Ansible Automation Platform AI Skills for Platform Operations: Health, Security, and Intelligence
By Luca Berton · Published 2024-01-01 · Category: installation
Explore AAP AI Skills: platform health checks, RBAC audit, drift detection, CVE correlation, and security governance.
AAP now includes ready-to-use AI skills and agents that assess, audit, and report on your automation platform. These combine Red Hat Intelligence with your platform context to provide governed, actionable insights.
Four AI Skill Domains
1. Platform Health & Readiness
Validates your configuration against Red Hat's tested reference architectures and lifecycle data.
Capabilities: • Health check — verify platform components are running correctly • Upgrade readiness — pre-upgrade assessment for AAP version migrations • Topology validation — ensure your deployment matches reference architectures • Supportability assessment — identify configurations outside supported bounds
Use case: Before upgrading from AAP 2.6 to 2.7, the health agent validates your topology, checks component compatibility, and flags potential issues.
2. Security & Access Governance
Applies Red Hat security best practices to your RBAC, authentication posture, and activity data.
Capabilities: • RBAC audit — identify over-permissioned roles and users • Role sprawl detection — find redundant or overlapping role definitions • Permission gap analysis — ensure least-privilege access • Auth posture — verify authentication configuration (SSO, LDAP, OIDC) • Activity analysis — detect unusual automation patterns • Audit compliance review — verify audit logging configuration
Use case: The security agent detects that 15 users have admin-level access but only 3 have used admin functions in the past 90 days, recommending role reduction.
3. Operations Intelligence
Combines Red Hat operational guidance with your usage analytics, capacity data, and configuration state.
Capabilities: • Analytics — usage patterns, job success rates, execution times • Drift detection — identify configuration drift across the automation mesh • Capacity monitoring — track resource utilization and predict scaling needs
Use case: The operations agent notices execution node CPU consistently exceeds 80% during business hours and recommends adding mesh nodes.
4. Security Intelligence
Correlates Red Hat CVE databases, errata, and advisories with your installed components.
Capabilities: • CVE correlation — match CVEs against your actual deployment • Vulnerability assessment — prioritized by actual deployment exposure, not generic severity scores • Errata tracking — identify pending security and bug fix updates
Use case: Instead of reviewing hundreds of CVEs manually, the security intelligence agent shows only the 12 CVEs that actually affect your deployed AAP components, ranked by exposure.
See also: Ansible Automation Platform: The Trusted Execution Layer for AI-Driven IT Operations
Intelligence Report Dashboard
The Intelligence Report provides a centralized view: • Overall Security Posture — aggregate score with breakdown • Platform Inventory — components, versions, topology • Automation Consulted — usage analytics and trends • CVE counts by severity (Critical: 0, High: 13, Medium: 10, Low: 161)
Subscription Value
> "Subscription value in the age of AI — Red Hat expertise, your platform context, governed agents."
These AI skills are included in the AAP subscription and leverage: • Red Hat's tested reference architectures • Red Hat CVE databases and errata • Your platform's actual configuration and usage data
See also: Red Hat Ansible Automation Platform 2.7: What's New — Features, AI, and Security Enhancements
FAQ
Are these AI skills available now?
They're part of the In-AAP automation dashboard, which is in Tech Preview with AAP 2.7 and GA in Q3 2026.
Do the AI agents make changes automatically?
No. The AI skills are assessment and reporting tools. They provide recommendations that humans review and approve before any changes are made.
Does the CVE correlation require Red Hat Insights?
The security intelligence skill leverages Red Hat's CVE databases directly within AAP. Red Hat Insights provides additional context but isn't required.
Can I customize the AI skills?
The built-in skills cover the four domains. Custom AI agents can be built using the Automation Orchestrator for organization-specific assessment logic.
Related Articles
• Ansible Automation Orchestrator • In-Platform Compliance Dashboard • AAP Roadmap 2026 • Red Hat Ansible Automation Platform 2.7: What's NewCategory: installation