Qualys has introduced new capabilities to its TotalAI platform to help organisations strengthen AI governance, manage AI-related risks and secure AI systems from development through production.
Built on the Qualys Enterprise TruRisk Platform, the enhanced TotalAI platform enables enterprises to discover, test, monitor and govern AI risk across models, AI agents, Model Context Protocol (MCP) servers and cloud AI services. The new capabilities are designed to help organisations meet emerging AI policy and compliance requirements in the US and European Union.
According to Qualys, the platform provides visibility into shadow AI, browser-based AI, AI containers and cloud AI services, enabling security teams to identify where AI is deployed and assign ownership for associated risks.
The updated platform also enables organisations to govern AI agents, models and integrations, while offering kernel-level instrumentation to provide visibility into AI workloads running on servers. TotalAI further delivers audit-ready evidence of AI assets, security issues and TruRisk-based prioritisation to support governance, risk and compliance efforts.
The company said the platform helps organisations identify AI vulnerabilities, misconfigurations and exposed secrets early in the development cycle while testing models for prompt injection, jailbreaks and unsafe outputs before deployment. It also performs adversarial testing for large language models and MCP servers by scanning for risks including tool poisoning, server-side request forgery (SSRF) and rug-pull attacks.
Grace Trinidad, Research Director, IDC, said, “The industry is moving beyond simply counting vulnerabilities toward continuously minimizing the exploitable surface, and AI is turning that shift from good practice to a requirement. Organisations that fold AI risk into continuous exposure management will be better positioned to adopt AI securely and at scale.”
Sumedh Thakar, President and CEO, Qualys, said, “With every modern enterprise leveraging AI, the question is changing from ‘Is my AI secure?’ to ‘Can I prove it to my board and regulators?’ TotalAI gives enterprises a unified way to assess, govern, and secure AI risk continuously.”
Send news announcements/press releases to:
editor@thefoundermedia.com
