Skip to content
The ATC
Ctrl K
Ctrl K
Log in
What we do
Our capabilities
AI & DataAutomationCloudConsulting & EngineeringData CenterDigitalImplementation ServicesIT Spend OptimizationLab HostingMobilityNetworkingSecurityStrategic ResourcingSupply Chain & Integration
Industries
EnergyFinancial ServicesGlobal Service ProviderHealthcareLife SciencesManufacturingMedia & GamingPublic SectorRetailSports & EntertainmentUtilities
Learn from us
Hands on
AI Proving GroundCyber RangeLabs & Learning
Insights
ArticlesBlogCase StudiesPodcastsResearchWWT Presents
Come together
CommunitiesEvents
Who we are
Our organization
About UsOur LeadershipSponsorshipsLocationsSustainabilityNewsroom
Join the team
All CareersCareers in AmericaAsia Pacific CareersEMEA CareersInternship Program
Our partners
Strategic partners
CiscoDell TechnologiesHewlett Packard EnterpriseNetAppF5IntelNVIDIAMicrosoftPalo Alto NetworksAWSGoogle CloudVMware
What we do
Our capabilities
AI & DataAutomationCloudConsulting & EngineeringData CenterDigitalImplementation ServicesIT Spend OptimizationLab HostingMobilityNetworkingSecurityStrategic ResourcingSupply Chain & Integration
Industries
EnergyFinancial ServicesGlobal Service ProviderHealthcareLife SciencesManufacturingMedia & GamingPublic SectorRetailSports & EntertainmentUtilities
Learn from us
Hands on
AI Proving GroundCyber RangeLabs & Learning
Insights
ArticlesBlogCase StudiesPodcastsResearchWWT Presents
Come together
CommunitiesEvents
Who we are
Our organization
About UsOur LeadershipSponsorshipsLocationsSustainabilityNewsroom
Join the team
All CareersCareers in AmericaAsia Pacific CareersEMEA CareersInternship Program
Our partners
Strategic partners
CiscoDell TechnologiesHewlett Packard EnterpriseNetAppF5IntelNVIDIAMicrosoftPalo Alto NetworksAWSGoogle CloudVMware
The ATC
Overview
Explore
Enablement

Select a tab

What's New

  • 5 August 2026 | General Motors closed won through WWT — $1.9845M three-year TCV and $661.5K ARR for Chainguard Libraries and Containers; GM is standardizing on Chainguard as part of an AI-readiness initiative. 
  • 31 July 2026 | AbbVie closed won through WWT — $135K three-year TCV and $45K ARR for Chainguard Containers, including FIPS images supporting an AI Factory and regulated manufacturing workloads. 
  • 10 September 2026 | WWT co-sell account brief created. Alignment on specific Cosell accounts such as Bank of America, Verizon, Royal Bank of Canada, Chubb Ins, T-Mobile and many initial intro calls continuing to partner on.

Technology Overview

Chainguard secures the software supply chain by providing trusted, secure-by-default open-source artifacts that organizations can use across build, test, deploy, and runtime workflows. Its portfolio spans minimal container images, language libraries, governed repository capabilities, hardened GitHub Actions, and hardened AI agent skills. The core enterprise problem is the gap between rapidly increasing software and AI-assisted development velocity and the ability of security teams to verify, patch, and govern every dependency entering production.

Chainguard differentiates from point tools that primarily scan and report after risk enters the environment. Chainguard builds from upstream source, applies hardening, evaluates vulnerabilities and malicious behavior, provides provenance and hardening reports, and delivers maintained artifacts designed to reduce developer disruption. The platform integrates with existing registries, CI/CD systems, scanners, and developer tools rather than requiring a wholesale replacement of the customer stack. 

WWT should lead with Chainguard when a customer needs a secure software foundation, measurable reduction in vulnerability remediation toil, or a practical path to secure AI-native engineering. WWT brings enterprise relationships, cybersecurity and cloud practices, the Advanced Technology Center (ATC), and services capacity for assessment, migration, integration, and managed operations. The motion aligns especially well to WWT's AI-Native Engineering strategy and cloud modernization work

Chainguard uses AI in its internal Factory and agentic engineering processes to monitor upstream changes, identify hardening opportunities, and maintain catalog scale. The model types relevant to the GTM story are Generative AI/LLM-assisted automation plus machine-learning and agentic workflows; customer-facing outputs remain governed, signed, tested artifacts. This allows WWT to position Chainguard as a control layer beneath AI-assisted development, not merely as another scanner.

Message Overview

WWT and Chainguard combine a secure-by-default software supply-chain platform with WWT's enterprise account reach, cybersecurity expertise, AI-Native Engineering motion, cloud practices, and ATC validation capability. Chainguard provides the product wedge into application, platform, security, and AI-readiness conversations; WWT expands the motion into architecture, migration, implementation, governance, and managed services. The near-term objective is to convert current wins and active account signals into a repeatable WWT-led co-sell motion, with priority on account mapping, technical enablement, ATC validation, and services pull-through.

Current internal enablement materials cite an average deal size of $250K–$300K, a 15%–25% margin profile, 15% for co-sell/ influenced opportunities, 25% for WWT-sourced opportunities, and 90-day deal-registration validity. Sellers should register early because registration protects the opportunity, establishes the commercial motion, and creates a clear path for Chainguard technical and executive support. Commercial figures and current registration terms require channel-team confirmation before publication.

NameTitle / RoleEmail
Naasief EdrossDeputy CTOnaasief.edross@wwt.com
Matt RoseAppSec Directormatt.rose@wwt.com
Mark BehanFinServ Directormark.behan@wwt.com
Trevor RitzWWT Security Sales Specialisttrevor.ritz@wwt.com
Keith SwallowWWT Security Sales Specialistkeith.swallow@wwt.com
Global Partner Support TeamGlobal Partner AllianceGlobal_Partner_Support@wwt.com 
NameTitle / RoleEmail
Jordy MorrisSenior Partner Manager, Chainguard / WWT relationship ownerjordy.morris@chainguard.dev
Josh TreichelDirector Channel - Americasjosh.treichel@chainguard.dev
Taylor BrownSenior Partner Sales Engineer, Chainguardtaylor.brown@chainguard.dev
David HenryDirector of Product Marketing, Platform, Chainguarddavid.henry@chainguard.dev
Ross GordonStaff Product Marketing Manager, Chainguardross.gordon@chainguard.dev
Jenny BurnsSenior Product Marketingjenny.burns@chainguard.dev
  • Chainguard Quick Partner Playbook
  • WWT | Chainguard Partnership Deck

 

Partnership level/name: Platinum Partner in Chainguard FY27 Partner Program. Will not change for FY28 since inception of program was announced in June 2026. Will provide guide upon request

Current internal WWT enablement guidance lists a 15%–25% margin profile: 15% for co-sell/influenced WWT opportunities and 25% for WWT-sourced opportunities. These are internal pitch-deck figures and require confirmation by the Chainguard channel team before external publication. Historical GM% average and high were not present in the retrieved financial records. 

Deal registration process 

  1. Identify the customer, use case, product scope, expected timing, and WWT role; engage the Chainguard partner manager early. 
  2. Submit the opportunity through the Chainguard deal-registration page: https://www.chainguard.dev/partners/deal-registration. 
  3. Coordinate the first customer meeting with Chainguard; current internal guidance says registration is approved upon meeting setup. 
  4. Record the registration in the WWT/Chainguard opportunity record and align on account ownership, technical resources, and next steps. 
  5. Use the approved registration to progress pricing, quote, order-form, and any WWT/Chainguard contracting requirements. 
  6. Track the 90-day registration validity and renew or re-register when the opportunity remains active beyond the stated period. 

Registration types: Resale is confirmed by closed-won Salesforce records. Current MSP, Referral, and Incumbent registration rules were not identified in the retrieved materials and require channel-team confirmation. Portal login instructions and incumbent protection language also require confirmation from the partner channel team. No separate approval SLA in hours was found; the current internal wording is "approved upon meeting setup."

* Wiz OS — position Chainguard as a preventative, secure-by-default artifact source that reduces exposure before deployment, complementing rather than replacing runtime and posture controls. 

* Docker Hardened Images — position Chainguard around breadth across containers, libraries, Actions, and the wider SDLC, with source-built artifacts, hardening reports, and maintained provenance. 

* Sonatype Firewall — position Chainguard as a remediation-and-delivery model for trusted artifacts, not only a policy gate for package ingress. 

* JFrog Curation — position Chainguard as a maintained source of hardened upstream artifacts that can integrate with JFrog while reducing reliance on unverified public registries. 

* Socket — position Chainguard around prevention and replacement with hardened artifacts, while acknowledging Socket's strength in package and malware-risk analysis.

* Minimus / RapidFort — position Chainguard on catalog breadth, source build, continuous hardening, provenance, and coverage across the full software supply chain.

  • AWS, Microsoft Azure, and Google Cloud — Chainguard secures the container, library, and build artifacts deployed in WWT cloud modernization and AI-platform programs. 
  • NVIDIA — WWT's AI-readiness and operational-resilience work creates an entry point for secure AI infrastructure and dependency supply chains. 
  • GitHub, Jenkins, CloudBees, Harness, and CircleCI — WWT account signals show these CI/CD technologies; Chainguard Actions and secure artifacts fit directly into existing pipelines. 
  • JFrog Artifactory — use as an integration and migration path while positioning Chainguard as the trusted source behind the registry workflow. 
  • Red Hat and Kubernetes ecosystems — align Chainguard Containers and platform hardening with WWT cloud-native architecture, OpenShift, and Kubernetes modernization. 

Business benefit: Chainguard gives WWT a differentiated product wedge into software supply-chain, AI-readiness, compliance, and developer-velocity budgets. The sale naturally creates WWT services opportunities for discovery, architecture, migration, secure pipeline integration, change management, and managed remediation. The GM and AbbVie wins demonstrate that WWT can transact enterprise Chainguard subscriptions and attach the motion to strategic AI and compliance initiatives. 

Technical benefit: WWT can use the ATC and its cybersecurity, cloud, platform, and AI practices to validate Chainguard in realistic customer environments. The strongest motion is not "replace every security tool"; it is "establish a trusted artifact foundation beneath the customer's existing stack," then connect it to CI/CD, registries, scanners, policy, and AI-native engineering workflows.

AI-Native Engineering (AINE) fit: Chainguard provides guardrails for the dependencies and artifacts consumed by AI-assisted development. WWT can make the partner relevant to AI platform, application engineering, security, and governance stakeholders simultaneously, using the ATC to turn the message into a measurable proof of value.

GES Key Focus AreaHow Chainguard Aligns
Customer ExperienceReduce security-driven release friction and provide faster, more predictable remediation for customer-facing applications.
Workforce ExperienceGive developers trusted drop-in artifacts and reduce disruptive scan-and-chase remediation work.
Connected WorkforceSecure the distributed tools, runners, repositories, and dependencies used by globally distributed engineering teams.
Cloud PlatformsProvide hardened containers, libraries, and CI/CD artifacts for AWS, Azure, GCP, Kubernetes, and cloud-native platforms.
Data StrategySupport provenance, SBOM, policy, and evidence requirements for data platforms and AI factories.
Automate EverythingAutomate hardening, re-review, version maintenance, migration, and policy enforcement across the SDLC.
Cyber SecurityPrevent malware, known vulnerabilities, dependency confusion, and CI/CD supply-chain attacks at the artifact layer.
  • General Motors Company — $1.9845M TCV / $661.5K ARR, closed 5 August 2026 — Chainguard Libraries and Containers sold through WWT on a 36-month term. GM is standardizing on Chainguard as part of an AI-readiness initiative; the Salesforce record identifies Wiz OS as a competitor and the customer's need to support hundreds of teams with careful workflow change management.
  • AbbVie — $135K TCV / $45K ARR, closed 31 July 2026 — Chainguard Containers sold through WWT on a 36-month term. AbbVie's AI Factory for data scientists required a secure-by-default cloud-native foundation and FIPS images for FDA and other federal requirements; the opportunity moved directly toward production implementation.
  • Gartner recognition (2026) — current WWT/Chainguard messaging cites Chainguard as a Leader in the Software Supply Chain Security category; verify the approved external wording and citation before publishing. 
  • Forrester Total Economic Impact resource (2026) — the current WWT x Chainguard deck links to a Forrester TEI resource for Chainguard Containers; verify approved usage rights and final citation before publishing. 
  • Morgan Stanley's Innovative Technology Partner of the Year Award - 2026
  • Manufacturing and automotive — GM demonstrates a large-scale standardization motion tied to AI readiness, application security, and hundreds of engineering teams. Lead with secure-by-default containers and libraries, enterprise rollout, and developer-change management. 
  • Healthcare and life sciences — AbbVie demonstrates FIPS and regulated AI Factory requirements; BJC HealthCare is a named co-prospect with Azure clinical workloads under HIPAA and HITRUST. Lead with documented vulnerability management, FIPS, provenance, and workload hardening. 
  • Financial services — WWT's security practice and ATC are well suited to banks and insurers that need controlled validation, evidence, and low-disruption remediation. Lead with supply-chain resilience, secure build pipelines, SBOM/provenance, and integration with existing SCA and registry tools. 8 out of 8 GSIBS in the US signed contracts with us from May-Aug. 
  • Utilities, energy, and industrial OT — This is the next sector that will be heavy focus for Chainguard. NextEra first company to sign and int talks with Oil/Gas that we would like to align WWT's solid focus to. 
  • Public sector and regulated government — WWT's public-sector reach and FedRAMP/FISMA/CMMC/HIPAA/StateRAMP readiness services create a route into compliance-driven artifact security. Lead with FIPS images, provenance, SBOM evidence, and hardened CI/CD for controlled environments.

WWT-Led Services

  • Software Supply-Chain Assessment — inventory containers, libraries, Actions, registries, scanners, and build paths; quantify risk, toil, and remediation opportunity. 
  • Secure Artifact and Image Migration — create a phased migration plan from public registries, legacy bases, and ungoverned dependencies to Chainguard trusted artifacts. 
  • CI/CD and Developer-Platform Integration — integrate Chainguard with GitHub, Jenkins, CloudBees, Harness, CircleCI, Artifactory, Kubernetes, and cloud platforms. WWT Partner Enablement Page | Chainguard 
  • AI-Native Engineering Readiness Workshop — map AI-assisted development and agent workflows to trusted dependencies, policy, provenance, and governance controls. 
  • Managed Remediation and Governance — operate recurring artifact review, policy, exception, evidence, and remediation processes across decentralized business units.

Partner-Led or Co-Delivered Services 

  • Chainguard Jumpstart and onboarding — current closed-won records include 12-week and 48-week implementation packages; attach WWT architecture, migration, and adoption services. 
  • Chainguard-led POV and technical validation — use Chainguard partner sales engineering with WWT ATC and customer platform teams to prove value in a representative environment. 
  • Product support and remediation alignment — use Chainguard's published critical-vulnerability and Kubernetes response commitments as inputs to the customer's operating model; verify current SLA language before publication

Organization Size 

  • Enterprise organizations with 1,000+ employees, multiple engineering groups, and material cloud-native or AI-platform investment. 
  • Large or upper-midmarket customers with enough software volume that vulnerabilities, dependency review, and remediation consume meaningful engineering time. 
  • IT maturity: established security, platform engineering, DevOps, application security, procurement, and compliance stakeholders; often decentralized across business units. 

Industries / Verticals 

  • Manufacturing and automotive 
  • Healthcare and life sciences 
  • Financial services and insurance 
  • Utilities, energy, and industrial OT 
  • Public sector and other regulated industries 

Business Characteristics 

  • Uses containers, Kubernetes, GitHub Actions or Jenkins, cloud platforms, registries such as Artifactory, and multiple application language ecosystems. 
  • Has a scan-and-chase vulnerability process, long remediation cycles, frequent exceptions, or governance pressure for near-zero CVE and SBOM outcomes. 
  • Is building AI factories, adopting AI coding assistants, or scaling agentic development and needs trusted dependencies beneath that velocity. 
  • Faces regulatory or customer requirements for FIPS, provenance, SBOMs, NERC CIP, HIPAA/HITRUST, EU CRA, CMMC, or FedRAMP-related evidence. 
  • Has a WWT relationship or active WWT practice engagement where assessment, migration, integration, and managed services can be attached.

"What percentage of your production applications are built from containers or third-party language packages?" 

Reveals artifact volume, ecosystem coverage, and migration scope. 

"How long does it typically take your teams to remediate a critical vulnerability in a base image or dependency?"

Reveals remediation toil, urgency, and measurable value. 

"Which registries, package repositories, CI/CD systems, and scanners are in the current delivery path?" 

Reveals integration requirements and where Chainguard can fit without disrupting developers. 

"Are developers or agents pulling dependencies directly from public registries today?" 

Reveals supply-chain exposure and the need for a governed trusted source. 

"Where are AI coding assistants or agentic workflows being adopted, and how are their dependencies governed?" 

Reveals AI Native Engineering and agent-supply-chain opportunity. 

"Which compliance obligations require SBOMs, provenance, FIPS, signed artifacts, or documented vulnerability response?" 

Reveals the strongest executive and procurement drivers. 

"Are you standardizing on AWS, Azure, GCP, Kubernetes, or a multi-cloud platform model?"

 Reveals cloud-platform alignment and potential ATC lab scope. 

"Would your organization benefit from a WWT-led assessment and migration program rather than a standalone product purchase?" 

Qualifies services pull-through, executive sponsorship, and co-sell fit.

Chainguard

Chainguard provides hardened, secure, production-ready builds of open-source software used by engineers and AI agents. Its offerings are designed to support faster development, compliance efforts, and risk reduction.

WWT
  • About
  • Careers
  • Locations
  • Help Center
  • Sustainability
  • Blog
  • News
  • Press Kit
  • Contact Us
© 2026 World Wide Technology. All Rights Reserved
  • Privacy Policy
  • Acceptable Use Policy
  • Information Security
  • Supplier Management
  • Quality
  • Accessibility
  • Cookies