DOC-REF: FRC-2026-04-28Rev 04 / 2026

Section 8.4 - Register entry

DOC-REF: FRC-MKT-FR2213764335

RunCyberAssurance

Noblis lists RunCyberAssurance on the FedRAMP Marketplace with the status FedRAMP Certified, at Moderate impact, on the Agency path under the Rev5 process. Package FR2213764335, read from the marketplace feed as of September 3, 2026.

FedRAMP CertifiedRev5Agency path

Section A. Register entry

What the marketplace records

FedRAMP package ID
FR2213764335
Cloud service provider
Noblis
Certification status
FedRAMP Certified
Impact level
Moderate
Certification class
Class C (Moderate)
Authorization path
Agency
Certification type
Rev5
Marketplace phase
Ongoing Certification
Deployment model
Public Cloud
Register snapshot
September 3, 2026
Service model
PaaS, SaaS
Independent assessor
Lunarline, Inc.
Certification date
August 31, 2023
Status date
August 31, 2023
Annual assessment
September 28, 2011
Agency authorizations
1
Business categories
Analytics, Cybersecurity & Risk Management, Data Management, Operations Management, System Administration
Milestones on record
3

The marketplace carries RunCyberAssurance under package FR2213764335 with 18 recorded fields. Its certification date is August 31, 2023. Lunarline, Inc. is named as the independent assessor, with an annual assessment date of September 28, 2011. 1 agency is listed as having authorized it, among them Department of Energy. It is delivered as PaaS and SaaS on a public cloud, filed under 5 business categories including Analytics, Cybersecurity & Risk Management, Data Management and 2 more.

Section B. Milestones

3 entries in the marketplace event log

Most recent first, as recorded by FedRAMP.

Event log
DateCategoryRecorded
August 31, 2023Status ChangeStatus changed from Agency Review to FedRAMP Certified
October 5, 2022Status ChangeStatus changed from PMO Review to Agency Authorization In Process
September 28, 2022Status ChangeStatus set to FedRAMP In Process

Section C. Cost context

What reaching Moderate costs

Our own published ranges for a provider going through this level. Nothing here is a figure this provider has disclosed.

Cost context

Budget for a Moderate authorization

Initial authorization$800,000 to $2,000,000
Continuous monitoring$150,000 to $350,000 a year
Typical timeline12 to 18 months
Control baseline325+ controls
Annual assessment$90,000 to $260,000 a year

Our published planning range for a provider pursuing Moderate. It is not a figure any listed provider has disclosed.

Read the FedRAMP Moderate cost guide / annual assessment cost / continuous monitoring cost

Path

Agency Authorization is the route for 578 of the offerings on the marketplace. Our cost pages put it at $800,000 to $2,000,000 over 12 to 18 months for Moderate. Agency authorization cost

Assessment and monitoring

An annual assessment date of September 28, 2011 is on the record, and that assessment recurs for as long as the package stays listed. Annual assessment cost / continuous monitoring cost

Section E. Agencies on the record

1 agency listed against this package

As published on the marketplace. An agency named here has issued its own authorization to operate; FedRAMP does not issue ATOs itself.

  • Department of Energy

Section G. Nearest entries on the register

Comparable offerings

Scored on impact level, path, status, shared business categories and how close the two entries sit in the register's own timeline.

Section H. Description

As published on the marketplace

The provider's own description of the service, reproduced from the FedRAMP feed without edits.

Noblis' RunCyberAssurance® is a comprehensive, automated solution that advances the efficacy of Continuous Monitoring programs. The Noblis RunCyberAssurance solution enables agencies and their Cloud Service Providers to gain a fast, accurate view into their vulnerabilities, manage Plan of Action and Milestones (POA&Ms) and deviation requests and improve visibility into the security posture of complex information systems. RunCyberAssurance frees cybersecurity professionals from mundane manual tasks, allowing them to focus on high-value threat assessment activities. The solution accepts data feeds "as is" from over 40 industry standard vulnerability scanning tools and generates reports and outputs in FedRAMP and Open Security Controls Assessment Language (OSCAL) formats. Noblis' RunCyberAssurance is powered by our EDGE@AWS Platform-as-a-Service (PaaS) and leverages the Community AWS GovGloud Infrastructure-as-a-Service. In addition, it leverages AWS US East/West, Okta ID-as-a-Service and ServiceNow. The Noblis EDGE@AWS PaaS provides a FedRAMP Moderate compliant platform for Noblis applications and systems.

Next step

What the same authorization would cost you

The worksheet turns an impact level, an existing security posture and an organization size into a line-by-line budget, with the 3PAO fee split out.

Provenance and independence

Source: the FedRAMP Marketplace product feed, produced by the General Services Administration. The feed's own last-change stamp is September 3, 2026; this copy was taken on September 5, 2026.

GSA's disclaimers page states that FedRAMP content about a specific commercial product or service is provided for the information and convenience of the public and “does not constitute endorsement, recommendation, or favoring by the General Services Administration”. A listing here is a record of a certification status, not a judgment about the product.

FedRAMPCost.com is an independent cost reference. We are not affiliated with FedRAMP, the GSA, any provider listed on this page, or any assessment organization, and no provider pays to appear in this register.

DOC-REF: FRC-2026-04-28 / Updated 2026-04-28