Inform 2026: Mitre's Updated Threat-Informed Defense Maturity Model Explained
Security Boulevard, Friday, January 9th, 2026
On January 8th, MITRE's Center for Threat-Informed Defense (CTID) published a significant update update to INFORM, its threat-informed defense maturity model. This update reflects the joint efforts of MITRE researchers, AttackIQ, and several CTID members to enhance INFORM based on two years of operational use and broad security community feedback.
'Threat-informed defense is the systematic application of a deep understanding of adversary tradecraft and technology to improve defenses.' - MITRE Center for Threat-Informed Defense
Threat-informed defense (TID) is a continuous process driven by changing IT environments, evolving threats, and ongoing security operations. TID focuses organizations on understanding real-world adversary behaviors, implementing effective defenses against those threats, and validating the efficacy of those defenses. TID applies broadly to organizations regardless of their size, budget, sophistication, or sector. TID aims to make cyber defense more efficient and effective for all.