Black Hat USA 2025
Want to Manage Cyber Risk at the Speed of Business with Agentic AI?
Visit us at booth 2233 to learn how the Qualys Enterprise TruRiskTM Platform, powered by Agentic AI, can measure, communicate, and autonomously eliminate cyber risk everywhere.

Qualys Sessions at Black Hat USA
IN-PERSON SESSION:
Business Hall Theater E
IS YOUR CTEM MONEY-MINDED?
August 6, 2025, 12:15 PM - 12:40 PM
Richard Seiersen, Chief Risk Officer, Qualys
Unveiling A New Approach to Cyber Risk Management: Moving from Attack Surface Management to Risk Surface Management
Modern businesses are risk-generating machines. They pursue digital and AI transformation, exposing more value to more people through more channels at higher velocities, in the hope of generating more revenue and profit. Their adversaries are similarly transforming, seeking to capitalize on this volumetric exposure. At the center of this emergent milieu stands security.
Is this asymmetric warfare? Meaning, is security destined to be crushed between super-funded business innovation and legions of artificially intelligent adversaries? Not if we have a modern risk-based approach to security that scales – that works backwards from what the modern business stands to lose.
In this keynote, we will unpack:
- The evolution from attack surface management (ASM) to risk surface management (RSM)
- The emergence of the Risk Operations Center (ROC) as a money-minded CTEM
- The role of the modern cybersecurity risk management leader.
Mayuresh Ektare, Vice President, Product Management, Enterprise TruRisk Management, Qualys
Tired of playing whack-a-mole with endless alerts—vulnerabilities, misconfigurations, web app flaws, and cloud risks? As cyber threats grow and compliance stakes rise, security teams can no longer afford reactive tactics. The Risk Operations Center (ROC) offers a smarter way—centralizing security signals, business context, and automated workflows to drive continuous, measurable risk reduction.
In this session, we'll show how Qualys ETM helps organizations cut through the noise and focus on the exposures that actually matter. Learn how to move from alert overload to a unified, risk-based approach that enables faster decisions and stronger outcomes.
Key takeaways:
- Turn vulnerability data into prioritized, business-aligned risk signals
- Automate triage and remediation with context-aware playbooks
- Build a clear, executive-friendly risk narrative
IN-PERSON SESSION:
Business Hall Theater E
Cancel Exposure
Whack-o-Mole with a
Risk Operations Center
(ROC)
August 6, 1:30 PM - 2:20 PM

Booth sessions
Operationalize Risk Surface Management with Industry's first Risk Operations Center (ROC)
Bhagyashree Thorat, Principal Product Manager, Enterprise TruRisk Management, Qualys
Auto-Renew your Expiring Certificates and Readiness for Post-Quantum Computing
Pablo Quiroga, Senior Director, Product Management, CSAM & EASM, Qualys
Israeli Discount Bank's Journey with Qualys TotalAppSec
Beatrice Sirchis, CyberSecurity Engineer, IDBNY
Cloudy Attack Paths: Use TruRisk GPS from Code to Cloud
Shrikant Dhanawade, Director, Product Management, Qualys
Putting the 'M' in Vulnerability Risk Management
Siddharth Bhatia, Director, Product Management - CSAM & EASM, Qualys
Proactive Cyber Risk Reduction with ImagineX's mROC Services
Tim Salvador - ImagineX
Qualys Solutions Change the Game for the New Orleans Saints
Jeff Huffman, Director, New Orleans Saints
The Eliminator: How Security Teams Can Slash Risk at the Root
Eran Livne, Senior Director, Endpoint Remediation, Qualys
Protect What Powers Your AI: Risk-First Container Security at Cloud Speed
Abhishek Singh, VP Product Management, Qualys; Abhinav Mishra, Product Management Director, Container Security, TotalCloud CNAPP, Qualys
TruLens as a Unified Threat Intelligence Gateway
April Lenhard, Principal Product Manager, Qaulys