<?xml version="1.0" encoding="utf-8"?><rss xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title>Ivanti Blog</title><description /><language>en</language><atom:link rel="self" href="https://www.ivanti.com/blog/rss" /><link>https://www.ivanti.com/blog</link><item><guid isPermaLink="false">6188a743-9a83-4c4c-a6c6-a4d2c8d04f75</guid><link>https://www.ivanti.com/blog/the-invisible-it-department-how-to-deliver-friction-free-experiences-with-agentic-ai</link><atom:author><atom:name>Loren de la Cruz</atom:name><atom:uri>https://www.ivanti.com/blog/authors/loren-de-la-cruz</atom:uri></atom:author><category>Service Management</category><title>The Invisible IT Department: How to Deliver Friction-Free Experiences with Agentic AI</title><description>&lt;p&gt;Every enterprise has bought AI, but many are still waiting for their investment to pay off. Ivanti’s &lt;a href="https://www.ivanti.com/resources/research-reports/scaling-ai-it-operations"&gt;2026 AI Maturity Report&lt;/a&gt; found that only 2% of organizations say they currently have no AI use at all. As the majority of organizations move beyond the AI experimentation stage, the real competitive differentiator is if that AI is providing continuous, business value at scale.&lt;/p&gt;

&lt;div class="flourish-embed flourish-chart" data-src="visualisation/28617420"&gt;&lt;/div&gt;

&lt;p&gt;Companies deploy chatbots that users ignore. They implement agents nobody trusts and roll out "AI-powered" tools that employees end up working around or disregarding personal, shadow AI tools. The problem isn’t what AI can do. It’s what you’re asking users to do with it. Most organizations approach AI as a feature to deploy rather than an experience to design. They focus on what AI is capable of instead of what users actually need. The result is another shelfware solution that generates more frustration than value.&lt;/p&gt;

&lt;p&gt;&lt;a href="https://www.ivanti.com/resources/solution-briefs/ivanti-neurons-for-digital-experience"&gt;Digital experience&lt;/a&gt; is the missing link that separates successful AI deployments from failed ones. Organizations that prioritize the AI user experience can identify the implementation pitfalls that kill user trust and develop a practical framework for deploying agentic AI that delivers improvements without interruptions. AI and IT work at their best when they serve as invisible superpowers. Users don't notice the technology; they notice how effortlessly they accomplish their work.&lt;/p&gt;

&lt;h2 id="toc_1"&gt;The AI adoption paradox&lt;/h2&gt;

&lt;p&gt;&lt;a href="https://mlq.ai/media/quarterly_decks/v0.1_State_of_AI_in_Business_2025_Report.pdf" rel="noopener" target="_blank"&gt;MIT research&lt;/a&gt; suggests that roughly 95% of enterprise AI initiatives fail to deliver measurable ROI with most stalling in pilot mode rather than scaling into real business value.&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;How it happens:&lt;/strong&gt; Leadership greenlights an AI initiative, IT deploys the technology, training sessions are scheduled, adoption metrics are tracked, and within six months...nobody is using it. The chatbot goes dark, the AI assistant sits idle, and your employees develop workarounds to avoid the very tools that were supposed to make their lives easier.&lt;/p&gt;

&lt;p&gt;This isn't a failure of change management, but the result of failing to understand what users actually experience when you layer AI on top of all their other workplace technology.&lt;/p&gt;

&lt;p&gt;Users don't want AI for AI's sake. They want their laptop to boot faster, applications that don't freeze mid-presentation, video calls that don't lag, and issues to resolve before they notice something wrong. When you force them to interact with an AI interface to get those things, you've already lost.&lt;/p&gt;

&lt;blockquote&gt;
&lt;p&gt;&lt;strong&gt;Read More:&lt;/strong&gt; &lt;a href="https://www.ivanti.com/blog/how-agentic-ai-for-itops-unlocks-value-at-scale"&gt;How Agentic AI for ITOps Unlocks Value at Scale&lt;/a&gt;&lt;/p&gt;
&lt;/blockquote&gt;

&lt;h2 id="toc_2"&gt;Why most AI implementations fail on user experience&lt;/h2&gt;

&lt;p&gt;Walk into any enterprise IT environment and you'll find the same pattern. The AI implementation checklist gets followed religiously:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;Technology vendor selected&lt;/li&gt;
	&lt;li&gt;Platform deployed&lt;/li&gt;
	&lt;li&gt;Integrations configured&lt;/li&gt;
	&lt;li&gt;Users trained&lt;/li&gt;
	&lt;li&gt;Go-live achieved&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;But six months later, the reality sets in. A &lt;a href="https://www.ey.com/en_us/insights/workforce/work-reimagined-survey" rel="noopener" target="_blank"&gt;2025 EY survey&lt;/a&gt; found that 64% of employees reported increased workloads despite AI deployments, while only 5% said they were maximizing AI to actually transform their work.&lt;/p&gt;

&lt;p&gt;IT did everything right according to the playbook, but what went wrong is that the playbook was written by people selling AI, not people using it.&lt;/p&gt;

&lt;p&gt;Consider the typical AI chatbot deployment meant to "empower self-service" and "reduce ticket volume." In practice, means employees who used to send a quick Slack message to IT now must:&lt;/p&gt;

&lt;ol&gt;
	&lt;li&gt;Navigate to a separate portal&lt;/li&gt;
	&lt;li&gt;Figure out how to phrase their question in a way the bot understands&lt;/li&gt;
	&lt;li&gt;Parse through irrelevant knowledge articles the AI surfaces&lt;/li&gt;
	&lt;li&gt;Eventually give up and submit a ticket anyways, now irritated and fifteen minutes behind schedule&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;The ticket still gets created, and the problem still needs solving, but now there's friction where there wasn't before because you've added steps, not subtracted them.&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;This is the fundamental mistake:&lt;/strong&gt; treating AI as an interface users engage with instead of infrastructure that works for them. The moment you ask users to change their behavior to accommodate your AI, you're building resistance, not adoption.&lt;/p&gt;

&lt;h2 id="toc_3"&gt;Digital experience: where AI proves its value&lt;/h2&gt;

&lt;p&gt;The organizations getting real value from AI have stopped asking, &lt;em&gt;"How do we get users to adopt this AI tool?"&lt;/em&gt; and started asking, &lt;em&gt;"How do we use AI to improve what users already do?"&lt;/em&gt; It's a subtle shift with massive implications.&lt;/p&gt;

&lt;p&gt;In &lt;a href="https://www.ivanti.com/blog/experience-level-agreements-xlas"&gt;digital experience management&lt;/a&gt;, AI doesn't sit between the user and their work. It sits between the user and the chaos: i.e. the performance degradation, the application failures, the mysterious slowdowns, the issues that haven't surfaced yet but will in the next 30 minutes.&lt;/p&gt;

&lt;p&gt;This is where agentic AI fundamentally changes what's possible. Traditional monitoring tools alert humans when something breaks. But agentic AI prevents the break before it happens. It's the difference between a smoke detector and a fire suppression system.&lt;/p&gt;

&lt;p&gt;Traditional IT operations measure incident responses in hours or even days. &lt;a href="https://www.ivanti.com/blog/how-agentic-ai-is-transforming-infrastructure-and-operations"&gt;Agentic AI with autonomous remediation&lt;/a&gt; is fundamentally changing this equation, shrinking mean time to resolution from hours to minutes or seconds by detecting patterns and executing fixes before problems escalate.&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;Here's what that looks like in practice:&lt;/strong&gt;&lt;/p&gt;

&lt;h3&gt;Traditional IT Ops:&lt;/h3&gt;

&lt;ol&gt;
	&lt;li&gt;A user's laptop starts showing early signs of disk failure.&lt;/li&gt;
	&lt;li&gt;Traditional DX tools flag the issue and create a ticket.&lt;/li&gt;
	&lt;li&gt;An IT analyst would review the alert, assess severity, schedule maintenance, and eventually reach out to the user.&lt;/li&gt;
	&lt;li&gt;Total time to resolution: multiple days.&lt;/li&gt;
	&lt;li&gt;Impact on your organization: planned downtime, data migration, and productivity loss.&lt;/li&gt;
&lt;/ol&gt;

&lt;h3&gt;Agentic AI&lt;/h3&gt;

&lt;ol&gt;
	&lt;li&gt;With agentic AI, the pattern gets detected before the user notices anything wrong.&lt;/li&gt;
	&lt;li&gt;The agent autonomously triggers automated backup processes, provisions a replacement device, stages the user's applications and data, and schedules the swap during a low-activity period.&lt;/li&gt;
	&lt;li&gt;The user gets an email: "Your new laptop will be waiting at reception tomorrow morning. Your existing setup has been transferred."&lt;/li&gt;
	&lt;li&gt;No ticket created or escalation needed or interruption experienced.&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;It’s the same problem, but with a radically different experience.&lt;/p&gt;

&lt;h2 id="toc_4"&gt;Building a friction-free AI implementation framework&lt;/h2&gt;

&lt;p&gt;Achieving invisible AI requires rethinking how you deploy, measure, and scale digital experience initiatives. Organizations seeing real ROI from agentic AI follow a consistent pattern that prioritizes experience over features.&lt;/p&gt;

&lt;h3&gt;Start with pain, not possibility&lt;/h3&gt;

&lt;p&gt;The worst AI implementations begin with the question, "What can this AI do?" The best ones start with, "What's currently painful, repetitive, or needlessly slowing users down?&lt;/p&gt;

&lt;p&gt;Map your digital experience pain points before you map AI capabilities:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;Where do users wait the longest for issue resolution?&lt;/li&gt;
	&lt;li&gt;Which problems generate repeat tickets?&lt;/li&gt;
	&lt;li&gt;What performance degradations happen predictably but aren't caught proactively?&lt;/li&gt;
	&lt;li&gt;Where does IT spend the most time on tasks that don't require human judgment?&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;These are user experience problems that AI can eliminate, not just “AI use cases,” and the distinction matters. When you start with pain, you end up with solutions users want.&lt;/p&gt;

&lt;h3&gt;Deploy AI behind the experience&lt;/h3&gt;

&lt;p&gt;Users should never need to decide whether to engage with your AI because that's your job as the implementer. In practice, this looks like:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;&lt;strong&gt;Autonomous agents that detect and resolve issues before help is needed&lt;/strong&gt; vs. A bot that users need to ask for help.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Predictive insight engine that pushes solutions to users before they search&lt;/strong&gt; vs. A self-service &lt;strong&gt;portal with AI-powered search&lt;/strong&gt;.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Self-healing systems that execute recommendations automatically within approved guardrails&lt;/strong&gt; vs. AI-powered recommendations users have to action.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;The pattern is consistent, and it’s to reduce user decision points, eliminate extra steps, and remove the need for extensive AI literacy. Your agentic AI should require zero user training because users should never directly interact with it.&lt;/p&gt;

&lt;h3&gt;Measure user experience, not AI performance&lt;/h3&gt;

&lt;p&gt;Here’s where most implementations go sideways: they measure AI performance instead of user outcomes&lt;/p&gt;

&lt;p&gt;If you're tracking the number of AI interactions, AI response time, model accuracy scores, or automation rate, you're measuring the wrong things.&lt;/p&gt;

&lt;p&gt;Instead:&lt;/p&gt;

&lt;ol&gt;
	&lt;li&gt;&lt;strong&gt;Track reduction in mean time to resolution for end-user issues&lt;/strong&gt;. Ivanti’s &lt;a href="https://www.ivanti.com/resources/research-reports/scaling-ai-it-operations"&gt;2026 AI Maturity Report&lt;/a&gt; found that 45% of IT workers say AI has made their work faster and better.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Track user-reported satisfaction with IT responsiveness&lt;/strong&gt;.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Track the percentage of issues resolved before users notice&lt;/strong&gt;.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Track time saved on repetitive requests&lt;/strong&gt;.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Track reduction in ticket volume&lt;/strong&gt;, not because you're deflecting issues but because you're preventing them.&lt;/li&gt;
&lt;/ol&gt;

&lt;h3&gt;The governance framework that enables AI autonomy&lt;/h3&gt;

&lt;p&gt;The thing that actually slows down most agentic AI deployments isn’t a technical problem — it’s getting stakeholders comfortable with AI acting without being asked permission first.&lt;/p&gt;

&lt;table&gt;
	&lt;thead&gt;
		&lt;tr&gt;
			&lt;th scope="row"&gt;
			&lt;p&gt;&lt;strong&gt;Autonomy Tier&lt;/strong&gt;&lt;/p&gt;
			&lt;/th&gt;
			&lt;th scope="col"&gt;
			&lt;p&gt;&lt;strong&gt;Risk Level&lt;/strong&gt;&lt;/p&gt;
			&lt;/th&gt;
			&lt;th scope="col"&gt;
			&lt;p&gt;&lt;strong&gt;Example Actions&lt;/strong&gt;&lt;/p&gt;
			&lt;/th&gt;
		&lt;/tr&gt;
	&lt;/thead&gt;
	&lt;tbody&gt;
		&lt;tr&gt;
			&lt;th scope="row"&gt;
			&lt;p&gt;&lt;strong&gt;Full Autonomy&lt;/strong&gt;&lt;/p&gt;
			&lt;/th&gt;
			&lt;td&gt;
			&lt;p&gt;Low&lt;/p&gt;
			&lt;/td&gt;
			&lt;td&gt;
			&lt;p&gt;Cache clearing, service restarts, performance optimization, routine patching&lt;/p&gt;
			&lt;/td&gt;
		&lt;/tr&gt;
		&lt;tr&gt;
			&lt;th scope="row"&gt;
			&lt;p&gt;&lt;strong&gt;Autonomy with Notification&lt;/strong&gt;&lt;/p&gt;
			&lt;/th&gt;
			&lt;td&gt;
			&lt;p&gt;Medium&lt;/p&gt;
			&lt;/td&gt;
			&lt;td&gt;
			&lt;p&gt;User profile resets, application reinstalls, driver updates&lt;/p&gt;
			&lt;/td&gt;
		&lt;/tr&gt;
		&lt;tr&gt;
			&lt;th scope="row"&gt;
			&lt;p&gt;&lt;strong&gt;Human Approval Required&lt;/strong&gt;&lt;/p&gt;
			&lt;/th&gt;
			&lt;td&gt;
			&lt;p&gt;High&lt;/p&gt;
			&lt;/td&gt;
			&lt;td&gt;
			&lt;p&gt;Major configuration changes, data migrations, infrastructure modifications&lt;/p&gt;
			&lt;/td&gt;
		&lt;/tr&gt;
		&lt;tr&gt;
			&lt;th scope="row"&gt;
			&lt;p&gt;&lt;strong&gt;Human-Led, AI-Assisted&lt;/strong&gt;&lt;/p&gt;
			&lt;/th&gt;
			&lt;td&gt;
			&lt;p&gt;Critical&lt;/p&gt;
			&lt;/td&gt;
			&lt;td&gt;
			&lt;p&gt;Security incident response, compliance decisions, budget approvals&lt;/p&gt;
			&lt;/td&gt;
		&lt;/tr&gt;
	&lt;/tbody&gt;
&lt;/table&gt;

&lt;p&gt;The key is recognizing that "high-risk" shrinks over time as AI agents prove reliability and as your monitoring detects patterns you didn't initially anticipate. Organizations that treat &lt;a href="https://www.ivanti.com/blog/ai-governance-framework-responsible-ai-guardrails"&gt;AI governance&lt;/a&gt; as static end up with AI that can't do enough to matter. The ones that treat governance as dynamic end up with AI that continuously expands its impact while maintaining safety.&lt;/p&gt;

&lt;h2 id="toc_5"&gt;What success looks like&lt;/h2&gt;

&lt;p&gt;Organizations implementing &lt;a href="https://www.ivanti.com/ai/itsm"&gt;AI-powered service experiences&lt;/a&gt; are seeing meaningful satisfaction gains. &lt;a href="https://www.pwc.com/us/en/technology/alliances/library/salesforce-agentic-contact-center.html" rel="noopener" target="_blank"&gt;PwC research&lt;/a&gt; found that leading implementations have achieved 10-15% NPS improvements alongside operational efficiencies.&lt;/p&gt;

&lt;p&gt;The conversation around AI changes. Users stop talking about IT as something that gets in their way and start not talking about IT at all, which is precisely the point. IT becomes infrastructure: invisible, reliable and present only when intentionally needed.&lt;/p&gt;

&lt;p&gt;Your service desk sees the shift first, like:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;Ticket volume drops not because you're deflecting issues but because you're preventing them&lt;/li&gt;
	&lt;li&gt;Escalations decrease because AI catches and resolves problems at progressively earlier stages&lt;/li&gt;
	&lt;li&gt;Analyst time reallocates from reactive firefighting to proactive system improvement&lt;/li&gt;
	&lt;li&gt;Mean time to resolution compresses because remediation often happens faster than detection did under the old model&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;For end users, the experience is simpler: things work, applications are responsive, systems are available, and slowdowns don't cascade into failures. And the mysterious performance issues their colleagues complain about somehow don't happen to them, not because they're lucky, but because AI agents are continuously optimizing their experience in ways they never see.&lt;/p&gt;

&lt;p&gt;This is the real adoption metric is when users stop thinking about IT. Not because they're ignoring it, but because there's nothing to think about.&lt;/p&gt;

&lt;h2 id="toc_6"&gt;The real choice: invisible AI or ignored AI&lt;/h2&gt;

&lt;p&gt;Every organization will deploy AI in digital experience management. The question isn't whether, but how, and more importantly, whether users will actually benefit or just have another tool foisted on them.&lt;/p&gt;

&lt;p&gt;This requires fundamentally rethinking how you implement, measure, and scale AI initiatives. Get this right, and you transform how your organization perceives IT, to competitive advantage instead of cost center, to proactive enablement instead of reactive firefighting, to invisible infrastructure that just works instead of necessary overhead.&lt;/p&gt;

&lt;p&gt;The best AI, like the best IT, is the kind you never see. Users don't experience your technology, but they experience the absence of problems. And that's precisely the point.&lt;/p&gt;

&lt;h2&gt;Ready to improve your digital experience with agentic AI?&lt;/h2&gt;

&lt;p&gt;Discover how &lt;a href="https://www.ivanti.com/products/ivanti-neurons-itsm"&gt;Ivanti Neurons for ITSM&lt;/a&gt; deploys agentic AI that works behind the scenes, predicting issues, resolving problems autonomously, and optimizing experiences before users notice anything wrong.&lt;/p&gt;
</description><pubDate>Thu, 18 Jun 2026 19:42:35 Z</pubDate></item><item><guid isPermaLink="false">fa7bbe8e-5ae7-40bf-a61a-9e73770c632d</guid><link>https://www.ivanti.com/blog/shadow-it-and-discovery-ai-blind-spots-what-legacy-tools-miss</link><atom:author><atom:name>Cristiane Villar</atom:name><atom:uri>https://www.ivanti.com/blog/authors/cristiane-villar-ramos-da-silva</atom:uri></atom:author><category>Endpoint Management</category><title>Shadow IT and Discovery AI Blind Spots: What Legacy Tools Miss</title><description>&lt;p id="toc_1"&gt;Ask three teams what assets exist in your environment, and you’ll get three different answers. Most organizations don’t lack tools. They lack agreement on what actually exists in their environment. Asset, endpoint and cloud data exist — but it’s fragmented, stale and trusted differently by teams across every department and function.&lt;/p&gt;

&lt;p&gt;The reason for this disconnect? In the AI era, environments are changing faster than legacy discovery is built to handle. Cloud workloads spin up and disappear in minutes, often provisioned automatically for testing, scaling or short-term projects. But the gap is now widened even more by AI services, copilots, APIs and embedded models — as well as browser-based tools and automation workflows — that teams adopt without going through standard IT provisioning.&lt;/p&gt;

&lt;p&gt;By the time traditional discovery tools scan the environment, these resources may already be gone or they may never appear in the systems IT relies on as a &lt;a href="https://www.ivanti.com/blog/ivanti-neurons-for-discovery"&gt;single source of truth&lt;/a&gt; — leaving no record, no owner and no shared operational context. Meanwhile, SaaS adoption continues to rise across every department, remote devices rarely touch the corporate network, and identities, integrations and data flows now matter just as much as devices. Yet many organizations still rely on discovery approaches built for a world of static endpoints and predictable perimeters.&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;The result is &lt;a href="https://www.ivanti.com/blog/it-visibility-see-it-all-or-risk-it-all"&gt;partial visibility&lt;/a&gt; at best and growing blind spots everywhere else.&lt;/strong&gt;&lt;/p&gt;

&lt;p&gt;In 2026, the visibility gap is now a chasm — and the data is clear. According to Ivanti’s &lt;a href="https://www.ivanti.com/resources/research-reports/aem"&gt;autonomous endpoint management research&lt;/a&gt;, 45% of IT professionals report lacking sufficient data about shadow IT, and 38% say they have insufficient data about devices accessing the network. This problem is amplified in cloud environments.&lt;/p&gt;

&lt;div class="flourish-embed flourish-chart" data-src="visualisation/26365764"&gt;&lt;/div&gt;

&lt;p&gt;According to &lt;a href="https://petri.com/it-leaders-hybrid-cloud-visibility-a" rel="noopener" target="_blank"&gt;2025 research from SecPod&lt;/a&gt; revealed that 67% of organizations struggle with blind spots across their cloud asset inventories, reinforcing that even organizations with modern IT and security tools still operate with incomplete visibility.&lt;/p&gt;

&lt;p&gt;These blind spots create more than gaps in inventory. When teams can't agree on which assets are real, active or decommissioned, IT and security work on conflicting timelines. Incident response slows. Exposure prioritization breaks down. Security teams chase alerts without context. IT leaders burn hours reconciling spreadsheets instead of reducing risk.&lt;/p&gt;

&lt;p&gt;What makes this especially costly is not just missing data, but delayed action. When teams can’t trust what exists in their environment, every response slows down: incidents take longer to resolve, audits require manual reconciliation, and risk decisions are made with incomplete context. Visibility gaps don’t just increase exposure; they consume time, attention, and operational confidence across IT and security.&lt;/p&gt;

&lt;p&gt;Across Ivanti’s experience working with large hybrid enterprises, a clear pattern has emerged. Visibility gaps rarely exist because teams fail to deploy discovery, but because those tools were never designed to share or reconcile data at the speed modern environments demand.&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;Legacy tools are not simply outdated. They're fundamentally incompatible with the speed and complexity of modern IT.&lt;/strong&gt;&lt;/p&gt;

&lt;h2&gt;Where legacy tools fall behind&lt;/h2&gt;

&lt;p&gt;The limitations of legacy discovery tools fall into five categories, each compounding the others:&lt;/p&gt;

&lt;h4&gt;Fragmented visibility&lt;/h4&gt;

&lt;p&gt;According to Ivanti’s &lt;a href="https://www.ivanti.com/resources/research-reports/borderless-security"&gt;2025 Securing the Borderless Digital Landscape Report&lt;/a&gt;, every 2 in 5 edge devices are currently outside of IT management and oversite. Today, nearly every organization has unauthorized cloud accounts, yet traditional discovery solutions don’t reflect this reality. Most point tools capture only one slice of the environment, but they rarely reconcile them into a shared operational view. For IT directors, this fragmentation means juggling multiple dashboards during outages and audits. For CIOs, it means wasted spend and delayed decisions. When no team trusts the data enough to act confidently, the entire organization slows down.&lt;/p&gt;

&lt;div class="flourish-embed flourish-chart" data-src="visualisation/24843687"&gt;&lt;/div&gt;

&lt;h4&gt;Dependence on agents&lt;/h4&gt;

&lt;p&gt;Agent-based discovery still plays an important role in modern IT, especially for collecting rich telemetry from managed endpoints. The problem arises when discovery becomes agent-based only. In hybrid environments, many assets cannot support an agent. Temporary cloud workloads may exist for minutes or hours. SaaS applications and managed services do not allow agent deployment at all. Contractor devices, personal endpoints and unmanaged systems often fall outside corporate control policies.&lt;/p&gt;

&lt;p&gt;As a result, these assets never appear in inventories that rely exclusively on agent-based collection. The flaw isn't with agents themselves; it's with relying on a single collection method that can't account for the full scope of modern environments.&lt;/p&gt;

&lt;p&gt;This structural limitation directly contributes to the visibility gaps organizations continue to face. According to &lt;a href="https://newsroom.trendmicro.com/2025-04-29-New-Research-Reveals-Three-Quarters-of-Cybersecurity-Incidents-Occur-Due-to-Unmanaged-Assets" rel="noopener" target="_blank"&gt;2025 research from Trend Micro&lt;/a&gt;, nearly 3 in 4 organizations have experienced security incidents caused by unknown or unmanaged assets. These figures demonstrate how agent-only discovery consistently leaves significant areas of the environment unmonitored.&lt;/p&gt;

&lt;p&gt;Ivanti’s &lt;a href="https://www.ivanti.com/resources/research-reports/2025-digital-employee-experience-report"&gt;2025 Digital Employee Experience Report&lt;/a&gt; found that 27% of office workers regularly use unauthorized tools and applications, often out of frustration with employer-provided technology. This behavior expands the attack surface faster than traditional discovery methods can respond.&lt;/p&gt;

&lt;h4&gt;Risk and exposure blind spots&lt;/h4&gt;

&lt;p&gt;When parts of the environment remain unseen, organizations lose the ability to maintain consistent security controls. Unmonitored devices, unrecognized cloud resources and unsanctioned SaaS services often bypass patching, configuration baselines and policy enforcement. These blind spots open pathways for attackers to exploit misconfigurations, unpatched workloads or forgotten assets.&lt;/p&gt;

&lt;h4&gt;Slow, point-in-time scanning&lt;/h4&gt;

&lt;p&gt;Periodic scans cannot keep up with cloud velocity or SaaS churn. SecPod found that only &lt;a href="https://zylo.com/reports/2025-saas-management-index/" rel="noopener" target="_blank"&gt;42% of organizations have real-time monitoring&lt;/a&gt;, leaving large windows where misconfigurations go undetected. High‑profile incidents involving exposed cloud storage buckets, unsecured API endpoints and misconfigured access controls continue to show how short‑lived or poorly tracked resources can introduce risk long before teams are aware they exist.&lt;/p&gt;

&lt;h4&gt;Manual reconciliation&lt;/h4&gt;

&lt;p&gt;Data from spreadsheets, ITSM, CMDBs and disconnected tools rarely align. According to 2025 cybersecurity research by &lt;a href="https://bedrockdata.ai/resources/2025-enterprise-data-security-confidence-index" rel="noopener" target="_blank"&gt;Bedrock Security&lt;/a&gt;, 82% of organizations report visibility gaps across their asset landscape, driven by fragmented data sources and inconsistent ownership. These blind spots make it difficult to normalize and reconcile cloud, SaaS and on-premises inventories, leaving security and IT teams unsure whether their asset data is complete or accurate.&lt;/p&gt;

&lt;p&gt;These limitations slow operations, weaken security and create persistent blind spots across the entire estate — the exact issues that legacy discovery tools were never designed to solve.&lt;/p&gt;

&lt;h2&gt;A platform-governed visibility model for a modern world&lt;/h2&gt;

&lt;p&gt;Simply scanning more often or deploying another point solution won't close the visibility gap. Today's environment demands a fundamentally different approach.&lt;/p&gt;

&lt;p&gt;Modern environments require a shift from periodic discovery to continuous, shared intelligence that multiple teams can trust. A platform-governed visibility model establishes a shared system of record for asset and configuration data across IT and security — one that continuously normalizes, reconciles and distributes trusted operational context.&lt;/p&gt;

&lt;p&gt;Active and passive discovery work together to surface managed devices, unmanaged endpoints, cloud workloads, SaaS apps, remote assets and the identities connected to them. In practice, this requires a shared operational data foundation that can govern asset and configuration intelligence across systems, so teams are working from the same views rather than fragmented or conflicting records.&lt;/p&gt;

&lt;h4&gt;Core platform data and system of record&lt;/h4&gt;

&lt;p&gt;The &lt;a href="https://www.ivanti.com/resources/whitepapers/ivanti-neurons-platform"&gt;Ivanti Neurons Platform&lt;/a&gt; serves as the authoritative operational data layer for IT and security, governing assets, endpoints and configuration state through a continuously updated &lt;a href="https://www.ivanti.com/glossary/system-of-record"&gt;system of record&lt;/a&gt;. This platform-governed operational data layer maintains a continuously updated view of asset and device inventory, support context and relationships, and software estate information.&lt;/p&gt;

&lt;p&gt;A continuous discovery engine continuously ingests signals from across the environment and normalizes, deduplicates, and reconciles them into clean, consistent operational data. This governed data foundation is what automation and AI rely on to act safely and accurately, ensuring decisions are based on current operational reality rather than fragmented or conflicting inputs.&lt;/p&gt;

&lt;p&gt;When execution systems consume this platform governed data, teams can act with confidence across IT and security. Where &lt;a href="https://www.ivanti.com/lp/itsm/reports/gigaom-radar-report-for-it-service-management"&gt;IT service management&lt;/a&gt; is in scope, this same operational data can extend into ITSM and CMDB workflows, while also supporting &lt;a href="https://www.ivanti.com/blog/automating-it-operations-with-itam"&gt;ITAM use cases&lt;/a&gt; such as lifecycle tracking and software entitlement management.&lt;/p&gt;

&lt;h4&gt;Normalize and reconcile continuously&lt;/h4&gt;

&lt;p&gt;A unified intelligence layer cleans, deduplicates, and correlates records and usage signals from every source, creating a shared, continuously updated asset dataset suitable for operational audit needs.&lt;/p&gt;

&lt;h4&gt;Map exposures to real assets&lt;/h4&gt;

&lt;p&gt;Exposure aggregation links vulnerabilities and misconfigurations to the exact devices, users and service owners affected — improving &lt;a href="https://www.ivanti.com/resources/research-reports/risk-based-patch"&gt;vulnerability prioritization&lt;/a&gt; and accelerating remediation.&lt;/p&gt;

&lt;h2&gt;Turn visibility into action&lt;/h2&gt;

&lt;p&gt;As environments continue to evolve faster than traditional tools can respond, organizations must rethink how visibility is achieved and shared. The path forward does not begin by replacing every tool, but by establishing a trusted visibility foundation that integrates with existing systems and enables better decisions everywhere else.&lt;/p&gt;

&lt;p&gt;This live, platform-governed visibility foundation enables &lt;a href="https://www.ivanti.com/autonomous-endpoint-management"&gt;Autonomous Endpoint Management&lt;/a&gt;. Powered by the Ivanti Neurons Platform, it acts with confidence — triggering remediation, patching, configuration enforcement and self-healing based on verified operational state.&lt;/p&gt;

&lt;p&gt;For organizations constrained by legacy discovery approaches, this means:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;Shifting from periodic snapshots to continuous intelligence.&lt;/li&gt;
	&lt;li&gt;Moving from isolated tools to shared context.&lt;/li&gt;
	&lt;li&gt;Replacing manual reconciliation with automated trust.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;&lt;a href="https://www.ivanti.com/use-cases/discover-and-manage-assets"&gt;Modern, platform‑governed discovery&lt;/a&gt; doesn’t just improve visibility. It creates conditions for action — where insight can reliably trigger remediation, automation and verification instead of stalling in dashboards.&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;Ready to eliminate blind spots for good?&lt;/strong&gt; Explore how the &lt;a href="https://www.ivanti.com/ivanti-neurons"&gt;Ivanti Neurons Platform&lt;/a&gt; establishes trusted asset and configuration visibility and enables &lt;a href="https://www.ivanti.com/autonomous-endpoint-management"&gt;autonomous endpoint management&lt;/a&gt;, exposure management and ITSM workflows to act on governed operational data across hybrid environments.&lt;/p&gt;
</description><pubDate>Mon, 15 Jun 2026 13:32:02 Z</pubDate></item><item><guid isPermaLink="false">cc859549-30f3-43d0-903a-9c6216b2169b</guid><link>https://www.ivanti.com/blog/how-agentic-ai-is-transforming-infrastructure-and-operations</link><atom:author><atom:name>David Pickering</atom:name><atom:uri>https://www.ivanti.com/blog/authors/david-pickering</atom:uri></atom:author><category>Service Management</category><title>How Agentic AI is Transforming Infrastructure and Operations</title><description>&lt;p&gt;Infrastructure and Operations (I&amp;amp;O) teams have long operated under a familiar paradox: the faster the business scales, the more pressure I&amp;amp;O absorbs. Every new application deployment, every endpoint added, and every cloud workload spun up generates more complexity, more risk and more tickets.&lt;/p&gt;

&lt;p&gt;The traditional responses to this pressure — more headcount, more tooling, more scripts, more APIs — have delivered incremental relief at best. Yet, the core structural problem, the underlying architecture of reactive operations, has remained stubbornly intact. Until now.&lt;/p&gt;

&lt;p&gt;&lt;a href="https://www.ivanti.com/ai/agenticai"&gt;Agentic AI&lt;/a&gt; reinvents that architecture entirely.&lt;br&gt;
&lt;br&gt;
AI in IT and Operations (I&amp;amp;O) has transcended the assist-and-suggest phase. Autonomous agents capable of reasoning, planning, executing and learning are now operational and not just future roadmap items. Organizations that are intentionally deploying agentic AI are already seeing significant benefits. Our &lt;a href="https://www.ivanti.com/resources/research-reports/scaling-ai-it-operations" rel="noopener"&gt;2026 AI Maturity research report&lt;/a&gt; found that 57% of IT organizations are using agentic AI for several important IT workflows, with 17% relying on it for extensive end-to-end processes. This deployment is leading to a compression of resolution times from hours to minutes and the deflection of thousands of manual tickets per quarter.&lt;/p&gt;

&lt;p&gt;Moreover, 89% of organizations that have scaled AI to a broad or business-critical level reported that AI frequently helps their teams detect issues before end users are even aware, compared to 43% in the early experimentation stage. This shift is changing I&amp;amp;O from a reactive to a proactive and intelligent posture.&lt;/p&gt;

&lt;p&gt;The question that remains is how quickly can your organization make the transition to implementing agentic AI in your I&amp;amp;O environment at scale?&lt;/p&gt;

&lt;blockquote&gt;
&lt;p&gt;&lt;strong&gt;Learn More:&lt;/strong&gt; &lt;a href="https://www.ivanti.com/blog/agentic-ai-it-service-autonomy"&gt;Transform IT with Agentic AI: the Dawn of Accelerated, Autonomous Service&lt;/a&gt;&lt;/p&gt;
&lt;/blockquote&gt;

&lt;h2 id="toc_1"&gt;Why we’ve reached the ceiling of traditional automation&lt;/h2&gt;

&lt;p&gt;To understand the significance of Agentic AI, it helps to appreciate what came before it and why it was never enough.&lt;/p&gt;

&lt;p&gt;Traditional automation in I&amp;amp;O has been enormously valuable. Runbooks codified institutional knowledge. Scripts standardized repetitive processes. &lt;a href="https://www.ivanti.com/resources/whitepapers/automate-it-and-endpoint-management"&gt;Robotic Process Automation (RPA) bots handle structured rules-based workflows&lt;/a&gt;. These tools reduced manual effort at the margins and allowed teams to do more with the same headcount. But they were always fundamentally brittle — dependent on explicit instructions, incapable of adapting to novel situations and unable to act without a human hand at the wheel.&lt;/p&gt;

&lt;p&gt;Consider a classic scenario: a patch deployment fails on a subset of endpoints at 2 AM. A rule-based automation might log the failure and create a ticket. A more complex script might attempt a retry. But neither can diagnose whether the failure stems from a conflicting application, a corrupted agent, a network segmentation issue or a policy configuration drift. Neither can adapt its remediation strategy in real time. Neither can communicate context to the service desk, update the CMDB or escalate intelligently based on the criticality of the affected assets. A human engineer gets paged. The cycle continues.&lt;/p&gt;

&lt;p&gt;This is the ceiling of traditional automation: it executes instructions, but it doesn't think. It automates tasks, but it can't orchestrate outcomes. And as infrastructure environments have grown exponentially more complex — spanning on-premises, multi-cloud, edge and hybrid architectures — the gap between what rule-based automation can handle and what I&amp;amp;O teams need has widened into a chasm.&lt;/p&gt;

&lt;p&gt;Agentic AI is the answer to filling that gap.&lt;/p&gt;

&lt;hr&gt;
&lt;h2 id="toc_2"&gt;What agentic AI means for I&amp;amp;O&lt;/h2&gt;

&lt;p&gt;Agentic AI systems can independently set goals, develop plans to achieve them, take multi-step actions across tools and systems, evaluate outcomes, and adjust their approach — all without requiring human intervention at each step. Unlike a chatbot that answers a question, or a script that executes a predefined workflow, an agentic system is goal-driven and adaptive. It operates across the full lifecycle of a task, from identification through resolution.&lt;/p&gt;

&lt;p&gt;In the I&amp;amp;O context, this means an autonomous agent can do what previously required either a skilled engineer or a complex, fragile chain of automation scripts: correlate signals from disparate monitoring systems, identify the root cause of an incident, execute the appropriate remediation, verify that the fix worked, update the relevant records, and close the loop — all in the time it'd take a human to open a ticket.&lt;/p&gt;

&lt;p&gt;The shift isn't just operational; it's philosophical. We move from a model where humans initiate action and automation executes it, to a model where &lt;a href="https://www.ivanti.com/blog/agentic-ai-for-it-not-all-agents-are-created-equal"&gt;intelligent agents&lt;/a&gt; start, execute, and verify action — and humans provide oversight and governance. For I&amp;amp;O leaders, this isn't a threat to the team. It's the greatest force multiplier your team has ever had.&lt;/p&gt;

&lt;hr&gt;
&lt;h2 id="toc_3"&gt;Agentic AI powers I&amp;amp;O at scale&lt;/h2&gt;

&lt;p&gt;The &lt;a href="https://www.ivanti.com/resources/datasheets/ivanti-neurons-for-itsm"&gt;service desk ticket queue&lt;/a&gt; is the most visible symptom of an I&amp;amp;O function under strain. Password resets, software installs, access provisioning, connectivity troubleshooting — these high-volume, low-complexity requests consume a huge share of analyst time and drive up operational costs. They're also deeply frustrating for employees who need resolution now, not after a 48-hour SLA window.&lt;/p&gt;

&lt;blockquote&gt;
&lt;p&gt;&lt;strong&gt;Learn More:&lt;/strong&gt; &lt;a href="https://www.ivanti.com/blog/agentic-ai-itsm-workforce-management"&gt;Ticket Taker to Team Leader: Managing an Agentic IT Workforce&lt;/a&gt;&lt;/p&gt;
&lt;/blockquote&gt;

&lt;h3&gt;Eliminating the tyranny of the ticket queue&lt;/h3&gt;

&lt;p&gt;Agentic AI eliminates the queue as a bottleneck. Imagine having a conversational AI agent, like &lt;a href="https://www.ivanti.com/ai/agenticai"&gt;Ivanti Neurons AI Self Service Agent&lt;/a&gt; that not only retrieves an answer from a knowledge base — it validates identity, checks compliance policy, executes the provisioning workflow, confirms the change in the system of record, and notifies the requestor, all within minutes. The ticket never reaches a human analyst. The analyst's time is reclaimed for work that requires human judgment.&lt;/p&gt;

&lt;p&gt;Now imagine giving an analyst more time to handle complex tasks. An agentic AI digital teammate, that works alongside a human agent to assist with proactive insights, advises about the best way to resolve the issue, and automates with intelligent actions.&lt;/p&gt;

&lt;p&gt;Organizations deploying Agentic AI across their service desk consistently report significant reductions in ticket volume — often within the first year of deployment and compounding further as the system matures and learns. That's not automation in the traditional sense. That's intelligent orchestration at scale.&lt;/p&gt;

&lt;h3&gt;Proactive remediation before users feel the impact&lt;/h3&gt;

&lt;p&gt;The most expensive incidents in I&amp;amp;O are the ones that could have been prevented. Disk capacity that wasn't observed until it hit 100%. Certificate expirations that weren't tracked until services dropped. Software &lt;a href="https://www.ivanti.com/blog/vulnerability-remediation-maturity"&gt;vulnerabilities that weren't patched until they were exploited&lt;/a&gt;. These failures were almost always predictable in retrospect — the signals were there. The problem was that no one was watching everything, all the time.&lt;/p&gt;

&lt;p&gt;&lt;a href="https://www.ivanti.com/autonomous-endpoint-management"&gt;Autonomous Endpoint Management&lt;/a&gt; with agentic AI continuously monitors telemetry across endpoints, networks, applications and cloud infrastructure. The agents detect anomalies, correlate weak signals and begin remediation before an issue surfaces as an outage or a security incident. A disk trending toward capacity gets expanded. An expiring certificate gets renewed. A vulnerable endpoint gets patched during its next maintenance window, before exploitation becomes a risk.&lt;/p&gt;

&lt;p&gt;This shift from reactive to proactive is the highest-value capability Agentic AI brings to I&amp;amp;O. It doesn't just reduce the cost of incidents — it prevents the incidents, the downtime, the business disruption and the reputational damage that accompany them. For I&amp;amp;O leaders, this shift redefines what operational success looks like. It moves the measure from mean time to resolution — a reactive metric — to mean time to prevention: how often your environment detects and corrects before business impacts occurs.&lt;/p&gt;

&lt;h3&gt;Scaling without scaling headcount&lt;/h3&gt;

&lt;p&gt;Enterprise IT environments are growing faster than IT budgets. The ratio of endpoints to engineers continues to widen. Cloud workloads multiply. Security requirements intensify. In this environment, the traditional lever of "hire more people" is neither financially sustainable nor operationally sufficient — the talent market simply can't supply the volume of skilled engineers required.&lt;/p&gt;

&lt;p&gt;&lt;a href="https://www.ivanti.com/blog/how-agentic-ai-for-itops-unlocks-value-at-scale"&gt;Agentic AI redefines the scaling equation&lt;/a&gt;. An autonomous agent doesn't have standard working hours, cognitive bandwidth limits or onboarding timelines. It can handle hundreds of concurrent tasks across thousands of endpoints without degradation in performance or quality. As the environment grows, the agent scales with it — not linearly, but exponentially. One well-configured autonomous agent can cover the workload previously distributed across multiple junior analysts, freeing senior engineers to focus on architecture, innovation and strategic initiatives rather than routine remediation.&lt;/p&gt;

&lt;p&gt;This isn't about replacing people. It's about enabling them to operate at the level their skills deserve.&lt;/p&gt;

&lt;hr&gt;
&lt;h2 id="toc_4"&gt;The system of record as the foundation for success&lt;/h2&gt;

&lt;p&gt;Deploying Agentic AI effectively requires more than a capable AI engine. It requires a trusted, comprehensive foundation of data — and that foundation is your system of record built into the Ivanti Neurons foundation, which contains an authoritative source of data including device intelligence, vulnerabilities and exposures, software inventory and service management information. A system of record that knows what assets exist, who owns them and are they compliant.&lt;/p&gt;

&lt;p&gt;A &lt;a href="https://www.ivanti.com/glossary/system-of-record"&gt;system of record&lt;/a&gt; in the I&amp;amp;O context is the authoritative source of truth for your IT environment: every hardware and software asset, every configuration, every relationship, every policy, every change. It's the intelligence layer that enables an autonomous agent to make decisions with confidence. Without it, an agent operating in your environment is guessing. With it, it's reasoning from fact.&lt;/p&gt;

&lt;p&gt;The most effective &lt;a href="https://www.ivanti.com/blog/agentic-ai-itsm-system-of-record"&gt;system of record for agentic AI&lt;/a&gt; in I&amp;amp;O brings together several critical elements. Configuration Management Database (CMDB) data must be accurate, current, and enriched — not the stale, manually updated repository that most organizations have inherited, but a dynamically maintained record of your actual environment. IT Asset Management (ITAM) to manage assets from creation to disposal and ensure accurate ownership is maintained.&lt;/p&gt;

&lt;p&gt;Service management workflows must be fully integrated, so agents can create, update and resolve tickets as part of their execution flow. Identity and access data must be accessible, enabling agents to make policy-compliant decisions about provisioning and entitlement. And telemetry streams from monitoring, vulnerability and performance tools must flow into a unified context that agents can query in real time.&lt;/p&gt;

&lt;p&gt;When these elements are in place, autonomous agents operate with precision. They know which assets are critical and which aren't. They know which changes require approval and which fall within defined automation boundaries. They know the history of an asset — previous failures, pending patches, installed software, active vulnerabilities — and they apply that context to every decision.&lt;/p&gt;

&lt;p&gt;Organizations that attempt to deploy Agentic AI without investing in their system of record typically find that their agents produce inconsistent results or require constant human correction. The AI is only as intelligent as the data it has access to. Investing in data quality and integration isn't a prerequisite that can be deferred — it's the work that determines whether Agentic AI delivers transformative value or marginal improvement.&lt;/p&gt;

&lt;hr&gt;
&lt;h2 id="toc_5"&gt;Business value: beyond efficiency metrics&lt;/h2&gt;

&lt;p&gt;The operational benefits of Agentic AI in I&amp;amp;O are compelling on their own terms. Faster resolution times. Lower ticket volumes. Reduced mean time to detect and remediate. These are metrics that resonate with I&amp;amp;O leaders and that justify the investment on a pure cost-efficiency basis.&lt;/p&gt;

&lt;p&gt;But the business value extends well beyond the service desk dashboard.&lt;/p&gt;

&lt;p&gt;When I&amp;amp;O teams are freed from reactive, repetitive work, they redirect their capacity toward the initiatives that drive competitive differentiation: accelerating application deployment, hardening security posture, enabling digital transformation programs and building the resilient, scalable infrastructure the business needs to grow. The I&amp;amp;O function evolves from a cost center absorbing operational noise into a strategic enabler shaping business outcomes.&lt;/p&gt;

&lt;p&gt;&lt;a href="https://www.ivanti.com/resources/research-reports/2025-digital-employee-experience-report"&gt;Employee experience&lt;/a&gt; is an often-underappreciated dimension of this value. When employees receive instant, intelligent responses to their requests instead of days-long ticket queues, their productivity increases and their frustration with IT decreases. In a world where employee experience is a competitive differentiator for talent acquisition and retention, a frictionless, responsive IT function is a genuine business asset.&lt;/p&gt;

&lt;p&gt;Agentic AI also delivers meaningful risk reduction. In an environment where a single ransomware incident can cost millions in downtime and remediation, and where regulatory penalties for security non-compliance are accelerating, proactive vulnerability management and automated policy enforcement provide quantifiable risk mitigation that resonates far beyond the IT organization at the board level and in the CFO's office.&lt;/p&gt;

&lt;p&gt;Finally, agentic AI compounds in value over time. Every interaction, every resolution, every escalation decision generates data that improves the agent's future performance. Unlike static automation that degrades as environments change, agentic systems adapt and improve — delivering increasing returns on the initial investment.&lt;/p&gt;

&lt;hr&gt;
&lt;h2 id="toc_6"&gt;The path forward&lt;/h2&gt;

&lt;p&gt;Infrastructure and operations are undergoing a pivotal transformation. The systems we oversee today are more intricate, widespread and vital to business success than ever before in the realm of enterprise IT. Demands on I&amp;amp;O are at an all-time high. However, the conventional operating model, which relies on reactive manual interventions and fragile rule-driven automation, has reached its maximum potential.&lt;/p&gt;

&lt;p&gt;Agentic AI offers a fundamentally better model: one where intelligent, autonomous agents handle the high-volume, time-sensitive and increasingly complex work of infrastructure management — continuously, accurately and at scale — while your engineers focus on the strategic work that makes your organization more competitive and resilient.&lt;/p&gt;

&lt;p&gt;Organizations investing in this capability today aren't simply improving their IT operations. They're building an I&amp;amp;O function capable of meeting the demands of the next decade of enterprise technology. We believe that's the standard every I&amp;amp;O leader should be building toward — and that Agentic AI is the most powerful tool available to get there.&lt;/p&gt;

&lt;p&gt;&lt;em&gt;Explore how Ivanti's Agentic AI capabilities are helping I&amp;amp;O teams transform their operations in &lt;a href="https://www.ivanti.com/resources/whitepapers/navigating-the-shift-to-agentic-ai-in-it-service-management"&gt;Navigating the Shift to Agentic AI in IT Service Management&lt;/a&gt;.&lt;/em&gt;&lt;/p&gt;
</description><pubDate>Thu, 11 Jun 2026 13:35:04 Z</pubDate></item><item><guid isPermaLink="false">3c219b41-8bb3-43d8-8713-47fa6e825b86</guid><link>https://www.ivanti.com/blog/june-2026-patch-tuesday</link><atom:author><atom:name>Chris Goettl</atom:name><atom:uri>https://www.ivanti.com/blog/authors/chris-goettl</atom:uri></atom:author><category>Patch Tuesday</category><category>Patch Management</category><category>Security</category><title>June 2026 Patch Tuesday</title><description>&lt;figure&gt;&lt;img alt="Bar chart titled “CVEs Resolved per Release — Jun 2025 – Jun 2026” showing monthly counts of vulnerabilities fixed by Firefox, Chrome, Acrobat, Windows, and Edge. Small monthly bars through 2025 rise sharply in early 2026, with Chrome and Edge reaching several hundred fixes by June 2026. Vertical dashed lines mark milestones: “First AI-credited CVEs (FF148, Feb ’26)” and “AI-scale discovery (FF150 · Chr148, Apr ’26).”" src="https://static.ivanti.com/sites/marketing/media/images/blog/2026/06/cvesresolvedpermonth.png"&gt;
&lt;figcaption&gt;Source: Graph generated using Claude (Anthropic) on June 9, 2026, based on author-designed prompts and dataset by Chris Goettl.&lt;/figcaption&gt;
&lt;/figure&gt;

&lt;p&gt;You may have seen or heard a reference to the Patch Apocalypse, if not, you can dig into some more details &lt;a href="https://www.ivanti.com/resources/whitepapers/the-patch-apocalypse"&gt;here&lt;/a&gt;. The graph above shows a sample of several of the top vendor applications in all our environments. You can see a trailing twelve-month history of the number of CVEs resolved each month in these applications. Prior to February 2026, the scariest thing each month was the OS updates. Microsoft, Apple, Android, Linux flavors of every kind. This was the foundation that organizations built their monthly maintenance around and really focused on Patch Tuesday as the starting point of that monthly maintenance.&lt;/p&gt;

&lt;p&gt;Looking at the three dotted lines on the graph you can see February was the first month when that blue line representing the Microsoft Windows OS started to see some competition. This was the first attribution of CVEs discovered by AI tools. In April, the second dotted line, we witnessed the announcement of Project Glasswing and a significant spike in CVEs discovered.&lt;/p&gt;

&lt;p&gt;Fast forward to June Patch Tuesday and we see a massive green line next to a massive blue line. This is Google Chrome and Microsoft Edge (Chromium) which released a pair of updates already in June resolving over 500 CVEs in total including a zero-day exploit (CVE-2026-11645). Today, we are in the Patch Apocalypse. The Patch Apocalypse is now.&lt;/p&gt;

&lt;p&gt;This is not intended to be a scare tactic. It is meant to outline the challenge that many organizations were anticipating, but the new generation of LLMs has accelerated significantly in the first half of 2026.&lt;/p&gt;

&lt;p&gt;There are going to be more CVEs resolved by vendors at a faster and more continuous pace than we have ever seen previously. Unfortunately, this will also include more zero-day and n-day exploits than previously seen as well. The window from release from a vendor to exploitation had &lt;a href="https://cloud.google.com/blog/topics/threat-intelligence/time-to-exploit-trends-2023" rel="noopener" target="_blank"&gt;already shortened to 5 days as of 2023 threat intelligence data&lt;/a&gt;.&lt;/p&gt;

&lt;p&gt;Many vendors have been acknowledging the need to utilize AI tools in their security research to identify and resolve security flaws in their products. Oracle recently announced their move to include the CSPU or monthly security update, which June will be the second instance of that new release cadence. Google Chrome had already moved to a weekly cadence back in 2023. Mozilla has typically released one to two security releases each month and is now tracking a nearly weekly cadence now as well.&lt;/p&gt;

&lt;p&gt;Ivanti is tracking a 30-40% increase in patches released each month across the vendors supported in our Patch Catalog and we anticipate this to continue to accelerate for a while until we reach a new stable threshold, but the expectation is that this is not a spike. It is the new normal.&lt;/p&gt;

&lt;p&gt;With that we return to the regularly scheduled June 2026 Patch Tuesday for a point in time update. Microsoft has resolved 198 CVEs, Google Chrome resolved 74 including the zero-day exploit (CVE-2026-11645), and Adobe resolved 123 CVEs across 11 updates.&lt;/p&gt;

&lt;p&gt;I feel a bit desensitized at this point, but need to call it out that this is the largest CVE count resolved by Microsoft in a single Patch Tuesday. October 2025 was the previous high at 175 CVEs resolved. It seems inconsequential compared to CVE compared to the Chrome and Edge CVE count of 429 in the June 3, 2026 update from the prior week.&lt;/p&gt;

&lt;p&gt;Expanding the conversation to the continuous release challenge: Based on Ivanti’s Patch Catalog, a quick tally of security related updates between May and June Patch Tuesday’s included 89 updates resolving 513 CVEs (Chrome and Edge are de-duplicated in this count). These updates should be included in your upcoming maintenance if you don’t have a continuous update approach in place today.&lt;/p&gt;

&lt;p&gt;These releases include multiple releases for all major browsers (Chrome, Firefox, Edge, Opera, etc), PDF editors and viewers (Foxit, Adobe, Nitro), development tools (Node.js, VSCodium, Docker), common utilities and apps (Notepad++, PuTTY, PyCharm, Wireshark, Splunk UF), productivity and telecommunications apps (Teams, Zoom) and more.&lt;/p&gt;

&lt;h2&gt;Microsoft’s publicly disclosed vulnerabilities&lt;/h2&gt;

&lt;p&gt;Microsoft resolved a Security Feature Bypass Vulnerability in Windows Bitlocker (&lt;a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50507" rel="noopener" target="_blank"&gt;CVE-2026-50507&lt;/a&gt;). The vulnerability is rated Important by Microsoft and has a CVSS v3.1 score of 6.8, but has been publicly disclosed. The CVE lists exploit code maturity as Proof-of-Concept which puts this at a higher risk of exploitation. An attacker with physical access could use this vulnerability to bypass a security feature gaining access to encrypted data.&lt;/p&gt;

&lt;p&gt;Microsoft resolved a Denial-of-Service Vulnerability in HTTP.sys (&lt;a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-49160" rel="noopener" target="_blank"&gt;CVE-2026-49160&lt;/a&gt;). The vulnerability is rated Important by Microsoft and has a CVSS v3.1 score of 7.5, but has been publicly disclosed. The CVE lists exploit code maturity as unproven meaning to sample code was disclosed at the time this was released. An unauthorized attacker could take advantage of uncontrolled resource consumption in HTTP/2 to cause a denial of service over a network.&lt;/p&gt;

&lt;p&gt;Microsoft resolved an Elevation of Privilege Vulnerability in Windows Collaborative Translation Framework (&lt;a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45586" rel="noopener" target="_blank"&gt;CVE-2026-45586&lt;/a&gt;). The vulnerability is rated Important by Microsoft and has a CVSS v3.1 score of 7.8, but has been publicly disclosed. The CVE lists exploit code maturity as unproven meaning to sample code was disclosed at the time this was released. An attacker who successfully exploited this vulnerability could gain SYSTEM privileges on the target system.&lt;/p&gt;

&lt;h2&gt;Ivanti security advisories&lt;/h2&gt;

&lt;p&gt;Ivanti has released two security updates for June. The updates affect Ivanti Endpoint Manager Mobile and Ivanti Sentry and resolve a total of four CVEs. More details and information about mitigations can be found in the&amp;nbsp;&lt;a href="https://www.ivanti.com/blog/june-2026-security-update"&gt;June Security Advisory&lt;/a&gt;.&amp;nbsp;&lt;/p&gt;

&lt;h2&gt;Third-party vulnerabilities&lt;/h2&gt;

&lt;p&gt;Adobe released 11 updates resolving 123 CVEs. Adobe has prioritized the ColdFusion update as the highest priority.&lt;/p&gt;

&lt;p&gt;Google Chrome resolved 74 CVEs in the latest Chrome update including a zero-day exploit (CVE-2026-11645). This comes on the heels of the largest Chrome release on June 3 that resolved 429 CVEs. Microsoft Edge also needs to be updated to resolve these CVEs.&lt;/p&gt;

&lt;h2&gt;June update to-do list&lt;/h2&gt;

&lt;ul&gt;
	&lt;li&gt;Google Chrome and Microsoft Edge are the top priority this month to resolve 500+ CVEs resolved in the past week and a zero-day exploit (CVE-2026-11645).&lt;/li&gt;
	&lt;li&gt;The Windows OS update is the next highest priority as it resolves over 110+ CVEs depending on edition.&lt;/li&gt;
&lt;/ul&gt;
</description><pubDate>Tue, 09 Jun 2026 21:27:02 Z</pubDate></item><item><guid isPermaLink="false">b27adb18-ced1-4714-99e7-8913ee4e7cd7</guid><link>https://www.ivanti.com/blog/june-2026-security-update</link><category>Security Advisory</category><title>June 2026 Security Update</title><description>&lt;p&gt;Ivanti releases standard security patches on the second Tuesday of every month. In today’s rapidly evolving technology and threat landscape, we believe responsible transparency should be a cornerstone of any product security program. &lt;a href="https://www.ivanti.com/resources/whitepapers/the-patch-apocalypse" target="_blank"&gt;AI is compressing the time-to-exploit&lt;/a&gt;, and Ivanti uses leading technologies to proactively find and fix issues ––including integrating advanced LLMs into our Engineering and product security to enhance the capabilities of our teams.&lt;/p&gt;

&lt;p&gt;Our philosophy is simple: discovering and communicating vulnerabilities, and sharing that information with defenders, is not an indication of weakness; rather it is evidence of rigorous scrutiny and a proactive vulnerability management program. By aggressively seeking to identify and address vulnerabilities, our aim is to get ahead of threat actors to ensure our customers can take the steps needed to protect their environments.&lt;/p&gt;

&lt;p&gt;To that end, today Ivanti is disclosing vulnerabilities in Ivanti Endpoint Manager Mobile (EPMM) and Ivanti Sentry.&lt;/p&gt;

&lt;p&gt;&lt;span&gt;It is important for customers to know:&lt;/span&gt;&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;We have no evidence of these vulnerabilities being exploited in the wild.&lt;/li&gt;
	&lt;li&gt;These vulnerabilities do not impact any other Ivanti solutions.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;More information on these vulnerabilities and detailed instructions on how to remediate the issues can be found in the Security Advisories:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;&lt;a href="https://forums.ivanti.com/s/article/Security-Advisory-Ivanti-Endpoint-Manager-Mobile-EPMM-CVE-2026-6973-CVE-2026-10727" target="_blank"&gt;Ivanti Endpoint Manager Mobile&lt;/a&gt;&lt;/li&gt;
	&lt;li&gt;&lt;a href="https://forums.ivanti.com/s/article/Security-Advisory-Ivanti-Sentry-CVE-2026-10520-CVE-2026-10523" target="_blank"&gt;Ivanti Sentry&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;&lt;u&gt;&lt;strong&gt;How AI will affect vulnerability disclosures in our products&lt;/strong&gt;&lt;/u&gt;&lt;/p&gt;

&lt;p&gt;Ivanti continues to explore, test, and implement leading technologies and processes in every stage of our product development. In recent months, our security team began a project to integrate multiple advanced LLM models into our product security processes.&lt;/p&gt;

&lt;p&gt;This project has increased the capabilities of our Engineering and Product Security Red Teams to identify and fix vulnerabilities, especially those that are difficult to identify with traditional tooling, such as SAST and DAST. We have already successfully identified vulnerabilities which traditional tools missed, including some of those disclosed today.&lt;/p&gt;

&lt;p&gt;As these tools are integrated further into our processes and refined, we expect an increase in vulnerability disclosures. We will continue to share transparently what we have found and resolved to ensure the security of our products. If you are not already following our Security Blog or subscribed to receive alerts for updates on the products you own through the Ivanti Innovators Hub, we highly recommend you do so.&lt;/p&gt;

&lt;p&gt;Importantly, we are committed to using AI responsibly in product security, including keeping a human in the loop to verify automated or agentic work. While this will result in an uptick in disclosures, we see this as a good thing, and an important part of ensuring our products keep pace with modern security requirements as they change.&lt;/p&gt;

&lt;p&gt;Our top priority is the security of our customers and believe the increase in identified, resolved, and transparently communicated vulnerabilities demonstrates that commitment.&lt;/p&gt;

&lt;p&gt;Our Support team is always available to help customers and partners should they have any questions. Cases can be logged via the &lt;a href="https://hub.ivanti.com/" target="_blank"&gt;Ivanti Innovators Hub&lt;/a&gt; (login credentials required).&lt;/p&gt;

&lt;p&gt;&lt;em&gt;Want to stay up to date on Ivanti Security Advisories? Paste &lt;a href="https://www.ivanti.com/blog/topics/security-advisory"&gt;https://www.ivanti.com/blog/topics/security-advisory/rss&lt;/a&gt; into your preferred RSS reader / functionality in your email program.&lt;/em&gt;&lt;/p&gt;
</description><pubDate>Tue, 09 Jun 2026 14:06:32 Z</pubDate></item><item><guid isPermaLink="false">4b5e8789-4afd-423a-bb03-824e079ec5f1</guid><link>https://www.ivanti.com/blog/june-2026-ivanti-neurons-for-itsm-security-update</link><category>Security Advisory</category><title>June 2026 Ivanti Neurons for ITSM Security Update</title><description>&lt;p&gt;In today’s rapidly evolving technology and threat landscape, responsible transparency should be a cornerstone of any product security program. As part of our ongoing product security program, we continually assess, investigate, and address vulnerabilities. When an issue is found, we communicate relevant information as quickly and responsibly as possible.&lt;/p&gt;

&lt;p&gt;To this end, we are issuing an important security update addressing vulnerabilities in Ivanti Neurons for ITSM (cloud and on-premises). Customers should review the &lt;a href="https://forums.ivanti.com/s/article/Security-Advisory-Ivanti-Neurons-for-ITSM-CVE-2026-9614" target="_blank"&gt;Security Advisory&lt;/a&gt; for more information and version specific details.&lt;/p&gt;

&lt;p&gt;Customers using the on-premises Ivanti Neurons for ITSM solution should review the Security advisory and apply fix as soon as possible.&lt;/p&gt;

&lt;p&gt;At the time of this publication, we are not aware of any customers being exploited through the vulnerability disclosed today.&lt;/p&gt;

&lt;p&gt;Our top priority is the security of our customers and believe the increase in identified, resolved, and transparently communicated vulnerabilities demonstrates that commitment.&lt;/p&gt;

&lt;p&gt;Customers and partners with questions about their environment or remediation steps can contact Ivanti Support. Cases can be logged via the &lt;a href="https://hub.ivanti.com/" target="_blank"&gt;Ivanti Innovators Hub&lt;/a&gt; (login credentials required).&lt;/p&gt;

&lt;p&gt;&lt;em&gt;Want to stay up to date on Ivanti Security Advisories? Paste &lt;a href="https://www.ivanti.com/blog/topics/security-advisory"&gt;https://www.ivanti.com/blog/topics/security-advisory/rss&lt;/a&gt; into your preferred RSS reader / functionality in your email program.&lt;/em&gt;&lt;/p&gt;
</description><pubDate>Mon, 01 Jun 2026 14:00:44 Z</pubDate></item><item><guid isPermaLink="false">eda96ea1-1295-4ea3-b782-4d97592eb19c</guid><link>https://www.ivanti.com/blog/vulnerability-remediation-maturity</link><atom:author><atom:name>Chris Goettl</atom:name><atom:uri>https://www.ivanti.com/blog/authors/chris-goettl</atom:uri></atom:author><category>Patch Management</category><title>To Up-Level Your Security Maturity, Rethink Your Vulnerability Remediation Capabilities</title><description>&lt;p id="toc_1"&gt;Security teams are drowning in vulnerabilities. We’re talking tens of thousands of findings per quarter. Hundreds of thousands at larger organizations. Today's IT environments have no boundaries and span across every OS platform. Managing and securing that estate in a linear fashion is no longer viable, and neither is a &lt;a href="https://www.ivanti.com/blog/vulnerability-prioritization-guide"&gt;vulnerability remediation process&lt;/a&gt; that treats every fix as a simple, low-impact task.&lt;/p&gt;

&lt;p&gt;Risk-based prioritization helps cut through that noise by introducing threat context and business context into the vulnerability remediation process. That was a meaningful step forward. But many organizations that have adopted risk-based prioritization are still missing SLAs, still generating friction with IT and still watching exceptions pile up faster than remediations.&lt;/p&gt;

&lt;p&gt;Knowing what to fix first is only part of the equation.&lt;/p&gt;

&lt;p&gt;The harder part, and the part many programs still lack, is understanding what the real-world impact of that fix will be. More importantly, how to accelerate remediation from once a month to a continuous process, while balancing risk vs. impact.&lt;/p&gt;

&lt;p&gt;This is operationally balanced remediation: the practice of weighing the real-world impact of a fix before committing to it. It is the critical missing piece in many vulnerability remediation programs and one of the clearest markers of exposure management maturity. &lt;a href="/resources/v/doc/ivi/2897/d841d481f143" target="_blank"&gt;Ivanti's Exposure Management Maturity Model&lt;/a&gt; identifies it as one of six core capabilities that separate mature security programs from reactive ones.&lt;/p&gt;

&lt;h2&gt;What is operationally balanced remediation?&lt;/h2&gt;

&lt;p&gt;The maturity model defines it simply: the ability to fix or mitigate exposures in a way that's both effective and practical. Security urgency balanced against IT realities like system uptime, patch testing and business continuity.&lt;/p&gt;

&lt;p&gt;In practice, it comes down to one equation: security risk plus real-world impact equals an informed remediation decision. Identifying exposures has no value if you can't remediate them. And remediation that creates unplanned downtime, breaks production systems or triggers rollbacks hasn't reduced risk. It's shifted it.&lt;/p&gt;

&lt;h2&gt;The vulnerability remediation maturity journey: from reactive to strategic&lt;/h2&gt;

&lt;h4&gt;Phase 1: traditional vulnerability management (the scan-and-patch era)&lt;/h4&gt;

&lt;p&gt;This is where vulnerability remediation started for many organizations, and where many still sit. Prioritization is CVSS-driven and first-in-first-out. Your scanner tells you "You have 10,000 CVEs" with no context about which ones matter.&lt;/p&gt;

&lt;p&gt;Exceptions go undocumented. Vulnerability scanning and remediation workflows live in separate tools with minimal integration.&lt;/p&gt;

&lt;p&gt;The result is reactive mode: chasing the latest high-profile disclosure instead of addressing what poses the greatest risk to the environment.&lt;/p&gt;

&lt;h4&gt;Phase 2: risk-based vulnerability prioritization (adding context)&lt;/h4&gt;

&lt;p&gt;Risk-based prioritization introduced two better questions: "Is this vulnerability actively being exploited?" And "How critical is the asset it affects?" Combining severity with threat intelligence and asset criticality gave security teams a sharper focus for their vulnerability remediation efforts. AI-driven vulnerability intelligence and &lt;a href="https://www.ivanti.com/resources/datasheets/ivanti-neurons-for-patch-management"&gt;patch reliability scoring&lt;/a&gt; have accelerated this process further by reducing the manual analysis burden that once forced security teams to make prioritization calls with incomplete data.&lt;/p&gt;

&lt;p&gt;But there’s still a missing piece. Risk-based prioritization tells security what to fix. It says nothing about what IT needs to keep running. Collaboration between the two teams still often happens case by case, and the impact of remediation on IT operations remains an afterthought or more often an anchor holding organizations back from accelerating remediation activities.&lt;/p&gt;

&lt;h4&gt;Phase 3: the missing piece — operationally balanced remediation&lt;/h4&gt;

&lt;p&gt;For organizations that have developed the maturity to understand the real-world risks of an exposure, the next question they ask is: "What will the impact of this fix be on the systems we need to keep running, and can we afford to leave it exposed?"&lt;/p&gt;

&lt;p&gt;When vulnerability remediation is forced without considering downstream effects, the result is downtime, resistance from IT and a growing backlog of exceptions that undermine the very security goals driving the urgency.&lt;/p&gt;

&lt;p&gt;&lt;a href="https://www.ivanti.com/resources/research-reports/state-of-cybersecurity-report"&gt;Ivanti's 2026 State of Cybersecurity Report&lt;/a&gt; found that 48% of security professionals say IT teams don't respond urgently to cybersecurity concerns, while 40% believe IT lacks an understanding of their organization’s risk tolerance. That's what happens when security and IT operate with different priorities and no shared way to resolve them.&lt;/p&gt;

&lt;p&gt;The most mature programs address this not just through process alignment, but through automation that removes the manual handoffs where friction accumulates. &lt;a href="https://www.ivanti.com/resources/whitepapers/automate-it-and-endpoint-management"&gt;Automated self-healing capabilities&lt;/a&gt; can detect, diagnose, and remediate endpoint and cyberhygiene issues proactively. This reduces the volume of vulnerabilities requiring manual triage in the first place. When remediation is built into how endpoints operate rather than bolted on after the fact, the gap between security urgency and IT capacity shrinks on its own.&lt;/p&gt;

&lt;p&gt;The maturity indicator here is clear: shared KPIs between security and IT, documented exception processes and a vulnerability remediation tracking system that accounts for both risk reduction and business continuity. Achieving this continuously requires IT and security to operate from shared data and shared workflows.&lt;/p&gt;

&lt;p&gt;When asset visibility, exposure aggregation, risk-based prioritization, and remediation run on a &lt;a href="https://www.ivanti.com/resources/whitepapers/ivanti-neurons-platform"&gt;unified platform&lt;/a&gt;, the alignment that Phase 3 demands becomes a structural property of the system rather than a hard-won cultural achievement.&lt;/p&gt;

&lt;h2&gt;How operationally balanced remediation differs from risk-based prioritization&lt;/h2&gt;

&lt;p&gt;The simplest way to see the progression is through the questions each approach can answer.&lt;/p&gt;

&lt;table&gt;
	&lt;tbody&gt;
		&lt;tr&gt;
			&lt;td&gt;
			&lt;p&gt;&lt;strong&gt;Approach&lt;/strong&gt;&lt;/p&gt;
			&lt;/td&gt;
			&lt;td&gt;
			&lt;p&gt;&lt;strong&gt;Questions It Answers&lt;/strong&gt;&lt;/p&gt;
			&lt;/td&gt;
			&lt;td&gt;
			&lt;p&gt;&lt;strong&gt;What It Misses&lt;/strong&gt;&lt;/p&gt;
			&lt;/td&gt;
		&lt;/tr&gt;
		&lt;tr&gt;
			&lt;td&gt;
			&lt;p&gt;Traditional VM&lt;/p&gt;
			&lt;/td&gt;
			&lt;td&gt;
			&lt;p&gt;How many vulnerabilities exist?&lt;/p&gt;
			&lt;/td&gt;
			&lt;td&gt;
			&lt;p&gt;Context and prioritization&lt;/p&gt;
			&lt;/td&gt;
		&lt;/tr&gt;
		&lt;tr&gt;
			&lt;td&gt;
			&lt;p&gt;Risk-based prioritization&lt;/p&gt;
			&lt;/td&gt;
			&lt;td&gt;
			&lt;p&gt;Which vulnerabilities pose the greatest risk?&lt;/p&gt;
			&lt;/td&gt;
			&lt;td&gt;
			&lt;p&gt;Operational feasibility and impact&lt;/p&gt;
			&lt;/td&gt;
		&lt;/tr&gt;
		&lt;tr&gt;
			&lt;td&gt;
			&lt;p&gt;Operationally balanced remediation&lt;/p&gt;
			&lt;/td&gt;
			&lt;td&gt;
			&lt;p&gt;Which vulnerabilities should we fix first, given both security risk and operational constraints? How can automation ensure those fixes execute efficiently and without disruption?&lt;/p&gt;
			&lt;/td&gt;
			&lt;td&gt;
			&lt;p&gt;Most comprehensive approach&lt;/p&gt;
			&lt;/td&gt;
		&lt;/tr&gt;
	&lt;/tbody&gt;
&lt;/table&gt;

&lt;p&gt;This approach adds a layer of context to &lt;a href="/resources/v/doc/ivi/2673/6fc181e54240" target="_blank"&gt;vulnerability remediation management&lt;/a&gt;: patch testing requirements, system dependencies, maintenance windows, potential downtime and rollback capabilities. These determine whether a fix holds — or creates new problems that require rollback.&lt;/p&gt;

&lt;h2&gt;Why operationally balanced remediation is central to exposure management&lt;/h2&gt;

&lt;p&gt;The maturity model identifies six core capabilities: asset visibility, asset importance, real-world vulnerability assessment, business-driven vulnerability prioritization, operationally balanced remediation and data/workflow integration.&lt;/p&gt;

&lt;p&gt;Of these, operationally balanced remediation is the execution layer that makes the rest actionable.&lt;/p&gt;

&lt;p&gt;Without it, exposure management stays theoretical. You can build perfect asset inventories, score every vulnerability with precision and produce dashboards that look impressive.&lt;/p&gt;

&lt;p&gt;But if the vulnerability remediation process remains separate, it creates friction between security and IT, known risks accumulate, patches are delayed and the metrics on those dashboards stop reflecting actual risk posture.&lt;/p&gt;

&lt;p&gt;The maturity progression runs from ad hoc prioritization (Phase 1) through case-by-case collaboration (Phase 2) to shared KPI-driven remediation (Phase 3) and finally audited retrospectives with a continuous improvement loop (Phase 4). Not every organization needs to reach Phase 4 across every capability. But getting from ad-hoc to shared, KPI-driven remediation is where the real gains happen.&lt;/p&gt;

&lt;h2&gt;The business case: balancing security and operational goals&lt;/h2&gt;

&lt;h4&gt;Hidden costs of remediation without operational context&lt;/h4&gt;

&lt;p&gt;When vulnerability remediation is driven purely by security urgency, costs pile up in ways that stay invisible until they become systemic.&lt;/p&gt;

&lt;p&gt;Unplanned downtime is the most obvious cost: critical business systems taken offline without proper impact assessment. But the downstream effects are just as damaging.&lt;/p&gt;

&lt;p&gt;IT teams build workarounds when security mandates are impractical to execute, creating shadow processes that increase risk instead of reducing it. Exception fatigue sets in when exceptions outnumber compliant cases, rendering SLAs meaningless. And trust between security and IT erodes when each side views the other as either reckless or obstructionist.&lt;/p&gt;

&lt;p&gt;&lt;a href="https://www.ivanti.com/resources/research-reports/aem"&gt;Ivanti's research&lt;/a&gt; confirms how widespread this friction is. Thirty-nine percent of cybersecurity professionals say they struggle to prioritize risk remediation and patch deployment, and 35% report difficulty maintaining patch compliance.&lt;/p&gt;

&lt;p&gt;Meanwhile, &lt;a href="https://www.ivanti.com/resources/research-reports/state-of-cybersecurity-report"&gt;only 60% use business impact analysis&lt;/a&gt; to inform risk prioritization, and just 51% use a cybersecurity exposure score or risk-based index.&lt;/p&gt;

&lt;p&gt;Many still rely on process metrics like mean time to remediate or percentage of exposures remediated, which can look positive in isolation but reveal little about whether the vulnerability remediation process is actually improving risk posture.&lt;/p&gt;

&lt;h4&gt;The ROI of operationally balanced automated vulnerability remediation&lt;/h4&gt;

&lt;p&gt;When organizations make this shift, the results show up fast. Shared KPIs drive realistic remediation timelines, which in turn improve SLA compliance. Median time to remediate drops when deployment barriers are expected rather than discovered mid-rollout.&lt;/p&gt;

&lt;p&gt;Fixes stick because they account for system dependencies and maintenance windows rather than creating new problems that require rollback. &lt;a href="https://www.ivanti.com/blog/ring-deployment-user-feedback-patch-management-strategy"&gt;Ring deployment&lt;/a&gt; is a good example: patches roll out to progressively larger groups, validated at each stage before expanding. That's what makes balanced remediation practical.&lt;/p&gt;

&lt;p&gt;Combined with automated workflows that handle the correlation, triage and deployment orchestration, these mechanisms turn balanced remediation from a concept into a continuously operating system. When the platform handles the operational complexity, security teams spend less time managing the remediation process and more time validating outcomes.&lt;/p&gt;

&lt;p&gt;Organizations at Phase 3 or Phase 4 maturity in Ivanti’s model track vulnerability remediation with metrics that reflect both security and operational outcomes:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;SLA broken out by known exploited vs traditional severities&lt;/li&gt;
	&lt;li&gt;Median time to remediate (MTTR) for exploited vulnerabilities&lt;/li&gt;
	&lt;li&gt;Percentage of exception requests reviewed jointly by security and IT&lt;/li&gt;
	&lt;li&gt;Reduction in repeat exceptions over time&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;The strategic value extends further. When vulnerability remediation management accounts for what IT needs to keep running, security stops being perceived as a blocker and starts functioning as a business enabler. That shift is what unlocks sustained investment and executive support for exposure management.&lt;/p&gt;

&lt;h2&gt;From prioritization to execution: close the gap&lt;/h2&gt;

&lt;p&gt;&lt;a href="https://www.ivanti.com/resources/research-reports/risk-based-patch"&gt;Risk-based vulnerability prioritization&lt;/a&gt; was a necessary evolution. But it solved only half the problem. Knowing what to fix first has limited value if the act of fixing it creates downtime, resistance or a growing pile of undocumented exceptions.&lt;/p&gt;

&lt;p&gt;Operationally balanced remediation closes the gap by getting security and IT working from the same playbook. That shows up in shared KPIs, clearly defined exceptions, and maintenance windows that protect business continuity. It also means automating remediation workflows that can spot and avoid potential downtime before it becomes a problem.&lt;/p&gt;

&lt;p&gt;With prioritization, insight generation, and orchestration, remediation can keep pace with the environment instead of falling behind it. And with a unified platform that connects endpoint and security data, teams aren’t fighting silos—they’re moving in sync.&lt;/p&gt;

&lt;p&gt;For a deeper look at how to benchmark your organization’s current maturity and build a targeted plan for growth, see &lt;a href="https://www.ivanti.com/resources/v/doc/ivi/2897/d841d481f143"&gt;Ivanti's Exposure Management Maturity Model&lt;/a&gt;.&lt;/p&gt;
</description><pubDate>Thu, 28 May 2026 14:00:05 Z</pubDate></item><item><guid isPermaLink="false">02f77a45-0857-43fa-8f3a-be5d575d364c</guid><link>https://www.ivanti.com/blog/agentic-ai-it-service-autonomy</link><atom:author><atom:name>David Pickering</atom:name><atom:uri>https://www.ivanti.com/blog/authors/david-pickering</atom:uri></atom:author><category>Service Management</category><title>Transform IT with Agentic AI: the Dawn of Accelerated, Autonomous Service</title><description>&lt;p id="toc_23"&gt;The IT service management (ITSM) industry stands at a real inflection point. For decades, service desks have operated on a fundamentally reactive model — employees face problems, submit tickets and wait for human analysts to diagnose, triage and resolve their issues. Automation improved throughput within that model, but it never challenged the model itself.&lt;/p&gt;

&lt;h2&gt;The inflection point: why ITSM will never be the same&lt;/h2&gt;

&lt;p&gt;Agentic AI changes the equation entirely. Rather than simply accelerating the speed at which humans process requests, agentic systems understand intent, pull contextual information, choose an action path, execute across enterprise tools and confirm outcomes without waiting for a human to press "approve" on each step. We're witnessing the transition from IT service management to IT service autonomy, and the implications for every CIO, CISO and IT leader are profound.&lt;/p&gt;

&lt;p&gt;The numbers reinforce the urgency. &lt;a href="https://www.gartner.com/en/newsroom/press-releases/2025-08-26-gartner-predicts-40-percent-of-enterprise-apps-will-feature-task-specific-ai-agents-by-2026-up-from-less-than-5-percent-in-2025" rel="noopener" target="_blank"&gt;Gartner&lt;/a&gt; predicts that by the end of 2026, roughly 40% of enterprise applications will embed task-specific AI agents, up from less than 5% in 2025. &lt;a href="https://www.pagerduty.com/resources/itops/analyst-report/gartner-predicts-report-2026-ai-agents-transform-it-infrastructure-operations/" rel="noopener" target="_blank"&gt;Gartner research&lt;/a&gt; also predicts that 70% of enterprises will deploy agentic AI agents to simultaneously operate their IT infrastructure by 2029 — compared to less than 5% today.&lt;/p&gt;

&lt;p&gt;These aren't incremental shifts. They represent a wholesale reinvention of how technology organizations deliver, secure and optimize services.&lt;/p&gt;

&lt;h2&gt;From scripted bots to autonomous agents: the evolution of intelligence in ITSM&lt;/h2&gt;

&lt;p&gt;Understanding where the industry is heading requires understanding where it has been. The evolution of AI in ITSM follows a clear arc that moves from deterministic scripted logic toward truly autonomous reasoning.&lt;/p&gt;

&lt;h3&gt;Phase one: rule-based automation&lt;/h3&gt;

&lt;p&gt;The earliest wave of ITSM automation involved scripted workflows — if a ticket matched certain keywords, it was routed to a predefined queue; if an asset fell out of compliance, a remediation script fired automatically. These automations deliver measurable efficiency gains by eliminating costly manual processes and making operations more compliant and secure. However, they remained brittle. Every new situation required a new rule, and the system could never handle ambiguity or learn from its own outcomes.&lt;/p&gt;

&lt;h3&gt;Phase two: AI-assisted service management&lt;/h3&gt;

&lt;p&gt;The arrival of machine learning and generative AI introduced a more adaptive layer. AI began classifying tickets automatically, summarizing incidents for analysts and generating knowledge articles from historical resolution data. Approximately &lt;a href="https://www.ivanti.com/resources/datasheets/ivanti-neurons-for-itsm"&gt;40% of organizations&lt;/a&gt; have now embraced AI to facilitate more efficient ticket resolutions.&lt;/p&gt;

&lt;p&gt;Chatbots and virtual assistants have brought consumer-grade conversational interfaces into the enterprise, enabling employees to interact with IT support through natural language rather than structured forms. These abilities represented a meaningful leap, but the AI still operated primarily as an assistant. The AI is augmenting human decision-making rather than replacing it.&lt;/p&gt;

&lt;h3&gt;Phase three: Agentic AI and autonomous workflows&lt;/h3&gt;

&lt;p&gt;This is where the industry stands today, at the threshold of a third and far more transformative phase. Agentic AI systems don't wait for instructions. They observe, reason, plan and act.&lt;/p&gt;

&lt;p&gt;In ITSM terms, an agentic system can detect an anomaly on an endpoint, correlate it with known vulnerability patterns, start a healing sequence, update the Configuration Management Database (CMDB) and close the resulting ticket — all before the affected employee notices a problem. &lt;a href="https://www.gartner.com/en/newsroom/press-releases/2025-06-25-gartner-predicts-over-40-percent-of-agentic-ai-projects-will-be-canceled-by-end-of-2027" rel="noopener" target="_blank"&gt;Gartner&lt;/a&gt; has formalized this trajectory, predicting that by 2028, at least 15% of day-to-day work decisions will be made autonomously through agentic AI, up from 0% in 2024, and that 33% of enterprise software applications will include agentic AI by that same year.&lt;/p&gt;

&lt;p&gt;The critical distinction is agency. Earlier AI tools responded to prompts. Agentic systems pursue goals. They maintain memory across interactions, reason about the best path to an outcome and execute multi-step workflows across integrated enterprise systems. This is the architectural leap that transforms ITSM from a discipline centered on processing requests to one centered on delivering outcomes.&lt;/p&gt;

&lt;h2&gt;The anatomy of agentic ITSM: persona-based and task-based intelligence&lt;/h2&gt;

&lt;p&gt;As agentic AI matures, its application in ITSM is coalescing around two complementary architectures: persona-based agents and task-based agents. Together, they form what many industry observers are calling the "conversational front door" to IT — a unified, intelligent interface that replaces fragmented portals, forms and phone trees with natural, adaptive interactions.&lt;/p&gt;

&lt;h3&gt;Persona-based agents&lt;/h3&gt;

&lt;p&gt;Persona-based agents are designed around the needs of specific user roles. A &lt;a href="https://www.ivanti.com/ai/agenticai"&gt;self-service agent&lt;/a&gt;, for example, serves as the first point of contact for employees. Rather than forcing users to navigate a service catalog and complete structured forms, a conversational self-service agent uses adaptive intent understanding and guided data capture to translate a natural language request into a fully structured, actionable ticket. The result is dramatically reduced friction for employees and significantly improved data quality for service teams. The impact of this approach is substantial — organizations deploying AI-powered virtual support agents have reported 50% to 70% reductions in call volumes alongside employee adoption rates of 80% to 85%.&lt;/p&gt;

&lt;h3&gt;Service-desk agents&lt;/h3&gt;

&lt;p&gt;By contrast, a service desk agent augments the live analyst. It provides context-aware guidance during ticket handling, accelerates triage and classification and offers real-time coaching that elevates less experienced analysts to the proficiency of seasoned veterans.&lt;/p&gt;

&lt;p&gt;AI-driven incident summarization saves analysts significant time by automatically distilling complex ticket histories into actionable briefs. The analyst remains in the loop, but the loop is tighter, faster and more informed.&lt;/p&gt;

&lt;h3&gt;Task-based agents&lt;/h3&gt;

&lt;p&gt;Task-based agents handle discrete operational functions, such as knowledge search, incident creation, service request fulfillment, summarization and Q&amp;amp;A. These agents operate within an agentic framework that includes goal definition, environmental modelling, memory, reasoning and action execution. The interoperability standards appearing around Agent-to-Agent (A2A) and Model Context Protocol (MCP) communication are particularly significant. They signal an industry moving toward multi-agent ecosystems where specialized agents collaborate to resolve complex, cross-domain issues — what some analysts are calling "agent squads."&lt;/p&gt;

&lt;p&gt;&lt;a href="https://www.gartner.com/en/newsroom/press-releases/2025-08-26-gartner-predicts-40-percent-of-enterprise-apps-will-feature-task-specific-ai-agents-by-2026-up-from-less-than-5-percent-in-2025" rel="noopener" target="_blank"&gt;Gartner's&lt;/a&gt; own roadmap confirms this trajectory. By 2027, one-third of agentic AI implementations are expected to combine agents with different skills to manage complex tasks within application and data environments. The implication for ITSM is clear: the future service desk isn't a single monolithic system but an orchestrated ensemble of specialized agents, each contributing domain-specific intelligence to a unified service experience.&lt;/p&gt;

&lt;h2&gt;Self-Healing, self-securing, self-serving: the 3 pillars of autonomous IT&lt;/h2&gt;

&lt;p&gt;The strategic promise of agentic AI in ITSM rests on three interconnected capabilities that, taken together, define what truly autonomous service delivery looks like in practice.&lt;/p&gt;

&lt;h3&gt;Self-healing&lt;/h3&gt;

&lt;p&gt;Self-healing represents the most visible departure from traditional reactive support. Through anomaly detection and automated diagnosis, modern platforms can identify endpoint and security issues before they affect users. Cloud-based bots powered by hyper-automation don't just alert IT staff to problems — they actively resolve previously unreported or ignored issues, proactively expediting detection, resolving incidents automatically and freeing IT to focus on innovation. The industry trajectory here's unmistakable. As organizations mature their self-healing capabilities, the volume of human-touched tickets will decline steadily, and the service desk's role will shift from resolution to governance and continuous improvement.&lt;/p&gt;

&lt;h3&gt;Self-securing&lt;/h3&gt;

&lt;p&gt;&lt;a href="https://www.ivanti.com/autonomous-endpoint-management"&gt;Self-securing&lt;/a&gt; addresses the reality that cybersecurity and IT operations can no longer operate in silos. AI-driven visibility across devices, organizational structures and digital experiences enhances security posture by proactively identifying potential vulnerabilities based on social trends and vulnerability scoring.&lt;/p&gt;

&lt;p&gt;Maintaining a consistently reconciled software inventory helps identify exposures before they become breach opportunities. The convergence of ITSM and security operations is accelerating as agentic AI provides the connective tissue between threat detection, vulnerability management and remediation workflows.&lt;/p&gt;

&lt;p&gt;Organizations that unify IT and security through an AI-driven platform are positioned to deliver what the industry increasingly describes as "invisible but inescapable security" — protection that operates continuously without creating friction for end users.&lt;/p&gt;

&lt;p&gt;Self-service is being reimagined from the ground up. Traditional self-service portals suffered from low adoption because they imposed the system's logic on the user rather than adapting to the user's intent. Conversational AI inverts this dynamic.&lt;/p&gt;

&lt;p&gt;Employees interact through natural language, and the system handles the complexity of routing, classification and fulfillment behind the scenes. AI-powered virtual assistants deliver exceptional experiences by increasing productivity and satisfaction, bringing the ease of consumer virtual assistants into the workplace while maximizing adoption and reducing call volumes. Looking ahead, self-service will evolve further as voice automation, mobile-first interfaces and proactive notifications create an omnichannel support experience that meets employees wherever they work — at a desk, on the factory floor or on the road.&lt;/p&gt;

&lt;h2&gt;The strategic implications: what this means for IT leadership&lt;/h2&gt;

&lt;p&gt;The rise of agentic AI in ITSM carries implications that extend well beyond the service desk. For CIOs and IT leaders, several strategic themes demand attention.&lt;/p&gt;

&lt;h3&gt;The shift from cost center to value center&lt;/h3&gt;

&lt;p&gt;When routine incidents resolve themselves and AI handles first-line triage, the service desk is no longer defined by ticket volume and average handle time. Instead, IT teams are liberated to focus on strategic initiatives — digital transformation, employee experience innovation and business process automation. The question for IT leaders is no longer, "How do we handle more tickets faster?" But, "How do we redeploy the capacity that autonomous service creates?"&lt;/p&gt;

&lt;h3&gt;The imperative of governance and trust&lt;/h3&gt;

&lt;p&gt;The same &lt;a href="https://www.gartner.com/en/newsroom/press-releases/2025-06-25-gartner-predicts-over-40-percent-of-agentic-ai-projects-will-be-canceled-by-end-of-2027" rel="noopener" target="_blank"&gt;Gartner research&lt;/a&gt; that forecasts explosive growth in agentic AI also sounds a note of caution: Over 40% of agentic AI projects may be canceled by the end of 2027 if costs, value clarity or risk controls prove inadequate. Successful implementations will demand built-in compliance, visibility rules and policy adherence from day one. AI governance isn't a bolt-on problem — it's a foundational design requirement. Organizations that embed guardrails, approval workflows and auditability into their agentic architectures will realize sustainable value; those that treat governance as an afterthought will face costly reversals.&lt;/p&gt;

&lt;h3&gt;The convergence of IT and security operations&lt;/h3&gt;

&lt;p&gt;&lt;a href="https://www.ivanti.com/go/bringing-it-security-together"&gt;Data silos between IT and security teams&lt;/a&gt; have long weakened organizational resilience. Agentic AI platforms that unify service management, endpoint management and exposure management create a system of record — enabling coordinated, intelligent response across traditionally separate domains. This convergence isn't just a technology play; it requires organizational alignment, shared metrics and a cultural commitment to breaking down functional barriers.&lt;/p&gt;

&lt;h3&gt;The employee experience as competitive advantage&lt;/h3&gt;

&lt;p&gt;The ability to measure and quantify the digital employee experience — across devices, service management, security and applications — through AI-driven sentiment analysis transforms employee experience from an abstract aspiration into a data-driven discipline. Organizations that provide seamless, consumer-grade IT experiences will attract and retain talent more effectively than those that treat IT support as a back-office function. &lt;a href="https://www.ivanti.com/products/ivanti-neurons-for-digital-experience"&gt;The Digital Employee Experience (DEX) score&lt;/a&gt; is emerging as a critical KPI, offering service desk analysts the visibility to deliver personalized, empathetic support at scale.&lt;/p&gt;

&lt;h3&gt;Enterprise service management beyond IT&lt;/h3&gt;

&lt;p&gt;Perhaps the most underappreciated implication of agentic AI is its potential to extend intelligent service delivery beyond IT into HR, facilities, finance and other business departments. When the underlying platform supports no-code, workflow design and pre-built integrations with external systems, patterns proven in IT service management become templates for enterprise-wide transformation. Business departments that still rely on ad hoc emails, dated spreadsheets or paper documents stand to benefit enormously from the same agentic capabilities reshaping IT.&lt;/p&gt;

&lt;h2&gt;The autonomous service imperative&lt;/h2&gt;

&lt;p&gt;The transformation of IT service management through agentic AI isn't a distant possibility — it's an active, accelerating reality. The organizations that thrive will be those that recognize this shift for what it is: not just a technology upgrade, but a fundamental reimagining of how services are designed, delivered and experienced across the enterprise.&lt;/p&gt;

&lt;p&gt;The human role will shift, not disappear. Agentic AI won't eliminate IT professionals — it'll elevate them. Analysts will transition from ticket processors to AI supervisors, governance architects and experience designers. The most valuable IT professionals of the next decade will be those who can design, train and govern autonomous systems rather than operate them manually.&lt;/p&gt;

&lt;p&gt;The path forward demands a clear-eyed strategy. Start with the automation foundation — intelligent workflows, AI-assisted classification and self-service interfaces that reduce friction and improve data quality. Build toward autonomous capabilities — self-healing endpoints, self-securing environments and conversational agents that resolve issues end–to-end. And invest in the governance, culture and talent development that'll sustain autonomous operations at enterprise scale.&lt;/p&gt;

&lt;p&gt;The question for IT leaders is no longer whether agentic AI will reshape service management. The question is how quickly and how strategically your organization can operationalize it. The era of autonomous service has begun, and the competitive advantage belongs to those who move decisively — not to those who wait for certainty that'll never arrive.&lt;/p&gt;
</description><pubDate>Tue, 19 May 2026 14:49:37 Z</pubDate></item><item><guid isPermaLink="false">3dc0db41-dc44-4982-9d53-f9d3295c8a20</guid><link>https://www.ivanti.com/blog/may-2026-patch-tuesday</link><atom:author><atom:name>Chris Goettl</atom:name><atom:uri>https://www.ivanti.com/blog/authors/chris-goettl</atom:uri></atom:author><category>Patch Tuesday</category><category>Patch Management</category><category>Security</category><title>May 2026 Patch Tuesday</title><description>&lt;p&gt;Continuing the &lt;a href="https://www.ivanti.com/resources/whitepapers/the-patch-apocalypse"&gt;Patch Apocalypse&lt;/a&gt; this month we are already seeing some more aggressive shifts in updates from many vendors.&lt;/p&gt;

&lt;p&gt;&lt;a href="https://blogs.oracle.com/security/accelerating-vulnerability-detection-and-response-at-oracle" rel="noopener" target="_blank"&gt;Oracle announced a new release cadence starting in May 2026&lt;/a&gt; to address the acceleration of vulnerability detection introduced by Mythos and other AI security models. Monthly Critical Security Patch Update (CSPUs) will fill in the two-month gap between their quarterly Critical Patch Update (CPU).&lt;/p&gt;

&lt;p&gt;&lt;a href="https://blog.mozilla.org/en/privacy-security/ai-security-zero-day-vulnerabilities/" rel="noopener" target="_blank"&gt;Mozilla had been working with AI models prior to Mythos&lt;/a&gt; which led to 22 security-sensitive bugs being resolved in Firefox 148. They announced continued collaboration with Anthropic to apply an early version of Mythos to Firefox and released Firefox 150 resolving 271 vulnerabilities identified during the evaluation. Since &lt;a href="https://www.mozilla.org/en-US/security/advisories/mfsa2026-30/" rel="noopener" target="_blank"&gt;Firefox 150.0.0&lt;/a&gt; released, they have been on a more aggressive weekly cadence for security updates including the release of Firefox 150.0.3 on May Patch Tuesday resolving between three to five CVEs in each release.&lt;/p&gt;

&lt;p&gt;Apple is another early participant in Project Glasswing and has seen a recent spike in the number of exposures resolved. They typically average around 20 CVEs per iOS security update. For their most recent update on May 11, there is a spike of over 70 CVEs resolved. across the 11 Apple updates. While there are not actively exploited vulnerabilities, there are a lot of updates to manage.&lt;/p&gt;

&lt;p&gt;Microsoft resolved 118 CVEs in the May 12, 2026 Patch Tuesday update. There are no exploited or publicly disclosed vulnerabilities this month, but the updates resolve 16 Critical CVEs, 105 Important, 5 Moderate, and 1 Low. Office is likely the higher risk this month with four Critical RCE vulnerabilities resolved in this update, but the OS, as usual, has a lot of CVEs being resolved.&lt;/p&gt;

&lt;h2&gt;Third-party vulnerabilities (Leading up to and including Patch Tuesday)&lt;/h2&gt;

&lt;p&gt;Adobe resolved 52 CVEs in their Patch Tuesday update that included 10 bulletins. Adobe Commerce is the clear priority — it's the only Priority Two update this month, with 10 Critical CVEs including two at CVSS 8.7, and several DoS vulnerabilities that require no admin privileges to exploit.&lt;/p&gt;

&lt;p&gt;Apple released updates for their platforms on May 11 resolving between 25 and 52 CVEs across all platforms. The release did not include any exploited or publicly disclosed vulnerabilities, but is notably larger than average.&lt;/p&gt;

&lt;p&gt;Google released Chrome 148 on May 5 resolving 127 CVEs including three Critical ratings. Google has been on a weekly cadence for Chrome updates for a while now, but the May 5 update is far larger than average for Chrome (possibly the largest CVE count resolved in a single update). Another Chrome release is expected on or shortly after Patch Tuesday.&lt;/p&gt;

&lt;p&gt;Mozilla has been on a steady weekly release scheduled for Firefox since the release of Firefox 150. Mozilla made some headlines with the 271 CVEs resolved in Firefox 150.0.0 and has been averaging three to five CVEs resolved each week since. The release of Firefox 150.0.3 on Patch Tuesday is the latest release, which resolved five CVEs all with a High rating.&lt;/p&gt;

&lt;h2&gt;Ivanti security advisories&lt;/h2&gt;

&lt;p&gt;Ivanti has released four security updates for May Patch Tuesday. The updates affects Ivanti Secure Access Client, Ivanti Xtraction, Ivanti Virtual Traffic Manager, and Ivanti Endpoint Manager and resolves seven CVEs. More details and information about mitigations can be found in the&amp;nbsp;&lt;a href="https://www.ivanti.com/blog/may-2026-security-update"&gt;May Security Advisory&lt;/a&gt;.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;In addition, Ivanti released a Security Update for Ivanti Endpoint Manager Mobile (EPMM) on May 7 which resolved five CVEs including CVE-2025-6973. At the time of disclosure, Ivanti was aware of very limited exploitation of CVE-2026-6973, which requires admin authentication for successful exploitation. More details and information about mitigations can be found in the &lt;a href="https://www.ivanti.com/blog/may-2026-epmm-security-update"&gt;May 2026 EPMM Security Update Advisory&lt;/a&gt;.&lt;/p&gt;

&lt;h2&gt;May update to-do list&lt;/h2&gt;

&lt;ul&gt;
	&lt;li&gt;Third-party update cadence is accelerating. Ensure you are prioritizing more frequent update schedules for priority applications such as browsers, productivity apps, and telecommunications apps.&lt;/li&gt;
	&lt;li&gt;Microsoft and Apple both released updates across pretty much every platform. No exploits, but there are a lot of vulnerabilities to remediate.&lt;/li&gt;
&lt;/ul&gt;
</description><pubDate>Tue, 12 May 2026 21:52:21 Z</pubDate></item><item><guid isPermaLink="false">744bf5a6-f971-4dfb-804b-42aaa325beb5</guid><link>https://www.ivanti.com/blog/ai-data-management</link><atom:author><atom:name>Susan Fung</atom:name><atom:uri>https://www.ivanti.com/blog/authors/susan-fung</atom:uri></atom:author><category>Artificial Intelligence</category><title>The Messy Truth About AI Data Management (And What to Do About It)</title><description>&lt;p&gt;Data will always be unclean. It's just a matter of degree.&lt;/p&gt;

&lt;p&gt;I internalized that on day one of my master's program in data science, when a professor warned us that roughly 80% of our time would go to preprocessing and cleaning, not building models.&lt;/p&gt;

&lt;p&gt;Years later, as Principal Product Manager for AI, ML and Analytics at Ivanti, I've found the guidance holds up remarkably well in practice.&lt;/p&gt;

&lt;p&gt;As my team and I work to bring AI out of the lab and into production for IT and security teams, AI data management matters more than ever. &lt;a href="https://www.ivanti.com/resources/research-reports/tech-at-work"&gt;Ivanti’s 2025 Technology at Work Report&lt;/a&gt; found that 42% of office workers use generative AI tools at work, up 16 points in a single year. Among IT professionals, adoption reached 74%.&lt;/p&gt;

&lt;p&gt;The appetite is there. So is the hesitation. Many IT leaders know their data isn’t clean, their systems are fragmented, and their governance hasn’t caught up. The good news: you don't need perfect data to adopt AI.&lt;/p&gt;

&lt;p&gt;You need a clear data management for AI strategy built around what you already have.&lt;/p&gt;

&lt;h2 id="toc_1"&gt;Why IT data is never perfect&lt;/h2&gt;

&lt;p&gt;In enterprise IT, data quality issues aren't anomalies. They're the baseline reality of AI and data management. Tickets get categorized inconsistently. Asset inventories are incomplete. Critical information lives in silos across systems. And unstructured text in support tickets and survey responses defies neat categorization.&lt;/p&gt;

&lt;p&gt;Ivanti's research confirms how deep this goes. Our &lt;a href="https://www.ivanti.com/resources/research-reports/aem"&gt;2026 Autonomous Endpoint Management Advantage Report&lt;/a&gt; found that 89% of IT professionals say siloed data negatively impacts operations, with 39% saying silos cause inefficient resource use.&lt;/p&gt;

&lt;div class="flourish-embed flourish-chart" data-src="visualisation/26365747"&gt;&lt;/div&gt;

&lt;p&gt;Our &lt;a href="https://www.ivanti.com/resources/research-reports/tech-at-work"&gt;Tech at Work Report&lt;/a&gt; tells a similar story:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;38% of IT professionals cite tech complexity as a significant barrier to effective operations, up four points year over year.&lt;/li&gt;
	&lt;li&gt;Nearly half (46%) say new software deployments actually drive-up ticket volume rather than cut through the noise.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;Add that 48% of organizations still run end-of-life software, and the picture becomes clear: this is a data environment that's messy by design.&lt;/p&gt;

&lt;p&gt;As David Pickering, Ivanti's Product Marketing Director, told me: when data is formatted differently across systems, entered inconsistently, siloed by department, shaped by years of acquisitions, you’ll find agentic AI workflows that span those systems quickly run into trouble. You can't tell an AI which data to trust if you don't know yourself. And without that foundation, even well-designed automations will fall apart at the seams.&lt;/p&gt;

&lt;p&gt;In other words: "Garbage in, garbage out" still applies. But pristine data isn't coming anytime soon. Any serious approach to master data management and machine learning must account for the mess, not wait for it to resolve itself.&lt;/p&gt;

&lt;h2 id="toc_2"&gt;The decision framework — choosing your data management strategy&lt;/h2&gt;

&lt;p&gt;There are two primary paths for data management for AI in IT. Both are valid, both have trade-offs, and many organizations will use both for different use cases.&lt;/p&gt;

&lt;h4&gt;Path 1: Manual/programmatic cleaning&lt;/h4&gt;

&lt;p&gt;When my team introduced ticket classification for &lt;a href="https://www.ivanti.com/resources/datasheets/ivanti-neurons-for-itsm"&gt;Ivanti’s ITSM system&lt;/a&gt;, we were training a model to categorize service requests. That demanded clean, well-labeled training data. So, we built a step into the workflow that gave administrators the opportunity to review and clean data before it fed the model. That human review made a measurable difference in accuracy.&lt;/p&gt;

&lt;p&gt;This path works best when you're training or fine-tuning a custom model, ingesting data into a knowledge base or working with structured datasets where quality standards can be defined. The trade-off is time and resources. The outcome is high accuracy and full control.&lt;/p&gt;

&lt;p&gt;It also works best when baseline data hygiene is already in place. Many organizations aren't there yet: just &lt;a href="https://www.ivanti.com/resources/research-reports/tech-at-work"&gt;35% track device age&lt;/a&gt; or location, and only 37% track patch status.&lt;/p&gt;

&lt;div class="flourish-embed flourish-chart" data-src="visualisation/22343828"&gt;&lt;/div&gt;

&lt;h4&gt;Path 2: Generative AI processing&lt;/h4&gt;

&lt;p&gt;Sometimes manual cleaning isn't feasible. I learned this working on Ivanti's survey analytics. Survey responses are some of the messiest data any IT team encounters: freeform text, inconsistent formatting, wildly varying detail. Cleaning that manually at scale isn't realistic.&lt;/p&gt;

&lt;p&gt;Instead, we used large language models to identify themes, patterns and sentiment across incomplete and unstructured inputs. We could summarize entire surveys, flag satisfaction drivers, and surface actionable insights fast.&lt;/p&gt;

&lt;p&gt;This path is ideal for high-volume unstructured data, situations where manual cleaning simply isn't possible, or any scenario where the cost of cleaning exceeds the value of the output. It does require access to capable large language models and validation that the use case is a fit.&lt;/p&gt;

&lt;h4&gt;Choosing between the two strategies&lt;/h4&gt;

&lt;p&gt;The decision comes down to data volume and variety, time constraints, accuracy requirements and how much control you need over where your data goes and how it's processed.&lt;/p&gt;

&lt;p&gt;Fine-tuning a model where precision is critical? Invest in cleaning. Working with large volumes of unstructured input where speed matters? Lean into generative AI. The goal is deliberate choice, not inaction because the data isn't perfect.&lt;/p&gt;

&lt;h2 id="toc_3"&gt;Building AI-ready infrastructure for data management&lt;/h2&gt;

&lt;p&gt;Cloud services are essential here, and I don't say that lightly. When my team built a digital experience score to measure, quantify and &lt;a href="https://www.ivanti.com/blog/how-to-measure-the-business-impact-of-digital-employee-experience-dex"&gt;improve digital employee experience&lt;/a&gt;, cloud was the critical enabler. It served as our integration hub, bringing together service tickets, device telemetry, application performance, and security signals.&lt;/p&gt;

&lt;p&gt;That level of multi-source integration isn't feasible at scale without cloud infrastructure. Cloud also enabled us to run a hybrid AI model that processes both text and numeric telemetry simultaneously. Supporting thousands of devices and users at that complexity level isn't feasible on-premises.&lt;/p&gt;

&lt;p&gt;Beyond compute, &lt;a href="https://www.ivanti.com/blog/itsm-agentic-ai-readiness-checklist"&gt;AI-ready infrastructure&lt;/a&gt; means tackling master data management for machine learning. Organizations need a single source of truth across systems. Data formats need to be standardized, particularly when growth through acquisition introduces legacy platforms with different conventions.&lt;/p&gt;

&lt;p&gt;Data governance complicates the picture further. Regulations like GDPR and CCPA impose strict requirements on how personal data is processed and where it can be transmitted. For global organizations, that means AI pipelines need to account for regional jurisdictional differences, particularly when evaluating whether to use external AI services or keep processing in-house.&lt;/p&gt;

&lt;p&gt;Our &lt;a href="https://www.ivanti.com/resources/research-reports/aem"&gt;Autonomous Endpoint Management research&lt;/a&gt; found that just 32% of IT professionals use a unified endpoint management system. Without consolidated visibility, AI and automation can’t reach their potential. Effective AI data management starts with visibility: you can't automate what you can't see.&lt;/p&gt;

&lt;h2 id="toc_4"&gt;Best practices for IT teams implementing AI&lt;/h2&gt;

&lt;p&gt;When it comes to data management for AI, adopting tools without developing the processes to support them is one of the most common mistakes I see.&lt;/p&gt;

&lt;h4&gt;Establishing Knowledge Management Practices&lt;/h4&gt;

&lt;p&gt;Ivanti’s ITSM platform &lt;a href="https://www.ivanti.com/blog/create-personalized-knowledge-articles-faster-and-smarter-with-gen-ai"&gt;uses AI to generate knowledge articles&lt;/a&gt; from past tickets and incident resolutions. The productivity gain is real. But it doesn't eliminate the need for management discipline.&lt;/p&gt;

&lt;p&gt;Articles still require review and approval cadences, version control and clear ownership.&lt;/p&gt;

&lt;p&gt;Despite &lt;a href="https://www.ivanti.com/resources/research-reports/tech-at-work"&gt;86% of IT professionals&lt;/a&gt; agreeing that AI is important to efficient operations, fewer than half use it for high-value scenarios like predictive maintenance or automated incident response. The gap in AI and data management isn't technology. It's process maturity.&lt;/p&gt;

&lt;h4&gt;Validation and governance&lt;/h4&gt;

&lt;p&gt;Validation is just as important on the output side as data quality is on the input side. AI-generated results need to be checked, especially as organizations move toward agentic AI, where autonomous systems act on decisions in real time. The question isn't just whether the data coming back looks right. It's whether the system is taking the right actions.&lt;/p&gt;

&lt;p&gt;Measuring AI performance matters too: how often it's being used, how accurate it is and where it's failing. &lt;a href="https://www.ivanti.com/resources/research-reports/state-of-cybersecurity-report"&gt;Ivanti's 2026 State of Cybersecurity Report&lt;/a&gt; found that 92% of security professionals say automation effectively reduces mean time to respond. That effectiveness, though, depends on continuous monitoring and tuning.&lt;/p&gt;

&lt;h4&gt;Using AI as a catalyst for better data practices&lt;/h4&gt;

&lt;p&gt;AI doesn’t just consume good data practices. It drives them. By lowering barriers to content creation and analysis, AI frees teams to build the governance frameworks they’ve deferred. When generating a knowledge article takes minutes instead of hours, the team can invest that time in approval workflows and quality assurance.&lt;/p&gt;

&lt;p&gt;This is especially valuable when junior technicians get real-time AI guidance, enabling them to contribute at a higher level while senior staff focus on strategy.&lt;/p&gt;

&lt;p&gt;Our &lt;a href="https://www.ivanti.com/resources/research-reports/aem"&gt;Autonomous Endpoint Management Advantage Report&lt;/a&gt; found that 62% of IT professionals feel overwhelmed by day-to-day operations, and one in four say a colleague has resigned due to burnout. AI that augments human expertise helps teams scale without that cost.&lt;/p&gt;

&lt;h2 id="toc_5"&gt;The path isn’t always clear, but the strategy can be&lt;/h2&gt;

&lt;p&gt;Perfect data is a myth. That shouldn’t stop you.&lt;/p&gt;

&lt;p&gt;Manual cleaning for structured, high-precision use cases. Generative AI for unstructured, high-volume scenarios. Both require intentional investment in cloud infrastructure, governance and process development.&lt;/p&gt;

&lt;p&gt;As AI models continue evolving, incorporating not just statistical pattern recognition but explicit rules and structured reasoning, the barrier to AI-ready data management will keep dropping. The organizations that move now, clear-eyed about their data’s imperfections and equipped with a strategy to manage them, will capture the most value.&lt;/p&gt;
</description><pubDate>Tue, 12 May 2026 16:23:42 Z</pubDate></item><item><guid isPermaLink="false">6d5e27b8-d74b-40b2-a546-4670546b0080</guid><link>https://www.ivanti.com/blog/may-2026-security-update</link><category>Security Advisory</category><title>May 2026 Security Update</title><description>&lt;p&gt;Ivanti releases standard security patches on the second Tuesday of every month. In today’s rapidly evolving technology and threat landscape, we believe responsible transparency should be a cornerstone of any product security program. &lt;a href="https://www.ivanti.com/resources/whitepapers/the-patch-apocalypse"&gt;AI is compressing the time-to-exploit&lt;/a&gt;, and Ivanti uses leading technologies to proactively find and fix issues ––including integrating advanced LLMs into our Engineering and product security to enhance the capabilities of our teams.&lt;/p&gt;

&lt;p&gt;Our philosophy is simple: discovering and communicating vulnerabilities, and sharing that information with defenders, is not an indication of weakness; rather it is evidence of rigorous scrutiny and a proactive vulnerability management program. By aggressively seeking to identify and address vulnerabilities, our aim is to get ahead of threat actors to ensure our customers can take the steps needed to protect their environments.&lt;/p&gt;

&lt;p&gt;To that end, today Ivanti is disclosing vulnerabilities in Ivanti Secure Access Client, Xtraction, Virtual Traffic Manager and Endpoint Manager (EPM).&lt;/p&gt;

&lt;p&gt;&lt;span&gt;It is important for customers to know:&lt;/span&gt;&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;We have no evidence of these vulnerabilities being exploited in the wild.&lt;/li&gt;
	&lt;li&gt;These vulnerabilities do not impact any other Ivanti solutions.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;More information on these vulnerabilities and detailed instructions on how to remediate the issues can be found in the Security Advisories:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;&lt;a href="https://forums.ivanti.com/s/article/May-2026-Security-Advisory-Ivanti-Secure-Access-Client-CVE-2026-7431-CVE-2026-7432" target="_blank"&gt;Ivanti Secure Access Client&lt;/a&gt;&lt;/li&gt;
	&lt;li&gt;&lt;a href="https://forums.ivanti.com/s/article/Security-Advisory---Ivanti-Xtraction-CVE-2026-8043" target="_blank"&gt;Ivanti Xtraction&lt;/a&gt;&lt;/li&gt;
	&lt;li&gt;&lt;a href="https://forums.ivanti.com/s/article/May-2026-Security-Advisory-Ivanti-Virtual-Traffic-Manager-vTM-CVE-2026-8051" target="_blank"&gt;Ivanti Virtual Traffic Manager&lt;/a&gt;&lt;/li&gt;
	&lt;li&gt;&lt;a href="https://forums.ivanti.com/s/article/Security-Advisory-Ivanti-Endpoint-Manager-EPM-May-2026" target="_blank"&gt;Ivanti Endpoint Manager (EPM)&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;&lt;strong&gt;&lt;u&gt;How AI will affect vulnerability announcements in our products&lt;/u&gt;&lt;/strong&gt;&lt;/p&gt;

&lt;p&gt;Ivanti continues to explore, test, and implement leading technologies and processes in every stage of our product development. In recent months, our security team began a project to integrate multiple advanced LLM models into our product security processes.&lt;/p&gt;

&lt;p&gt;This project has increased the capabilities of our Engineering and Product Security Red Teams to identify and fix vulnerabilities, especially those that are difficult to identify with traditional tooling, such as SAST and DAST. We have already successfully identified vulnerabilities which traditional tools missed, including some of those disclosed today.&lt;/p&gt;

&lt;p&gt;As these tools are integrated further into our processes and refined, we expect an increase in vulnerability disclosures. We will continue to share transparently what we have found and resolved to ensure the security of our products. If you are not already following our Security Blog or subscribed to receive alerts for updates on the products you own through the Ivanti Innovators Hub, we highly recommend you do so.&lt;/p&gt;

&lt;p&gt;Importantly, we are committed to using AI responsibly in product security, including keeping a human in the loop to verify automated or agentic work. While this will result in an uptick in disclosures, we see this as a good thing, and an important part of ensuring our products keep pace with modern security requirements as they change.&lt;/p&gt;

&lt;p&gt;Our top priority is the security of our customers and believe the increase in identified, resolved, and transparently communicated vulnerabilities demonstrates that commitment.&lt;/p&gt;

&lt;p&gt;Our Support team is always available to help customers and partners should they have any questions. Cases can be logged via the &lt;a href="https://hub.ivanti.com/" target="_blank"&gt;Ivanti Innovators Hub&lt;/a&gt; (login credentials required).&lt;/p&gt;

&lt;p&gt;&lt;em&gt;Want to stay up to date on Ivanti Security Advisories? Paste &lt;a href="https://www.ivanti.com/blog/topics/security-advisory"&gt;https://www.ivanti.com/blog/topics/security-advisory/rss&lt;/a&gt; into your preferred RSS reader / functionality in your email program.&lt;/em&gt;&lt;/p&gt;
</description><pubDate>Tue, 12 May 2026 14:11:21 Z</pubDate></item><item><guid isPermaLink="false">fee9b979-fd63-4fe1-825a-89bdb3bbb17f</guid><link>https://www.ivanti.com/blog/may-2026-epmm-security-update</link><category>Security Advisory</category><title>May 2026 EPMM Security Update</title><description>&lt;p&gt;In today’s rapidly evolving technology and threat landscape, responsible transparency should be a cornerstone of any product security program. Especially with the advancements in AI, we believe it is important to respond quickly when a new risk is discovered.&lt;/p&gt;

&lt;p&gt;Ivanti’s efforts integrating AI into our development and product security process have increased the capabilities of our Engineering and Product Security Red Teams to identify and fix vulnerabilities. Our objective in proactively discovering issues is to increase the resilience of our products in today’s threat environment and reduce the likelihood of exploited-in-the-wild Zero Days. We have already successfully identified vulnerabilities traditional tools missed, including some that are being disclosed today.&lt;/p&gt;

&lt;p&gt;Importantly, we are committed to using AI responsibly in product security, including keeping a human in the loop to verify automated or agentic work. Our top priority is the security of our customers, and we expect that this work will naturally increase the number of vulnerabilities found, fixed, and disclosed. While this will result in an uptick in disclosures, we see this as a good thing, and an important part of ensuring our products keep pace with modern security requirements as they change.&lt;/p&gt;

&lt;p&gt;To this end, we are issuing an important security update addressing vulnerabilities in Ivanti Endpoint Manager Mobile (EPMM).&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;More information can be found in the &lt;a href="https://forums.ivanti.com/s/article/May-2026-Security-Advisory-Ivanti-Endpoint-Manager-Mobile-EPMM-Multiple-CVEs" target="_blank"&gt;Security Advisory, which describes the nature of the vunlerabilities and detailed remediation instructions for customers.&lt;/a&gt;&lt;/li&gt;
	&lt;li&gt;At the time of disclosure, we are aware of very limited exploitation of CVE-2026-6973, which requires admin authentication for successful exploitation.&lt;/li&gt;
	&lt;li&gt;We are not aware of any customers being exploited by the other vulnerabilities disclosed today.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;The issues only affect the on-prem EPMM product, and are not present in Ivanti Neurons for MDM, Ivanti’s cloud-based unified endpoint management solution, Ivanti EPM (a similarly named, but different product), Ivanti Sentry, or any other Ivanti products.&lt;/p&gt;

&lt;p&gt;Advanced AI models have collapsed the time-to-exploit from days to hours after disclosure. Because of this, &lt;u&gt;we strongly encourage our customers to apply the patch to their on-premises EPMM promptly to protect their environment&lt;/u&gt;.&lt;/p&gt;

&lt;p&gt;&lt;u&gt;&lt;strong&gt;How AI will affect vulnerability announcements in our products&lt;/strong&gt;&lt;/u&gt;&lt;/p&gt;

&lt;p&gt;Ivanti continues to explore, test, and implement leading technologies and processes in our product development. In recent months, our security team began a project to integrate multiple advanced LLM models into our product security processes.&lt;/p&gt;

&lt;p&gt;This project has increased the capabilities of our Engineering and Product Security Red Teams to identify and fix vulnerabilities, especially those that are difficult to identify with traditional tooling, such as SAST and DAST. We have already successfully identified vulnerabilities which traditional tools missed, including some of those disclosed today.&lt;/p&gt;

&lt;p&gt;As these tools are integrated further into our processes and refined, we expect an increase in vulnerability disclosures. We will continue to share transparently what we have found and resolved to ensure the security of our products. If you are not already following our Security Blog or subscribed to receive alerts for updates on the products you own through the Ivanti Innovators Hub, we highly recommend you do so.&lt;/p&gt;

&lt;p&gt;Our top priority is the security of our customers and believe the increase in identified, resolved, and transparently communicated vulnerabilities demonstrates that commitment.&lt;/p&gt;

&lt;p&gt;Our Support team is always available to help customers and partners should they have any questions. Cases can be logged via the &lt;a href="https://hub.ivanti.com/" target="_blank"&gt;Ivanti Innovators Hub&lt;/a&gt; (login credentials required).&lt;/p&gt;

&lt;p&gt;&lt;em&gt;Want to stay up to date on Ivanti Security Advisories? Paste &lt;a href="https://www.ivanti.com/blog/topics/security-advisory"&gt;https://www.ivanti.com/blog/topics/security-advisory/rss&lt;/a&gt; into your preferred RSS reader / functionality in your email program.&lt;/em&gt;&lt;/p&gt;
</description><pubDate>Thu, 07 May 2026 14:23:06 Z</pubDate></item><item><guid isPermaLink="false">6cec22cd-a532-4539-adc1-ece8039e5af2</guid><link>https://www.ivanti.com/blog/agentic-ai-itsm-workforce-management</link><atom:author><atom:name>Abhay Kulkarni</atom:name><atom:uri>https://www.ivanti.com/blog/authors/abhay-kulkarni</atom:uri></atom:author><category>Service Management</category><title>Ticket Taker to Team Leader: Managing an Agentic IT Workforce</title><description>&lt;p&gt;The promise of AI in IT service management has been circulating for years. Chatbots that deflect tickets. Virtual agents that answer FAQs. Automation that routes requests. These are useful, but probably not the dream-state you were originally sold.&lt;/p&gt;

&lt;p&gt;What's different today is the arrival of &lt;a href="https://www.ivanti.com/blog/agentic-ai-itsm-system-of-record"&gt;agentic AI:&lt;/a&gt; systems that don't just respond to instructions but reason, act, and adapt across multi-step workflows with real consequences. The question for IT leaders is no longer &lt;em&gt;whether&lt;/em&gt; to adopt agentic ITSM. It's how to govern it well enough to run at speed.&lt;/p&gt;

&lt;p&gt;AI agents aren't coming to your service desk — they're already there. &lt;a href="https://www.ivanti.com/products/ivanti-neurons-itsm"&gt;Ivanti Neurons for ITSM&lt;/a&gt; is at the center of this shift by embedding AI agents directly into incident management, service requests and knowledge management.&lt;/p&gt;

&lt;h2 id="toc_1"&gt;The agentic service desk deployed&lt;/h2&gt;

&lt;p&gt;An agentic ITSM workforce isn't a chatbot with extra steps. In Ivanti Neurons, AI agents are purpose-built for defined ITSM personas, triaging and classifying incidents the moment they arrive, executing approved change workflows end-to-end, querying and reconciling the &lt;a href="https://www.ivanti.com/glossary/cmdb"&gt;CMDB&lt;/a&gt; without analyst intervention, and surfacing knowledge articles that actually resolve issues — not just surface them.&lt;/p&gt;

&lt;p&gt;These agents operate across your existing tech stack. Agentic AI agents should work across your entire tech stack, not in isolation. Our vision is to have agents across &lt;a href="https://www.ivanti.com/products/ivanti-neurons-itsm"&gt;ITSM&lt;/a&gt;, &lt;a href="https://www.ivanti.com/resources/research-reports/aem"&gt;endpoint management&lt;/a&gt;, &lt;a href="https://www.ivanti.com/blog/autonomous-endpoint-management-eliminates-patch-silos"&gt;patch management&lt;/a&gt; and security to enable the autonomous enterprise.&lt;/p&gt;

&lt;p&gt;Here's how forward-looking IT leaders are governing, scaling and getting real results with an agentic ITSM workforce.&lt;/p&gt;

&lt;h2 id="toc_2"&gt;Real outcomes, not pilot projects&lt;/h2&gt;

&lt;p&gt;Organizations that have moved beyond experimentation with Ivanti Neurons for ITSM are seeing compounding returns as AI agents mature in production. According to Ivanti's own &lt;a href="https://www.ivanti.com/resources/research-reports/itsm-automation"&gt;AITSM research:&lt;/a&gt; &lt;strong&gt;86% of IT professionals&lt;/strong&gt; say AI-powered technology is key to making IT organizations more efficient and &lt;strong&gt;85%&lt;/strong&gt; believe AI and automation solutions like root-cause analysis and predictive maintenance can help decrease IT ticket volume.&lt;/p&gt;

&lt;p&gt;These findings reinforce the scale of the opportunity. Critically, &lt;strong&gt;58% of organizations&lt;/strong&gt; are already using AI for password resets and &lt;strong&gt;52%&lt;/strong&gt; for employee onboarding — routine tasks that consume analyst hours and deliver little strategic value.&lt;/p&gt;

&lt;div class="flourish-embed flourish-chart" data-src="visualisation/25090256"&gt;&lt;/div&gt;

&lt;blockquote&gt;
&lt;p&gt;Analysts estimate the average cost to resolve an IT ticket ranges from $15 to $17 — and multiples higher for escalated requests. AI agents that handle the high-volume, low-complexity tier of that queue don't just reduce costs. They free your best people for the work that actually moves the business.&lt;/p&gt;

&lt;p&gt;— &lt;a href="https://www.ivanti.com/resources/research-reports/itsm-automation"&gt;Ivanti AI: The Future of ITSM Automation Report&lt;/a&gt;.&lt;/p&gt;
&lt;/blockquote&gt;

&lt;p&gt;This transformation is happening across sectors where Ivanti Neurons for ITSM is deployed:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;&lt;strong&gt;Healthcare:&lt;/strong&gt; Device provisioning and EHR access requests resolved autonomously across multi-site environments, reducing delays that previously stretched service windows.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Financial Services:&lt;/strong&gt; AI-scored change risk surfaces CAB-critical flags, cutting review time and keeping audit trails complete without manual effort.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Manufacturing:&lt;/strong&gt; Endpoint health signals are automatically correlated with open incidents, reducing MTTR across converged OT and IT environments.&lt;/li&gt;
&lt;/ul&gt;

&lt;h2 id="toc_3"&gt;Governance isn’t just a guardrail — it's the engine&lt;/h2&gt;

&lt;p&gt;The highest-performing agentic ITSM organizations share one trait: they treat &lt;a href="https://www.ivanti.com/blog/ai-governance-framework-responsible-ai-guardrails"&gt;AI agent governance&lt;/a&gt; with the same rigor as &lt;a href="https://www.ivanti.com/customers/priory"&gt;change management&lt;/a&gt;. Agents that are well-governed don't just perform — they improve. Agents that lack governance will degrade quietly, drifting as ticket patterns evolve; knowledge articles go stale and organizational change outpaces model assumptions.&lt;/p&gt;

&lt;p&gt;What does good ITSM agent governance look like in practice?&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;&lt;strong&gt;Defined autonomy boundaries.&lt;/strong&gt; IT teams need to configure exactly which workflow steps are fully autonomous, which require human confirmation and which must always escalate.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Continuous improvement through feedback loops at every touchpoint.&lt;/strong&gt; Agents learn from analyst corrections, end-user satisfaction scores and resolution outcomes. These signals surface in the aggregate, so your team isn’t only closing tickets — they're also improving their processes.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Audit trails for every agent action.&lt;/strong&gt; Every decision by an AI agent should be logged with full context — what triggered it, what data it used, what action it took. Compliance is built in, not bolted on.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Escalation that actually works.&lt;/strong&gt; Agents know their limits. When confidence drops below a configurable threshold, the AI technology needs to seamlessly route it to the right human with the full context attached, so the analyst isn't starting from scratch.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Trusted information.&lt;/strong&gt; AI agents must use data you trust rather than relying on external, unknown sources or hallucinations. Maintaining control over your data sources is vital for guaranteeing reliable information.&lt;/li&gt;
&lt;/ul&gt;

&lt;h2 id="toc_4"&gt;The new required IT leadership skill set&lt;/h2&gt;

&lt;p&gt;The shift to an agentic ITSM workforce changes what it means to be an effective IT manager. The core competency is no longer ticket throughput or process compliance but the ability to orchestrate a hybrid team of humans and agents, evaluate agent performance with the same critical eye you'd apply to a direct report and continuously tune the system to the evolving demands of the business.&lt;/p&gt;

&lt;p&gt;Ivanti's 2025 &lt;a href="https://www.ivanti.com/resources/research-reports/tech-at-work"&gt;Technology at Work Report&lt;/a&gt; and &lt;a href="https://www.ivanti.com/resources/research-reports/2025-digital-employee-experience-report"&gt;2025 DEX Report&lt;/a&gt; bring this challenge to the surface:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;&lt;strong&gt;46% of IT professionals&lt;/strong&gt; report a rise in ticket volume due to new software deployments.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;34% of help desks&lt;/strong&gt; identify repetitive, time-consuming tasks and long resolution times as their top pain points.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;These are exactly the pressures agentic AI is built to absorb, but only if leaders build the management muscle to direct it.&lt;/p&gt;

&lt;div class="flourish-embed flourish-chart" data-src="visualisation/24145071"&gt;&lt;/div&gt;

&lt;p&gt;&lt;/p&gt;

&lt;p&gt;IT leaders using Agentic AI with ITSM should consider building weekly rhythms around agent performance reviews the same way they might review analyst KPIs by asking questions such as:&lt;/p&gt;

&lt;p&gt;&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;Which agents are underperforming, and why?&lt;/li&gt;
	&lt;li&gt;Which workflows are ready to expand AI autonomy?&lt;/li&gt;
	&lt;li&gt;Which escalation patterns suggest a knowledge gap in the model?&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;Organizations leading the way with agentic AI must go beyond evaluating analysts and AI agents in isolation. True performance measurement means assessing them together as one integrated team of humans and AI working toward a shared goal.&lt;/p&gt;

&lt;h2 id="toc_5"&gt;Slow adoption is technical debt&lt;/h2&gt;

&lt;p&gt;There's a tendency in IT to treat AI adoption as something to get right before going big. The instinct is understandable since ITSM touches every part of the organization, and failure is visible. But the risk calculus has flipped. In 2026, the cost of moving slowly isn't avoided risk. It's accumulated distance from organizations that are compounding their agentic advantage every quarter.&lt;/p&gt;

&lt;p&gt;Ivanti's research identifies the real barriers: &lt;a href="https://www.ivanti.com/resources/research-reports/itsm-automation"&gt;42% of IT professionals&lt;/a&gt; cite security and compliance concerns as the number one challenge to IT automation. Moreover, &lt;a href="https://www.ivanti.com/resources/research-reports/tech-at-work"&gt;44% of organizations&lt;/a&gt; have invested in AI but say their employees lack adequate skills or training to use these tools effectively. These are fixable problems, but only when leadership steps up to solve them.&lt;/p&gt;

&lt;p&gt;The barrier to agentic ITSM is seldom technical, but organizational. Unclear ownership of AI outcomes, misaligned incentives and cultural resistance from analysts who fear replacement rather than augmentation stand in the way of full-scale AI adoption.&lt;/p&gt;

&lt;p&gt;It's worth noting that &lt;a href="https://www.ivanti.com/resources/research-reports/tech-at-work"&gt;74% of IT professionals are already using generative AI tools in 2025&lt;/a&gt;, up from 66% the year before. The workforce is moving. The question is whether the organization is moving with it or creating friction that drives that adoption underground.&lt;/p&gt;

&lt;h2 id="toc_6"&gt;The principles that drive real transformation&lt;/h2&gt;

&lt;p&gt;Organizations striving to build genuinely agentic IT operations share a common operating philosophy:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;&lt;strong&gt;Start with outcomes, not use cases.&lt;/strong&gt; Identify a strategic metric — SLA compliance, MTTR, analyst-to-ticket ratio — and build backward to the agentic workflows that move it.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Treat AI agents as team members with onboarding plans.&lt;/strong&gt; New agents are supervised, coached with feedback, and given expanding autonomy as performance warrants — not released into production and forgotten.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Measure agent performance like human performance.&lt;/strong&gt; Resolution rate, escalation rate, end-user satisfaction and knowledge contribution are tracked per agent workflow, not just at the aggregate service desk level.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Invest in human capability alongside AI capability.&lt;/strong&gt; The service desk gets better, and the people in it do too. The best analysts aren't displaced; they're retrained as AI coaches, workflow architects and exception managers.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Build governance before you need it.&lt;/strong&gt; Configure autonomy thresholds, escalation logic, and audit policies in the first deployment, not after the first incident.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Treat AI agents and analysts as one team.&lt;/strong&gt;&amp;nbsp;Treat AI agents and human analysts as one team — planning, executing, and evaluating together. Guide this combined team through the team development framework of &lt;a href="https://hr.mit.edu/learning-topics/teams/articles/stages-development" rel="noopener" target="_blank"&gt;Forming, Storming, Norming, and Performing&lt;/a&gt; to build the trust and cohesion that drives real results.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;The era of the passive service desk is ending. No more waiting for a ticket, working through a queue and measuring success by closure rate. The organizations defining the next decade of IT operations are building proactive service management operations that sense, reason and act: where AI agents handle the volume, and your best people handle the future.&lt;/p&gt;

&lt;p&gt;Ivanti Neurons for ITSM is built for that service desk. The question is whether your organization is ready to lead it.&lt;/p&gt;

&lt;h3&gt;Ready to build your agentic IT workforce?&lt;/h3&gt;

&lt;p&gt;See how Ivanti Neurons for ITSM embeds AI agents into your existing service desk workflows — from day one. &lt;a href="https://ivanti.com/products/ivanti-neurons-itsm" rel="noopener" target="_blank"&gt;Learn more&lt;/a&gt;.&lt;/p&gt;
</description><pubDate>Thu, 30 Apr 2026 13:00:02 Z</pubDate></item><item><guid isPermaLink="false">f8cfc685-7ce1-4b20-ad54-5de5267a9cc0</guid><link>https://www.ivanti.com/blog/patch-apocalypse</link><atom:author><atom:name>Chris Goettl</atom:name><atom:uri>https://www.ivanti.com/blog/authors/chris-goettl</atom:uri></atom:author><category>Patch Management</category><category>Security</category><category>Artificial Intelligence</category><title>We’re in a Patch Apocalypse. That Means These Three IT Excuses Won’t Work Anymore.</title><description>&lt;p&gt;On April 7, Anthropic announced that its Claude Mythos Preview model had autonomously identified thousands of high- and critical-severity zero-day vulnerabilities across every major operating system and every major web browser. Over 99% of them were unpatched the day of disclosure.&lt;/p&gt;

&lt;p&gt;Two weeks later, on April 21, Mozilla said it had used the same model to find and patch 271 vulnerabilities in the latest Firefox release. Mozilla's own assessment: "So far we've found no category or complexity of vulnerability that humans can find that this model can't."&lt;/p&gt;

&lt;p&gt;271 is the first wave. Chrome, Edge, Windows, macOS, Linux, FreeBSD — the 17-year-old remote code execution flaw in FreeBSD that Anthropic's red team disclosed (CVE-2026-4747) is an early example of what's coming. Every vendor under Anthropic's Project Glasswing umbrella is positioned to ship fixes at a tempo the industry hasn't seen before. All those fixes become public CVEs with patches available, which lands them in the same place: your environment.&lt;/p&gt;

&lt;p&gt;The containment story also has a crack. On April 21, &lt;a href="https://www.bloomberg.com/news/articles/2026-04-21/anthropic-s-mythos-model-is-being-accessed-by-unauthorized-users" rel="noopener" target="_blank"&gt;Bloomberg reported&lt;/a&gt; that a Discord-linked group gained unauthorized access to Mythos through a third-party vendor environment. Anthropic says the activity didn't extend beyond that vendor. Whether or not similar capability is already in attacker hands, the defensive runway is shorter than the April 7 announcement implied.&lt;/p&gt;

&lt;p&gt;Mythos entered a world already trending this way. &lt;a href="https://www.crowdstrike.com/en-us/global-threat-report/" rel="noopener" target="_blank"&gt;CrowdStrike's 2026 Global Threat Report&lt;/a&gt; documented an 89% year-over-year rise in AI-enabled attacks in 2025. That trend line predates Mythos.&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;Call this a patch apocalypse&lt;/strong&gt;. The plain operational kind, where the volume and cadence of public CVEs with available patches is about to outrun how most IT and security teams currently work.&lt;/p&gt;

&lt;p&gt;NIST is already feeling the effects of the patch apocalypse. In April, the agency announced a major shift in the National Vulnerability Database (NVD) operations in response to a 263% surge in submissions. NIST will no longer provide detailed enrichment to all vulnerabilities submitted, and will instead only provide this for vulnerabilities that meet a high-risk criteria, such as those in the CISA Known Exploited Vulnerabilities catalog or those affecting critical government software. NIST will be relying on CVE Number Authorities (CNAs), like Ivanti, rather than performing its own independent assessment.&lt;/p&gt;

&lt;p&gt;I've been hearing three versions of the same response from customers and peers since the announcement. All three are variations of a program designed for a slower world.&lt;/p&gt;

&lt;h2 id="toc_1"&gt;“We have a vulnerability scanner”&lt;/h2&gt;

&lt;p&gt;Qualys, Rapid7 and Tenable do vulnerability discovery well. Scanners find, flag, score and list. Deployment, verification, reboot handling and rollback are outside their scope. That work still has to happen somewhere. In most programs it happens in a separate tool, with a separate team, on a separate cadence.&lt;/p&gt;

&lt;p&gt;With the exploit window now running in hours and the Glasswing queue about to double the backlog, a scanner that produces 587 critical vulnerabilities and hands the list to a human team is a liability. The practical move is to connect the scanner you already own to a remediation engine that can act on its findings automatically. An &lt;a href="https://www.ivanti.com/autonomous-endpoint-management"&gt;autonomous endpoint management&lt;/a&gt; (AEM) platform, with ring-based deployment and rollback, and vulnerability intelligence to provide risk-based context for efficient remediation decisions so the list shrinks without a humans making every decision.&lt;/p&gt;

&lt;h2 id="toc_2"&gt;“We drive approvals through our ticketing system”&lt;/h2&gt;

&lt;p&gt;Speaking of humans having to make decisions… Long linear approval processes are going to slow the remediation process significantly. When is the last time you had to decide whether you were going to deploy the latest OS or browser update?&lt;/p&gt;

&lt;p&gt;Organizations already know they are going to deploy these updates. Often the approval process is due to complex internal politics and misalignment on security outcomes. The end result? A very linear process that requires the vulnerability scanner previously mentioned, an analyst approving what you already know needs to be done, tickets going out to business owners for approval and sitting in inboxes waiting for approval, and ultimately valuable time wasted on a decision that was essentially already well understood and did not need to be made.&lt;/p&gt;

&lt;p&gt;The market shift to &lt;a href="https://www.ivanti.com/exposure-management"&gt;Exposure Management&lt;/a&gt; is approaching this process very differently by focusing on defining an organizations risk-appetite and monitoring risk-posture. Next time a Windows OS update releases you already know you will deploy it, the schedule you will deploy it on and your SLA and compliance metrics you will measure success by. What you really want to know is:&lt;/p&gt;

&lt;p&gt;1. Do I need to move faster because the update includes known exploited vulnerabilities?&lt;/p&gt;

&lt;p&gt;Or&lt;/p&gt;

&lt;p&gt;2. Is the update impacting operations and we need to slow down (good thing the Autonomous Endpoint Management platform includes ring deployment with rollback)?&lt;/p&gt;

&lt;h2 id="toc_3"&gt;“We have Intune”&lt;/h2&gt;

&lt;p&gt;Microsoft Intune has two scope limits that matter here.&lt;/p&gt;

&lt;p&gt;First, it only manages devices enrolled with it. Unenrolled and unmanaged endpoints — servers, contractor laptops, shadow IT, neglected edge devices — sit outside its visibility entirely. During periods of increased vulnerability volume, those blind spots multiply faster than teams can handle manually.&lt;/p&gt;

&lt;p&gt;Second, while Intune simplifies application deployment and updates, its third-party application coverage and prioritization depth are narrower than most administrators realize. Intune can tell you &lt;em&gt;what’s out of date&lt;/em&gt;, but not &lt;em&gt;what actually increases your exposure&lt;/em&gt;––which forces teams to patch everything reactively, or based on guesswork when time is scarce.&lt;/p&gt;

&lt;p&gt;Most enterprise environments aren’t exclusively Windows, fully enrolled, or running a small, homogenous app stack. When vulnerability disclosures spike, routing patching leaves gaps and turns into systemic risk.&lt;/p&gt;

&lt;p&gt;Keep Intune. Pair it with a discovery and remediation layer that finds the assets Intune can't see, prioritizes the vulnerabilities that matter most, and applies patches with confidence across the applications Intune doesn’t cover.&lt;/p&gt;

&lt;h2 id="toc_4"&gt;What to do about it&lt;/h2&gt;

&lt;p&gt;Automation is the operating model. It has to be built into the workflow.&lt;/p&gt;

&lt;p&gt;Practitioners have known the principle for a while. It shows up in three places:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;&lt;strong&gt;Continuous triage.&lt;/strong&gt; Known exploited vulnerabilities can follow a zero-day response track especially in less secure parts of the organization like end user systems. Above that, set and define specific applications like the browsers and telecommunication apps to get updated on a priority track that is checked weekly or even daily. Everything else can wait for the regularly maintenance window to come around.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Ring deployment with automated rollback.&lt;/strong&gt; Test ring, early-adopter ring, broad production, mission-critical. The sequence is boring and it works for most maintenance. What's changed is that certain updates will need to compress to fit the exploit window vs waiting for your monthly maintenance. The test ring has to be automated and instrumented — a human checklist can't move that fast.&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Closed-loop verification.&lt;/strong&gt; The patch isn't deployed until it's verified installed on the endpoint, and the CVE isn't closed until a rescan confirms it. Most teams skip that step, which is why compliance evidence becomes a fire drill the week before the audit. That's why we shipped continuous compliance in our platform this week — so compliance evidence is produced continuously and automatically as patches deploy, with automation handling the prioritization decisions most teams don't have bandwidth for.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;Mozilla's 271 Firefox vulnerabilities are a preview. Every major software vendor under Glasswing is about to startfixing more vulnerabilities and at an accelerated pace, and attackers with the same class of capability will be looking for exactly those openings whenever they gain access to a model like it. The resulting AI arms race will have a direct affect on the number and frequency of updates that organizations will have to remediate and at an accelerated pace. Automation is what carries a program through. Teams still doing monthly-only patching are in for a rough stretch.&lt;/p&gt;

&lt;p&gt;If you run an IT or security program, the self-assessment is worth doing now. Take the last critical patch you pushed out. Even better, if a zero-day came out on a Friday would you be able to remediate it by Monday? Time it from CVE publication to verified install on the last endpoint. If that number is measured in weeks, the patch apocalypse is going to find you.&lt;/p&gt;
</description><pubDate>Wed, 29 Apr 2026 14:00:07 Z</pubDate></item><item><guid isPermaLink="false">51324a8a-acee-422c-8cda-511917412ff7</guid><link>https://www.ivanti.com/blog/agentic-ai-itsm-system-of-record</link><atom:author><atom:name>Alka Malik</atom:name><atom:uri>https://www.ivanti.com/blog/authors/alka-malik</atom:uri></atom:author><category>Service Management</category><category>Artificial Intelligence</category><title>Ivanti Launches Agentic AI on the System of Record You Trust</title><description>&lt;p&gt;Investors and enterprises&amp;nbsp;are finally asking&amp;nbsp;the question&amp;nbsp;they'd&amp;nbsp;been avoiding: which software companies will survive the AI revolution, and which will be made obsolete by it? The answer is becoming clear. Companies that serve as the system of record, the authoritative source of truth that AI itself depends on,&amp;nbsp;are essential.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Today, Ivanti is&amp;nbsp;announcing&amp;nbsp;a controlled release of the&amp;nbsp;&lt;a href="https://www.ivanti.com/ai/agenticai"&gt;Ivanti Neurons&amp;nbsp;AI Self-Service Agent&lt;/a&gt;,&amp;nbsp;our first autonomous AI solution.&amp;nbsp;We're&amp;nbsp;building&amp;nbsp;from a position of strategic strength,&amp;nbsp;introducing&amp;nbsp;the new solution&amp;nbsp;initially within our&amp;nbsp;IT Service Management (ITSM)&amp;nbsp;framework, building on our long history of intelligent automation&amp;nbsp;through&amp;nbsp;built-in workflows, our Neurons bot infrastructure, generative AI tools&amp;nbsp;and now a fully conversational autonomous agent.&amp;nbsp;&lt;/p&gt;

&lt;h2&gt;Building the foundation to scale AI&amp;nbsp;&lt;/h2&gt;

&lt;p&gt;There's&amp;nbsp;no shortage of&amp;nbsp;talk&amp;nbsp;about what AI will eventually do,&amp;nbsp;but that potential means nothing&amp;nbsp;without&amp;nbsp;a strong&amp;nbsp;foundation&amp;nbsp;beneath it.&amp;nbsp;&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Operationalizing autonomous AI and scaling its impact across an entire organization requires five foundational capabilities.&amp;nbsp;&amp;nbsp;&lt;/p&gt;

&lt;ol&gt;
	&lt;li&gt;&lt;strong&gt;Knowing what exists:&amp;nbsp;&lt;/strong&gt;AI must&amp;nbsp;operate&amp;nbsp;on&amp;nbsp;accurate&amp;nbsp;discovery data, not assumptions. Without real-time visibility into devices, users, configurations&amp;nbsp;and dependencies, autonomous actions become dangerous.&amp;nbsp;&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Maintaining&amp;nbsp;institutional memory:&amp;nbsp;&lt;/strong&gt;AI needs&amp;nbsp;durable&amp;nbsp;context that survives organizational change. Relationships,&amp;nbsp;history&amp;nbsp;and dependencies&amp;nbsp;must be preserved in a system of record.&amp;nbsp;&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Owning accountability:&amp;nbsp;&lt;/strong&gt;Every autonomous action needs clear ownership and a decision&amp;nbsp;trail. When AI acts on behalf of the organization, someone must be accountable.&amp;nbsp;&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Enforcing policy:&amp;nbsp;&lt;/strong&gt;AI must distinguish between&amp;nbsp;what's&amp;nbsp;technically possible and&amp;nbsp;what's&amp;nbsp;organizationally permissible. Optimization without governance creates compliance risk.&amp;nbsp;&lt;/li&gt;
	&lt;li&gt;&lt;strong&gt;Ensuring auditability:&amp;nbsp;&lt;/strong&gt;Every action or decision made&amp;nbsp;through AI&amp;nbsp;must be traceable,&amp;nbsp;explainable&amp;nbsp;and defensible in an audit.&amp;nbsp;&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;That's&amp;nbsp;not a limitation of any&amp;nbsp;model,&amp;nbsp;but rather the nature of how AI works. AI is powerful, but it&amp;nbsp;operates&amp;nbsp;on data. And if that data is fragmented, inaccurate&amp;nbsp;or ungoverned, the AI built on top of it will be too.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;This is&amp;nbsp;what&amp;nbsp;the&amp;nbsp;&lt;a href="https://www.ivanti.com/ivanti-neurons"&gt;Ivanti Neurons Platform&lt;/a&gt;&amp;nbsp;was built to provide. Our Neurons Platform serves&amp;nbsp;as&amp;nbsp;a robust&amp;nbsp;system of record and control&amp;nbsp;panel&amp;nbsp;for IT and security operations. Our Discovery Engine&amp;nbsp;establishes&amp;nbsp;ground truth.&amp;nbsp;Our&amp;nbsp;&lt;a href="https://www.ivanti.com/glossary/cmdb"&gt;CMDB&lt;/a&gt;&amp;nbsp;preserves relationships, dependencies, and change history. Our&amp;nbsp;&lt;a href="https://www.ivanti.com/products/it-asset-management"&gt;IT Asset Management&amp;nbsp;(ITAM)&lt;/a&gt;&amp;nbsp;capabilities assign ownership, lifecycle, and accountability. Our Software Estate Management enforces&amp;nbsp;what's&amp;nbsp;allowed versus&amp;nbsp;what's&amp;nbsp;merely detected.&amp;nbsp;&amp;nbsp;&lt;/p&gt;

&lt;p&gt;This&amp;nbsp;is&amp;nbsp;more than&amp;nbsp;product&amp;nbsp;architecture.&amp;nbsp;It's&amp;nbsp;the foundation&amp;nbsp;your organization needs&amp;nbsp;to&amp;nbsp;operate&amp;nbsp;securely and intelligently.&amp;nbsp;&lt;/p&gt;

&lt;h2&gt;The&amp;nbsp;journey to&amp;nbsp;autonomous&amp;nbsp;service&amp;nbsp;delivery&amp;nbsp;&lt;/h2&gt;

&lt;p&gt;Agentic&amp;nbsp;AI&amp;nbsp;wasn’t&amp;nbsp;built overnight.&amp;nbsp;At Ivanti,&amp;nbsp;we’ve&amp;nbsp;been building toward this deliberately&amp;nbsp;with a consistent focus on trust, governance,&amp;nbsp;and repeatability.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Our path to autonomous service delivery was strategic and intentional.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Traditional automation:&amp;nbsp;Established&amp;nbsp;rule-based workflows executing predefined tasks in sequence.&amp;nbsp;&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Cognitive AI:&amp;nbsp;Added intelligence&amp;nbsp;through bots, machine&amp;nbsp;learning&amp;nbsp;and predictive analytics, moving IT from reactive to proactive.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Generative AI:&amp;nbsp;Introduced&amp;nbsp;large language models and natural language interaction.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Conversational AI:&amp;nbsp;Deepened interactions by adding intent recognition, sentiment detection, and safety guardrails transforming AI from a tool into an interactive partner.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;And now,&amp;nbsp;autonomous agents&amp;nbsp;that&amp;nbsp;don't&amp;nbsp;just respond but orchestrate actions across systems while&amp;nbsp;maintaining&amp;nbsp;governance at every step.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Each stage&amp;nbsp;was&amp;nbsp;built on the&amp;nbsp;prior one.&amp;nbsp;And each stage delivered real enterprise value&amp;nbsp;only&amp;nbsp;because it was grounded in&amp;nbsp;accurate&amp;nbsp;data,&amp;nbsp;governance&amp;nbsp;and accountability. That foundation is what makes today's announcement possible.&amp;nbsp;&lt;/p&gt;

&lt;h2&gt;Introducing&amp;nbsp;Ivanti Neurons AI Self-Service Agent&amp;nbsp;&lt;/h2&gt;

&lt;p&gt;The problem is one every IT leader knows well&amp;nbsp;—&amp;nbsp;employees struggle to find answers scattered across disconnected knowledge systems. Basic tickets flood the service desk. Users abandon confusing portals in frustration.&amp;nbsp;IT teams get trapped on a ticket treadmill, doing repetitive work instead of the strategic projects that actually move the business forward.&amp;nbsp;Traditional self-service portals&amp;nbsp;haven't&amp;nbsp;solved this.&amp;nbsp;They're&amp;nbsp;rigid, frustrating, and often create more problems than they resolve.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Ivanti&amp;nbsp;Neurons AI Self-Service Agent&amp;nbsp;is different.&amp;nbsp;We’ve&amp;nbsp;all seen&amp;nbsp;chatbots, but this is something else.&amp;nbsp;It’s&amp;nbsp;a true conversational&amp;nbsp;AI agent.&amp;nbsp;It converses, investigates,&amp;nbsp;resolves&amp;nbsp;and escalates only when it needs to. The first release focuses on intelligent knowledge&amp;nbsp;search, incident&amp;nbsp;escalation&amp;nbsp;and&amp;nbsp;the ability to&amp;nbsp;request something from IT using natural language.&amp;nbsp;It feels as easy as texting a friend.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;This&amp;nbsp;initial&amp;nbsp;release&amp;nbsp;delivers&amp;nbsp;three&amp;nbsp;things done exceptionally well: intelligent knowledge&amp;nbsp;search, incident&amp;nbsp;escalation when knowledge&amp;nbsp;isn't&amp;nbsp;enough,&amp;nbsp;and the ability to&amp;nbsp;request from&amp;nbsp;a service catalog without the complexity of self-service portal&amp;nbsp;forms.&amp;nbsp;&amp;nbsp;&lt;/p&gt;

&lt;p&gt;We understand&amp;nbsp;that time, speed,&amp;nbsp;and accuracy are non-negotiable in the digital era&amp;nbsp;and have&amp;nbsp;built&amp;nbsp;the capabilities with that in mind.&amp;nbsp;The AI&amp;nbsp;Self-Service Agent&amp;nbsp;engages in natural conversation, asks the right questions, queries across internal and approved external sources,&amp;nbsp;and surfaces verified answers. If this process alone&amp;nbsp;doesn't&amp;nbsp;resolve the issue,&amp;nbsp;the agent&amp;nbsp;escalates and captures a structured incident from the conversation&amp;nbsp;without&amp;nbsp;requiring the user to&amp;nbsp;repeat their&amp;nbsp;request, ensuring a frictionless user experience.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;This solution is&amp;nbsp;built on an AI framework designed to grow with it&amp;nbsp;as we execute our full vision for autonomous endpoint management.&amp;nbsp;&lt;/p&gt;

&lt;h2&gt;Driving&amp;nbsp;real, measurable&amp;nbsp;outcomes&amp;nbsp;that&amp;nbsp;matter&amp;nbsp;most&lt;/h2&gt;

&lt;p&gt;This launch directly advances strategic outcomes for our customers: improving IT productivity, improving digital employee experience,&amp;nbsp;and&amp;nbsp;bringing teams and business functions together across one unified platform.&amp;nbsp;Here’s&amp;nbsp;what that looks like:&amp;nbsp;&lt;/p&gt;

&lt;p&gt;For the business, that means measurable productivity gains, lower cost per ticket,&amp;nbsp;and IT operating as a driver of strategic outcomes rather than an operational bottleneck.&amp;nbsp;&lt;/p&gt;

&lt;h2&gt;Autonomy&amp;nbsp;requires a&amp;nbsp;foundation&amp;nbsp;you&amp;nbsp;can&amp;nbsp;trust&amp;nbsp;&lt;/h2&gt;

&lt;p&gt;What makes&amp;nbsp;our approach to autonomous AI trustworthy and attainable is that&amp;nbsp;the AI Self-Service Agent&amp;nbsp;is&amp;nbsp;built on&amp;nbsp;a system of record as part of the&amp;nbsp;Ivanti Neurons Platform.&amp;nbsp;This ensures that:&amp;nbsp;&amp;nbsp;&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;Our agentic AI&amp;nbsp;doesn't&amp;nbsp;improvise&amp;nbsp;(that is, hallucinate.)&amp;nbsp;It&amp;nbsp;operates&amp;nbsp;from&amp;nbsp;accurate&amp;nbsp;discovery data, validated asset information,&amp;nbsp;and governed workflows.&amp;nbsp;&lt;/li&gt;
	&lt;li&gt;It knows what devices exist, who owns them, what software is&amp;nbsp;permitted&amp;nbsp;and what policies apply.&amp;nbsp;&amp;nbsp;&lt;/li&gt;
	&lt;li&gt;It&amp;nbsp;maintains&amp;nbsp;durable&amp;nbsp;state and enforces accountability across every action it takes.&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;The&amp;nbsp;operating model&amp;nbsp;is simple,&amp;nbsp;but powerful:&amp;nbsp;Continuously&amp;nbsp;detect&amp;nbsp;issues before they&amp;nbsp;impact&amp;nbsp;users.&amp;nbsp;Decide&amp;nbsp;using trusted data from the system of record.&amp;nbsp;Act&amp;nbsp;through governed automation within defined boundaries.&amp;nbsp;&amp;nbsp;&lt;/p&gt;

&lt;p&gt;This is&amp;nbsp;the difference between AI that generates answers and AI that&amp;nbsp;organizations can trust&amp;nbsp;in production, at enterprise scale.&amp;nbsp;&lt;/p&gt;

&lt;h2&gt;The&amp;nbsp;future&amp;nbsp;we're&amp;nbsp;building&amp;nbsp;&lt;/h2&gt;

&lt;p&gt;This launch is both a milestone and a&amp;nbsp;foundation for&amp;nbsp;what’s&amp;nbsp;next.&amp;nbsp;We're&amp;nbsp;building autonomous capabilities on the system of record that AI itself depends on. That makes our platform more resilient, our customer relationships more&amp;nbsp;durable&amp;nbsp;and the value we deliver stronger over time.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;The future of IT is anticipatory, self-driven&amp;nbsp;and strategic. IT leaders&amp;nbsp;aren't&amp;nbsp;reactive&amp;nbsp;ticket-takers.&amp;nbsp;They're&amp;nbsp;orchestrators of intelligent, self-healing infrastructure. Autonomous agents handle the routine, learn&amp;nbsp;continuously&amp;nbsp;and escalate the complex to human experts&amp;nbsp;—&amp;nbsp;all within governance guardrails that the system of record enforces.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;We've&amp;nbsp;spent years building toward this moment.&amp;nbsp;I'm&amp;nbsp;proud of what our team has delivered,&amp;nbsp;and&amp;nbsp;I'm&amp;nbsp;even more excited about what comes next.&amp;nbsp;&lt;/p&gt;
</description><pubDate>Mon, 20 Apr 2026 22:00:02 Z</pubDate></item><item><guid isPermaLink="false">b1263255-8700-4128-98cd-3091094f2a89</guid><link>https://www.ivanti.com/blog/sovereign-cloud-data-sovereignty-eu</link><atom:author><atom:name>Rob DeStefano</atom:name><atom:uri>https://www.ivanti.com/blog/authors/rob-destefano</atom:uri></atom:author><category>Endpoint Management</category><category>Security</category><title>Digital Sovereignty and Sovereign Cloud: Protecting EU Cloud Data for Operational Resilience</title><description>&lt;p&gt;Traditional data protection followed a straightforward principle: Data stored in country A is protected by the laws of country A; data stored in country B is protected by the laws of country B. But in today’s global economy, where your data physically resides no longer determines which governments can demand access to it.&lt;/p&gt;

&lt;p&gt;Cloud infrastructure brought new jurisdictional complexity. The physical location of data centers, the nationality of the cloud provider's headquarters, and the entity controlling operations can each create competing jurisdictional claims, potentially allowing multiple governments to demand access to the same data.&lt;/p&gt;

&lt;h2&gt;What is digital sovereignty?&lt;/h2&gt;

&lt;p&gt;This challenge has a name: digital sovereignty. Digital sovereignty is the principle that organizations maintain complete control over their data within their home jurisdiction's legal framework. This idea has become a necessity for organizational resilience as businesses work in a more fractured, less trusting geopolitical world. Private and public organizations need secure access to cloud-based platforms that are compliant with local regulatory requirements and shielded from the known or unknown geopolitical risks their region faces.&lt;/p&gt;

&lt;h2&gt;How the U.S. CLOUD act impacts EU data residency&lt;/h2&gt;

&lt;p&gt;The &lt;a href="https://www.justice.gov/criminal/cloud-act-resources" rel="noopener" target="_blank"&gt;2018 US CLOUD (Clarifying Lawful Overseas Use of Data) Act&lt;/a&gt; further cemented these concerns for EU organizations. This law empowers US law enforcement to compel any US-based cloud provider to produce data stored anywhere globally — regardless of the data's physical location or the customer's nationality.&lt;/p&gt;

&lt;p&gt;Both the US CLOUD act and the &lt;a href="https://www.congress.gov/crs-product/IF11451" rel="noopener" target="_blank"&gt;Foreign Intelligence Surveillance Act (FISA)&lt;/a&gt; have given firms in the European Union cause for concern. Through these two policies, US authorities could access data contained within cloud platforms of any US-headquartered organization, even when the cloud data center is stationed in another country.&lt;/p&gt;

&lt;p&gt;For EU‑based companies, using US‑based tools triggers specific &lt;a href="https://www.ivanti.com/blog/what-is-gdpr"&gt;GDPR obligations&lt;/a&gt; because personal data leaves the EU. And since the EU–US Privacy Shield was invalidated (known as “Schrems II”), EU companies need other protections. Standard Contractual Clauses (SCCs) remain valid but are conditional and complex as they require case-by-case review.&lt;/p&gt;

&lt;p&gt;A subsequent Data Privacy Framework has been introduced since, but underlying trust among the nations involved only goes so far. These dynamics increased pressure to ensure &lt;a href="https://www.ivanti.com/use-cases/data-protection-application-security"&gt;data protection&lt;/a&gt;, and so sovereign cloud solutions were needed to ensure operational resiliency.&lt;/p&gt;

&lt;h2&gt;Ivanti Neurons for MDM – Sovereign Edition: built for EU cloud sovereignty&lt;/h2&gt;

&lt;p&gt;For our partners and customers in the EU, Ivanti Neurons for MDM Sovereign Edition addresses these requirements through fundamentally different architecture and operations. Located in Germany and independently operated, this solution was designed to align with the Cloud Sovereignty Framework of the European Commission and has been evaluated by the highly reputable &lt;a href="https://cyberintelligence.institute/" rel="noopener" target="_blank"&gt;cyberintelligence.institute&lt;/a&gt;, where their expert assessment explained:&lt;/p&gt;

&lt;p&gt;“The Ivanti Sovereign Cloud demonstrates a high level of European control in the areas of data processing, security and compliance governance. In its current configuration, the Ivanti Sovereign Cloud achieves at least SEAL 2 certification, meaning that data sovereignty is ensured in all areas. Furthermore, the Ivanti Sovereign Cloud meets the requirements for SEAL 3 certification in many relevant areas, thus achieving digital resilience.”&lt;/p&gt;

&lt;p&gt;You can read the &lt;a href="https://www.ivanti.com/lp/aem/contact/sovereign-cloud-mdm"&gt;full technical assessment&lt;/a&gt; to learn more.&lt;/p&gt;

&lt;h2&gt;Achieving data sovereignty compliance with confidence&lt;/h2&gt;

&lt;p&gt;Neurons for MDM – Sovereign Edition – EU provides European firms with a strategic foundation for their IT and Security platform from a trusted leader, while maintaining local jurisdictional protections for risk management. This means public and private entities can continue their digital transformation with the confidence that their cloud data will remain secure while their operations gain resilience.&lt;/p&gt;

&lt;p&gt;Next steps? Read our whitepaper, &lt;a href="https://www.ivanti.com/resources/whitepapers/sovereign-cloud-strategy"&gt;Sovereign Cloud as a Strategic Necessity for European Organizations&lt;/a&gt;, to discover how Ivanti Neurons for MDM Sovereign Edition achieves and exceeds SEAL 2 certification and provides the sovereign cloud architecture European organizations need to maintain data sovereignty while enabling secure digital transformation.&lt;/p&gt;
</description><pubDate>Fri, 17 Apr 2026 12:30:01 Z</pubDate></item><item><guid isPermaLink="false">1c8ff1fb-4b1f-4f6d-93a5-1e1eb9619ac2</guid><link>https://www.ivanti.com/blog/april-2026-patch-tuesday</link><atom:author><atom:name>Chris Goettl</atom:name><atom:uri>https://www.ivanti.com/blog/authors/chris-goettl</atom:uri></atom:author><category>Patch Tuesday</category><category>Security</category><category>Patch Management</category><title>April 2026 Patch Tuesday</title><description>&lt;p&gt;The lead up to Patch Tuesday has been interesting. We had a Google Chrome zero-day (CVE-2026-5281) that was patched on April 1, an Adobe Acrobat Reader zero-day (&lt;a href="https://helpx.adobe.com/security/products/acrobat/apsb26-43.html" rel="noopener" target="_blank"&gt;CVE-2026-34621&lt;/a&gt;) late in the day on Friday April 10, and several older CVEs that were added to the CISA KEV list yesterday (&lt;a href="https://www.cisa.gov/news-events/alerts/2026/04/13/cisa-adds-seven-known-exploited-vulnerabilities-catalog" rel="noopener" target="_blank"&gt;April 13&lt;/a&gt;). All of this amidst a lot of industry buzz about Anthropic Mythos and &lt;a href="https://www.anthropic.com/glasswing" rel="noopener" target="_blank"&gt;Project Glasswing&lt;/a&gt;.&lt;/p&gt;

&lt;p&gt;What is the correlation between these events and Project Glasswing you ask? Most of the discussions around Mythos have been focused on where it will be used and the ramifications.&lt;/p&gt;

&lt;p&gt;Finding exploitable flaws in code can be a powerful tool for good when used by the vendor writing the code before it is released. However, it will also be used by researchers and threat actors to find flaws in code that is already released and that is where my speculation is directed.&lt;/p&gt;

&lt;p&gt;Consider the knock-on effects of a massive model like Mythos and what it will mean near term and longer term for the software that companies consume. Near term you will have the big players using a solution like this to release more secure code. As researchers and threat actors adopt more robust AI models to identify exploitable flaws this will result in more coordinated disclosures (good), zero-day exploits (bad) and n-day exploits (bad). All of this will result in more frequent, and more importantly, urgent software updates.&lt;/p&gt;

&lt;p&gt;Many organizations currently struggle to keep up with priority updates resolving exploited vulnerabilities when they occur outside of their normal monthly maintenance. I suspect most organizations were not aware of the Adobe Acrobat zero-day exploit until the CISA KEV update yesterday. This means that threat actors had another 2-3 days of free reign to exploit CVE-2026-34621 before most organizations became aware and many of those organizations will likely handle the update as part of their regular maintenance that is starting today on Patch Tuesday.&lt;/p&gt;

&lt;p&gt;Browser security updates are a weekly occurrence. Many other applications that users are utilizing regularly release updates on a continuous cadence, not a set monthly release date. This means many of the user targeted exploits are going to occur in software that is releasing outside of the average organizations maintenance schedules and that frequency is about to increase. It is hard to say if that increase is going to be 1.5x or 5x, but rest assured that the increase will be noticeable and will exacerbate a challenge that most organizations already struggle with – timely patch management.&lt;/p&gt;

&lt;p&gt;Enter Exposure Management. This is really a mindset and maturity change as much as a technology evolution. The mindset change requires us to consider a world where we need to make the decisions up front and monitor those decisions. This is called defining your Risk Appetite and monitoring your Risk Posture. Doing this effectively matures an organizations’ response to risks and makes remediation activities much more clear cut.&lt;/p&gt;

&lt;p&gt;The technology evolution requires the traditional vulnerability assessment technologies to integrate into a broader ecosystem where asset visibility or system of record comes together with vulnerability assessment and vulnerability intelligence solutions to refine when risks require more immediate action vs waiting for your regular maintenance activities to occur. Most important is the need for this tech stack to be integrated with your AEM (Autonomous Endpoint Management) platform as this is where remediation predominantly (and automatically) occurs.&lt;/p&gt;

&lt;p&gt;Now, back to our regularly scheduled Patch Tuesday update. Microsoft has resolved 169 CVEs this month which is a massive patch Tuesday lineup. April Patch Tuesday is the second-largest Patch Tuesday on record behind the October 2025 Patch Tuesday which resolved 175 CVEs. The lineup includes one zero-day exploit (CVE-2026-3220) and one public disclosure (CVE-2026-33825) and breaks down into 8 Critical, 156 Important, 3 Moderate and 1 Low severity.&lt;/p&gt;

&lt;p&gt;The zero-day CVE is in Microsoft SharePoint and the public disclosure is in Microsoft Defender making those two updates the most urgent for this month in addition to the Adobe Acrobat and Google Chrome updates leading up to Patch Tuesday.&lt;/p&gt;

&lt;h2&gt;Microsoft’s known exploited vulnerabilities&lt;/h2&gt;

&lt;p&gt;Microsoft resolved a Server Spoofing Vulnerability in Microsoft SharePoint (&lt;a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32201" rel="noopener" target="_blank"&gt;CVE-2026-32201&lt;/a&gt;). The vulnerability is rated Important by Microsoft and has a CVSS v3.1 score of 6.5, but it has been confirmed to be exploited in the wild. An attacker who successfully exploits this vulnerability can view sensitive information and make changes to the disclosed information. The vulnerability affects SharePoint server Subscription Edition, SharePoint Server 2019 and SharePoint Server 2016. A risk-based prioritization methodology warrants treating this vulnerability as a higher severity than the vendor rating or CVSS score assigned.&lt;/p&gt;

&lt;h2&gt;Microsoft’s publicly disclosed vulnerabilities&lt;/h2&gt;

&lt;p&gt;Microsoft resolved an Elevation of Privilege Vulnerability in Microsoft Defender (&lt;a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-33825" rel="noopener" target="_blank"&gt;CVE-2026-33825&lt;/a&gt;). The vulnerability is rated Important by Microsoft and has a CVSS v3.1 score of 7.8, but has been publicly disclosed. The CVE lists exploit code maturity as Proof-of-Concept which puts this at a higher risk of exploitation. An attacker could use this vulnerability to allow an authorized attacker to elevate their privileges to SYSTEM on the local machine.&lt;/p&gt;

&lt;h2&gt;Ivanti security advisories&lt;/h2&gt;

&lt;p&gt;Ivanti has released one security update for April. The update affects Ivanti Neurons for ITSM and resolves two CVEs. More details and information about mitigations can be found in the&amp;nbsp;&lt;a href="https://www.ivanti.com/blog/april-2026-security-update"&gt;April Security Advisory&lt;/a&gt;.&amp;nbsp;&lt;/p&gt;

&lt;h2&gt;Third-party vulnerabilities&lt;/h2&gt;

&lt;p&gt;Adobe has released twelve updates this month, eleven of which released on Patch Tuesday and the zero-day update for Acrobat that released on Friday, April 10. 54 CVEs were resolved with a breakdown of 39 Critical, 13 Important and 2 Moderate. APSB26-43 resolved the zero-day exploit (&lt;a href="https://helpx.adobe.com/security/products/acrobat/apsb26-43.html" rel="noopener" target="_blank"&gt;CVE-2026-34621&lt;/a&gt;).&lt;/p&gt;

&lt;h2&gt;April update to-do list&lt;/h2&gt;

&lt;ul&gt;
	&lt;li&gt;Adobe Acrobat (&lt;a href="https://helpx.adobe.com/security/products/acrobat/apsb26-43.html" rel="noopener" target="_blank"&gt;CVE-2026-34621&lt;/a&gt;) and Google Chrome (CVE-2026-5281) each had zero-day exploits leading up to Patch Tuesday. Ensure that you are prioritizing remediation of these two products to the latest version.&lt;/li&gt;
	&lt;li&gt;Microsoft SharePoint includes a zero-day exploit (&lt;a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32201" rel="noopener" target="_blank"&gt;CVE-2026-32201&lt;/a&gt;) and should be investigated as a priority especially if you have known update challenges with your SharePoint environments.&lt;/li&gt;
	&lt;li&gt;The Microsoft Windows OS update this month resolves 133 CVEs (depending on edition) and includes 4 Critical CVEs. This update will resolve a significant number of findings across your environment.&lt;/li&gt;
&lt;/ul&gt;
</description><pubDate>Tue, 14 Apr 2026 22:51:36 Z</pubDate></item><item><guid isPermaLink="false">bb18f48d-02e3-4447-ae10-01f3dd87efd8</guid><link>https://www.ivanti.com/blog/april-2026-security-update</link><category>Security Advisory</category><title>April 2026 Security Update</title><description>&lt;p&gt;Ivanti releases standard security patches on the second Tuesday of every month. &amp;nbsp;Our vulnerability management program is central to our commitment to maintaining secure products. Our philosophy is simple: discovering and communicating vulnerabilities, and sharing that information with defenders, is not an indication of weakness; rather it is evidence of rigorous scrutiny and a proactive vulnerability management program. By aggressively seeking to identify and address vulnerabilities, our aim is to get ahead of threat actors to ensure our customers can take the steps needed to protect their environments.&lt;/p&gt;

&lt;p&gt;We believe that responsible transparency helps protect our customers, and that CVE disclosures are an essential and effective tool to communicate software vulnerabilities. The purpose of assigning a CVE is to provide a beacon to security teams and signal the need for urgent updates.&lt;/p&gt;

&lt;p&gt;To that end, today Ivanti is disclosing vulnerabilities in Ivanti Neurons for ITSM (on-premises and cloud).&lt;/p&gt;

&lt;p&gt;&lt;span&gt;&lt;b&gt;It is important for customers to know:&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;We have no evidence of these vulnerabilities being exploited in the wild.&lt;/li&gt;
	&lt;li&gt;These vulnerabilities do not impact any other Ivanti solutions.&lt;/li&gt;
	&lt;li&gt;Customers using the cloud version of Ivanti Neurons for ITSM do not need to take any action as the fix was applied on 12 December 2025 to all cloud environments.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;More information on these vulnerabilities and detailed instructions on how to remediate the issues can be found in this &lt;a href="https://forums.ivanti.com/s/article/Security-Advisory-Ivanti-Neurons-for-ITSM-CVE-2026-4913-CVE-2026-4914" target="_blank"&gt;Security Advisory&lt;/a&gt;.&lt;/p&gt;

&lt;p&gt;&lt;em&gt;Want to stay up to date on Ivanti Security Advisories? Paste &lt;a href="https://www.ivanti.com/blog/topics/security-advisory"&gt;https://www.ivanti.com/blog/topics/security-advisory/rss&lt;/a&gt; into your preferred RSS reader / functionality in your email program.&lt;/em&gt;&lt;/p&gt;
</description><pubDate>Tue, 14 Apr 2026 14:08:24 Z</pubDate></item><item><guid isPermaLink="false">8909ebf6-4f41-4388-8f2b-09732436f737</guid><link>https://www.ivanti.com/blog/agentic-ai-for-it-not-all-agents-are-created-equal</link><atom:author><atom:name>Meeta Dash</atom:name><atom:uri>https://www.ivanti.com/blog/authors/meeta-dash</atom:uri></atom:author><category>Service Management</category><title>Not All Agents Are Created Equal: Getting Agentic AI Right for IT</title><description>&lt;p&gt;Three months ago, a CIO told me her organization had “already deployed agents.” Her endpoint team assumed she meant the telemetry clients on every managed laptop. Her service desk thought she meant AI chatbots. Meanwhile, her security architect heard “autonomous decision-making.” They were all right and all talking past each other.&lt;/p&gt;

&lt;p&gt;This is the agent confusion problem. It sounds like a semantics issue, but it creates real misalignment when teams try to get serious about implementing agentic AI. So, let’s untangle it.&lt;/p&gt;

&lt;h2&gt;Three types of “agents” for IT — and how they fit together&lt;/h2&gt;

&lt;h4&gt;1. Endpoint agents&lt;/h4&gt;

&lt;p&gt;Endpoint agents are the lightweight clients that have run silently on managed devices for decades — collecting telemetry, executing policies, applying patches. If you run a modern &lt;a href="https://www.ivanti.com/blog/unified-endpoint-management-uem-service-management-itsm-critical-connections"&gt;endpoint management platform&lt;/a&gt;, they’re already across your fleet doing the quiet, continuous work. They're your infrastructure layer: always listening and reporting but &lt;i&gt;not &lt;/i&gt;making decisions.&lt;/p&gt;

&lt;h4&gt;2. Automation bots and workflows&lt;/h4&gt;

&lt;p&gt;Automation bots and workflows handle the repetitive, structured processes IT runs on: proactive issue identification, self-healing, password resets, account unlocks, software provisioning, approval chains. These aren’t legacy limitations to apologize for. A well-built password reset bot is fast, predictable and exactly right for that job. They're your execution layer: reliable, auditable and purpose-built.&lt;/p&gt;

&lt;h4&gt;3. AI agents&lt;/h4&gt;

&lt;p&gt;AI agents are something genuinely different. Where endpoint agents collect data and automation bots execute tasks, AI agents coordinate both. Orchestrated by large language models (LLMs), they understand intent, reason across context from multiple systems, plan multi-step actions and decide when to escalate an issue that requires human expertise.&lt;/p&gt;

&lt;p&gt;&lt;i&gt;But here’s the nuance that matters:&lt;/i&gt; a well-designed AI agent doesn’t replace the automation bot; it &lt;b&gt;&lt;i&gt;calls &lt;/i&gt;&lt;/b&gt;it. When an employee asks to reset their password through a conversational interface, the AI handles the dialogue, verifies identity, applies policy logic and then triggers the existing workflow to execute. Intelligence orchestrating automation. That’s the architecture worth building toward. Add endpoint telemetry, and the picture gets richer.&lt;/p&gt;

&lt;p&gt;&lt;b&gt;Here’s what this looks like in practice:&lt;/b&gt;&lt;/p&gt;

&lt;p&gt;An employee messages: “&lt;i&gt;My laptop has been crawling since the last patch.&lt;/i&gt;”&lt;/p&gt;

&lt;p&gt;&lt;b&gt;The AI agent:&lt;/b&gt;&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;Interprets the intent, recognizes this as a performance issue potentially triggered by a recent change.&lt;/li&gt;
	&lt;li&gt;Pulls real-time CPU load, disk usage and startup process data from the endpoint layer.&lt;/li&gt;
	&lt;li&gt;Triggers a targeted remediation. Not a guess. A data-informed, auditable action.&lt;i&gt;&lt;/i&gt;&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;&lt;i&gt;That’s &lt;/i&gt;what self-healing IT looks like at the conversational layer.&lt;/p&gt;

&lt;h2&gt;What makes agentic AI for ITSM work&lt;/h2&gt;

&lt;p&gt;Getting agentic &lt;a href="https://www.ivanti.com/resources/research-reports/itsm-automation"&gt;AI for IT service management&lt;/a&gt; right comes down to a few critical foundations.&lt;/p&gt;

&lt;h4&gt;Start with clean, current knowledge&lt;/h4&gt;

&lt;p&gt;An AI agent is only as good as what it knows and what context it has. Before enabling any agentic capability, &lt;a href="https://www.ivanti.com/blog/the-importance-of-accurate-data-to-get-the-most-from-ai"&gt;audit your knowledge base&lt;/a&gt; and ask these key questions:&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;Is it current?&lt;/li&gt;
	&lt;li&gt;Is it tagged by use case?&lt;/li&gt;
	&lt;li&gt;Is it maintained after major changes?&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;Outdated knowledge leads to wrong outputs that quickly destroy employee trust. That said, these same AI agents can be used to accelerate knowledge creation, too. Every resolved ticket is a draft article. Every question the agent can't confidently answer is a knowledge gap it just surfaced for you. The agent becomes a contributor to your knowledge base, not just a consumer of it.&lt;/p&gt;

&lt;h4&gt;Provide context&lt;/h4&gt;

&lt;p&gt;Knowledge alone isn’t enough. Agents need real-time context across your entire IT environment. This includes device data from your CMDB, role and access information from HR systems and ticket history from ITSM. With this context layer, it’s possible to move from a smart-sounding bot to an agent that can close the loop.&lt;/p&gt;

&lt;h4&gt;Set governance guardrails&lt;/h4&gt;

&lt;p&gt;Having control and &lt;a href="https://www.ivanti.com/blog/ai-governance-framework-responsible-ai-guardrails"&gt;AI guardrails&lt;/a&gt; is not optional. Be deliberate about what the agent handles autonomously, what needs a human approval step and what always escalates. Having a human in the loop isn’t about being overly cautious. Rather, it’s a deliberate, intelligent design. For anything security-sensitive like MFA changes, privilege adjustments or data access requests, the agent should surface the decision, &lt;i&gt;not &lt;/i&gt;make it unilaterally. Companies must build those thresholds from the start, not try to retrofit them later.&lt;/p&gt;

&lt;h4&gt;Change management&lt;/h4&gt;

&lt;p&gt;Even with the perfect setup, deployment fails when companies don’t consider change management.&lt;/p&gt;

&lt;p&gt;Your service desk team needs a clear mental model of what the agent handles and where they take over. You might think of it like any other division of labor: you don't want overlap. You don't want humans burning cycles on tasks the agent can knock out instantly, and you definitely don't want the agent making calls where policy says a human needs to be in the loop. Clean boundaries keep both sides working at their highest value.&lt;/p&gt;

&lt;p&gt;Your employees need to trust that context won’t be lost mid-conversation when an issue is escalated from agent to human. Immediately letting agents do more than foundational support is how a promising pilot becomes a painful rollback. Start narrow and earn the right to expand.&lt;/p&gt;

&lt;h2&gt;Here’s what success looks like&lt;/h2&gt;

&lt;p&gt;To prove ROI with agentic AI, organizations should focus on operational metrics that reflect real impact and can be improved through better orchestration.&lt;/p&gt;

&lt;p&gt;Ticket deflection shows how effectively agents resolve common requests end to end without human involvement. Auto-remediation highlights when systems can diagnose issues and take approved corrective action, reducing manual effort and queue volume. Mean Time to Resolution (MTTR) reflects how much the system shortens the path from request to outcome by removing handoffs and tool switching.&lt;/p&gt;

&lt;p&gt;Together, these metrics indicate whether agentic AI is truly reducing work, not just shifting it. But the most important measure is end-user satisfaction (CSAT). Speed without satisfaction simply creates faster friction.&lt;/p&gt;

&lt;p&gt;The best agentic AI is invisible. Employees ask for help, get what they need, and move on without noticing the workflows, checks, or automated actions behind the scenes. Organizations that achieve success design agentic systems intentionally, with clear guardrails and a strong understanding of how autonomy reshapes operations.&lt;/p&gt;

&lt;h2&gt;Next steps&lt;/h2&gt;

&lt;p&gt;If you are evaluating the role of self‑service agentic AI in your IT ecosystem, a conversational entry point is often the most practical place to begin. Consolidating incident creation, service requests, knowledge access, and status checks into a single interface can reduce friction for employees while still respecting policies and existing workflows.&lt;/p&gt;

&lt;p&gt;This approach lays the groundwork for a broader agentic platform. For IT leaders under pressure to do more with less, this is the moment to deliberately define how AI should operate, where autonomy adds value, and where guardrails are required.&lt;/p&gt;

&lt;p&gt;Ready to take the next step in your agentic AI journey? Get our &lt;a href="https://www.ivanti.com/resources/whitepapers/navigating-the-shift-to-agentic-ai-in-it-service-management"&gt;whitepaper&lt;/a&gt; for the framework, maturity model and implementation roadmap you need to succeed.&lt;/p&gt;
</description><pubDate>Wed, 08 Apr 2026 13:00:06 Z</pubDate></item></channel></rss>