cybersecuritycompanies.

Categories · Certification

FedRAMP

Companies that list a FedRAMP authorization. As listed — we do not audit the package.

13 companies. Refine by location, capabilities, or team size to find the right fit.

Refine your search

Features

Cloud security

Endpoint security

Identity

Security operations

Email & messaging

Network security

Data protection

Threat & vulnerability

Cyber-physical

Team size

Vendor type

Company attestations

Practitioner credentials

13 companiesRecently added

Okta

Product vendor

Workforce and customer identity for SSO, MFA, and lifecycle.

San Francisco, US· 1000+ people
FAQ
What does FedRAMP mean on this index?

Companies that list FedRAMP. Company attestations (ISO 27001, SOC 2) are held by the firm. Practitioner credentials (OSCP, GPEN) are held by people on staff. We do not audit certificates or invigilate exams.

Is the order paid?

No. Organic order is recency. Promoted shelves are labeled and separate. That is the opposite of buying a rank.

How do I get listed under FedRAMP?

Submit a company and tick the certifications you actually hold. We review before anything is public. Paid plans buy a labeled shelf, not a silent bump in this list.

Why is a staff exam on a company directory?

Buyers shortlist pentest and training firms by who sits on the engagement. OSCP and GPEN are company filters here, not a people directory.