Key Takeaways
- Tidal Cyber, creator of the Threat‑Led Defense platform, has partnered with Carahsoft Technology to make its solution available to U.S. federal, state, local, education, and healthcare markets.
- Carahsoft will act as the public‑sector distributor, leveraging its SEWP V, ITES‑SW2, NASPO ValuePoint, TIPS, and OMNIA Partners contracts to reach government buyers through its reseller network.
- The Threat‑Led Defense platform centers defensive security on real‑world adversary procedures (MITRE ATT&CK‑based), enabling organizations to prioritize risk, measure defense effectiveness, and align assets, vulnerabilities, and controls with actual attack execution.
- Recent enhancements include refined cyber‑threat‑intelligence separation, Threat‑Led Asset Visibility, and Vulnerability Prioritization capabilities that improve attribution and impact assessment across the kill chain.
- Leadership from both companies emphasizes the partnership’s role in delivering actionable insights, measurable outcomes, and stronger cyber resilience for public‑ and commercial‑sector customers.
Partnership Overview
Tidal Cyber and Carahsoft Technology announced a strategic alliance that positions Carahsoft as the exclusive public‑sector distributor for Tidal Cyber’s Threat‑Led Defense platform. Under the agreement, Carahsoft will make the solution accessible to federal, state, and local government agencies, as well as education and healthcare entities, through its extensive network of reseller partners and multiple government procurement vehicles. These include NASA’s Solutions for Enterprise‑Wide Procurement (SEWP) V contracts NNG15SC03B and NNG15SC27B, the Information Technology Enterprise Solutions – Software 2 (ITES‑SW2) contract W52P1J‑20‑D‑0042, the NASPO ValuePoint Master Agreement #AR2472, The Interlocal Purchasing System (TIPS) contract #220105, and the OMNIA Partners contract #R240303. By tapping these established contracts, Carahsoft can streamline purchasing processes and reduce acquisition timelines for public‑sector customers seeking advanced cybersecurity capabilities.
Cybersecurity Challenges Facing Organizations
Today’s threat landscape is characterized by increasingly sophisticated attacks that outpace traditional security measures. While organizations now collect vast amounts of asset, vulnerability, and threat data, security teams frequently lack the contextual understanding needed to see how adversaries actually execute attacks and where defensive interventions will yield the greatest impact. This gap leads to inefficient prioritization of mitigations, wasted resources on low‑risk issues, and residual risk that persists despite considerable investment. The core problem is not a shortage of data but a deficiency in translating that data into actionable, procedure‑level insight that mirrors real‑world attack behavior.
Threat‑Led Defense Platform: Core Concept
The Tidal Cyber Threat‑Led Defense platform addresses this shortfall by placing adversary execution at the heart of defensive security. Rather than treating threats, vulnerabilities, assets, and controls as isolated elements, the platform correlates them through the specific procedures attackers use to achieve their objectives—essentially mapping defenses to the real‑world steps documented in frameworks such as MITRE ATT&CK. This procedure‑led approach gives security teams a clear view of how attacks unfold, highlights where defenses are weakest, and enables prioritization based on the actual risk posed by adversary tactics, techniques, and procedures (TTPs). By aligning security investments with the mechanics of attacks, organizations can move from reactive, signature‑based defenses to proactive, risk‑driven strategies.
Operational Benefits and Capabilities
Operationalizing threat intelligence through the Threat‑Led Defense platform yields several concrete benefits. First, it allows organizations to prioritize cyber risk according to real‑world adversary execution, ensuring that limited resources focus on the most impactful threats. Second, it provides a measurable way to assess how well existing defenses can detect and disrupt actual attacks, facilitating continuous improvement and validation of security controls. Third, it enables alignment of threats, vulnerabilities, assets, and defenses around specific attacker procedures, thereby reducing residual risk. Together, these capabilities empower security teams to shift from a compliance‑oriented mindset to an outcomes‑focused posture that directly supports mission resilience.
Recent Innovations Enhancing Visibility
Tidal Cyber’s latest innovations further sharpen the platform’s utility. Enhanced cyber‑threat‑intelligence (CTI) separation distinguishes data originating from MITRE ATT&CK, Tidal Cyber’s proprietary sources, open‑source feeds, and partner intelligence, delivering clearer attribution and reducing noise. New Threat‑Led Asset Visibility tools map adversary usage of specific hardware, software, and cloud resources, helping defenders understand which assets are most likely to be targeted. Complementary Vulnerability Prioritization capabilities assess how particular weaknesses fit into adversary procedures, quantifying their potential impact on attack campaigns. When combined, these features enable organizations to operationalize procedure‑led intelligence across the entire kill chain—from reconnaissance to exfiltration—allowing timely detection, disruption, and mitigation of threats before they cause harm.
Procurement Vehicles and Access
Through Carahsoft’s distribution agreement, the Threat‑Led Defense platform is available under a suite of widely used government contracts. The SEWP V vehicles (NNG15SC03B and NNG15SC27B) provide a streamlined path for federal agencies to acquire the solution. The ITES‑SW2 contract (W52P1J‑20‑D‑0042) serves Department of Defense and other federal customers seeking software‑centric procurements. State and local governments can leverage the NASPO ValuePoint Master Agreement #AR2472, while the TIPS contract #220105 and OMNIA Partners contract #R240303 broaden access to education, healthcare, and municipal buyers. Interested parties can contact the Carahsoft team at (703) 871‑8548 or via email at [email protected] for pricing, deployment options, and further details. Additional information is also available on Tidal Cyber’s website.
Leadership Perspectives
Rick Gordon, CEO of Tidal Cyber, highlighted the strategic rationale behind the partnership, noting Carahsoft’s longstanding reputation as a trusted government IT solutions provider and its recent expansion into commercial markets. He emphasized that Threat‑Led Defense represents a new product category that organizes security around actual adversary procedures rather than abstract threat techniques, thereby delivering the context needed to disrupt attacks effectively. Steve Jacyna, Director of Innovative Cybersecurity Solutions at Carahsoft, echoed this sentiment, observing that government agencies increasingly demand cybersecurity tools that provide actionable insights, measurable outcomes, and a comprehensive view of risk. He affirmed that the partnership equips public‑sector organizations with the ability to prioritize resources, optimize defenses, and strengthen cyber resilience against evolving threats.
Conclusion
The collaboration between Tidal Cyber and Carahsoft Technology marks a significant step forward in making procedure‑led, threat‑centric cybersecurity accessible to the public sector. By embedding real‑world adversary execution into defensive planning, the Threat‑Led Defense platform helps agencies overcome the persistent challenge of translating voluminous security data into meaningful risk reduction. With a robust set of procurement vehicles, ongoing enhancements in intelligence granularity, and strong endorsement from both companies’ leadership, the solution is poised to help federal, state, local, education, and healthcare customers build more effective, resilient security programs in the face of an ever‑evolving threat landscape.

