Comparison Overview

Catholic Medical Center

VS

Hospital for Special Surgery

Catholic Medical Center

100 McGregor Street, Manchester, 03102, US
Last Update: 2026-03-10

CMC is a regional healthcare organization committed to providing high quality and innovative healthcare in a compassionate environment built on its foundation of its Catholic identity and charitable mission of providing health, healing and hope. With roots dating back to 1892, CMC was formed in 1974 as a result of merging Notre Dame and Sacred Heart Hospitals. Today, CMC is a 330-bed not-for-profit full service acute care hospital with 10 primary care practices, 25 subspecialties and a 30-bed and 24-hour emergency department. CMC provides inpatient and outpatient services to almost 110,000 patients per year, making it one of New Hampshire’s largest medical centers. CMC maintains a rigorous application and credentialing process and approximately 400 physicians have privileges at CMC. CMC became one of the first hospitals in New Hampshire to establish a joint venture with independent medical staff members when it became a partner in the freestanding Bedford Ambulatory Surgical Center. Work with us: https://careers.catholicmedicalcenter.org/

NAICS: 62
NAICS Definition: Health Care and Social Assistance
Employees: 1,609
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Hospital for Special Surgery

535 East 70th Street, New York, 10021, US
Last Update: 2026-03-27
Between 750 and 799

HSS is the world’s leading academic medical center focused on musculoskeletal health. At its core is Hospital for Special Surgery, nationally ranked No. 1 in orthopedics (for the 16th consecutive year), No. 3 in rheumatology by U.S. News & World Report (2025-2026), and the best pediatric orthopedic hospital in NY, NJ and CT by U.S. News & World Report “Best Children’s Hospitals” list (2024-2025). In a survey of medical professionals in more than 20 countries by Newsweek, HSS is ranked world #1 in orthopedics for a fifth consecutive year (2025). Founded in 1863, the Hospital has the lowest readmission rates in the nation for orthopedics, and among the lowest infection and complication rates. HSS was the first in New York State to receive Magnet Recognition for Excellence in Nursing Service from the American Nurses Credentialing Center five consecutive times. An affiliate of Weill Cornell Medical College, HSS has a main campus in New York City and facilities in New Jersey, Connecticut and in the Long Island and Westchester County regions of New York State, as well as in Florida.

NAICS: 62
NAICS Definition: Health Care and Social Assistance
Employees: 16,807
Subsidiaries: 3
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/catholic-medical-center.jpeg
Catholic Medical Center
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/hospital-for-special-surgery.jpeg
Hospital for Special Surgery
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Catholic Medical Center
100%
Compliance Rate
0/4 Standards Verified
Hospital for Special Surgery
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Hospitals and Health Care Industry Average (This Year)

No incidents recorded for Catholic Medical Center in 2026.

Incidents vs Hospitals and Health Care Industry Average (This Year)

No incidents recorded for Hospital for Special Surgery in 2026.

Incident History — Catholic Medical Center (X = Date, Y = Severity)

Catholic Medical Center cyber incidents detection timeline including parent company and subsidiaries

Incident History — Hospital for Special Surgery (X = Date, Y = Severity)

Hospital for Special Surgery cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/catholic-medical-center.jpeg
Catholic Medical Center
Incidents

No Incident

https://images.rankiteo.com/companyimages/hospital-for-special-surgery.jpeg
Hospital for Special Surgery
Incidents

No Incident

FAQ

Hospital for Special Surgery company demonstrates a stronger AI Cybersecurity Score compared to Catholic Medical Center company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, Hospital for Special Surgery company has disclosed a higher number of cyber incidents compared to Catholic Medical Center company.

In the current year, Hospital for Special Surgery company and Catholic Medical Center company have not reported any cyber incidents.

Neither Hospital for Special Surgery company nor Catholic Medical Center company has reported experiencing a ransomware attack publicly.

Neither Hospital for Special Surgery company nor Catholic Medical Center company has reported experiencing a data breach publicly.

Neither Hospital for Special Surgery company nor Catholic Medical Center company has reported experiencing targeted cyberattacks publicly.

Neither Catholic Medical Center company nor Hospital for Special Surgery company has reported experiencing or disclosing vulnerabilities publicly.

Neither Catholic Medical Center nor Hospital for Special Surgery holds any compliance certifications.

Neither company holds any compliance certifications.

Hospital for Special Surgery company has more subsidiaries worldwide compared to Catholic Medical Center company.

Hospital for Special Surgery company employs more people globally than Catholic Medical Center company, reflecting its scale as a Hospitals and Health Care.

Neither Catholic Medical Center nor Hospital for Special Surgery holds SOC 2 Type 1 certification.

Neither Catholic Medical Center nor Hospital for Special Surgery holds SOC 2 Type 2 certification.

Neither Catholic Medical Center nor Hospital for Special Surgery holds ISO 27001 certification.

Neither Catholic Medical Center nor Hospital for Special Surgery holds PCI DSS certification.

Neither Catholic Medical Center nor Hospital for Special Surgery holds HIPAA certification.

Neither Catholic Medical Center nor Hospital for Special Surgery holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

Hirschmann EagleSDV version 05.4.01 prior to 05.4.02 contains a denial-of-service vulnerability that causes the device to crash during session establishment when using TLS 1.0 or TLS 1.1. Attackers can trigger a crash by initiating TLS connections with these protocol versions to disrupt service availability.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

The stored API keys in temporary browser client is not marked as protected allowing for JavScript console or other errors to allow for extraction of the encryption credentials.

Description

XSS vulnerability in cveInterface.js allows for inject HTML to be passed to display, as cveInterface trusts input from CVE API services

Description

Multiple reflected cross-site scripting (XSS) vulnerabilities in the login.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda and red_url parameters.

Description

A reflected cross-site scripting (XSS) vulnerability in the login_newpwd.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda parameter.