---
sourceDocument: Zurich Release Notes
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/zurich/release-notes

 Release :

    - zurich

ft:locale :

    - en-US

ft:publication_title :

    - Zurich Release Notes

ft:clusterId :

    - rn

bundleId :

    - rn


---

# Now Assist for Vulnerability Response release notes

# Now Assist for Vulnerability Response release notes {#ariaid-title1}

Release version: Zurich  
Updated February 2, 2026  
![](https://www.servicenow.com/docs/portal-asset/ico-clock) 8 minutes to read  
The ServiceNow®
Now Assist for Vulnerability Response application can help your vulnerability analysts and remediation owners track, monitor, and remediate vulnerable items autonomously with generative AI skills. Starting with Zurich Patch 12, the ServiceNow®
Now Assist for Vulnerability Response application was enhanced and updated in the Zurich release and is called ServiceNow Otto for Unified Security Exposure Management.

## About Now Assist for Vulnerability Response {#secops-now-assist-vulnerability-response-rn__secops-now-assist-vulnerability-response-rn-highlights}

Starting with Zurich Patch 12, Now Assist for Vulnerability Response is being prepared for future deprecation. It will be hidden and no longer installed on new instances but will continue to be supported. For details, see the [Deprecation Process \[KB0867184\]](https://support.servicenow.com/kb_view.do?sysparm_article=KB0867184) article in the Now Support Knowledge Base. The change is reflected in the name of ServiceNow® products, including Now Assist for Vulnerability Response which is called ServiceNow Otto for Unified Security Exposure Management with these enhancements. See [ServiceNow Otto for Unified Security Exposure Management](https://www.servicenow.com/docs/access?context=now-assist-for-usem-landing-ties&version=zurich&pubname=zurich-security-management&ft:locale=en-US) for more information. Your entitlements remain unchanged. Check your entitlements to determine your access to specific features. {#secops-now-assist-vulnerability-response-rn__secops-now-assist-vulnerability-response-rn-highlights-1}  
[Zurich Patch 5](https://servicenow-prod.fluidtopics.net/EUKjGiGPGAI0Y2J3e0OXkQ "The Zurich Patch 5 release contains important problem fixes.")

* Review changes to Now Assist usage measurement. See the "Changed in this release" section below.
* Retrieve host (Vulnerability Response) and Application Vulnerability Response (AVR) data with the Retrieve VR Data agentic workflow.
* The Retrieve VR Data agentic workflow is supported in the Unified Security Exposure Management (USEM) and legacy Vulnerability Response workspaces.
{#secops-now-assist-vulnerability-response-rn__ul_nlw_5jr_c3c}  
[Zurich Patch 4](https://servicenow-prod.fluidtopics.net/i4YMnCLVW7eu1rHqMLWEww "The Zurich Patch 4 release contains important problem fixes.")

* Some Now Assist skills are now turned on by default.
* Use generative AI to help you build custom API connectors in the Security Posture Control workspace.
* Additional role configuration required for agentic workflows and AI agents included with your applications.
{#secops-now-assist-vulnerability-response-rn__ul_e4s_klr_c3c}  
[Zurich Patch 1](https://servicenow-prod.fluidtopics.net/ryznRs456gpDAGVQsRzm4g "The Zurich Patch 1 release contains important problem fixes.")

* Help analysts identify and remove duplicate host vulnerable items.
* Help analysts resolve remediation tasks with preferred vulnerability solutions from third-party vendors.
{#secops-now-assist-vulnerability-response-rn__ul_kzw_xlr_c3c}

Zurich Early Availability: Help your vulnerability managers and analysts to resolve remediation tasks, assess your exposure to
vulnerabilities, and analyze metrics for remediation targets. Chat with AI agents in natural language from the Now Assist panel.{#secops-now-assist-vulnerability-response-rn__secops-now-assist-vulnerability-response-rn-highlights-5}

## Activation and other requirements

Important:  
ServiceNow Otto for Unified Security Exposure Management is available in the ServiceNow Store. For details, see the "Activation information" section of these release notes.

Activation information

:   Visit the [ServiceNow Store](https://store.servicenow.com/sn_appstore_store.do#!/store/home) website to view all the available apps and for information about submitting requests to the store. For cumulative release notes information for all released apps, see the [ServiceNow Store version history release notes](https://www.servicenow.com/docs/r/store-release-notes/sn-store-release-notes.html). Install ServiceNow Otto for Unified Security Exposure Management by requesting it from the ServiceNow Store. Visit the [ServiceNow Store](https://store.servicenow.com/sn_appstore_store.do#!/store/home) website to view all the available apps and for information about submitting requests to the store. For cumulative release notes information for all released apps, see the [ServiceNow Store version history release notes](https://www.servicenow.com/docs/r/store-release-notes/sn-store-release-notes.html).{#secops-now-assist-vulnerability-response-rn__secops-now-assist-vulnerability-response-rn-activation-1}

Upgrade information
:   The following Now Assist skills for ServiceNow Otto for Unified Security Exposure Management are activated by default.

    * Recommend preferred solution for VIT (VR)
    * Vulnerable item de-duplication (VR)
    * Approval Recommendation (VR)(USEM)
    * Security Exposure Management (SEM) Insights (VR)(USEM)
    * SPC Setup Connector (Security Posture Control)
    {#secops-now-assist-vulnerability-response-rn__ul_zlf_cnr_c3c}

    Note:  
    Upgrading the Now Assist plugins activate any designated skills that were previously untouched by the customer.

    * If you have the plugins installed but never touched the configuration (never activated the skill nor adjusted associated roles) of a skill, any Default On skill will be activated on a per skill basis upon upgrading.
    * If you have previously toggled a skill from active and then back to inactive or have updated any roles for that skill, that skill remains inactive upon upgrading.
    * You maintain full control over deactivating individual skills at any time after activation.
    {#secops-now-assist-vulnerability-response-rn__ul_pgs_2yg_nhc}

    When you update the ServiceNow Otto for Unified Security Exposure Management application, the dependency applications are automatically updated.{#secops-now-assist-vulnerability-response-rn__secops-now-assist-vulnerability-response-rn-upgrade-info-2}

    For more information about required applications for ServiceNow Otto for Unified Security Exposure Management, see [Supporting information for Unified Security Exposure Management AI skills and agents](https://www.servicenow.com/docs/access?context=supporting-information-now-assist-vr&version=zurich&pubname=zurich-security-management&ft:locale=en-US).{#secops-now-assist-vulnerability-response-rn__secops-now-assist-vulnerability-response-rn-upgrade-info-3}

## January 2026 {#ariaid-title2}

The ServiceNow®
Now Assist for Vulnerability Response application can help your vulnerability analysts and remediation owners track, monitor, and remediate vulnerable items autonomously with generative AI skills. Starting with Zurich Patch 12, the ServiceNow®
Now Assist for Vulnerability Response application was enhanced and updated in the Zurich release and is called ServiceNow Otto for Unified Security Exposure Management.

### What's new {#secops-now-assist-vulnerability-response-rn-2026-01__secops-now-assist-vulnerability-response-rn-new-features}

[Retrieve Vulnerability and exposure data with generative AI](https://www.servicenow.com/docs/access?context=retrieve-vr-data&version=zurich&pubname=zurich-security-management&ft:locale=en-US)
:   Chat with an AI agent using natural language to retrieve host (Vulnerability Response) and Application Vulnerability Response (AVR) data in the Unified Security Exposure Management (USEM) and legacy Vulnerability Response workspaces.
{#secops-now-assist-vulnerability-response-rn-2026-01__secops-now-assist-vulnerability-response-rn-new-features-1}

### What's changed {#secops-now-assist-vulnerability-response-rn-2026-01__secops-now-assist-vulnerability-response-rn-changed-features}

[Changes to Now Assist usage measurement](https://www.servicenow.com/docs/access?context=monitoring-now-assist-usage&version=zurich&pubname=zurich-platform-administration&ft:locale=en-US)
:   Starting with Australia Early Access, AI usage measurement is transitioning from a 365-day look-back model to a 365-day burn-down model, with usage resetting at the contract anniversary date. For more information, refer to [KB KB2704710: AI Usage - Overview \& New Measurement Logic](https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB2704710).
{#secops-now-assist-vulnerability-response-rn-2026-01__secops-now-assist-vulnerability-response-rn-changed-features-1}

## December 2025 {#ariaid-title3}

The ServiceNow®
Now Assist for Vulnerability Response application can help your vulnerability analysts and remediation owners track, monitor, and remediate vulnerable items autonomously with generative AI skills. Starting with Zurich Patch 12, the ServiceNow®
Now Assist for Vulnerability Response application was enhanced and updated in the Zurich release and is called ServiceNow Otto for Unified Security Exposure Management.

### What's new {#secops-now-assist-vulnerability-response-rn-2025-12__secops-now-assist-vulnerability-response-rn-new-features}

[Role configuration required for agentic workflows and AI agents](https://www.servicenow.com/docs/access?context=aia-role-masking&version=zurich&pubname=zurich-intelligent-experiences&ft:locale=en-US)
:   Agentic workflows and AI agents included with your applications require additional security configuration. If you select Users with selected roles for your user access security controls for an agentic workflow or AI agent, you must add the installed roles, or they will not execute. See the documentation for the agentic workflow or AI agent for the specific roles you must add.

[Create a custom API service graph connector in the Security Posture Control (SPC) workspace](https://www.servicenow.com/docs/access?context=spc-creating-sgc-template&version=zurich&pubname=zurich-security-management&ft:locale=en-US)
:   Use generative AI to help your developers create SPC API connectors quickly with the Connector builder framework module in the SPC workspace. With a Now Assist skill that is included with the ServiceNow Otto for Unified Security Exposure Management application, your developers have the option to automate steps in the Connector builder framework.

    * Automate the steps for selecting API templates, populating request and header parameters, and response field mapping.
    * Use your custom API connector to integrate with security tools and import asset data that is based on the unique requirements of your environment.
    * Help your cybersecurity teams monitor your overall security posture and identify assets that are missing key security tools with the API connectors that you build.

    {#secops-now-assist-vulnerability-response-rn-2025-12__ul_wwt_3cl_fhc}

    See [Creating your own API connectors in Security Posture Control](https://www.servicenow.com/docs/access?context=spc-creating-sgc-template&version=zurich&pubname=zurich-security-management&ft:locale=en-US) for more information and the required applications.


[Generate insights to prioritize risks](https://www.servicenow.com/docs/access?context=sem-insights-skill&version=zurich&pubname=zurich-security-management&ft:locale=en-US)
:   Use generative AI to provide contextual summaries, actionable recommendations, and quick links in the Security Exposure Management Workspace, helping you prioritize critical risks and accelerate remediation.

[Generate recommendation for approval impact analysis](https://www.servicenow.com/docs/access?context=sem-approval-recommendation-skill&version=zurich&pubname=zurich-security-management&ft:locale=en-US)
:   Use generative AI to provide on-demand recommendations to approve or reject a request directly from the Exception Change Approval record. This features enables approvers to make fast, consistent decisions while reducing
    manual analysis effort.
{#secops-now-assist-vulnerability-response-rn-2025-12__secops-now-assist-vulnerability-response-rn-new-features-1}

### What's changed {#secops-now-assist-vulnerability-response-rn-2025-12__secops-now-assist-vulnerability-response-rn-changed-features}

[Some generative AI skills are turned on by default](https://www.servicenow.com/docs/access?context=now-assist-skills-on-by-default&version=zurich&pubname=zurich-intelligent-experiences&ft:locale=en-US)
:   The new default behavior works as follows:

    * New customers: When you install an AI product, designated skills are turned on automatically.
    * Existing customers who are upgrading (starting with Australia Early Access): Any previously unconfigured skill is turned on automatically (the skill was never configured and turned on, then turned off again). Previously configured skills that were turned on, then off, remain inactive.
{#secops-now-assist-vulnerability-response-rn-2025-12__secops-now-assist-vulnerability-response-rn-changed-features-1}

## October 2025 {#ariaid-title4}

The ServiceNow®
Now Assist for Vulnerability Response application can help your vulnerability analysts and remediation owners track, monitor, and remediate vulnerable items autonomously with generative AI skills. Starting with Zurich Patch 12, the ServiceNow®
Now Assist for Vulnerability Response application was enhanced and updated in the Zurich release and is called ServiceNow Otto for Unified Security Exposure Management.

### What's new {#secops-now-assist-vulnerability-response-rn-2025-10__secops-now-assist-vulnerability-response-rn-new-features}

[Granular roles](https://www.servicenow.com/docs/access?context=now-assist-vr-acticvate-agentic-workflow&version=zurich&pubname=zurich-security-management&ft:locale=en-US)
:   The sn_vul_ai.write_rem_insights and sn_vul_ai.read_rem_insights granular roles have been added and are inherited by the sn_vul.vulnerability_admin and sn_vul.vulnerability_analyst roles automatically. These roles provide
    you with more control over read and write access for the records on the Remediation Compliance Insights \[sn_vul_ai_remediation_insights\] caching table. The VR.System role also inherits these granular roles so background job
    execution for the workflow can occur.
{#secops-now-assist-vulnerability-response-rn-2025-10__secops-now-assist-vulnerability-response-rn-new-features-1}

## Zurich General Availability {#ariaid-title5}

The ServiceNow®
Now Assist for Vulnerability Response application can help your vulnerability analysts and remediation owners track, monitor, and remediate vulnerable items autonomously with generative AI skills. Starting with Zurich Patch 12, the ServiceNow®
Now Assist for Vulnerability Response application was enhanced and updated in the Zurich release and is called ServiceNow Otto for Unified Security Exposure Management.

### What's new {#secops-now-assist-vulnerability-response-rn-2025-09__secops-now-assist-vulnerability-response-rn-new-features}

[Identify duplicate vulnerable items with generative AI](https://www.servicenow.com/docs/access?context=dedupe-host-vi-now-assist-vulnerability-response&version=zurich&pubname=zurich-security-management&ft:locale=en-US)
:   Use generative AI to identify duplicates for your active host vulnerable items that are imported by your vulnerability scanners. Use generative AI reasoning with Now Assist to help your analysts differentiate between primary vulnerability items (VITs) and those VITs that are duplicates. Close duplicate VITs and move their associated detections automatically to the
    primary VIT records.

[Identify preferred vulnerability solutions with ServiceNow Otto for Unified Security Exposure Management](https://www.servicenow.com/docs/access?context=solutions-now-assist-vulnerability-response&version=zurich&pubname=zurich-security-management&ft:locale=en-US)
:   Use generative AI to analyze available remediation options pulled from integrated third-party products like Red Hat, Tenable for Vulnerability Response, or internal solution management systems. Evaluate each option against the specific configuration item context, for example, the OS version or software version, and get recommendations for
    the most viable fix for implementation.
{#secops-now-assist-vulnerability-response-rn-2025-09__secops-now-assist-vulnerability-response-rn-new-features-1}

## Zurich Early Availability {#ariaid-title6}

The ServiceNow®
Now Assist for Vulnerability Response application can help your vulnerability analysts and remediation owners track, monitor, and remediate vulnerable items autonomously with generative AI skills. Starting with Zurich Patch 12, the ServiceNow®
Now Assist for Vulnerability Response application was enhanced and updated in the Zurich release and is called ServiceNow Otto for Unified Security Exposure Management.

### What's new {#secops-now-assist-vulnerability-response-rn-2025-08__secops-now-assist-vulnerability-response-rn-new-features}

[Using agentic workflows](https://www.servicenow.com/docs/access?context=using-now-assist-ai-agents-vr&version=zurich&pubname=zurich-security-management&ft:locale=en-US)

:   The assess vulnerability exposure agentic workflow enables vulnerability managers to determine your exposure to vulnerabilities.

    * Determine your exposure to the most current Cybersecurity and Infrastructure Security Agency (CISA) known vulnerabilities in your environment. Assess their potential impact to your configuration items (CIs) and business services.
    * Identify assets with Common Vulnerabilities and Exposures (CVEs).
    * Determine the number of active VITs that correspond to CVEs. Create watch topics for VIT remediation.

    {#secops-now-assist-vulnerability-response-rn-2025-08__ul_nzx_nsm_y2c}

    The analyze vulnerability remediation status agentic workflow helps vulnerability managers to monitor and assess remediation target compliance.

    * Track Service Level Agreement (SLA) compliance - Understand how effectively your organization is meeting remediation goals for vulnerabilities based on your SLAs.
    * Analyze missed SLAs by severity, assignment group, and configuration item (CI) class. Pinpoint gaps in remediation by categorizing overdue VITs based on severity, assignment groups, and CI classes to enable targeted interventions and smarter resource allocation.
    {#secops-now-assist-vulnerability-response-rn-2025-08__ul_jyz_ssm_y2c}
{#secops-now-assist-vulnerability-response-rn-2025-08__secops-now-assist-vulnerability-response-rn-new-features-1}

