Security Advisory Partnerships
The Chertoff Group engages in security advisory partnerships with a select group of trusted, best-in-class partners to offer technical services that complement our core offerings.






Exiger
Through our security advisory partnership with Exiger, a leading SaaS company transforming supply chain management, we aim to help federal contractors across the defense industrial base and critical infrastructure illuminate, mitigate, and monitor the risk of Foreign Ownership, Control, or Influence (FOCI) in their supply chains.
The Chertoff Group and Exiger will offer a combined suite of solutions and services. Exiger brings supply chain mapping technologies, strategic FOCI risk analysis and C-SCRM and SBOM tools. The Chertoff Group provides expert-led regulatory support, national security market expertise, compliance guidance and CFIUS assessments. The offering will target markets with the greatest FOCI risk, including mission critical technologies, companies selling to the U.S. Federal Government, critical minerals and materials, and industries with the greatest exposure to sanctions and the Xinjiang region.
Tidal Cyber
The Chertoff Group and Tidal Cyber deliver threat-informed defense as a managed service to help enterprise security organizations keep pace more effectively with rapidly evolving cyber threats. This helps organization: Understand which tactics, techniques and procedures (TTPs) matter most as adversary behaviors evolve; Rapidly assess whether existing security products and capabilities adequately cover those evolving TTPs; and Identify solutions that can rapidly address critical coverage gaps as they emerge.
Aedify
Through our security advisory partnership with Aedify LLC, a leading expert in application security, DevSecOps, and threat modeling, we help organizations build security into their software development lifecycle and modernize their approach to cyber risk. Aedify specializes in enabling enterprises to design resilient architectures, integrate security seamlessly into DevOps pipelines, and operationalize threat modeling at scale. We also help customers reckon with the pace of AI change securely—defending against AI-enabled attackers while harnessing AI to scale their cyber defenses.
The Chertoff Group and Aedify offer a combined suite of solutions and services. Aedify brings deep expertise in secure software design, cloud-native security, and advanced DevSecOps practices, along with proven methodologies for threat modeling and risk-based security assurance. The Chertoff Group complements this with regulatory guidance, national security market expertise, and strategic advisory services. Together, we target organizations delivering mission-critical software, federal contractors, and enterprises seeking to elevate their security posture to meet evolving compliance and resilience requirements.
High Value Target
Our security advisory partnership with High Value Target delivers cyber resilience managed services, helping organizations better anticipate, withstand, and recover from cyber threats. Through these security advisory partnerships, we identify high-value assets and develop plans to address gaps in resiliency, ensuring leaders can be confident in their organization’s ability to recover from disruptive cyber-attacks.
Dragos
The unique architectures and protocols of Industrial Control System (ICS) networks and the developing state of ICS cybersecurity pose new challenges for many asset owners, confronting them with an unclear threat landscape and a shortage of ICS/Operational Technology (OT) security expertise. Our security advisory partnership with Dragos includes industrial security practitioners from the U.S. government cyber teams and around the private sector who provide boots-on-the-ground experience to industrial responders to help them effectively prepare for, contain and remediate potential ICS compromises.
AttackIQ
Automated validation tools are now available that can run threat tactic-specific diagnostics on an organization’s technology stack. For The Chertoff Group Cyber Risk Diagnostic tool, we work with AttackIQ, a security advisory partnership, using its automated “controls assurance” testing platform, which contains a vast library of mini-testing scripts aligned to a comprehensive knowledge-based of threat actor tactics, techniques and procedures developed by leading U.S. research and development organization MITRE (the MITRE ATT&CKTM framework).