Tenable, Inc. - Experts & Thought Leaders

Latest Tenable, Inc. news & announcements

Tenable Uses OpenAI Models To Vet Cybersecurity AI

Tenable® Holdings, Inc., the exposure management company, today announced the expansion of the CyberAgents Exchange, powered by Tenable, to further accelerate enterprise security adoption of open-source AI agents, skills and MCP servers. Engineered by Tenable using OpenAI GPT cyber models, the CyberAgents Exchange AI Inspector (Exchange Inspector) evaluates selected AI components listed on the Exchange, including an enterprise-grade safety review, which is designed to help organizations more securely deploy in production environments. Vendor-agnostic hub The CyberAgents Exchange is an open-source, vendor-agnostic hub where security professionals discover and share AI agents, skills, MCP servers and playbooks built for cybersecurity. Exchange Inspector was developed as part of Tenable’s participation in the OpenAI Daybreak Defense Network. Exchange Inspector is a three-part vetting process that begins with Tenable One AI Exposure's skills inspection engine, which is designed to detect malicious content, such as prompt-injection and the exposure of hardcoded secrets or customer data. The component then undergoes a frontier model assessment using OpenAI GPT cyber models, followed by expert review by Tenable's security research team. Daily prioritisation plan Tenable carefully selects AI components that have demonstrated measurable results for Exchange Inspector vetting. Featured Exchange Inspector-vetted skills available today include: SOC Hunter - an AI skill that brings structured, proactive threat hunting to incident response workstations. The contributor, Tenable’s enterprise security team, reports cutting hunt times by 75%. SOC Hunter leverages hypothesis-driven threat hunting using the LOCK pattern across SIEM, EDR, VM, CSPM, CASB and code search. Remediation Priority & Impact Agent - an AI skill that develops a daily prioritisation plan for vulnerability remediation by combining live exposure data from Tenable, CISA KEV exploitation, MITRE ATT&CK and attack paths. They estimate the Remediation Priority & Impact Agent can reduce analyst triage time by up to 20X per cycle. Splunk Tenable Cloud Security Skill - a multi-model skill that enables security teams to query and triage Tenable One Cloud Security posture findings already ingested in Splunk using production-safe, count-first SPL via the official Splunk MCP Server, reclaiming dozens of hours of analysts’ time every week. Advanced AI discovery engine “With Tenable, security teams can accelerate AI innovation while maintaining rigorous security standards,” said Vlad Korsunsky, Chief Technology Officer, Tenable. “Leveraging Tenable One AI Exposure’s advanced AI discovery engine and frontier assessment using OpenAI GPT cyber models, the Exchange Inspector provides an additional layer of review for this rapidly growing subset of agents, skills and MCP servers before deployment. The CyberAgents Exchange symbolises trusted AI innovation, enabling CISOs and security teams to deploy AI more safely across the enterprise.” “The cybersecurity community has come together in a truly meaningful way on the CyberAgents Exchange," said McCall McIntyre, Head of Global Cyber Partnerships, OpenAI. "We are excited to work with Tenable on this important initiative to help deliver the trust layer required to more safely scale agentic AI across the enterprise.” Read today’s blog, “Inside the Exchange Inspector: How Tenable uses OpenAI GPT cyber models to review open-source AI agents,” for more details on the CyberAgents Exchange components that have been Exchange Inspector-vetted. AI component inspection is powered by Tenable One AI Exposure – the same skills inspection technology that can secure the agents already running across the environment.

Tenable Launches CyberAgents Exchange For Security AI

Tenable® Holdings, Inc., the exposure management company, launches the CyberAgents Exchange, a new open-source AI exchange created to foster industry collaboration and improve collective cyber defense. The CyberAgents Exchange, powered by Tenable, is the only purpose-built, cybersecurity-native registry for AI agents, skills, MCP servers and multi-agent playbooks in the current market.  Security teams are increasingly turning to AI to scale security operations and manage risk overload, but end up building AI agents in isolation, repeatedly reinventing the wheel. Existing AI exchanges are either general-purpose or vendor-gated, forcing security teams to wade through irrelevant use cases, waste time on duplicate design and build efforts, or accept restrictive vendor lock-in. To improve the cybersecurity industry’s collective defense and outpace AI-generated threats, defenders need a unified, cyber-specific hub to accelerate development and share collective agentic tooling. Peer-supported AI components The CyberAgents Exchange eliminates these development silos and empowers industry collaboration with a truly open, free-to-use exchange. Built for trust and transparency, the Exchange provides code-level visibility into who built each AI component, when it was created and its peer-supported status. This transparency enables members to deploy AI components tailored to their specific organizational needs confidently. Additionally, the Exchange is a career asset for practitioners to build verifiable expertise in an emerging discipline and develop a catalog of peer-supported AI components.  Autonomous security operations "The CyberAgents Exchange fills a major and pressing industry need, especially as cybersecurity remains a growing issue and AI-enabled attacks rise," said Seth Fogie, Director of Security for Baptist Memorial Health Care. "Its core philosophy of working together is what made the threat intelligence community so invaluable. My team has benefited greatly from the Exchange, and we look forward to contributing and collaborating with the wider community." Underscoring the industry’s commitment to collaborative, open-source AI defense, industry pioneers SentinelOne and Recorded Future have joined the initiative as founding members of the CyberAgents Exchange. By contributing their deep expertise in autonomous security operations and threat intelligence, these industry pioneers will help anchor the Exchange as a truly unified, vendor-agnostic ecosystem. As founding members, both organizations will actively contribute secure AI agents, integration frameworks and playbooks to accelerate the community's defense capabilities against rapidly evolving AI-driven threats. Open-source security agents In conjunction with the launch, Tenable is hosting “SWARM: The Cybersecurity Agentic AI Build Event,” a hands-on, multi-day event at Black Hat USA 2026 sponsored by AWS and presented with support from Anthropic. At the event, security practitioners will build open-source security agents, skill files or MCP servers. Winners will be announced on Thursday, August 6, 2026.  More than 50 AI components, released under open-source licenses, are available, including: Navi (Agent): A command-line tool that leverages the Tenable One Vulnerability Management APIs to automate common vulnerability management and cyber exposure workflows. SentinelOne Purple AI (MCP Server): Allows users to access SentinelOne services with any MCP client.  Recorded Future MITRE APT Attack Path Analysis (Skill): Pulls an organization’s Recorded Future threat map, maps an APT group's MITRE ATT&CK techniques and cross-references against live Tenable findings to identify which attack path nodes are actively exploitable.  SOC-Hunter (Skill): Leveraged daily by Tenable’s internal security operations team, SOC-Hunter provides proactive, hypothesis-driven threat hunting using the LOCK pattern across SIEM, EDR, VM, CSPM, CASB and code search. The Hounds Pack (Playbook): A skill-packaged playbook for The Hounds — 18 exposure-management specialists that hunt, tag and calibrate risk.  Outpace modern adversaries “Security is a team sport. We’ve addressed a gaping hole in the ecosystem of AI Agents, built for defenders, by defenders. With the CyberAgents Exchange, we’re creating a collaborative 'town square' where cybersecurity practitioners can build, test, improve and share the best in agentic defense,” said Vlad Korsunsky, Chief Technology Officer, Tenable. “With our deep roots in the open source community and our global ecosystem of customers and partners, Tenable is uniquely positioned to steward this collaborative effort to help scale security teams' capabilities and outpace evolving threats.” "To truly scale defences against autonomous, AI-driven threats, the security community must move past isolated development and vendor-locked silos," said Braden Preston, vice president of product management, SentinelOne. "As a founding member of the CyberAgents Exchange, SentinelOne is proud to champion a transparent, open-source foundation for agentic security. By sharing trusted, autonomous components and collaborative playbooks, we are empowering security teams globally to innovate faster, defend smarter and outpace modern adversaries together." Open-source community "Joining the CyberAgents Exchange as a founding member lets us bring world-class threat intelligence directly into the open-source frameworks security teams are building today," said Jamie Zajac, Chief Product Officer at Recorded Future. "But the promise of AI agents in security depends entirely on whether they can be trusted. Intelligence doesn't just make agents smarter. It makes them traceable, auditable and repeatable. That's the foundation the community needs to build autonomous defense that's not only fast, but reliable." The Tenable CyberAgents Exchange is a free, open-source community with no fees for listing or using agents.

Cohesity Expands Industry's Only Data Security Alliance And Announces New Integrations With Cybersecurity Leaders

Cohesity, a pioneer in data security and management, announced at Catalyst, the company’s three-day virtual summit, expansion and rapid innovation with the Data Security Alliance.  Cohesity added new members to the alliance including Netskope, ServiceNow, and Zscaler. The company delivered new integrations with CrowdStrike, ServiceNow, and announced an updated integration with Tenable. The alliance, announced in November 2022, also includes BigID, Cisco, CyberArk, Mandiant, Okta, Palo Alto Networks, PwC UK, Qualys, Securonix, and Splunk. Data Security Alliance Data Security Alliance offers a unique and comprehensive approach to security The Data Security Alliance offers a unique and comprehensive approach to security. Through this one-of-a-kind alliance, leading cyber security, data security and management, and services vendors partner to seamlessly bridge enterprise IT and security by sharing context and enabling new workflows. This collaboration can help customers detect threats and respond to attacks faster, improve remediation, and advance cyber resilience-all while utilising their existing security and data management investments.  Global research study This type of alliance is in high demand by enterprises globally. In a soon-to-be-released global research study commissioned by Cohesity, with partners BigID and Tenable, 87% of the more than 3,000 IT and security respondents polled believe that in order to help win the war against ransomware, it is important that data security and management and cyber security companies team to provide complete and integrated anti-ransomware solutions.  The following are new Data Security Alliance partners: Netskope: Cohesity and Netskope will provide enhanced data protection to tackle the challenges of double-extortion ransomware attacks. Cohesity’s zero-trust protection of immutable backup data helps ensure data is available for recovery if production data is encrypted. When coupled with instant mass restore, organizations will be able to recover from ransomware attacks in hours versus days. Zero-trust principles Enterprises can reduce the attack surface by applying zero-trust principles to unmanaged networks Netskope's Intelligent Security Service Edge (SSE) platform, with its Zero Trust Engine, provides AI-powered visibility and control of sensitive data across web, SaaS, and private apps. Enterprises can reduce the attack surface by applying zero-trust principles to unmanaged networks and protect all traffic through real-time data and threat protection.  Through this integration, enterprises can thwart data exfiltration by ransomware attacks that can expose customer, employee, and partner data, as well as intellectual property, for extortion purposes. ServiceNow: ServiceNow® Security Operations (SecOps) brings incident data from the Cohesity Data Cloud into a structured response engine that uses intelligent workflows, automation, and a deep connection with IT to prioritise and resolve threats based on the impact they pose to organizations. Zscaler: Data protection is top of mind for customers to protect. Cohesity integration with Zscaler provides customers with industry-pioneering Zero Trust security in the world's most deployed cloud data protection solution. Cohesity will classify backup data and share information about sensitive files with Zscaler. Zscaler's data protection platform not only fortifies cloud-based communication channels but also incorporates functionalities such as automated data discovery powered by AI and machine learning (ML), as well as seamless deployment requiring no manual configuration. These capabilities enable precise enforcement of outbound traffic policies, aligning them effectively with customer data protection guidelines. Furthermore, the integrated workflow optimizes the allocation of security team resources while actively shaping user behavior pertaining to the handling of sensitive data. Author's quote Increasingly sophisticated cyber threats cannot be solved by one vendor alone" “With the addition of new security partners Netskope, ServiceNow, and Zscaler and our growing portfolio of security integrations, we have one of the most robust data security ecosystem in the industry to help fight the threat of attacks,” said Sanjay Poonen, CEO and president, Cohesity. “Today’s increasingly sophisticated cyber threats cannot be solved by one vendor alone. It takes an integrated network of cyber security, data security and management, and services experts to thwart the persistence of bad actors. We’re excited to be fulfilling our vision via new and expanded integrations with our valued partners and look forward to working together to help enterprises win the war against cyber threats.”  New or advanced integrations The following are new or advanced integrations with Data Security Alliance members to increase the speed and efficiency of threat detection. CrowdStrike: Integration with Cohesity provides closed-loop detection and response for attacks directly within the CrowdStrike Falcon platform. Customers obtain enriched visibility in their CrowdStrike Falcon LogScale dashboard–the platform’s modern observability and log management offering–with insights from Cohesity, allowing fast correlation, investigation, and response to incidents in one location. ServiceNow: ServiceNow® Security Operations provides closed-loop detection and response for ransomware attacks via SOAR integration adding to the existing capability to create workflows through their IT service management (ITSM) solution. This allows teams to rapidly access and address threats based on the potential impact to the business. Tenable: Cohesity is pleased to launch a new, re-architected integration with Tenable, that powers our marketplace app CyberScan. The updated Tenable integration provides improved scalability to meet the demands of growing workloads so that snapshots can be scanned rapidly and support demanding SLA and RTO requirements. The improved scalability also improves vulnerability scanning used proactively, as part of cyber resilience best practices. Log management solution With the increasing sophistication of cyberattacks, powerful integrations help defeat the bad guys “CrowdStrike’s modern, scalable observability and log management solution is an ideal complement to Cohesity’s exceptional data management capabilities. Together, we help customers rapidly advance cyber resilience within their organizations,” said Daniel Bernard, chief business officer at CrowdStrike. He adds, “With the increasing sophistication of cyberattacks, powerful integrations help defeat the bad guys and offer customers the most comprehensive and advanced approaches to protecting their people, organizations, and data.” Cohesity’s Data Security Alliance “We welcome the opportunity to innovate with Cohesity to help our customers strengthen their cyber resilience and contribute to the momentum of Cohesity’s Data Security Alliance,” said Ray Komar, vice president of technical alliances, Tenable. “We're excited to support the newly re-architected integration of marketplace app CyberScan powered by Tenable, which provides greater scalability so large workloads can be scanned more efficiently and rapidly. Proactive, rapid vulnerability scanning is a critical part of cyber resilience best practices.” Sophisticated cyberattacks “Improved collaboration between data management and security providers, and tighter integration of their respective services, is critical in meeting the threat of ever more sophisticated cyberattacks such as ransomware,” said Johnny Yu, research manager, Storage and Computing, IDC. “Cohesity has shown strong momentum in adding key security providers to its alliance and making more integrations available to customers to help defend against cybercrime.”