---
sourceDocument: Yokohama Security Management
sourceDocumentLink: https://www.servicenow.com/docs/r/yokohama/security-management

 Release :

    - yokohama

ft:locale :

    - en-US

ft:publication_title :

    - Yokohama Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Configure

# Configuring ServiceNow Otto for Unified Security Exposure Management {#ariaid-title1}

* Release version: Yokohama
* 
* Updated January 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 minutes to read

Summarize  
![AI sparkle icon](https://servicenow.com/docs/portal-asset/ai-sparkle-icon) Summarized using AI  
This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.  

## Summary of Configuring ServiceNow Otto for Unified Security Exposure Management

The ServiceNow Otto for Unified Security Exposure Management application integrates with the Now Assist panel to provide on-demand generative AI capabilities for security operations.
This application streamlines vulnerability exposure management by leveraging AI-driven skills and workflows within the ServiceNow platform.
Show full answer Show less  

## Key Features

* **Role Masking:** Limits AI agents' roles and privileges during execution to ensure security compliance. Roles assigned to AI agents must be included in your security controls and data access settings.
* **Data Sharing Opt-Out:** Customers can opt out of sharing data with the ServiceNow AI development program via the AI Admin Hub console to protect sensitive information.
* **Configuration Console:** Starting with version 1.0.4, the AI Admin Hub console centralizes installation and configuration of the application and generative AI skills, replacing the older AI Agent Studio interface.
* **Now Assist Skills Activation:** Default AI skills specific to security operations (e.g., SPC Setup, Connector Approval Recommendation, SEM Insights) are automatically activated with Yokohama Patch 11 and plugin upgrades, but customers retain control to activate or deactivate skills as needed.
* **Agentic Workflows:** By default, workflows and AI agent records are read-only to maintain stability. Guidance is provided for duplicating and customizing workflows and skills.

## Configuration Guidance

* Install the required Now Assist plugins and the ServiceNow Otto for Unified Security Exposure Management application (snvulai).
* Activate the Now Assist panel to enable AI capabilities.
* Ensure security controls and data access settings include the roles assigned to AI agents when using role masking and restricted user access.
* Manage AI skill activation carefully during upgrades to avoid unintended changes---skills explicitly deactivated remain inactive after updates.

## Practical Outcomes for ServiceNow Customers

By configuring ServiceNow Otto for Unified Security Exposure Management, customers enable AI-powered insights and recommendations to improve vulnerability management and security exposure analysis. The solution ensures secure, role-based AI interactions, preserves data privacy choices, and provides flexible management of AI skills and workflows to fit organizational needs. This setup enhances security operations efficiency while maintaining control and compliance within the ServiceNow environment.  
The ServiceNow Otto for Unified Security Exposure Management application is supported in the Now Assist panel and available on-demand.

## Configuration overview {#configuring-now-assist-for-vulnerability-response__cf-config-parent-checklist}

[Role masking](https://www.servicenow.com/docs/access?context=aia-role-masking&version=yokohama&pubname=yokohama-intelligent-experiences&ft:locale=en-US) enables users to limit the roles and privileges of AI agents during tool execution. AI agents that get installed with Now Assist applications are assigned pre-defined roles. If you select Users with specific roles for user access, you must configure the security controls to include these roles. Data access settings must also include these roles. For the instructions to change the security controls, see [Define security controls for an AI agent](https://www.servicenow.com/docs/access?context=define-sec-controls-aia&version=yokohama&pubname=yokohama-intelligent-experiences&ft:locale=en-US).

By sharing data with the ServiceNow® AI development program, you provide relevant data to help improve prediction accuracy, user experience, tailor products to your business needs, and reduce hallucinations for your activated Now Assist skills.

You can choose to opt out of a ServiceNow instance from data sharing from the AI Admin Hub console if you don't want to participate. For more information, see [Opt out of data sharing for Now Assist](https://www.servicenow.com/docs/access?context=opt-out-of-data-sharing-for-now-assist&version=yokohama&pubname=yokohama-intelligent-experiences&ft:locale=en-US). Repeat the opt-out process for all instances that use the Now Assist functionality.

Prior to v1.0.4, use the AI Agent Studio to configure ServiceNow Otto for Unified Security Exposure Management.

Starting with v1.0.4, use the AI Admin Hub console to configure ServiceNow Otto for Unified Security Exposure Management. This console contains everything that you must install the applications and configure the generative AI skills. For additional information, see [Configuring Now Assist settings and features](https://www.servicenow.com/docs/access?context=configuring-na-landing&version=yokohama&pubname=yokohama-intelligent-experiences&ft:locale=en-US).

## Configuration tasks and important notes {#configuring-now-assist-for-vulnerability-response__section_plt_cdh_5hc}

* [Install Now Assist plugins](https://www.servicenow.com/docs/access?context=install-now-assist-feature-plugins&version=yokohama&pubname=yokohama-intelligent-experiences&ft:locale=en-US).  
  Install the ServiceNow Otto for Unified Security Exposure Management application (sn_vul_ai).  
  Note:  
  When you update the ServiceNow Otto for Unified Security Exposure Management application, its dependency applications are automatically updated.
* The Now Assist panel must be activated. For more information, see [Activate Now Assist panel standard chat](https://www.servicenow.com/docs/access?context=activate-now-assist-panel&version=yokohama&pubname=yokohama-intelligent-experiences&ft:locale=en-US).
* The Now Assist skills listed on the Security Operations page for ServiceNow Otto for Unified Security Exposure Management are activated by default starting with Yokohama Patch 11:
  * SPC Setup Connector
  * Approval Recommendation
  * SEM Insights
  * Recommend preferred solution for VIT
  * Vulnerable item deduplication

  {#configuring-now-assist-for-vulnerability-response__ul_lqg_4pd_1cc}  
  Note:  
  Upgrading the Now Assist plugins will activate any designated skills that were previously untouched by the customer.
  * If you have the plugins installed but never touched the configuration (never activated the skill nor adjusted associated roles) of a skill, any Default On skill will be activated on a per skill basis upon upgrading.
  * If you have previously toggled a skill from active and then back to inactive or have updated any roles for that skill, that skill will remain inactive upon upgrading.
  * You maintain full control over deactivating individual skills at any time after activation.
  {#configuring-now-assist-for-vulnerability-response__ul_opc_xtg_nhc}
* Important:  
  By default, all agentic workflows and AI agent records are read-only.

{#configuring-now-assist-for-vulnerability-response__ul_n2h_fdh_5hc}

See [duplicating](https://www.servicenow.com/docs/access?context=clone-aia-usecase&version=yokohama&pubname=yokohama-intelligent-experiences&ft:locale=en-US) an agentic workflow and [Configure an agentic workflow for ServiceNow Otto for Unified Security Exposure Management](https://www.servicenow.com/docs/lLaMPsd0oYvkIqKjVsY6Qg "Prior to Yokohama Patch 11, you must activate the agentic workflows from the AI Agent Studio. Starting with Yokohama Patch 11, the AI agents included with the application and used in the agentic workflows are activated by default.") for more information about modifying agentic workflows.

See [Configure a skill for ServiceNow Otto for Unified Security Exposure Management](https://www.servicenow.com/docs/7ur1GxyOlbbgdDYzIkq2eA "You have the option to review the details, edit the configuration of a skill, and reactivate it in the Guided Setup.") for more information about modifying Now Assist skills.

