Skip to main content

Author

Tanium Staff

Market analysis: a finger points at financial charts on a touchscreen

Along with the Bank of England in May, the ECB is requiring organisations to produce an action plan against AI-driven cyberattacks. What it wants, however, is not a strategy paper but proof of operational readiness.

Atlas chat showing the slash command picker with the hunt, investigate, and signal commands

With /hunt, /investigate, and /signal, Atlas turns a simple chat interaction into a guided SecOps workflow grounded in live endpoint state.

Image of group of professionals looking at laptop screen
Agent-guided threat hunting in Tanium Atlas showing coordinated Threat Response alert clusters and AI-recommended next actions

Agentic SecOps changes the operating model: with Tanium Atlas, security teams can direct work in natural language, reason over live endpoint data, and keep humans in control.

Threat alerts triage

Tanium Atlas MCP Server helps security and IT teams safely connect AI clients and agents to governed endpoint data, so investigations and operations can move faster without sacrificing control.

Tanium’s Summer Intern Program: A Launch Pad to Leadership in Cybersecurity

A look at Tanium’s leading summer internship program – and why it’s a great option for students and professionals entering cybersecurity.

Featured image for Security automation tools: What they are and how they work blog post

Security automation tools use software-driven workflows to detect, investigate, and remediate cyberthreats with minimal manual intervention. By integrating across your security stack, these tools reduce alert fatigue, accelerate automated incident response, and maintain continuous compliance.

Featured image for Automated vulnerability management explained blog post

Automated vulnerability management uses continuous scanning, risk-based prioritization, and orchestrated remediation workflows to identify, assess, and fix security weaknesses with minimal manual intervention.

Featured image for Building an effective endpoint security strategy blog post

An endpoint security strategy is a structured plan that defines how an organization protects, monitors, and manages all devices connecting to its network (including laptops, desktops, servers, mobile devices, cloud workloads, and OT systems) through coordinated policies for access control, threat detection, vulnerability management, and incident response.

Featured image for celebrating International Women in Engineering Day

Every great innovation begins with someone willing to ask a better question. On International Women in Engineering Day, we celebrate the women who look at a broken process and decide to build something new. At Tanium, we have plenty of those women. This June 23, we're proud to shine a spotlight on Julia Grunewald, a product leader who thought differently, changed how our customers understand risk, and earned two U.S. patents along the way.

Featured image for Continuous vulnerability management: Is your program actually continuous blog post

Continuous vulnerability management (CVM) is an ongoing, automated approach to discovering, analyzing, prioritizing, and remediating security weaknesses across an organization's IT environment. It replaces periodic scans with real-time visibility that shrinks attacker opportunity windows.

セキュリティアップデート:Salesforceからのデータ流出を招いたKlue社の情報漏洩に対するTaniumの対応

今週はじめ、弊社が利用しているサードパーティ製プラットフォームである Klue 社において、セキュリティ侵害が発生したことを確認いたしました。Klue 社は、OAuth 連携を通じて Salesforce と競合分析、商談成否データなどを同期するサービスを提供しており、今回その連携サービスが侵害を受けました。攻撃者は、Klue 社のシステムから窃取した認証情報を用いて、弊社の Salesforce CRM 内のデータにアクセスいたしました。弊社は確認後ただちに対応し、問題の是正と防御強化のための措置を講じております。

Featured image for Agentic AI security: Key challenges and how to address them blog post

Agentic AI security protects autonomous AI systems that independently plan, reason, and execute multi-step actions across enterprise environments without continuous human oversight.

テレビ東京「ワールドビジネスサテライト(WBS)」にて放送されました

このたび、テレビ東京様の報道番組「ワールドビジネスサテライト(WBS)」に当社が取り上げられました。

Featured image for Risk-based vulnerability management explained blog post

Risk-based vulnerability management (RBVM) is a cybersecurity methodology that prioritizes vulnerabilities based on actual business risk rather than technical severity scores in isolation. RBVM combines vulnerability severity, exploitation likelihood, threat intelligence, and asset criticality to focus remediation on the exposures most likely to be weaponized against your specific environment.

タニウムのライセンスを無償提供「フロンティア AI レスキュープログラム」

タニウムを"試せる"を用意しました。初期費用 0円。最大6ヶ月、タニウムを無償提供いたします。 27年間、誰も見つけられなかった脆弱性を、最先端のフロンティアAIはわずか数時間で発見しました。攻撃の「量・速度・担い手」が一変し、日本政府や大手金融機関も備えを始めています。「年に数回パッチを当てる」運用では、もう間に合いません。 いま必要なのは、全端末を継続的に可視化し、是正し続ける運用への転換です。Taniumはその移行を、初期費用0円・最大6ヶ月無償で支援します。

Featured image for Latest agentic AI developments and industry trends blog post

A practitioner's guide to the capability shifts, framework changes, and regulatory developments reshaping how enterprise IT and cybersecurity teams govern, deploy, and defend against autonomous agents.

Featured image for what is automated vulnerability management blog post

Automated vulnerability remediation uses policy-driven workflows to execute approved remediation actions, including patch deployment, software updates, and configuration changes, consistently across managed assets. Within a broader vulnerability management program, it helps teams close the gap between identifying an exposure and safely resolving it at scale.

Featured image for what is vulnerability remediation blog post

Vulnerability remediation is the process of fixing and validating security flaws in systems, applications, or infrastructure using patches, configuration changes, or compensating controls after they are identified and prioritized.

Inside Tanium: the award-winning culture of the Bay Area office

Solutions Engineer Kaylin Martin shows us why Tanium's Emeryville, California, office was named a 2026 Best Workplace in the Bay Area.

Featured image for Understanding continuous threat exposure management (CTEM) blog post

Continuous threat exposure management, or CTEM, is a five-stage program framework for continuously reducing real-world security exposure. It builds on vulnerability scanning by adding risk-informed prioritization, validation of exposure conditions and control effectiveness, and cross-team mobilization to drive remediation.

Tanium at the Gartner Security & Risk Management Summit 2026

As security leaders prepare to tackle the industry’s most urgent priorities, Tanium will bring the real-time intelligence and agentic AI capabilities needed to close the gap between insight and execution.

Featured image for what is endpoint security management blog post

Endpoint security management is the centralized IT and security discipline of discovering, monitoring, and controlling all devices on an enterprise network, including laptops, servers, mobile devices, and IoT hardware, to reduce unauthorized access and limit how far threats can travel once inside.

See resilience at scale at Converge World Tour

A preview of the conversations coming to Converge London and Paris this May — and why they matter beyond the event floor.

Featured image for what are vulnerability scanners blog post

Vulnerability scanning tools are software solutions that assess networks, systems, and applications for known security weaknesses, misconfigurations, and unpatched software by comparing observed state against vulnerability intelligence.

Featured image for what is cloud patch management blog post

Cloud patch management is the process of centrally identifying, validating, and deploying operating system and software updates across cloud-based and remote workloads, reducing reliance on on-premises patching infrastructure while helping reduce the security risks associated with unpatched systems.

Featured image for what is server patch management blog post

Server patch management is the process of identifying, testing, and deploying software updates to close security vulnerabilities in server operating systems and applications.

Featured image for what is mac patch management blog post

Mac patch management is the process of identifying, testing, and deploying software updates across macOS endpoints and third-party applications to reduce the window of exposure before attackers can exploit known vulnerabilities. It's a foundational practice within any enterprise cybersecurity program, particularly as Mac adoption in corporate environments continues to grow.

Featured image for what is a software patch blog post

A software patch is a targeted code update that vendors release to fix cybersecurity flaws, correct bugs, or address performance issues in an existing application or operating system without replacing the software entirely.

Featured image for Tanium + Moveworks + ServiceNow: Showcasing end-to-end incident resolution in a single experience blog post

IT fulfillers typically juggle multiple systems to resolve a single incident: the ticket in ServiceNow, endpoint data in a separate console, and a knowledge base full of prior resolutions. The upcoming Moveworks integration with Tanium changes that. Real-time endpoint intelligence appears directly in the chat window where fulfillers already work, whether that is Slack, Microsoft Teams, or the ServiceNow web experience. The result is a faster, more focused workflow, coming soon through the Service Operations Assistant for Fulfillers, available with Moveworks from ServiceNow.

Featured image for Copy Fail (CVE-2026-31431): What Linux administrators need to know now blog post

Copy Fail, or CVE-2026-31431, is a Linux kernel local privilege escalation vulnerability that can let an unprivileged local user corrupt page-cache-backed file data under specific conditions and potentially escalate privileges. Exposure depends on the running vendor kernel and backported fixes. Installing a vendor-provided kernel fix is the primary remediation, with temporary mitigations available in some environments if patching is delayed.

Featured image for types of AI agents blog post

AI agents fall into five foundational categories: simple reflex, model-based reflex, goal-based, utility-based, and learning agents. Each is defined by how much environmental awareness and decision-making complexity the system can handle, from fixed condition-action rules to feedback-driven self-improvement.

Featured image for patch management policy blog post

A patch management policy is a formal organizational document that defines how software updates are identified, prioritized, tested, and deployed across an organization's systems to address security vulnerabilities that attackers commonly exploit to gain initial access.

Featured image for patch management best practices blog post

Effective patch management requires a structured process of inventorying assets, prioritizing vulnerabilities by risk, testing fixes before broad deployment, and automating rollout: steps that collectively help narrow the window between a vendor's patch release and active exploitation across enterprise systems.

How Mythos is reshaping enterprise security posture video thumbnail

Tanium CRO Pedro Diaz and Sr. Director of Solution Engineering Mark Liu break down why Anthropic's Mythos model is fundamentally changing the threat landscape, and what enterprise security teams must do right now to keep pace with machine-speed attacks.

Tanium Nasdaq interview

At RSAC 2026, Tanium’s CEO tells Nasdaq’s Kristina Ayanian how self-learning, self-healing systems help IT Ops and cybersecurity teams succeed in the AI age.

Tanium + ServiceNow logos over night shot of Las Vegas strip

Together, Tanium and ServiceNow help organizations build a more secure, resilient, and confident future. Join us at Knowledge26.

Featured image for what is vibescamming blog post

VibeScamming refers to AI-assisted phishing operations where attackers use natural-language tools to rapidly generate and modify phishing content and web pages, lowering (but not eliminating) the technical skill required. One of the primary enterprise impacts is faster phishing iteration and reconstitution after blocks or takedowns, with identity compromise remaining a major risk alongside malware and other payload-based attacks.

Featured image for Vercel security incident blog post

Public reporting suggests the incident involved abuse of a third-party application that had been granted OAuth access to a Vercel employee account, enabling unauthorized access to some internal resources. Certain customer‑related tokens, environment variables, or other access artifacts may have been exposed, though Vercel has not stated that password theft was part of the initial access path. The breach illustrates how trusted SaaS integrations and delegated access have become a significant attack surface for enterprises with interconnected developer workflows, even when no software vulnerability in production infrastructure is exploited.

Autonomous IT operations: Transforming enterprise IT management video thumbnail

At RSAC 2026, Tanium CTO Matt Quinn makes the case that Autonomous IT (real-time, endpoint-level decision-making at scale) is the operational foundation enterprises must build before AI acceleration leaves them behind.

Blog image for Claude Mythos security risks

Anthropic's Claude Mythos Preview demonstrated significant acceleration in capabilities for autonomously identifying vulnerabilities and exploit chains across major software and operating systems. Government and industry leaders are focused on understanding the real risks the model presents, and how to leverage these advanced technologies to protect and defend against adversarial use.

Blog image for patch management process

Learn why the patch management process is an end‑to‑end operating discipline, not a one‑time task.

Featured image for Axios npm package vulnerability incident blog post

Learn what happened with the Axios npm package vulnerability, how to confirm exposure to malicious versions, and how Tanium Guardian can help investigate.

Featured image for Claude Code source exposure blog post

Inside the npm packaging mistake that exposed half a million lines of Claude Code.

Real-time endpoint intelligence for AI-era security: Tim Morris at RSAC 2026 video thumbnail

Watch Tim Morris at RSAC 2026 explain why real-time endpoint visibility is step zero for trusted automation and autonomous security ops.

Featured image for CVE-2025-47813 Wing FTP Server vulnerability blog post

CISA KEV‑listed CVE‑2025‑47813 exposes Wing FTP Server install paths used in attack chains. Learn which versions are affected and how to remediate.

why-our-ai-world-demands-a-remediation-first-approach-to-exposure-management

Explore how a remediation‑first model turns exposure data into meaningful risk reduction in an AI world.

Featured image for What is a Vulnerability Assessment blog post

Read this vulnerability assessment guide to learn how to identify assets, uncover weaknesses, and prioritize risk before attackers exploit known gaps.

Featured image for What is threat and vulnerability management blog post

Learn what threat and vulnerability management is, how TVM connects threats to exposure, and why risk‑based prioritization matters for security teams.

featured image for What is AI Compliance blog

Learn what AI compliance means in 2026, key risks and regulations, and why real‑time visibility and guardrails are essential for secure, responsible AI at scale.

Blog image for What is a security patch

A security patch is a software update that fixes a vulnerability (like an exploitable bug or design flaw) in software to protect it from cyberattacks. Applying security patches is an essential practice for bolstering cybersecurity, reducing risk, and ensuring compliance.

Featured image for what is hardware inventory management blog post

Hardware inventory management is the systematic practice of identifying, tracking, and maintaining an accurate record of all physical IT assets, such as laptops, servers, printers, and network devices, throughout their entire lifecycle, from acquisition to retirement.

Converge 2025

Couldn’t make it to Orlando? Or want to relive the highlights? These are the moments that defined Converge 2025.

Featured image for What is Windows patch management blog

Windows patch management is the practice of deploying and managing feature updates, bug fixes, and security patches at scale for Windows operating systems and applications. These updates go beyond adding new features, acting as critical safeguards that address vulnerabilities attackers commonly target.

Blog image for Converge 2025 Wednesday keynote insights: The future of Autonomous IT

Wednesday’s keynote delivered a dynamic mix of thought leadership, product innovation, and customer insights.

Blog image for Day 1 Tanium Converge 2025 highlights: Building unstoppable momentum

Tuesday's keynotes opened with a clear message: resilience isn’t enough in an era of complexity and AI-driven threats.

Converge 2025

Join us for Tanium’s 10th annual Converge, where you’ll discover how Tanium is shaping the next era of secure, resilient endpoint technology.

stock image: face in dark room lit by glow of a computer monitor

Learn what vulnerability scanning is and why its role in cybersecurity is expanding to meet today’s fast-moving threats.

From Fragmented to Unified: Driving Autonomous Endpoint Management Across Mobile and Computing Devices with the Tanium Connector for Microsoft Intune

The Tanium Connector for Microsoft Intune enables organizations to unify, manage, and report on all their endpoints through a single platform.

Image for What is third-party patch management blog post

Third-party patch management is a vital security practice that involves identifying, testing, and applying updates to third-party software, including business-critical applications like browsers, plug-ins, and productivity tools, to reduce risk, maintain compliance, and ensure endpoint stability.

IT professional performing Linux patch management in a data center with server racks and networking equipment

Learn how effective Linux patch management secures systems, reduces risk, ensures compliance, and keeps your infrastructure resilient.

Desktop featured image: CTI blog 2 - wide

Details from Tanium’s Guardian research team on CVE-2025-20333, -20362, and -20363—and RAYINITIATOR & LINE VIPER.

Featured image for What is Advanced Endpoint Protection blog post

Advanced endpoint protection (AEP) secures devices using intelligent, multi-dimensional defenses that go beyond traditional antivirus.

The Hidden Costs of Remote Support Security Incidents—And How to Mitigate Them With Tanium + ScreenMeet

Learn how Tanium and ScreenMeet help mitigate the hidden risks of remote support by embedding secure, real-time capabilities into endpoint management workflows.

Featured image for What is Endpoint Data Loss Prevention blog

Explore how endpoint data loss prevention works—and what real-time visibility, automation, and integration can do to make it smarter and more effective.

Salesloft Drift Data Breach: What We Know and What We're Doing

Hackers breached Salesloft in a major data theft, stealing OAuth and refresh tokens from Drift AI.

Huntington's disease fundraising event featured image

Each September, Tanium teams give back—this year, it's hiking Yr Wyddfa for charity.

Benchmark vulernability dashboard

We’ve integrated Tanium Risk into Benchmark for faster real-time risk and vulnerability reporting.

What is vulnerability management in cybersecurity? It’s everything

Vulnerability management is the continuous, proactive process of identifying, evaluating, remediating, and reporting on security weaknesses across systems, networks, and software to reduce attack surface and minimize cyber risk.

What is patch management? Your automation starter guide

Explore what patch management means today—and how automation boosts speed, consistency, and security at scale.

What is identity and access management (IAM)?

A comprehensive guide to identity and access management, including what it is, how it works, and best practices.

『能登半島地震の被災地・七尾市視察/市長からの感謝状授与式』 イベントレポート

AIを活用した自律型エンドポイント管理プラットフォーム「Tanium AEM」で 数百万台規模の企業IT端末をリアルタイムかつ網羅的に可視化/制御/復旧する タニウム合同会社(本社:東京都千代田区、代表執行役社長:原田英典、以下タニウム)は、「企業版ふるさと納税(正式名称:地方創生応援税制)」を活用し、令和6年能登半島地震の復旧・復興支援として石川県七尾市への支援を行いました。

A photo of a small toy figure of a man standing on a staircase of blocks split by a large gap

A recent survey and report cosponsored by Tanium and conducted by the Enterprise Strategy Group, now part of Omdia, uncovered data that some may find surprising—perhaps even alarming.

A closeup photo of a handshake between an AI robot and a human.

Tanium Autonomous Endpoint Management (AEM) for ServiceNow brings together two powerhouses: Tanium’s real-time endpoint data and ServiceNow’s AI-driven workflow automation.

Image for What is Threat Detection and Response blog post

Learn how threat detection and response reduces risk, accelerates action, and strengthens security organization-wide.

What is NIST Compliance?

NIST compliance refers to adherence to the cybersecurity standards and guidelines developed by the National Institute of Standards and Technology (NIST), which are designed to help organizations manage and reduce cybersecurity risk.

Image for Active Directory security blog post

What to know about Active Directory security, including common attack methods and best practices for protecting your organization against vulnerabilities.

Image for cybersecurity frameworks blog post

Cybersecurity frameworks provide a structured approach to managing digital risk, improving compliance, and strengthening your organization’s overall security posture. This guide outlines commonly adopted frameworks, compares their relevance across industries, and explores how Tanium supports enterprise compliance efforts through real-time visibility, control, and automation.

Image for blog post What is Cybersecurity Exposure Management

See how cybersecurity exposure management reduces risk with the CTEM framework and actionable insights.

Preparing for Windows 10 End of Support

Tanium’s Guardian Spotlight - Windows 10 End of Support Dashboard offers a comprehensive, flexible solution to navigate this transition.

Image for What is CMMC blog post

Discover the ins and outs of CMMC 2.0 compliance and how Tanium helps contractors achieve, maintain, and exceed cybersecurity maturity requirements.

What is CIS compliance? Top controls you can’t ignore

Learn what CIS compliance means, why it matters for cybersecurity, and how aligning with CIS benchmarks helps.

Gain Advanced Visibility and Control With Tanium Certificate Manager

With Certificate Manager, you can manage and secure more of your endpoints in more ways than ever before.

What Is Multifactor Authentication (MFA)?

Learn what multifactor authentication is, how it works, common types, and why it's critical to modern cybersecurity.

Enhance Digital Employee Experience (DEX) with Tanium Performance

Combining Tanium Engage and Performance provides a powerful DEX solution that bridges the gap between IT operations and employee experience through endpoint performance analytics and sentiment data.

Introducing Tanium HuntIQ: Find What Others Miss, Enhance What You Already Own

Expert-driven threat hunting uncovers hidden adversaries, strengthens defenses, and streamlines security responses.

What is vibe coding? The pros, cons, and controversies

Discover vibe coding—a new AI method raising big questions. Think AI, speed, and code you didn’t write—but must secure

Video thumbnail of Dan Streetman on NASDAQ's Live from Marketsite

Dan Streetman, CEO of Tanium, joins Nasdaq’s Kristina Ayanian at the RSA Conference to unpack what sets his company apart in the competitive world of cybersecurity and delves into what their clients prioritize.

Image for 8 Tanium Leaders Named 2025 CRN Women of the Channel blog post

Eight Tanium women. Countless achievements. One incredible honor: Recognized in the 2025 Women of the Channel program by CRN.

Tanium CTF Japan 2022を開催

本ブログでは2022年10月12日(水)から14日(金)に開催しました第2回Tanium CTF Japanイベントの準備からイベント終了まで中の人からの観点からの振り返りやいろいろな気づきを共有したいと思います。

What is World Password Day? And Why We Still Need It

Despite predictions to the contrary, passwords are here to stay. Four steps to strengthen passwords so they become a security asset, not a liability.

Screenshot of the Tanium console showing the Tanium Security Browser Connector

Tanium plans to bring the power of autonomous endpoint management with real-time visibility to web browsers.

Screenshot of Tanium Integrations Gallery

This new capability enables users to seamlessly discover, deploy, and manage joint solutions and integrations within the Tanium platform, all without requiring deep technical expertise.

What is Data Loss Prevention? And Why You Need It

Read this simplified guide to understanding the concept and benefits of data loss prevention for your organization.

What is agentic AI? What to know about this new AI type

Discover how agentic AI is revolutionizing processes with autonomous, intelligent workflows and real-world applications.

What is cyber threat intelligence? A simplified guide

Learn how cyber threat intelligence transforms security strategies to keep organizations safe from evolving threats.

Image for Windows 10 End of Life Guide blog post

Get ready for the Windows 10 end of life with our comprehensive guide on what to know and best practices to help make upgrading easier.

Image for How AI for Automation Will Revolutionize Today's IT Workflows blog post

Read how AI for automation is set to enhance IT processes, boost efficiency, and drive innovation.

Tanium Develops New AI Agent Integration with Microsoft Security Copilot

Tanium to develop a new AI agent for Microsoft Security Copilot, improving upon our existing integration and enabling SecOps teams.

Image for IT Automation: How It Works, Benefits, and Future Tools blog post

Discover how IT automation transforms efficiency, security, and innovation with this comprehensive guide.

Tanium Gives Certainty to U.K. Institutions of Higher Learning

Hear from IT leaders from some of the United Kingdom's top universities on the challenges they face and how they support their institution's mission of higher learning with help from Tanium.

Cybersecurity asset management (CSAM): Definition, benefits, and trends

Learn how cybersecurity asset management protects IT assets from evolving threats and growing AI uses.

Image for What is IT Asset Lifecycle Management blog post

Learn how IT asset lifecycle management ensures optimal asset use and the crucial role of having real-time visibility plays in an effective asset strategy.

Image for blog post What is Software Inventory

Discover how an effective software inventory unlocks your IT assets' potential to drive organizational success.

Tanium Software Inventory & Usage: The Key to Accurate Software Management

Tanium Software Inventory & Usage provides a single source of truth, enabling organizations to gain real-time insights.

Product screenshot of Tanium Remediation Visibility

Introducing Remediation Visibility, an automated workflow in Tanium Comply that revolutionizes vulnerability, exposure, and security management.

Tanium Autonomous Endpoint Management (AEM): The Experiences that Scale IT and Security Execution

Learn how Tanium AEM capabilities Tanium Guide, Adaptive Actions, and Action Oversight can be used to safely deliver changes into the IT environment.

Screenshot of Tanium Confidence Score drill-down view

Tanium Confidence Score aggregates real-time global insights, providing context on the safety and reliability of your planned actions and changes.

IT asset management or inventory system: Better together?

We know it's confusing: uncover the key differences between IT asset management and inventory systems.

2025 CRN Tanium Channel Chief

Tanium is excited to announce that CRN, a brand of The Channel Company, has named the following Tanium executive to its 2025 list of Channel Chiefs.

What is IT inventory management? Why tracking assets matters

Learn why IT inventory management is crucial, how it differs from ITAM, and the benefits of using next-gen software.

What is IT Asset Management? ITAM Explained

Discover the essentials of IT asset management, including best practices and real-world examples.

What is IT asset inventory? An essential how-to guide

Learn how IT asset inventory discovers your organization's hardware, software, and assets in real time to manage risks, detect threats, and ensure security.

Enhance Your Security Posture with Microsoft Azure Native Tools and Tanium

Learn how enhancing security and visibility for Microsoft Azure virtual machines with Tanium Azure VM Extensions improves management, compliance, and costs.

Is Your Organization Prepared for Tomorrow’s Risks? Announcing Tanium Integrated Risk Management for ServiceNow

Learn how Tanium Integrated Risk Management (IRM) for ServiceNow transforms visibility and control.

What is DORA? What banks need to know

Here are key insights on the E.U.'s Digital Operational Resilience Act (DORA).

Compliance vs. Risk Management: Definitions and Differences

Compare compliance and risk management, including how they are similar but different, and learn important best practices for unifying these strategies.

Image of a bandage on a motherboard that represents the necessity of patch management

Find out how unpatched software can compromise your security and discover strategies to mitigate these risks.

脆弱性診断はリスク管理にどう役立つ? 脆弱性診断のメリットでリスクを評価

セキュリティの重要性が認識されるにつれ、脆弱性診断を行うサービスやツールも増えてきました。それに伴い、企業には定期的に適切な脆弱性診断を行って企業内システムのリスクを管理・評価することが求められています。脆弱性診断を行うことで、自社のシステムのリスクを管理できるだけでなく、外部からの評価にもつながるからです。ここでは脆弱性診断とリスク管理の概要と、両者の関係を紹介します。

脆弱性を狙った攻撃から自社システムを守るには? 実際の攻撃事例や効果的な対策を解説

現代のビジネス環境において、情報セキュリティ対策は企業が生き残るための重要な事項です。しかし、脆弱性を狙った攻撃は増加し続けており、多くの企業がその被害を受けています。本記事では、実際に起きた攻撃例を交えながら、自社システムを守るための効果的な対策について解説します。

従業員デジタルエクスペリエンスの向上、迅速な調査、タニウム史上最速のスピード: 第3四半期の製品アップデート

企業が歩みを止めることなくDXを推進する中で、タニウムも常に進化し続けています。 Tanium Digital Employee Experience(DEX)に新機能を追加し、XEM Coreに新モジュールを搭載して、プラットフォームにTaniumユーザーのスピードを向上するためのアップデートを行いました。

脆弱性管理の現状と課題 企業が対応すべき脆弱性管理のポイントを解説

近年、サイバー攻撃の脅威がますます高まるなか、企業が保有する情報資産を守るために脆弱性管理は欠かせないものとなっています。脆弱性への対策が十分でないと、悪意のある第三者による脆弱性を狙った攻撃を招き、情報漏えいをはじめとした甚大な被害につながりかねません。ここでは、脆弱性の基礎知識を解説するとともに、脆弱性管理の具体的な進め方、企業が対応すべき脆弱性管理のポイントについて詳しくご説明します。

IDCの調査で、IT意思決定者の90%近くが2024年までにポイントソリューションから統合プラットフォームへの移行を計画していることが明らかに 〜組織全体のコスト・複雑性・リスクを軽減して、エンドポイント管理とセキュリティに対してプラットフォームベースのアプローチが必要であることが判明〜

業界唯一のコンバージド・エンドポイント管理(XEM)プロバイダーであるタニウムは、ITに関するリサーチとアドバイスをグローバルに提供するIDCの調査結果を発表し、エンドポイント管理とセキュリティを独立したポイントソリューションから統合(コンバージド)プラットフォームベースのモデルに移行することで、多くのメリットを実現できることが判明しました。

PIT Crew – Partner Innovators of Tanium パートナー技術者とイノベーターの新しいコミュニティをご紹介!

タニウムはこの度、「Partner Innovators of Tanium(通称PIT Crew)」という新しいプログラムをスタートしました。XEM(コンバージド・エンドポイント管理)の進化を共に進めながら、重要なITインフラを保護して、お客様の成功をサポートするという情熱を共有する技術者向けの、招待制のグローバルコミュニティです。 PIT Crewは、タニウムのグローバルなパートナーエコシステム全体でコラボレーションとイノベーションを促進するためのもので、タニウムがリソースやエキスパート、会員限定イベントなどをご提供します。この記事では、PIT Crewでタニウムのお客様やパートナー、そして業界にとってどのようなメリットがあるのか、ご紹介します。

エンドポイントセキュリティとは? 多様化する働き方でますます注目が集まる理由

エンドポイントセキュリティの重要性はますます大きくなっています。リモートワークをはじめとする働き方の多様化に伴い、企業が講じるべきセキュリティ対策も変わってきているからです。現在は、社員がどこで仕事をしていても対応できるセキュリティが求められています。 この記事では、エンドポイントセキュリティとはそもそも何なのか、どういった種類があるのかを紹介していきます。

セキュリティ・インシデントとは? 事例を交えてご紹介

近年サイバー攻撃の増加や多様化により、報道で情報漏えい事件が扱われることが増えてきました。そのなかで「セキュリティ・インシデント」という言葉を耳にすることはないでしょうか。セキュリティ・インシデントとは、セキュリティにおける事故やサイバー攻撃による事件のことです。近年は、サイバー攻撃の増加やテレワークの普及といったビジネス環境の変化により、セキュリティ・インシデントの数が大幅に増加しています。 ここでは、セキュリティ・インシデントの概要やその事例を紹介していきます。

セキュリティ・インシデントは対応が重要 発生後の対応と事前の対策について

セキュリティ・インシデントには、事前に十分な対策が求められます。特に注意しておきたいのは、インシデント発生前の対策だけではなく、インシデント発生後の対応も事前に決めておく必要があるということです。それによって、万一インシデントが発生しても素早くスムーズに対応することができます。 この記事では、インシデント対応の重要性と、発生前・発生後の対策を紹介します。

Image for What is Risk Management blog post

Discover the essentials of risk management, its importance, and effective strategies for organizations with this high-level guide.

多様化するサイバーセキュリティ対策 ツールの管理はどうするか?

企業のセキュリティ対策はどんどん難しくなっており、常に監視が必要です。その背景にはIT資産の増加やエンドポイント環境の変化、サイバー攻撃の多様化などの理由があります。多くの企業では安全に業務を行うために、アンチウイルスソフトウェア、エンドポイントセキュリティ、モニタリングなど、さまざまなセキュリティツールを駆使しているのではないでしょうか。 ここでは、セキュリティツールが乱立することによるデメリットとプラットフォームによる総合的な管理について解説します。

Tanium Threat ResponseでEmotet(エモテット)の挙動を追う

2023年3月頃からEmotetの感染手段として、OneNoteドキュメントを悪用する手法が確認されています。新しい手法は、従来のEmotetの感染に悪用されたOfficeドキュメントのマクロ機能を利用したものではなく、またウイルススキャンなどの検知から逃れるためファイルサイズを500MB以上にするなど、これまでの手法とは異なるものとなっています。本ブログではThreat Response(THR)の各機能を使って調査したEmotetの挙動を紹介します。THRのRecorder機能が多くの情報を記録しているため長文となっておりますが、最後までお付き合いいただけましたら幸いです。

セキュリティパッチとは? なぜ重要なのか、どう管理すればいいのか

セキュリティパッチとは、すでに公開されたソフトウェアで新たに発見された脆弱性や問題点を解決するための修正プログラムです。セキュリティパッチがなければ、発見された脆弱性はそのまま残され、大きなリスクが残された状態になります。企業においても、業務に利用している端末ではセキュリティパッチをきちんと管理し、新しいプログラムを速やかに適用することが重要です。 ここでは、セキュリティパッチを管理する必要性や適切な運用方法について説明します。

Introducing Tanium Ask™: Using AI to Get Questions Answered

Tanium Ask is an AI-powered enhancement that automatically translates the question into Tanium’s Interact syntax to produce answers.

Image for What is Compliance Management blog post

Learn essential strategies for effective compliance management to ensure adherence to regulations and standards while mitigating risks and enhancing security.

シャドーITはなぜ発生する? 情報システム部門はどう対策すればよいのか

多くの企業でシャドーITの利用が増えています。社員が慣れたデバイスやサービスを使ってしまったり、テレワークで私物のデバイスを仕事に使ったりしているためです。 しかし、シャドーITの利用にはセキュリティ上大きな問題があります。情報システム部門としては情報漏えいや社内ネットワークの安全のためにも、シャドーITは減らし、業務用の端末はきちんと管理したいところです。 ここでは、シャドーITとは何か、その原因と対策について説明します。

Converge 2024 Recap: Top 5 Takeaways (In Case You Missed It)

Whether you couldn’t attend, or you attended in person or virtually, we've got you covered with the top five highlights.

Meta featured image: 2024 GigaOm Patch Management Report

Tanium ranks as a patch management leader in GigaOm’s new Radar for Patch Management Solutions report for 2024.

情報資産とはどこまで含む? 適切な管理とセキュリティ対策とは

近年、情報資産の管理が重視されています。IoTやAIの普及、ビッグデータのビジネス運用やDXの推進など、情報が企業活動に不可欠なものになってきたためです。ビジネスで得られる情報には、一定の資産価値も認められています。 そのため、自社の持つ情報資産が悪意のある第三者に狙われたり、トラブルにより情報漏えいや内部不正に遭ったりした場合のリスクも大きなものです。適切に管理し、保護する必要があります。 ここでは、情報資産とは何か、脅威から守るためにはどうすればよいのかを説明します。

IT資産管理とは?IT資産の適切な管理はセキュリティ強化にもつながる

IT資産管理とは、企業内のITに関する資産、ハードウェアやソフトウェアをまとめて管理することです。IT資産管理と言えばPCの管理というイメージがあります。しかし、実際には固定資産管理だけでなく、セキュリティの強化やコスト削減にもつながる重要な業務です。そのため、正確な現状把握とより適切で効率的な管理が不可欠になります。 ここでは、IT資産管理の概要とその重要性、そして効率的な管理方法を説明します。

Featured image of Tanium Converge day 2 recap blog post

Here's what happened during day two of Converge, including Tanium platform announcements and more.

Day One Tanium Converge 2024 Highlights: Gaining Confidence in Today’s Security Landscape

An overview of day one at Converge, including how our innovations and automation capabilities empower customers to build confidence and resiliency.

インシデントレスポンスとは? 重要性や対応フローについても紹介

インシデントレスポンスは、セキュリティ対策のなかでも重要なポイントです。セキュリティを強化しても、被害の可能性はゼロにはなりません。それでも事前にインシデントレスポンスを準備しておくことで、サイバー攻撃に対する被害を最小限に抑えることが可能です。そのため、企業にとってインシデントレスポンスは不可欠と言っていいでしょう。 ここでは、インシデントレスポンスとは何か、インシデントレスポンスはどのように行うのか、インシデントへの対応フローなどを解説していきます。

脆弱性診断でわかること ツールを選ぶときのポイント

新しい脆弱性の発見は、ユーザーにとって大きな脅威になります。脆弱性はセキュリティの問題点であり、サイバー攻撃の突破口となって多くの攻撃を引き寄せるからです。サイバー攻撃の被害に遭うことを避けるためには、できるだけ速やかに脆弱性を発見して対策を行わなければなりません。 ここでは、脆弱性診断とは何か、脆弱性診断で何が分かるのか、脆弱性診断はどのように行われるのかを解説していきます。

担当者必見! 脆弱性対策の進め方から具体的な対策方法までを解説!

セキュリティ上の脅威となる脆弱性に対しては、定期的な脆弱性診断を行い放置しないことが大切です。そして、脆弱性診断のあとには診断に基づく対策を行っていきます。脆弱性は把握するだけでは意味がなく、対策までをセットにして、情報漏えいのような重大なトラブルを防がなくてはなりません。ここでは、サイバー攻撃の被害を防ぐために必要不可欠な脆弱性対策について、具体的にどのように進めればよいのかを解説していきます。

今の時代こそ求められる サイバーハイジーンの必要性を徹底解説!

セキュリティをより強化するため、サイバーハイジーンが注目されています。サイバーハイジーンとは、日常的にIT端末の衛生管理を行い、IT端末を健康な状態に保つことです。ここでは、サイバーハイジーンとは何か、なぜ必要なのか、そのために何をするのかなどを解説します。

Tanium Converge 2022 最新のTaniumによる可視化 組織全体からソフトウェアの中身まで

2022年11月14日(月)から4日間、Tanium Converge 2022がアメリカ テキサス州 オースティンで開催されました。本エントリーでは新モジュールBenchmarkと新機能Tanium SBOMについて記載します。第3回目で紹介したWorkflowとProvisionに続き、お客様の課題を解決するためのパワフルな機能となっておりますので、ご一読いただければ幸いです。

Image for Strengthening Cloud Security blog post

Learn how Tanium bridges posture and runtime protection for containerized environments with Cloud Workloads.

Decoding Essential 8 Compliance: How to Simplify and Automate with Tanium

Learn how Tanium enables organisations to truly increase their Essential Eight Maturity within days after installation.

ゼロトラストとは?今注目を集める理由と仕組みを解説

ゼロトラストは、昨今バズワード的に取り上げられるようになっていますが、言葉の意味としては「何も信頼しない」ということです。つまり、特定の技術や製品を指したものではありません。 この記事では、2020年8月にNIST(米国国立標準技術研究所)が公表したゼロトラスト・アーキテクチャという設計思想に沿って、定義や構成要素を解説します。

NISTが提唱するサイバーセキュリティフレームワーク(CSF)とは?

世界のあらゆる業種で用いられるNIST サイバーセキュリティフレームワークは、事実上の国際基準になり、グローバルなビジネスを展開する企業では必須となりつつあります。ハッキングやマルウェア感染などの攻撃を受けることを前提とし、攻撃者が最終目的までは果たせないようにするための枠組みであるNIST サイバーセキュリティフレームワークについて、構成要素や対応するメリットについて解説します。

What to Expect at Tanium Converge 2024: Building Confidence and Resiliency Through Innovation

Here's what's on the agenda for Tanium's annual event taking place for the first time in Orlando, Florida.

Image for What is Endpoint Monitoring blog post

Discover the essentials of endpoint monitoring, including how it differs from antivirus software, benefits, and insights into future trends and next-gen capabilities.

テレワーク時代のエンドポイントセキュリティ 〜EDRとEPPでデータ効果的に守る方法〜

テレワークの普及により、ゲートウェイではなくエンドポイント、つまり端末でのセキュリティが重視されています。そこで注目されているのが、マルウェアの侵入を受けても、EDRで被害を最小限に抑える方法です。多くの場合は、これまで主流であったEPPでのマルウェアの侵入阻止と組み合わせて使用します。それによって、よりセキュリティを強化することが可能です。 ここでは、EDRの仕組みやEPPとの違い、そしてEDRをより効果的に運用するためのポイントについて説明します。

端末管理は情報システムにとって必須業務!テレワーク下での管理方法は

テレワークが増えるにつれ、さまざまな端末が業務に使われるようになりました。なかには従業員の私物も含まれています。しかし、情報システム部門の把握していない端末やソフトウェアで社内ネットワークにアクセスすることには、さまざまな問題があります。社内ネットワークやサーバーの安全を守り、スムーズに業務を進めるためには、適切な端末管理が必要です。 ここでは、端末管理とは何か、適切な端末管理とはどういうものかについて説明します。

Why Tanium is a Great Place to Work

Here is a look at what makes Tanium a special place to work – and why our company culture is key to our success.

Hong Kong Skyline

We highlight our partnership with National Cyber League and how it's paving the way for students to enter the security field.

What is Threat Hunting? Overview With Real-World Example

Learn the basics of threat hunting, including best practices and tools for integrating proactive threat hunting into your security strategy.

What is MTTR? MTTR explained: A key metric for success

Discover how Mean Time to Repair (MTTR) and similar metrics can revolutionize your IT operations.

Image for What is MTTD blog post

Learn about the impact of mean time to detect (MTTD) on incident response effectiveness and practical steps to improve your detection capabilities.

在宅勤務に必要な端末管理とは? 在宅でのエンドポイントセキュリティ

在宅勤務を導入する企業や職場が増加するにつれ、セキュリティが問題になっています。企業としては在宅勤務におけるセキュリティ対策にはまだまだ手が回らないのにも関わらず、不正アクセスやマルウェアのリスクはオフィス以上に高いからです。事実上、在宅勤務でのセキュリティは社員それぞれが自己責任で対策しているといっていいでしょう。しかし、オフィスと同じように業務を行って同じデータやファイルを扱う以上、同じレベルのセキュリティを確保しなくてはなりません。そのためには、情報システム部門として在宅でのセキュリティにはどのような準備をすればいいのでしょうか。ここでは、在宅勤務でのエンドポイントセキュリティについて、概要を説明します。

Is unified endpoint management (UEM) Enough? Definition and future innovations

Discover how UEM strengthens device management efforts and how endpoint management is evolving to meet modern endpoint security needs.

A closeup photo of a handshake between an AI robot and a human.

Automate’s orchestration capabilities help IT and security organizations scale, gain efficiencies, and reduce errors.

What is endpoint management? New solutions and practices

Learn why effective endpoint management is crucial for staying ahead of cyber threats and what future capabilities are set to bring more advancements.

エンドポイントプラットフォームは次世代セキュリティの形

エンドポイントセキュリティが重視されるにつれ、エンドポイントプラットフォームへの注目が高まってきています。エンドポイントプラットフォームとは、エンドポイント管理とエンドポイントセキュリティを包括的に運用管理するためのプラットフォームです。 サイバー攻撃の多様化と増加、さらにテレワークの普及により、端末の場所や環境を問わずにセキュリティを確保する必要が出てきました。そこで、多くのエンドポイントを一元的に管理し、保護できる仕組みが求められているのです。 ここでは、サイバー衛生やエンドポイントセキュリティをトータルに管理できるエンドポイントプラットフォームについて説明します。

EDRとは何か?仕組みや従来型ウイルス対策との違いをわかりやすく解説

2021年現在、コロナ禍によってリモートワークが推奨されるようになった今、セキュリティ対策の重要性がさらに高まっています。また、現在はクラウドサービスの普及によって、社内ネットワークと社外のネットワークを厳密に区別することが難しくなっています。そのため、従来のような攻撃を通さないことが前提のセキュリティでは、現在の働き方に合わなくなってきています。そこで必要になるのが、エンドポイントセキュリティです。エンドポイントセキュリティの一つであるEDRは、エンドポイントのデバイスを常時監視し、被害を最小限に食い止めるセキュリティ対策ツールです。その仕組みや既存のウイルス対策との違い、被害にあわない状態にしておくために必要な概念に関しても解説します。

リモートワーク導入で注目されるゼロトラスト 取り組むべきセキュリティ対策は?

ゼロトラストという概念自体は10年以上前からありましたが、クラウドシフトやリモートワークの推進で近年その注目度が高まっています。基本的には、セキュリティ対策をしている社内ネットワークだから大丈夫と過信してはいけない、「信頼できるところなどない」というのがゼロトラストの考え方です。そのため、従来通りのセキュリティ対策ではなく、新たなセキュリティソリューションによる取り組みが必要です。

Tanium & ServiceNow logos lockup

Tanium’s latest integration for ServiceNow IT Operations Management enables end-to-end patch lifecycle management and orchestration with seamless workflows, change management controls, and audit reporting tied to the service desk and CMDB.

Image for What is Incident Response blog post

Learn how to leverage incident response as a proactive strategy to handle cyber threats, minimize damage, and protect an organization's reputation.

incident-response-preparation-tanium.png

Explore PICERL—what it is, how it differs from other cybersecurity models, and the importance of tailoring a framework to meet your organization's needs.

Image for What is IT Asset Lifecycle Management blog post

Explore the essentials of digital experience monitoring, including its role in bolstering employee and customer experiences and how to craft an effective strategy that elevates business outcomes.

Image for Rethinking Employee Engagement for the Modern Workforce blog post

Learn how to level up employee engagement by helping drive higher workplace satisfaction traditional engagement strategies overlook.

Image for What is Employee Experience blog post

Learn the basics of employee experience, including the role of technology and the need to enhance digital workspaces to improve employee satisfaction.

baseball field

Sports teams know how to balance offense and defense, but does your cybersecurity strategy? We explore sports tactics and what they can teach us.

Microsoft Partner of the Year Winner 2024

Microsoft’s recognition validates our role as a leader in real-time endpoint data for powering AI security solutions.

Lean Into Autonomous Incident Response With Endpoint Reactions

Learn how Tanium’s Endpoint Reactions evolves the status quo by providing real-time, automated responses tailored to your organization's specific threats.

Blog image for What is IT Compliance

Learn why IT compliance is essential in today's digital landscape, with insights into why it matters, common regulations, and best practices checklist.

Blog image for Mastering Employee Engagement Surveys: From Data to Action

Learn how to harness employee engagement surveys to build a thriving organization from selecting questions to transforming results into insights.

MITRE ATT&CK blog post image

Insights about getting started with the MITRE ATT&CK framework, including real-world examples.

Blog image for What is Digital Employee Experience (DEX) post

Learn how improving the digital employee experience is helping organizations achieve better outcomes and happier employees.

Blog image for what is access control in security

Explore the essential role access control plays in cybersecurity, from the basics of how it works, components, and types to Zero Trust and best practices.

What is social engineering in cybersecurity? A comprehensive guide

Protecting your organization from costly social engineering cyberattacks starts with effective prevention.

Tanium XEMプラットフォームが2年連続で国内市場シェア1位を獲得

多くの企業・団体が4月から新年度が始まり、あっという間にゴールデンウィークも過ぎてもう5月も半ばに差し掛かろうとしています。読者の皆さんの組織においても、今年度のイニシアティブへの取組が本格化されているのではないでしょうか。今週、筆者はRSA Conferenceの開催に合わせて渡米していますが、現地でも非常に多くの日本からの参加者の皆様にお会いし、今年度も引き続きサイバーセキュリティ市場が盛り上がるのだろうと実感しています。

Dan Streetman Interview on NYSE Floor Talk

On May 3, 2024, Tanium CEO Dan Streetman was featured on NYSE Floor Talk to discuss Tanium’s business and several issues facing the IT security and operations industry.

Six Tanium Team Members Named 2024 CRN Women of the Channel

Tanium is excited to announce that six of its female channel leaders are recognized in the 2024 Women of the Channel program by CRN®, a brand of The Channel Company.

Image for what is business email compromise blog post

What you need to know about business email compromise scams, including why they work and how hackers use legitimate-looking emails to trick people.

What is Phishing? Types, Risks, and Prevention

On the rise and now fueled by artificial intelligence, learn how phishing attacks are scamming workers and putting computer networks at risk. Here’s what business and security leaders need to know.

Tanium & ServiceNow logos lockup

This new solution empowers teams to identify, correlate, prioritize, and remediate risk of endpoint vulnerabilities and incidents in real time.

Introducing the Latest Release for Tanium Benchmark

Learn how the latest release for Tanium Benchmark delivers enhancements for risk scoring.

Endpoint security blog image

Learn how endpoint security works, its benefits, how to get started, and why every modern cybersecurity strategy needs endpoint security in this guide.

CVE-2024-3094: XZ Utils Backdoor Threatens Linux Systems

A look at the recently discovered backdoor hiding in the open source XZ Utils compression service.

Tanium Integrates with Microsoft Security Copilot - Changing the Game for Cybersecurity Teams

Learn how Tanium and Microsoft Security Copilot joined forces to empower SOC teams with real-time, AI-driven security.

Image for IT Automation: How It Works, Benefits, and Future Tools blog post

Discover how security automation is redefining proactive defense and operational efficiency in the face of rising cyber threats.

Image for blog post What are Cybersecurity Analytics?

Learn about what cybersecurity analytics are and how using these insights can bolster your defense against ever-evolving threats.

Tanium Pushes Automated Cybersecurity Forward – With Help From Our Strategic Partners

Platform partners Microsoft and ServiceNow along with managed service partners like EY are helping Tanium harness the power of AI and cybersecurity automation.

London skyline

By using Tanium and Microsoft Defender for Endpoint, JLL modernized its cybersecurity framework and cut spending by 20 percent.

Tanium Reduced Software Vulnerability by 97% According to New Study

Learn how Forrester conducted the Total Economic Impact study on Tanium Converged Endpoint Management (XEM) and the value XEM can provide organizations.

2038 Bug Survival Guide: Lessons From Leap Year Code Issues

Learn what the 2038 bug is, why it matters, and how to prevent it from crashing your systems in the future.

Machine learning in cybersecurity: A primer for beginners

Learn how machine learning has the potential to completely transform the way organizations address cybersecurity challenges and enhance defenses.

Announcing General Availability: Tanium Autonomous Endpoint Management (AEM)

Discover the next evolution of converged endpoint management, empowering IT and security teams to scale operations and enhance security posture.

What are endpoint devices? Examples and top risks

This blog post explores what endpoint devices are and why businesses of all sizes should be prioritizing endpoint security.

Developer.Tanium.Com: The Hub for Tanium Developers

Are you a Tanium customer with a passion for rolling up your sleeves and getting deep into Tanium and all its customization possibilities? Do you like to code and develop new functionality? You are not alone and now can join us on a journey of collaboration, knowledge-sharing and innovation as we work together to solve challenges and build amazing things.

2024 CRN Tanium Channel Chiefs

Tanium is excited to announce that CRN®, a brand of The Channel Company, has named the following Tanium executives to its 2024 list of Channel Chiefs.

Side view of information security analyst looking at charts near

When you combine artificial intelligence and cybersecurity, benefits are only part of what you need to know. Read our AI cybersecurity guide to learn more.

Announcing Tanium Benchmark 2.6

Streamlining IT operations and bolstering your cybersecurity posture with Tanium Benchmark version 2.6

PIT Crew: Tanium’s Exclusive Community of Top Partner Engineers Can Support Your Business!

Learn about the Tanium PIT Crew. Who they are and how they can support your business. See the latest 1:1 interviews recorded at Converge 2023.

The Future of Converged Endpoint Management is Autonomous: Highlights From CTO Matt Quinn’s Keynote on Autonomous Endpoint Management (AEM)

During the Converge 2023 event, Matt Quinn, the CTO of Tanium, discussed the company's progress over the past year and announced the development of Autonomous Endpoint Management (AEM).

Decoding Essential 8 Compliance: Tanium's Unique Path To Success

Get to know the baseline mitigation strategies developed by the Australian Cyber Security Centre (ACSC) and how Tanium can help your organisation remain safe and compliant.

MITRE ATT&CK blog post image

Tanium Guardian provides insights and recommendations to help IT SecOps teams stay ahead of emerging security issues.

Tanium Converge 2023: Speakers, Schedule, and Highlights

And we’re live! Converge is the premier event for gaining new skills, strategies, and insights to better optimize your cybersecurity readiness.

Artificial Intelligence: Thinking Beyond Artificiality with Larry Godec

Artificial intelligence (AI) is the hot topic of the moment, so we asked Tanium Executive Advisory Board member Larry Godec for his thoughts on generative AI in general and its more well-known applications, such as ChatGPT.

Moving From Awareness to Action: Living the 4 Themes Cyber Security Awareness Month 2023

October is nearly over, and with it the 20th annual Cybersecurity Awareness Month is coming to a close. As it does, let’s take a moment to review this month’s key themes and provide insight on how to implement any themes that might still be open to-dos.

blog featured image. Tanium team at the food bank

For Tanium, September was a month of walking and running, building educational STEM kits, dishing out delicious barbecue, helping local EMTs, and more.

Use Tanium Software Bill of Materials to Protect Your Organization from Software Supply Chain Vulnerabilities

The recent hype focused on the cURL vulnerability highlights the need for greater visibility and knowledge of your applications' software bill of materials (SBOM).

Photo Of Converge Main Stage

Global Partner Summit kicks off week-long Converge 2023 conference.

Achieve Zero Trust at Scale With Tanium and Microsoft Entra ID

Learn how to build a Zero Trust framework that minimizes the enterprise attack surface with minimal productivity impacts using real-time data.

Tanium Helps Communities Around the World with Its Sixth Annual Month of Giving

Join the giving spirit! Tanium's Month of Giving is here. Make a meaningful impact in your community. Be unstoppable–volunteer now!

Reduce risks, increase control with Vulnerability Risk and Compliance (VRC) for ServiceNow

Get more from your investment in ServiceNow. Secure IT assets by proactively identifying endpoint security and compliance risks, automating patching of vulnerabilities, and more.

Elevating Your Partnership: The Tanium Partner Accreditation Program

Our accreditation program opens new avenues for partnership and revenue opportunities while driving end-user satisfaction and overall partner success.

Is Tool Sprawl Threatening Your Organization’s Security?

IT organizations are often weighed down by tool sprawl, a glut of point solutions originally chosen to solve specific security needs. This tool proliferation leads to operational inefficiencies, increased costs, and unexpected security vulnerabilities. To curb tool sprawl, organizations should deploy a unified security operations platform.

Tanium and Microsoft Are Better Together – That’s Why They Named Us Partner of the Year

Tanium and Microsoft allow customers to implement a zero-trust ecosystem, bringing visibility, control, and remediation to security and operations teams.

Balancing Technological Accessibility and Cybersecurity for K-12 School Districts

A recent CoSN podcast with Tanium's Doug Thompson, and Henry Martin, CIO of Florida’s Walton County School District, has some fascinating insight on K-12 cybersecurity.

Stop Today’s Emerging Endpoint Risks: Announcing Tanium SBOM for Comply, Expanded ARM Support, and Risk & Compliance Updates

Our most recent product and feature release further secures software supply chains, extends Tanium’s single view of endpoint data to additional ARM-powered devices, and expands the capabilities of our Risk & Compliance solution.

Side view of information security analyst looking at charts near

An analyst report from IDC highlights how the Tanium platform overcomes cost, complexity, collaboration and user experience challenges.

IDC Finds Nearly 90% of IT Decision Makers Plan To Move from Point Solutions to Converged Platforms by 2024

New insight from IDC reveals need for platform-based approach to endpoint management and security, reducing cost, complexity, and risk across the organization.

NYSE with Tanium CEO Dan Streetman at RSA 2023

Tanium's CEO Dan Streetman sits down with New York Stock Exchange to discuss how Tanium makes a difference, its partnership programs, and product innovation.

How Tanium’s StateRAMP Authorization Helps Public Sector Agencies

As an Authorized member, Tanium is now an approved StateRAMP cloud service provider in the StateRAMP Marketplace.

Differentiate your business and accelerate growth with Total Experience (TX) for ServiceNow

Learn about end-user total experience (TX) for ServiceNow with Tanium, optimizing service delivery and user satisfaction in IT environments.

How Cylitic Security helps SMBs use Tanium

Learn how one of Tanium’s key managed service providers, Cylitic Security, brings our enterprise-level IT security and ops platform to emerging-enterprise and SMB clients.

Team of women in the office having a high-five

Tanium is excited to announce that four of its female channel leaders are recognized in the 2023 Women of the Channel program by CRN®, a brand of The Channel Company.

Enterprise Strategy Group Strategy Group™ by TechTarget. Tanium Digital Employee Experience (DEX)

Discover XEM's cutting-edge DEX solution for enhanced digital employee experience. Elevate productivity today!

Do You Know How Your Employees Feel About Their Digital Employee Experience?

15 ways Tanium can help you deliver digital employee experiences that delight instead of frustrate and disappoint

Scalability Matters: How a Tanium MSP Partner can Grow with Your Business

A managed service provider can quickly scale your IT infrastructure as your business needs change. Learn the benefits of an MSP partner.

What to Look for in a Managed Service Provider

Your managed service provider should be a seamless extension of your in-house team. Here are five areas to consider when finding a provider.

Finding and Fixing the Trojanized 3CX DesktopApp

Customers of the popular 3CX voice and video calling desktop application should be on high alert. Here's how Tanium can help.

ABB Electrification Americas Saves Thousands of Hours and Delivers Huge ROI With Tanium

ABB Americas’ initial three-year investment in Tanium was $130,000, and its estimated ROI is $1.75 million.

Why Managed Service Providers are Essential to the Modern Organization

The best-managed service solution paired with a top-managed service provider means your operations are more resilient. Here are five reasons organizations should consider working with a Tanium MSP partner.

Do You Trust the Data in Your Configuration Management Database (CMDB)?

Get a complete, accurate and up-to-date view of your enterprise hardware, software and virtual asset inventory with Tanium and ServiceNow.

Anatomy of a Cyberattack: Three Ways to Continuously Reduce Business Risk

Whether it’s mitigating a ransomware breach or preventing cyber-espionage attempts, the key lies in getting the cyber hygiene basics right.

CONVERGE 2022: Fireside chat with Accenture’s Kris Burkhardt

Orion Hindawi, Tanium’s co-founder and executive chairman, sits down with Accenture CISO Kris Burkhardt to discuss the proliferation of point-solution security tools and how Tanium and Accenture’s partnership seeks to streamline IT workflows.

CONVERGE 2022: Product Vision and Roadmap with Chief Product Officer Nic Surpatanu

Tanium’s chief product officer, Nic Surpatanu, take Converge attendees for a ride along the company’s product roadmap.

CONVERGE 2022: Converged Endpoint Management with Tanium CMO Steve Daheb

Steve Daheb, Tanium’s chief marketing officer, leads a session on Tanium Converged Endpoint Management (XEM).

CONVERGE 2022: Managed Service Provider Panel with EY, NTT, Novacoast & Capgemini

Todd Palmer, Tanium’s senior VP of partner sales, leads a panel of representatives from Capgemini, EY, NTT Corp. and Novacoast Inc. – reflecting the industry’s global reach, panelists came from as far away as Australia, Netherlands and Spain.

CONVERGE 2022: Strategic Overview and Integrations with Salesforce, Mandiant & AWS

A discussion panel of Tanium partners led by Rob Jenks, Tanium’s senior VP of strategy and business development. This presentation includes executives from AWS, Salesforce and Mandiant.

CONVERGE 2022: Microsoft Sentinel and Azure Active Directory Integrations with Nic Surpatanu

In this presentation by Tanium’s chief product officer, Nic Surpatanu focuses on the new integration of Tanium with Microsoft Sentinel, Azure Active Directory and other related tools.

CONVERGE 2022: The Need for Scalable Security with Raytheon, Aon & Cargill

A four-way discussion with Charles Ross, Tanium’s chief customer officer, and three of Tanium’s top CISO customers: Jim O’Connor of Cargill Inc., Daniel Conroy of Raytheon Technologies Corp., and David Damato of Aon PLC.

CONVERGE 2022: Fireside chat with Microsoft’s Rob Lefferts

Tanium co-founder and executive chairman Orion Hindawi sits down with Rob Lefferts, Microsoft’s Corporate VP of Modern Protection and SOC, to discuss the two companies’ growing partnership.

Securing K-12: Building a Safer Learning Environment for the Nation’s Schools

A new CISA report reveals how to prioritize cybersecurity risk management for securing K-12 schools this year.

2023 CRN Tanium Channel Chiefs

Tanium is excited to announce that CRN®, a brand of The Channel Company, has named the following Tanium executives to its 2023 list of Channel Chiefs.

How Con Edison Powers Up New York

Learn how the energy company Con Edison keeps New York City running with the power of the Tanium platform.

How Zurich improves cyber resilience across 100,000 endpoints

A leader in the property and casualty and life insurance space, Zurich shares how it fights cybercrime with help from Tanium.

The Rosetta Stone for Security Data: How the OCSF, Amazon Security Lake, and Tanium are Giving Security Teams a Unified View to Stop Threats Faster

Tanium has partnered with OCSF and Amazon Security Lake to create a holistic view of your organization’s security risks.

The Integration Solution: Day Two of Tanium Converge 2022

Dealing with too many tools? Overly complex interfaces? Hight costs and time-consuming tasks? Integration to the rescue.

wide image of the main stage at Tanium Converge 2022

Partners and partnering were top of mind during Day 1 of Tanium Converge 2022.

Quickly Identify and Respond to Emerging Issues With Tanium

Tanium’s new alerting and actionable workflows for emerging issues can help organizations identify their exposure to vulnerabilities.

EDRの導入検討前に求められること

先日、とある大手製造業のお客様からこんなお話を伺いました。 「本社系はEDRを全面導入したにもかかわらず、管理者権限を窃取され、AD陥落の一歩前(ドメインアドミンの不正窃取前)で侵入に気づくことができた。ギリギリセーフで焦ったよ」と。

Image for what is business email compromise blog post

Scammers are impersonating and gaining access to email accounts. Here’s how to stop them.

silhouette of soldiers walking as two helicopters fly in the distance

On Veterans and Remembrance Day, we recognize present and former military service members and feature Cat Kearns, a U.S. Reservist in the U.K. serving two meaningful missions.

How Tanium’s Partner Program is Evolving to Help Partners and Customers

Learn more about some new changes to the Tanium partner program that helps partners and customers be more successful.

Advice from Arizona’s CISO on Bringing a Whole-of-State Strategy to Life

Tim Roemer, Arizona’s CISO and Director of the Arizona Department of Homeland Security, shares first-hand advice on implementing a whole-of-state cybersecurity strategy.

Mitigate Security Risk With Real-time Software Bill of Materials

With Tanium Software Bill of Materials, you'll know all of your software supply chain vulnerabilities in seconds.

How to Use Tanium Software Bill of Materials to Protect Your Organization From OpenSSL v3 Vulnerability

Open-source toolkit developers announce two “High” severity vulnerabilities in OpenSSL v3, and Tanium has the solution to help.

stock image: Man with glasses looking at charts on a transparent screen

Tanium Benchmark is the only solution that provides real-time risk comparisons to industry peers so that you can improve your IT risk.

What’s on the agenda for Tanium Converge 2022? Malcom Gladwell, Forrester’s Renee Murphy and more

Discover all we have in store for Tanium’s premier annual event. And register today to join us live in Austin, Texas.

A group of a dozen Tanium UK team members posing for a photo in the office

The passing of former colleague Angela Davies inspires Tanium’s UK team to host a CPR-a-thon, gifting employees with the power to save lives.

Busy day. Group of multiracial business people working together in the creative co-working space. Team building concept. Office life. Web banner

Featured speaker Forrester senior analyst Andrew Hewitt argues the case for a platform-based approach.

A Better Approach to Stopping Threats: Prevent, Respond, and Remediate Faster with Microsoft and Tanium

Tanium’s integration with Microsoft Sentinel helps organizations accelerate incident prevention, response, and remediation.

Arizona’s CISO and Homeland Security Director Explains How a Whole-of-State Strategy Can Hold Off Cyberattacks

Arizona’s CISO Tim Roemer shares advice on building a whole-of-state cybersecurity strategy.

Web3.0の世界とSec3.0(Security3.0)の世界に向けて

多くのメディアや紙面上において、Web3.0に関連する記事を見る機会が増えました。Web3.0が存在するということは、Web1.0〜2.0の時代があり、そして同様にSecurityも1.0〜2.0、そして今回テーマでもありますSec3.0(Security3.0)の時代に突入しようとしております。

Changing the Way Organizations Think About Endpoint Security

Revolutionize your approach to endpoint security. Discover how Tanium is changing the way organizations think.

Prevent, Respond to and Remediate Threats Faster With Tanium and Microsoft

Tanium joins the Microsoft Intelligent Security Association to deliver the industry’s most effective integrated solution for security and IT operations.

How to Embrace the New World of Retail Without Losing Customers

Managing technology cost and risk for retailers

How GAF Moved to the Cloud With Tanium

Find out how GAF’s cloud migration of Tanium was completed in about four weeks, improving security and vulnerability management.

stock photo of a woman standing at a large screen displaying code while leading a small meeting

To celebrate International Women in Engineering Day, we catch up with Senior QA Engineer, Cathy Nguyen to learn about her journey as an engineer and career at Tanium.

How Frasers Group Secures Growth with Tanium

To keep its merged systems safe and under control and improve cyber hygiene, Frasers Group turned to Tanium.

How Genpact cut networking and hosting costs by 75% with Tanium Cloud

When this professional-services firm outgrew its software-management tool, it moved instead to Tanium. And when the pandemic arrived, they moved to Tanium Cloud. Here’s why.

The future of risk management is all about automation

Featured speaker, Forrester’s Renee Murphy highlights why IT teams must use robust, real-time vulnerability and risk management solutions

Inside Tanium: An Enterprise Services Engineer Speaks to the Power of Being Oneself

Cole Waggoner explains how Tanium’s focus on visibility and inclusion extends well beyond endpoints to support its employees

RSA Conference Preview: How Local Governments Can Fight Ransomware

Ahead of the RSAC, we explain how local governments can build effective defenses that reduce the risk and impact of ransomware breaches.

MS診断ツールのゼロデイ脆弱性Follina(CVE-2022-30190)

Follinaとして知られるCVE-2022-30190は、2022年5月30日に公開された脆弱性です。アプリケーションがURLプロトコルを使用したMicrosoft Support Diagnostic Tool(MSDT)を呼び出す仕組みを悪用して、リモートコードを実行することが可能になっています。呼び出しアプリケーションの例としては、Microsoft Officeがあり、現在までに公開されているPOCコードでは、Microsoft Wordドキュメントが利用されています。そのためユーザーが悪意あるファイルを開くと 呼び出し元のアプリケーションの権限で任意のコードを実行される危険性があります。

New Technology Partnerships Give Power to Integrations

Great minds work together, not just alike — so we’re building a new framework with our technical partners that allows us to solve shared customer challenges.

Tanium Risk Assessment: 5 Days to a Comprehensive Score for Your Organization’s IT Security

Assess the risk of all your endpoints against multiple vectors in just five days at no cost with the Tanium Risk Assessment.

stock image: five professionals having a meeting around a table

Our employees and supportive work culture have placed Tanium among an elite group of companies that are Great Place to Work-Certified.

How Honeywell Automates Server Patch Management With ServiceNow and Tanium

By integrating Tanium with its ServiceNow CMDB, Honeywell has automated server patch management functions saving a tremendous amount of time.

Team of women in the office having a high-five

Tanium's Kim Harris and Cindi Johnson have been named to CRN’s 2022 list of Women in the Channel.

How BIMA gained endpoint visibility and control with Tanium

With a pressing deadline to gain control of its systems, BIMA moved to the Tanium Cloud not only to meet that goal but close its vulnerability risk.

Visibility, Control and Trust: Uncovering the Power of Converged Endpoint Management

David Mkrtchian discusses how Tanium reaches across IT operations, security, risk and compliance management.

Point Solutions Can't Protect You From Today’s Problems — Here’s Why You Need Converged Endpoint Management

Tanium delivers the convergence of IT operations and security with a single integrated platform under a new category, Converged Endpoint Management (XEM).

Survey by Harvard Business Review Analytics Services Reveals a Communications Breakdown in Risk Reporting

New Harvard Business Review Analytic Services report sponsored by Tanium shows organizations are struggling to measure and monitor cyber risk.

Spring4Shell Vulnerability: Critical Details and How to Protect Your Organization

Named CVE-2022-22965, this vulnerability in the widely used Spring Framework has substantial exploit potential.

Why Organizations Need to Patch a Critical Zero-Day in Chrome

A new vulnerability has been found in both Chrome and Microsoft’s Chromium-based Edge products. Here's what you need to know.

Spring4Shell (CVE-2022-22965)

2022年3月31日、VMWare TanzuはCVE-2022-22965を発表しました。調査によると、JDK9+ Spring Frameworkにリモートコード実行(RCE)の脆弱性が報告されています。第三者がこの脆弱性を悪用する場合は、影響を受けるシステムがJavaバージョン9以上を実行し、Spring Frameworkを活用していることなどが前提条件となります。また、本脆弱性は別名 Spring4Shellと呼ばれています。 Spring FrameworkはJavaで採用される主流なフレームワークの1つのため、Javaで実行されるWebアプリケーションで広く利用されている可能性が高いものとなります。また脆弱性の悪用しやすさの観点、すでに脆弱性を悪用するコードが出回っているため、直ちに影響範囲の特定と対策が必要と言えます。

日本の組織が、いま脆弱性に注視すべき背景

脆弱性管理に関して、サイバーセキュリティ部門であれIT運用部門であれ、定期的に対応しなければいけないNデイ脆弱性と突然現れるゼロデイ脆弱性の対処と対応が、絶え間なく繰り返されています。特に端末環境の変化は大きく、IT担当者にとって労力は増加する一方です。

“IT投資”から“ESG投資”へのマインドチェンジ

昨今、上場企業のIR情報を見ていますと、“ESGレポート”を公開される企業が急に増えてきたと感じます。世の中の動向を見てみますと、2020年10月に日本政府は2050年カーボンニュートラルを宣言し、温暖化への対応を成長の機会と捉え、従来の発想を転換することが大きな成長に繋がると発信しました。また、グローバルの視点で見てみますと国際的に加速化するESG開示フレームワークの策定や公表が加速され、国内で多くの組織が、TCFD(温室効果ガスの排出削減に向けた国際的な枠組)等の指標(KPI)に則った、ESGレポートを目にする機会も増えて参りました。さらに日本取引グループからは“改訂コーポレートガバナンス・コード”が、金融庁からは“日本版シュチュワードシップ・コード”が公開されています。 一見、これらがITやセキュリティに関わる方々にとって関係のないような話に聞こえると思いますが、実は密接に関係しているということをこのBlogで解説します。

Tanium–Blog-3.22.22-Inside Tanium Elevating Customer Value is Her Mission and Everyone Gains

Director of Customer Engagement Paige Galles discusses her career and her passion for helping people invest in technology to solve real problems.

Elsevier Manages Thousands of AWS EC2 Instances With Help From Tanium

Elsevier moves to the Tanium Cloud to help with enhanced visibility, automated patching and protection against cyber threats.

Military Contractor Monitors its Cyber Vulnerabilities with Tanium

Defense contractor reduces its attack surface and increases confidence with proactive vulnerability management.

Taniumを用いたApache Log4j脆弱性の対処

今回はApache Log4jの脆弱性 (別名: Log4Shell CVE-2021-44228など)について、Taniumでの調査と対処の方法を記載します。

Tanium Threat ResponseによるApache Log4j脆弱性を狙った攻撃の追跡

ここではTanium Threat Responseモジュール機能をつかってLog4Shellの脆弱性を狙った攻撃の痕跡を探す例をご紹介します。

Tanium Threat Responseを使ったApache Log4j脆弱性の可視化

本ブログではTanium Threat Response(THR)モジュールの機能を使って組織内で利用されているApache Log4jのインスタンスを検索する方法を紹介します。また、公開されているPoCを元に本脆弱性を検証し、Log4Shellを狙った攻撃や侵害の検知・調査や脅威ハンティングなどの考察についてご紹介します。

Apache Log4jの脆弱性とは

2021年12月にJavaのApache Log4jライブラリに深刻な脆弱性があることが公開されました。本ブログでは改めてApache Log4jとは何か、今回見つかった脆弱性の影響度や組織としてどう対処すべきなのかをまとめています。

Apache Log4jの脆弱性に対して、サイバーハイジーンの観点で出来ること

あらゆるプラットフォームやデバイスに影響している Apache Log4jの脆弱性 (別名: Log4Shell CVE-2021-44228)対して、サイバー・ハイジーン(IT衛生管理)の観点から、影響製品の特定から対処まで、Taniumがどのように役立てられるのかご紹介します。 本Blogでは、Tanium Comply, Tanium Asset, Tanium Deployについてご紹介します。

Tanium Revealモジュールを使用した機密情報保護について

TaniumのRevealモジュールはApache Log4jの脆弱性を特定するにあたり最も有効な手段の一つとして、世界中の多くのお客様にご注目頂いております。しかし、RevealモジュールはApache Log4jの脆弱性を特定するのみならず、個人情報や機密情報が組織内のどこにあるのか監視、特定することが可能です。本ブログでは個人情報をはじめとした機密情報の監視・特定の重要性及び、TaniumのRevealモジュールでそれを実現する優位性をまとめていきます。

Managing Software Supply Chain Risk Starts With Visibility

Tanium’s Tim Morris explains why continuous visibility is a prerequisite for effective software supply chain security.

Chief IT Architect CISSP,CISA

最近、大規模組織における年次の統合報告書を見ていると、サイバーセキュリティ(以後、セキュリティ)の重要性を説く報告が多く見られるようになりました。また経済産業省からは経営向けのサイバーセキュリティ経営ガイドラインも発行されるなど、経営サイドにおけるセキュリティ対策の重要性、すなわち“セキュリティ投資”の重要性も理解が大分進んできたと思います。それはESGの観点においてもステークホルダーから注目を浴びることと重なり、経営サイドにおけるセキュリティ投資のハードルは以前よりも低くなってきたと実感されている方も多いかと思います。しかし、このセキュリテイ投資に対して、実際に発生しているセキュリティ事案(インシデント)はひたすら増加の一途を辿っている事はあまり知られていません。今回はこのセキュリティ事案(攻撃力)と実際に発生しているセキュリティ投資(防御力)の実態について解説します。

Inside Tanium: Naveen Goela’s Mission to Mature Security and Operations with Science

Meet Naveen Goela, Tanium's first data scientist. We chatted with him to learn more about his journey into this challenging domain.

ありふれたツールに潜むLinux脆弱性(CVE-2021-4034: PwnKit)

このところ大変な日々を送っているシステム管理者は多いかもしれません。多くの組織が、過去2ヶ月間に明らかになったLog4jの脆弱性の影響を排除するために尽力していらっしゃるでしょう。しかし残念ながら、悪いニュースは後を絶ちません。最新の発見は、pkexecと呼ばれる人気のあるLinuxプログラムにある、簡単に悪用されるバグです。 この不具合は、過去12年以上にわたって見え隠れしていました。幸い、このバグを発見した研究者はベンダーと積極的に協力しており、発表時点ではほぼすべての主要ディストリビューションの上流レポジトリに修正プログラムが用意されています。

Microsoft 365・Office 2019で何が変わるか(第2回)

Microsoft 365(旧Office 365) や Office 2019 を導入・移行する組織が増える中、以前とインストール形式や更新プログラムの扱いが変わり、管理者は今までの管理方法を変える必要に迫られています。前回に続き、どのようにアプリケーションを配信していくのか、Taniumによるアプリケーション配信の仕組みをご紹介します。

Hiding in Plain Sight: Researchers Discover Critical Linux Bug

Learn what you need to know about CVE-2021-4034, the PwnKit vulnerability that gives root on all major Linux distros, and how Tanium can help.

Cybersecurity Trends to Watch in 2022

Last year showed us that cybersecurity teams must focus on getting the basics right: cyber hygiene, endpoint protection, data risk management and compliance.

Cybersecurity in Manufacturing: Managing Risk at Scale

Tanium’s manufacturing CIO explains how cybersecurity in manufacturing requires a unified platform that delivers endpoint visibility and control.

Sensitive Data Monitoring: 10 Ways Tanium Makes It Accurate, Comprehensive and Lightweight

Tanium gives you a modern approach to create a complete and accurate inventory of your sensitive data in your environment in minutes.

How Tanium Risk Helps Federal Agencies Comply with Risk Management Framework Requirements

Learn how Tanium's risk solutions can help public sector agencies achieve Risk Management Framework (RMF) compliance.

Log4j: Tanium Experts Answer Your Questions

Everything you need to know about the popular utility and how to fix it.

Tanium–Blog–1.13-Threat Hunting 10 Ways Tanium Makes it Fast, Flexible and Unified

Discover how Tanium helps firms discover, investigate and contain known and unknown threats with best-in-class cyber threat hunting tools.

Layered Security Methods Keep Threats at Bay

Adding intelligent layers of security can complement your IT hygiene practices and prevent increasingly common cyberattacks.

Cybersecurity in Latin America

Discover how Tanium is helping address cybersecurity in Latin America through IT endpoint visibility and cyber hygiene tools

Asset Discovery and Inventory: 9 Ways Tanium Makes it Fast, Complete, and Accurate

Learn how Tanium’s modern asset discovery tools give IT teams accurate and complete data on their entire estate in real time.

Businessman in conference room

Our round-up of what the coming 12 months have in store for IT and security leaders.

Taniumを活用してCVE-2021-44228 “Log4Shell”に対応する

Apache Log4j 2におけるゼロデイ脆弱性が12月9日にGitHubで公開されました。Log4j 2.16.0以前のバージョンで意図しない外部からのコード実行が行われる脆弱性を保有することから、CVE-2021-44228と認定されました。また、12月14日にはCVE-2021-45046が認定されました。これは直近で公開されていた暫定対策やLog4jのアップデートが不完全だったことによるものです。このブログでは、タニウムの各種モジュールを活用して自社システムに当該脆弱性の存在有無を確認する方法、ならびに各種タニウムのパッケージを用いて暫定対策を行い、影響を最小化、ソフトウェアパッチを適用・バージョンアップグレードを迅速に行う方法を記載しております。

How Tanium Could Generate ROI of 277% Over Three Years

Watch this video interview with Forrester TEI consultant Tsih Formuluh, which breaks down the findings from this ROI study.

メディア掲載記事

メディアに掲載されたタニウムの記事をご確認いただけます。

stock image: face in dark room lit by glow of a computer monitor

Learn more about the Log4j (or Log4Shell) zero-day vulnerability and how to protect your organization from cyberattacks.

Inside Tanium: An employee committed to unifying the worlds of design and tech at Tanium

UX designer Erika Haydon is key to making the interaction between Tanium and its users efficient, understandable, and enjoyable.

New Survey: Cyber Professionals Lack Visibility and Speed for Effective Threat Management

PwC’s global survey of over 3,000 security, business and IT executives uncover threat management concerns around visibility and complexity.

How Ring Power Partnered With Tanium on Ransomware Recovery

Learn how this heavy equipment dealer executed a rapid ransomware recovery and patch management strategy with Tanium.

Working Together is Always Better: Day Two of Tanium Converge 2021

Catch up on day two of Tanium Converge that includes the power of partners, teams, data and innovation.

The Power of Certainty: Day One of Tanium Converge 2021

Catch up on the takeaways from day one of Converge 2021, including technology changes in cloud, virtualization and digital transformation.

Inside Tanium: Kyle Dewar Shares Experience Serving With the Joint Chiefs of Staff in the Pentagon

Tanium employee shares what he learned on military leave with the Joint Chiefs of Staff and how it's helped his career.

Client Management: 10 Ways Tanium Makes it Faster, Simpler, Easier

Find out how a modern client management solution can help control your endpoint devices and everything on them.

Inside Tanium: Technology Strategist Ashley McGlone

Learn more about technology strategist Ashley McGlone and how he's spreading the word about Tanium through new digital channels.

How Law Firms Can Combat IT and Cybersecurity Challenges

Hear from experts on how law firms can apply best practices to protect against today’s biggest cybersecurity threats.

Cybersecurity For Good: How NPower is Bringing Diversity and Opportunity to the Industry

The cybersecurity industry faces two threats: skills shortages and lack of diversity. Learn how NPower is taking strides to tackle both challenges.

New Podcast Series: Doing Our Part to #BeCyberSmart

Learn more about our new podcast series with MeriTalk, “The Human Side of Cyber” that focuses on the human aspect of cybersecurity.

Chief IT Architect CISSP、CISA

前回のブログにて、多くの組織が「裸の王様」状態である、と解説させていただきました。今回はこの「裸の王様」状態から脱却し、経営サイドの責務となる業務の可用性を維持し、安全宣言、説明責任を果たす上で求められるガバナンスの実現方法について、「共通の物差し」の重要性について解説させていただきます。

Risk and compliance solution

Learn how Tanium Risk, a new product in our Risk and Compliance Management solution, can improve your IT risk posture.

Endpoint Detection and Response 101: What EDR Is and Where It Falls Short

Find out why you still need a Incident response solution when you have an endpoint detection and response (EDR) tool.

Cyber Hygiene: Proactive Risk Management Starts Here

Learn how customers use Tanium to get the visibility and control they need to support cyber hygiene and close off critical avenues of attack.

asset discovery

ProNet Designs helps customers manage their IT inventory with Tanium’s asset and discovery tools, which provides a comprehensive inventory of assets in real time.

Person in flannel shirt examining papers while standing by the window in a bright white office.

Learn how Zach Nandapurkar solves IT and security challenges for customers as a technical account manager in this employee spotlight.

How a dental services provider simplified patching for 30,000 endpoints

Learn how Tanium helped a dental services provider gain visibility and improve performance monitoring of its 30,000 endpoints.

タニウム設立の経緯

タニウムが設立されてから14年目。日本では8年目となります。インターネットで調べてみると、実に3500ものサイバーセキュリティの企業がアメリカに存在しているそうです。今回はタニウムが設立された経緯を探っていきたいと思います。

Three Endpoint Challenges to the New Hybrid Workplace — and How to Overcome Them

Learn why a holistic approach to IT asset management, combined with detailed product information, is critical in the new hybrid workplace.

Asset Discovery and Inventory: The Foundation for Visibility and Device Management

The best approach to endpoint security begins with comprehensive and continuous asset discovery and inventory.

Why Good Cyber Hygiene – Beginning at the Endpoint – is Vital to U.S. Cybersecurity

Federal agencies can close vulnerability gaps and improve their cyber hygiene by focusing first on endpoint devices.

Image for cybersecurity frameworks blog post

Learn how Tanium can improve your organization's cyber incident response in today’s remote work environment.

EndpointX quote image

Learn more about how endpointX is helping global customers manage and secure their endpoints as the first accredited Tanium partner.

Connecting the Data with Tanium and Cribl LogStream

With Tanium Connect and Cribl LogStream you can power virtually any IT or security analytics tool with Tanium endpoint data.

Windows Print Spooler脆弱性情報「PrintNightmare」(CVE-2021-34527)

6月29日、Print Spoolerサービスを標的とした2つのPoC(概念実証)エクスプロイトのコードが公開されました。1つ目の脆弱性はCVE-2021-1675に関連するもので、マイクロソフト社による6月の月例パッチを適用することで緩和されます。2つ目の脆弱性はCVE-2021-34527として採番された新しい脆弱性です。マイクロソフト社からは対応策について各種案内が出ておりますが、タニウムを利用して効率的に可視化・制御するアプローチについて触れたいと思います。

What Are Today’s Biggest IT and Cybersecurity Challenges?

Here are 10 takeaways from our new survey of technology leaders and how you can overcome today's cybersecurity challenges with cyber hygiene.

Maximizing Help Desk ROI with a Modern Unified ITSM Platform

Learn how standardizing your organization’s help desk tools with a modern unified ITSM platform can save money and improve results.

Inside Tanium: An Employee Dedicated to Helping Customers Get More Value With Tanium

Learn more about Tanium’s Manager of Technical Documentation, Sajida DiAugustine, and how her work helps customers get more value with Tanium.

CIOが放った「裸の王様」の真意

先日のことですが、とある上場企業のCIOに対して、これらの実態についてお客様の実環境で分析したデータを報告する機会がありました。報告会でCIOが開口一番でおっしゃったのが「これは裸の王様だな」という言葉です。さて、この「裸の王様」とは一体何を意味するのか、今回はこのIT領域における「裸の王様」について解説させていただきます。

Mitigation(緩和/対策)は具体的に何をするのか?

前回のエントリで CDM(Continuous Diagnostics and Mitigation) について、人に例えて紹介しました。その際に、Mitigation(緩和/対策) は、「食事療法や運動療法や投薬を行うことで病気(インシデント)のリスクを軽減すること」と例えてみましたが、サイバーセキュリティにおいては、実際に何をするものなのか?具体例を上げてみたいと思います。

Q&A with Chris Cruz: Tackling Today’s Cybersecurity Threats in SLED

Find out more about Tanium’s new SLED CIO, Chris Cruz and how SLED agencies can combat cybersecurity.

CDMとは?

大型連休前の4月30日、内閣サイバーセキュリティセンター(NISC)から重要インフラ事業者等に向けて「ランサムウエアによるサイバー攻撃に関する注意喚起」が行われました。この注意喚起は重要インフラ事業者等に向けたものですが、広く一般にも活用できるものとして公開されています。

Professional Services Firm Manages Newly Acquired Endpoints With Tanium

Find out how a global consulting firm benefits from Tanium’s cloud-based platform for endpoint management and security after several acquisitions.

Microsoft 365・Office 2019で何が変わるか(第1回)

Microsoft 365(旧Office 365) や Office 2019 を導入・移行する組織が増える中、以前とインストール形式や更新プログラムの扱いが変わり、管理者は今までの管理方法を変える必要に迫られています。今後Microsoft 365 や Office 2019を導入する・移行する予定の方に向けて情報をまとめました。

タニウムの最新情報(6月号)

みなさんこんにちは。今回はタニウムが皆様に提供している情報について少しご紹介させていただこうと思います。タニウムも実はSNSやってます。みなさんご存知ないですよね。まだまだ投稿数は少ないですが、継続的に情報配信していきますので、ぜひフォローお願いいたします!

Windows 10のパッチやFeature Update適用で露呈した深刻な課題

多くの組織において、Windows 10の導入が完了し、月例パッチやFeature Update対応に苦労が耐えないという話を良く耳にします。パッチやFeature Update適用のプロセスは、当該データを配信し、インストールし、必要に応じて再起動することより完了しますが、なぜ多くの組織がこの一見、シンプルな適用プロセスに苦慮しているのか? 今回はこの適用プロセスにおける課題について解説させていただきます。

Windowsドメインコントローラー 特権昇格の脆弱性 CVE-2020-1472(別名:Zerologon)

CVE-2020-1472を悪用することにより、攻撃者は資格情報を保持していなくてもログオンすることが可能となります。対策を講じないことで Windowsドメインコントローラーのドメイン管理者権限を攻撃者に与える事態を招きかねません。タニウムを活用することにより組織内のエンドポイントが CVE-2020-1472の影響を受けているかを網羅的に可視化して封じ込めできるかご紹介します。

セキュリティ・トランスフォーメーション(SX):パート2

先進的なグローバル組織は、サイロ化から脱却するために、IT&セキュリティ組織の融合により、組織間の壁を取り“組織のサイロ化”撲滅を積極的に取り組んでいます。IT&セキュリティ組織の融合、マルチ環境に順応するエンドポイントのリアルタイム・プラットフォーム化によって、変化し続けるIT利用環境=DX実現に向け順応し続ける“屋台骨”が実現されます。

創業者を支える人材

前回はタニウムの創業者ヒンダウィ親子についてご紹介させていただきました。今回は創業者を支える幹部に注目してみたいと思います。タニウムには様々な人材が集まってきていますが、その中でも個人的に面白いと思った最近の幹部層の登用についてご紹介します。

How to Build IT Resilience: Topics and Tactics

Learn some of the risks and opportunities around IT resilience and best practices for building resilient IT systems to address data risk and privacy.

World Password Day: Tanium Experts Bust Common Password Myths

On World Password Day, we break down some of the myths and truths about password security and what good password policy looks like.

University Library: Gifted Black Girl uses Laptop, Writes Notes

Learn how a Tanium certification allows you to validate your expertise, skills and abilities with Tanium solutions.

Zero-Days, Breaches and the Supply Chain: The Five Biggest Cyberattack Stories in the Headlines

Check out the latest cybersecurity news and how to be ready for whatever comes next with vulnerability management tools.

Why Real-Time Data Is Essential for IT Help Desk Effectiveness

Learn how modern IT help desk tools can give you real-time access to data to help discover what’s happening on your company’s endpoints.

Time to Patch: The Clock’s Ticking on Four More Microsoft Exchange Vulnerabilities

Learn how Tanium can help you find and patch affected servers with the latest Microsoft Exchange Vulnerabilities.

The SolarWinds Backdoor

タニウムを利用すると、SolarWinds Orion製品がインストールされている端末を特定することが可能です。またUS-CERTのアドバイスに従い、ネットワーク上で端末が通信しないようにしたり、推奨パッチをインストールしてリスクを軽減または排除することができます。

How Tanium Can Solve Your Organization’s Top IT Operations Challenges

Learn how to solve your organization’s top IT operations challenges with Tanium Endpoint Management tools.

ヒンダウィ親子のチャレンジ精神

みなさんはタニウムについてどのぐらいご存知ですか?創業者は誰?米国本社はどこにあるの?TaaS as Serviceって何?タニウムの歴史やタニウム合同会社、最近ニュースになったタニウムの関連情報をご紹介します。

セキュリティ・トランスフォーメーション(SX):パート1

みなさんはセキュリティ・トランスフォーメーション(SX)という言葉を聞いたことはありますでしょうか?デジタル・トランスフォーメーション(DX)は毎日のように耳にすると思いますが、今回はこのSXについて2回にわたり解説させていただきます。

Lateral Movement: How Cybercriminals Move Across Your Network and How to Stop Them

Learn how cybercriminals gain access, then make lateral movements across your company network and the best practices to prevent this.

ralph-loura-reimagines-remote-workforce-tanium.jpeg

CIO shares concerns about security once Lumentum’s remote workforce returns to the offices and his digital transformation vision beyond the pandemic.

it-management-healthcare-tanium.jpg

Largest hospice care provider in the U.S. turns to Tanium to dramatically streamline software updating and patching processes while uniting IT and security

healthcare-ransomware-tanium.jpg

This three-part series on ransomware will help healthcare providers understand the tools they need to improve their security and IT hygiene.

How GenesisCare Secured 16,000 Endpoints on Three Continents

Head of IT Security Mike Kleviansky from GenesisCare found that the Tanium Platform could deliver the endpoint management he needed to control risk.

cybersecurity-career-tanium.jpg

A Tanium employees shares his story and the lessons learned going from the Army National Guard to working at Tanium.

distributed-workforce-tanium.jpg

Lumentum shifted to a work-from-home policy and kept devices and data safe with Tanium's endpoint management and security platform.

Image for How to Identify, Contain, and Remediate Zero-Day Risks

Tanium Impact provides visualizations and risk analysis to act effectively, whether proactively engaging in risk management or responding to threats.

microsoft-exchange-server-attacks-tanium.png

With cybersecurity attacks increasing, businesses need to be ready for whatever comes next. Learn how proactive prevention and rapid response with Tanium helps mitigate risk.

endpoint-performance-monitoring-tanium.jpg

With so much at risk, endpoint performance monitoring is critical for any organization interested in making the most of its people and technology.

todd-palmer-tanium.jpg

Tanium's head of partner sales explains how the company is investing in its channel partners to help more organizations manage and secure endpoints.

data-risk-management-tanium.png

The transition to remote working has expanded agency threat surfaces — and it’s not just cybersecurity risk that agency IT teams have to deal with; it’s increased risks to data, the mission and staff. People now use devices they weren’t before, in places and networks they weren’t working from previously — making it harder to protect all endpoints from phishing or malware attempts.

software-management-in 2021-tanium.png

Distributing and patching software are two of the most important tasks assigned to an organization’s IT team. Many tools are designed to handle those tasks, which fall under the general heading of software management.

preventative-endpoint-security-tanium.png

Agencies have long relied on reactive security (compensating security controls) vs. preventive security (baseline security controls) to protect their information systems. As a result, many end up with tool sprawl — adopting too many one-off specialized solutions that complicate risk decision making, fail to scale and fall apart in a borderless environment.

improve-fitara-score-tanium.jpg

The scores from the latest Federal Information Technology Acquisition Reform Act (FITARA) are out. Good news: it showed overall improvements for all agencies. Surprising news: not one agency’s cyber score changed from the previous scorecard.

asset-discovery-and-inventory-tanium.png

For people, hygiene is a series of practices performed to preserve health and prevent the spread of disease. But we’ve humanized computers to the point where we apply the concept of hygiene to IT.

healthcare-ransomware-attacks-tanium.png

Ransomware is a complex, multistage attack. There is no silver bullet that will defend healthcare providers.

7 Ways to Minimize Data Risk and Enhance Privacy Compliance

Change is the new reality for today’s information and governance, risk management and compliance (GRC) leaders. Rapidly evolving compliance regulations, escalating financial penalties and more rigorous enforcement are the name of the game.

7 Ways Tanium Can Protect Your Organization From Evolving Cyberthreats and Data Breaches

Fifteen years ago, most organizations were worried about very formulaic cyberattacks designed to hit every enterprise or every computer out there. Attackers were in it for the glory.

Continuous Diagnostics and Mitigation (CDM) and Zero Trust Are the Building Blocks of Cybersecurity

As the distributed workforce grows, federal agencies face a broader threat landscape. Bad actors are gaining access to more user credentials than ever before, with their algorithms outperforming humans 1,000 to one.

10 Ways Tanium Makes Configuration Management Better

Configuration management means setting up employee computers to comply with IT policies while ensuring that employees have access to applications and data they need for their jobs. Legacy configuration management products developed a couple of decades ago were designed for a world that doesn’t exist anymore.

9 Ways Tanium Gives You Control of Your Endpoint Software Environment

Endpoint Management lets IT teams manage any endpoint environment from a single control point. But organizations often struggle to keep the software on their endpoints up to date with the latest patches and applications.

9 Ways Tanium Makes Asset Discovery and Inventory Faster, Simpler, Easier and…Better

Endpoint Management lets IT teams manage an organization’s endpoint devices — including laptops, tablets, PCs, servers, and “bring your own device” (BYoD) assets — from a single control point. But you can’t manage them if you can’t find them.

10 Ways Tanium Improves Data Risk and Privacy

Global organizations spent an average of more than $255 million each on compliance with data protection regulations in 2019. That’s a powerful indicator of just how far up the corporate priority list managing data risk and privacy has risen.

Experts Share Advice on Getting Started With Zero Trust for Remote Infrastructures

During the Cyber Security Experts Panel at CDM Central last month, I joined government experts from the U.S. Small Business Administration and Department of Health and Human Services — along with fellow industry experts — to discuss what the future holds as technologies, and work environments continue to shift. We also shared advice on how federal agencies can start to implement zero-trust models.

The Incoming Threat: Why Healthcare Organizations Must Defend Against Ransomware

Healthcare providers — it’s time to take ransomware seriously. Daily attacks are increasing.

Cybersecurity: Global Threats Require a Global Response

Cyberattacks mounted by nations and nation-states against private companies — and each other — are nothing new. But their boldness, frequency, and sophistication have steadily increased.

How a Federal Telework Bill Can Help Modernize and Secure Remote Work

As federal telework continues, agencies are looking to allocate funds and modernize remote environments for the future. The Pandemic Federal Telework Act, if passed, would direct federal agencies to allow eligible employees to telework full-time throughout the COVID-19 pandemic.

Strategies for Optimizing Remote Work in 2021

In 2020, the federal sector’s priority was business continuity, when the pandemic forced a new world of remote work. But now that the dust has settled, 2021 presents a crucial opportunity for the government to improve security and modernize architecture in federal networks as the distributed workforce continues.

Zerologon Needs More Than a Patch: How Federal IT Teams can Remediate This Vulnerability

The Zerologon vulnerability that spurred a rare emergency order by the Cybersecurity and Infrastructure Security Agency (CISA) continues to pose a threat – specifically to the federal civilian executive branch. CISA requires all federal agencies to immediately apply the Windows Server August 2020 security update or disconnect from federal networks.

The End of Adobe Flash: How to Manage and Protect Your Organization

A deadline three years in the making is coming up on December 31, 2020. That’s when Adobe will end its support of Flash.

Ready for What’s Next? Tanium Experts Share Technology Predictions for 2021

When the pandemic hit and the world stayed home, ensuring business continuity was everyone’s priority. Business executives and IT leaders alike had one simple task — keeping the lights on.

Securing Federal Telework With Zero Trust

The network perimeter is dissolving. As a result of the pandemic, widespread telework is likely here to stay.

Accenture, Google, and Tanium: Working Together to Address Enterprise Security Risks

The world of IT security has changed dramatically in the past year, but which changes really matter, and how should companies respond in order to keep their employees and data safe? A recent Tanium webinar, “The Secrets of High-Speed Threat Detection Using Petabytes of Data,” featured experts from Accenture, Google and Tanium.

San Joaquin County: Technology Leader in Government

Over the years, Tanium has earned an enviable reputation for driving critical success at organizations running some of the world’s largest and most complex networks. From top to bottom, our company is fueled by a passion for customer success, so it’s thrilling when these efforts are recognized externally.

Leading at the Edge: Day Two at Converge 2020

This year has been awash with IT stories of a similar hue: Remote workers targeted by escalating cyberattacks, virtual private networks (VPNs) overwhelmed with traffic, digital projects put on hold, Zoom meetings being hacked. These stories all speak to survival.

“Increased and Imminent Threat” to Healthcare Organizations Brings Endpoint Security Into Spotlight

A recent joint advisory from the United States Federal Bureau of Investigation, the Cybersecurity and Infrastructure Security Agency, and the Department of Health and Human Services has announced an “immediate and imminent threat” against healthcare organizations. While cybersecurity concerns are growing for all organizations, such a pointed joint advisory from these federal agencies highlights the critical need for healthcare organizations to redouble their digital security efforts.

Endpoint Identity: The New Center of Gravity in a Zero Trust World

We live in complicated times. Where once there was a clear binary model for network security — focused on letting the good guys in and keeping the bad guys out — today things are more complex.

Building a Zero Trust Future: Key Considerations for Managing Networks, Users, and Endpoints

It all began back in 2009 with a sophisticated nation-state attack on Google servers. This spurred the first significant, sustained effort to build what Forrester described as a “Zero Trust” architecture.

Be Coordinated. Be Coherent. Be Fast and Have No Regrets.

Businesses are being forced to innovate, reinvent themselves and transform the way they operate in order to improve resilience, become more efficient and recoup their losses due to COVID-19.

Leveraging Zero Trust to Secure Remote Work Infrastructures

For federal agencies, delivering citizen services efficiently, rapidly and securely is the top priority. Today, the challenge is to continue to deliver and evolve these services with employees (and IT teams) working from home.

How to Defend Against Social Engineering During Widespread Remote Work

To make your organization more secure, the answer is, was and always will be in people. Jenny Radcliffe is the Founder and Director of Human-Centered Security, a social-engineering-focused cybersecurity firm.

Ripping Off the Endpoint Protection Bandaid

Bandaid solutions prevent business resilience. When an endpoint is compromised, time is of the essence and there are key questions that have to be answered as quickly as possible: How was your system initially infected? Which accounts were compromised? Was malware installed? Did your attacker move laterally? Perhaps most compelling: was data accessed or stolen?

Advancing Federal Technology Risk Management in the Distributed Workforce

Today’s networks – and the devices connecting to them – are more distributed, more diverse and more difficult to manage than ever before. This introduces a critical need for a comprehensive picture of endpoints.

How Financial Services Can Recover IT Hygiene Post-Pandemic

This kind of event happening is once in a lifetime. Scott Lowe is the Managing Director and Founder of EndpointX, a unified endpoint management and security firm that primarily services financial services institutions.

The Next Stage of the Tanium Journey – and Mine.

Since launching its flagship product in 2012, Tanium has been one of the fastest growing technology start-ups in the security and IT operations market, with a multi-billion dollar valuation and a roster of Fortune 500 and government customers. The speed and scale our product provides is unmatched by any other enterprise software company in the endpoint space.

How One Healthcare Provider Ensured a Seamless WFH Transition

Failure was not an option. Mitch Teichman is Senior Manager of Client Engineering at VITAS Healthcare, a provider of hospice care for patients at the end of their lives.

Managing IT Risk in Financial Services: Why Visibility Matters in Times of Crisis

At the start of the year financial services (FSI) IT leaders had plenty to keep them busy. With post-financial crisis regulatory frameworks finally settling in, the talk was of organizations looking to embrace digital disruption to position themselves best for success.

Using Risk Prioritization to Strengthen Distributed Workforce Security

The basics of telework are in place for agencies – IT teams are prioritizing a careful assessment of cyber risks, current protections and what is needed to keep systems and data safe in an environment with exponentially more endpoints. As the number of devices outside of the protected network grows, the attack surface expands and risk increases.

Why Some Succeeded – and Some Struggled – During the Overnight Switch to WFH

People need to be adaptable to this new environment. Charles Ross is Chief Customer Officer at Tanium, a unified endpoint management and security platform.

How to Restore Defenses to Newly Remote Workforces

Operating without security is not an option. Robin Vann is Chief Solution Officer and CTO at Reliance acsn, an end-to-end cybersecurity firm based in London.

Perspectives from the Tanium Federal User Group: Managing Risk in an Increasingly Complex World

A couple of weeks ago, we held our Federal Virtual User Group where we heard from Civilian and Department of Defense agencies on how they are leveraging the Tanium platform to adapt to a distributed workforce, modernize and consolidate tools and point solutions, and most importantly, manage risk. We kicked off the event by expanding the definition of technology risk management. Often, when speaking to different leaders throughout an agency, many definitions of risk emerge.

Enterprise-class Configuration Management: Introducing Tanium Enforce

When policy management tools like Active Directory Group Policy were created over 20 years ago, the primary endpoint computing device was something that employees came into an office to use and was expected to always be on the network. Back then, organizations were standing up Active Directory (AD) for the first time and had high hopes that they could continue managing a single domain or a single AD forest. But times have changed.

How Organization’s Must Rethink Security: A Hacker’s Perspective

We simply need to make our position unassailable. Alissa Knight is a recovering hacker, serial entrepreneur, author and thought leader.

Tanium for Managed Service Providers: Gain Visibility and Control While Reducing Cost and Delivering on SLAs

COVID-19 is upending long-established norms and ushering in a new era of flexible working: the work-from-anywhere era. This offers Managed Service Providers (MSPs) some valuable opportunities: to meet new customer demands for more visibility and control of distributed corporate endpoints and step up to fill the gap where customers have been forced to reduce in-house IT roles.

Modernize IT Systems, Strengthen Cybersecurity, Improve FITARA Cyber Scores

The Federal Information Technology Acquisition Reform Act (FITARA) was established to diminish waste and duplication in federal IT acquisition. However, many agencies continue to rely on aging legacy systems for some of their most critical operations.

The Transformation of the CISO

In this blog, Chris Hodson, Global CISO at Tanium sat down with Geoff Fisher, Cybersecurity and Incident Response Executive at EY, to discuss the role of CISOs and how it transformed as a result of the COVID-19 pandemic. Translating cybersecurity into business metrics.

My Semester as a Product Management Intern at Tanium

Roshni joined us in the summer of 2019 as an engineering intern. Following her passion, she pursued a product management internship. This is her Tanium story.

Tanium Named as Honoree for 2020 Cybersecurity Impact Awards

We are honored to announce that Tanium was selected as a 2020 Cybersecurity Impact Award honoree in the “Federal Headquarters” category. The awards program is dedicated to shining a spotlight on Maryland, Virginia and Washington, D.C. companies and individuals for their leadership and innovation within the cybersecurity industry.

Conducting Risk Prioritization and Remediation to Combat Challenges in the Distributed Workforce

Most agencies have successfully met initial telework surge requirements – putting the basics in place to continue essential operations. Recent research found approximately 90 percent of federal employees now telework and 76 percent feel they will be able to telework at least part-time in the future.

Securing Federal Remote Infrastructures in a Distributed Workforce

With the COVID-19 pandemic, for the first time, the majority of the federal workforce is decentralized. In March, the Cybersecurity and Infrastructure Security Agency (CISA) released an Enterprise VPN Security Alert encouraging organizations to adopt a heightened state of cybersecurity as it pertains to maintaining their VPNs. While this may seem logical, the fact that CISA felt the need to address the matter highlights the struggle that all agencies have faced for ages.

タニウム、従業員サービス管理の再構築に向けたセールスフォースとの提携を発表

セールスフォースとの新たなパートナーシップとタニウムへの投資により、リモートワークが増加する世界での従業員サービス管理を再構築. セールスフォースとの戦略的パートナーシップを発表し、セールスフォース・

A New Approach to Managing and Securing Operational Environments

Federal agencies have transformed the way they operate in response to the COVID-19 pandemic – but the significant shift has created challenges for agencies that might have already been struggling with the basic blocking and tackling of endpoint hygiene and system patching. Agencies are now required to manage an estate in which the majority of endpoints are outside the enterprise boundary while leaning on a combination of government-issued and Bring-Your-Own-Devices – increasing risk to a level never before encountered.

Keeping IT Ops and Security Teams Close Despite Physical Distance

Efficient and effective collaboration across IT operations and cybersecurity teams remains an ever-present challenge for technology leaders. The silos that so commonly develop around and within these groups result from a variety of factors, with tool proliferation, strategic alignment, culture and many other factors contributing to the problem.

Tanium’s Partner Advantage Program Goes Live

This is an exciting time to be a Tanium partner. Following our announcement at Tanium CONVERGE, we are pleased to share that the Tanium Partner Advantage program is now live.

Managing Cyber Risk in an Evolving Federal Environment

While the threat of data breaches and phishing are not new, agencies are facing growing risk as bad actors focus on taking advantage of inconsistent security across the dispersed Federal workforce. In a recent Cybersecurity Magazine article, I discuss why the approach federal agencies are taking to strengthen security must be restructured and refreshed.

The Experts - A Tanium Original Series

Tanium is excited to announce “The Experts,” a Tanium Original Series for IT operations and security leaders. “The Experts” brings together various industry analysts and thought leaders to provide their unique perspectives on the existing IT gaps around visibility, accountability and resilience through a series of white papers, webinars, virtual panels and more.

Tanium Further Strengthens Zero Trust Capabilities with Cloudflare Partnership

Starting today, Cloudflare, which increases the security and performance of web sites and services of global organizations, and Tanium are partnering to further strengthen organizations’ Zero Trust access policies. Customers of both platforms can now incorporate Tanium’s industry-leading endpoint visibility into Cloudflare for Teams, whereby Cloudflare Access policies decide whether or not a request can reach the applications that power an organization.

A Great Place to Work: Why Values Make the Difference at Tanium

Tanium is a company on a mission: to revolutionise endpoint management and security for our global customers. The ground-breaking technology platform we’ve built helps the world’s largest organisations and governments manage and secure their enterprise environments against ever-advancing cyber threats and disruption.

How Tanium and the MITRE ATT&CK Framework Empower Federal Decision Makers to Manage and Prioritize Risk in Today’s Complex Environments

The origin of the MITRE ATT&CK Framework. The ever-increasing volume of cyberattacks can be overwhelming for those responsible for keeping their organizations secure.

Planning for a New Normal: This Is Just the Beginning

Life moves pretty fast at Tanium. When I joined at the end of 2019 it was already a hugely exciting time for the company.

Announcing Tanium Discover 3.2: More Visibility, More Control

Today we are pleased to announce the general availability of Tanium Discover version 3.2, which includes the ability to scan into networks with no deployed Tanium Clients.

Why Tanium Was Built for the Future of IT

Having been in the industry for the past 30 years, I have seen and continue to see technological advancement that rivals anything that a reasonable person could have predicted. Yet, in all of this time, it seems that we still struggle with the fundamentals.

With Distributed Workforce Transformation in Overdrive, Agencies Focus on Access and Security

Public and private sector organizations alike are working to scale teleworking capabilities to accommodate a record number of remote employees. Simultaneously, the spike in need for financial relief through the CARES Act is straining the Internal Revenue Service systems and causing website and app outages due to high traffic volume associated with the distribution of stimulus checks and Department of Labor systems across the country.

Public Sector Notice: Tanium Is Available to the Ontario Public Sector

We are very pleased to announce that Tanium has been made available to the Ontario Public Sector (OPS) on the IT Security Products and Service Vendor of Record (VOR) arrangement (Tender-11558). Tanium’s unified endpoint management and security platform is immediately available to purchase for all of Ontario’s public sector agencies and institutions.

TAMs Share Their Tips on Productivity in a Distributed Workforce

Since the novel Coronavirus pandemic, many have found themselves working from home. Things might get back to normal, or they may change forever as a new “normal” with more people working in a distributed workforce for longer periods of time.

Critical IT Visibility Gaps Persist Despite Tens of Millions Spent on Compliance [404]

Organizations have spent an average of $70.3 million each to comply with data privacy regulations in the past 12 months alone. Despite this stepped-up investment, they lack the full visibility and control of endpoints needed to stay secure, prevent operational challenges, and avoid costly compliance fines.

Unified Endpoint Management Platform Helps Diminish Cyber Risks

Nearly every day, a new data breach or cyberattack occurs – and the public sector is a significant target. Although the number of data breaches and cyberattacks are higher now than ever before, this isn’t new – information security has been named a high-risk area by the Government Accountability Office since 1997.

Tanium Named to Best Workplaces in Technology List by FORTUNE

We are honored to share that Tanium has been named to FORTUNE Magazine’s list of the “Best Workplaces in Technology,” a recognition determined by Great Place to Work®. This is a proud milestone and follows a record fiscal year where we saw increased revenue growth, strengthened partnerships, customer expansion, new team members and stellar industry recognition.

Helping to Maintain the Health and Safety of Tanium Team Members and Our Customers During the Coronavirus (COVID-19) Outbreak

As the global community responds to the Coronavirus outbreak, we are sharing the actions we are taking in the spirit of transparency and social responsibility. These actions are part of our ongoing efforts to ensure the health and safety of our team members, customers, partners and all of their families.

Application Visibility and Control with vArmour and Tanium

Tanium’s integration with vArmour. At Tanium, our ecosystem of trusted and experienced partners helps enterprises and government organizations around the world solve today’s most difficult security, compliance and IT operations challenges.

CRN Names Tanium’s Tom Herrmann a 2020 Channel Chief

We are delighted to share that CRN has named Tom Herrmann, Global VP of Channel and Alliances at Tanium, to the CRN Channel Chiefs 2020 list. This annual list recognizes the top vendor executives who continually demonstrate exemplary leadership, influence, innovation and growth for the IT channel.

More Endpoints, More Complexity, More Risk – Why Federal Agencies Must Shift Their Approach To Unified Endpoint Management

Increased complexity across federal government networks. The rise of mobile apps and IoT devices combined with the use of commercial clouds are just a few reasons for increased complexity across federal government networks.

Leading Teams Through Transformation: Dylan DeAnda’s Story

Dylan DeAnda is a Vice President of Tanium’s Enterprise Services Organization (ESO). A year ago, Dylan was asked to build and lead this new ESO team. This is his Tanium story.

Announcing Tanium Discover 3.1: Discover Endpoints Deployed in the AWS Cloud Share

Today we are pleased to announce the general availability of Tanium Discover version 3.1, which includes the ability to discover endpoints deployed in the Amazon Web Services (AWS) cloud.

Endpoint Management, the Blind Men and the Elephant

The blind men and the elephant. The parable of the blind men and the elephant is thousands of years old and has several well-known variations.

HIPAA Compliance Made Easy: Managing with Tanium's Innovation

Innovation and compliance in the healthcare industry. The use of big data to assist providers with patient care decisions, 3D printed skin for burn victims and enabling patients’ instant access to their medical records are just some examples of amazing technology advances transforming the healthcare industry.

Modernizing IT Operations: Find & Control Everything on Your Network

If you’ve recently attended an IT conference or tradeshow, you probably were inundated with a number of buzzworthy technologies that left you wondering how they’d all fit in within your IT initiatives. Artificial intelligence, machine learning, hyper-automation are all examples of pivotal and transformative technologies, some already present in today’s tools, soon to be even more entrenched in IT workstreams.

How the Strained Relationship Between Security and IT Operations Is Disrupting Business

IT decision-makers have a lot on their plates, from ensuring that their organizations are compliant and critical information is secured, to managing fleets of networked devices and positioning technology investment as an enabler for business growth. One of the biggest challenges in IT, however, is the often-strained relationship between IT operations and security teams.

Driving Towards IT Hygiene | Challenge #3 Fragmented Workflows

Managing enterprise IT environments is becoming more and more complex. In this series, we’ll take a careful look at the challenges that have stemmed from this growing complexity.

5 Tanium Community Articles to Help You Reduce Risk

We have gathered five of our most popular and impactful Tanium Community articles as a primer for those who are new to the Tanium platform, or want to learn more about all you can do with Tanium.

Announcing Remote Scanning for Tanium Comply: Identify Vulnerabilities On Any Connected Device

As 2018 comes to a close we are excited to announce the next major release of Tanium Comply, our security compliance and vulnerability management module. For the past two years Comply has enabled our customers to secure their Tanium managed endpoints with scalable and rapid visibility into misconfigurations and vulnerabilities.

Building a Career in Tech as an Art Major: Katie Hubert’s Story

In October 2019, Katie Hubert celebrated one year at Tanium. She joined us as a Marketing Coordinator after graduating college with her photography and graphic design major.

Welcome Chief Marketing Officer Chris Pick

I’m thrilled to officially welcome Chris Pick as Tanium’s Chief Marketing Officer. As of December 2019, Chris will lead our global marketing organization toward our goals of driving predictable growth, establishing brand equity across our massive total addressable market and positioning Tanium for long-term strategic relevance.

Better Together: Introducing Our Tanium Partner Advantage Program

This month at CONVERGE 2019, we hosted our first ever Tanium Global Partner Summit, and also introduced Tanium Partner Advantage, a new partner program designed for simplicity, predictability and profitability. Tanium Partner Advantage is designed to unlock benefits through measurement of Total Partner Value, which considers a partner’s relationship with Tanium across financial performance, the building of expertise, investment and growth and customer success.

Solving the Hardest IT Challenges Together at CONVERGE 2019

That’s a wrap on our largest CONVERGE conference to date! This year’s theme was “Solving the Hardest IT Challenges. Together,” and with about 1,200 guests from around the world joining us in Nashville, we had an amazing opportunity to interact, experience, socialize and learn from each other.

Here’s What’s New In Tanium Core Platform 7.4

IT teams today struggle to gain end-to-end visibility and control of their endpoints, leaving themselves open to cyberattack and other forms of disruption. An overreliance on point products often only exacerbates the problem; the modern IT team requires a single, unified endpoint management and security platform with the breadth to manage and secure endpoints—on-premises or in the cloud.

This Is What Happens When Security and IT Operations Are at Odds

The risky consequences of strained security and IT operations relationships. Today we’re sharing results of a new study by Forrester Consulting, commissioned by Tanium, that reveals how strained relationships between security and IT operations teams are leaving businesses at risk.

4 Tips to Getting the Most Out of CONVERGE 2019

On Monday, we welcome over 1,000 attendees at our fourth annual user conference CONVERGE 2019 in Nashville, Tennessee. Here are some insider tips to get the most out of CONVERGE – and how to follow along, even if you won’t be there this time.

Connecting Company With Community

We do the right thing. Doing the right thing is one of our core values here at Tanium, and one of many reasons why we have always focused on giving back to our communities.

Best Practice Workflow to Start Detection and Response of Incidents Using Tanium Threat Response

In a recent Tanium blog, “Modernizing Security Operations Centers with Integrated Threat Detection and Response”, we discussed the importance of your SOC teams being able to prioritize actions, and deliver speedy recovery from incidents to minimize business disruptions. As a structured way to approach troubleshooting and ensure optimal performance, the Tanium Community offers a three-part series showing best practice workflows to help you quickly see the status of Tanium Threat Response on your endpoints, and find the information you need to begin detection and response to incidents right away.

Breaking Down Cyber Security Barriers: CONVERGE Q&A With Stephanie Aceves

At CONVERGE 2019, Stephanie Aceves, Director Technical Account Management at Tanium, will host the Technical Lab ‘Getting the Most out of Tanium Threat Response by Aligning your Workflows to Best Practices’. We met with Stephanie ahead of CONVERGE for an insightful Q&A.

Building a Winning Business Case: CONVERGE Q&A With Trevor Walsh

During CONVERGE 2019, Trevor Walsh, Director of Commercial Programs at Tanium, will introduce a range of customers on stage, sharing how they built their business case for Tanium. We met with Trevor ahead of CONVERGE for an insightful Q&A.

5 Tanium Community Articles to Help You Improve IT Operations

The Tanium Community hosts hundreds of best practice articles. Each one is meant to help technical users achieve valuable outcomes when using Tanium.

Find and Remediate New Google Chrome Zero-Day Exploit Using Tanium

Google on October 31 disclosed two new zero-day exploits affecting Chrome and recommended an urgent update. One of these exploits is already being exploited in the wild and is referenced as CVE-2019-13720.

Solving IT Challenges Together: CONVERGE Q&A With Matthew Hastings

At CONVERGE 2019, Matt Hastings, Security & Risk Portfolio Product Manager at Tanium, will host two breakout sessions, sharing what’s next on Tanium’s Product Roadmap. We met with Matt ahead of CONVERGE for an insightful Q&A.

Chasing Sensitive Data: CONVERGE Q&A With Harman Kaur

Tanium Reveal can give you real time compliance status across your enterprise by locating sensitive data at scale, within seconds. At CONVERGE 2019, Harman Kaur, a Director of Technical Account Management at Tanium, will host the Technical Lab ‘Using Tanium Reveal to Find Sensitive Data and Meet Compliance’.

Dissecting a PowerShell Attack: CONVERGE Q&A With Ashley McGlone

PowerShell post-exploitation toolkits are prolific! How do you know if they are being used inside your enterprise? At CONVERGE 2019, Ashley McGlone, Director of Technical Account Management at Tanium, will host the Technical Lab ‘Dissecting a Live PowerShell Attack’. We met with Ashley ahead of CONVERGE for an insightful Q&A.

Tanium Awarded SLP+ Contract for State of California

We are very pleased to announce that Tanium has been awarded the Software Licensing Program Plus (SLP+) contract for the State of California. Tanium’s unified endpoint management and security platform is immediately available to purchase for all of California’s public sector agencies and institutions.

What We Really Mean By “Digital Transformation”

In his role as Tanium CISO, Christopher Hodson frequently meets with CIOs, CTOs and CISOs who are tasked with supporting enterprise-scale technology refactoring initiatives, often without the prerequisites necessary to ensure that information protection and business resilience are retained. This blog is 1 of 3 in a series examining digital transformation in the age of aggressive regulatory compliance, starting with how to think about the much-used, much-misunderstood term itself.

Getting the Current and Complete IT Operations View: Integrating Tanium and Splunk

Managing security in an environment with thousands of computers distributed around the world is no small task, and should a successful cyber attack occur, time is of the essence. The Tanium App for Splunk Enterprise adds contextual information about endpoints, allowing organizations to gain operational and security intelligence.

Driving Towards IT Hygiene | Challenge #2: Visibility Gaps

Managing enterprise IT environments is becoming more and more complex. In this series, we’ll take a careful look at the challenges that have stemmed from this growing complexity.

Announcing Tanium Discover 3.0: Taking Back Control With Better Context

Today we are pleased to announce the general availability of Tanium Discover version 3.0, which includes new Discover scan profiles, interface locations, and improved permissions for visibility of managed and unmanaged endpoints. Tanium Discover scans networks to find hidden, unmanaged assets even across large, distributed global networks with hundreds of thousands of endpoints.

Tanium Ranks No. 10 On FORTUNE’s 100 Best Medium Workplaces

I’m thrilled to share that for the second consecutive year, Tanium has been named to FORTUNE magazine’s annual list of the “100 Best Medium Workplaces,” a recognition determined by global research and consulting firm Great Place to Work®. Up 45 places from last year’s ranking, Tanium placed No. 10 on the 2019 list.

Countdown to CONVERGE 2019: One Month to Go

CONVERGE 2019 is one month away, and we couldn’t be more excited to soon welcome over 1,200 attendees to what is going to be our largest user conference to date! We have already revealed the Technical Labs and Breakout Sessions. And now, we can reveal CONVERGE 2019 will include a Capture the Flag challenge!

How Better Endpoint Management Leads to Smooth Cloud Migrations

Leveraging cloud environments to host data is a strategic priority for enterprise IT departments. However, most management tools today predate cloud computing, making even simple tasks like knowing what’s connected to the network take days, weeks or months.

Driving Towards IT Hygiene | Challenge #1: Tool Proliferation

Managing enterprise IT environments is becoming more and more complex. In this series, we’ll take a careful look at the challenges that have stemmed from this growing complexity.

Enrich CMDB and Orchestrate SecOps with Tanium and ServiceNow

Organizations change rapidly and IT is at the heart of the business. It’s all about speed and agility in combination with security and compliance.

Meet Tanium at NASCIO: Modernizing IT Operations and Security and Achieving Better Outcomes

The National Association of State Chief Information Officers (NASCIO) hosts its annual meeting October 13-16 in Nashville, and for the third consecutive year, Tanium will be out in force. We’re honored to have such great partners across NASCIO and U.S. state and local government agencies, committed to improving cyber hygiene, uniting security and IT operations teams around actionable data and achieving real-time visibility and control of endpoints.

A Day of Giving in the United Kingdom

This October, the Tanium team kicked off a month long campaign of giving, committing to volunteer over 2,000 hours globally. Day of Giving is an opportunity for Tanium employees to lead multiple activities and work together to support and give back to the communities that we all work in.

Tanium Use Case: Know When Sensitive Data Appears on a Managed Computer

In any organization, data is constantly on the move. In the context of data privacy laws and regulations, if you are missing visibility into your data or don’t know where your most sensitive data is, you can’t ensure appropriate controls are in place to protect it—potentially leaving it exposed and your organization challenged to meet compliance standards.

Welcome to a New Blog Series on Improving IT Hygiene

Managing enterprise IT environments is becoming more and more complex. In this series, we’ll take a careful look at the core challenges that have stemmed from this growing complexity.

Tanium Use Case: Threat Alerting & Analysis and SIEM Integration

Heartbleed, Shellshock and, more recently, Intel AMT and Spectre/Meltdown are all examples of high-profile vulnerabilities affecting computing devices and network protocols at a level that makes them quite dangerous. No tool is designed to prevent them, let alone look for them, and most organizations don’t have a plan for them.

Accelerating Investigations with Tanium and Chronicle Backstory

Tanium’s mission is to deliver full visibility and control of all network-connected devices. Our partnerships are focused on furthering that mission for our customers.

Compliance Gets Easier with the Right Technology Investments

GDPR and the California Consumer Privacy Act (CCPA) are two examples of how global privacy regulations are becoming more prevalent, stringent and punitive. Organizations must proactively invest in security and systems management solutions that can locate, manage and categorize sensitive data across all computing devices and ensure that their investments reflect a robust commitment to visibility and control of all endpoints.

CONVERGE 2019: Join Us In Nashville November 18-21!

Our fourth annual CONVERGE user event will take place in Nashville, Tennessee, from November 18-21—and we can’t wait to see you there! Tanium CONVERGE is designed to be different from other security and IT operations conferences.

Operating System Patching...Scary, Right? It Shouldn’t Be.

It has been around since the day of the first operating system, and it will always be a task that everyone needs to pay attention to: Patching. No software developer can afford to hunt down and fix every bug in their software before release because of the age-old constraints of time, resources and competitive advantage with being first to market.

Don’t Let Typical Security Events Slow You Down: A PuTTY Example

If you work with Windows and Unix/Linux platforms, no doubt you are familiar with PuTTY, one of the more ubiquitous tools found on many administrator and developer workstations. Microsoft Windows lacked an SSH client until fairly recently, and previously, if you wanted to connect to any Unix system from a Windows machine, you would need an SSH client.

Tanium Honored With Morgan Stanley CTO Innovation Award

Last week, Tanium was excited to receive Morgan Stanley’s 19th TechWeek and CTO Innovation Summit award, recognizing us as an exceptional technology partner to the bank. Morgan Stanley’s team started deploying our platform a couple years ago to help them gain visibility and control over their desktop, laptop, server and cloud environments.

Take the Fear Out of Change: What Windows 10 Migration Questions Must You Answer?

General support and updates for Windows 7 will end as of January 14, 2020, which means security updates end after this date, as well, opening your organisation up to potential vulnerabilities. This represents a great opportunity to simplify your workstation estate, rid your organisation of some of the technical debt accrued over the years and use the improved native security stack made available by Microsoft in Windows 10, including such features as antivirus, host-based IPS, data-loss prevention, code-signing and OS/Hardware security integration.

New to Tanium Protect: Windows and macOS Encryption Management at Scale

Encryption of data at rest is essential for securing portable endpoints (e.g. laptops) in the event they are lost, stolen or inappropriately decommissioned. It isn’t optional; it’s a fundamental security control, and most compliance regulations today, such as HIPAA and PCI, require the use of encryption to protect sensitive data.

Limited Visibility Keeps Us From Assessing Our True Risk

What metrics do CISOs need? It’s a question I hear daily when I meet with CISOs and CIOs from some of the world’s best-known organisations across finance, retail, aerospace, media, telecom, consulting and many other industries.

Architect, Tomorrow

If you work with an organisation’s technology at any level beyond niche specialities, chances are high you’re working with an architect. The term “architect” itself can refer to several different disciplines.

NEC Partnership Highlights Tanium’s Continued Momentum in Japan

Tanium is proud to partner with some of the best-known technology companies in Japan. Recently, we celebrated a new partnership with NEC to provide managed security services to organizations that want to achieve full visibility and control over their IT environments, including vulnerability management.

Why Do 81% Of CIOs and CISOs Hold Back on Important Security Updates?

Tackling the challenge of Business Resilience. A resilient organization can depend on its people, processes and technology to quickly adapt to cyberattacks, outages and other forms of disruption.

Windows 10 Upgrades and Servicing Made Easy With Tanium

General support and updates for Windows 7 will end as of January 14, 2020. Like any major OS transition, this is not a small undertaking for most organizations, and typically requires months if not a year or more of planning, testing, and training, plus the time to actually perform the migration.

Introducing Tanium Performance: Improved End User Experience on Endpoints At Scale

Improving the endpoint user experience. Today, we are excited to announce Tanium Performance, which allows organizations to monitor, investigate, and remediate endpoint performance issues, quickly and at scale.

Introducing Tanium User Research

We are excited to announce the launch of Tanium User Research, a new research program that gives our User Experience team the opportunity to learn directly from the people who secure, control and manage IT assets. Great products are useful and usable, not just one or the other, and first-hand research is necessary for designing solutions that accomplish both goals.

Announcing Tanium Integration With Chronicle's Backstory Security Analytics Platform

Today we are proud to announce our integration with Chronicle’s Backstory security analytics platform. This integration will give our joint customers the best of endpoint visibility and control combined with the unmatched data processing and intelligence of the Chronicle platform.

It’s 2019, Not 1997. Time to Modernize Your IT Operations.

I remember my first cell phone. It was chunky and weighed a lot, like a car battery with rounded edges that I could somehow use to talk to people.

Take Control of Your SSL/TLS Servers to Avoid Security Breaches and Public Outages

It is critical that enterprises audit their SSL/TLS servers as part of a regular security hygiene assessment process. Failure to do so can lead to security breaches and service outages.

Sensitive Data Management Made Fast and Simple: Introducing Tanium Reveal

Compliance requirements are changing rapidly. Tanium is here to help.

Just Patch Your Systems. Please.

Forget the boogeyman for a moment. Just for a moment, forget the nation-state threats.

IT Operations Success Requires Knowing Your Assets

It’s surprising how many times I hear weeks or even months old inventory data driving all sorts of projects and even security-related processes. You wouldn’t build a house without a blueprint and full inventory of supplies.

IT Operations Starts With Visibility to All Devices

You can’t manage what you can’t see. Before software can be installed, compliance assessed, inventory gathered, or patches installed, a system has to be known and managed.

It's Time to Modernize IT Operations. Business Resilience Depends on It.

New challenges. Same expectations.

Design Consistency Creates Efficiency

Solving real-word customer problems. Our goal at Tanium is to provide solutions to real-world customer problems.

Leveraging Tanium Protect for Incident Remediation

Remediation is arguably the most important step in Incident Response, as it ensures malicious artifacts and other remnants of attacker activity are cleaned up to ensure the environment is more resilient to similar attacks going forward. Unfortunately, this step is often overlooked or tasks are distributed amongst siloed IT teams and can get lost in the ether.

Register Now for Tanium CONVERGE 2018!

We are excited to announce that registration is now open for our annual user conference, Tanium CONVERGE 2018! This year, we are taking CONVERGE to the Grand Hyatt in the heart of Washington, D.C., November 12-15.

Why Best of Breed May Not Be Best

It’s no secret that many organizations rely on numerous tools to manage technology operations and security. Purchased over the years to solve the hottest new problem, these tools combine to form layers of often-overlapping capabilities.

Introducing Tanium Deploy

Deploy software with unparalleled speed and scale. Today, we added to the breadth of operations capabilities that Tanium delivers with the introduction of Tanium Deploy.

Another Persistence Method Reported Overnight On Twitter? How Tanium Can Help

Registry configurations designed to be used for troubleshooting and development are now a means of covert persistence due to the lack of visibility by security tools like Autoruns. Here, we highlight three key ways Tanium modules, including Trace and Detect, can be used to rapidly determine the existence of this relatively unknown persistence mechanism.

SamSam Ransomware: How Tanium Can Help

As we work with our customers to protect their organizations against the latest variants of SamSam ransomware, we’ve learned more about how it operates. We’re sharing those findings here, along with guidance on how our Threat Response module enables threat hunters to quickly detect and respond to this threat.

Tanium Plays Key Role in Verizon Risk Report

The Tanium platform will be used as part of a new service offering from Verizon. The Verizon Risk Report will provide clients with crucial data about their internal infrastructure so they can quantify, understand and improve their risk posture.

2018 Endpoint Security Survey: What Keeps InfoSec Pros Up At Night

We polled 270 IT security professionals to uncover their most pressing concerns about incident response, investigation, and remediation on endpoints. Here’s what we learned.

Navy Cyber Defenders Gain Unprecedented Control Over Their Network With Tanium

Learn how U.S. Navy cyber defenders use Tanium to gain the speed and visibility needed to secure their network.

Meltdown and Spectre Microprocessor Flaws: How Tanium Can Help

Tanium’s Technical Account Managers are working closely with our customers to address the Meltdown and Spectre microprocessor vulnerabilities. Here’s a look at some of the ways we’ve started to help with visibility, patching, performance monitoring and detection and response.

EDR Matters: Embracing a Proactive Approach to Cyber Hunting

This is the second installment in our three-part EDR Matters blog series. In this series, Chris Hallenbeck, Director of Tanium’s Endpoint Detection and Response team, shares his personal views on how organizations can position themselves to be proactive, rather than purely reactive, when it comes to scoping, hunting and analyzing incidents.

Cybersecurity and IT Operations: 3 Forces Shaping 2018

As we set out to consider the major cybersecurity and IT operations developments of 2017, we identified three major forces we believe will influence public- and private-sector enterprises for years to come. And we provide action items you can take in your own organizations to address these forces in 2018.

EDR Matters: How to Reduce Time-to-Detect

This is the first in our three-part EDR Matters blog series. In this series, Tyler Oliver, Tanium’s Director of Endpoint Detection and Response in EMEA and Ben Crocker, senior director EMEA technical account management, share their personal views on how organizations can reduce time and resource requirements in the areas of detection, investigation and remediation of security incidents regardless of scale.

EPP or EDR? Why you need both in your cybersecurity portfolio

EDR tools – like the forensic analysis products that preceded them – adapt to many use cases where EPP falls short. Yet, an effective endpoint security strategy incorporates standalone EDR and EPP so that you can respond to the wide array of incidents common in any enterprise environment.

CONVERGE17: Three Things We Learned on Day 2

We heard the latest on the global breach landscape and discussed the challenges presented by state-sponsored hacking, among many other topics. Throughout the day, we saw three key themes emerge.

CONVERGE17: Three Things We Learned on Day 1

We learned about the latest Tanium products and heard thought-provoking views on everything from artificial intelligence to quantum computing. Throughout the day, we saw three major themes emerge.

Introducing Tanium Asset

Announced today at Tanium CONVERGE17, Tanium Asset gives IT operations and asset managers an up-to-date picture of their endpoints and the software that is on them so they always have an accurate view of what is in their environment. The first observation many customers make after deploying Tanium is about how easy it is to get full visibility into their endpoint environment.

CONVERGE17: Unleashing the Power of You

Our annual CONVERGE user conference is your place to share ideas, learn from your peers, work closely with us to shape the direction of our product, and make your organization stronger than ever. Here’s what we have in store for you at CONVERGE17.

State CIO 2017 Priorities: Why Visibility and Control Are Key

State governments are clearly looking for ways to more efficiently serve their citizens while keeping their data and the services they rely on secure. Gaining complete visibility and control over every asset on their network is foundational for state CIOs to meet these goals.

Windows 10 Migration: Uncovering Hidden ROI

In the last of our three-part series on Windows 10 migration, Egon Rinderer, Senior Director of Technical Account Management at Tanium, explores the many ways to achieve ROI by using Tanium in your Windows 10 migration. ROI isn’t typically the first thing you think of during an operating system migration.

Windows 10 Migration: How to Ease the Burden on Your Resources

In the second of our three-part series on Windows 10 migration, Egon Rinderer, Senior Director of Technical Account Management at Tanium, explores the migration execution and post-migration phases of the process. In each of these phases, we reveal ways to ease the burden on your resources – human and technical – to achieve a successful migration.

Windows 10 Migration: How to Reduce the Time and Effort Required

In the first of our three-part series on Windows 10 migration, Egon Rinderer, Senior Director of Technical Account Management at Tanium, explores why moving to the latest Microsoft operating system is so different from any that have come before. He breaks down the people, process and technology requirements, and offers guidance on how you can accelerate key aspects of your pre- and post-migration journey.

How Tanium customers mitigated the risks of recent ransomware attacks

Tanium has been used across some of the largest networks in the world to mitigate the risks of several recent vulnerabilities, including WannaCry, Intel AMT and the HP Audio Driver Keylogger. For each vulnerability, we offered customers the freedom of choice to determine the best mitigation strategy for their business.

Windows 10 Migration: Don’t Let Complexity Hold You Back

Dushyanth Nataraj, Director of Product Marketing at Tanium, explores why moving to the latest Microsoft operating system is so different from any that have come before. He breaks down the people, process and technology requirements, and offers guidance on how you can accelerate key aspects of your pre- and post-migration journey.

Tanium Receives a Resounding Vote of Confidence From the Investor Community

A stock round led by TPG Growth and other existing investors raises an additional $100 million for the company. This latest round is a testament to the strength of Tanium’s offering as an essential platform helping enterprises solve critical cybersecurity and IT operations challenges.

Helping State Governments Respond to Cybersecurity Incidents

When it comes to cybersecurity incidents, states bear a lot of the burden. They are responsible for protecting countless resources that provide essential services to citizens – from transportation and roadways, to school systems and Medicaid systems, to the energy grid and voting infrastructure.

WannaCry Attack: How Fear of Change Got Us Here

As Tanium’s Chief Security Architect, Ryan Kazanciyan has witnessed the internal response processes at dozens of businesses around the world in the wake of the WannaCry ransomware attack. His biggest takeaway? Institutionalized resistance to change – not simple neglect – is one of the biggest reasons so many companies were left vulnerable.

This Time, It’s Personal: WannaCry and the Psychology of the Cyber Accountability Gap

While the speed with which WannaCry ransomware spread is not new, it does raise new issues of accountability – specifically personal accountability for how we should be protecting ourselves from cyber attacks and, more importantly, holding both governments and vendors accountable for developing safe technologies. To curtail the next WannaCry epidemic, we need the same level of combined effort it took to make cars safe – from seatbelts and airbags to check-engine lights and backup cameras – applied to cybersecurity so everyone understands their part in protecting themselves from future cyber attacks.

“WannaCry” / “Wcry” Ransomware Outbreak: How Tanium Can Help

At the first signs of what was to become a global ransomware attack on May 12, the endpoint detection and response (EDR) team at Tanium sprang into action to help our customers. Here, we provide guidance on how to use Tanium to quickly discover and mitigate the issues.

How We Track Mean Time to Respond

This is the last in our four-part blog series illustrating how we track critical metrics. In this installment, Tanium SecOps Engineer Greg Pothier discusses how we respond to incidents, offers guidelines on mean time to respond and explains why rapid response times are key for every business.

NIST Cybersecurity Framework Updates Emphasize Supply Chain, Metrics

The revised NIST Cybersecurity Framework includes two key changes: expanded details on cyber supply chain risk management, and a new section on cybersecurity metrics and measurement. Tanium CSO David Damato explains why these updates matter for businesses, and where we see room for further improvement.

Why IT Is Failing at Security Hygiene: Survey

IT leaders have a problem with perception versus reality when it comes to understanding what’s happening with their endpoints, according to a recent Frost and Sullivan survey commissioned by Tanium. Here’s what we found out about security hygiene practices, and what you can do about it.

The Three Stages of Security Hygiene: Framework

In the second installment of our three-part series, Tanium CSO David Damato explores how to use risk-based frameworks to build a mature and sustainable cybersecurity program. When building a cybersecurity program, many organizations focus only on prevention.

Looking Inward for the Best Threat Data

Organizations cannot afford to remain wholly dependent on a lifeline of one-size-fits-all data feeds in order to detect attacks. Tanium’s Chief Security Architect Ryan Kazanciyan offers guidance on how to find the best threat data to address your organization’s unique needs.

The Three Stages of Security Hygiene: Evaluation

In the first installment of our three-part series, Tanium CSO David Damato explores why good security hygiene is so essential, and details the first stage to getting your IT organization in order. Are you guilty of poor security hygiene? If so, take heart.

How We Track Mean Time to Patch

This is the third of our four-part blog series exploring how we use the Tanium platform in our own organization. In this installment, SecOps Engineer Greg Pothier shares how to use Tanium and Splunk together to deliver patch management data, which CSOs and other security leaders can tap to assess risk potential.

How We Track Critical Compliance Metrics

This is part two in our four-part blog series exploring how we use the Tanium platform in our own organization. In part one, we revealed how we track critical vulnerabilities.

Where Compliance and Security Hygiene Meet: Exploring the PCI TLS Encryption Update

If you’re looking at compliance as the endgame of your overall security hygiene practices, you’ll be missing out on crucial updates. The looming PCI TLS encryption upgrade offers us a prime case in point.

Government IT Leaders Recognize Need for Speed

Officials from the U.S. Cyber Command, the Air Force and the Department of Homeland Security are finding ways to strengthen our nation’s IT defenses in short amounts of time. Here’s how they’re doing it.

The 3 Security Challenges to Digitizing the NHS

Background on National Health Service. Last year the U.K. Government set an ambitious target of making the National Health Service (NHS) paperless by 2020, a move that will see hundreds of thousands of patient records digitized.

Five cybersecurity predictions for 2017

To call 2016 ‘eventful’ in the IT and cybersecurity space would be an understatement. From Mirai to ransomware and NSA shadow brokers to Yahoo!, this year introduced new threats birthed from age-old challenges.

Empowering the Makers and Builders

I joined Tanium in 2012 as one of our first two Technical Account Managers (TAMs). Like so many working in tech, I’ve worn a bunch of IT hats over the years – from helpdesk to ops to security to software.

CONVERGE 2016: Highlights From Our Inaugural Conference

Don’t miss out. Join us for CONVERGE17, October 16-19, 2017, in San Francisco. And that’s a wrap on Tanium CONVERGE16, our inaugural–and sold out!–user conference.

Introducing Tanium Trends

Our customers frequently tell me how effective Tanium is at managing and securing their network. As Chief of Design and User Experience its my job to ensure that all Tanium users, of all skill levels, are able to harness and understand this power and to provide ways to track and communicate the state of their environment to their stakeholders.

The UK Needs Actions, Not Words, to Encourage Basic Cyber Hygiene

Matt Hancock on cybersecurity. The UK’s newly appointed Minister for the Digital Industries Matt Hancock gave his first speech on cybersecurity last month.

What Does Cybersecurity Awareness Mean to You?

Awareness as a foundation. At Tanium, awareness is the foundation of what we do: being aware of your entire network, and what’s happening on it, is the first step in building an IT security strategy fit for today’s threat environment.

Broken Cyber Hygiene: A Case Study

No shortage of information security tools. With more than 200 different products from 125 vendors to solve the top 20 security controls (deep breath), there’s no shortage of information security tools in the market.

The Increasing Popularity of the NIST Cybersecurity Framework

The NIST Cybersecurity Framework. In 2014, the U.S. Commerce Department’s National Institute of Standards and Technology (NIST) created one of the most crucial pieces of cybersecurity guidance called the NIST Cybersecurity Framework, a common denominator for businesses across all industries to better assess risk and enhance the security and resilience of critical infrastructure.

U.S. Chamber of Commerce Panel Recap: Three Keys to Better Cybersecurity

The cybersecurity world faces a unique conundrum. On one hand, cybersecurity is becoming ever more present in our daily lives.

Volume of Breaches Can Breed Inaction

Cybersecurity threats facing British businesses. Reports appear everyday about the cybersecurity threat facing British businesses.

Be Ready: The CONVERGE Countdown Begins

Be Ready. What does that simple command mean to you? Concern? Confidence? Or maybe it reminds you of the running to-do list you have, but never seem to finish?

Five Ways the Healthcare Industry Can Improve Its Cyberhealth With Security Hygiene

Healthcare industry suffers from significant security breaches. The healthcare industry has had a remarkably tough couple of years when it comes to security.

The 5 Questions You Must Answer for Good Security Hygiene

Questions IT professionals need to answer. We all know IT professionals move too frequently between fires.

Federal Agencies Should Use MEGABYTE Act to Enhance Their Cybersecurity

The MEGABYTE Act. To protect your network, you have to know your network.

U.S. Election Update: Cybersecurity Edition

Election hacking is yet again in the spotlight. This week, the Washington Post reported that U.S. intelligence and law enforcement agencies are investigating a potential covert Russian operation to disrupt the November elections.

Introducing Tanium Comply

Announcing Tanium Comply. Today we’re announcing the latest Tanium product module, Tanium Comply™.

Is Business As Usual Possible in the Cloud?

I am privileged to have been part of two massive IT transformations in my career. At VMware, I partnered with enterprises as they embarked upon a once-in-a-generation transformation to virtual machines and then to the private cloud.

Cyber Grand Challenge: Automate the Easy Stuff

Darpa’s Cyber Grand Challenge (CGC). This week, Las Vegas hosted what organizers called the world’s first all-machine hacking tournament.

Teaming Up With Accenture, Palo Alto Networks, and Splunk on a New Cyber Defense Platform

Today we’re thrilled to announce that Tanium is teaming up with Accenture, Splunk and Palo Alto Networks to power the Accenture Cyber Defense Platform (ACDP), a new breach protection platform that empowers companies to efficiently command their entire cybersecurity lifecycle with one integrated solution. The platform integrates the capabilities of Splunk, Palo Alto Networks and Tanium to improve security and visibility on every endpoint — no matter the size of the network — giving security teams the ability to identify, prevent, protect, detect and respond to attacks within seconds.

Stealing Emails, Let Me Count the Ways

The recently publicized hack of the Democratic National Committee has brought an incredibly common form of data theft back into the spotlight: intrusions that target e-mails. The knee-jerk response to such breaches often advocates controls like message encryption and two-factor authentication.

Mr. Robot: The Importance of Getting It Right

Q&A with Andre McGregor & Ryan Kazanciyan, the Tanium Duo Working Behind-the-Scenes on USA Network’s Hit Show. Mr. Robot, USA Network’s critically acclaimed cyberthriller, offers viewers a peek into the dark fictional world of a vigilante hacker tasked with saving the world.

Time to Upgrade Federal IT: Pass the ITMF

Federal government funding for IT. Imagine running your business on computer systems from the 1980s or 90s.

With Importance Comes Duty

Tanium as one of the 25 most important private companies. Fortune Magazine recently named Tanium one of the 25 most important private companies of 2016, recognizing the most influential private enterprises for their “prodigious revenues or assets, their social currency, their deep connection to our daily lives and their disruptive impact.”

Integrating Tanium and SCCM: Client Health

In my role at Tanium, I’m frequently confronted with complex IT environments. Every client situation is truly unique; however, one of the amazing things about Tanium is how well it adapts and actually thrives in chaotic enterprise networks.

Introducing the PwC Threat Intelligence Stream Integration

The new PwC Threat Intelligence stream integration. One of Tanium’s core missions is to transform cumbersome manual processes into automated tasks that empower IT Security teams with more time, better data and less waste.

Defining Risk Appetite: Cyber Risk and Our Hunger for Leadership

“You don’t have to be one of the recent, high profile corporate victims of a cyberattack to realise that cyber is a clear and present danger.” So began Will Brandon, the Bank of England’s Chief Information Security Officer, in his speech to the recent City Week conference.

Leading DHS Official Talks About the Need for Control Over Your Network in Seconds, Not Days

Threat environment enterprises face. Here at Tanium, we talk to a lot of people in Washington – from our clients and potential clients to policymakers looking to understand emerging threats and how to stop them.

Government Must Be Bold if They Are to Help Businesses Manage Cyber-Threats

A conversation of rising cybersecurity threats. A conversation is happening in the UK about businesses’ responsibility to its customers in the face of rising cybersecurity threats.

Our Design Journey

When I signed on as Chief of Design and User Experience, I was drawn to Tanium’s philosophy of customer-driven innovation, because it holistically aligns with the principles of user-centered design. I love working in industries that are early on the design curve.

Going Back to Basics to Prevent Ransomware Attacks

Ransomware attacks on a daily basis. Ransomware attacks are now daily news as new malware families emerge with nearly the same frequency and enterprises increasingly become the targets.

Back to the Basics: Detecting Malicious Windows Services With Tanium

An essential part of “knowing your network” is tracking endpoint persistence mechanisms – the myriad of ways in which an operating system can automatically load and execute code. For over a decade, background services have been one of the most commonly utilized persistence locations in Windows.

Cyber Literacy and the Board

The accountability gap. Tanium teamed up with NASDAQ to shed light on the gap between corporate leaders’ presumed and actual understanding of their own cybersecurity vulnerability.

It’s Time to Get Serious About Ending Endpoint ‘Tool Bloat’

Explaining endpoint ‘tool bloat’. Have you managed to acquire a pile of security tools in your organization that sit unused? It’s a common issue and it’s one we see a lot in the endpoint security space.

Don’t Get Hijacked! Searching for DLL Load Order Attacks With Tanium

Explaining DLL hijacking. DLL Hijacking, commonly referred to as load order or search order hijacking, is a well-documented malware persistence technique that continues to elude detection and pose a significant challenge for investigators.

What’s Next in Endpoint Security: Announcing Tanium Protect™

A decade or more ago, the choice for how to allocate precious information security dollars was easy. The reality of today is much more complex.

Assessing What Matters in an EDR Solution

Looking back at 2015, it’s hard to dispute that the security industry has been flooded with Endpoint Detection and Response (EDR) products. Walk the sponsor floor at any conference or sample the white papers and marketing pitches from any vendor web site, and you’ll see the same claims repeated ad nauseam: “Prevent, Detect, and Respond” at “enterprise scale” in “real time.”

a16z Podcast: The Fundamentals of Security and the Story of Tanium’s Growth

At September’s a16z Capital Summit, Andreessen Horowitz’s Ben Horowitz and Tanium’s Orion Hindawi sat down to discuss “The Fundamentals of Security and the Story of Tanium’s Growth”, featured this week on the a16z Podcast.

How to Rapidly Remedy the OpenSSH Vulnerability

Last week, Qualys published a security advisory exposing vulnerabilities (CVE-2016–0777 and 0778) in OpenSSH client versions 5.4 to 7.1. When exploited, these vulnerabilities can result in the theft of private key material.

Reducing Risk During Mergers and Acquisitions

A checklist to create cross-company visibility of all systems. Mergers and acquisitions activity among the world’s largest companies has been on the upswing since 2014 with Dow and DuPont making headlines last week as the latest blockbuster merger, following names like Starwood and Marriott and AT&T and DirecTV.

How to Get to the Root of Certificate Security Risks

Dell's Certificate Authority (CA). News recently broke about Dell shipping a self-signed root Certificate Authority (CA) certificate and its private key on a wide range of Windows-based systems.

The Time to Change Federal Cybersecurity Is Now

How governments can stay ahead and recover from cyber attacks. This week, Federal CIO Tony Scott is expected to release a public report on ideas submitted from industry, government and academia to the American Council for Technology and Industry Advisory Council (ACT-IAC), a public-private partnership, for how agencies can stay ahead of and recover from cyber attacks.

Cybersecurity Panel Key Takeaways: What Board Members Need to Know

What is cyber security risk? Tanium CFO & COO Eric Brown recently participated in a panel hosted by Nasdaq called Cyber Security: What Board Members Need to Know, alongside moderator, T.K. Kerstetter, CEO & Talk Show Host, Boardroom Resources LLC and panelists, Yafit Cohn, Associate at Simpson Thatcher & Bartlett, A.J. Kess, Partner at Simpson Thatcher & Bartlett and Martin Liutermoza, AVP of Information Security Engineering at Nasdaq.

In Conversation: Nasdaq’s Brad Peterson and Tanium’s Orion Hindawi on the Six Questions Every Board Must Ask Their InfoSec Leadership

When facing a massive data breach, a company’s status quo — and perhaps its very existence — can all be gone in a matter of seconds. Tanium co-founder & CTO Orion Hindawi and Brad Peterson, Executive Vice President and Chief Information Officer for Nasdaq, understand better than most that countless companies are teetering on the brink of a preventable catastrophe.

Tanium Incident Response Updates: WMI, Scheduled Tasks and Enhanced File Search

On Friday, October 30, Tanium released an updated version of our Incident Response module. I’m excited about several of the new capabilities introduced by this point update, including the ability to hunt for malicious WMI event consumers, conduct at-scale analysis of scheduled tasks and search for files at rest within seconds.

The Case for Board Cyber Risk Oversight

Enterprise risk management model (ERM). As the Audit Committee chair for a public company, I am continually evaluating the enterprise risk management (ERM) model to monitor multiple components of risk to the organization.

Helping Communities Stay Protected While Connected

Protecting the data of citizens. Smart government is truly the name of the game when it comes to cybersecurity.

The Global State of Information Security

As a Senior Associate, I worked closely with customers at PwC to collect information for their yearly Global State of Information Security Survey (GSISS). A decade later, I was excited to receive a copy from PwC, one of Tanium’s partners.

Improving Federal Cybersecurity Is a Shared Responsibility

Today marks the start of National Cyber Security Awareness Month and the fifth anniversary of the Stop.Think.Connect campaign, the federal government’s initiative to educate Americans on how to be safer online. To demonstrate the gravity of our current cyber security landscape, simply start asking around.