Comparison Overview

Consonus Healthcare

VS

IQVIA

Consonus Healthcare

4560 SE International Way, Portland, 97222, US
Last Update: 2026-01-23

Consonus Rehab is a contract rehab provider, and part of the Marquis Companies family. Our organizations consist of four major divisions: Consonus Rehab, Consonus Pharmacy, Marquis Companies & AgeRight Care at Home. Consonus supports a culture of integrity and meaningful purpose. Our dedication to physical, mental, social, and spiritual health carries throughout every level of our company, from executives to therapist. Giving back to the community has always been a significant part of the Consonus Rehab philosophy. Bringing the causes we support to the forefront is important to us, and that’s why we’ve formed the Vital Life Foundation. Consonus Rehab and Pharmacy – www.consonushealth.com Marquis and Marquis At Home – www.marquiscompanies.com Vital Life Foundation- www.vitallifefoundation.org Consonus Rehab: Therapy is much more than a job—but you already know that. You’re in the business of making people’s lives better. Consonus Rehab Services is a contract therapy company that sets up therapy departments in post-acute settings. Our employees can find full time, part time or on call/per diem positions working in an acute, outpatient, inpatient or skilled nursing setting. We can help you find the right opportunity where you can make the biggest difference in people’s lives. Consonus Pharmacy: At Consonus Pharmacy we look at ourselves through an atypical lens. We aren’t pill counters, we're people lovers. More than just order fillers, we treat diseases. Every day employees arrive ready to be flawless, ready to serve and ready to make a difference in patients lives. At Consonus, you’ll work with expert and efficient staff, as well as the latest technology to make for a smooth, precise operation and accurate delivery of medications.

NAICS: 62
NAICS Definition: Health Care and Social Assistance
Employees: 901
Subsidiaries: 4
12-month incidents
0
Known data breaches
2
Attack type number
2

IQVIA

2400 Ellis Rd, Durham, 27703, US
Last Update: 2026-01-21
Between 750 and 799

IQVIA (NYSE:IQV) is a leading global provider of clinical research services, commercial insights and healthcare intelligence to the life sciences and healthcare industries. IQVIA’s portfolio of solutions are powered by IQVIA Connected Intelligence™ to deliver actionable insights and services built on high-quality health data, Healthcare-grade AI™, advanced analytics, the latest technologies and extensive domain expertise. With approximately 88,000 employees in over 100 countries, including experts in healthcare, life sciences, data science, technology and operational excellence, IQVIA is dedicated to accelerating the development and commercialization of innovative medical treatments to help improve patient outcomes and population health worldwide. IQVIA is a global leader in protecting individual patient privacy. The company uses a wide variety of privacy-enhancing technologies and safeguards to protect individual privacy while generating and analyzing information on a scale that helps healthcare stakeholders identify disease patterns and correlate with the precise treatment path and therapy needed for better outcomes. IQVIA’s insights and execution capabilities help biotech, medical device and pharmaceutical companies, medical researchers, government agencies, payers and other healthcare stakeholders tap into a deeper understanding of diseases, human behaviors and scientific progress, in an effort to advance healthcare. To learn more, visit www.iqvia.com.

NAICS: 62
NAICS Definition: Health Care and Social Assistance
Employees: 80,729
Subsidiaries: 30
12-month incidents
0
Known data breaches
0
Attack type number
1

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/consonus-healthcare.jpeg
Consonus Healthcare
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/iqvia.jpeg
IQVIA
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Consonus Healthcare
100%
Compliance Rate
0/4 Standards Verified
IQVIA
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Hospitals and Health Care Industry Average (This Year)

No incidents recorded for Consonus Healthcare in 2026.

Incidents vs Hospitals and Health Care Industry Average (This Year)

No incidents recorded for IQVIA in 2026.

Incident History — Consonus Healthcare (X = Date, Y = Severity)

Consonus Healthcare cyber incidents detection timeline including parent company and subsidiaries

Incident History — IQVIA (X = Date, Y = Severity)

IQVIA cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/consonus-healthcare.jpeg
Consonus Healthcare
Incidents

Date Detected: 8/2025
Type:Breach
Blog: Blog

Date Detected: 8/2025
Type:Breach
Blog: Blog

Date Detected: 8/2025
Type:Ransomware
Motivation: Financial gain, data extortion
Blog: Blog
https://images.rankiteo.com/companyimages/iqvia.jpeg
IQVIA
Incidents

Date Detected: 10/2020
Type:Ransomware
Blog: Blog

FAQ

IQVIA company demonstrates a stronger AI Cybersecurity Score compared to Consonus Healthcare company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Consonus Healthcare company has faced a higher number of disclosed cyber incidents historically compared to IQVIA company.

In the current year, IQVIA company and Consonus Healthcare company have not reported any cyber incidents.

Both IQVIA company and Consonus Healthcare company have confirmed experiencing at least one ransomware attack.

Consonus Healthcare company has disclosed at least one data breach, while the other IQVIA company has not reported such incidents publicly.

Neither IQVIA company nor Consonus Healthcare company has reported experiencing targeted cyberattacks publicly.

Neither Consonus Healthcare company nor IQVIA company has reported experiencing or disclosing vulnerabilities publicly.

Neither Consonus Healthcare nor IQVIA holds any compliance certifications.

Neither company holds any compliance certifications.

IQVIA company has more subsidiaries worldwide compared to Consonus Healthcare company.

IQVIA company employs more people globally than Consonus Healthcare company, reflecting its scale as a Hospitals and Health Care.

Neither Consonus Healthcare nor IQVIA holds SOC 2 Type 1 certification.

Neither Consonus Healthcare nor IQVIA holds SOC 2 Type 2 certification.

Neither Consonus Healthcare nor IQVIA holds ISO 27001 certification.

Neither Consonus Healthcare nor IQVIA holds PCI DSS certification.

Neither Consonus Healthcare nor IQVIA holds HIPAA certification.

Neither Consonus Healthcare nor IQVIA holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

Improper validation of specified type of input in M365 Copilot allows an unauthorized attacker to disclose information over a network.

Risk Information
cvss3
Base: 9.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N
Description

Improper access control in Azure Front Door (AFD) allows an unauthorized attacker to elevate privileges over a network.

Risk Information
cvss3
Base: 9.8
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description

Azure Entra ID Elevation of Privilege Vulnerability

Risk Information
cvss3
Base: 9.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N
Description

Moonraker is a Python web server providing API access to Klipper 3D printing firmware. In versions 0.9.3 and below, instances configured with the "ldap" component enabled are vulnerable to LDAP search filter injection techniques via the login endpoint. The 401 error response message can be used to determine whether or not a search was successful, allowing for brute force methods to discover LDAP entries on the server such as user IDs and user attributes. This issue has been fixed in version 0.10.0.

Risk Information
cvss4
Base: 2.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Runtipi is a Docker-based, personal homeserver orchestrator that facilitates multiple services on a single server. Versions 3.7.0 and above allow an authenticated user to execute arbitrary system commands on the host server by injecting shell metacharacters into backup filenames. The BackupManager fails to sanitize the filenames of uploaded backups. The system persists user-uploaded files directly to the host filesystem using the raw originalname provided in the request. This allows an attacker to stage a file containing shell metacharacters (e.g., $(id).tar.gz) at a predictable path, which is later referenced during the restore process. The successful storage of the file is what allows the subsequent restore command to reference and execute it. This issue has been fixed in version 4.7.0.

Risk Information
cvss3
Base: 8.0
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H