Company Details
engage-direct
47
380
561
engageusa.com
0
ENG_3182854
In-progress

Engage USA Company CyberSecurity Posture
engageusa.comEngage USA is a best in class commercial lockbox specializing in caging and intelligent data capture for non profit fundraisers. Our proprietary systems capture and verify data on the fly allowing us to output remarkably accurate data and deposits the next business day. Engage has been recognized on Inc. Magazine's list of the fastest growing private companies in America four times.
Company Details
engage-direct
47
380
561
engageusa.com
0
ENG_3182854
In-progress
Between 750 and 799

Engage USA Global Score (TPRM)XXXX



No incidents recorded for Engage USA in 2025.
No incidents recorded for Engage USA in 2025.
No incidents recorded for Engage USA in 2025.
Engage USA cyber incidents detection timeline including parent company and subsidiaries

Engage USA is a best in class commercial lockbox specializing in caging and intelligent data capture for non profit fundraisers. Our proprietary systems capture and verify data on the fly allowing us to output remarkably accurate data and deposits the next business day. Engage has been recognized on Inc. Magazine's list of the fastest growing private companies in America four times.


Brakeley Briscoe a full-service, nonprofit consulting company meets clients where they are and helps them solve their current and future needs. Our consultants combine hundreds of years of experience as consultants, chief development officers, and nonprofit executives. We have been there, experience

The KSU Foundation is K-State's strategic partner for philanthropy. We inspire and guide philanthropy toward university priorities to boldly advance K-State. Foundation staff members work in close partnership with university administrators, deans and faculty to secure charitable contributions from

Donately is a cause leader’s best friend. We love our customers because they are dedicated risk-takers, change makers, and problem-solvers. After building hundreds of websites, we understand that simplicity is the key to how causes tell their stories that people rally around. We saw that our client

mycause is Australia’s award winning premier online fundraising community. Founded in 2007 mycause has since raised tens of millions of dollars for 1500+ Australian member charities, and people in need. Our goal is to be the leaders in the online fundraising, donations and crowdfunding sector, by

Our mission is to make YOUR Mission Possible. We do this through designing nonprofit solutions that meet your budget, your client needs and the needs of your community. Established in 2005, Mission Possible Nonprofit Solutions provides fundraising counsel, renewed focus on organizational mission

North Clwyd Animal Rescue (NCAR) is a registered charity founded in 1978 by Anne Owen. From one thin little Lurcher, we now care for over 1800 domestic pets a year. We have grown to meet these new demands and with the current economic situation these services are vital for the wider community. Nort
.png)
The Cybersecurity and Infrastructure Security Agency doesn't want to leave companies hanging when they reach out to CISA with an important...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) launched a new Industry Engagement Platform (IEP) to enhance communication...
The Security of Critical Infrastructure Act 2018 (SOCI Act) is a principles-based framework that was introduced to strengthen...
The latest round of sweeping layoffs could hamper the business community's collaboration with the beleaguered cyber agency.
The National Cyber Security Coordinator, together with the National Office of Cyber Security, will drive forward the necessary work to...
Dubai: The US–UAE Business Council has hosted a high-level delegation of Chief AI Officers from UAE government entities as part of an...
ll. I participated as an expert witness alongside Professor Katsunari Yoshioka of Yokohama National University, Professor Masahiro Kurosaki...
The review concludes Australia's AML/CTF regime remains relevant and appropriate but identifies opportunities to minimise red tape.
The Australian Government released the 2023-2030 Australian Cyber Security Strategy on 21 November 2023 (the Strategy). The Strategy sets up a framework...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Engage USA is http://www.EngageUSA.com.
According to Rankiteo, Engage USA’s AI-generated cybersecurity score is 759, reflecting their Fair security posture.
According to Rankiteo, Engage USA currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Engage USA is not certified under SOC 2 Type 1.
According to Rankiteo, Engage USA does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Engage USA is not listed as GDPR compliant.
According to Rankiteo, Engage USA does not currently maintain PCI DSS compliance.
According to Rankiteo, Engage USA is not compliant with HIPAA regulations.
According to Rankiteo,Engage USA is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Engage USA operates primarily in the Fundraising industry.
Engage USA employs approximately 47 people worldwide.
Engage USA presently has no subsidiaries across any sectors.
Engage USA’s official LinkedIn profile has approximately 380 followers.
No, Engage USA does not have a profile on Crunchbase.
Yes, Engage USA maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/engage-direct.
As of December 21, 2025, Rankiteo reports that Engage USA has not experienced any cybersecurity incidents.
Engage USA has an estimated 1,146 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, Engage USA has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
Versa SASE Client for Windows versions released between 7.8.7 and 7.9.4 contain a local privilege escalation vulnerability in the audit log export functionality. The client communicates user-controlled file paths to a privileged service, which performs file system operations without impersonating the requesting user. Due to improper privilege handling and a time-of-check time-of-use race condition combined with symbolic link and mount point manipulation, a local authenticated attacker can coerce the service into deleting arbitrary directories with SYSTEM privileges. This can be exploited to delete protected system folders such as C:\\Config.msi and subsequently achieve execution as NT AUTHORITY\\SYSTEM via MSI rollback techniques.
The WP JobHunt plugin for WordPress, used by the JobCareer theme, is vulnerable to unauthorized modification of data due to a missing capability check on the 'cs_update_application_status_callback' function in all versions up to, and including, 7.7. This makes it possible for authenticated attackers, with Candidate-level access and above, to inject cross-site scripting into the 'status' parameter of applied jobs for any user.
The WP JobHunt plugin for WordPress, used by the JobCareer theme, is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 7.7 via the 'cs_update_application_status_callback' due to missing validation on a user controlled key. This makes it possible for authenticated attackers, with Candidate-level access and above, to send a site-generated email with injected HTML to any user.
The FiboSearch – Ajax Search for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's `thegem_te_search` shortcode in all versions up to, and including, 1.32.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This vulnerability requires TheGem theme (premium) to be installed with Header Builder mode enabled, and the FiboSearch "Replace search bars" option enabled for TheGem integration.
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.11.0 via the ajax_get_members function. This is due to the use of a predictable low-entropy token (5 hex characters derived from md5 of post ID) to identify member directories and insufficient authorization checks on the unauthenticated AJAX endpoint. This makes it possible for unauthenticated attackers to extract sensitive data including usernames, display names, user roles (including administrator accounts), profile URLs, and user IDs by enumerating predictable directory_id values or brute-forcing the small 16^5 token space.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.