US-CERT
US-CERT is the civilian-facing cyber-incident response component of CISA (DHS), coordinating defense across U.S. federal agencies, SLTT governments, education, critical infrastructure operators, and the public via free services, binding operational directives, and the Joint Cyber Defense Collaborative.
- Company typePrivate
- Founded2018
- HeadquartersWashington, United States
- Headcount51–100
- GTM typeB2B
- OfferingServices
What US-CERT does
US-CERT is the civilian-facing component of the Cybersecurity and Infrastructure Security Agency (CISA), a U.S. federal government agency established in 2018 under the Department of Homeland Security, with US-CERT itself tracing back to 2003. It serves as the operational interface for reporting, analyzing, and responding to cyber incidents affecting U.S. networks, acting as America's Cyber Defense Agency and the National Coordinator for Critical Infrastructure Security and Resilience across all 16 critical infrastructure sectors.
Its core offerings are organized around a portfolio of free, non-commercial services: CISA Central (the coordination hub for incident reporting via 1-844-Say-CISA and [email protected]), StopRansomware.gov (the official U.S. Government ransomware resource portal), SAFECOM (emergency communications interoperability), the Joint Cyber Defense Collaborative (JCDC, a multi-organization cyber-defense collaborative), the K-12 School Security Product Suite, the CISA Services Catalog for technical assistance and assessments, CISA Training, and CISA GitHub for open-source tooling. US-CERT/CISA also issues binding operational directives, ICS advisories, and cybersecurity alerts that compel or notify federal agencies and the public of threat-driven mitigations. The agency is headquartered in Arlington, Virginia, with 51–100 identified personnel and serves Federal Civilian Agencies, State/Local/Tribal/Territorial governments, K-12 and higher education institutions, private-sector critical infrastructure operators, SMBs, and individuals.
The business model is non-commercial: US-CERT/CISA is funded entirely through federal Congressional appropriations as a government entity, and all of its cybersecurity services, tools, training, and technical assistance are provided free of charge. The go-to-market motion is event-driven and coordination-based — direct service delivery through a central contact center and regional offices, self-service distribution via cisa.gov, and ecosystem-partnered channels such as JCDC and co-issued advisories with the FBI, Five Eyes intelligence alliance partners, and other federal entities.
US-CERT firmographics
Firmographics- Name
- US-CERT
- Legal name
- Cybersecurity and Infrastructure Security Agency
- Website
- https://us-cert.gov
- Company type
- Private
- Founded year
- 2018
- Operating status
- Operating
- Headcount range
- 51–100 employees
- Short description
- US-CERT is the civilian-facing cyber-incident response component of CISA (DHS), coordinating defense across U.S. federal agencies, SLTT governments, education, critical infrastructure operators, and the public via free services, binding operational directives, and the Joint Cyber Defense Collaborative.
- Ownership category
- akta.pro rank
US-CERT industry classification
Industry- Product category
- Government Cybersecurity & Incident Response Services
- NAICS
- National Security (928110), National Security and International Affairs (9281)
- akta.pro primary industry
- Cyber Defense & Information Security (National Security) (BPAIAHAE)
- akta.pro secondary industries
- Critical Infrastructure Protection (CIP) & NERC-CIP Compliance (HDADAJAC), Vulnerability Assessment & Scanning (HDADAHAA)
Keywords
Where US-CERT is headquartered
LocationHeadquarters
- HQ city
- Washington
- HQ country
- United States
- HQ region
- North America
Offices1 record
Markets served
US-CERT business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Infrastructure, Marketing or Sales
Revenue model
- Federal Government Appropriations: As a U.S. federal government agency under the Department of Homeland Security, CISA is funded through Congressional appropriations and federal budget allocations rather than commercial revenue generation.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Freemium | Pay-as-you-go | Free Services - No-cost cybersecurity services and tools available to all audiences |
Go-to-market motion1 record
Distribution channels4 records
Marketing channels6 records
US-CERT product offering
Product offeringCore offering
US-CERT is the civilian interface within CISA/DHS that analyzes malicious cyber activity targeting U.S. networks and coordinates incident response, threat intelligence, and vulnerability remediation across federal, state, local, tribal, and territorial stakeholders. It delivers binding operational directives, cybersecurity advisories and alerts (including ICS advisories), cyber defense collaboration through the Joint Cyber Defense Collaborative, and free tools and training to government, critical infrastructure operators, educational institutions, businesses, and the public.
Product overview
CISA (Cybersecurity & Infrastructure Security Agency) is America's cyber defense agency offering a portfolio of free cybersecurity services, tools, and resources rather than a commercial product. The core offerings include CISA Central for incident reporting and support, StopRansomware.gov for ransomware resources, SAFECOM for emergency communications interoperability, the Joint Cyber Defense Collaborative (JCDC) for coordinated cyber defense, and the K-12 School Security Product Suite for educational institutions. Additional services include the CISA Services Catalog for technical assistance and assessments, CISA Training for cybersecurity education, and CISA GitHub for open-source tools. CISA also publishes Binding Operational Directives, ICS Advisories, and Cybersecurity Alerts & Advisories to notify stakeholders of threats and mitigations.
Differentiator
Problem solved
Functional benefit
Brands
- CISA Central: Central coordination hub for CISA operations and incident response.
- Joint Cyber Defense Collaborative (JCDC)
- StopRansomware.gov
- SAFECOM
- CISA GitHub
Products and services
- CISA Central Central coordination hub for cybersecurity incidents, resources, and communications, providing organizations and the public with a single point of contact for incident reporting, guidance requests, and support.
- StopRansomware.gov The U.S. Government's official one-stop location for resources to tackle ransomware, providing guidance, tools, alerts, and coordinated response information to organizations and the public.
- SAFECOM Program that works to improve emergency communications interoperability across local, regional, tribal, state, territorial, international borders, and with federal government entities.
- Joint Cyber Defense Collaborative (JCDC) Unified team that proactively gathers, analyzes, and shares actionable cyber risk information to enable synchronized, holistic cybersecurity planning, cyber defense, and response across partner organizations worldwide.
- K-12 School Security Product Suite Comprehensive cybersecurity guidance and resources specifically designed to help K-12 educational organizations protect against cyber threats and improve school safety.
- CISA Services Catalog Single resource providing access to information on services across CISA's mission areas, including technical assistance, exercises, and cybersecurity assessments.
- CISA Training Robust offering of cybersecurity and critical infrastructure training opportunities designed to reduce cybersecurity and physical security risk across government, industry, and the public.
- CISA GitHub Official CISA GitHub repository providing open-source cybersecurity tools, guidance, and resources for public use to strengthen national cyber defense.
Quantifiable outcome
- CISA's BOD 26-04 requires federal agencies to rapidly remediate high-risk vulnerabilities with comprehensive implementation guidance
- +1 more outcomes
Companies that use US-CERT
Customer profileNamed customers4 records
Segments6 records
Ideal customer profiles4 records
US-CERT technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Feature4 records
US-CERT partnerships and signals
Strategic signalPartnerships
Three partnerships are on record, tiered core.
- FBI (Federal Bureau of Investigation)coreCISA and FBI co-issue public service announcements on cyber threats, including joint advisories on Russian intelligence services targeting commercial messaging applications. The partnership provides coordinated federal response to cyber threats affecting U.S. organizations.
- Five Eyes Intelligence AlliancecoreCISA participates in joint statements with Five Eyes nations (U.S., UK, Canada, Australia, New Zealand) on cybersecurity matters. The alliance coordinates international cyber defense efforts and shares threat intelligence across allied nations.
- Joint Cyber Defense Collaborative (JCDC) MemberscoreJCDC unifies cyber defenders from organizations worldwide, including the expanded industrial control systems sector. The collaborative proactively gathers, analyzes, and shares actionable cyber risk information to enable synchronized, holistic cybersecurity planning, defense, and response.
Scale indicators2 records
Recent moves6 records
Expansion highlights6 records
US-CERT competitors and assessment
Company assessmentBroad incumbents
- National Security Agency (NSA): The U.S. NSA is a peer national-security agency focused on signals intelligence and cybersecurity. It complements CISA's civilian-focused coordination with offensive and foreign-intelligence cyber capabilities and shares threat intelligence through public advisories.
- National Institute of Standards and Technology (NIST): NIST develops the cybersecurity frameworks, standards, and guidance (e.g., NIST CSF, SP 800-53) that CISA's BODs and zero-trust initiatives reference. It is a complementary U.S. federal agency shaping the technical baseline CISA operationalizes across federal and critical infrastructure.
Regional players
- JPCERT Coordination Center (JPCERT/CC): Japan's JPCERT/CC is the national computer security incident response team, coordinating with government, industry, and international CERTs. It parallels US-CERT's incident coordination function within Japan and Asia-Pacific.
- Germany's Federal Office for Information Security (BSI): Germany's BSI is the federal cybersecurity authority, providing guidance, certification, and incident response across government and critical infrastructure. It mirrors CISA's broad civilian-focused mandate within the German national context.
- European Union Agency for Cybersecurity (ENISA): ENISA is the EU's cybersecurity agency, supporting member states with incident response coordination, certification frameworks, and guidance. It serves a comparable national-coordinator function for EU countries, though regionally rather than for a single nation like CISA.
- France's National Cybersecurity Agency (ANSSI): France's ANSSI coordinates national cyber defense across government and critical infrastructure operators, issuing alerts, conducting audits, and operating incident response capabilities. It functions as CISA's French counterpart with similar regulatory and coordination roles.
Direct peers
- Canadian Centre for Cyber Security (CCCS): Canada's CCCS serves as the national cybersecurity authority, providing incident response, threat intelligence, and guidance to government, private sector, and citizens. It operates as CISA's Canadian equivalent within the Five Eyes alliance.
- Australian Cyber Security Centre (ACSC): Australia's ACSC is the national cybersecurity hub within the Australian Signals Directorate. It coordinates cyber defense across government, critical infrastructure, and the public, paralleling CISA's national coordinator role and co-publishing Five Eyes advisories.
- UK National Cyber Security Centre (NCSC): The UK's NCSC is the closest Five Eyes counterpart to CISA, providing national cyber incident response, guidance, and public-private coordination. It co-issues Five Eyes advisories with CISA and operates a similar model of free services and authoritative cyber guidance.
- U.S. Cyber Command (USCYBERCOM): U.S. Cyber Command is the military counterpart operating the Department of Defense's cyber force. It addresses national cyber defense alongside CISA and frequently collaborates on threat intelligence and defensive operations affecting U.S. networks.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat4 records
Key risks6 records
Key highlights6 records
Customer concentration
US-CERT social profiles
Digital presenceUS-CERT financial estimates
Financial estimateRevenue estimate
Valuation estimate
US-CERT leadership team
Management profileNumber of profiles
Profiles1 record
US-CERT subsidiaries and ownership
Company hierarchySubsidiaries1 record
US-CERT funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
US-CERT M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about US-CERT
What does US-CERT do?
US-CERT is the civilian interface within CISA/DHS that analyzes malicious cyber activity targeting U.S. networks and coordinates incident response, threat intelligence, and vulnerability remediation across federal, state, local, tribal, and territorial stakeholders. It delivers binding operational directives, cybersecurity advisories and alerts (including ICS advisories), cyber defense collaboration through the Joint Cyber Defense Collaborative, and free tools and training to government, critical infrastructure operators, educational institutions, businesses, and the public.
Is US-CERT a public or private company?
US-CERT is a private company. It is classified as state government owned and is currently operating.
When was US-CERT founded?
US-CERT was founded in 2018. It employs 51 to 100 people.
Where is US-CERT based?
US-CERT is headquartered in Washington, United States, in the North America region.
How does US-CERT make money?
One revenue line is on record: federal Government Appropriations.
Who are US-CERT's main competitors?
Broad incumbents on record are National Security Agency (NSA) and National Institute of Standards and Technology (NIST). Regional players are JPCERT Coordination Center (JPCERT/CC), Germany's Federal Office for Information Security (BSI), European Union Agency for Cybersecurity (ENISA) and France's National Cybersecurity Agency (ANSSI). Direct peers are Canadian Centre for Cyber Security (CCCS), Australian Cyber Security Centre (ACSC), UK National Cyber Security Centre (NCSC) and U.S. Cyber Command (USCYBERCOM).
Does US-CERT have an API?
No public API is recorded for US-CERT.
What industry is US-CERT in?
US-CERT's product category is Government Cybersecurity & Incident Response Services. Its primary akta.pro industry code is BPAIAHAE, Cyber Defense & Information Security (National Security), with a secondary code of HDADAJAC, Critical Infrastructure Protection (CIP) & NERC-CIP Compliance. Its NAICS code is 928110.