Tenable One adds continuous security control validation for risk prioritization
Tenable Holdings has enhanced its Tenable One Exposure Management Platform with continuous security control and validation capabilities. The update utilizes Tenable Hexa AI to help security teams prioritize exploitable threats over theoretical risks. The feature is immediately available to existing customers.

*this image is generated using AI for illustrative purposes only.
Tenable Holdings, Inc. has extended the capabilities of its Tenable One Exposure Management Platform to include continuous security control and validation. This enhancement is designed to help security teams confirm which cyber exposures are truly accessible and exploitable, allowing for more precise prioritization and overall risk reduction. The new functionality is now available to all Tenable One customers.
Exploitability is highly dependent on the specifics of an organization's environment. Without continuous security validation, security teams often lack a reliable way to distinguish true threats from false positives. This inefficiency leads to remediation efforts being spent on potential risks that may already have active mitigations in place, a burden that increases as AI speeds up vulnerability discovery.
By weaving compensating security controls directly into the exposure prioritization process, Tenable One aims to eliminate the noise from theoretical risks that are functionally blocked by existing defenses. The platform continuously validates security controls by cross-referencing threat intelligence and attack feasibility against the real-time defense status.
This data is fed into Tenable Hexa AI, the platform's agentic engine, to facilitate streamlined and automated remediation. The integration allows security teams to stop chasing theoretical risks and focus resources on true, exploitable threats. The company states this provides CISOs with confidence in their evidence-based exposure management strategy against AI-powered attacks.
"Our customers' biggest challenge is knowing which exposures attackers can actually exploit and how to prioritize them," said Eric Doerr, Chief Product Officer, Tenable. "With continuous security control validation, Tenable One now delivers visibility and context into customers' unique security controls, further enhancing prioritization efforts."
| Feature | Function |
|---|---|
| Continuous Security Control Validation | Confirms accessible and exploitable cyber exposures |
| Tenable Hexa AI Integration | Enables streamlined, automated remediation |
| Real-time Defense Status | Cross-referenced with threat intelligence and attack feasibility |
How will competitors in the exposure management market respond to Tenable's integration of continuous validation?
What impact will this increased automation have on the size and structure of security teams?
Could this capability drive new industry standards for prioritizing vulnerabilities over traditional CVSS scores?
























