Comparison Overview

Elsevier

VS

Hexaware Technologies

Elsevier

Radarweg 29, Amsterdam, North Holland, 1043, NL
Last Update: 2025-12-09
Between 750 and 799

As a global leader in information and analytics, Elsevier helps researchers and healthcare professionals advance science and improve health outcomes for the benefit of society. We do this by facilitating insights and critical decision-making for customers across the global research and health ecosystems. In everything we publish, we uphold the highest standards of quality and integrity. We bring that same rigor to our information analytics solutions for researchers, health professionals, institutions and funders. Elsevier employs 8,700 people worldwide. We have supported the work of our research and health partners for more than 140 years. Growing from our roots in publishing, we offer knowledge and valuable analytics that help our users make breakthroughs and drive societal progress. With the Elsevier Foundation and our external Inclusion & Diversity Advisory Board, we work in partnership with diverse stakeholders to advance inclusion and diversity in science, research and healthcare in developing countries and around the world.

NAICS: 5415
NAICS Definition: Computer Systems Design and Related Services
Employees: 11,962
Subsidiaries: 1
12-month incidents
0
Known data breaches
0
Attack type number
1

Hexaware Technologies

#1, Sector III, Millennium Business Park,, 'A'​ Block , TTC Industrial Estate, Mahape,, Navi Mumbai, Maharashtra, IN, 400710
Last Update: 2025-12-09
Between 750 and 799

At Hexaware, we're not just a global technology and business process services company; we're a community of 31,600+ Hexawarians dedicated to one singular purpose: creating smiles through the power of great people and technology. With a presence in 58 offices across 28 countries, we empower enterprises worldwide to embark on their digital transformation journey with unparalleled scale and speed. As an employer, we're more than just a workplace. We put our people first, foster diversity and inclusivity, and prioritize their growth through robust learning and development programs. Our culture is a canvas for innovation as we work toward our shared vision of becoming the world’s most loved digital transformation partner. Exciting, isn’t it? Visit www.hexaware.com to join us in embracing the magic of technology, as we passionately advocate for its potential to transform lives today and shape a brighter future. Together, we'll make the digital world a better place.

NAICS: 5415
NAICS Definition: Computer Systems Design and Related Services
Employees: 33,909
Subsidiaries: 4
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/elsevier.jpeg
Elsevier
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/hexaware-technologies.jpeg
Hexaware Technologies
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Elsevier
100%
Compliance Rate
0/4 Standards Verified
Hexaware Technologies
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs IT Services and IT Consulting Industry Average (This Year)

No incidents recorded for Elsevier in 2025.

Incidents vs IT Services and IT Consulting Industry Average (This Year)

No incidents recorded for Hexaware Technologies in 2025.

Incident History — Elsevier (X = Date, Y = Severity)

Elsevier cyber incidents detection timeline including parent company and subsidiaries

Incident History — Hexaware Technologies (X = Date, Y = Severity)

Hexaware Technologies cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/elsevier.jpeg
Elsevier
Incidents

Date Detected: 03/2019
Type:Data Leak
Attack Vector: Open Server
Blog: Blog
https://images.rankiteo.com/companyimages/hexaware-technologies.jpeg
Hexaware Technologies
Incidents

No Incident

FAQ

Elsevier company demonstrates a stronger AI Cybersecurity Score compared to Hexaware Technologies company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Elsevier company has historically faced a number of disclosed cyber incidents, whereas Hexaware Technologies company has not reported any.

In the current year, Hexaware Technologies company and Elsevier company have not reported any cyber incidents.

Neither Hexaware Technologies company nor Elsevier company has reported experiencing a ransomware attack publicly.

Neither Hexaware Technologies company nor Elsevier company has reported experiencing a data breach publicly.

Neither Hexaware Technologies company nor Elsevier company has reported experiencing targeted cyberattacks publicly.

Neither Elsevier company nor Hexaware Technologies company has reported experiencing or disclosing vulnerabilities publicly.

Neither Elsevier nor Hexaware Technologies holds any compliance certifications.

Neither company holds any compliance certifications.

Hexaware Technologies company has more subsidiaries worldwide compared to Elsevier company.

Hexaware Technologies company employs more people globally than Elsevier company, reflecting its scale as a IT Services and IT Consulting.

Neither Elsevier nor Hexaware Technologies holds SOC 2 Type 1 certification.

Neither Elsevier nor Hexaware Technologies holds SOC 2 Type 2 certification.

Neither Elsevier nor Hexaware Technologies holds ISO 27001 certification.

Neither Elsevier nor Hexaware Technologies holds PCI DSS certification.

Neither Elsevier nor Hexaware Technologies holds HIPAA certification.

Neither Elsevier nor Hexaware Technologies holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

NXLog Agent before 6.11 can load a file specified by the OPENSSL_CONF environment variable.

Risk Information
cvss3
Base: 8.1
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Description

uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.

Risk Information
cvss3
Base: 2.9
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Description

A vulnerability was detected in Mayan EDMS up to 4.10.1. The affected element is an unknown function of the file /authentication/. The manipulation results in cross site scripting. The attack may be performed from remote. The exploit is now public and may be used. Upgrading to version 4.10.2 is sufficient to fix this issue. You should upgrade the affected component. The vendor confirms that this is "[f]ixed in version 4.10.2". Furthermore, that "[b]ackports for older versions in process and will be out as soon as their respective CI pipelines complete."

Risk Information
cvss2
Base: 5.0
Severity: LOW
AV:N/AC:L/Au:N/C:N/I:P/A:N
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

MJML through 4.18.0 allows mj-include directory traversal to test file existence and (in the type="css" case) read files. NOTE: this issue exists because of an incomplete fix for CVE-2020-12827.

Risk Information
cvss3
Base: 4.5
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:L
Description

A half-blind Server Side Request Forgery (SSRF) vulnerability exists in kube-controller-manager when using the in-tree Portworx StorageClass. This vulnerability allows authorized users to leak arbitrary information from unprotected endpoints in the control plane’s host network (including link-local or loopback services).

Risk Information
cvss3
Base: 5.8
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N