External Attack Surface Management: Tanium Tech Talks #166

Aug 3, 2026

Tanium just gained an outside-in view. Today we're walking through External Attack Surface Management — a new, Atlas-native solution that scans the internet the way an attacker would, correlates what it finds to real vulnerabilities, and helps you prioritize what to fix first.

In this episode you'll learn:
🌐 How an outside-in view surfaces every internet-facing host, web property, and certificate
🌱 How to kick off discovery from a single seed and let attribution map the rest
🔎 How to filter to hosts with critical findings and validate how each asset was attributed to you
🗂️ How to turn dozens of findings into tiered, shareable remediation reports fast
🛡️ How to map results to compliance frameworks

RESOURCES:
Converge 2026 Promo Code: TechTalks2026
Release Announcement: https://help.tanium.com/bundle/EASM/page/ANN/EASM/EASM_Community_Article.htm
User Guide: https://help.tanium.com/bundle/ug_exposure_management_cloud/page/exposure_management/easm/overview.html

CHAPTERS:

0:00 Intros

0:36 What is External Attack Surface Management (the outside-in view)

2:01 Getting started: seeds & configuration in Atlas

5:14 DEMO: Your external attack surface inventory

7:10 Hosts with critical findings & validating discovery paths

9:10 DEMO: Prioritizing vulnerabilities with Atlas (EPSS, CISA KEV, exploit intel)

12:56 Tiered buckets & shareable reports

15:56 Refresh cadence & remediation recommendations

17:36 DEMO: Mapping HTTP header misconfigs to OWASP Top 10

21:45 How to get it (SKU & availability)

22:53 Wrap-up