Cyber Risk Series To be or not to be: Patch is the Question

Reduce Cybersecurity Risk Effectively

With cyber-attacks growing in complexity and frequency faster than traditional VM and SIEM tools can handle, Security and IT teams don't need more of the same - they need expert insights into minimizing their cybersecurity risk by leveraging the most innovative approaches to vulnerability management.

April 25, 2023

Virtual

Tap into a dynamic series of live conversations that explore the latest innovations leading cybersecurity practitioners are deploying to stay ahead of today's most innovative cybercriminals.

See how a unified, risk-based approach to vulnerability management is providing organizations with a clearer understanding of their security posture for rapid response.

Hear from industry experts and work alongside your peers to learn new strategies and front-line tactics that will empower your Security and IT teams to protect your attack surface like never before.

Featured Speakers

Sumedh Thakar
President and CEO, Qualys

Sanjay Poonen

Sanjay Poonen
CEO and President, Cohesity

Rajeev Gupta

Rajeev Gupta
CPO and Co-founder, Cowbell

Rinki Sethi

Rinki Sethi
VP & CISO, BILL

Jonathan Trull
CISO & SVP Security Solution Architecture, Qualys

Shailesh Athalye
Senior Vice President, Product Management, Qualys

Travis Smith
Vice President, Threat Research Unit, Qualys

Topics

Keynotes

Get inspired to shield your organization's external, internet-facing assets from advanced threats with an all star line-up of Keynote Speakers who will sharing valuable insights, best practices and alternative viewpoints on strengthening your security posture in 2023 and beyond.

Innovation Sessions

Simplifying your security posture and protecting every externally exposed IT asset across your evolving attack surface can seem like a daunting proposition to many cybersecurity practitioners. Be sure to tune into this unique opportunity to see the latest Qualys innovations that are revolutionizing cybersecurity risk management and making it easier to safeguard re-cloud sources through a single pane of glass.

Partner Sessions

Don't miss your opportunity to learn, share, and exchange ideas with members of the Qualys partner community across a wide range of pivotal topics, including the rising cost of cyber insurance and pioneering tactics designed to help small and mid-sized businesses stay ahead of cybercriminals.

Hands-on Sessions

What's the best way to maximize visibility across your entire attack surface? Is your Mean Time to Remediation (MTTR) faster than your attackers? Find out at this fast-paced, ask-me-anything, hands-on session where you'll get direct, on-the-spot advice from highly experienced Qualys experts.

Videos

10:00 AM PT

Keynotes

Building a cyber resilient enterprise by pivoting to risk management

Sumedh Thakar

President and CEO,, Qualys

10:30 AM PT

Keynotes

The convergence of data security and data management in a world of ransomware protection and recovery

Sanjay Poonen

CEO and President, , Cohesity

Sanjay Poonen, CEO and President of Cohesity, is a seasoned technology executive with extensive experience in cybersecurity and an active investor in several security startups, as also is on the Board of Philips and Synk. In this keynote, he will discuss the importance of taking a platform approach to security to reduce overall cyber risk. With the proliferation of ransomware attacks and the fragmented nature of the security industry, it is also critical to have a proactive approach to data protection - one that includes identifying, detecting, and protecting against threats - while also simulating breaches, with ways to respond and recover from them. He'll also discuss how and why we need an increased awareness to all employees of common principles of cyber-hygiene.

11:00 AM PT

Keynotes

Fireside Chat: How CISOs Can Navigate the Changing Landscape of Cybersecurity

Jonathan Trull

Chief Security Officer, , Qualys

Rinki Sethi

VP & CISO, , Bill

Qualys CISO, Jonathan Trull will lead an engaging conversation with Rinki Sethi, CISO at Bill.com covering the ever-changing cybersecurity landscape and security leaders' evolving role in fortifying the security postures of their organizations. Key discussion areas will include the evolution of the CISO role over time, shifting priorities of CISOs, and thoughts on how to address reporting to board members.

11:30 AM PT

Keynotes

Unlocking Intelligence-Backed Remediation: Insights from the Qualys Threat Research Unit

Travis Smith

Vice President, Threat Research Unit,, Qualys

Qualys' 2023 TruRisk Threat Research Report scanned more than 2.3 billion anonymized vulnerabilities around the world uncovering a wealth of data exposing the most common ways adversaries are exploiting opportunities to render attacks. In this enlightening session, the Qualys Threat Research Unit (TRU) will share highlights of their revealing findings, including the critical role speed and automation play in outsmarting your attackers.
CowbellNuspireBlueVoyant

12:00 PM PT

Partner Session

Cyber Insurance - Are we there yet?

Rajeev Gupta

CPO and Co-founder,, Cowbell

Attend this session to understand the convergence of cyber risk and cyber insurance and how cyber risk telemetry can help navigate cyber insurance policies.

12:30 PM PT

Innovation Session

Sneak Peak of Qualys Latest Innovation

Shailesh Athalye

SVP, Product Management, , Qualys

Qualys will share a sneak peek of our upcoming platform innovations to help organizations know and reduce cyber risk. Shailesh will discuss, extending the power of MITRE to proactively defend against attack risk; provide insights on how to know SCAs risk, and avoid throwing SCA/OSS vulnerability report at each other; and leverage third-party security findings for communicating a normalized view of risk.

1:00 PM PT

Hands-on Session

Live: Insights & Expert Advice from Industry Leaders

Corey Smith

Sr. Director Solutions Architecture, , Qualys

This session provides a unique opportunity for cybersecurity practitioners to engage with cyber experts and get answers to their burning questions. During this session, attendees will have the chance to discuss their biggest cybersecurity challenges and get on the spot insight and advice from Qualys experts who have years of experience in the field.

The opinions expressed by the guest speakers are their own and do not necessarily reflect the views of Qualys.

Related Past Sessions

We've curated past sessions related to the topics above. Watch them on demand.

Lavish Jhamb

Lavish Jhamb

Sr. Product Manager, Compliance Solutions, Qualys

Qualys
Lavish Jhamb is Solution Architect for Compliance Solutions at Qualys, focused on building security solutions such as 'Custom Assessment and Response' and 'File Integrity Monitoring' and helping customers assess and improve their security and compliance posture. He has over 7 years of experience working on security solutions, regulatory standards, and cyber security frameworks, with thorough understanding of operating systems. Lavish holds a bachelor's degree in computer engineering from the Kurukshetra University Institute of Engineering and Technology and a Post Graduate Diploma in IT Infrastructure, Systems and Security from CDAC Pune.
Shailesh Athalye

Shailesh Athalye

Senior Vice President, Product Management, Qualys

Qualys
As Senior Vice President of Product Management, Shailesh leads the product management team and drives the Qualys product vision helping customers assess and improve their IT, security and compliance posture. Since joining Qualys in 2012, he has worked in various security and compliance roles driving innovative solutions, including remote endpoint protection, endpoint detection and response, and SaaS security. In addition, Shailesh headed engineering, research and product management for Qualys Policy Compliance and File Integrity Monitoring, where he helped customers go beyond compliance to drive their IT GRC objectives. Before Qualys, he focused on security research for Symantec ESM and Compliance solutions. Shailesh holds a master’s in computer applications (MCA) from the Vishwakarma Institute of Technology and has various security certifications including CISA, CRISC, CISM. He is also a regular speaker at industry conferences.
Sumedh Thakar

Sumedh Thakar

President and CEO, Qualys

Qualys
As President and CEO, Sumedh leads the company’s vision, strategic direction and implementation. He joined Qualys in 2003 in engineering and grew within the company, taking various leadership roles focused on helping Qualys deliver on its platform vision. From 2014 to 2021, he served as Qualys’ Chief Product Officer, where he oversaw all things product, including engineering, development, product management, cloud operations, DevOps, and customer support. A product fanatic and engineer at heart, he is a driving force behind expanding the platform from Vulnerability Management into broader areas of security and compliance, helping customers consolidate their security stack. This includes the rollout of the game-changing VMDR (Vulnerability Management, Detection and Response) that continually detects and prevents risk to their systems, Multi-Vector EDR, which focuses on protecting endpoints as well as Container Security, Compliance and Web Application Security solutions. Sumedh was also instrumental in the build-up of multiple Qualys sites resulting in a global 24x7 follow-the-sun product team.
Jonathan Trull

Jonathan Trull

CISO & SVP Security Solution Architecture, Qualys

Qualys
Jonathan Trull is a longtime security practitioner and CISO & SVP Security Solution Architecture with over 18 years of experience in the cybersecurity industry and is currently the Senior Vice President of Customer Solutions Architecture and Engineering at Qualys. His career has spanned operational CISO and infosec roles with the State of Colorado, Qualys, Optiv, and Microsoft. While at Microsoft, Jonathan led the Microsoft Detection and Response Team (DART) whose mission was to respond to cyber security incidents around the globe ranging from cyber espionage initiated by nation-state actors to ransomware attacks and included the investigation of and response to the NOBELIUM threat actor campaign which leveraged the SolarWinds supply chain. Jonathan also serves as an advisor to several security startups and venture capital firms and supports the broader security community through his work with the Cloud Security Alliance, Center for Internet Security, and IANS. He is also an adjunct faculty member at Carnegie Mellon University where he mentors and coaches those attending the CISO Executive Education Program. Jonathan is a frequent speaker at industry conferences such as BlackHat, RSA, and SANS and holds several industry certifications including the CISSP, OSCP, CCSP, and GCFA. Jonathan is a veteran of the U.S. Navy finishing his career as a Lieutenant Commander supporting the Information Warfare Domain.
Kunal Modasiya

Kunal Modasiya

Senior Vice President, Product Management, Qualys

Qualys
Kunal is currently VP of Product Management for the CyberSecurity Asset Attack Surface Management (CAASM), Web App and API Security product line at Qualys HQ in Foster City, CA. He is Qualys boomerang. He worked at Qualys for 3 years and incubated the XDR product line from inception. Kunal has spent 15+ years working at startups, and big and mid-size companies in cybersecurity, networking, and application security in both product and engineering roles at Juniper Networks, Extreme Networks, Sun Microsystems and Infinera. Prior to re-joining Qualys, Kunal was heading products at Israeli startup in API security and bot management AppSec space.
Matt Crane

Matt Crane

Senior Manager, Schellman

Matt Crane is a Senior Manager at Schellman, where he excels in project management and client relations while overseeing assessments against various PCI Standards. With a primary focus on PCI DSS Compliance for organizations spanning diverse industries, Matt leverages a decade of expertise in information security services. Prior to joining Schellman in July 2017, Matt held key positions in both the private and public sectors, specializing in PCI and NIST assessments, as well as intelligence analysis. His extensive background includes leading PCI engagements, performing risk assessments, and general consulting services for merchants and service providers across multiple industry verticals. With an exceptional track record and a profound understanding of the industry, Matt Crane is a valuable asset to Schellman, ensuring clients receive unparalleled guidance in achieving their compliance goals. Matt holds a BBA in Information Security and Assurance as well as several industry certifications including CISSP, CISA, CRISC, QSA
Avani Desai

Avani Desai

CEO, Schellman

Avani Desai is a Partner and Chief Executive Officer at Schellman, the largest niche CPA firm in the world that focuses on technology and security assessments. She also sits on the board of Cogent Bank, a Florida based community bank, as a Director and the head of the Technology Committee. Avani started her career working at a Big 4 accounting firm (KPMG) for over 10 years, where she led a team and oversaw IT Risk Management and Privacy across national service-lines. In addition, Avani managed the development of internal and external privacy programs and related practices, leveraging her deep knowledge with healthcare and emerging technologies, such as blockchain, cloud computing, artificial intelligence, internet of things, and virtualization. Now at Schellman, Avani has been focusing on growth strategies, strategic client and market development, industry analysis, and new services for the last seven years. She has been featured in Forbes, CIO.com, and the Wall Street Journal, and is a sought-after speaker as a voice on a variety of emerging topics, including security, privacy, information security, future technology trends, and the expansion of young women involved in technology. In 2017, Avani, a crypto enthusiast, launched MyCryptoAlert, an app that provides a mobile solution for the alert and portfolio problems crypto investors face and a tool to buy and sell coins on arbitrage. Also passionate about strategic philanthropy, Avani sits on the board of Arnold Palmer Medical Center, Philanos, Audit Committee chairwoman at the Central Florida Foundation, and is the co-chair of 100 Women Strong, a female-only venture capitalist based giving circle that focuses on solving community-based problems specific to women and children by using data analytics and big data. Avani is also an avid runner, always looking to sign up for the next Disney marathon. With all that being said, Avani still considers her greatest accomplishment to be personal rather than professional—she is the proud mother to her 10-year-old son, Sahil, 7 year old daughter, Sareena, and newborn son, Hastin.
Terry Barber

Terry Barber

Information Security Manager - Security Analytics, American Express Global Business Travel

Terry hails from Santa Cruz California originally and began his career in Information Technology at Mighty Net, Inc. (founding company for Creditreport.com) as CTO – Director of Systems and Security while attending California State University Northridge. There he was responsible for all Infrastructure, networking, and security. In 2007, Terry took a Director of IT position at Protocol and left the company as Director of US IT Operations when they were acquired by Expert Global Solutions. At EGS he ventured back into Information Security role full-time and worked alongside his CISO as the two man team responsible for achieving PCI compliance across the Enterprise. In 2015 he transitioned to American Express Global Business Travel as an Information Security Manager. Today his responsibilities include Cyber Security Metrics, Managing the Vulnerability management platforms including Qualys and several other Information Security platforms at GBT.
Jon Oltsik

Jon Oltsik

Distinguished Analyst and Fellow, Enterprise Strategy Group

Jon Oltsik is a distinguished analyst, fellow, and the founder of the firm’s cybersecurity service. With over 35 years of technology industry experience, Jon is widely recognized as an expert in all aspects of cybersecurity and is often called upon to help customers understand a CISO's perspective and strategies. Jon focuses on areas such as cyber-risk management, security operations, and all things related to CISOs.
Art Thompson

Art Thompson

CIO, City of Detroit

Art Thompson is the Chief Information Officer (CIO) for the City of Detroit, Department of Innovation and Technology (DoIT). Prior to this appointment, he served as the Director of Public Safety and Cyber Security for DoIT. Thompson is a graduate of Eastern Michigan University with a degree in Supply Chain Management. He has more than 12 years of technical experience with the public safety environment and managing public safety personnel. His technical skills include radio and desktop installation, as well as software and hardware maintenance. His responsibilities included, but were not limited to, managing Desktop Support, Mobility Support, Network Administration and Cyber Security Teams all of which he confidently championed. Thompson began his career with DoIT as the Manager for Mobility Support. His accomplishments as Manager further revealed his advanced technical skills and managerial abilities, which lead to his promotion to Director. After serving nearly three (3) years as Director, he further excelled in management and in handling budgetary issues. His vision, dedication, motivation and commitment to the City of Detroit ultimately lead to his appointed as CIO.
Mike Orosz

Mike Orosz

Global Chief Information and Product Security Officer, Vertiv

Mike Orosz is Global Chief Information and Product Security Officer at Vertiv accountable for all aspects of global information and product security. He was previously Sr. Director Global Cyber and Physical Security at Citrix and Global compliance Officer for Citi. Mike also served in the US Army focusing on Intelligence, Security and Analytics. He holds a master's degree in information sciences, cybersecurity from PennState University.
Travis Smith

Travis Smith

Vice President, Threat Research Unit, Qualys

Travis is the Vice President of Malware Threat Research at Qualys. He has spent the past 15 years in the security industry with a focus on digital forensics and incident response. He holds a wide array of certifications ranging from GIAC Certified Penetration Tester to the CISSP, as well as an MBA with a concentration in information security. Travis has presented his research at conferences worldwide at venues such as BlackHat, RSA, and SecTor.