Section 8.4 - Register entry
DOC-REF: FRC-MKT-FR2629158373
Halcyon
Halcyon Tech, Inc. lists Halcyon on the FedRAMP Marketplace with the status Legacy FedRAMP Ready, at Moderate impact, on the Agency path under the Rev5 process. Package FR2629158373, read from the marketplace feed as of September 3, 2026.
Section A. Register entry
What the marketplace records
- FedRAMP package ID
- FR2629158373
- Cloud service provider
- Halcyon Tech, Inc.
- Certification status
- Legacy FedRAMP Ready
- Impact level
- Moderate
- Certification class
- Class C (Moderate)
- Authorization path
- Agency
- Certification type
- Rev5
- Marketplace phase
- Legacy FedRAMP Ready
- Deployment model
- Government Community Cloud
- Register snapshot
- September 3, 2026
- Independent assessor
- Securisea, Inc.
- Status date
- July 31, 2026
- FedRAMP Ready date
- July 29, 2026
- Business categories
- Cybersecurity & Risk Management
- SAM.gov UEI
- PK9FZJ44PN21
- Small business
- Flagged on the marketplace record
- Milestones on record
- 1
The marketplace carries Halcyon under package FR2629158373 with 17 recorded fields. Its current status was set on July 31, 2026, and a FedRAMP Ready date of July 29, 2026. Securisea, Inc. is named as the independent assessor. No agency authorizations are listed against it in the current feed. The feed lists no service model for it, on a government community cloud. Its SAM.gov unique entity identifier is PK9FZJ44PN21. Halcyon Tech, Inc. is flagged as a small business on the record.
Section B. Milestones
1 entry in the marketplace event log
Most recent first, as recorded by FedRAMP.
| Date | Category | Recorded |
|---|---|---|
| July 31, 2026 | Status Change | Status set to Legacy FedRAMP Ready |
Section C. Cost context
What reaching Moderate costs
Our own published ranges for a provider going through this level. Nothing here is a figure this provider has disclosed.
Cost context
Budget for a Moderate authorization
Our published planning range for a provider pursuing Moderate. It is not a figure any listed provider has disclosed.
Read the FedRAMP Moderate cost guide / annual assessment cost / continuous monitoring cost
Path
Agency Authorization is the route for 578 of the offerings on the marketplace. Our cost pages put it at $800,000 to $2,000,000 over 12 to 18 months for Moderate. Agency authorization cost
Assessment and monitoring
No annual assessment date is on the record. Assessment recurs annually for as long as a package stays listed. Annual assessment cost / continuous monitoring cost
Section G. Nearest entries on the register
Comparable offerings
Scored on impact level, path, status, shared business categories and how close the two entries sit in the register's own timeline.
- Siteimprove Federal Platform
Siteimprove Inc
Legacy FedRAMP Ready, Moderate impact, Agency path, Rev5.
- Commvault Clumio Data Protection Platform
Commvault Systems, Inc.
Legacy FedRAMP Ready, Moderate impact, Agency path, Rev5.
- Stell Requirements Management System
Stell Engineering
Legacy FedRAMP Ready, Moderate impact, Agency path, Rev5.
- SentiLink
SentiLink Corp
Legacy FedRAMP Ready, Moderate impact, Agency path, Rev5.
- CMMC Space
ATX Defense
Legacy FedRAMP Ready, Moderate impact, Agency path, Rev5.
Section H. Description
As published on the marketplace
The provider's own description of the service, reproduced from the FedRAMP feed without edits.
Halcyon's Anti-Ransomware Platform is an agent-based Software as a Service (SaaS) deployment that provides multiple layers of protection against ransomware attacks while complementing existing Endpoint Detection and Response (EDR) and Extended Detection and Response (XDR) solutions. The platform leverages machine learning (ML) models trained specifically to identify and disrupt ransomware activity. The solution consists of a lightweight endpoint agent that combines multiple proprietary prevention engines with ML models designed exclusively to detect ransomware throughout the attack lifecycle. The SaaS platform provides centralized policy management, security event visibility, reporting, administrative functions, and APIs, and is designed to integrate with existing security technologies and operational workflows. Halcyon incorporates a capsule network-based machine learning architecture with the following characteristics: Collaborative decision-making in which individual ML models communicate with one another and provide weighted decisions to improve detection accuracy. The ability to learn and make highly accurate detection decisions using less training data than traditional convolutional neural network approaches. Telemetry collected from protected endpoints is analyzed through multiple detection engines to evaluate process behavior over time, enabling the identification of suspicious or malicious ransomware activity. The platform supports automated response actions, including endpoint isolation, to contain ransomware activity and captures ransomware encryption key material, when available, to support recovery of encrypted data. Halcyon Data Exfiltration Protection (DXP) The Halcyon Data Exfiltration Protection (DXP) module extends the Anti-Ransomware Platform by detecting ransomware-related data exfiltration activity associated with double-extortion attacks. DXP analyzes network communications and process behavior to identify suspicious data movement that may indicate active ransomware operations. DXP Capabilities: -Detects ransomware-related data exfiltration activity before sensitive information is transmitted outside the environment. -Supports detection and disruption of ransomware-related data theft associated with extortion campaigns. -Provides early indication of active threat actor activity to support investigation and containment. -Analyzes process behavior to improve detection accuracy while reducing false positives. -Integrates with supported EDR and XDR platforms to enhance response and investigation workflows. Ransomware Operations Center (ROC) As part of the Halcyon Anti-Ransomware Platform, the Ransomware Operations Center (ROC) provides continuous monitoring and operational support for ransomware-related activity. The ROC reviews platform-generated detections, validates ransomware events, supports investigation, containment, recovery, and response coordination with authorized customer personnel. The ROC leverages telemetry generated by the Halcyon platform to support ransomware monitoring, response, and recovery operations on a 24x7x365 basis.
Next step
What the same authorization would cost you
The worksheet turns an impact level, an existing security posture and an organization size into a line-by-line budget, with the 3PAO fee split out.
Provenance and independence
Source: the FedRAMP Marketplace product feed, produced by the General Services Administration. The feed's own last-change stamp is September 3, 2026; this copy was taken on September 5, 2026.
GSA's disclaimers page states that FedRAMP content about a specific commercial product or service is provided for the information and convenience of the public and “does not constitute endorsement, recommendation, or favoring by the General Services Administration”. A listing here is a record of a certification status, not a judgment about the product.
FedRAMPCost.com is an independent cost reference. We are not affiliated with FedRAMP, the GSA, any provider listed on this page, or any assessment organization, and no provider pays to appear in this register.