Home
News
Tech Grid
Data & Analytics
Data Processing Data Management Analytics Data Infrastructure Data Integration & ETL Data Governance & Quality Business Intelligence DataOps Data Lakes & Warehouses Data Quality Data Engineering Big Data
Enterprise Tech
Digital Transformation Enterprise Solutions Collaboration & Communication Low-Code/No-Code Automation IT Compliance & Governance Innovation Enterprise AI Data Management HR
Cybersecurity
Risk & Compliance Data Security Identity & Access Management Application Security Threat Detection & Incident Response Threat Intelligence AI Cloud Security Network Security Endpoint Security Edge AI
AI
Ethical AI Agentic AI Enterprise AI AI Assistants Innovation Generative AI Computer Vision Deep Learning Machine Learning Robotics & Automation LLMs Document Intelligence Business Intelligence Low-Code/No-Code Edge AI Automation NLP AI Cloud
Cloud
Cloud AI Cloud Migration Cloud Security Cloud Native Hybrid & Multicloud Cloud Architecture Edge Computing
IT & Networking
IT Automation Network Monitoring & Management IT Support & Service Management IT Infrastructure & Ops IT Compliance & Governance Hardware & Devices Virtualization End-User Computing Storage & Backup
Human Resource Technology Agentic AI Robotics & Automation Innovation Enterprise AI AI Assistants Enterprise Solutions Generative AI Regulatory & Compliance Network Security Collaboration & Communication Business Intelligence Leadership Artificial Intelligence Cloud
Finance
Insurance Investment Banking Financial Services Security Payments & Wallets Decentralized Finance Blockchain
HR
Talent Acquisition Workforce Management AI HCM HR Cloud Learning & Development Payroll & Benefits HR Analytics HR Automation Employee Experience Employee Wellness
Marketing
AI Customer Engagement Advertising Email Marketing CRM Customer Experience Data Management Sales Content Management Marketing Automation Digital Marketing Supply Chain Management Communications Business Intelligence Digital Experience SEO/SEM Digital Transformation Marketing Cloud Content Marketing E-commerce
Consumer Tech
Smart Home Technology Home Appliances Consumer Health AI
Interviews
Think Stack
Press Releases
Articles
Resources
  • Threat Intelligence

Phoenix Security Launches AI Agents for ASPM Enhancement


Phoenix Security Launches AI Agents for ASPM Enhancement
  • |
  • September 23, 2025

Phoenix Security, the leader in Application Security Posture Management (ASPM), is raising the bar for AI in security operations with the launch of its intelligent, human-aligned AI Agents. Designed to work alongside security teams—not sideline them—these agents have already driven dramatic results, delivering up to 98% noise reduction, 96–99% fewer criticals, and 430,000+ engineering hours reclaimed for customers like ClearBank, Bazaarvoice, and others in the Retail and Banking sectors.

Quick Intel

  • Phoenix Security launches three AI Agents—Researcher, Analyzer, Remediator—for threat-centric ASPM, reducing noise by 98% and criticals by up to 99%.
  • Researcher monitors real-time threats, maps MITRE ATT&CK, predicts ransomware exploitation using Google-partnered models.
  • Analyzer models attack paths in business context via code-to-cloud AI, delivering STRIDE-based threat scenarios.
  • Remediator generates environment-specific plans with compensating controls, integrating with Jira and ServiceNow.
  • ClearBank saved $2.6M annually; Bazaarvoice eliminated criticals in two weeks and cut high-risk findings by 40%.
  • Agents available now (Researcher) with Analyzer and Remediator rolling out in 2025 for 10x faster remediation.

Precision AI for Security Operations

This isn’t about dumping AI on top of vulnerability data. It’s about precision, context and acceleration—turning raw findings into targeted and actionable steps that fit directly into the way teams already operate. Phoenix Security’s agents enrich vulnerabilities with threat actor mapping, ransomware risk prediction, and contextual remediation intelligence, blending automation with analyst oversight to ensure decisions are grounded in operational reality.

The AI Agent Trio: From Detection to Resolution

Phoenix’s AI-powered trio—The Researcher, The Analyzer, and The Remediator—work in concert to take security teams from detection to resolution with speed and surgical accuracy.

The Researcher (available now) continuously monitors real-time threat intelligence, both public and private, mapping attack methodologies, including MITRE ATT&CK, correlating vulnerabilities to active attack methods, ransomware campaigns, known threat actors and other relevant attack methodologies. Proprietary models developed in partnership with Google deliver exploitation prediction on ransomware and likelihood of exploitation compensating EPSS metrics. It goes beyond CVE summaries, tracing root causes and filtering the noise, so teams can focus on true business-critical risks. The researcher agent has been trained on top of Google's vast intelligence, adding prediction elements related to ransomware and active exploitation. The agent has the widest mapping to CWE, MITRE and threat actors, allowing it to predict the ransomware likelihood before a vulnerability gets exploited.

The Analyzer models attack paths and threat modelling within the actual business and application context, empowered by Phoenix Security’s code-to-cloud contextual AI engine. The analyzer reveals which vulnerabilities are impacting in the particular application context, delivering STRIDE threat modelling and attack scenarios that are rooted in real data, real-time context, and not just ‘in theory’.

The Remediator transforms that context into environment-specific remediation plans, leveraging the researcher and the analyzer, to produce an executable bundle of remediation by similar remedy, attack path, and logical assets. The remediation also works alongside you, producing compensating controls that are considered based on the deployment context. Remediator also outputs in Jira, Service Now, and a remediation campaign to empower the security team to be on top of the remediation efforts.

Proven Impact in Real-World Deployments

ClearBank cut container noise by 98%, eliminated up to 99% of criticals and saved $2.6M in analyst time annually—equivalent to four hours per security engineer, every week.

Bazaarvoice eradicated all critical vulnerabilities in two weeks and reduced high-risk findings by 40%, creating immediate alignment between security and engineering.

Ad-Tech giant achieved a 78% reduction in container vulnerabilities while unifying code and cloud visibility.

This agentic architecture, already proven to accelerate remediation 10x faster, allows CISOs and AppSec leaders to keep control while scaling their team’s capability. Instead of chasing thousands of alerts, teams get a surgical set of prioritized actions per team—fully enriched with ownership, risk context, and actionable fixes.

Phoenix Security’s AI Agents are already available to customers, with the Researcher live today and the Analyzer and Remediator rolling out in 2025. The result: faster remediation, measurable risk reduction, and teams spending more time solving problems than sifting through noise.

  • AI AgentsApplication SecurityThreat Intelligence
News Disclaimer
  • Share