Cybersecurity and Infrastructure Security Agency
CISA is the U.S. federal government's cybersecurity defense agency within DHS, providing no-cost cybersecurity services, vulnerability management, and incident response coordination to federal civilian agencies, 19,000+ SLTT governments, and 16 critical infrastructure sectors. Operates with an approximately $2.8 billion annual congressional budget and statutory authority to issue binding cybersecurity directives.
- Company typePublic
- Founded2018
- HeadquartersWashington, United States
- Headcount1,001–5,000
- GTM typeB2B
- OfferingServices
What Cybersecurity and Infrastructure Security Agency does
The Cybersecurity and Infrastructure Security Agency (CISA) is the U.S. federal government's operational cybersecurity defense agency and national coordinator for critical infrastructure security and resilience, operating as a component of the Department of Homeland Security. Established in 2018 by replacing the National Protection and Programs Directorate, CISA serves federal civilian executive branch agencies, approximately 19,000 state/local/tribal/territorial (SLTT) governments, 16 critical infrastructure sectors, and educational institutions through free cybersecurity services including vulnerability scanning, assessments, training, tabletop exercises, and incident response coordination.
CISA's technology platform spans several interconnected systems: the Known Exploited Vulnerabilities (KEV) Catalog for vulnerability prioritization, the Continuous Diagnostics and Mitigation (CDM) Program providing dashboards for federal civilian networks, the Joint Cyber Defense Collaborative (JCDC) for public-private threat sharing, the CISA Gateway for integrated federal agency authentication and tools, and the StopRansomware.gov portal. The agency also operates the CIRCIA cyber incident reporting framework and publishes Binding Operational Directives (BODs) that mandate federal agency actions, including BOD 26-04 establishing 3-day remediation deadlines for critical vulnerabilities.
CISA's business model is fundamentally different from commercial cybersecurity vendors: it operates as a federally funded agency with an approximately $2.8 billion annual operating budget sourced through congressional appropriations, with all services provided free to eligible organizations. The agency employs a multi-channel go-to-market including ten regional offices, regulatory enforcement via BODs, community coordination through JCDC, and a $100 million planned Cyber Technology Services contract. Revenue is concentrated from a single source (U.S. Congress) rather than commercial customers, with non-appropriated funding streams including the $1 billion State and Local Cybersecurity Grant Program administered jointly with FEMA.
Cybersecurity and Infrastructure Security Agency firmographics
Firmographics- Name
- Cybersecurity and Infrastructure Security Agency
- Legal name
- Cybersecurity and Infrastructure Security Agency
- Website
- https://cisa.gov
- Company type
- Public
- Founded year
- 2018
- Operating status
- Operating
- Headcount range
- 1,001–5,000 employees
- Short description
- CISA is the U.S. federal government's cybersecurity defense agency within DHS, providing no-cost cybersecurity services, vulnerability management, and incident response coordination to federal civilian agencies, 19,000+ SLTT governments, and 16 critical infrastructure sectors. Operates with an approximately $2.8 billion annual congressional budget and statutory authority to issue binding cybersecurity directives.
- Ownership category
- akta.pro rank
Cybersecurity and Infrastructure Security Agency industry classification
Industry- Product category
- Government Cybersecurity Services
- NAICS
- Regulation and Administration of Communications, Electric, Gas, and Other Utilities (92613), Security Systems Services (except Locksmiths) (561621), Justice, Public Order, and Safety Activities (922)
- SIC
- Services-Computer Programming, Data Processing, Etc. (7370), Communications Services, Nec (4899)
- akta.pro primary industry
- Critical Infrastructure Protection (CIP) & NERC-CIP Compliance (HDADAJAC)
- akta.pro secondary industries
- Security Governance, Risk & Compliance (GRC) Advisory (BPAKADAG), Security Systems Monitoring & Dispatch (SOC/Remote Guarding) (IMAIAEAF), Industrial & Critical Infrastructure Guarding (Utilities, Plants, Data Centers) (BPAKAAAD)
Keywords
Where Cybersecurity and Infrastructure Security Agency is headquartered
LocationHeadquarters
- HQ city
- Washington
- HQ country
- United States
- HQ region
- North America
Offices4 records
Markets served
Cybersecurity and Infrastructure Security Agency business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Infrastructure, Marketing or Sales
Revenue model
- Congressional Appropriations: CISA operates as a federal government agency funded through annual congressional appropriations managed by the Department of Homeland Security. FY2024 budget approximately $2.8 billion annual operating budget managed by Acting CFO Elizabeth Jackson.
- State and Local Cybersecurity Grant Program: $1 billion federal initiative jointly administered with FEMA providing funding to state, local, and territorial governments for cybersecurity posture improvements. Reauthorized through 2033 via PILLAR Act but pending new funding allocation.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Freemium | Annual | Free cybersecurity services for eligible government and critical infrastructure entities |
Go-to-market motion3 records
Distribution channels5 records
Marketing channels7 records
Cybersecurity and Infrastructure Security Agency product offering
Product offeringCore offering
The Cybersecurity and Infrastructure Security Agency (CISA) is the operational lead for federal cybersecurity and the national coordinator for critical infrastructure security and resilience. It provides cyber defense capabilities, vulnerability management, threat intelligence sharing, risk assessments, incident response support, and emergency communications services to federal civilian executive branch agencies, state/local/tribal/territorial governments, and critical infrastructure owners and operators.
Product overview
CISA operates as America's cyber defense agency offering a portfolio of interconnected cybersecurity products and services. The core offerings include StopRansomware.gov as the public-facing ransomware resource portal, the Joint Cyber Defense Collaborative (JCDC) for public-private threat sharing, and the CISA Services Catalog providing access to assessments, tools, and training. CISA Gateway provides integrated data tools for federal agencies, while the CDM Program offers dynamic cybersecurity tools and dashboards. Supporting resources include the KEV Catalog for vulnerability prioritization, over 100 CISA Tabletop Exercise Packages for stakeholder exercises, and the CIRCIA reporting framework for critical infrastructure incident reporting. These products work together to provide end-to-end cyber defense capabilities spanning prevention, detection, response, and recovery.
Differentiator
Problem solved
Functional benefit
Products and services
- StopRansomware.gov A whole-of-government online resource hub consolidating ransomware defense guidance, alerts, and response resources for organizations and businesses.
- Joint Cyber Defense Collaborative (JCDC) A public-private cyber defense collaborative that enables proactive planning, information sharing, and joint cyber incident response between CISA, federal partners, and private sector companies across the cyber ecosystem.
- CISA Services Catalog A centralized catalog documenting the cybersecurity and infrastructure security services CISA offers at no cost to federal civilian agencies, state/local/tribal/territorial governments, and critical infrastructure partners.
- CISA Tabletop Exercise Packages (CTEP) A set of self-contained, ready-to-use tabletop exercise packages that organizations can run internally to test and strengthen their cybersecurity and infrastructure resilience plans.
- Continuous Diagnostics and Mitigation (CDM) Program A federal program providing federal civilian agencies with automated continuous diagnostics, vulnerability identification, and risk-prioritization capabilities to strengthen network security posture.
- Known Exploited Vulnerabilities (KEV) Catalog An authoritative, curated catalog of vulnerabilities for which there is evidence of active exploitation, serving as the basis for remediation requirements on federal civilian agencies under Binding Operational Directive 22-01.
- CISA Cybersecurity Advisories and Alerts Timely threat intelligence products including advisories, alerts, malware analyses, and joint cybersecurity advisories disseminated to government and industry partners.
- CIRCIA Cyber Incident Reporting Portal A regulatory reporting program under the Cyber Incident Reporting for Critical Infrastructure Act (CIRCIA) through which covered critical infrastructure entities report covered cyber incidents to CISA.
- Emergency Communications Services Programs supporting emergency communications interoperability, priority services, and 911/Next Generation 911 capabilities for federal, state, local, tribal, and territorial partners.
Quantifiable outcome
- 30,000+ cyber incidents triaged governmentwide in 2025
- +3 more outcomes
Companies that use Cybersecurity and Infrastructure Security Agency
Customer profileNamed customers5 records
Segments6 records
Ideal customer profiles3 records
Cybersecurity and Infrastructure Security Agency technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration1 record
AI capability9 records
Feature5 records
Cybersecurity and Infrastructure Security Agency partnerships and signals
Strategic signalPartnerships
Nine partnerships are on record, tiered core.
- NIST and State DepartmentcoreWhite House executive order directing CISA to work with NIST on post-quantum cryptography migration (2030 key establishment, 2031 digital signatures) and State Department on promoting NIST-standardized PQC algorithms globally.
- Center for Internet Security (CIS)corePartnership with Center for Internet Security to operate MS-ISAC providing threat intelligence and incident response to approximately 19,000 SLTT government organizations. MS-ISAC membership defunded under Trump administration but restoration legislation (Guaranteeing Universal Access to Cybersecurity Act) proposed with $50 million annual authorization.
- NSA and Treasury Department (AI Cybersecurity Clearinghouse)coreUnder Trump AI executive order, CISA coordinating with NSA and Treasury Department to establish AI cybersecurity clearinghouse for vulnerability scanning and remediation coordination across critical infrastructure.
- G7 PartnerscoreCISA and G7 partners issued joint guidance on AI software supply chain security promoting SBOM standards for AI systems to enhance transparency and cyber resilience.
- Five Eyes Alliance (CISA, NCSC-UK, ASD-ACSC, CCCS, NCSC-NZ)coreJoint advisory on agentic AI security with Five Eyes cybersecurity agencies warning that autonomous AI systems expand attack surfaces and recommending careful deployment with human oversight and zero trust principles.
- Department of War, Department of Energy, FBI, Department of StatecoreJoint guidance 'Adapting Zero Trust Principles to Operational Technology' developed with four federal partner agencies to help OT owners integrate zero trust security amid growing cyber threats from Volt Typhoon and other actors.
- Joint Cyber Defense Collaborative (JCDC) PartnerscoreJCDC unifies cyber defenders from government agencies, industry partners, and international organizations worldwide. Includes major technology companies, critical infrastructure operators, and allied nation cybersecurity agencies for synchronized cyber defense planning and response.
- OMB and Federal Agencies (TIC 3.0 Initiative)coreCISA collaborating with OMB on Trusted Internet Connections (TIC) 3.0 Initiative providing zero trust architecture guidance for federal civilian agencies migrating from legacy perimeter-based security models.
- Federal Civilian Agencies (Cyber Technology Services)coreCISA planning $100 million Cyber Technology Services contract to support threat-hunting operations and cybersecurity capabilities, primarily based in Arlington, Virginia, anticipated award late 2027.
Scale indicators8 records
Recent moves6 records
Expansion highlights6 records
Cybersecurity and Infrastructure Security Agency competitors and assessment
Company assessmentBroad incumbents
- National Security Agency (NSA): The NSA is the U.S. intelligence agency responsible for signals intelligence and information security, including the cybersecurity mission that overlaps with CISA. While NSA focuses on foreign signals intelligence and offensive operations, CISA leads defensive coordination across federal and critical infrastructure, making them complementary sister agencies within the broader U.S. national cyber mission.
- FBI Cyber Division: The FBI Cyber Division leads U.S. domestic cyber criminal investigations and co-authored the #StopRansomware Guide with CISA. It is a complementary law-enforcement peer that partners with CISA on incident response but operates under different authorities (criminal investigation vs. civilian defense).
Direct peers
- UK National Cyber Security Centre (NCSC): The NCSC is the UK's national technical authority for cyber security, providing incident response, threat intelligence, and guidance to government and critical infrastructure, paralleling CISA's mandate. The two agencies co-issue Five Eyes advisories on agentic AI and supply chain security, making them the most direct international functional equivalent.
- Australian Cyber Security Centre (ASD/ACSC): ACSC, part of the Australian Signals Directorate, leads Australia's national cyber defense and partners with CISA under the Five Eyes alliance. It serves a similar coordinating function for federal agencies and critical infrastructure in Australia, making it a direct international peer.
- Canadian Centre for Cyber Security (CCCS): The CCCS is Canada's national cyber authority under the Communications Security Establishment, providing unified cyber defense for government and critical infrastructure. It is a Five Eyes partner with CISA and serves as Canada's functional equivalent, with comparable incident response, advisories, and threat-sharing missions.
- Germany's BSI (Bundesamt für Sicherheit in der Informationstechnik): Germany's federal cybersecurity authority provides national cyber defense coordination, certification (BSI standards), and critical infrastructure protection analogous to CISA. As a major EU member-state cyber agency, BSI is a direct international peer in mandate and scope.
- European Union Agency for Cybersecurity (ENISA): ENISA is the EU's dedicated cybersecurity agency coordinating cyber defense across member states, analogous to CISA at the supranational level. It supports NIS2 implementation, cert frameworks, and pan-EU cyber exercises, paralleling CISA's role for the United States.
- Cybersecurity Agency of Singapore (CSA): CSA is Singapore's national cybersecurity authority, coordinating cyber defense for government and critical infrastructure sectors. As a small advanced-economy peer, CSA is a direct international equivalent in mandate and operational scope.
- New Zealand National Cyber Security Centre (NCSC-NZ): NCSC-NZ is part of the Government Communications Security Bureau and serves as New Zealand's lead agency for cyber defense, collaborating with CISA as a Five Eyes partner on shared advisories including the agentic AI joint guidance.
Others
- Center for Internet Security (CIS): CIS is a nonprofit partner that operates the MS-ISAC for CISA, providing threat intelligence and incident response to ~19,000 SLTT organizations. It is a core operational partner rather than a competitor, but its closest functional analog to the services CISA provides to state and local governments.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat5 records
Key risks6 records
Key highlights6 records
Customer concentration
Cybersecurity and Infrastructure Security Agency social profiles
Digital presenceCybersecurity and Infrastructure Security Agency compliance and trust
Trust signalCompliance1 record
Cybersecurity and Infrastructure Security Agency financial estimates
Financial estimateRevenue estimate
Valuation estimate
Cybersecurity and Infrastructure Security Agency leadership team
Management profileNumber of profiles
Profiles12 records
Cybersecurity and Infrastructure Security Agency funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Cybersecurity and Infrastructure Security Agency M&A and investment
M&A and investmentM&A
Investments2 records
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Cybersecurity and Infrastructure Security Agency
What does Cybersecurity and Infrastructure Security Agency do?
The Cybersecurity and Infrastructure Security Agency (CISA) is the operational lead for federal cybersecurity and the national coordinator for critical infrastructure security and resilience. It provides cyber defense capabilities, vulnerability management, threat intelligence sharing, risk assessments, incident response support, and emergency communications services to federal civilian executive branch agencies, state/local/tribal/territorial governments, and critical infrastructure owners and operators.
Is Cybersecurity and Infrastructure Security Agency a public or private company?
Cybersecurity and Infrastructure Security Agency is a public company. It is classified as state government owned and is currently operating.
When was Cybersecurity and Infrastructure Security Agency founded?
Cybersecurity and Infrastructure Security Agency was founded in 2018. It employs 1,001 to 5,000 people.
Where is Cybersecurity and Infrastructure Security Agency based?
Cybersecurity and Infrastructure Security Agency is headquartered in Washington, United States, in the North America region.
How does Cybersecurity and Infrastructure Security Agency make money?
Two revenue lines are on record. Congressional Appropriations are the primary driver. The others are state and Local Cybersecurity Grant Program.
Who are Cybersecurity and Infrastructure Security Agency's main competitors?
Broad incumbents on record are National Security Agency (NSA) and FBI Cyber Division. Direct peers are UK National Cyber Security Centre (NCSC), Australian Cyber Security Centre (ASD/ACSC), Canadian Centre for Cyber Security (CCCS), Germany's BSI (Bundesamt für Sicherheit in der Informationstechnik), European Union Agency for Cybersecurity (ENISA), Cybersecurity Agency of Singapore (CSA) and New Zealand National Cyber Security Centre (NCSC-NZ). Center for Internet Security (CIS) is listed as an others.
Does Cybersecurity and Infrastructure Security Agency have an API?
No public API is recorded for Cybersecurity and Infrastructure Security Agency.
What industry is Cybersecurity and Infrastructure Security Agency in?
Cybersecurity and Infrastructure Security Agency's product category is Government Cybersecurity Services. Its primary akta.pro industry code is HDADAJAC, Critical Infrastructure Protection (CIP) & NERC-CIP Compliance, with a secondary code of BPAKADAG, Security Governance, Risk & Compliance (GRC) Advisory. Its NAICS code is 92613 and its SIC code is 7370.