August 5, 2025
5 min read
Melania Watson
Qualys launches Agentic AI agents for autonomous cyber risk management, delivering real-time insights and faster remediation to cut costs and threats.
Qualys launches Agentic AI agents to streamline cyber risk operations
Qualys has introduced new Agentic AI capabilities on its platform, extending autonomous risk management through a marketplace of AI agents designed to streamline cyber risk operations for organisations. This latest development adds a marketplace of Cyber Risk AI Agents into the Qualys platform. These agents deliver real-time risk insights across multiple attack surfaces and prioritise exposures based on business impact. According to Qualys, the AI agents autonomously remediate issues at speed and scale, supporting the operations of a Risk Operations Centre (ROC) and helping organisations reduce both risk and operational costs. As cyber threats grow in volume and sophistication, and attack surfaces become more complex, traditional methods have struggled to keep pace. Qualys aims to mitigate manual bottlenecks with self-orchestrating AI agents, reducing lingering exposures that security teams face.Expert perspective
Tyler Shields, Principal Analyst at Enterprise Strategy Group, commented:"Cybersecurity has never been able to keep pace with the volume of enterprise exposures due to human-scale prioritisation and remediation. Integrating Agentic AI into the Qualys platform marks a major leap - from reactive response to real-time risk reduction. With autonomous remediation and intelligent prioritisation, this type of innovation enables faster risk reduction, more efficient resource usage, and greater accuracy in recommended actions. This evolution shifts security teams from tactical responders to strategic agentic AI orchestrators, bringing us closer to a future of self-healing cybersecurity."
Embedded AI for risk-centric automation
The AI capabilities are embedded in Qualys' Enterprise TruRisk Management (ETM), a core element of the company's ROC framework. ETM aggregates exposures to measure, communicate, and reduce cyber risk aligned with business value. The integration of Agentic AI introduces pre-built AI agents that automate threat prioritisation and remediation aligned with an organisation's specific risk appetite and operational context. Included is the Cyber Risk Assistant, a prompt-based interface that helps security teams navigate risk management processes, provides context-aware insights across millions of exposures, and facilitates autonomous operations within risk workflows.Capabilities of the AI agents
The Qualys marketplace offers ready-to-use AI agents with several key functionalities:- Continuous risk insights: AI agents continuously discover external attack surfaces, assess risks in the context of emerging industry threats, and prioritise risks based on each organisation's unique assets and environment.
- Adaptive remediation: Agents like the Microsoft Patch Tuesday Lifecycle Agent identify and correlate prioritised vulnerabilities with remediation options, reducing both cost and time to address vulnerabilities. These agents focus on reducing mean time to remediation (MTTR) against rapidly exploited threats.
- Customisation: Security teams can design custom, no-code AI agents tailored to specific business needs and risk management processes. These agents can be trained and reused to support scalable, repeatable automation within an organisation's operational context. Sumedh Thakar, President and CEO of Qualys, said:
- AI Agents: The Future of Business Automation and Customer Engagement
- AI-Driven Crypto Trading Tools Reshape Market Strategies in 2025
- Understanding AI Crypto Risks and How to Mitigate Them
"Qualys Agentic AI, embedded into Enterprise TruRisk Management is transforming how organisations manage cyber risk and powering a smarter, more agile Risk Operations Centre. It's ushering in a new era where CISOs can augment their security teams with intelligent AI agents that perform autonomous analysis and take decisive, high-impact actions to reduce risk faster, more strategically, and with greater efficiency."
Operational focus
Qualys states that the new Agentic AI functions automate and streamline various stages of risk reduction, improving cost efficiency and effectiveness for security operations teams. These AI-driven solutions address industry-wide challenges in risk management caused by increasingly complex infrastructure and the proliferation of cyber threats, with a focus on aligning remediation efforts to business-critical priorities.Originally published at SecurityBrief Australia on Mon, 04 Aug 2025.