External Attack Surface Management: Tanium Tech Talks #166
Tanium just gained an outside-in view. Today we're walking through External Attack Surface Management — a new, Atlas-native solution that scans the internet the way an attacker would, correlates what it finds to real vulnerabilities, and helps you prioritize what to fix first.
In this episode you'll learn:
🌐 How an outside-in view surfaces every internet-facing host, web property, and certificate
🌱 How to kick off discovery from a single seed and let attribution map the rest
🔎 How to filter to hosts with critical findings and validate how each asset was attributed to you
🗂️ How to turn dozens of findings into tiered, shareable remediation reports fast
🛡️ How to map results to compliance frameworks
RESOURCES:
Converge 2026 Promo Code: TechTalks2026
Release Announcement: https://help.tanium.com/bundle/EASM/page/ANN/EASM/EASM_Community_Article.htm
User Guide: https://help.tanium.com/bundle/ug_exposure_management_cloud/page/exposure_management/easm/overview.html
CHAPTERS:
0:00 Intros
0:36 What is External Attack Surface Management (the outside-in view)
2:01 Getting started: seeds & configuration in Atlas
5:14 DEMO: Your external attack surface inventory
7:10 Hosts with critical findings & validating discovery paths
9:10 DEMO: Prioritizing vulnerabilities with Atlas (EPSS, CISA KEV, exploit intel)
12:56 Tiered buckets & shareable reports
15:56 Refresh cadence & remediation recommendations
17:36 DEMO: Mapping HTTP header misconfigs to OWASP Top 10
21:45 How to get it (SKU & availability)
22:53 Wrap-up