About Tenable
About Us
Our Company
Tenable Network Security is a privately held company founded in 2002 by security product innovators Ron Gula, Renaud Deraison and Jack Huffard. Together with Tenable CSO, Marcus Ranum, they have developed a Unified Security Monitoring approach based on the award winning Nessus scanner for securing enterprise networks world-wide.
Our Mission
Modern enterprises face a plethora of technical, political and business hurdles that make accurate security and compliance monitoring difficult and costly. Tenable's mission is to provide an enterprise-class monitoring platform to enable organizations to monitor security threats while simultaneously monitoring compliance with internal policies and external regulations.
Our Technology
Tenable is the source of the Nessus vulnerability scanner. Nessus is the most widely distributed and utilized vulnerability scanner in the world. Nessus is available to the general public as a free download and Tenable provides updates for the research content/vulnerability checks via a home use (HomeFeed™ - free) and commercial use (ProfessionalFeed™ - fee) subscription model.
Tenable's Unified Security Monitoring solution consists of four fully integrated software applications: Tenable SecurityCenter, Nessus, Passive Vulnerability Scanner and Log Correlation Engine.
Tenable has pioneered and continues to innovate a unique Unified Security Monitoring approach that is revolutionizing the way enterprises are monitoring (i.e., gathering, evaluating, communicating and reporting) security and compliance information.
Tenable's award-winning products are agentless enterprise-class solutions and designed for the continuous monitoring of vulnerabilities, configurations, data leakage, log management and compromise detection and are used by thousands of organizations both large and small around the world.
Our Management Team and Technical Expertise
Tenable is led by a seasoned and stable management team that has brought multiple successful security software products to market over the last 20 years. An important strength of Tenable is the depth of security talent under one roof. Tenable's technical leaders have all created market-leading and award-winning products individually. Tenable's Unified Security Monitoring approach is their combined vision on how to monitor and secure enterprise networks.
- Ron Gula, Tenable's CEO and CTO, created the "Dragon IDS",
- Jack Huffard, Tenable's President and COO, former Director of Corporate Development at Enterasys Networks,
- Renaud Deraison, Tenable's CRO, created "Nessus" and continues to improve its design and capabilities, and
- Marcus J. Ranum, Tenable's CSO, an early innovator in firewall, VPN and intrusion detection systems.
Our Certifications and Compliance Monitoring Capabilities
In 2010, Tenable received Common Criteria certification for Tenable's Security Center version 3.2 and components for meeting the security requirements defined by the Common Criteria for Information Technology Security Evaluation. Tenable SecurityCenter 4 is currently in the evaluation phase for Common Criteria certification.
The Common Criteria is an internationally recognized ISO standard (ISO/IEC15408) used by governments and other organizations to assess the security and assurance of technology products. Common Criteria provides assurance that the process of specification, implementation and evaluation of a computer security product has been conducted in a rigorous and standard manner. In the United States, federal agencies mandate that all IT products purchased by the U.S. Government for national security systems, which handle classified and some non-classified information, are required to be Common Criteria certified. Security-conscious customers such as government agencies utilize Common Criteria certification as a determining factor when making purchasing decisions.
Tenable has received numerous certifications by the Center for Internet Security (CIS) for Tenable's SecurityCenter and Nessus vulnerability scanner, most recently becoming CIS certified for Nessus Windows Server 2008 configuration audits. Named “best benchmarking effort” by Information Security Magazine, CIS benchmarks are developed by global consensus among hundreds of security professionals as recommendations for minimum due care and preferred practice security configurations. Benchmarks are based on recommendations from the SANS Institute, the National Security Agency (NSA), the National Institute of Standards and Technology (NIST), the U.S. Defense Information Systems Agency (DISA), Information Systems Audit and Control Association’s COBIT.
Tenable's SecurityCenter 4 Management Suite was recently validated by NIST to perform Security Content Automation (SCAP) FDCC compliance audits for both Windows XP and Vista. Tenable SecurityCenter was one of the original solutions to receive FDCC certification. In July of 2007, the U.S. Office of Management and Budget (OMB) released a memorandum to Federal CIOs, mandating that all government agencies implement FDCC for all Windows XP and Vista desktops. In addition, all government agencies must use, when available, a NIST SCAP validated tool to audit and monitor compliance with the FDCC mandate.
Compliance Monitoring Capabilities
Tenable understands that the demands for compliance monitoring are increasing. Our suite of automated solutions support the following established compliance guidelines, in addition to being configurable to support your own custom compliance needs.
Payment Card Industry (PCI) | |
| Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIG) | |
| SANS Consensus Audit Guidelines (CAG) | |
| Control Objectives for Information and related Technology (COBIT) | |
| Health Insurance Portability and Accountability Act (HIPAA) | |
| IT Infrastructure Library (ITIL) | |
| North American Electric Reliability Corporation (NERC) |
Our Customers
Tenable's customers are primarily medium and large commercial and government enterprises from around the globe.
Our Awards
Since 2002, Tenable has received many awards for its products. In addition, our technical experts have been awarded individual awards for their accomplishments.
SC Magazine named Tenable's management team members and Nessus some of the most influential over the last 20 years. Ron Gula was named Market Entrepreneur of the last 20 years and Marcus Ranum was named Industry Pioneer of the last 20 years. Finally, Nessus was selected as one of the products that have had the most significant impact over the last 20 years.
Our Financial Stability
![]()
Tenable was founded in September of 2002 and is privately held. Tenable was added to the Deloitte Technology Fast 500 in 2009 and 2010 and ranked one of the fastest growing technology, media, telecommunications, life sciences and clean technology companies in North America and ranked number 25 in the Fast 500 for the U.S. Mid-Atlantic Region. Tenable continues to grow at a rapid pace and is cashflow positive and profitable.

Tenable Network Security was recognized by Inc. Magazine in the 2010 Inc. 5000 as one of the top 1500 companies in the United States, and one of the top 35 companies in the Security industry.
Our Corporate Social Responsibility and Contributions
In 2008, Tenable released two global programs that were focused on supporting charitable organizations and information security training organizations. Two years after releasing these programs, we are excited to report that over 200 charitable organizations and countless educational and training organizations world-wide are participating and benefiting from these programs. The value of the services that Tenable has provided to these efforts is approaching two million dollars.
Our Offices
Tenable's Headquarters is located in Columbia, Maryland. Tenable has sales offices around the United States to grow and support both our commercial and government customer base. In addition, Tenable has established offices in the United Kingdom to grow and support our international customer base.