Financial News
Brinqa Cuts Exposure Data Processing Time from Hours to Minutes with Redesigned Data Engine and Launches AI Exploitability Agent as Vulnerability Volume Hits Record Highs
Security teams, and the AI agents working alongside them, can now re-prioritize their efforts across an entire environment as fast as new threats emerge; Brinqa also expands BrinqaIQ
Brinqa, the leader in exposure management for enterprise security teams, today announced a redesigned data engine that cuts exposure data processing time from hours to minutes, so security teams can re-prioritize across their entire environment as fast as new vulnerabilities and exploits emerge. Brinqa also introduced an AI Exploitability Agent that reasons over that data to identify which exposures attackers could actually chain together, along with enhancements to BrinqaIQ.
The announcements address a steep change in both the volume of exposures and the velocity of threats. Microsoft alone has disclosed roughly 2,700 CVEs through the first three quarters of 2026, more than double its largest full year on record, and exploitation timelines continue to compress from weeks to days.
Security teams are collecting more findings, from more sources, faster than most programs can reconcile them, and a prioritization decision made on yesterday's data may already be wrong. Brinqa is raising the bar for the industry by enhancing its own solutions to address pressing security challenges.
"AI is changing the math on both sides: Vendors are finding and disclosing vulnerabilities faster than ever, and attackers are turning patches into working exploits faster than most teams can deploy them, so a security team's view of its risk has to change as quickly as the threat does,” said Dan Pagel, CEO at Brinqa. “We rebuilt our data engine so customers can re-evaluate their entire environment in minutes, at enterprise scale, whenever something material changes, which is what continuous prioritization actually requires."
"You can’t bolt AI onto fragmented, duplicated data and expect decisions you can act on," said Brad Hibbert, Chief Strategy Officer at Brinqa. "High-fidelity exposure data is the prerequisite for AI reasoning that holds up. It is what lets our Exploitability Agent accurately assess what an attacker could do, recommend the right action and drive measurable risk reduction. That is why we rebuilt the foundation first, and why our AI sits on top of it rather than beside it."
Together with Brinqa's acquisition of PlexTrac in the third quarter, these updates give security teams the full continuous threat exposure management (CTEM) loop in one place. They can understand where to focus, decide what to do next and verify whether the fix worked.
Re-evaluating enterprise exposure in minutes
Brinqa redesigned its data engine to unify, deduplicate and enrich incoming exposure data for its CyberRisk Graph in minutes rather than hours, even as customers add more data sources. When new findings arrive, whether from a scanner run, a cloud change or a major Patch Tuesday, teams can re-evaluate risk across their entire environment on demand instead of waiting for the next scheduled processing cycle.
In one production customer deployment, the engine processed roughly 150 million source records and 700 million relationships, more than 4 TB of data, in 17 minutes and 15 seconds. That run covered the full pipeline: integration, unification, deduplication, enrichment and lifecycle processing.
Because full processing now takes minutes, the platform has room to go deeper on every run, with richer enrichment and more complete mapping of the relationships between assets, exposures and controls. That relationship mapping shows teams which exposures an attacker could reach and which to fix first, and it is the foundation the AI Exploitability Agent reasons over.
Assessing exploitability and validating remediation
The AI Exploitability Agent goes beyond severity scores to show which exposures an attacker could chain together. It models attack paths, mapping how individual vulnerabilities and misconfigurations connect into the sequence an attacker would follow, from initial access through lateral movement and privilege escalation to impact. It then assesses those paths against the network and security controls in the customer's environment to determine which are likely exploitable, and identifies choke points, the fixes that close multiple attack paths at once, so teams fix more efficiently and reduce more risk.
Drawing on public and private threat intelligence, including exploit availability and ransomware activity, the agent produces an intelligence-driven risk score and visualizes the underlying attack paths in Brinqa's CyberRisk Graph. Teams can prioritize what is most likely reachable and dangerous, not just what is rated high severity, and every score includes an auditable explanation of how it was calculated, so teams can defend their priorities to auditors and stakeholders.
Newly acquired PlexTrac functionality gives teams a way to confirm assessments. Offensive security teams use PlexTrac to document penetration testing and red team findings and to coordinate retesting after remediation. Those findings and retest records show whether a prioritized exposure could be exploited and whether the fix held, so teams can report risk reduction they have verified rather than assumed.
Extending Bring Your Own AI through BrinqaIQ
Once teams know where to focus, they need practical ways to work with the information in front of them. New enhancements to BrinqaIQ aid that effort, extending Brinqa’s Bring Your Own AI (BYOAI) approach. By leveraging AI capabilities within BrinqaIQ, teams reduce their own AI spend while still using AI functionality to query their exposure data. Teams can query their exposure data and get answers, without the need to build out their own AI agents.
With the latest enhancements, users ask for data in plain language, research CVEs and manage platform automations through BrinqaIQ Assistant and BrinqaIQ MCP. From there, they can describe the data they need, generate a Brinqa Query Language (BQL) query, look up vulnerability context, or launch, resume, cancel and check the status of flows and automations.
Teams can save time by leveraging BrinqaIQ to automate workflows and enable faster responses by getting answers in plain language. BrinqaIQ can be used within the Brinqa platform or connected to a compatible client through Model Context Protocol (MCP).
To learn more visit: www.Brinqa.com
About Brinqa
Brinqa consolidates and normalizes data from across the security stack, enriches it with business and threat intelligence, and applies advanced analytics and AI-driven automation to prioritize remediation and drive accountability at scale. With capabilities like AI Attribution Agent and AI Deduplication Agent, Brinqa helps security teams cut through noise, assign clear ownership, and focus on the exposures that truly impact the business. Trusted by leading global enterprises including Nestlé, SAP, PhonePe, Cambia Health Solutions, and Guidewire, Brinqa transforms fragmented vulnerability data into a single source of truth, enabling faster remediation, stronger security posture, and measurable reduction in business risk.
View source version on businesswire.com: https://www.businesswire.com/news/home/20260930113678/en/
Contacts
Media Contact
Brands2Life on behalf of Brinqa
Brinqa@brands2life.com
If you believe this article contains misleading, harmful, or spam content, please let us know.
Report this articleMore News
View MoreRecent Quotes
View MoreQuotes delayed at least 20 minutes.
By accessing this page, you agree to the Privacy Policy and Terms Of Service.
