Tidal Cyber names Carahsoft as US public sector distributor

Tidal Cyber has partnered with Carahsoft to distribute its Threat-Led Defense platform to US federal, state, local government, education and healthcare agencies.

Several rows of networking transceivers mounted in a silver server rack, predominantly connected by looped green and blue fiber optic cables, with orange, yellow, purple, and white fiber optic cables also running vertically across the front

Tidal Cyber has appointed Carahsoft Technology as its public sector distributor in the United States, giving government agencies and education and healthcare organisations access to its Threat-Led Defense platform through Carahsoft's reseller network and a suite of procurement contract vehicles including NASA SEWP V, ITES-SW2, NASPO ValuePoint, TIPS and OMNIA Partners.

The Washington-based vendor describes Threat-Led Defense as a distinct product category that organises security operations around adversary procedures: the specific, observable steps attackers take to execute a campaign, rather than higher-level threat technique taxonomies. The platform is built on top of the MITRE ATT&CK framework, which the company says it extends by operationalising procedure-level intelligence so that security teams can correlate threats, vulnerabilities and defensive controls in a single workflow.

What the platform does

The release highlights two recently shipped capabilities. Enhanced cyber threat intelligence separation allows organisations to distinguish between ATT&CK content, Tidal Cyber's proprietary intelligence, open-source feeds and third-party sources, improving attribution accuracy. A new Threat-Led Asset Visibility and Vulnerability Prioritisation module lets teams map specific assets and vulnerabilities to the adversary procedures most likely to target them, helping to rank remediation work by real-world attack impact rather than raw CVSS score.

Rick Gordon, chief executive of Tidal Cyber, said the partnership is intended to build market demand for the category as a whole. "Public and commercial sector organisations can now align security investments, prioritise risk and improve defensive effectiveness based on real-world attack execution," he said.

Steve Jacyna, director of innovative cybersecurity solutions at Carahsoft, noted that government agencies are "increasingly seeking cybersecurity solutions that deliver actionable insights, measurable outcomes and a more comprehensive understanding of risk."

Market and regulatory context

The US public sector cybersecurity market is both large and structurally complex. Contract vehicles such as SEWP V and ITES-SW2 are essential distribution mechanisms for vendors without existing agency relationships, making a Carahsoft partnership a meaningful route-to-market move rather than a purely symbolic one. Carahsoft holds similar master-aggregator relationships with dozens of security vendors, giving it negotiating and logistics leverage that smaller vendors cannot easily replicate independently.

Tidal Cyber is competing in a crowded threat-intelligence-and-prioritisation space alongside established platforms from Palo Alto Networks (Cortex XSIAM), Microsoft Sentinel, and a number of well-funded specialists such as Recorded Future and Mandiant (now part of Google Cloud). The procedure-level granularity argument is a genuine differentiator from traditional vulnerability management, but agencies will want evidence of integration with their existing SIEM and SOAR tooling before committing.

The regulatory tailwind is real. The Biden-era Cybersecurity Executive Order and its successor guidance have pushed federal agencies toward zero-trust architectures and threat-informed defence, a framing explicitly aligned with MITRE ATT&CK adoption. CISA's ongoing work on Shields Up and the broader move toward continuous threat-exposure management (CTEM) as a recognised practice create a receptive buying environment for a platform that can demonstrate measurable improvement in detection coverage against named adversary groups. No pricing or contract value was disclosed in the announcement.