AI Mode agentic workflows: what they are and how to run them

AI mode includes preconfigured agentic workflows. Each workflow analyzes Bitsight data and returns a written summary of findings and recommended actions. This article describes what each workflow does, what you select before running it, and what the output contains.

Before you begin

  • Workflows that analyze a vendor require that the vendor is in your portfolio

How do I run a workflow?

  1. Open AI Mode.
  2. Select the workflow you want to run.
  3. If needed, make the required selection from the drop-down menu.
  4. Click Run Agent.
  5. Review the returned results.

What are the AI Mode workflows?

AI Mode workflows are preconfigured analyses. Each workflow uses Bitsight data to produce a summary of security issues, relevant context, and recommended actions.

How do I find out security issues to address first with a vendor?

Workflow name: What security issues should I address first with a vendor?

What it does: Summarizes the security risk posture of one vendor, lists top security issues identified for that vendor, and provides recommendations for addressing them.

What you select: A vendor from a drop-down menu, before you run the workflow.

What the output contains:

  1. An executive summary
  2. The vendor’s current rating
  3. The vendor’s peer position
  4. Risk vector highlights
  5. Recommended actions

How do I find out which security issues to address first in my organization?

Workflow name: What security issues should I address first in my organization?

What it does: Summaries the security risk posture of your own organization, lists the top security concerns identified, and provides recommendations for addressing them.

What you select: Your company from a drop-down menu, before you run the workflow

What the output contains:

  1. An executive summary
  2. Your company’s current rating
  3. Your company’s peer position
  4. You top critical issues
  5. Risk vector highlights
  6. Recommended actions

How do I measure the value of my third-party risk management program?

Workflow name: Analyze TPRM ROI and Impact

What it does: Analyzes your TPRM program and reports its business value, expressed as return on investment (ROI) and impact.

What the output contains:

  1. An executive summary including: number of vendor monitored, your portfolio mean rating, and number of EVAs sent
  2. Portfolio composition
  3. What the program did
  4. Risk outcomes
  5. Recommended actions

How do I assess the effect of a security event on a vendor?

Workflow name: Assess Emerging Security Events

What it does: Evaluates how a critical security event affects a vendor

What you select: A major security event from the drop-down menu

What the output contains:

  1. An event summary
  2. CVSS, DVE and EPSS scores
  3. Major security event detail
  4. Portfolio impact
  5. Top exposed vendors
  6. Recommended actions
Publish Date or Recent Edits
  • October 6, 2026: Published.
Was this article helpful?
0 out of 0 found this helpful

Comments

0 comments

Please sign in to leave a comment.