---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Configure AI Security Exposure Management

# Install and configure AI Security Exposure Management {#ariaid-title1}

* Release version: Australia
* 
* Updated June 4, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 3 minutes to read

Install and configure the required applications.

## Before you begin

The following ServiceNow Plugins are required:

* Unified Security Exposure Management (sn_vul_usem_common)
* AI Security Exposure Management (sn_sec_ai).
* AI Security Common (sn_sec_ai_cmn).
* (Optional) If you want to use the AI guardrails helper skill and agentic workflow you must install the Now Assist for Vulnerability Response application (sn_vul_ai).
* Vulnerability Response and Configuration Compliance for Containers (sn_vul_container)
* Vulnerability Response (sn_vul)
* Configuration Compliance (sn_vulc)
{#ai-security-exposure-install-config__ul_ntv_cds_q3c}  
At least one of these AI defense integrations supported by the application must be installed and activated.

* Cisco AI Defense Integration - import AI security exposures such as model vulnerabilities and model validation findings (automated red teaming alerts).
* Palo Alto Prisma AIRS Integration
{#ai-security-exposure-install-config__ul_xly_lkz_q3c}

Although not mandatory, it's recommended that you install the one of the following service graph connectors. You should choice depends on the AI security tool that you're using in your organization to import AI inventory data
into your CMDB.

* AI Service Graph Connector for Palo Alto Prisma AIRS.
* AI Service Graph Connector for HiddenLayer - import AI asset inventory data.

{#ai-security-exposure-install-config__ul_dwl_mgw_w3c}

Role required: admin

## Procedure

1. Log in to the instance you want to install the AI Security Exposure Management application on.
2. Navigate to the ServiceNow Store.
3. In the ServiceNow Store, search for the AI Security Exposure Management application.
4. Select the application tile.  
   Note:  
   In the ServiceNow Store, you must verify that you have entitlements (or licenses) to the application and its dependent applications. After you have logged in, you can use the menu in the upper right with
   your initials to manage entitlements and opt-in.

   This application is compatible with Unified Security Exposure Management (USEM). See [Migrating from Vulnerability Response to Unified Security Exposure Management (USEM)](https://servicenow-prod.fluidtopics.net/04qOA9J4NHZaJ17JOUM5yg "The Migration assistant for Unified Security Exposure Management is a centralized utility that guides and automates the migration from Vulnerability Response applications to Unified Security Exposure Management (USEM). USEM provides a unified foundation that consolidates data models, streamlines features, and enhances performance and scalability across all Security Exposure Management applications.") for more information about USEM and the Unified Security Exposure Management migration.
5. Select Request Install.
6. Log in to the ServiceNow AI Platform instance where you want to install the application.
7. Navigate to AllSystem ApplicationsAll Available ApplicationsAll.
8. From the applications listed, locate the AI Security Exposure Management application, select a version from the list, and select Install.  
   The Application installation dialog is displayed. Any dependencies that are installed are displayed.  
   Note:  
   The AI guardrails helper is a Now Assist skill that is activated by default. See [Using generative AI skills](https://servicenow-prod.fluidtopics.net/C3UyNwI8tNIr20OwbCnrcA "AI skills help vulnerability managers and analysts resolve remediation tasks within their flow of work by providing automated insights, recommendations, and data analysis.") and [Using generative AI skills](https://servicenow-prod.fluidtopics.net/C3UyNwI8tNIr20OwbCnrcA "AI skills help vulnerability managers and analysts resolve remediation tasks within their flow of work by providing automated insights, recommendations, and data analysis.") for more information about skills and agents.
9. Select Close after the application is successfully installed.
10. Assign the following AISEC roles:  
    * sn_sec_ai.remediation_owner - Can read and update AI Security Exposure Management findings and remediation tasks assigned to the user or their groups.
    * sn_sec_ai.vulnerability_admin - Full administrative access to all AI Security Exposure Management findings, scans, and remediation tasks.
    * sn_sec_ai.vulnerability_analyst -Can view and update all AI Security Exposure Management scan findings and remediation tasks.
    * Add sn_sec_ai_read and write roles to a persona and add that persona to sn_sec_ai.vulnerability_analyst.

    {#ai-security-exposure-install-config__ul_zq3_xk4_djc}

    Assign the following Infrastructure Vulnerability Response roles.
    * sn_vul.remediation_owner - Reads and writes vulnerable items and remediation tasks assigned to them. Vulnerability and Solution records are readable by user with this role.
    * sn_vul.vulnerability_admin - Configures all rules, integrations, etc. for the Vulnerability Response product.
    * sn_vul.vulnerability_analyst - Monitors remediation of all vulnerable items.

    {#ai-security-exposure-install-config__ul_qh3_hl4_djc}  
    Assign the following Container Vulnerability Response roles.
    * sn_vul_container.remediation_owner - Reads and writes container vulnerable items assigned to them. Vulnerability records are also readable by user with this role.
    * sn_vul_container.vulnerability_admin - Configures all rules, integrations, etc. for the Container Vulnerability Response product.
    * sn_vul_container.vulnerability_analyst - Monitors remediation of all container vulnerable items.
    {#ai-security-exposure-install-config__ul_tlc_g1j_ljc}

    Assign the following Configuration Compliance roles.
    * sn_vulc.admin - Configuration Compliance administrator is able to modify application property and configuration.
    * sn_vulc.remediation_owner - Configuration Compliance related records can be remediated by the user with this role.
    * sn_vulc.vulnerability_analyst - Monitors remediation of all test results.

    {#ai-security-exposure-install-config__ul_yht_pl4_djc}

    Assign other findings-related roles for sn_sec_ai.\* tables that users might require access to.

    See [Viewing AI Exposures](https://servicenow-prod.fluidtopics.net/P8GUyl9Gm5LN36RikAsmpg "Access the entire attack surface across various types of findings on the AI Security Exposure Management dashboard on the AI Exposures module. AI exposures as a dedicated module of the Security Exposure Management workspace.") for more information about the AI Security Exposure Management tables.
{#ai-security-exposure-install-config__steps_pxv_cjz_q3c}

*[\>]: and then


