STOCK TITAN

ROCon Houston 2025: Qualys Expands Enterprise TruRisk Management (ETM) with Built-in Agentic AI Fabric to Include Identity Security, Industry-Specific Threat Prioritization, and Exploit Validation

Rhea-AI Impact
(Neutral)
Rhea-AI Sentiment
(Neutral)
Tags
AI

Qualys (NASDAQ: QLYS) announced on October 15, 2025 expanded capabilities for Enterprise TruRisk Management (ETM) at ROCon Houston, adding built-in agentic AI support across identity security, threat prioritization, and exploit validation.

Key components: ETM Identity for human and non-human identities, TruLens for industry-specific threat re-ranking, and TruConfirm for safe exploitability validation. ETM pairs risk insights with guided remediation and updates a TruRisk™ score. ETM is generally available; ETM Identity, TruLens, and TruConfirm are available in preview.

Qualys (NASDAQ: QLYS) ha annunciato il 15 ottobre 2025 l'espansione delle capacità di Enterprise TruRisk Management (ETM) durante ROCon Houston, aggiungendo supporto IA agentica integrato per la sicurezza delle identità, la prioritizzazione delle minacce e la validazione degli exploit.

Componenti chiave: ETM Identity per identità umane e non umane, TruLens per la ricalibrazione delle minacce specifica per settore e TruConfirm per la validazione sicura della sfruttabilità. ETM abbina intuizioni sui rischi a remediation guidata e aggiorna un punteggio TruRisk™. ETM è generalmente disponibile; ETM Identity, TruLens e TruConfirm sono disponibili in anteprima.

Qualys (NASDAQ: QLYS) anunció el 15 de octubre de 2025 capacidades ampliadas para Enterprise TruRisk Management (ETM) en ROCon Houston, añadiendo soporte de IA agencial incorporado para la seguridad de identidades, la priorización de amenazas y la validación de exploits.

Componentes clave: ETM Identity para identidades humanas y no humanas, TruLens para la reclasificación de amenazas específica de la industria y TruConfirm para la validación segura de explotabilidad. ETM combina información de riesgo con remediación guiada y actualiza una puntuación TruRisk™. ETM está disponible en general; ETM Identity, TruLens y TruConfirm están disponibles en versión previa.

Qualys(NASDAQ: QLYS)2025년 10월 15일 ROCon Houston에서 Enterprise TruRisk Management (ETM)의 기능 확장을 발표했으며, 신원 보안, 위협 우선순위 지정 및 익스플로잇 검증 전반에 걸친 에이전트 AI 지원을 내장했습니다.

핵심 구성 요소: ETM Identity는 인간 및 비인간 신원을 위한 것이고, TruLens는 산업별 위협 재정렬, TruConfirm은 안전한 익스플로잇 가능성 검증을 위한 것입니다. ETM은 위험 인사이트를 안내된 시정과 함께 제공하고 TruRisk™ 점수를 업데이트합니다. ETM은 일반적으로 사용 가능하며; ETM Identity, TruLens, TruConfirm은 프리뷰에서 사용 가능.

Qualys (NASDAQ: QLYS) a annoncé le 15 octobre 2025 l'élargissement des capacités de Enterprise TruRisk Management (ETM) lors de ROCon Houston, ajoutant un support IA agentielle intégré pour la sécurité des identités, la priorisation des menaces et la validation d'exploits.

Composants clés : ETM Identity pour les identités humaines et non humaines, TruLens pour le re-ranking des menaces spécifique à l'industrie, et TruConfirm pour la validation sécurisée de l'exploitabilité. ETM associe les insights de risque à une remédiation guidée et met à jour un score TruRisk™. ETM est généralement disponible; ETM Identity, TruLens et TruConfirm sont disponibles en prévisualisation.

Qualys (NASDAQ: QLYS) kündigte am 15. Oktober 2025 auf der ROCon Houston erweiterte Funktionen für Enterprise TruRisk Management (ETM) an und fügte integrierte agentische KI-Unterstützung für Identitätssicherheit, Bedrohungspriorisierung und Exploit-Validierung hinzu.

Kernkomponenten: ETM Identity für menschliche und nicht-menschliche Identitäten, TruLens für branchen-spezifische Bedrohungs-Neubewertung und TruConfirm für sichere Ausnutzungsvalidierung. ETM verknüpft Risikoinblicke mit geführter Behebung und aktualisiert einen TruRisk™-Score. ETM ist allgemein verfügbar; ETM Identity, TruLens und TruConfirm sind in der Vorschau verfügbar.

Qualys (NASDAQ: QLYS) أعلنت في 15 أكتوبر 2025 توسيع قدرات Enterprise TruRisk Management (ETM) في ROCon Houston، مع إضافة دعم ذكاء اصطناعي عامل مدمج عبر أمان الهوية، وترتيب أولويات التهديد، والتحقق من قابلية الاستغلال.

المكونات الرئيسية: ETM Identity للهوية البشرية وغير البشرية، و TruLens لإعادة ترتيب التهديدات حسب الصناعة، و TruConfirm للتحقق الآمن من قابلية الاستغلال. يجمع ETM بين رؤى المخاطر مع التخفّي الموجّه ويحدّث درجة TruRisk™. ETM متاح بشكل عام؛ وETM Identity و TruLens و TruConfirm متاحة في المعاينة.

Qualys(NASDAQ: QLYS)2025 年 10 月 15 日 在 ROCon Houston 宣布扩展企业 TruRisk Management(ETM)的能力,新增在身份安全、威胁优先级排序和漏洞利用验证方面的内置代理式人工智能支持。

关键组件:ETM Identity 面向人类与非人类身份,TruLens 用于行业特定威胁再排序,TruConfirm 用于安全的可利用性验证。ETM 将风险洞察与引导修复配对,并更新 TruRisk™ 分数。ETM 已普遍可用;ETM Identity、TruLens 和 TruConfirm 处于预览版。

Positive
  • ETM generally available on October 15, 2025
  • Identity, threat-prioritization, and exploit validation integrated into one platform
Negative
  • ETM Identity, TruLens and TruConfirm are released in preview, not GA

Insights

Qualys expands Enterprise TruRisk Management with identity, threat prioritization and exploit validation; ETM generally available and new modules in preview.

Qualys has extended Enterprise TruRisk Management (ETM) to add three capabilities: ETM Identity (unified identity risk visibility and a single Identity TruRisk™ score), TruLens (real-time, industry-specific threat prioritization), and TruConfirm (safe exploitability validation). These features integrate identity and asset context into a unified Risk Operation Center framework and pair detection with guided remediation and automated verification of fixes. The announcement states ETM is now generally available and the three modules are available in preview as of Oct 15, 2025.

Dependencies and risks include adoption and integration across diverse IAM systems and the operational safety of exploit validation; the release notes claim integration with on-prem Active Directory, Microsoft Entra ID, cloud IdPs and IDaaS but offer no performance metrics or customer results. Watch for customer adoption signals, enterprise deployment case studies, and preview-to-GA timing for ETM Identity, TruLens, and TruConfirm to judge real-world impact over the next 6–12 months.

Enhancements to Qualys ETM platform with integrated remediation help predict and prevent emerging threats to enable provable risk reduction for organizations

FOSTER CITY, Calif., Oct. 15, 2025 /PRNewswire/ -- Qualys, Inc. (NASDAQ: QLYS), a leading provider of disruptive cloud-based IT, security and compliance solutions, today unveiled powerful new capabilities in Qualys Enterprise TruRisk Management (ETM) that strengthen proactive risk management, helping organizations to predict and guard against new and emerging attack vectors in the era of agentic AI. Announced at Qualys' flagship Risk Operations Conference (ROCon) in Houston, the enhancements bolster identity security for both human and non-human identities, improve predictive threat analysis, and provide confirmation of an exposure's exploitability safely, allowing security teams to anticipate and predict cyber risk before a breach happens.

The adoption of AI has increased the volume and complexity of attacks, while fueling a surge in non-human and autonomous identities that security teams must manage. As a result, many security teams are stretched thin, struggling to prioritize and respond effectively. Organizations need a proactive, intelligence-driven approach to breach prevention, tailored to their unique risk profile. Qualys ETM delivers this by aligning Identity Risk Posture Management, contextual threat intelligence for prioritization, and exposure exploitability validation with a unified Risk Operation Center (ROC) framework, enabling provable risk reduction at enterprise scale.

"Enterprises today need advanced solutions to address the growing risks from AI-driven threats and sophisticated adversaries," said Tyler Shields, principal analyst at Omdia. "Qualys' latest enhancements will help security teams operate with greater precision and efficiency for measurable risk reduction. Its Enterprise TruRisk Management (ETM) solution expands visibility to non-human and agentic AI identities and provides predictive, industry and environment-specific risk insights."

These enhancements to Qualys ETM act as force multipliers within the ROC, unifying teams around a single risk language, TruRisk™ to prioritize and reduce the most critical risk factors with clarity and precision. ETM Identity uncovers identity-based risks through deep domain insights, TruLens prioritizes threats and adversaries based on real-time, industry-specific intelligence, and TruConfirm validates which vulnerabilities are truly exploitable within your environment, providing a quantifiable way to measure and verify real risk reduction. Beyond just identifying vulnerabilities, Qualys ETM helps close the loop from detection to response by pairing insights with guided, operationalized remediation.

ETM Identity
ETM Identity enables organizations to proactively reduce both human and non-human identity-related risks. It unifies visibility, context, and remediation across all identity and access management (IAM) systems, including on-premises Active Directory, Microsoft Entra ID, cloud identity providers (IdPs), and Identity as a Service (IDaaS) platforms, and correlates identity and asset risk into a single Identity TruRisk™ score. This allows security teams to focus on the most exploitable attack paths and automate remediation from detection through verified resolution, measurably shrinking the attack surface. By targeting lateral movement paths and securing high-risk service and machine identities, which are often the root cause of lateral movement in breaches, ETM Identity strengthens resilience and materially reduces identity-related breach potential.

"Identity risk has become one of the most exploited and least visible threats organizations face today," said Corey Amsler, director of risk management at GE Vernova. "Security teams need unified insight, aligning identity risk with asset risk, in order to act decisively. No effective exposure management strategy is complete without it."

TruLens
TruLens delivers real-time, tailored threat intelligence that enables organizations to detect, prioritize, and remediate cyber risks with greater speed and precision. By continuously applying live threat analysis and business impact context, TruLens dynamically re-ranks exposures, such as CISA KEV vulnerabilities, so teams focus on fixing what truly matters before threats escalate. It unifies fragmented threat and vulnerability data, enriches it with asset and business context, and surfaces the risks most likely to affect critical operations. With access through a mobile application and tailored, industry-leading intelligence, TruLens delivers actionable insights customized for your specific industry and environment, so leaders can make faster, more informed decisions across the organization.

TruConfirm
TruConfirm extends the value of the Qualys platform by proactively confirming the exploitability of an exposure before attackers get to it. By safely executing real-world attack scenarios, TruConfirm validates exploitability and identifies where security controls have failed, giving security teams clear, actionable proof of risk. This attacker's perspective enables faster, more effective prioritization and accelerates mitigation by closing the loop from detection to response. Once a vulnerability is confirmed to be exploitable, Qualys ETM orchestrates patching or mitigations through ITSM workflows, verifies remediation, and automatically updates the TruRisk™ score. When combined with TruLens, TruConfirm ensures that remediation efforts are laser-focused on exposures that meaningfully reduce incident likelihood now.

"Agentic AI is transforming cybersecurity and forcing organizations to rethink how they manage risk. To stay ahead, they must proactively reduce risk, anticipate where attackers are most likely to strike, and clearly demonstrate the impact of their security investments," said Sumedh Thakar, president and CEO of Qualys. "Qualys Enterprise TruRisk Management (ETM) rises to this challenge with expanded risk verification – now including user identities and exploit validation – providing the clarity and precision security leaders need. We're empowering organizations to measure, communicate, and eliminate cyber risk in ways that drive real, verifiable risk reduction at the executive and board level."

Availability
Qualys ETM is now generally available. ETM Identity, TruLens, and TruConfirm are now available in preview. Sign up at qualys.com/free-trial-new/enterprise-trurisk-management to be among the first to experience the future of these new capabilities, along with agentic AI.

Additional Resources 

About Qualys 
Qualys, Inc. (NASDAQ: QLYS) is a leading provider of disruptive cloud-based security, compliance and IT solutions with more than 10,000 subscription customers worldwide, including a majority of the Forbes Global 100 and Fortune 100. Qualys helps organizations streamline and automate their security and compliance solutions onto a single platform for greater agility, better business outcomes, and substantial cost savings.

The Qualys Enterprise TruRisk Platform leverages a single agent to continuously deliver critical security intelligence while enabling enterprises to automate the full spectrum of vulnerability detection, compliance, and protection for IT systems, workloads and web applications across on premises, endpoints, servers, public and private clouds, containers, and mobile devices. Founded in 1999 as one of the first SaaS security companies, Qualys has strategic partnerships and seamlessly integrates its vulnerability management capabilities into security offerings from cloud service providers, including Oracle Cloud Infrastructure, Amazon Web Services, the Google Cloud Platform and Microsoft Azure, along with a number of leading managed service providers and global consulting organizations. For more information, please visit http://www.qualys.com.

Qualys, Qualys VMDR®, Qualys TruRisk and the Qualys logo are proprietary trademarks of Qualys, Inc. All other products or names may be trademarks of their respective companies. 

Media Contact:   
Rachel Yap Winship 
Qualys
Media@Qualys.com

 

Cision View original content to download multimedia:https://www.prnewswire.com/news-releases/rocon-houston-2025-qualys-expands-enterprise-trurisk-management-etm-with-built-in-agentic-ai-fabric-to-include-identity-security-industry-specific-threat-prioritization-and-exploit-validation-302584266.html

SOURCE Qualys, Inc.

FAQ

What did Qualys (QLYS) announce at ROCon Houston on October 15, 2025?

Qualys announced expanded ETM capabilities—ETM Identity, TruLens, and TruConfirm—to add identity security, adaptive threat prioritization, and exploit validation.

Is Qualys ETM (QLYS) available now and which modules are in preview?

Qualys ETM is generally available; ETM Identity, TruLens, and TruConfirm are available in preview.

How does ETM Identity in Qualys ETM (QLYS) help reduce breach risk?

ETM Identity unifies IAM visibility across on-prem and cloud, correlates identity and asset risk into an Identity TruRisk™ score, and automates remediation of exploitable paths.

What does TruConfirm do in Qualys ETM (QLYS) and why is it important?

TruConfirm safely executes real-world attack scenarios to validate exploitability, identify failed controls, and verify remediation to reduce real risk.

Can Qualys ETM (QLYS) prioritize vulnerabilities by industry relevance?

Yes. TruLens provides real-time, industry-specific threat intelligence to re-rank exposures and focus remediation on what matters most.

Where can investors and customers try Qualys ETM (QLYS)?

Interested users can sign up for a free trial of Qualys ETM at qualys.com/free-trial-new/enterprise-trurisk-management.
Qualys Inc

NASDAQ:QLYS

QLYS Rankings

QLYS Latest News

QLYS Latest SEC Filings

QLYS Stock Data

4.61B
35.90M
0.56%
99.78%
7.81%
Software - Infrastructure
Services-prepackaged Software
Link
United States
FOSTER CITY