Full Report
Software supply chain security company NetRise announced this week the launch of its Discovery Partner Program, a partner-first... The post NetRise launches Discovery Partner Program to strengthen software supply chain security delivery appeared first on Industrial Cyber.
Analysis Summary
# Industry News: NetRise Launches Discovery Partner Program
## Summary
Software supply chain security firm NetRise has announced the "Discovery Partner Program," a strategic initiative to transition the company toward a partner-first sales and delivery model. The program aims to scale the distribution of NetRise’s firmware and software analysis tools through a global ecosystem of VARs, MSSPs, and strategic consultants.
## Key Details
- **Date:** June 11, 2026
- **Companies Involved:** NetRise (Primary); Squadra Solutions, World Wide Technology (WWT), VulnCheck (Partners)
- **Category:** Partnership / Channel Program Launch
## The Story
NetRise is addressing a critical visibility gap in cybersecurity: the risk hidden within compiled code and firmware. To scale its reach, particularly within federal and highly regulated industrial sectors, the company has launched the Discovery Partner Program.
The program is structured around three pillars:
1. **Channel & Distribution:** Scaling through traditional resellers and managed service providers.
2. **Technology Alliances:** Integrating with complementary security vendors (such as VulnCheck) to provide enriched vulnerability context.
3. **Strategic Consulting:** Engaging federal partners and consultants to operationalize software supply chain security in complex environments.
The program features a two-tiered hierarchy—**Accelerator** and **Vanguard** partners—designed to reward technical proficiency and sales volume with advanced training and market advocacy resources.
## Business Impact
### For the Companies Involved
NetRise shifts from a direct-heavy sales motion to a scalable channel-first model. This allows the company to lean on the established credit cycles and service capabilities of giants like World Wide Technology (WWT).
### For Competitors
Competitors in the Software Composition Analysis (SCA) and SBOM (Software Bill of Materials) space will face increased pressure as NetRise secures "shelf space" within major global system integrators and consultancy firms.
### For Customers
End users gain access to "Product Security as a Service." Rather than just buying a license, customers can now consume NetRise's visibility through their existing trusted service providers who can handle the "heavy lifting" of remediation and patch management.
### For the Market
This signals a maturation of the Software Supply Chain Security market. It is moving from a niche "tooling" phase into a "managed services" phase, where visibility is integrated into broader risk management frameworks.
## Technical Implications
NetRise focuses on "compiled" software and firmware—areas often missed by standard source-code scanners. By partnering with VulnCheck, the platform combines internal component visibility (what is inside the code) with external threat intelligence (what is being actively exploited), significantly reducing the "noise" for security operations teams.
## Strategic Analysis
- **Market Positioning:** NetRise is positioning itself as the foundational layer for OT (Operational Technology) and IoT security, where compiled firmware is prevalent.
- **Competitive Advantage:** The "Discovery" aspect allows partners to offer high-margin specialized services like penetration testing and attack surface audits powered by NetRise data.
- **Challenges:** Partner-first models require significant internal headcount for partner enablement and can sometimes lead to inconsistent customer experiences if training is not strictly enforced.
## Industry Reactions
- **Squadra Solutions:** Noted the platform fills an "urgent gap" regarding risk in compiled software.
- **World Wide Technology (WWT):** Highlighted the ability to address "foundational security risks from the ground up" at the software and firmware layers.
- **VulnCheck:** Emphasized the "trust but verify" necessity in modern supply chains.
## Future Outlook
- **Predictions:** Expect an uptick in SBOM-related service offerings from large MSSPs targeting federal agencies.
- **What to watch for:** Potential technical integrations between NetRise and major OT security platforms (e.g., Claroty or Nozomi) to provide a unified asset and risk view.
## For Security Professionals
Practitioners should view this as an opportunity to outsource the high-toil task of software supply chain auditing. This program makes it easier for CISOs to request "Software Risk Audits" as part of their standard procurement process through third-party consultants.