Configure Veza access intelligence in the agent map

  • Release version: Zurich
  • Updated July 20, 2026
  • 1 minute to read
  • Integrate Veza with ServiceNow to display agent risk scores and severity levels in the agent map. Complete this configuration for each hyperscaler that has AI assets you want to monitor.

    Before you begin

    Role required: AI steward [sn_ai_governance_ai_steward]

    About this task

    Veza access intelligence requires a connection between ServiceNow and each hyperscaler that hosts governed AI assets. ServiceNow and Veza each maintain separate connections to hyperscalers to retrieve and correlate AI asset data. Access intelligence supports governed agents hosted by Amazon Web Services (AWS), GCP Vertex AI, Azure, and Salesforce.

    Procedure

    1. In your Veza tenant, configure integrations for all of the supported hyperscalers that you want to connect to, including ServiceNow.
      For example, connect Veza to AWS and Veza to ServiceNow.
      For more information, see Veza integrations.
    2. In your Veza tenant, navigate to Administration > API Keys to generate a Veza API access token to use later.
      For more information, see API Keys in Veza documentation.
    3. In AI Control Tower, navigate to Settings > Integrations > Connectors to configure integrations for all of the hyperscalers that you want to connect to.
      For example, connect ServiceNow to AWS.
      For more information, see Configuring integrations.
    4. Set system properties to connect ServiceNow to the Veza tenant.
      1. Navigate to All > System Properties > All Properties.
      2. In the Name column, use the search field to locate the sn_ai_security.veza.api.url system property.
      3. Open the record.
      4. In the Value field, enter the base URL of your Veza tenant and select Update.
        For example, https://your-tenant.vezacloud.com.
      5. In the Name column, use the search field to locate the sn_ai_security.veza.api.key system property.
      6. Open the record.
      7. In the Value field, enter the Veza API access token you created earlier in this procedure and select Update.
    5. In AI Control Tower, navigate to the Security tab and refresh the page.

    Result

    In the agent map, select an AI asset and view the Access intelligence tab to see risk score and other information.

    If your AI asset appears in the agent map but doesn't have information shown in the Access intelligence tab, make sure that it's a governed asset with external_ref_id populated and model_category=Agentic AI.