FS-ISAC
FS-ISAC is a 501(c)(6) not-for-profit consortium, founded 1999, that operates the financial sector's primary cyber threat intelligence-sharing platform for 5,000+ member firms across 75 countries, serving banks, insurers, payment networks, exchanges, central banks, and regulators.
- Company typePrivate
- Founded1999
- HeadquartersReston, United States
- Headcount5,001–10,000
- GTM typeB2B
- OfferingServices
What FS-ISAC does
FS-ISAC, Inc. is a member-driven, 501(c)(6) not-for-profit organization founded in 1999 and headquartered in Reston, Virginia. It operates as the financial sector's primary cyber intelligence-sharing consortium, serving over 5,000 member firms across 75 countries that collectively represent $100 trillion in assets. Members include banks, credit unions, insurance companies, payments organizations, investment and securities firms, exchanges, central banks, regulators, MSSPs, and critical cybersecurity providers. The organization is the sanctioned coordination authority for threat intelligence sharing, crisis response, and resilience benchmarking between the global financial system and government cybersecurity agencies including CISA, UK NCSC, and Europol EC3.
The technical platform is centered on the FS-ISAC Intelligence Exchange (IntelX), which integrates SHARE (threat intelligence sharing application), CONNECT (secure chat for member-to-member knowledge exchange), and STIX/TAXII and MISP automated feeds for machine-to-machine IOC and vulnerability consumption. The Global Intelligence Office (GIO) produces finished intelligence analysis from tactical to strategic levels. All shared intelligence is governed by the Traffic Light Protocol (TLP) classification system with four dissemination levels. Additional products include the CERES Forum for central banks and supervisors, the FS-ISAC Scout Platform (vendor directory), the Sheltered Harbor resilience specification (transferred from subsidiary in 2025), and the Future Leaders in Cyber Scholarship Program (launched 2016, 212 scholarships awarded totaling $2.12M). Authentication is handled via PingOne SSO with mandatory two-factor authentication.
Revenue is generated entirely from recurring annual membership dues, which are non-cancelable and non-refundable, across multiple tiers: financial institution members (Tiers 5-1), CNOP (small institutions under $1B in assets), Affiliates/Vendors, MSSP Subscribers, CERES Forum subscribers, and event/scholarship sponsorships. FS-ISAC's 25-year history, global reach, formal government liaison network, and post-quantum cryptography leadership position it as the only organization providing sector-wide, trusted, real-time cyber intelligence coordination for the global financial system.
FS-ISAC firmographics
Firmographics- Name
- FS-ISAC
- Legal name
- FS-ISAC, Inc.
- Website
- https://fsisac.com
- Company type
- Private
- Founded year
- 1999
- Operating status
- Operating
- Headcount range
- 5,001–10,000 employees
- Short description
- FS-ISAC is a 501(c)(6) not-for-profit consortium, founded 1999, that operates the financial sector's primary cyber threat intelligence-sharing platform for 5,000+ member firms across 75 countries, serving banks, insurers, payment networks, exchanges, central banks, and regulators.
- Ownership category
- akta.pro rank
FS-ISAC industry classification
Industry- Product category
- Financial Sector Cybersecurity Intelligence Sharing
- NAICS
- Security Systems Services (except Locksmiths) (561621)
- SIC
- Finance Services (6199)
- akta.pro primary industry
- Regulator/Authority Connectivity & Submission Gateways (APIs, Portals) (FSAFAKAN)
- akta.pro secondary industries
- Risk Management, Controls, Governance & Policy (Crypto) (FSADALAJ), Risk, Compliance & Controls for Embedded Finance (KYB/KYC/AML, Fraud, Disputes) (FSAGALAK)
Keywords
Where FS-ISAC is headquartered
LocationHeadquarters
- HQ city
- Reston
- HQ country
- United States
- HQ region
- North America
Offices1 record
Markets served
FS-ISAC business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Marketing or Sales, Infrastructure
Revenue model
- Membership Dues: FS-ISAC generates revenue primarily through annual membership fees paid by financial services firms. Membership fees are due annually in advance and are not cancelable or refundable. The organization offers different tiers that determine access levels to products and services. Fees are stated in U.S. Dollars.
- CERES Forum Subscription: Central Bank and Regulator Supervisor Forum subscription fees for non-FS-ISAC members. If Subscriber is a FS-ISAC member in good-standing, membership in the CERES Forum is included at no additional cost. Non-members pay applicable annual fees.
- MSSP Subscriber Fees: Managed Security Services Provider subscriber fees for MSSP participants seeking access to FS-ISAC intelligence platforms and information sharing.
- Affiliate/Vendor Fees: Annual fees paid by cybersecurity vendors and service providers seeking affiliation with FS-ISAC's ecosystem. Fees are due annually in advance and are not cancelable or refundable.
- Event Sponsorships: Revenue generated from event sponsorships at regional, national, and local FS-ISAC events including summits, webinars, and the Cyber & Resilience Exchange.
- Scholarship Program Sponsorships: Future Leaders in Cyber Scholarship program is 100% funded through member generosity. Sponsor firms provide funds for financial awards and actively participate in mentor-mentee programs.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Annual | Financial Institution Membership |
| Subscription | Annual | CNOP (Critical Notification Only Participant) |
| Subscription | Annual | Affiliate/Vendor Program |
| Subscription | Annual | MSSP Subscriber |
| Subscription | Annual | CERES Forum Subscription |
| Subscription | Annual | Scholarship Sponsorship ($10,000) |
| Other | Multi-year contract | Event Sponsorship |
Go-to-market motion1 record
Distribution channels5 records
Marketing channels6 records
FS-ISAC product offering
Product offeringCore offering
FS-ISAC is a member-driven, not-for-profit organization that delivers cyber threat intelligence sharing, analysis, and coordinated incident response to financial services institutions worldwide. Through member-only platforms (IntelX, SHARE, CONNECT) and automated threat feeds (STIX/TAXII, MISP), it enables banks, insurers, payment networks, and other financial firms to share real-time indicators of compromise, vulnerabilities, and threat actor tactics in an anonymized, trusted environment. It also operates industry resilience initiatives such as Sheltered Harbor and the CERES Forum.
Product overview
FS-ISAC is a member-driven, not-for-profit organization that advances cybersecurity and resilience for the global financial system. The organization operates a unified intelligence-sharing platform centered on the FS-ISAC Intelligence Exchange (IntelX), which serves as the central hub integrating multiple products: SHARE for threat intelligence sharing and alerts, CONNECT for secure peer-to-peer chat, STIX/TAXII and MISP automated feeds for machine-to-machine IOC consumption, and the FS-ISAC Scout Platform for vendor discovery. The CERES Forum provides a separate secure portal for central bank and regulatory subscribers. FS-ISAC also manages the Sheltered Harbor resilience specification (transferred in 2025) and the Future Leaders in Cyber Scholarship Program for workforce development. The Global Intelligence Office (GIO) produces finished intelligence analysis, while the Traffic Light Protocol (TLP) governs information classification across all sharing channels. Member financial firms represent $100 trillion in assets across 75 countries, with over 5,000 member firms serving banks, credit unions, insurers, payment organizations, investment firms, and exchanges.
Differentiator
Problem solved
Functional benefit
Brands
- IntelX: FS-ISAC's Intelligence Exchange - central hub for applications and products including SHARE (threat intelligence sharing), CONNECT (secure chat platform), and automated feeds (STIX/TAXII, MISP)
- CRX (Cyber & Resilience Exchange)
- CERES Forum
- FS-ISAC Scout Platform
Products and services
- FS-ISAC IntelX FS-ISAC IntelX is a member-only platform delivering expert-vetted, timely cyber threat intelligence to financial services members, enabling them to consume and act on indicators of compromise, threat actor tactics, and vulnerabilities.
- SHARE (Anonymized Intelligence Exchange) SHARE is an anonymized peer-to-peer intelligence exchange platform that allows FS-ISAC members to share sensitive cyber threat indicators and analysis with one another without disclosing their identity.
- CONNECT (Member Alerting) CONNECT is FS-ISAC's one-to-many alerting system used to push urgent or significant cyber threat notifications out to the entire financial membership in real time.
- STIX/TAXII and MISP Automated Threat Feeds Automated, machine-readable cyber threat intelligence feeds delivered via STIX/TAXII and MISP standards, allowing members to ingest indicators directly into their SIEM and security tooling.
- CERES Forum The CERES Forum is a subscription-based operational resilience community within FS-ISAC that connects central banks, financial market infrastructures, and systemically important institutions to collaborate on resilience and threat-related matters.
- Sheltered Harbor Sheltered Harbor is an FS-ISAC-affiliated industry initiative that sets standards for financial institutions to vault critical customer account data and core operating data so that account holders can be made whole after a destructive cyber incident.
- FS-ISAC CRX Risk Dashboard The FS-ISAC CRX risk dashboard is a member-only visualization and analytics tool, powered by AI/ML, that lets financial institutions monitor threat activity and intelligence trends relevant to their organizations.
- Global Intelligence Office (GIO) The Global Intelligence Office is FS-ISAC's operational intelligence arm that produces, curates, and disseminates cyber threat intelligence products to financial services members worldwide.
- FS-ISAC Summits (APAC, EMEA, AMERICAS) FS-ISAC Summits are member events held across APAC, EMEA, and the Americas that combine keynote sessions, working group meetings, and networking to advance collective cyber defense across the financial sector.
- FS-ISAC PQC Working Group The FS-ISAC PQC Working Group is a member-led community of practice that helps financial institutions prepare for post-quantum cryptography migration and associated threats.
Quantifiable outcome
- 5,000+ member firms representing $100 trillion in assets
- +2 more outcomes
Companies that use FS-ISAC
Customer profileNamed customers3 records
Segments4 records
Ideal customer profiles3 records
FS-ISAC technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
Integration3 records
Feature6 records
FS-ISAC partnerships and signals
Strategic signalPartnerships
Twelve partnerships are on record, tiered core and minor.
- Sheltered HarborcoreFollowing a decade of work strengthening operational resilience, Sheltered Harbor's Board approved wind-down with key assets transferred to FS-ISAC. The Sheltered Harbor specification and supporting documents will be available to all FS-ISAC members, managed by FS-ISAC's Resilience Congress composed of senior resilience executives at member firms.
- F5 NetworkscoreF5 joined FS-ISAC's Critical Providers Program to strengthen the financial sector's threat intelligence capabilities. The program enables critical technology providers to contribute to FS-ISAC's global systemic risk platform.
- Quantum Safe Financial Forum (QSFF)coreDeveloped in partnership with QSFF and experts from leading financial institutions and cybersecurity organizations across Americas and Europe. The white paper on post-quantum cryptographic migration emphasizes proactive, unified planning for quantum-resilient cryptography transition.
- Canadian Forum for Digital Infrastructure Resilience (CFDIR) Quantum-Readiness Working GroupcorePartnered with CFDIR Quantum-Readiness Working Group in developing the global transition timeline for post-quantum cryptographic migration in financial services.
- US Cybersecurity and Infrastructure Security Agency (CISA)coreFS-ISAC's Global Intelligence Office maintains two liaisons to CISA Central (formerly NCCIC) facilitating sharing of US government reporting from US-CERT and law enforcement agencies.
- UK National Cyber Security Centre (NCSC)coreFS-ISAC maintains two liaisons to the Industry 100 (i100) facilitating sharing of financial sector reporting issued by NCSC and/or i100, including communication to the National Crime Agency (NCA).
- Europol European Cybercrime Centre (EC3)coreFS-ISAC maintains a Memorandum of Understanding with Europol facilitating sharing of Europol updates on cybercrime information.
- UK Financial Sector Cyber Collaboration Centre (FSCCC)coreFS-ISAC UK became steward of the UK's Financial Sector Cyber Collaboration Centre, enhancing coordination for UK financial sector cybersecurity.
- InterpolminorInformal relationship exists with Interpol for financial sector threat intelligence sharing.
- Dutch National Cyber Security Centre (NCSC)minorInformal relationship exists for financial sector cybersecurity intelligence sharing.
- Cyber Security Agency of Singapore (CSA)minorInformal relationship exists for Asia-Pacific financial sector cybersecurity coordination.
- Australian Cyber Security Centre (ACSC)minorInformal relationship exists for financial sector cybersecurity intelligence sharing.
Scale indicators6 records
Recent moves7 records
Expansion highlights6 records
FS-ISAC competitors and assessment
Company assessmentBroad incumbents
- Recorded Future (Mastercard): Commercial threat intelligence platform now owned by Mastercard, offering financial-sector-focused intelligence products. Direct competitor to FS-ISAC's intelligence feeds with the backing of a major payment network's resources and distribution.
- CrowdStrike: Larger commercial cybersecurity vendor offering integrated threat intelligence as part of its Falcon XDR platform. Competes with FS-ISAC's intelligence layer through commercial subscription offerings with significant R&D and AI capabilities.
Direct peers
- Electricity Information Sharing and Analysis Center (E-ISAC): Energy-sector ISAC operated under NERC with the same operational model: member-driven intelligence sharing, automated feeds, liaison relationships with government agencies. Highly comparable to FS-ISAC's structure and value proposition in a different critical-infrastructure vertical.
- Multi-State Information Sharing and Analysis Center (MS-ISAC): ISAC for U.S. state, local, tribal, and territorial governments. Operates the same intelligence-sharing consortium model with similar government partnership structures, though focused on the public sector rather than financial services.
- Information Technology Information Sharing and Analysis Center (IT-ISAC): ISAC for the broader IT industry with similar threat sharing and analysis functions. Comparable operating model with cross-sector membership and government liaison relationships, but serving IT rather than financial services.
- Communications ISAC (C-ISAC): ISAC for the telecommunications sector providing threat intelligence sharing and incident coordination. Direct structural peer to FS-ISAC operating in another critical-infrastructure vertical.
- Automotive Information Sharing and Analysis Center (Auto-ISAC): Sector ISAC for the automotive industry with identical operating model — member consortium, threat intelligence sharing, vulnerability disclosure coordination. Direct structural analog of FS-ISAC in another critical-infrastructure vertical.
- Health Information Sharing and Analysis Center (H-ISAC): Sector-specific ISAC operating the same intelligence-sharing consortium model as FS-ISAC but for the healthcare sector. Comparable governance, member-driven structure, and product set (threat intel sharing, automated feeds, sector risk advisories).
- Aviation Information Sharing and Analysis Center (A-ISAC): Aviation-sector ISAC providing similar threat intelligence sharing services to airlines, airports, and aviation suppliers. Operates with the same member-driven consortium model and government partnerships as FS-ISAC.
Others
- National Council of ISACs: Coordinating body for the ISAC community. Adjacent to FS-ISAC as the umbrella organization that convenes and aligns the various sector ISACs, providing cross-sector threat sharing context.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat6 records
Key risks6 records
Key highlights7 records
Customer concentration
FS-ISAC social profiles
Digital presenceFS-ISAC compliance and trust
Trust signalCompliance1 record
FS-ISAC financial estimates
Financial estimateRevenue estimate
Valuation estimate
FS-ISAC leadership team
Management profileNumber of profiles
Profiles3 records
FS-ISAC subsidiaries and ownership
Company hierarchySubsidiaries1 record
FS-ISAC funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
FS-ISAC M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about FS-ISAC
What does FS-ISAC do?
FS-ISAC is a member-driven, not-for-profit organization that delivers cyber threat intelligence sharing, analysis, and coordinated incident response to financial services institutions worldwide. Through member-only platforms (IntelX, SHARE, CONNECT) and automated threat feeds (STIX/TAXII, MISP), it enables banks, insurers, payment networks, and other financial firms to share real-time indicators of compromise, vulnerabilities, and threat actor tactics in an anonymized, trusted environment. It also operates industry resilience initiatives such as Sheltered Harbor and the CERES Forum.
Is FS-ISAC a public or private company?
FS-ISAC is a private company. It is classified as nonprofit foundation owned and is currently operating.
When was FS-ISAC founded?
FS-ISAC was founded in 1999. It employs 5,001 to 10,000 people.
Where is FS-ISAC based?
FS-ISAC is headquartered in Reston, United States, in the North America region.
How does FS-ISAC make money?
Six revenue lines are on record. Membership Dues are the primary driver. The others are CERES Forum Subscription, MSSP Subscriber Fees, affiliate/Vendor Fees, event Sponsorships and scholarship Program Sponsorships.
Who are FS-ISAC's main competitors?
Broad incumbents on record are Recorded Future (Mastercard) and CrowdStrike. Direct peers are Electricity Information Sharing and Analysis Center (E-ISAC), Multi-State Information Sharing and Analysis Center (MS-ISAC), Information Technology Information Sharing and Analysis Center (IT-ISAC), Communications ISAC (C-ISAC), Automotive Information Sharing and Analysis Center (Auto-ISAC), Health Information Sharing and Analysis Center (H-ISAC) and Aviation Information Sharing and Analysis Center (A-ISAC). National Council of ISACs is listed as an others.
Does FS-ISAC have an API?
Yes. FS-ISAC offers machine-to-machine automated feeds via STIX/TAXII and MISP. STIX/TAXII feed and MISP collections each have separate credentials with associated licenses. FS-ISAC Intelligence Exchange (IntelX) is the central hub for FS-ISAC applications and products, providing access to SHARE (threat intelligence sharing app), CONNECT (secure chat platform), and automated feeds. STIX/TAXII and MISP automated feeds must be explicitly requested by contacting [email protected]. FS-ISAC reserves the right to decommission Automated Feed accounts unused for 90+ days.
What industry is FS-ISAC in?
FS-ISAC's product category is Financial Sector Cybersecurity Intelligence Sharing. Its primary akta.pro industry code is FSAFAKAN, Regulator/Authority Connectivity & Submission Gateways (APIs, Portals), with a secondary code of FSADALAJ, Risk Management, Controls, Governance & Policy (Crypto). Its NAICS code is 561621 and its SIC code is 6199.