ISO 27001 Certificate
SOC 1 Type I Certificate
SOC 2 Type II Certificate
PCI DSS
HIPAA
RGPD
Internal validation & live display
Multiple badges & continuous verification
Faster underwriting decisions
ISOSOC2 Type 1SOC2 Type 2PCI DSSHIPAAGDPR

We deliver a wide range of services across New Zealand, including allied health, psychological intervention, employment support, physiotherapy, vocational rehabilitation, pain management, and community-based services. We work with government agencies and organisations, including the New Zealand Defence Force, Ministry of Social Development, Corrections, ACC, and third-party insurers. APM NZ branches across many different sectors, and our career opportunities are just as broad.

APM New Zealand A.I CyberSecurity Scoring

ANZ

Company Details

Linkedin ID:

apm-new-zealand

Employees number:

35

Number of followers:

1,049

NAICS:

923

Industry Type:

Health and Human Services

Homepage:

apm-nz.co.nz

IP Addresses:

0

Company ID:

APM_3163121

Scan Status:

In-progress

AI scoreANZ Risk Score (AI oriented)

Between 750 and 799

https://images.rankiteo.com/companyimages/apm-new-zealand.jpeg
ANZ Health and Human Services
Updated:
  • Powered by our proprietary A.I cyber incident model
  • Insurance preferes TPRM score to calculate premium
globalscoreANZ Global Score (TPRM)

XXXX

https://images.rankiteo.com/companyimages/apm-new-zealand.jpeg
ANZ Health and Human Services
  • Instant access to detailed risk factors
  • Benchmark vs. industry & size peers
  • Vulnerabilities
  • Findings

ANZ Company CyberSecurity News & History

Past Incidents
0
Attack Types
0
No data available
Ailogo

ANZ Company Scoring based on AI Models

Cyber Incidents Likelihood 3 - 6 - 9 months

🔒
Incident Predictions locked
Access Monitoring Plan

A.I Risk Score Likelihood 3 - 6 - 9 months

🔒
A.I. Risk Score Predictions locked
Access Monitoring Plan
statics

Underwriter Stats for ANZ

Incidents vs Health and Human Services Industry Average (This Year)

No incidents recorded for APM New Zealand in 2025.

Incidents vs All-Companies Average (This Year)

No incidents recorded for APM New Zealand in 2025.

Incident Types ANZ vs Health and Human Services Industry Avg (This Year)

No incidents recorded for APM New Zealand in 2025.

Incident History — ANZ (X = Date, Y = Severity)

ANZ cyber incidents detection timeline including parent company and subsidiaries

ANZ Company Subsidiaries

SubsidiaryImage

We deliver a wide range of services across New Zealand, including allied health, psychological intervention, employment support, physiotherapy, vocational rehabilitation, pain management, and community-based services. We work with government agencies and organisations, including the New Zealand Defence Force, Ministry of Social Development, Corrections, ACC, and third-party insurers. APM NZ branches across many different sectors, and our career opportunities are just as broad.

Loading...
similarCompanies

ANZ Similar Companies

The Milestone House

The Milestone House is a premier Sober Living Facility for Men and Women who want to make recovery a way of life. We are proud to be a leader in the industry and currently have five sites located in historic Dover, New Jersey. Our residents typically have completed some level of structured treatmen

Cancer Support Community San Francisco Bay Area

Cancer Support Community San Francisco Bay Area provides free comprehensive support programs including counseling, support groups, nutrition, exercise, emergency financial assistance and patient education programs as well as special programs for teens and children. Our evidence-based programs enable

Parkinson's Resources of Oregon

Parkinson's Resources of Oregon (PRO) helps patients and caregivers manage Parkinson's disease with helpful programs and services. We are dedicated to meeting the support needs of the Parkinson's community of Oregon and Southern Washington. We step in to help the patient and family where the medi

Pathway, Inc

To provide the degree and quality of service in the least restrictive environment for our neighbor’s children that we would be compelled to provide for our own and to provide these services wherever possible in a manner that reflects the best of traditional and contemporary values embraced by famili

Volunteers of America Western Washington

Volunteers of America Western Washington (VOAWW) is a comprehensive human service organization serving locations in Snohomish County and statewide. We are the place to turn for families in crisis, children, seniors, and people with disabilities. In fact, each year, we receive more than 315,000 reque

Interact Health PRO

Seeking treatment facilities and transferring medical information from acute and chronic pain between professionals is a difficult task. Interact Health PRO's network of rehabilitation centers in the GTA promotes integrative health teams to support our clients while ensuring maximal recovery. Our te

newsone

ANZ CyberSecurity News

October 22, 2025 07:00 AM
GitLab 18.5 debuts AI agents & new UI for streamlined dev ops

GitLab 18.5 launches AI agents and a new UI to enhance security, streamline workflows, and boost efficiency for software development teams.

September 16, 2025 07:00 AM
The impact of AI on NZ’s IT employment landscape

AI adoption in New Zealand's IT sector is high, reshaping jobs by boosting demand for engineers while reducing roles in support and project...

July 31, 2025 07:00 AM
Dawnguard raises USD $3m to embed security at design stage

Amsterdam-based cybersecurity startup Dawnguard has emerged from stealth with a pre-seed funding round totalling USD $3 million.

July 23, 2025 07:00 AM
SharePoint zero-day flaw exploited as over 9,000 servers at risk

Cybersecurity experts have raised fresh alarms following reports of active exploitation targeting Microsoft SharePoint servers worldwide.

January 15, 2025 08:00 AM
Australian Computer Society adds 10 new tech roles

The Australian Computer Society (ACS) has announced the addition of ten new specialist occupations to its Migration Skills Assessment program.

December 13, 2024 08:00 AM
Ginnie Mae’s APM 24-12—Hedging MSRs to Improve Risk-Based Capital Ratios

Ginnie Mae has issued APM 24-12, which offers Issuers relief from the RBCR requirement if the Issuer can demonstrate successful hedging over time.

November 05, 2024 08:00 AM
Liverton Security launches cyber consulting division in NZ

Liverton Security has launched a new cyber security consulting division in Wellington, led by Murray Wills, enhancing its service offerings...

October 02, 2024 07:00 AM
Avec appoints Alex Gray as new General Manager for NZ

Avec appoints Alex Gray as General Manager for New Zealand, tasking the industry veteran with expanding the company's footprint in the...

September 17, 2024 07:00 AM
Why monitoring high tech systems and data is critical for New Zealand healthcare providers

World Patient Safety Day is a timely reminder of the threat hackers and cyber-criminals pose to the country's most vulnerable.

faq

Frequently Asked Questions

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.

ANZ CyberSecurity History Information

Official Website of APM New Zealand

The official website of APM New Zealand is https://apm-nz.co.nz/.

APM New Zealand’s AI-Generated Cybersecurity Score

According to Rankiteo, APM New Zealand’s AI-generated cybersecurity score is 761, reflecting their Fair security posture.

How many security badges does APM New Zealand’ have ?

According to Rankiteo, APM New Zealand currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.

Does APM New Zealand have SOC 2 Type 1 certification ?

According to Rankiteo, APM New Zealand is not certified under SOC 2 Type 1.

Does APM New Zealand have SOC 2 Type 2 certification ?

According to Rankiteo, APM New Zealand does not hold a SOC 2 Type 2 certification.

Does APM New Zealand comply with GDPR ?

According to Rankiteo, APM New Zealand is not listed as GDPR compliant.

Does APM New Zealand have PCI DSS certification ?

According to Rankiteo, APM New Zealand does not currently maintain PCI DSS compliance.

Does APM New Zealand comply with HIPAA ?

According to Rankiteo, APM New Zealand is not compliant with HIPAA regulations.

Does APM New Zealand have ISO 27001 certification ?

According to Rankiteo,APM New Zealand is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.

Industry Classification of APM New Zealand

APM New Zealand operates primarily in the Health and Human Services industry.

Number of Employees at APM New Zealand

APM New Zealand employs approximately 35 people worldwide.

Subsidiaries Owned by APM New Zealand

APM New Zealand presently has no subsidiaries across any sectors.

APM New Zealand’s LinkedIn Followers

APM New Zealand’s official LinkedIn profile has approximately 1,049 followers.

APM New Zealand’s Presence on Crunchbase

No, APM New Zealand does not have a profile on Crunchbase.

APM New Zealand’s Presence on LinkedIn

Yes, APM New Zealand maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/apm-new-zealand.

Cybersecurity Incidents Involving APM New Zealand

As of November 27, 2025, Rankiteo reports that APM New Zealand has not experienced any cybersecurity incidents.

Number of Peer and Competitor Companies

APM New Zealand has an estimated 403 peer or competitor companies worldwide.

APM New Zealand CyberSecurity History Information

How many cyber incidents has APM New Zealand faced ?

Total Incidents: According to Rankiteo, APM New Zealand has faced 0 incidents in the past.

What types of cybersecurity incidents have occurred at APM New Zealand ?

Incident Types: The types of cybersecurity incidents that have occurred include .

Incident Details

What are the most common types of attacks the company has faced ?

Additional Questions

cve

Latest Global CVEs (Not Company-Specific)

Description

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) token to an attacker-controlled domain. Angular's HttpClient has a built-in XSRF protection mechanism that works by checking if a request URL starts with a protocol (http:// or https://) to determine if it is cross-origin. If the URL starts with protocol-relative URL (//), it is incorrectly treated as a same-origin request, and the XSRF token is automatically added to the X-XSRF-TOKEN header. This issue has been patched in versions 19.2.16, 20.3.14, and 21.0.1. A workaround for this issue involves avoiding using protocol-relative URLs (URLs starting with //) in HttpClient requests. All backend communication URLs should be hardcoded as relative paths (starting with a single /) or fully qualified, trusted absolute URLs.

Risk Information
cvss4
Base: 7.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:H/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Uncontrolled Recursion vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft deep ASN.1 structures that trigger unbounded recursive parsing. This leads to a Denial-of-Service (DoS) via stack exhaustion when parsing untrusted DER inputs. This issue has been patched in version 1.3.2.

Risk Information
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft ASN.1 structures containing OIDs with oversized arcs. These arcs may be decoded as smaller, trusted OIDs due to 32-bit bitwise truncation, enabling the bypass of downstream OID-based security decisions. This issue has been patched in version 1.3.2.

Risk Information
cvss4
Base: 6.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a stack overflow. Users of Lua rules and output scripts may be affected when working with large buffers. This includes a rule passing a large buffer to a Lua script. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves disabling Lua rules and output scripts, or making sure limits, such as stream.depth.reassembly and HTTP response body limits (response-body-limit), are set to less than half the stack size.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Description

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword is used in conjunction with base64_data. This issue has been patched in version 8.0.2. A workaround involves disabling rules that use entropy in conjunction with base64_data.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Access Data Using Our API

SubsidiaryImage

Get company history

curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?linkedin_id=apm-new-zealand' -H 'apikey: YOUR_API_KEY_HERE'

What Do We Measure ?

revertimgrevertimgrevertimgrevertimg
Incident
revertimgrevertimgrevertimgrevertimg
Finding
revertimgrevertimgrevertimgrevertimg
Grade
revertimgrevertimgrevertimgrevertimg
Digital Assets

Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.

These are some of the factors we use to calculate the overall score:

Network Security

Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.

SBOM (Software Bill of Materials)

Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.

CMDB (Configuration Management Database)

Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.

Threat Intelligence

Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.

Top LeftTop RightBottom LeftBottom Right
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.
Users Love Us Badge