CIC A.I CyberSecurity Scoring
CIC
Company Information
Website:https://www.copperpoint.com
Employees number:881
Number of followers:13,120
NAICS:524
Industry Type:Insurance
Homepage:copperpoint.com
CIC Risk Score (AI oriented)
Between 700 and 749
CICInsurance
Updated:
29/03/2026
29/03/2026
729/1000
Moderate
Ba
CIC Global Score (TPRM)
xxxx
CICInsurance
Score locked

CICModerate
Current Score
729Ba (MODERATE)
01000
1 incidents
0 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
SEPTEMBER 2026
732
AUGUST 2026
731
JULY 2026
731
JUNE 2026
731
MAY 2026
730
APRIL 2026
729
MARCH 2026
729
FEBRUARY 2026
729
JANUARY 2026
728
DECEMBER 2025
731
NOVEMBER 2025
731
OCTOBER 2025
730
JANUARY 2021
756
Breach
08 Jan 2021 • CIC
CopperPoint Insurance Company
Data Breach at CopperPoint Insurance Company, Pacific Compensation Insurance Company, and Alaska National Insurance
671
HIGH-85
COP1014090725
The Maine Office of the Attorney General disclosed a data breach affecting CopperPoint Insurance Company (alongside affiliated entities) on November 9, 2021, though the incident was initially detected on July 22, 2021. The breach stemmed from unauthorized access to employee email accounts, compromising sensitive data. The exposed information primarily included Social Security Numbers (SSNs), impacting 38,653 individuals, of which at least 2 were Maine residents. The breach highlights vulnerabilities in email security protocols, enabling attackers to infiltrate systems and exfiltrate personally identifiable information (PII). While the exact method of unauthorized access (e.g., phishing, credential stuffing) was not specified, the exposure of SSNs poses significant risks, including identity theft, financial fraud, and long-term reputational damage for affected individuals. The company likely faced regulatory scrutiny under state data protection laws, necessitating breach notifications, credit monitoring for victims, and potential fines. The incident underscores the critical need for robust email security measures, such as multi-factor authentication (MFA), employee cybersecurity training, and continuous monitoring to prevent similar exploits. The delayed public disclosure (nearly 4 months after detection) may further erode trust in the company’s transparency and incident response capabilities.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for CIC ??
What was CIC's A.I Rankiteo Cyber Score in August 2026 ??
What was CIC's A.I Rankiteo Cyber Score in July 2026 ??
What was CIC's A.I Rankiteo Cyber Score in June 2026 ??
What was CIC's A.I Rankiteo Cyber Score in May 2026 ??
What was CIC's A.I Rankiteo Cyber Score in April 2026 ??
What was CIC's A.I Rankiteo Cyber Score in March 2026 ??
What was CIC's A.I Rankiteo Cyber Score in February 2026 ??
What was CIC's A.I Rankiteo Cyber Score in January 2026 ??
What was CIC's A.I Rankiteo Cyber Score in December 2025 ??
What was CIC's A.I Rankiteo Cyber Score in November 2025 ??
What was CIC's A.I Rankiteo Cyber Score in October 2025 ??
What is the average per-incident point impact on CIC's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with CIC ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view CIC's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?