Comparison Overview

Broadway San Diego

VS

MCH Group

Broadway San Diego

3666 4th Avenue, None, San Diego, CA, US, 92103
Last Update: 2025-12-10
Between 700 and 749

Broadway San Diego - A Nederlander Presentation is part of the nationally recognized Nederlander Producing Company of America – one of the country’s largest and most experienced operators of live theater. Broadway San Diego made its original debut as the “San Diego Playgoers” in 1976, after presenting Equus at the Spreckels Theatre in Downtown San Diego. For several years, San Diego Playgoers presented shows at the Fox Theatre (now Copley Symphony Hall) and the Spreckels, before establishing a permanent home at the San Diego Civic Theatre in 1986, with occasional presentations at the other venues. In 2001, San Diego Playgoers celebrated 25 years of presenting the Best of Broadway by becoming Broadway San Diego, and announced its largest season to date. In its 33-year history, Broadway San Diego has presented over 375 shows and events, including the record setting blockbusters The Phantom Of The Opera, Miss Saigon, The Producers (in its West Coast Premiere), Les Miserables, Disney’s The Lion King and Wicked. Founded by David T. Nederlander in 1912, the Nederlander Organization is currently in its third generation of theatre development, ownership, management and production under the guidance of James M. Nederlander. The Nederlander family owns, operates and presents in theaters across the globe and is responsible for producing, co-producing, booking and investing in some of the world’s most successful musicals, revivals and touring productions.

NAICS: 7111
NAICS Definition: Performing Arts Companies
Employees: 23
Subsidiaries: 0
12-month incidents
0
Known data breaches
1
Attack type number
1

MCH Group

Messeplatz, Basel, Switzerland, 4005, CH
Last Update: 2025-12-10
Between 700 and 749

MCH Group, headquartered in Basel, Switzerland, is an internationally active experience marketing company with a comprehensive service network. It organizes around 30 community platforms in Switzerland and abroad, including Art Basel, Swissbau and Giardina. The Live Marketing Services division offers comprehensive experiential marketing solutions with its brands MCH Global, MC2, and Expomobilia. MCH Group also operates the Messe and Congress Center Basel and the Messe Zurich. Job opportunities at MCH Group: https://www.mch-group.com/en/employer/jobs-careers/ (please copy and paste the link into your browser)

NAICS: 7111
NAICS Definition: Performing Arts Companies
Employees: 282
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
1

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/broadwaysan-diego.jpeg
Broadway San Diego
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/mch-group-ltd-.jpeg
MCH Group
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Broadway San Diego
100%
Compliance Rate
0/4 Standards Verified
MCH Group
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Performing Arts Industry Average (This Year)

No incidents recorded for Broadway San Diego in 2025.

Incidents vs Performing Arts Industry Average (This Year)

No incidents recorded for MCH Group in 2025.

Incident History — Broadway San Diego (X = Date, Y = Severity)

Broadway San Diego cyber incidents detection timeline including parent company and subsidiaries

Incident History — MCH Group (X = Date, Y = Severity)

MCH Group cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/broadwaysan-diego.jpeg
Broadway San Diego
Incidents

Date Detected: 11/2021
Type:Breach
Attack Vector: External System Hacking
Blog: Blog
https://images.rankiteo.com/companyimages/mch-group-ltd-.jpeg
MCH Group
Incidents

Date Detected: 11/2021
Type:Ransomware
Attack Vector: Malware
Blog: Blog

FAQ

Broadway San Diego company demonstrates a stronger AI Cybersecurity Score compared to MCH Group company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Broadway San Diego and MCH Group have experienced a similar number of publicly disclosed cyber incidents.

In the current year, MCH Group company and Broadway San Diego company have not reported any cyber incidents.

MCH Group company has confirmed experiencing a ransomware attack, while Broadway San Diego company has not reported such incidents publicly.

Broadway San Diego company has disclosed at least one data breach, while the other MCH Group company has not reported such incidents publicly.

Neither MCH Group company nor Broadway San Diego company has reported experiencing targeted cyberattacks publicly.

Neither Broadway San Diego company nor MCH Group company has reported experiencing or disclosing vulnerabilities publicly.

Neither Broadway San Diego nor MCH Group holds any compliance certifications.

Neither company holds any compliance certifications.

Neither Broadway San Diego company nor MCH Group company has publicly disclosed detailed information about the number of their subsidiaries.

MCH Group company employs more people globally than Broadway San Diego company, reflecting its scale as a Performing Arts.

Neither Broadway San Diego nor MCH Group holds SOC 2 Type 1 certification.

Neither Broadway San Diego nor MCH Group holds SOC 2 Type 2 certification.

Neither Broadway San Diego nor MCH Group holds ISO 27001 certification.

Neither Broadway San Diego nor MCH Group holds PCI DSS certification.

Neither Broadway San Diego nor MCH Group holds HIPAA certification.

Neither Broadway San Diego nor MCH Group holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

Hitachi Vantara Pentaho Data Integration and Analytics Community Dashboard Framework prior to versions 10.2.0.4, including 9.3.0.x and 8.3.x display the full server stack trace when encountering an error within the GetCdfResource servlet.

Risk Information
cvss3
Base: 5.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Description

Pentaho Data Integration and Analytics Community Dashboard Editor plugin versions before 10.2.0.4, including 9.3.0.x and 8.3.x, deserialize untrusted JSON data without constraining the parser to approved classes and methods.

Risk Information
cvss3
Base: 8.8
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Description

A security flaw has been discovered in CTCMS Content Management System up to 2.1.2. The impacted element is an unknown function in the library /ctcms/libs/Ct_Config.php of the component Backend System Configuration Module. The manipulation of the argument Cj_Add/Cj_Edit results in code injection. The attack can be executed remotely. The exploit has been released to the public and may be exploited.

Risk Information
cvss2
Base: 5.8
Severity: LOW
AV:N/AC:L/Au:M/C:P/I:P/A:P
cvss3
Base: 4.7
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 5.1
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability was identified in CTCMS Content Management System up to 2.1.2. The affected element is the function Save of the file /ctcms/libs/Ct_App.php of the component Backend App Configuration Module. The manipulation of the argument CT_App_Paytype leads to code injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.

Risk Information
cvss2
Base: 5.8
Severity: LOW
AV:N/AC:L/Au:M/C:P/I:P/A:P
cvss3
Base: 4.7
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 5.1
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Weblate is a web based localization tool. In versions prior to 5.15, it was possible to accept an invitation opened by a different user. Version 5.15. contains a patch. As a workaround, avoid leaving one's Weblate sessions with an invitation opened unattended.

Risk Information
cvss4
Base: 1.0
Severity: HIGH
CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X