:32:16] Demo: Automating Jira ticketing for critical vulnerabilities
Watch how Hexa connects with third-party tools to streamline the exposure response and remediation tracking process.
- Prioritizing risk: Hexa automatically identifies the most concerning vulnerabilities in your environment based on scores and cyber exposure data.
- Seamless ticketing: With a single prompt, you can instruct Hexa to format and open tickets directly in Jira, saving hours of manual investigation and data entry.
[00:37:49] Leveraging Model Context Protocol for custom dashboards
We highlight the flexibility of the Hexa MCP server, which allows you to use custom large language models to build advanced, tailored visualizations.
- Custom dashboard generation: We demonstrate using an external LLM to parse national security framework guidelines and instantly build a complete, interactive HTML dashboard.
- Optimized token consumption: Offload processing to your own LLM client via MCP, which significantly reduces token usage within the native Tenable One interface.
[00:42:54] Securing enterprise AI tools with Tenable AI Exposure
We transition from AI for security to security for AI, detailing how to govern employee interactions with tools like Microsoft Copilot, Google Gemini, and OpenAI.
- Agentless discovery: Connect directly to your AI platforms via API to discover users, custom agents, and sensitive projects without requiring proxies.
- Monitoring AI misuse: Detect prompt injections, jailbreak attempts, and data exposure incidents where sensitive internal data might be leaked.
- Identifying misconfigurations: Automatically flag internal AI agents that are improperly exposed to the internet or granted excessive data permissions.
[00:51:00] Major updates coming in Tenable Security Center version 6.9
We outline important architectural and system requirement changes for on-premises customers upgrading to Tenable Security Center version 6.9.
- Strict system requirements: Upgrades now require a hard minimum of 8GB of RAM, and the installation will fail if this pre-validation check is not met.
- Performance improvements: The backend is moving to a microservices architecture with a new database, which will significantly speed up trend data generation.
- Trend chart behavior: Because of the architecture changes, newly created or modified trend charts will begin collecting data from the date of creation, without importing historical data.
[00:54:09] Open Q&A: Token consumption and availability
We close the session by answering live audience questions regarding product features and AI consumption tracking.
- Tenable Security Center capabilities: The findings page will be available in the upcoming 6.9 release, though Tenable AI Exposure remains a SaaS-only solution.
- Managing token limits: While exact token consumption per prompt varies, you can easily track usage and set monthly limits per user directly in the Tenable One settings.
Tenable One
Solicite uma demonstração
A plataforma líder mundial em gerenciamento de exposição com tecnologia de IA.
Obrigado
Agradecemos seu interesse pelo Tenable One.
Um representante entrará em contato em breve.
Form ID: 7469
Form Name: one-eval
Form Class: c-form form-panel__global-form c-form--mkto js-mkto-no-css js-form-hanging-label c-form--hide-comments
Form Wrapper ID: one-eval-form-wrapper
Confirmation Class: one-eval-confirmform-modal
Simulate Success