Company information
- Ticker
- QLYS
- Country
- United States
- Sector
- Information Technology
- Industry
- Cloud Computing
QUALYS Business Summary
Qualys, Inc. (QLYS) operates a high-margin, subscription-based Software-as-a-Service (SaaS) model, generating approximately 95% of its revenue from its unified Qualys Cloud Platform. The company’s business segments are primarily categorized into Vulnerability Management, Detection and Response (VMDR), Enterprise TruRisk Management (ETM), and Compliance, with a strategic pivot toward its Risk Operations Center (ROC) and agentic AI-powered Risk Fabric. These innovations allow organizations to quantify cyber risk in financial terms and automate remediation across hybrid and multi-cloud environments. In the competitive landscape, Qualys maintains a dominant position alongside direct rivals Tenable and Rapid7, while increasingly contending with platform consolidators like CrowdStrike and Microsoft. It distinguishes itself through a pure cloud-native architecture and a single-agent deployment strategy that reduces total cost of ownership and complexity compared to the hybrid or on-premise requirements of legacy competitors. Founded in 1999 by Gilles Samoun and Philippe Langlois, Qualys is led by President and CEO Sumedh Thakar, a 20-year company veteran who rose from lead engineer to the top executive role in 2021 and previously developed complex algorithms at Northwest Airlines and Intacct. The executive leadership team includes CTO Dilip Bachwani, who directs global product development and site reliability for the TruRisk platform, and CFO Joo Mi Kim, a former J.P. Morgan investment banker with extensive SaaS financial planning expertise. The company’s board of directors is chaired by Jeffrey P. Hank (formerly of Intuit) and features prominent industry figures such as Wendy M. Pfeiffer (former CIO of Nutanix) and Bradford L. Brooks (former CEO of Censys). Backed by early-stage venture support from firms like Bessemer Venture Partners, Qualys is now over 75% institutionally owned, reflecting its status as a mature, cash-flow-positive pillar in the pre-breach cyber risk management sector.