Discover how Tenable Hexa AI closes the gap between exposure management and endpoint patching using intent-driven routines, smart guardrails, and human approval.
Find the exposure. Fix it. Confirm it is gone.
Those three steps are rarely executed in a single place, by a single team. Exposure management knows which assets are at risk, while endpoint management actually changes the machine and applies the fix.
Between those two domains of exposure identification and remediation lies a slow, manual handoff and multi-step routine that costs security teams days or weeks while vulnerabilities remain exposed:
Tenable Hexa AI, the agentic engine of the Tenable One Exposure Management Platform, now spans that handoff, so you don’t have to manually toggle among tools or continually restart the conversation.
Say there’s an actively exploited Chrome vulnerability, and a fleet of your Macs is still running the vulnerable version. Rather than navigating multiple tools, you simply tell Tenable Hexa AI to patch it. Tenable Hexa AI executes the workflow in three unified stages:
If you need to narrow enumeration to one business unit, just tell Hexa and it will re-scope and return a new plan before executing any changes.
Once you approve, Tenable Hexa AI creates a static group in Jamf holding exactly the devices you approved, then triggers the policy against it. Ask Hexa for status at any point, and it returns the rollout device by device, without you leaving the chat window. Tenable Hexa AI then schedules a re-scan for after the patch deployment window.
What previously took days across multiple tools now takes minutes within a single conversation, and all you need to do is make one decision rather than coordinate the manual execution of multiple, complex steps.

The ultimate goal of agentic AI for security is to help security teams efficiently and effectively scale cyber defense by taking on complex manual routines. To carry out vulnerability remediation and validation routines with Tenable Hexa AI, you define three core elements in plain, natural language:
Tenable Hexa AI drafts the plan using capabilities discovered from the tools you have already connected to Tenable One. If the objective is ambiguous, Tenable Hexa AI asks for clarification instead of guessing, and if the objective and the guardrails are at odds, it tells you rather than quietly dropping one.
Because routines in Tenable Hexa AI are intent-driven and not step- or script-driven, they adapt seamlessly to real-world infrastructure changes, such as new asset classes, renamed tags, or failed scans that require a restart. Scripts break when conditions change; intent survives contact with reality.
Trust is not something you hand off blindly to an agentic security product. You extend it one job at a time, and it grows through demonstrated reliability.
Routines allow security teams to scale autonomy at their own pace through the following attributes:
So the pace is yours. Start by handing off a routine weekly report, then move to automated overnight triage once you have watched the report run successfully a few times. Expand autonomy one routine at a time as you build confidence in the agentic engine. Tenable Hexa AI moves as fast as you let it.
Autonomy you cannot see is not autonomy you can inherently trust. Agent Center serves as the primary dashboard for agentic activity within Tenable One. It answers four critical operational questions the moment you log in:
Agent Center transforms your daily security routine. While you were offline, Tenable Hexa AI ran overnight sweeps, triaged findings, and prepared scoped proposals. Instead of starting your day with work, you begin with an auditable, and evidence-backed decision — with a ledger behind it recording what happened, who approved it, and when.
None of what makes the routines safe is a property of the model. It comes from the harness Tenable One puts around any model or agent working in a customer environment.
The harness starts from a blunt assumption: models and agents are untrusted participants. Permissions, context boundaries, approval gates, validation, and auditability all sit outside the model, and a routine never reaches past the permissions of the person who created it.
You can see this today in Tenable Hexa AI. The objective resolves against Tenable’s Exposure Data Fabric — your real environment, priorities, and prior context — not the internet. Tenable Hexa AI picks capabilities so you never wire steps; the approval gate defines what runs; and a separate check validates every state change before it leaves the queue. The audit log makes it verifiable after the fact, and failures, fallbacks, model changes, and latency are the harness’s problem rather than your own.
This is why a proposal to write into your endpoint management tool is something you can reasonably approve at 8 AM. Access to a frontier model is not what makes agentic security work; everything around the model does. The Exposure Data Fabric makes the answers relevant to your environment, and the harness makes the actions taken against it trustworthy.
The model reasons. Tenable Hexa AI coordinates. Agents do the specialized work. The harness holds the boundary.
To begin automating exposure management with Tenable Hexa AI, follow these three simple steps:
Delegating your first routine does more than save you a couple of hours. It gives you back nights and weekends while closing exposures in minutes.
Tenable Hexa AI is an agentic security automation capability within Tenable One that automates vulnerability triage, asset scoping, endpoint patch deployment, and post-remediation verification across integrated tools like Jamf.
Routines are intent-driven automations defined in natural language. They consist of an objective (what to accomplish), guardrails (operational constraints), and a schedule. Unlike traditional scripts, routines adapt dynamically to changes in your infrastructure.
Tenable Hexa AI enforces human-in-the-loop approval gates before any changes are committed to endpoint tools. Furthermore, the Tenable One harness guarantees that a routine can never exceed the strict access permissions of the security professional who created it.
The Exposure Data Fabric is the underlying data architecture in Tenable One that provides real-time asset context, priorities, and environment data to Hexa AI. This ensures AI reasoning is anchored in actual enterprise context rather than external data.