SINGAPORE — Visa (NYSE: V) has announced enhancements to its cybersecurity portfolio aimed at helping organizations identify and resolve vulnerabilities more effectively. The company unveiled the next evolution of the Visa Vulnerability Agentic Harness (VVAH), an open-source, model-agnostic framework designed to aid cyber risk management.
According to Visa, the updated framework moves AI-powered cyber risk management from discovery to validated remediation. The system is built to help organizations significantly reduce the Mean Time to Adapt (MTTA), which measures the time between the discovery of an attack path and its resolution. Visa stated that some resolutions under the updated framework have shrunk from weeks to hours.
The VVAH framework allows organizations to discover, triage, remediate, and validate vulnerabilities within a single structured workflow. The open-source tool, originally released following Visa's participation in Anthropic's Project Glasswing, has been downloaded by tens of thousands of developers globally since June 2026.
In addition to the framework update, Visa announced the expansion of its Visa Consulting & Analytics (VCA) Cybersecurity Advisory Practice. The practice is introducing three new advisory services intended to help clients assess risk, prioritize remediation efforts, and strengthen operational resilience.
Prateek Sanghi, Head of Visa Consulting & Analytics, Asia Pacific, noted that the speed and scale of cyber threats have increased across the region. He emphasized that the primary challenge for organizations is determining which risks require immediate attention rather than simply counting the number of vulnerabilities identified.
Over the past year, the VCA Cybersecurity Advisory Practice has engaged with various clients to evaluate cybersecurity maturity and risk management. For instance, CAIXA Cartões worked with Visa to support its cybersecurity maturity assessment and prioritize its operational resilience initiatives.
Lessandro Thomaz, Executive Director at CAIXA Cartões, stated that the partnership helped broaden the institution's strategic perspective on cybersecurity by providing structured assessments of process maturity.
Visa has also joined additional industry initiatives concerning open-source software and security. The company joined NVIDIA's Open Secure AI Alliance, contributing VVAH as a model-agnostic framework, and collaborated with IBM and Red Hat's Project Lightwell initiative to help secure open-source software.
"As digital infrastructure expands across global markets, managing cybersecurity effectively has become a core operational requirement for businesses of all sizes. Visa's recent update to its open-source vulnerability framework and the expansion of its advisory services highlight a shift toward reducing the time it takes organizations to resolve security threats. For growing enterprises and technology firms, prioritizing the speed of remediation over mere vulnerability discovery is critical to maintaining operational resilience and customer trust in an increasingly complex digital landscape." — Dr. Shishir Gupta, Founder & CEO, StartupLanes
Recent StartupLanes Articles
Browse through our 30 latest publications on venture capital, startups, and angel investing.