ISO 27001 Certificate
SOC 1 Type I Certificate
SOC 2 Type II Certificate
PCI DSS
HIPAA
RGPD
Internal validation & live display
Multiple badges & continuous verification
Faster underwriting decisions
ISOSOC2 Type 1SOC2 Type 2PCI DSSHIPAAGDPR

Acosta Group fuses storied expertise, unmatched connectivity and advanced insight to accelerate brand growth – everywhere you sell. Our collective of the most trusted retail, marketing and foodservice agencies is reimagining how people connect with brands at every point in the consumer journey. Comprised of Acosta, ActionLink, CORE Foodservice, CROSSMARK, Mosaic, Premium Retail Services and Product Connections, Acosta Group understands and anticipates evolving consumer needs, fueling accelerated performance to connect tomorrow's commerce today. The collective delivers end-to-end solutions, including headquarter sales services, omnichannel retail solutions, assisted sales and training, integrated marketing, foodservice sales enablement and culinary solutions, and the most advanced data and insights. ------ Le groupe Acosta Group rassemble une expertise reconnue, une connectivité inégalée et des connaissances fines pour accélérer la croissance des marques - partout où vous êtes commercialisé. Notre collectif des agences de vente au détail, de marketing et de restauration les plus fiables réinvente la façon dont les gens se connectent aux marques à chaque étape du parcours du consommateur. Composé d'Acosta, d'ActionLink, de CORE Foodservice, de CROSSMARK, de Mosaic, de Premium Retail Services et de Product Connections, le groupe Acosta Group comprend et anticipe les besoins en constante évolution des consommateurs, stimulant ainsi les performances accélérées pour connecter le commerce de demain dès aujourd'hui. Le collectif offre des solutions holistiques, y compris des services de vente externalisée, des solutions omnicanales de vente au détail, des ventes assistées et de la formation, du marketing intégré, des solutions de vente pour la restauration et la cuisine, ainsi que les données et les connaissances les plus avancées, et l’expertise nécessaire pour extraire la valeur de tous ces outils.

Acosta Group A.I CyberSecurity Scoring

Acosta Group

Company Details

Linkedin ID:

acostagrp

Employees number:

37,906

Number of followers:

23,254

NAICS:

5416

Industry Type:

Business Consulting and Services

Homepage:

acosta.group

IP Addresses:

77

Company ID:

ACO_3484168

Scan Status:

Completed

AI scoreAcosta Group Risk Score (AI oriented)

Between 750 and 799

https://images.rankiteo.com/companyimages/acostagrp.jpeg
Acosta Group Business Consulting and Services
Updated:
  • Powered by our proprietary A.I cyber incident model
  • Insurance preferes TPRM score to calculate premium
globalscoreAcosta Group Global Score (TPRM)

XXXX

https://images.rankiteo.com/companyimages/acostagrp.jpeg
Acosta Group Business Consulting and Services
  • Instant access to detailed risk factors
  • Benchmark vs. industry & size peers
  • Vulnerabilities
  • Findings

Acosta Group Company CyberSecurity News & History

Past Incidents
1
Attack Types
1
EntityTypeSeverityImpactSeenBlog DetailsIncident DetailsView
Crossmark, Inc.Breach5023/2024
Rankiteo Explanation :
Attack limited on finance or reputation

Description: The Maine Office of the Attorney General reported a data breach involving Crossmark, Inc. on April 15, 2024. The breach occurred on March 15, 2024, due to an inadvertent disclosure of personal information, specifically a spreadsheet containing names and Social Security numbers, affecting a total of 1,295 individuals.

Crossmark, Inc.
Breach
Severity: 50
Impact: 2
Seen: 3/2024
Blog:
Rankiteo Explanation
Attack limited on finance or reputation

Description: The Maine Office of the Attorney General reported a data breach involving Crossmark, Inc. on April 15, 2024. The breach occurred on March 15, 2024, due to an inadvertent disclosure of personal information, specifically a spreadsheet containing names and Social Security numbers, affecting a total of 1,295 individuals.

Ailogo

Acosta Group Company Scoring based on AI Models

Cyber Incidents Likelihood 3 - 6 - 9 months

🔒
Incident Predictions locked
Access Monitoring Plan

A.I Risk Score Likelihood 3 - 6 - 9 months

🔒
A.I. Risk Score Predictions locked
Access Monitoring Plan
statics

Underwriter Stats for Acosta Group

Incidents vs Business Consulting and Services Industry Average (This Year)

No incidents recorded for Acosta Group in 2025.

Incidents vs All-Companies Average (This Year)

No incidents recorded for Acosta Group in 2025.

Incident Types Acosta Group vs Business Consulting and Services Industry Avg (This Year)

No incidents recorded for Acosta Group in 2025.

Incident History — Acosta Group (X = Date, Y = Severity)

Acosta Group cyber incidents detection timeline including parent company and subsidiaries

Acosta Group Company Subsidiaries

SubsidiaryImage

Acosta Group fuses storied expertise, unmatched connectivity and advanced insight to accelerate brand growth – everywhere you sell. Our collective of the most trusted retail, marketing and foodservice agencies is reimagining how people connect with brands at every point in the consumer journey. Comprised of Acosta, ActionLink, CORE Foodservice, CROSSMARK, Mosaic, Premium Retail Services and Product Connections, Acosta Group understands and anticipates evolving consumer needs, fueling accelerated performance to connect tomorrow's commerce today. The collective delivers end-to-end solutions, including headquarter sales services, omnichannel retail solutions, assisted sales and training, integrated marketing, foodservice sales enablement and culinary solutions, and the most advanced data and insights. ------ Le groupe Acosta Group rassemble une expertise reconnue, une connectivité inégalée et des connaissances fines pour accélérer la croissance des marques - partout où vous êtes commercialisé. Notre collectif des agences de vente au détail, de marketing et de restauration les plus fiables réinvente la façon dont les gens se connectent aux marques à chaque étape du parcours du consommateur. Composé d'Acosta, d'ActionLink, de CORE Foodservice, de CROSSMARK, de Mosaic, de Premium Retail Services et de Product Connections, le groupe Acosta Group comprend et anticipe les besoins en constante évolution des consommateurs, stimulant ainsi les performances accélérées pour connecter le commerce de demain dès aujourd'hui. Le collectif offre des solutions holistiques, y compris des services de vente externalisée, des solutions omnicanales de vente au détail, des ventes assistées et de la formation, du marketing intégré, des solutions de vente pour la restauration et la cuisine, ainsi que les données et les connaissances les plus avancées, et l’expertise nécessaire pour extraire la valeur de tous ces outils.

Loading...
similarCompanies

Acosta Group Similar Companies

Protiviti

Protiviti (www.protiviti.com) is a global consulting firm that delivers deep expertise, objective insights, a tailored approach and unparalleled collaboration to help leaders confidently face the future. Protiviti and its independent and locally owned member firms provide clients with consulting and

McKinsey & Company

McKinsey & Company is a global management consulting firm. We are the trusted advisor to the world's leading businesses, governments, and institutions. We work with leading organizations across the private, public and social sectors. Our scale, scope, and knowledge allow us to address problems t

Stantec

Stantec empowers clients, people, and communities to rise to the world’s greatest challenges at a time when the world faces more unprecedented concerns than ever before. We are a global leader in sustainable engineering, architecture, and environmental consulting. Our professionals deliver the ex

KPMG UK

Make growth happen. Make it trusted. Make bold moves. Make the future. KPMG makes the difference for our clients, people and communities. Make growth happen. Make it trusted. Make bold moves. Make the future. At KPMG, we’ve been making the difference for our clients, people and communities for over

Xerox

Xerox has been redefining the workplace experience for over a century. As a services-led, software-enabled company, we power today’s hybrid workplace through advanced print, digital, and AI-driven technologies. In 2025, Xerox acquired Lexmark—expanding our global footprint, strengthening service c

Stefanini Group

Global Tech Consulting Company All in One. Stefanini is a Brazilian multinational company with 37 years of experience and presence in 41 countries. With more than 35,000 employees, we co-create solutions for a better future, driving digital transformation with a focus on real results. We oper

As the leader in circular services at work, Elis ensures its clients achieve optimal hygiene, well-being and protection – everywhere, every day, in a sustainable way. We employ 54,000 people locally in 30 countries. We work for public and private organizations of all sizes, in all sectors of activi

Boston Consulting Group (BCG)

Boston Consulting Group partners with leaders in business and society to tackle their most important challenges and capture their greatest opportunities. BCG was the pioneer in business strategy when it was founded in 1963. Today, we work closely with clients to embrace a transformational approach a

Publicis Sapient

Publicis Sapient is a digital business transformation company. We partner with global organizations to help them create and sustain competitive advantage in a world that is increasingly digital. We operate through our expert SPEED capabilities: Strategy and Consulting, Product, Experience, Engineeri

newsone

Acosta Group CyberSecurity News

August 01, 2025 07:00 AM
Trump's 'truth seeking' AI executive order is a complex, expensive policy, experts say

An executive order signed by President Donald Trump last week seeks to remove “ideological agendas” from artificial intelligence models sold...

April 14, 2025 07:00 AM
Consumers Taking GLP-1s for Weight Loss, Current or Discontinued, Drive Lasting Changes in Retail, Per New Acosta Group Study

In advance of the National Association of Chain Drug Stores (NACDS) Annual Meeting, Acosta Group is sharing the results of its recent...

March 15, 2025 07:00 AM
Cybersecurity experts deny Elon Musk and blame him directly for the Twitter cyberattack

The X social network, formerly known as Twitter, suffered intermittent outages last Monday due to a massive cyberattack. While Elon Musk...

January 22, 2025 08:00 AM
She failed to break Apple security, now she works there

Paulina Acosta '22 sat down in an FIU lab one day with a challenge from her professor: Hack into Apple's smart home ecosystem.

December 02, 2024 08:00 AM
Montgomery County constable’s office says it’s catching more child predators

The Houston-area law enforcement agency says additional resources have helped it file more than 265 felony charges this year related to...

May 22, 2024 07:00 AM
Acosta Group to Acquire CROSSMARK and Product Connections

Acosta Group announced today that it has signed a definitive agreement to acquire CROSSMARK, including its headquarter Sales Agency and...

May 22, 2024 07:00 AM
WIS International to Divest CROSSMARK and Product Connections Business Units to Acosta Group

The agreement aligns with WIS International's blueprint to streamline operations and sharpen focus on core capabilities within retail,...

February 23, 2022 10:45 PM
Cybersecurity and Data Breach Response

Our global team has extensive experience advising on all aspects of data and cybersecurity compliance, incident preparedness and data breaches.

September 09, 2021 07:00 AM
Building a More Diverse Cyber Industry: What Can We Do Today and Tomorrow?

Despite tech and cybersecurity companies proclaiming to advance new initiatives to advance diversity, equity and inclusion (DEI) in recent...

faq

Frequently Asked Questions

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.

Acosta Group CyberSecurity History Information

Official Website of Acosta Group

The official website of Acosta Group is https://www.acosta.group/.

Acosta Group’s AI-Generated Cybersecurity Score

According to Rankiteo, Acosta Group’s AI-generated cybersecurity score is 774, reflecting their Fair security posture.

How many security badges does Acosta Group’ have ?

According to Rankiteo, Acosta Group currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.

Does Acosta Group have SOC 2 Type 1 certification ?

According to Rankiteo, Acosta Group is not certified under SOC 2 Type 1.

Does Acosta Group have SOC 2 Type 2 certification ?

According to Rankiteo, Acosta Group does not hold a SOC 2 Type 2 certification.

Does Acosta Group comply with GDPR ?

According to Rankiteo, Acosta Group is not listed as GDPR compliant.

Does Acosta Group have PCI DSS certification ?

According to Rankiteo, Acosta Group does not currently maintain PCI DSS compliance.

Does Acosta Group comply with HIPAA ?

According to Rankiteo, Acosta Group is not compliant with HIPAA regulations.

Does Acosta Group have ISO 27001 certification ?

According to Rankiteo,Acosta Group is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.

Industry Classification of Acosta Group

Acosta Group operates primarily in the Business Consulting and Services industry.

Number of Employees at Acosta Group

Acosta Group employs approximately 37,906 people worldwide.

Subsidiaries Owned by Acosta Group

Acosta Group presently has no subsidiaries across any sectors.

Acosta Group’s LinkedIn Followers

Acosta Group’s official LinkedIn profile has approximately 23,254 followers.

NAICS Classification of Acosta Group

Acosta Group is classified under the NAICS code 5416, which corresponds to Management, Scientific, and Technical Consulting Services.

Acosta Group’s Presence on Crunchbase

No, Acosta Group does not have a profile on Crunchbase.

Acosta Group’s Presence on LinkedIn

Yes, Acosta Group maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/acostagrp.

Cybersecurity Incidents Involving Acosta Group

As of December 15, 2025, Rankiteo reports that Acosta Group has experienced 1 cybersecurity incidents.

Number of Peer and Competitor Companies

Acosta Group has an estimated 18,422 peer or competitor companies worldwide.

What types of cybersecurity incidents have occurred at Acosta Group ?

Incident Types: The types of cybersecurity incidents that have occurred include Breach.

Incident Details

Can you provide details on each incident ?

Incident : Data Breach

Title: Data Breach at Crossmark, Inc.

Description: The Maine Office of the Attorney General reported a data breach involving Crossmark, Inc. on April 15, 2024. The breach occurred on March 15, 2024, due to an inadvertent disclosure of personal information, specifically a spreadsheet containing names and Social Security numbers, affecting a total of 1,295 individuals.

Date Detected: 2024-03-15

Date Publicly Disclosed: 2024-04-15

Type: Data Breach

Attack Vector: Inadvertent Disclosure

What are the most common types of attacks the company has faced ?

Common Attack Types: The most common types of attacks the company has faced is Breach.

Impact of the Incidents

What was the impact of each incident ?

Incident : Data Breach CRO418072825

Data Compromised: Names, Social security numbers

What types of data are most commonly compromised in incidents ?

Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Names, Social Security Numbers and .

Which entities were affected by each incident ?

Incident : Data Breach CRO418072825

Entity Name: Crossmark, Inc.

Entity Type: Company

Customers Affected: 1295

Data Breach Information

What type of data was compromised in each breach ?

Incident : Data Breach CRO418072825

Type of Data Compromised: Names, Social security numbers

Number of Records Exposed: 1295

Sensitivity of Data: High

File Types Exposed: Spreadsheet

References

Where can I find more information about each incident ?

Incident : Data Breach CRO418072825

Source: Maine Office of the Attorney General

Date Accessed: 2024-04-15

Where can stakeholders find additional resources on cybersecurity best practices ?

Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: Maine Office of the Attorney GeneralDate Accessed: 2024-04-15.

Additional Questions

Incident Details

What was the most recent incident detected ?

Most Recent Incident Detected: The most recent incident detected was on 2024-03-15.

What was the most recent incident publicly disclosed ?

Most Recent Incident Publicly Disclosed: The most recent incident publicly disclosed was on 2024-04-15.

Impact of the Incidents

What was the most significant data compromised in an incident ?

Most Significant Data Compromised: The most significant data compromised in an incident were Names, Social Security numbers and .

Data Breach Information

What was the most sensitive data compromised in a breach ?

Most Sensitive Data Compromised: The most sensitive data compromised in a breach were Names and Social Security numbers.

What was the number of records exposed in the most significant breach ?

Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 134.0.

References

What is the most recent source of information about an incident ?

Most Recent Source: The most recent source of information about an incident is Maine Office of the Attorney General.

cve

Latest Global CVEs (Not Company-Specific)

Description

NXLog Agent before 6.11 can load a file specified by the OPENSSL_CONF environment variable.

Risk Information
cvss3
Base: 8.1
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Description

uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.

Risk Information
cvss3
Base: 2.9
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Description

A vulnerability was detected in Mayan EDMS up to 4.10.1. The affected element is an unknown function of the file /authentication/. The manipulation results in cross site scripting. The attack may be performed from remote. The exploit is now public and may be used. Upgrading to version 4.10.2 is sufficient to fix this issue. You should upgrade the affected component. The vendor confirms that this is "[f]ixed in version 4.10.2". Furthermore, that "[b]ackports for older versions in process and will be out as soon as their respective CI pipelines complete."

Risk Information
cvss2
Base: 5.0
Severity: LOW
AV:N/AC:L/Au:N/C:N/I:P/A:N
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

MJML through 4.18.0 allows mj-include directory traversal to test file existence and (in the type="css" case) read files. NOTE: this issue exists because of an incomplete fix for CVE-2020-12827.

Risk Information
cvss3
Base: 4.5
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:L
Description

A half-blind Server Side Request Forgery (SSRF) vulnerability exists in kube-controller-manager when using the in-tree Portworx StorageClass. This vulnerability allows authorized users to leak arbitrary information from unprotected endpoints in the control plane’s host network (including link-local or loopback services).

Risk Information
cvss3
Base: 5.8
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N

Access Data Using Our API

SubsidiaryImage

Get company history

curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?linkedin_id=acostagrp' -H 'apikey: YOUR_API_KEY_HERE'

What Do We Measure ?

revertimgrevertimgrevertimgrevertimg
Incident
revertimgrevertimgrevertimgrevertimg
Finding
revertimgrevertimgrevertimgrevertimg
Grade
revertimgrevertimgrevertimgrevertimg
Digital Assets

Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.

These are some of the factors we use to calculate the overall score:

Network Security

Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.

SBOM (Software Bill of Materials)

Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.

CMDB (Configuration Management Database)

Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.

Threat Intelligence

Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.

Top LeftTop RightBottom LeftBottom Right
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.
Users Love Us Badge