Comparison Overview

Franciscan Physician Network

VS

UCSF Health

Franciscan Physician Network

Franciscan Alliance -, Mishawaka, US
Last Update: 2025-12-10

BRING YOUR PASSION TO FRANCISCAN PHYSICIAN NETWORK The time is right; Franciscan Physician Network is recruiting dynamic professionals like you. It takes more than just knowledge to be a part of our team. It takes caring, commitment and a strong passion for what you do. We recognize our staff is our biggest asset and a critical component to ensuring exceptional patient care. Our success is achieved by recruiting dedicated professionals, like you, who are focused on providing quality health care as part of our patient-centered, faith-based mission. Join our exceptional team and discover a strong family atmosphere where you will feel valued and have the opportunity to collaborate with like-minded co-workers who are passionate about what they do. Franciscan Physician Network is a physician's network associated with Franciscan Alliance. Our network consists of health care centers covering four regions throughout the state of Indiana, South Suburban Chicago and South West Michigan.

NAICS: 62
NAICS Definition: Health Care and Social Assistance
Employees: 545
Subsidiaries: 1
12-month incidents
0
Known data breaches
0
Attack type number
1

UCSF Health

505 Parnassus Avenue, San Francisco, CA, US, 94143
Last Update: 2025-12-11
Between 700 and 749

UCSF Health is an integrated health care network encompassing several entities, including UCSF Medical Center, one of the nation’s top 10 hospitals according to U.S. News & World Report, and UCSF Benioff Children’s Hospitals, with campuses in Oakland and San Francisco. We are recognized throughout the world for our innovative patient care, advanced technology and pioneering research. For more than a century, we have offered the highest quality medical treatment. Today, our expertise covers virtually all specialties, from cancer to women's health. In addition, the compassionate care provided by our doctors, nurses and other staff is a key to our success. Our services generate about 1.1 million patient visits to our clinics a year and $3.2 billion in annual revenue. We have 12,000 employees and dozens of locations throughout San Francisco as well as outreach clinics throughout Northern California and beyond.

NAICS: 62
NAICS Definition: Health Care and Social Assistance
Employees: 11,229
Subsidiaries: 0
12-month incidents
0
Known data breaches
2
Attack type number
2

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/franciscan-physician-network.jpeg
Franciscan Physician Network
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/ucsfhealth.jpeg
UCSF Health
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Franciscan Physician Network
100%
Compliance Rate
0/4 Standards Verified
UCSF Health
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Hospitals and Health Care Industry Average (This Year)

No incidents recorded for Franciscan Physician Network in 2025.

Incidents vs Hospitals and Health Care Industry Average (This Year)

No incidents recorded for UCSF Health in 2025.

Incident History — Franciscan Physician Network (X = Date, Y = Severity)

Franciscan Physician Network cyber incidents detection timeline including parent company and subsidiaries

Incident History — UCSF Health (X = Date, Y = Severity)

UCSF Health cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/franciscan-physician-network.jpeg
Franciscan Physician Network
Incidents

Date Detected: 6/2010
Type:Data Leak
Blog: Blog
https://images.rankiteo.com/companyimages/ucsfhealth.jpeg
UCSF Health
Incidents

Date Detected: 2/2023
Type:Breach
Attack Vector: Phishing
Blog: Blog

Date Detected: 6/2020
Type:Ransomware
Blog: Blog

Date Detected: 9/2013
Type:Breach
Attack Vector: Physical Theft
Motivation: Unknown
Blog: Blog

FAQ

Franciscan Physician Network company demonstrates a stronger AI Cybersecurity Score compared to UCSF Health company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

UCSF Health company has faced a higher number of disclosed cyber incidents historically compared to Franciscan Physician Network company.

In the current year, UCSF Health company and Franciscan Physician Network company have not reported any cyber incidents.

UCSF Health company has confirmed experiencing a ransomware attack, while Franciscan Physician Network company has not reported such incidents publicly.

UCSF Health company has disclosed at least one data breach, while Franciscan Physician Network company has not reported such incidents publicly.

Neither UCSF Health company nor Franciscan Physician Network company has reported experiencing targeted cyberattacks publicly.

Neither Franciscan Physician Network company nor UCSF Health company has reported experiencing or disclosing vulnerabilities publicly.

Neither Franciscan Physician Network nor UCSF Health holds any compliance certifications.

Neither company holds any compliance certifications.

Franciscan Physician Network company has more subsidiaries worldwide compared to UCSF Health company.

UCSF Health company employs more people globally than Franciscan Physician Network company, reflecting its scale as a Hospitals and Health Care.

Neither Franciscan Physician Network nor UCSF Health holds SOC 2 Type 1 certification.

Neither Franciscan Physician Network nor UCSF Health holds SOC 2 Type 2 certification.

Neither Franciscan Physician Network nor UCSF Health holds ISO 27001 certification.

Neither Franciscan Physician Network nor UCSF Health holds PCI DSS certification.

Neither Franciscan Physician Network nor UCSF Health holds HIPAA certification.

Neither Franciscan Physician Network nor UCSF Health holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

NXLog Agent before 6.11 can load a file specified by the OPENSSL_CONF environment variable.

Risk Information
cvss3
Base: 8.1
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Description

uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.

Risk Information
cvss3
Base: 2.9
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Description

A vulnerability was detected in Mayan EDMS up to 4.10.1. The affected element is an unknown function of the file /authentication/. The manipulation results in cross site scripting. The attack may be performed from remote. The exploit is now public and may be used. Upgrading to version 4.10.2 is sufficient to fix this issue. You should upgrade the affected component. The vendor confirms that this is "[f]ixed in version 4.10.2". Furthermore, that "[b]ackports for older versions in process and will be out as soon as their respective CI pipelines complete."

Risk Information
cvss2
Base: 5.0
Severity: LOW
AV:N/AC:L/Au:N/C:N/I:P/A:N
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

MJML through 4.18.0 allows mj-include directory traversal to test file existence and (in the type="css" case) read files. NOTE: this issue exists because of an incomplete fix for CVE-2020-12827.

Risk Information
cvss3
Base: 4.5
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:L
Description

A half-blind Server Side Request Forgery (SSRF) vulnerability exists in kube-controller-manager when using the in-tree Portworx StorageClass. This vulnerability allows authorized users to leak arbitrary information from unprotected endpoints in the control plane’s host network (including link-local or loopback services).

Risk Information
cvss3
Base: 5.8
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N