Global digital payments company Visa has announced enhancements to its cybersecurity portfolio, introducing new tools and advisory services designed to help organisations manage cyber risks in an environment increasingly shaped by artificial intelligence.
The updates include the next evolution of the Visa Vulnerability Agentic Harness (VVAH), an open-source, model-agnostic framework. According to Visa, the latest release moves AI-powered cyber risk management from discovery to validated remediation. The framework is designed to help organisations discover, triage, remediate, and validate vulnerabilities within a single structured workflow. Visa stated that the framework helps reduce the Mean Time to Adapt (MTTA)—the time between discovery and resolution of attack paths—with some resolutions decreasing from weeks to hours.
Originally released following Visa's participation in Anthropic's frontier AI cybersecurity initiative, Project Glasswing, VVAH has been downloaded by tens of thousands of developers worldwide since its open-source release in June 2026. Additionally, Visa has contributed VVAH to NVIDIA's Open Secure AI Alliance and is collaborating through IBM and Red Hat's Project Lightwell initiative to help secure open-source software.
Alongside the technology framework, Visa announced the expansion of its Visa Consulting & Analytics (VCA) Cybersecurity Advisory Practice. VCA is introducing three new cybersecurity advisory services intended to help clients assess risk, prioritise remediation efforts, and strengthen operational resilience.
Prateek Sanghi, Head of Visa Consulting & Analytics, Asia Pacific, noted that AI is accelerating both the scale of cyber threats and the speed of vulnerability exploitation. He emphasised that identifying vulnerabilities is no longer the primary differentiator, and that shifting the focus to reducing the Mean Time to Adapt is critical.
Over the past year, the VCA Cybersecurity Advisory Practice has supported various clients, including CAIXA Cartões, which worked with Visa to support its cybersecurity maturity assessment and prioritize risk management initiatives.
"As artificial intelligence transforms the threat landscape, enterprises must shift their focus from merely identifying security vulnerabilities to rapidly resolving them. Frameworks that integrate discovery, remediation, and validation into a unified workflow help organisations reduce exposure windows significantly. For businesses operating in the digital economy, partnering with established financial and technology networks to strengthen operational resilience is becoming a strategic imperative." — Dr. Shishir Gupta, Founder & CEO, StartupLanes
Recent StartupLanes Articles
Browse through our 30 latest publications on venture capital, startups, and angel investing.