Is AI Defence a vulnerability scanner?
Vulnerability assessment is one part of the design. The wider scope includes environment inventory, misconfiguration, identity, trust boundaries, plain-English reporting, authorised changes and verification.
Platform overview
AI Defence is a security assessment and continuous protection platform in development within the Altari environment. Also called Remedy Defence, it connects infrastructure evidence, risk explanation, authorised remediation and verification in one governed lifecycle.
The first job is to establish what exists and how it connects. The specified assessment covers hosts, networks, applications, identities, databases, cloud workloads and the systems that build and deploy software. An isolated package warning is useful evidence; knowing where that package runs, what reaches it and which privileges it holds makes the evidence actionable.
Discovery is bounded by the customer’s authorised scope and available access. Assets that cannot be inspected must remain recorded as coverage gaps. An unreachable system cannot be marked secure merely because a collector returned no findings.
AI Defence is designed to explain a recommendation before requesting permission to apply it. Customers can approve selected findings, individual changes, a clearly defined bundle, or no changes. Approval should identify the target, action and permitted scope; it is not a standing instruction to execute arbitrary commands.
Material changes require a current-state check, dependency analysis, an assessment of possible impact, a rollback plan and a way to preserve administrator connectivity. A proposed firewall improvement that removes the only management path is a failed change even if the intended port closes.
The intended workflow retests the security finding and relevant service health after a change. A patch installation, successful command or AI-generated explanation does not by itself establish that a vulnerability was resolved. Failed verification keeps the issue open for investigation.
An accepted baseline records expected assets, users, ports, packages, workloads, configuration and approved exceptions. Continuous monitoring then looks for new vulnerabilities and changes against that baseline. Suspicious observations create evidence for investigation; they do not prove compromise on their own.
Remedy’s software debugger addresses defects through diagnosis, source-code repair and verification. AI Defence adds a distinct security assessment and protection scope. Where a finding requires an application repair, the two workflows can be designed to meet through a governed hand-off.
Nexus is Altari’s broader autonomous software engineering control plane. These product roles are complementary. This website describes AI Defence’s September 2026 specification; it does not claim that every collector, integration or remediation action is generally available.
Vulnerability assessment is one part of the design. The wider scope includes environment inventory, misconfiguration, identity, trust boundaries, plain-English reporting, authorised changes and verification.
The complete Defence feature set is specified and in development. Ask Altari to confirm the collectors, platforms, actions and evidence available for your environment before planning a deployment.
Start with understanding
Discuss the assessment scope, current capabilities and the control you need with Altari Systems.