Meet Tenable Hexa AI: Agentic AI for exposure management
嗯,用户让我帮忙总结一篇文章的内容,控制在100字以内,而且不需要特定的开头。首先,我需要通读整篇文章,抓住主要信息。 文章主要介绍的是Tenable Hexa AI,这是一个安全平台的核心引擎。它能够自动化复杂的任务,把风险情报转化为实际行动。这听起来对安全团队很有帮助,特别是面对AI驱动的攻击时。 接下来,文章提到Hexa AI结合了机器的速度和人类的判断力,用户可以根据信任程度调整自动化水平。这可能是一个卖点,因为它提供了灵活性和控制权。 还有,Hexa AI基于Tenable的Exposure Data Fabric,这个数据集非常全面,涵盖了多种环境的数据。这可能让Hexa AI在处理风险时更加精准和有效。 用户的要求是100字以内,所以我要提炼关键点:Hexa AI的功能、优势、以及它如何帮助安全团队应对AI攻击。同时要确保语言简洁明了。 最后,检查一下是否符合要求:没有使用“文章内容总结”之类的开头,并且控制在100字左右。 </think> Tenable Hexa AI 是 Tenable One 暴露管理平台的核心引擎,通过自动化复杂安全工作流和将暴露情报转化为协调行动来降低网络风险。它结合机器速度与人类控制,使安全团队从被动响应转向主动风险管理,并支持灵活的自动化水平。 2026-3-24 16:0:0 Author: www.tenable.com(查看原文) 阅读量:2 收藏

Meet Tenable Hexa AI: the agentic engine of the Tenable One Exposure Management Platform. Learn how Tenable Hexa AI automates complex security workflows and transforms exposure intelligence into coordinated action to help your security team meaningfully reduce cyber risk.

Key takeaways

  1. Tenable Hexa AI empowers defenders by radically reducing operational workloads, allowing security teams to shift from reactive firefighting to preemptive exposure management. By orchestrating complex security actions across humans, automation, and agents, Tenable Hexa AI enables organizations to stay steps ahead of threat actors who are leveraging AI to accelerate discovery, exploitation, and exfiltration.
  2. Powered by Tenable’s Exposure Data Fabric, Tenable Hexa AI is the agentic engine of the Tenable One Exposure Management Platform. Tenable Hexa AI automates complex security workflows, transforms exposure intelligence into coordinated action to reduce cyber risk, and enables security teams to meet the speed of AI-assisted attacks.
  3. Hexa AI combines machine speed with human control, to the extent desired by customers. It empowers proactive security teams to shift from reactive firefighting to preemptive risk reduction, while allowing them to dial in the exact level of automation they trust — whether that means full autonomous execution or strategic manual oversight.

Tenable Chief Product Officer Eric Doerr speaks about Tenable Hexa AI

In the time it takes you to read this blog, an AI-assisted attacker can scan your environment searching for entry points, gain initial access by exploiting a vulnerability or misconfiguration, perform recon, move laterally, elevate their privileges, and breach your organization’s sensitive data — all before your reactive threat detection and response tools can piece together what’s happening and trigger an alert. 

This isn’t a theoretical risk. 

In November 2025, Anthropic revealed that a threat actor had jailbroken Claude Code and used it to automate as much as 90% of a targeted attack, executing “thousands of requests, often multiple per second” and achieving an attack speed the company says would have been impossible for human hackers — or defenders — to match. 

For the modern defender, the math no longer adds up: manual triage, spreadsheet-based remediation, and siloed tools cannot win a race against machine-speed exploitation as security teams struggle to coordinate and automate workflows involving humans, automation — and increasingly — AI agents. 

The challenge of keeping pace with the speed of attacks, vulnerability discovery, exploitation, and attack surface expansion demands a new security operating model and a new approach to reducing cyber risk. Exposure management delivers this new approach, and Tenable Hexa AI, introduced today with a fleet of mission-ready agents, ushers in a new operating model.

What is Tenable Hexa AI? What does it do? 

Tenable Hexa AI is the agentic engine of the Tenable One Exposure Management Platform

Built to transform your security operating model for the AI era, Tenable Hexa AI:

  • coordinates AI agents, human approvals, and workflows into a single agentic orchestration engine;
  • automates complex tasks and security workflows, such as building risk dashboards, tagging assets, configuring vulnerability assessments, isolating a risky asset and more, in seconds;
  • transforms exposure intelligence into coordinated action to reduce cyber risk. 

While Tenable Hexa AI handles the execution of complex, multi-step workflows at machine scale, it is designed to give you complete control and transparency. With Tenable Hexa AI, you and your team maintain control over when to proceed with complete automation and when you need a human in the loop. And everything Tenable Hexa AI does is logged, so you can always audit any action it takes with or without human supervision. 

Machine speed. Human judgement. One engine. That’s Tenable Hexa AI.

Demo video of HexaAI

What customers say about Tenable Hexa AI

Tarek Houni, Head of Exposure Management at an international manufacturing company based in France, says “Tenable Hexa AI has fundamentally shifted how we deploy our security resources, powering and scaling efficiency across workflows.” 

He notes that the automation and orchestration capabilities have made his team more efficient and enabled them to refocus on activities that drive meaningful cyber risk reduction for their organization. 

“Reclaiming two days a month on a single process like asset tagging is a massive win for our team,” he says. “That is two days our team no longer spends on tedious upkeep, and can instead redirect entirely toward investigating exposures, closing critical gaps, and actively reducing our organizational risk.” 

Capabilities of Tenable Hexa AI 

The capabilities of Tenable Hexa AI fall into three main categories: assessment configuration, risk intelligence, and advanced workflow orchestration. With Tenable Hexa AI, you can use Tenable-built AI agents, build your own custom agents, and orchestrate both to meet your needs. And with Model Context Protocol (MCP) built in, Hexa AI acts as a universal adapter, allowing you to use our fleet of agents and build custom logic that connects your specific business tools to any LLM.

  1. Assessment configuration

The foundation of any security program is a clear understanding of the environment. Tenable Hexa AI removes the administrative friction required to organize your attack surface and deploy assessments.

Tenable Hexa AI categorizes assets at scale by suggesting identification schemas based on your specific environmental context and owner data. For organizations with established frameworks, you can integrate your existing data by uploading a CSV and providing a simple instruction: “Apply this schema to all matching assets in our environment.” The transition from manual categorization to automated organization happens in seconds. By streamlining the configuration of these assessments, Tenable Hexa AI ensures you can achieve visibility across your entire attack surface, reducing the blind spots that lead to security surprises.
 

Tenable Hexa AI tagging capability

  1. Risk intelligence

Security data is most effective when it is tailored to your specific business needs. These capabilities transform raw metrics into prioritized intelligence that reflects your unique operational reality.

Rather than spending hours manually configuring reports, Tenable Hexa AI can generate immediate visualizations of your posture by simply asking Tenable Hexa AI to “Build a dashboard showing all current risks in my environment.” Because global vulnerability scales don't always reflect local business impact, the system allows you to define rules that adjust severity or accept risks based on your specific context. This ensures your team is focused on remediation where it matters most. This intelligence extends into cloud environments, where plain-language queries provide instant insights into cloud assets and over-privileged users, moving you from a question to an answer in a single step.
 

Tenable Hexa AI custom dashboard

  1. Advanced workflow orchestration

To bridge the gap between identifying a risk and resolving it, Tenable Hexa AI handles the execution of complex, multi-step tasks across your ecosystem.

Tenable Hexa AI carries out workflows based on your intent, whether you are reconciling data from disparate sources or automating a sequence of administrative tasks like adjusting risk levels or configuring new scans. While the platform manages the heavy lifting of these sequences, you dictate the exact level of human oversight required. Tenable Hexa AI combines machine speed with human control, to the extent desired by customers. With Tenable Hexa AI, you and your team maintain control over when to proceed with complete automation and when you need a human in the loop. 

For organizations seeking flexibility, we have built in support for Model Context Protocol (MCP), allowing Tenable Hexa AI to act as a universal adapter. By leveraging our fleet of agents, you can build custom logic that connects your specific business and security tools to any LLM, using Tenable One to orchestrate actions to reduce risk and keep your organization safe.

What distinguishes Tenable Hexa AI from other agentic AI security tools? 

The agentic action capabilities that set apart Tenable Hexa AI from conventional security chatbots are built on Tenable’s Exposure Data Fabric, the industry’s most comprehensive repository of contextualized exposure data, gleaned from our native sensors deployed across over 40,000 customer environments. 

Tenable sensors collect data across IT, OT, and cloud environments about assets, identities, vulnerabilities, misconfigurations, and AI systems, including the LLMs our customers are using.

The breadth and depth of data that makes up Tenable’s Exposure Data Fabric is the product of years of ingestion, normalization, and contextual enrichment across IT, cloud, OT, identity, and AI environments, and it cannot easily be replicated. The Exposure Data Fabric provides the authoritative context enabling Tenable Hexa AI to:

  • understand how vulnerabilities, identities, assets, configurations, and AI systems across your attack surface interact to create exposure;
  • determine which exposures create the most risk for your organization;
  • validate the real security posture of your environment;
  • orchestrate the steps required to close your organization’s highest-risk exposures. 

Tenable’s Exposure Data Fabric makes agentic AI for preemptive security possible. Without this depth and breadth of data, agents can only guess what action to take. With it, they’re capable of reasoning across your exposure landscape and helping to move security operations beyond reactive response to consistent, machine-speed risk reduction.

The next phase of AI in security isn’t about using a chatbot to get answers to basic questions. It’s about shifting the cybersecurity operating model from humans orchestrating tools to AI orchestrating tools under human direction. This is the agentic shift: AI that doesn’t just inform, but acts to fundamentally change your team’s capacity to reduce risk.

Experience the shift at RSAC 2026

Tenable Hexa AI is currently in private preview for select Tenable One customers.

  • Visit us: See the live demo at Booth #6155 (North Expo Hall), RSA Conference 2026.
  • Get access: Contact your Tenable Account Team to join the private preview program.

Want to learn more? Download the Tenable Hexa AI data sheet to get the full technical breakdown of our agentic capabilities and read the press release to learn about Tenable's vision for the future of proactive risk reduction and AI-powered exposure management.

Eric Doerr

Eric Doerr

Chief Product Officer, Tenable

As Tenable’s chief product officer, Eric Doerr leads the company’s global product organization, overseeing strategy, innovation and execution across a growing cybersecurity portfolio. He brings nearly 30 years of experience building and scaling security products at some of the world’s most respected technology companies. Prior to Tenable, Eric most recently served as vice president of security products at Google Cloud, where he led Google SecOps (formerly Chronicle) and Google Threat Intelligence, as well as the Mandiant integration. He previously spent more than 20 years at Microsoft in senior leadership roles across the security and identity space, including general manager of Microsoft Account and corporate vice president of Cloud Security and the Microsoft Security Response Center (MSRC). Eric also served as chief product officer at Porch, a home services startup.


文章来源: https://www.tenable.com/blog/hexa-ai-agentic-ai-for-exposure-management
如有侵权请联系:admin#unsafe.sh