---
sourceDocument: Brazil Security Management
sourceDocumentLink: https://www.servicenow.com/docs/r/security-management

 Release :

    - brazil

ft:locale :

    - en-US

ft:publication_title :

    - Brazil Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Generative AI skills with USEM

# Using generative AI skills {#ariaid-title1}

Release version: Brazil  
Updated September 10, 2026  
![](https://www.servicenow.com/docs/portal-asset/ico-clock) 3 minutes to read
Summarize  
![AI sparkle icon](https://servicenow.com/docs/portal-asset/ai-sparkle-icon) Summarized using AI  
This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.  

## Summary of Using generative AI skills

Generative AI skills in ServiceNow empower vulnerability managers and analysts to efficiently address remediation tasks by providing automated insights, recommendations, and data analysis within their workflow.
Access to these AI features depends on your ServiceNow license and product tier.
All AI skills operate within the global domain but respect domain separation, ensuring data privacy and preventing data co-mingling in multi-domain environments.
Show full answer Show less  

## Key Features

* **Security Exposure 360:** Allows users to ask plain language questions to get comprehensive answers about vulnerabilities across hosts, containers, and test results.
* **AI Guardrails Helper Skill and Agentic Workflow:** Helps identify finding types, understand mapped guardrails, and determine mitigation or deferral status (available only in the USEM workspace).
* **Generate Vulnerability Insights:** Provides contextual summaries and actionable recommendations to help understand security posture and prioritize critical findings.
* **Exception and False Positive Approval Recommendations:** Offers on-demand AI recommendations to streamline approval processes for exceptions and false positives.
* **API Connector Builder Assistance:** Automatically populates steps in the API Connector builder to facilitate connector creation (requires specific applications installed and activated).
* **Duplicate Vulnerable Item Identification:** Detects and groups duplicate vulnerable items from multiple scanners, aiding in closure of duplicates.
* **Suggest Vulnerability Solutions:** Recommends the most appropriate preferred solutions for active host vulnerable items using imported current solutions from third-party vendors (requires Vulnerability Solution Management application and populated Configuration Item and Vulnerability fields).
* **Approval Impact Analysis Recommendations:** Provides AI-driven insights to optimize the approval process for exception and false positive requests.

## Practical Considerations

* Generative AI skills are supported in both legacy and USEM workspaces, with some limited to USEM.
* Data privacy is maintained as AI only accesses data within the user's domain in domain-separated instances, and AI requests and responses are not persisted by shared services.
* Some skills require additional ServiceNow applications (e.g., Vulnerability Solution Management) to be installed and activated.
* Utilizing these AI capabilities can significantly enhance vulnerability management efficiency, insight generation, and decision-making within your security operations.  
AI skills help vulnerability managers and analysts resolve remediation tasks within their flow of work by providing automated insights, recommendations, and data analysis.  
Note:  
Depending on your license, you will have access to certain application features, generative AI skills, agentic workflows, and AI agents. For more information, see [ServiceNow product tiers](https://www.servicenow.com/docs/access?context=ai-native-sku-overview&version=brazil&pubname=brazil-intelligent-experiences&ft:locale=en-US).

## Skills in global domain reuse {#using-now-assist-skills-vulnerability-response__id_b2m_c3n_3hc}

By default, all skills exist in the global domain. When you use AI in a domain-separated environment, users are only able to access data in their domain. For example, if a user uses the
summarization skill, AI only uses material that exists in the user's domain when generating that summary. Additionally, there is no co-mingling of data for domain-separated instances when using generative AI skills. The data resides
only on the instance, and the shared services used for generative AI do not persist any requests (prompts) and responses. For more information, see [Domain separation in the AI Admin Hub console](https://www.servicenow.com/docs/access?context=domain-separation-in-the-now-assist-admin-console&version=brazil&pubname=brazil-intelligent-experiences&ft:locale=en-US). (Note that global domain is not the same as global scope. For more information, see [Exploring Next Experience pickers](https://www.servicenow.com/docs/access?context=next-experience-pickers&version=brazil&pubname=brazil-platform-user-interface&ft:locale=en-US).){#using-now-assist-skills-vulnerability-response__na-skills-global-domain-explanation}

## Overview of available ServiceNow Otto for Unified Security Exposure Management skills {#using-now-assist-skills-vulnerability-response__cf-using-parent-workflow}

With generative AI skills with ServiceNow Otto for Unified Security Exposure Management, your vulnerability managers and analysts have the option to use generative AI skills to help them with the following tasks. Unless otherwise noted, these generative AI skills are
supported in both the legacy and Unified Security Exposure Management (USEM) workspaces.
{#using-now-assist-skills-vulnerability-response__table_cw1_njt_hjc__entry__3}

| Generative AI skill | Description | Users |
|-|-|-|
| [Evaluate vulnerability exposure data with Security Exposure 360](https://www.servicenow.com/docs/NyYpCEYP~jlc2FFGlIP~wQ "Use the Security Exposure 360 agentic workflow to review vulnerability data about your environment. Vulnerability analysts and remediation owners can enter questions in plain language and receive comprehensive answers about host, container, and test results vulnerabilities.") | Enter questions in plain language to receive comprehensive answers about findings for host, container, and test results vulnerabilities. | Vulnerability managers and analysts |
| [Using the AI guardrails helper skill and agentic workflow](https://www.servicenow.com/docs/GdcoICWlWGiz0ASckt~C1Q "The AI guardrails helper skill and agentic workflow can help you understand finding types, associated guardrails, and how guardrails map to findings. See what type of findings you have, understand the guardrails associated with findings, and see why the skill to mapped guardrails to particular findings.") | Identify finding types, understand mapped guardrails, and see why specific findings were selected for mapping. This information helps you determine which findings are already mitigated or deferred for later review. Note: Supported only in the Unified Security Exposure Management (USEM) workspace. | Vulnerability analysts, vulnerability managers, and chief information security officers (CISOs) |
| [Generate vulnerability insights with generative AI](https://www.servicenow.com/docs/jVoyJUZQeU190jVLvQ~oqw "Use the Security Exposure Management (SEM) Insights generative AI skill to provide contextual summaries and actionable recommendations in the Security Exposure Management (SEM) Workspace. Use insights based on exposure data, threat intelligence, remediation status, and asset context to surface dynamic insights for findings views. Help admins, analysts, and vulnerability managers prioritize critical risks and take immediate remediation actions.") | Receive insights based on contextual summaries and see actionable recommendations. | Vulnerability managers and analysts |
| [Get exception and false positive approval recommendations](https://www.servicenow.com/docs/5ZFI6qpdg7f_N0HJTYvurA "Use a generative AI skill to streamline the approval process for exceptions and false positive requests with AI-driven recommendations. Reduce manual effort and improve decision accuracy for your approvers in the Security Exposure Management Workspace.") | Receive on-demand approval and false positive recommendations. | Exception and false positive approvers |
| [Create an API connector with generative AI](https://www.servicenow.com/docs/pF8Z0cuR2HP0HZXCYVl45w "Use the SPC Setup Connector skill to automatically complete configuration steps 3-5 in the Connector builder in the Security Posture Control Workspace.") | Automatically populate steps in the API Connector builder. Note: You must install and activate [the required applications](https://www.servicenow.com/docs/rO4Vh3W7TiAhr7JF_FGlwQ "Developers can use the SPC Setup Connector generative AI skill to help them quickly and automatically create an API connector that they can publish. Use the connector in the Security Posture Control workspace.") and ServiceNow Otto for Unified Security Exposure Management to use the generative AI skill to help you create your own API connector. | Developers in your organization, vulnerability and security admins |
| [Identify duplicate vulnerable items with generative AI](https://www.servicenow.com/docs/jUS4dwqNZ8EnpQLJY7fsKw "Use this generative AI skill to identify the primary (first-found) vulnerable items for configuration items along with duplicate vulnerable items that are imported by your vulnerability scanners.") | Identify and group duplicate vulnerable items (VITs) created from multiple scanners. Identify the primary vulnerable item and remove (close) duplicates. | Vulnerability managers and analysts |
| [Suggest vulnerability solutions with generative AI](https://www.servicenow.com/docs/4934nzRPYSwuZgIRU9I6zg "Use the Approval Recommendation generative AI skill to help your analysts find potential preferred solutions from third-party vendors for the vulnerabilities on your assets.") | Identify the most appropriate preferred solution for a given vulnerable item (VIT). Requirements: * You must install and activate Vulnerability Solution Management \[sn_vul_solution\] to import and view preferred and available vulnerability solutions. This application provides you with current solutions with scheduled imports. Vulnerability Solution Management is available on the ServiceNow® Store. * This generative AI skill supports only active host vulnerable items (VITs). VITs must be in the Open, Under Investigation, Awaiting Implementation, or In Review states. * Current solutions that most effectively address vulnerabilities, also referred to as solutions of the highest supersedence, must be available for you to import from third-party vendors. See [Vulnerability Solution Management](https://www.servicenow.com/docs/RPmgna7quodWsAnt2oeU9w "Automatically correlate vulnerabilities in your environment with solutions that can remediate them. Identify remediation actions that apply to your vulnerabilities and prioritize them by the greatest reduction in vulnerability risk.") for more information about Vulnerability Solution Management and supported integrations for more information. * The Configuration item field on a VIT must be populated with a value from the Configuration Item \[cmdb_ci\] table. * The Vulnerability field on a VIT must be populated. {#using-now-assist-skills-vulnerability-response__ul_fjm_dfr_jgc} | Vulnerability managers and analysts |
| [Generate vulnerability insights with generative AI](https://www.servicenow.com/docs/jVoyJUZQeU190jVLvQ~oqw "Use the Security Exposure Management (SEM) Insights generative AI skill to provide contextual summaries and actionable recommendations in the Security Exposure Management (SEM) Workspace. Use insights based on exposure data, threat intelligence, remediation status, and asset context to surface dynamic insights for findings views. Help admins, analysts, and vulnerability managers prioritize critical risks and take immediate remediation actions.") | Understand your security posture with AI-generated summaries and recommendations to help you prioritize and act on critical findings. | Vulnerability managers and analysts |
| [Generate a recommendation for approval impact analysis](https://www.servicenow.com/docs/5ZFI6qpdg7f_N0HJTYvurA "Use a generative AI skill to streamline the approval process for exceptions and false positive requests with AI-driven recommendations. Reduce manual effort and improve decision accuracy for your approvers in the Security Exposure Management Workspace.") | Streamline the approval process for exceptions and false positive requests with AI-driven recommendations. | Vulnerability managers and analysts |
[ ]

{#using-now-assist-skills-vulnerability-response__table_cw1_njt_hjc}

