1, 2, 3, 4... I Declare: A New Patch Workflow |
Does your patch workflow keep calling you back to your desk? Do you have to jump into your consoles on a regular basis to push moar buttons? Don’t you wish you could go outside and touch more grass? Jump into Tanium’s new patch management of Apple devices where we dive through how to set it and forget it. All built on top of Tanium AEM promise. Pre-Req(s): Basic Understanding of Tanium and MDM | Beginner-Intermediate | Asset, Enforce, Patch, Reporting | |
Beyond Detection: Leveraging Tanium Automate for Vulnerability Management and Remediation |
In this lab, participants will create and modify workflows which will automatically remediate endpoint vulnerabilities. Starting from dashboards which highlight issues, participants will both create and modify Automate runbooks to address these issues. Patching operating systems, deploying updated 3rd Party software, replacing certificates, and setting an Applocker policy are some of the options we will explore in the runbooks for this lab. Pre-Req(s): Basic understanding of Tanium Comply, Patch, Deploy, Enforce, Certificate Manager, and Reporting | Intermediate | Automate, Certificate Manager, Comply, Deploy, Enforce, Patch, Reporting | |
Boost ServiceNow AI Workflows with Tanium Real-Time Intellegence to Improve IT Security Operations with Certainty at Scale |
This lab will teach participants to build a ServiceNow AI agent using Tanium AEM agent integration. Participants will develop a use case with real-time data and standard skills. Additionally, participants will learn how this integration helps ServiceNow investigate similar issues across endpoints and achieve fully autonomous processes confidently. Pre-Req(s): Administrative knowledge of Tanium, Administrative knowledge of ServiceNow | Intermediate | Asset, Automate, Benchmark, Certificate Manager, Connect, Containers, Discover, Engage, Interact, Reporting, Trends | |
Breaching the Gap: Tanium + OpenCTI + OpenBAS for Actionable Intelligence with Attack Simulation |
This lab will cover the Tanium integration with Filigran, an open-source extended threat management suite, to ingest threat reports applicable to an organization, pass those observables into Threat Response for detection, and execute an attack simulation to validate security controls. Following the simulation, this lab will explore the ability within Threat Response to highlight the gaps in existing EDR capability to identify all the stages of a Breach Attack Scenario. Pre-Req(s): Practical understanding of Tanium Threat Response, Basic understanding of Threat Intelligence, Basic concept of a Breach Attack Simulation Platform | Intermediate-Advanced | Reporting, Threat Response | |
From Reactive to Proactive: Automating Endpoint Management with AEM |
For decades, endpoint management meant chasing problems, reacting to incidents, maintaining fragile workflows, and wrestling with change across a sprawling, ever-evolving environment. But that era is over. This isn't just a feature release -- it's a fundamental shift in how endpoint management is done. In this immersive, hands-on lab, you'll experience a world where endpoints take action driven by intelligence and governed by your intent. Tanium's Autonomous Endpoint Management (AEM) marks a seismic shift in how IT operates, delivering real-time decisions, intelligent automation, and policy-driven resilience at scale. Be part of the movement. Lead the change. And never manage endpoints the old way again. Pre-Req(s): Basic understanding of Tanium Experience with Endpoint Management | Beginner | Automate, Deploy, Interact, Patch, Reporting | |
How to Gain Visibility and Control Over Your OT Devices using Tanium |
This lab demonstrates a recent extension of the Tanium AEM platform that enables customers to manage a range of new endpoint types, including their OT (Operational Technology) devices. Using Tanium AEM, customers can achieve enhanced, real-time visibility, asset inventory, and vulnerability assessments of OT devices, and improve their security posture across all endpoints. Pre-Req(s): Operational knowledge of Tanium, Basic Understanding of OT | Intermediate-Advanced | Asset, Automate, Benchmark, Certificate Manager, Comply, Connect, Containers, Discover, Engage, Interact, Reporting, Trends | |
HuntIQ: Agentic Threat Management with Tanium |
With the proliferation of cloud environments, organizations are increasingly exposed to external threats such IngressNightmare. In this session, participants will be focusing on how an organization can use Tanium to continually assess their entire cloud ecosystem to identify and mitigate exposures and weaknesses. Participants will learn about cloud security best practices, as well as how to leverage Tanium modules such as Asset, Comply, and Enforce to build a Continuous Threat and Exposure Management program for their cloud estate. Pre-Req(s): Basic understanding of Tanium, Interest in learning about Cloud and Container Security | Intermediate | Asset, Comply, Enforce | |
Mastering Tanium Automate: Real-World Use Cases and Playbook Creation with Tanium |
This 90 minute workshop session is designed to provide you with a comprehensive understanding of Tanium Automate. This combined lecture and lab workshop will begin with the fundamental of automation, including an overview of Tanium AEM and Automate, along with a demo. You will engage in hands-on activities to explore and identify key processes suitable for automation and learn how to build effective playbooks using Tanium Automate. By the end of the workshop, you will have the skills to drive efficiencies and streamline operations within your organization. Pre-Req(s): Working knowledge of Tanium, Completion of "What Does Tanium Do" training, "Tanium Basics: Leveraging the Power of Certainty" Converge attendance prior to session | Beginner-Intermediate | Asset, Comply, Deploy, Patch, Threat Response | |
Signal Before the Storm: Proactive Alerting in Tanium Guide |
This interactive, lab-based session introduces you to Tanium Guide’s newly enhanced alerting features, purpose-built to deliver actionable insight in real time. You’ll learn how to construct effective reports and configure alert workflows that deliver timely emails and console notifications to the right people. Designed for users with some familiarity with Tanium and TDS, this lab takes a deep dive into optimizing visibility for client and endpoint health, tenant anomalies, and operational risk. Real-world use cases and exercises will give you the confidence to implement and extend reporting solutions within your environment—improving uptime, compliance, and peace of mind.
Pre-Req(s): A practical use of Tanium, Some familiarity with the concept of Reporting and TDS | Beginner | Asset, Certificate Manager, Comply, Deploy, Discover, Patch, Performance, Reporting | |
Strengthen Your Cryptography: Tanium's Guide to Certificate Management and Post-Quantum Readiness |
Learn how to use Tanium Certificate Manager to spot weaknesses in your cryptography and remediate. Participants will learn how to replace expiring certificates and address weak ciphers using Tanium. Plus, get a preview of what Tanium is doing to prepare customers for a post-quantum world amidst new regulations. Pre-Req(s): Administrative knowledge of Tanium, Familiarity with x.509 certificates | Intermediate | Certificate Manager, Reporting | |
Tactical Advantage: Engaging the Users and Help Desk |
In this lab we will explore how IT teams can trigger user notifications based on everyday use cases, specifically uptime greater than thirty days, or reboot required. We will pop up an alert prompting the user to reboot, allowing them to keep their computer secure. If they agree, we initiate the reboot, but if they decline, we redirect them to a URL explaining the urgency and need for the reboot. Pre-Req(s): Tanium console user with practical experience, Knowledge of Tanium Connect and Tanium Reporting | Intermediate-Advanced | Connect, Engage, Reporting | |
Tanium and Microsoft Intune for Unified Endpoint Management |
In this lab, participants will dive into the dynamic duo of endpoint management and security. This year, we’re answering the age-old question of “Why do I need both?”. Participants will see how Intune and Tanium can join forces to create the ultimate platform for managing and securing their endpoints that tend to spend a lot of time outside their four walls. Discover how Tanium’s real-time data and remediation capabilities can complete Intune’s robust management features. Pre-Req(s): Basic understanding of Tanium and Intune, 6 months experience with Tanium and Intune recommended | Intermediate | Asset, Automate, Deploy, Enforce, Interact | |
Tanium Basics: Leveraging the Power of Certainty |
Intended for both new users and those looking to increase their Tanium knowledge, this lab introduces learners to the Tanium Platform and core functions including questions, sensors, packages, saved questions, dashboards, categories, analyzing trends, actions, and more. Pre-Req(s): N/A | Beginner | Connect, Interact, Reporting | |
Tanium's Secret Sauce: Navigating Endpoint |
In this lab, you'll be cooking up success by learning about common errors and mistakes that new users often encounter on the Tanium platform, specifically in autonomous endpoint management. We'll guide you through the best practices to prevent unwanted outcomes and demonstrate how these errors can affect your environment. Additionally, you'll get a taste of various Tanium modules related to endpoint management. By the end, you'll have the perfect recipe for leveraging Tanium's capabilities effectively. Pre-Req(s): Tanium Operator, New User | Beginner | Asset, Automate, Benchmark, Certificate Manager, Comply, Connect, Containers, Deploy, Discover, Engage, Interact, Patch, Reporting, Trends | |
Trigger, Transform, Automate: API-Driven Playbook Execution with Tanium |
In this lab, participants will go from a quick overview of Automate, learn how to manage it using Tanium Gateway, and finally initiate Automate Playbooks via the API. The API can be used to call Tanium Playbooks from other systems such as Microsoft Sentinel, ServiceNow or even an endpoint being imaged using Provision. Pre-Req(s): Practical use of Tanium, Knowledge of code scripting, Knowledge of Powershell or Python preferred | Advanced | Automate, Gateway, Patch | |
Unified IT Operations: Maximizing Value with Tanium and ServiceNow |
In this lab, Tanium administrators who have little to no experience with ServiceNow are quickly able to leverage the power of both platforms using Tanium’s Integration Gallery. The focus will be on configuring multiple ServiceNow integrations as well as common customizations that most customers make to unlock additional value. Pre-Req(s): IT Operations knowledge (ITAM, ITOM,ITSM), Holds one or more Tanium Certifications (TCA or TCPEM, TCPRS), Some exposure to ServiceNow or strong desire to learn | Intermediate | Asset, Comply, Deploy, Patch | |
Use AI Agents to Accelerate Your Endpoint Management |
Hunt, triage and neutralise threats in real time in this hands-on lab where you dive into Tanium’s integrations bringing Security Copilot, Agentic AI and Tanium together. You will explore the Tanium plugin in Security Copilot, build playbooks for repeatable investigations and tackle a scenario end to end using Tanium skills and Agentic AI. Pre-Req(s): Practical use of Tanium, Awareness of Microsoft Products | Beginner | Asset, Automate, Benchmark, Certificate Manager, Connect, Containers, Discover, Engage, Interact, Reporting, Threat Response, Trends | |
Use Data From Anywhere To Drive Action Everywhere: Import, Visualize, and Utilize External Data with Tanium Gateway |
This lab will guide participants through a real-world scenario using Tanium Gateway to import external data into Tanium and leverage that data to drive workflows across Tanium modules. Participants will use Tanium Gateway API to import contractor information from an HR system into Tanium Asset and build a custom report in Tanium Reporting that enumerates the endpoints used by end-of-contract users. Participants will then deploy a Retirement action in Tanium Provision directly from the Report. Taking this a step further, participants will again use Tanium Gateway to automatically schedule device Retirement for these endpoints. Pre-Req(s): Practical use of Tanium, Familiar with scripting in Python or Powershell and using APIs | Advanced | Asset, Gateway, Provision, Reporting | |