Confidence in Action​

Q3 / 2026 Product Releases

Why is this release important?

This release turns insight into action. By bringing together trusted asset data, risk intelligence, and autonomous operations, Ivanti helps organizations respond faster, operate more efficiently, and stay ahead of risk without sacrificing governance or trust.

Autonomous Endpoint Management

Ivanti helps organizations shift from reactive endpoint operations to autonomous, outcome-driven management. By unifying endpoint management, digital experience management, self-healing and autonomous patch management capabilities, Autonomous Endpoint Management enables IT and security teams to continuously discover, assess, prioritize, and remediate IT issues before they impact users.

Autonomous Patch Management with Predictive Remediation

Predictive Remediation represents the next evolution beyond risk-based patching, helping organizations close the gap between risk identification and action. Built on Ivanti’s trusted data authority and advanced Autonomous Patch Management capabilities, the new capability helps IT and security teams forecast compliance outcomes, surface remediation blockers before SLA windows close, and translate security priorities into governed, executable patch action so organizations can reduce reactive firefighting and strengthen their risk posture with greater confidence.

Ivanti Neurons Platform

Tech Preview — MCP (Model Context Protocol) Server access

Enables natural-language interaction with operational data to improve the relevance and accuracy of AI-driven outputs. Initial capabilities focus on grounding AI insights in platform context, with broader real-time interaction and actionability evolving over time.

Tech Preview — Connected AI-Assisted Workflows

Brings together a set of AI-assisted capabilities that help teams investigate, automate, and take action more efficiently across the platform through assistive, opt-in, and admin-controlled AI experiences:

  • AI-Powered Device Query Builder — Uses natural language to generate accurate device queries, reducing manual effort and accelerating investigation.
  • AI-Powered PowerShell Stages — Enables AI-assisted script creation and execution within workflows, simplifying automation.

Autonomous Endpoint Management

Digital Experience Management

Non-Persistent VDI support extends into the Edge Intelligence UI, ensuring a cohesive platform experience as Ivanti continues to embrace virtual desktop environments. The real-time dashboard, targeting, and device landing page behavior have all been updated to reflect non-persistent device properties, giving IT teams accurate visibility and consistent management across both physical and virtual endpoints. Whether your workforce runs on persistent or non-persistent infrastructure, Workspace now delivers the same powerful experience across the board. From group-based role assignments with SCIM support to enhanced Software Usage tracking and License Manager filtering, DEX gives modern IT teams the visibility and control they need to support distributed workforces with confidence.

Release Notes

Unified Endpoint Management

OS Provisioning eliminates the need for EPM migration SKUs and brings Windows OS reimaging natively into the Neurons platform. Powered by Vboot, the Neurons agent can now boot a system, wipe the hard drive, and deploy a fresh Windows OS, all without additional tooling or infrastructure. Partitioning, OS image deployment, and Neurons agent enrollment are consolidated into a single OSD workflow, giving IT teams a faster, simpler path to remediating compromised or degraded devices at scale.

Release Notes

Mobile Device Management

Administration/Platform:

  • Refreshed lefthand navigation is significantly more intuitive for systems administrators to find the functions they need. This navigation makes it easier to move between workflows and discover additional capabilities.
  • Expanded cloud connector support includes Hyper V and Nutanix Hypervisor.
  • Phased rollout of Ivanti Neurons configuration (Tunnel/Wi-Fi).


Apple:

  • DDM Application management.
  • Standalone DDM restrictions for Siri, External Intelligence, and Keyboard.
  • DEP token sync notification.
  • Support for forthcoming Apple OS 27 releases.


Android:

  • Improved end user setup for Google BeyondCorp, including device identification improvements.
  • Enhancements to how errors are detected and reported when security patches are deployed, with more details for system admins.
  • Continuously monitor SIM card status, alerting admins in real time if a card is removed/replaced.
  • Migration experience that makes it easy to move from Managed Google Play Account to a Google Managed Domain.
  • Enable admin access to settings while a device is in single-app kiosk mode.
  • Global proxy support standardization that is consistent with management of Apple devices.

Release Notes

Patch Management

Autonomous Patch Management delivers Oracle Linux 10 support and a variety of usability enhancements including: ring-level patch visibility, automatic retry count resets, recategorized patch statuses that eliminate false failure signals, multi-select across pages for bulk actions, large data exports up to 100,000 advisories, average compliance scoring, expanded comment fields, and clearer ring status labels.

Release Notes

Predictive Remediation

Introducing Predictive Remediation, helping teams anticipate where compliance goals will slip, uncover remediation blockers early, prioritize by real risk impact, not just CVSS, and act before deadlines close, all within a single system of record that connects asset visibility, risk signals, and patch execution.

Endpoint Manager Mobile (EPMM)

Administration/Platform:

  • Expanded cloud connector support includes Hyper V and Nutanix Hypervisor.

Apple:

  • Toggle restrictions for easy deployment of restriction payloads.
  • Standalone DDM restrictions for Siri, External Intelligence, and Keyboard.
  • Beta OS version management is now easier to target and deploy to prevent mis-assignment of beta updates.
  • Support for forthcoming Apple OS 27 releases.

Android:

  • Serial numbers are included in admin portal, expanding ways admins can search for devices in the ecosystem.
  • Unattended Help@Work enabled.

Release Notes

Secure Productivity Apps

  • FIPS compliant cryptography across Docs@Work and Web@Work apps, AppConnect.
  • Email+: Migration from Exchange Web Services to Graph API for Office365, FIPS compliance.
  • Ivanti Go: Enforce approved email client and browser for opening any work-related company links or attachments. End users receive feedback on forced device check-in letting them know request is being processed. Tunnel integration into the Ivanti Go client for Android.
  • Sentry: Enhanced syslog for more focused analysis of events; Nutanix AHV Hypervisor support; Splunk upgrade support.
  • Tunnel: Integration into Ivanti Go app for Android.

Release Notes

Patch Content Catalog

Coverage keeps growing: new products and major versions are added regularly to the patch content catalog. Have a request? Submit and vote on priorities directly in Aha! to help shape what's next.

Learn More

Security Controls (ISeC)

ISeC now supports Oracle Linux 10 patching and auto-detects Microsoft checkpoint update chains, delivering one controlled reboot for end users and faster, higher first-pass success for admins.

Release Notes

Application Control & Privilege Management

AI Assistant (Tech Preview) brings generative AI to rule creation and dramatically reduces the time and expertise required to configure and maintain application controls. Administrators can now describe a use case in plain language and receive a draft rule item generated by AI, ready for review and approval before deployment. By streamlining one of the most resource-intensive parts of the App Control implementation process, this innovation lowers the barrier to strong security posture and accelerates time-to-value for teams of all sizes.

Release Notes

User Workspace Manager

Configuration Management brings version control and lifecycle management to UWM configurations directly within the Neurons platform. IT teams can now delete, promote, and roll back configuration versions with ease. This eliminates the risk of unintended changes and unblocking migrations for UWM Hybrid customers. This flexible configuration management capability is a critical step forward in aligning UWM with the broader Neurons policy architecture and giving administrators the control they need to manage complex environments with confidence.

Release Notes

Risk-based Vulnerability Management (RBVM)

Ivanti Neurons for RBVM brings new platform improvements, including updates to the Policy Compliance widget that make compliance posture review faster. RBVM also features updates to integrations, such as enhancements to Orca and the introduction of ITSM CMDB, which helps RBVM users prioritize and organize assets and findings.

Application Security Posture Management (ASPM)

Ivanti Neurons for ASPM brings new platform improvements, including updates to the Policy Compliance widget that make compliance posture review faster. ASPM also features updates to integrations, such as enhancements to Orca.

Vulnerability Knowledge Base

Leverage in-depth insights into critical vulnerabilities through updated system views.

Network Security

This quarter's updates advance Ivanti's Network Security portfolio with expanded automation, modernized infrastructure, and enhanced security across access, control, and application delivery. New API-driven management, certificate lifecycle automation, passwordless authentication, and Zero Trust scalability deliver more resilient, efficient access architectures — supporting evolving enterprise demands and long-term modernization.

Connect Secure

ICS 25.1.3.0 will advance the secure access foundation with expanded automation and enhanced operational visibility across deployment environments. Customers can expect to gain broader API coverage with Postman collections, REST-based diagnostics, and capabilities that simplify troubleshooting, session management, and configuration workflows. Admins will be able to create, update, and delete multiple ACLs in a single request and run them in batches using PATCH API, enabling more scalable bulk policy management. New support for OAuth group-based role mapping and FIDO2-based authentication will strengthen identity security, while ACME for automated certificate lifecycle management and HTTP/2 ingress will enhance scalability and performance. Additional enhancements coming soon—including IPv6 support for Default VLAN ID, websocket proxying, and secure boot with vTPM in AWS and GCP—will improve flexibility, resilience, and system integrity, helping organizations prepare for larger, more dynamic deployments.

Release Notes - Version 22.7R2.11

Release Notes - Version 22.8R2.2

Release Notes - Version 25.1.1.0

Secure Access

Ivanti’s cloud-based management solution continues to enhance gateway lifecycle management, scalability, and operational control across distributed environments. Improvements to gateway upgrade workflows, including CDN-based delivery and validation enhancements, streamline upgrade reliability and reduce operational risk. Expanded tenant and subtenant management, along with new licensing frameworks—including support for cloud storage—span Ivanti Neurons for Secure Access and Zero Trust Access, improving flexibility and governance across multi-tenant environments. Together, these enhancements improve flexibility and governance while supporting more consistent, policy-driven access management. New capabilities for scheduled and staged upgrades provide greater control and resilience in maintaining secure access infrastructure. Additionally, early advancements in AI-driven UEBA-based threat detection help reduce alert fatigue by improving detection precision. Together, these enhancements support service providers and distributed organizations operating at scale.

Release Notes

ZTA

ZTA Gateway 25.1.0.0 strengthens Zero Trust deployments with improved scalability, resilience, and operational control. Enhancements including dynamic IP pool support, gateway group stabilization, and ESAP package management expand deployment flexibility and simplify administration. Updates such as tenant admin auditing and the introduction of a feature licensing framework improve governance, compliance visibility, and modularity across ZTA deployments. Foundational infrastructure updates—including AAA migration to NGINX—further modernize, while real-time visibility into ISAC endpoint connection status improves operational awareness and troubleshooting, delivering a more resilient, efficient, and scalable Zero Trust environment.

Release Notes

Secure Access Client

ISAC Desktop:

ISAC Desktop introduces expanded capabilities to enhance security, deployment flexibility, operational visibility, and user control across environments. Industry-first support for Microsoft Windows Hello for Business (WHFB) allows users to authenticate VPN connections using their Windows login, streamlining access to both Microsoft Entra ID and Active Directory resources while improving the sign-in experience. Native packet capture functionality enhances troubleshooting and diagnostic accuracy by eliminating reliance on third-party tools and providing built-in visibility into both L3 tunneled and non-tunneled traffic, with controls to start, pause, resume, and stop packet capture as needed.

This release also improves security posture and deployment flexibility through optional installation of Ivanti Secure Access Client (ISAC) helper components, such as PSAL and SetupClient, allowing organizations to maintain a lighter installation footprint while deploying updates independently. User experience enhancements, including new Connect and Disconnect controls and Split DNS enable/disable configuration options supported for Windows ISAC, provide greater usability and administrative control. Support for Linux RHEL 10 and Fedora 43 further expands compatibility across modern enterprise environments.

Release Notes

ISAC Mobile:

In the Q3 2026 release, ISAC Mobile enhances mobile access security with the addition of FIDO2 passwordless authentication and U2F support across Android and iOS, enabling phishing-resistant, standards-based authentication. These capabilities improve both security posture and user experience by reducing reliance on traditional credentials. Additional platform readiness updates—including Day Zero support for Android 17—ensure continued compatibility and performance as mobile ecosystems evolve, delivering a more secure and future-ready mobile access experience.

Release Notes

Application Delivery Controller (vADC)

vADC 22.9R5 enhances traffic management, security, and administrative control across application delivery environments. Updates to Services Director modernize centralized management while added MFA support for Virtual Traffic Manager (vTM) administrators and stronger protections for custom scripts enhance overall security posture. A new load balancing algorithm coming soon will improve traffic efficiency and performance. These updates provide customers with more efficient traffic handling, improved governance, and stronger protection for critical application delivery infrastructure.

Release Notes

Policy Secure

Policy Secure and Profiler 2026.3 advances modernization with continued Oracle Linux Migration (OLM) migration and support for new ISA appliances with 25.X software, aligning network access control with the latest secure access architecture. Together, these updates strengthen compatibility with modern infrastructure while improving resilience and manageability for enterprise network access control environments.

Release Notes

Supply Chain

person interacting with a smart device in a warehouse.

Velocity Platform

Operations teams can now use location services within the Velocity client to record key info such as vehicle, delivery and service locations.

Release Notes

Velocity Forms

Our latest release includes routing Velocity Forms to SharePoint, and expanded conditional controls.

Release Notes

Woman wearing earphones and looking at a laptop screen.

Training & Certification

Ivanti Advantage Learning

New training releases this quarter delivered expanded learning opportunities across Connect Secure, EPM, ITSM, ITSM Developer, and RBVM, providing customers with updated resources to strengthen skills and accelerate adoption.

Ivanti Neurons Platform - Consultant - Certification Update

Updating the Neurons Platform/Neurons Patch Consultant Certification training to included all the updates and changes that have been made over the last year.