June 24, 2026
10:00 AM – 11:00 AM PT
San Francisco, CA
● Emergency meeting called

Black Hat USA 2026 · Virtual Follow-Up Series

The imposter is still on board. Two sessions to eject them fast.

Missed us in Vegas? Join Tanium for two exclusive virtual sessions that pick up where Black Hat left off. Deeper dives, real demos, no filler. Just the tactics you need before the imposter finishes the job.


Session 1 - recording available ON-DEMAND

September 10 · 10 AM PT / 1 PM ET

Autonomous Security Operations with Tanium Atlas

Find, Fix, Finish, Fast

 Brent Midwood Aaron Smith

Watch the recording here

AI has changed the math as attackers can now compromise an environment in minutes. Your team is stuck on manual tasks while adversaries move at machine speed. Something's sus — and you don't have time to call another meeting.

Brent Midwood and Aaron Smith will show how Tanium Atlas rewrites the rules with autonomous, AI-driven workflows that collapse the time between detection and resolution — from hours to minutes to seconds.

  • How Atlas fuses real-time endpoint intelligence with agentic AI to find threats the moment they emerge
  • The autonomous decisioning engine that lets you fix at scale without breaking production
  • How to finish incidents decisively — confirmed remediation, not just closed tickets
  • Why "fast" isn't a metric anymore. It's the operating model.

Built for Security Operations Teams

 

Session 2 - Register using the form

September 24 · 10 AM PT / 1 PM ET

Map the Path, Break the Chain

AI-Contextualized Exposure Across the Hybrid Attack Surface

David Soo Hoo Lucas Lyons


CVSS tells you how bad a vulnerability looks in isolation. It doesn't tell you which one actually matters in your environment. See how Tanium's Atlas maps your hybrid attack surface the way an adversary would — chaining internet-facing exposures through endpoints, cloud, and identity to reach your Crown Jewels — then surfaces the one fix that breaks the most paths at once. This is exposure management built for how attacks actually happen

David Soo Hoo and Lucas Lyon will unpack how Tanium uses AI-contextualized exposure intelligence across cloud, on-prem, and endpoint to expose the paths that matter and shut them down at the source.

  • How to move past CVE lists to attack path analysis grounded in your real hybrid environment
  • Where AI actually earns its keep — prioritizing what's reachable, exploitable, and impactful
  • How to break the chain at the choke points that kill the most risk with the least effort
  • Real examples of exposure reduction across identity, endpoint, cloud workload, and network

Built for vulnerability and exposure management leaders



Don’t get voted out

Save your seat

Session Topics

Featured speakers

Brent Midwood

Brent Midwood

Sr. Director, PM and Portfolio Lead

Session 1
  Aaron Smith

Aaron Smith

Head of Threat Hunting

Session 1
  David Soo Hoo

David Soo Hoo

Director, Product Management

Session 2
  Lucas Lyons

Lucas Lyons

Director, Product Management

Session 2

Brent Midwood and Aaron Smith

Session Title

Speaker Name

Session Title

Speaker Name

Session Title

Speaker Name

Session Title

Speaker Name

Session Title

Speaker Name

Session Title

Speaker Name

Session Title

Speaker Name

Session Title

Speaker Name

Session Title

Speaker Name

Session Title

Speaker Name

Session Title

Speaker Name

Session Title

Speaker Name

Session Title

Speaker Name

Session Title

Speaker Name

Register now

FEATURED SPEAKERS


Brent Midwood

Brent Midwood

Sr. Director, PM and Portfolio Lead

Session 1
  Aaron Smith

Aaron Smith

Head of Threat Hunting

Session 1
  David Soo Hoo

David Soo Hoo

Director, Product Management

Session 2
  Lucas Lyons

Lucas Lyons

Director, Product Management

Session 2

Brent Midwood

Sr. Director, PM and Portfolio Leadead of Threat Hunting

Aaron Smith

Head of Threat Hunting

David Soo Hoo

Director, Product Management

Lucas Lyon

Director, Product Management

Speakers

Savanah Leonardo

Co-Founder, Inc.

Savanah Leonardo

Co-Founder, Inc.

Savanah Leonardo

Co-Founder, Inc.

AGENDA

Suite Schedule


TUESDAY, AUGUST 4TH

Length Session Speaker

Alex McGrath

VP of Product, Acme Corp

10:00 AM – 7:00 PM

Suite open

Demo stations, Atlas hands-on labs, 1:1s and walk-ins welcome

Alex McGrath

VP of Product, Acme Corp

1:00 PM – 4:00 PM

Midday Reception

No room key? Stash the bags, grab a bite and a drink. Demo stations, Atlas hands-on labs, scheduled 1:1s and walk-ins welcome

Alex McGrath

VP of Product, Acme Corp

★ 1:00 PM

15-min Session

Map the Path, Break the Chain: AI-Contextualized Exposure Across the Hybrid Attack Surface


CVSS tells you how bad a vulnerability looks in isolation. It doesn't tell you which one actually matters in your environment. See how Tanium's Atlas maps your hybrid attack surface the way an adversary would — chaining internet-facing exposures through endpoints, cloud, and identity to reach your Crown Jewels — then surfaces the one fix that breaks the most paths at once. This is exposure management built for how attacks actually happen, not how dashboards are organized.

Speaker: David SooHoo, Director, Product Management
Solution: Exposure Management

Pre-registration Required

Alex McGrath

VP of Product, Acme Corp

★ 3:00 PM

15-min Session

Hunt Faster. Find More. Let Atlas Lead.


The classic hunt works: query, pivot, repeat, refine but this takes time and bandwidth from your team. Now watch Tanium Atlas speed this up - agentic threat hunting in action: Atlas picks the right tool, Threat Navigator runs the hunt, and live endpoint data closes the loop automatically. Same threat, a fraction of the time. Come see the before and after for yourself.

Speaker: Brent Midwood, Sr. Director, Product Management
Solution: Security Operations

Pre-registration Required

Alex McGrath

VP of Product, Acme Corp

★ 4:30 PM

15-min Session

The SOC That Never Sleeps


Threat hunting. Alert Triage. Forensics Analysis. Detection Engineering. Now picture all of it running continuously — no analyst pulled in until a decision actually needs a human judgment call. In this session, we fire a real attack cycle against a live tenant and watch a mesh of Tanium Atlas background agents work the full security operations workflow end to end, live, in real time. This isn't a roadmap demo. This is what your SOC looks like when the agents never clock out.

Speaker: Aaron Smith, Head of Threat Hunting
Solution: Tanium Atlas

Pre-registration Required

Alex McGrath

VP of Product, Acme Corp

7:00 PM onward

Crewmate Council Dinners

Dinners across the Cosmopolitan (pre-registration required)

Alex McGrath

VP of Product, Acme Corp

WEDNESDAY, AUGUST 5TH

Alex McGrath

VP of Product, Acme Corp

7:00 AM – 9:00 AM

Suite open

Suite open. Demo stations, Tanium Atlas hands-on labs, scheduled 1:1s and walk-ins welcome

Alex McGrath

VP of Product, Acme Corp

9:00 AM – 4:00 PM

Suite open

Demo stations, Tanium Atlas hands-on labs, scheduled 1:1s and walk-ins welcome

Alex McGrath

VP of Product, Acme Corp

★ 11:30 AM

15-min Session

Hunt Faster. Find More. Let Atlas Lead.


The classic hunt works: query, pivot, repeat, refine but this takes time and bandwidth from your team. Now watch Tanium Atlas speed this up - agentic threat hunting in action: Atlas picks the right tool, Threat Navigator runs the hunt, and live endpoint data closes the loop automatically. Same threat, a fraction of the time. Come see the before and after for yourself.

Speaker: Brent Midwood, Sr. Director, Product Management
Solution: Security Operations

Pre-registration Required

Alex McGrath

VP of Product, Acme Corp

★ 3:00 PM

15-min Session

The SOC That Never Sleeps


Threat hunting. Alert Triage. Forensics Analysis. Detection Engineering. Now picture all of it running continuously — no analyst pulled in until a decision actually needs a human judgment call. In this session, we fire a real attack cycle against a live tenant and watch a mesh of Tanium Atlas background agents work the full security operations workflow end to end, live, in real time. This isn't a roadmap demo. This is what your SOC looks like when the agents never clock out.

Speaker: Aaron Smith, Head of Threat Hunting
Solution: Tanium Atlas

Pre-registration Required

Alex McGrath

VP of Product, Acme Corp

4:00 PM – 6:00 PM

Meetings

Pre-booked meetings only

Alex McGrath

VP of Product, Acme Corp

6:00 PM – 9:00 PM

the headline event

Networking Happy Hour

Alex McGrath

VP of Product, Acme Corp

★ 8:00 PM

15-min Session

Map the Path, Break the Chain: AI-Contextualized Exposure Across the Hybrid Attack Surface


CVSS tells you how bad a vulnerability looks in isolation. It doesn't tell you which one actually matters in your environment. See how Tanium's Atlas maps your hybrid attack surface the way an adversary would — chaining internet-facing exposures through endpoints, cloud, and identity to reach your Crown Jewels — then surfaces the one fix that breaks the most paths at once. This is exposure management built for how attacks actually happen, not how dashboards are organized.

Speaker: David SooHoo, Director, Product Management
Solution: Exposure Management


Pre-registration Required

Alex McGrath

VP of Product, Acme Corp

Tanium Penthouse Suite

Mandalay Bay

3950 Las Vegas Blvd S, Las Vegas, NV 89119

The penthouse is where real conversations happen. Come for the demos, stay for the prizes, leave knowing exactly how Tanium can fortify your stack.

FAQ

Still have questions?

Find answers to the most common questions, or reach out to our team for personalized guidance.

What is the format of this event?

This is an in-person event with virtual attendance options available.

Is there a cost to attend?

No, this event is complimentary for qualified attendees.

Will sessions be recorded?

Yes, all sessions will be recorded and made available within 48 hours.

How do I get CPE credits?

CPE credit instructions will be emailed to registered attendees prior to the event.

Who should attend?

This event is designed for IT security and operations leaders at enterprise organizations.