Comparison Overview

East Tennessee Children's Hospital

VS

BrightSpring Health Services

East Tennessee Children's Hospital

2018 W Clinch Ave, None, Knoxville, TN, US, 37916
Last Update: 2025-11-27
Between 700 and 749

East Tennessee Children’s Hospital’s vision is Leading the Way to Healthy Children. Children’s Hospital is a free-standing, independent, not-for-profit pediatric health care system which serves the East Tennessee region. Children’s Hospital is certified by the state of Tennessee as a Comprehensive Regional Pediatric Center.

NAICS: 62
NAICS Definition: Health Care and Social Assistance
Employees: 1,164
Subsidiaries: 1
12-month incidents
0
Known data breaches
1
Attack type number
2

BrightSpring Health Services

805 N Whittington Pkwy, Louisville, Kentucky, US, 40222
Last Update: 2025-11-28

BrightSpring is the parent company of a family of services and brands that provides clinical, nonclinical, pharmacy and ancillary care services for people of all ages, health and skill levels across home and community settings. The company is a leading provider of diversified home and community-based health and pharmacy services to medically complex and high-need populations. Its primary businesses include: behavioral health (including autism services), home health care (including personal care, home health, and hospice), neuro therapy, and job placement and vocational training, supported by pharmacy and telecare ancillary technologies and services. These businesses employ over 37,000 dedicated full-time equivalent team members in 50 states and provide services for over 350,000 people every day. BrightSpring is focused on providing quality outcomes and solutions through best-in-class services and investments in people, process and technology innovation, including the development of its Connected Home model of care. Founded and headquartered in Louisville, Kentucky, the company has been making a difference in communities since 1974 – helping people live their best life.

NAICS: 62
NAICS Definition: Health Care and Social Assistance
Employees: 11,701
Subsidiaries: 0
12-month incidents
0
Known data breaches
2
Attack type number
1

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/east-tennessee-children's-hospital.jpeg
East Tennessee Children's Hospital
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/brightspringhealth.jpeg
BrightSpring Health Services
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
East Tennessee Children's Hospital
100%
Compliance Rate
0/4 Standards Verified
BrightSpring Health Services
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Hospitals and Health Care Industry Average (This Year)

No incidents recorded for East Tennessee Children's Hospital in 2025.

Incidents vs Hospitals and Health Care Industry Average (This Year)

No incidents recorded for BrightSpring Health Services in 2025.

Incident History — East Tennessee Children's Hospital (X = Date, Y = Severity)

East Tennessee Children's Hospital cyber incidents detection timeline including parent company and subsidiaries

Incident History — BrightSpring Health Services (X = Date, Y = Severity)

BrightSpring Health Services cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/east-tennessee-children's-hospital.jpeg
East Tennessee Children's Hospital
Incidents

Date Detected: 3/2022
Type:Breach
Attack Vector: Hacking
Blog: Blog

Date Detected: 3/2022
Type:Cyber Attack
Blog: Blog
https://images.rankiteo.com/companyimages/brightspringhealth.jpeg
BrightSpring Health Services
Incidents

Date Detected: 3/2023
Type:Breach
Blog: Blog

Date Detected: 3/2023
Type:Breach
Attack Vector: Hacking
Blog: Blog

FAQ

East Tennessee Children's Hospital company demonstrates a stronger AI Cybersecurity Score compared to BrightSpring Health Services company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

East Tennessee Children's Hospital and BrightSpring Health Services have experienced a similar number of publicly disclosed cyber incidents.

In the current year, BrightSpring Health Services company and East Tennessee Children's Hospital company have not reported any cyber incidents.

Neither BrightSpring Health Services company nor East Tennessee Children's Hospital company has reported experiencing a ransomware attack publicly.

Both BrightSpring Health Services company and East Tennessee Children's Hospital company have disclosed experiencing at least one data breach.

East Tennessee Children's Hospital company has reported targeted cyberattacks, while BrightSpring Health Services company has not reported such incidents publicly.

Neither East Tennessee Children's Hospital company nor BrightSpring Health Services company has reported experiencing or disclosing vulnerabilities publicly.

Neither East Tennessee Children's Hospital nor BrightSpring Health Services holds any compliance certifications.

Neither company holds any compliance certifications.

East Tennessee Children's Hospital company has more subsidiaries worldwide compared to BrightSpring Health Services company.

BrightSpring Health Services company employs more people globally than East Tennessee Children's Hospital company, reflecting its scale as a Hospitals and Health Care.

Neither East Tennessee Children's Hospital nor BrightSpring Health Services holds SOC 2 Type 1 certification.

Neither East Tennessee Children's Hospital nor BrightSpring Health Services holds SOC 2 Type 2 certification.

Neither East Tennessee Children's Hospital nor BrightSpring Health Services holds ISO 27001 certification.

Neither East Tennessee Children's Hospital nor BrightSpring Health Services holds PCI DSS certification.

Neither East Tennessee Children's Hospital nor BrightSpring Health Services holds HIPAA certification.

Neither East Tennessee Children's Hospital nor BrightSpring Health Services holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

Exposure of credentials in unintended requests in Devolutions Server, Remote Desktop Manager on Windows.This issue affects Devolutions Server: through 2025.3.8.0; Remote Desktop Manager: through 2025.3.23.0.

Risk Information
cvss3
Base: 6.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Description

Out-of-bounds memory operations in org.lz4:lz4-java 1.8.0 and earlier allow remote attackers to cause denial of service and read adjacent memory via untrusted compressed input.

Risk Information
cvss4
Base: 8.8
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Reveals plaintext credentials in the MONITOR command vulnerability in Apache Kvrocks. This issue affects Apache Kvrocks: from 1.0.0 through 2.13.0. Users are recommended to upgrade to version 2.14.0, which fixes the issue.

Risk Information
cvss3
Base: 5.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Description

Improper Privilege Management vulnerability in Apache Kvrocks. This issue affects Apache Kvrocks: from v2.9.0 through v2.13.0. Users are recommended to upgrade to version 2.14.0, which fixes the issue.

Risk Information
cvss3
Base: 5.4
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Description

File upload vulnerability in HCL Technologies Ltd. Unica 12.0.0.

Risk Information
cvss3
Base: 6.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L