Section 8.4 - Register entry
DOC-REF: FRC-MKT-FR2612836790
Wraithwatch Government
Wraithwatch Corporation lists Wraithwatch Government on the FedRAMP Marketplace with the status Agency Authorization In Process, at High impact, on the Agency path under the Rev5 process. Package FR2612836790, read from the marketplace feed as of September 3, 2026.
Section A. Register entry
What the marketplace records
- FedRAMP package ID
- FR2612836790
- Cloud service provider
- Wraithwatch Corporation
- Certification status
- Agency Authorization In Process
- Impact level
- High
- Certification class
- Class D (High)
- Authorization path
- Agency
- Certification type
- Rev5
- Marketplace phase
- Initial Implementation
- Deployment model
- Government Community Cloud
- Register snapshot
- September 3, 2026
- Service model
- SaaS
- Independent assessor
- Coalfire Systems, Inc.
- Status date
- April 9, 2026
- Business categories
- Cybersecurity & Risk Management, Data Management
- SAM.gov UEI
- W4QUHXU4S836
- Small business
- Flagged on the marketplace record
- Milestones on record
- 1
The marketplace carries Wraithwatch Government under package FR2612836790 with 17 recorded fields. Its current status was set on April 9, 2026. Coalfire Systems, Inc. is named as the independent assessor. No agency authorizations are listed against it in the current feed. It is delivered as SaaS on a government community cloud, filed under 2 business categories including Cybersecurity & Risk Management and Data Management. Its SAM.gov unique entity identifier is W4QUHXU4S836. Wraithwatch Corporation is flagged as a small business on the record.
Section B. Milestones
1 entry in the marketplace event log
Most recent first, as recorded by FedRAMP.
| Date | Category | Recorded |
|---|---|---|
| April 9, 2026 | Status Change | Status set to Agency Authorization In Process |
Section C. Cost context
What reaching High costs
Our own published ranges for a provider going through this level. Nothing here is a figure this provider has disclosed.
Cost context
Budget for a High authorization
Our published planning range for a provider pursuing High. It is not a figure any listed provider has disclosed.
Read the FedRAMP High cost guide / annual assessment cost / continuous monitoring cost
Path
Agency Authorization is the route for 578 of the offerings on the marketplace. Our cost pages put it at $800,000 to $2,000,000 over 12 to 18 months for Moderate. Agency authorization cost
Assessment and monitoring
No annual assessment date is on the record. Assessment recurs annually for as long as a package stays listed. Annual assessment cost / continuous monitoring cost
Section G. Nearest entries on the register
Comparable offerings
Scored on impact level, path, status, shared business categories and how close the two entries sit in the register's own timeline.
- Grok for Government
xAI
Agency Authorization In Process, High impact, Agency path, Rev5.
- Kiteworks Secure Gov Cloud
Kiteworks USA, LLC
Agency Authorization In Process, High impact, Agency path, Rev5.
- Canopy
Ripcord
Agency Authorization In Process, High impact, Agency path, Rev5.
- Critical Event Management - GovCloud
Everbridge
Agency Authorization In Process, High impact, Agency path, Rev5.
- Island Enterprise Platform
Island
Agency Authorization In Process, High impact, Agency path, Rev5.
Section H. Description
As published on the marketplace
The provider's own description of the service, reproduced from the FedRAMP feed without edits.
Wraithwatch is a Software-as-a-Service cybersecurity platform built on an intelligent security data fabric. The platform ingests data from across the customer's security and IT stack - endpoint detection and response, SIEM, identity providers, vulnerability scanners, cloud infrastructure, and more - through agentless, read-only API integrations. No agents are deployed on customer endpoints. Ingested data is normalized through deterministic entity resolution into a continuously updated entity graph that models every device, user, permission, vulnerability, configuration, and relationship in the environment. This unified data fabric eliminates tool-by-tool data silos and provides a persistent, queryable model of the customer's environment that powers all downstream platform capabilities. Continuous Governance, Risk, and Compliance: Wraithwatch replaces periodic, point-in-time compliance assessments with continuous GRC that recomputes every few minutes and immediately upon auto-detection of environmental changes. The platform mathematically computes every viable attack path based on current topology, configurations, permissions, and verified reachability. When the environment changes - a new CVE, a granted permission, a configuration drift - the platform recomputes risks including second-, third-, and fourth-order cascading effects. Compliance posture, risk exposure, and control effectiveness are maintained as living measurements against the entity graph rather than static snapshots. Agencies can execute neutralization plans directly from Wraithwatch or deploy compensating detections where paths cannot be eliminated. Threat Hunting: Autonomous reasoning workers explore SIEM indexes and security telemetry, identify anomalies and threat precursors, and surface findings with supporting evidence. Analysts issue natural language queries and the platform translates, hunts, pivots across data sources, and performs cross-index correlation at query runtime without requiring pre-mapped data schemas. Results convert into forward-looking detection rules. Threat Advisory Correlation: Wraithwatch continuously correlates incoming threat intelligence - including newly published CVEs, active exploitation advisories, novel attack techniques, supply chain compromise reporting, and other non-CVE threat disclosures - against the current state of the entity graph. When a new threat is published, the platform automatically evaluates the customer's environment and produces an "am I affected" assessment identifying specific impacted assets, exposure conditions, and recommended mitigations. This analysis incorporates the full environmental context - network reachability, compensating controls, privilege relationships, and configuration state - to determine actual exploitability, not just the presence of a vulnerable component. Control Plan Generation: Agency personnel describe a desired security outcome, and Wraithwatch evaluates every relevant setting across every integrated tool to generate a control plan. Plans are executable in full, one step at a time, or through phased rollouts with test groups. All actions are auditable with rollback support. All adversarial analysis runs against the digital twin. No live exploits touch production infrastructure. The platform operates in read-only mode by default; write-mode actions require explicit customer authorization and human confirmation. Wraithwatch supports cloud-hosted deployment on FedRAMP-authorized infrastructure and fully on-premise deployment for air-gapped and CUI environments.
Next step
What the same authorization would cost you
The worksheet turns an impact level, an existing security posture and an organization size into a line-by-line budget, with the 3PAO fee split out.
Provenance and independence
Source: the FedRAMP Marketplace product feed, produced by the General Services Administration. The feed's own last-change stamp is September 3, 2026; this copy was taken on September 5, 2026.
GSA's disclaimers page states that FedRAMP content about a specific commercial product or service is provided for the information and convenience of the public and “does not constitute endorsement, recommendation, or favoring by the General Services Administration”. A listing here is a record of a certification status, not a judgment about the product.
FedRAMPCost.com is an independent cost reference. We are not affiliated with FedRAMP, the GSA, any provider listed on this page, or any assessment organization, and no provider pays to appear in this register.