From Attack Surface to Risk Surface: A Qualys Leadership Roundtable

An Exclusive VIP Roundtable Hosted by Chillisoft and Qualys

Attack Surface Management (ASM) gave security teams visibility in an era of rapid digital expansion. It helped answer a critical question: What do we own, and where are we exposed? But as environments became more dynamic – spanning cloud, SaaS, third-party integrations, and shadow IT-visibility alone stopped being enough. Security teams are now overwhelmed not by a lack of data, but by an excess of it.

Risk Surface Management (RSM) represents the next evolution. Instead of focusing purely on asset discovery and vulnerability enumeration, RSM prioritizes exposures based on real-world exploitability, business criticality, and threat context. It shifts the conversation from “What is vulnerable?” to “What truly puts the business at risk right now?”

This session explores how leading security leaders are reframing their programs to move from reactive remediation to intelligence-driven risk reduction.

Roundtable Special Guest Speakers

Himanshu Kathpal

VP, Product Management, Platform & Technologies, Qualys

Himanshu is a dynamic and customer-focused Product Leader and Technologist with extensive experience in Information Technology and Security. Passionate about building products that address customer needs and sell themselves, Himanshu excels in leading teams, coaching, managing ambiguity, and striving for excellence.

With a deep understanding of how technology buyers think and make purchasing decisions, Himanshu is adaptable and successful at working in large organizations, mid-sized companies, and startups. He specializes in both inbound and outbound product management, including writing MRDs and PRDs, intuitive GUI design, leading cross-functional teams, collaborating with engineering and researchers to identify new products and features, and managing the product life cycle using Agile methodologies.

Himanshu’s outbound product management skills encompass understanding the customer, market, and competitors, business case development, GTM strategies, product packaging and pricing, public speaking, analyst relationships, OEM partnerships, contract negotiations, sales enablement, and PR. His domain knowledge spans Information Security, Network Security, Endpoint Security, and Identity and Access Management.

Himanshu is responsible for developing business strategies, closely engaging with clients to understand their needs, designing products, and addressing the challenges they face, making him a key decision-maker. As a motivated self-starter, Himanshu is skilled in all phases of the product life cycle, from initial feasibility analysis and conceptual design to implementation and enhancement.

Darren Beattie

Head of Information Security, Tower

Darren Beattie is an experienced cybersecurity leader with more than three decades in security and communications disciplines spanning military and enterprise environments. He began his career serving 12 years in the UK military, specialising in cryptography and communications security — a foundation that shaped his long-standing focus on resilience, trust, and operational discipline in protecting critical systems.

Following his transition into the private sector, Darren was recruited into New Zealand’s telecommunications industry in 2007, joining Spark New Zealand (formerly Telecom NZ) as a senior firewall specialist. There he contributed to strengthening network security capabilities within a large-scale national infrastructure environment, deepening his expertise in defensive architecture and threat management.

For the past six years Darren has been with Tower, where he currently serves as Head of Information Security. In this role he is responsible for leading cybersecurity strategy, governance, and operations across New Zealand and Pacific Islands business units, overseeing the protection of customer data, digital platforms, and organisational risk posture.

Recognised as a pragmatic thought leader within the cyber community, Darren advocates for forward-leaning adoption of modern security technologies balanced with strong governance, accountability, and organisational alignment. He brings a practical, business-focused perspective to cybersecurity — encouraging organisations to move beyond compliance-driven thinking and toward proactive, risk-informed security maturity.

Register for the Event Below:

Name

Agenda:

 

12:00 — Arrival & Welcome Drinks
Guest arrival, introductions, and opening remarks from hosts.

12:15 — Entrée Service & Executive Perspective 

Himanshu presents:
“From Visibility to Priority — Turning Attack Surface Intelligence into Risk Context”
An interactive presentation exploring platform-driven exposure analysis, contextual prioritisation, and the shift toward risk-based decision frameworks.

12:50 — Main Course Service & Peer Roundtable
Facilitated discussion among attendees examining:

  •  – Operationalising risk surface thinking

  •  – Aligning technical exposure with business impact

  •  – Lessons learned from regional security leadership

 

1:35 — Fireside Chat
Conversation with Darren Beattie and Himanshu:
“What Actually Moves Risk: Platform, Process, or People?”
Audience Q&A encouraged.

2:00 — Closing Remarks & Networking

WordPress Appliance - Powered by TurnKey Linux