Comparison Overview

O&M Halyard

VS

Hospital for Special Surgery

O&M Halyard

1220 Old Alpharetta Road, Suite 320, Alpharetta, Georgia, 30005, US
Last Update: 2025-12-17
Between 700 and 749

HALYARD*, part of the Owens & Minor family, is focused on moving care forward. Our portfolio of market-leading brands includes HALYARD*, MediChoice®, and Medical Action® which are sold in more than 90 countries. The broad HALYARD* portfolio offers the right product for each need, backed by best-in-class clinical expertise and more support at points of care. Our product standardization opportunities combined with supply chain expertise help drive efficiencies and protect healthcare providers from risks and disruptions in care. HALYARD* sells its recognized sterilization wrap, facial protection, gloves, protective apparel, surgical drapes and gowns in more than 100 countries, and holds leading market positions across the portfolio. For more information, visit www.halyardhealth.com.

NAICS: 62
NAICS Definition: Health Care and Social Assistance
Employees: 744
Subsidiaries: 3
12-month incidents
0
Known data breaches
1
Attack type number
1

Hospital for Special Surgery

535 East 70th Street, New York, NY, US, 10021
Last Update: 2025-12-17
Between 750 and 799

HSS is the world’s leading academic medical center focused on musculoskeletal health. At its core is Hospital for Special Surgery, nationally ranked No. 1 in orthopedics (for the 16th consecutive year), No. 3 in rheumatology by U.S. News & World Report (2025-2026), and the best pediatric orthopedic hospital in NY, NJ and CT by U.S. News & World Report “Best Children’s Hospitals” list (2024-2025). In a survey of medical professionals in more than 20 countries by Newsweek, HSS is ranked world #1 in orthopedics for a fifth consecutive year (2025). Founded in 1863, the Hospital has the lowest readmission rates in the nation for orthopedics, and among the lowest infection and complication rates. HSS was the first in New York State to receive Magnet Recognition for Excellence in Nursing Service from the American Nurses Credentialing Center five consecutive times. An affiliate of Weill Cornell Medical College, HSS has a main campus in New York City and facilities in New Jersey, Connecticut and in the Long Island and Westchester County regions of New York State, as well as in Florida.

NAICS: 62
NAICS Definition: Health Care and Social Assistance
Employees: 16,214
Subsidiaries: 3
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/halyard-health.jpeg
O&M Halyard
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/hospital-for-special-surgery.jpeg
Hospital for Special Surgery
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
O&M Halyard
100%
Compliance Rate
0/4 Standards Verified
Hospital for Special Surgery
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Hospitals and Health Care Industry Average (This Year)

No incidents recorded for O&M Halyard in 2025.

Incidents vs Hospitals and Health Care Industry Average (This Year)

No incidents recorded for Hospital for Special Surgery in 2025.

Incident History — O&M Halyard (X = Date, Y = Severity)

O&M Halyard cyber incidents detection timeline including parent company and subsidiaries

Incident History — Hospital for Special Surgery (X = Date, Y = Severity)

Hospital for Special Surgery cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/halyard-health.jpeg
O&M Halyard
Incidents

Date Detected: 9/2024
Type:Breach
Blog: Blog
https://images.rankiteo.com/companyimages/hospital-for-special-surgery.jpeg
Hospital for Special Surgery
Incidents

No Incident

FAQ

Hospital for Special Surgery company demonstrates a stronger AI Cybersecurity Score compared to O&M Halyard company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

O&M Halyard company has historically faced a number of disclosed cyber incidents, whereas Hospital for Special Surgery company has not reported any.

In the current year, Hospital for Special Surgery company and O&M Halyard company have not reported any cyber incidents.

Neither Hospital for Special Surgery company nor O&M Halyard company has reported experiencing a ransomware attack publicly.

O&M Halyard company has disclosed at least one data breach, while the other Hospital for Special Surgery company has not reported such incidents publicly.

Neither Hospital for Special Surgery company nor O&M Halyard company has reported experiencing targeted cyberattacks publicly.

Neither O&M Halyard company nor Hospital for Special Surgery company has reported experiencing or disclosing vulnerabilities publicly.

Neither O&M Halyard nor Hospital for Special Surgery holds any compliance certifications.

Neither company holds any compliance certifications.

Both Hospital for Special Surgery company and O&M Halyard company have a similar number of subsidiaries worldwide.

Hospital for Special Surgery company employs more people globally than O&M Halyard company, reflecting its scale as a Hospitals and Health Care.

Neither O&M Halyard nor Hospital for Special Surgery holds SOC 2 Type 1 certification.

Neither O&M Halyard nor Hospital for Special Surgery holds SOC 2 Type 2 certification.

Neither O&M Halyard nor Hospital for Special Surgery holds ISO 27001 certification.

Neither O&M Halyard nor Hospital for Special Surgery holds PCI DSS certification.

Neither O&M Halyard nor Hospital for Special Surgery holds HIPAA certification.

Neither O&M Halyard nor Hospital for Special Surgery holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

A vulnerability has been found in SeaCMS up to 13.3. The affected element is an unknown function of the file js/player/dmplayer/dmku/class/mysqli.class.php. Such manipulation of the argument page/limit leads to sql injection. The attack can be executed remotely. The exploit has been disclosed to the public and may be used.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in HappyDevs TempTool allows Stored XSS.This issue affects TempTool: from n/a through 1.3.1.

Risk Information
cvss3
Base: 6.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Description

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tormorten WP Microdata allows Stored XSS.This issue affects WP Microdata: from n/a through 1.0.

Risk Information
cvss3
Base: 6.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Description

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in HappyDevs TempTool allows Retrieve Embedded Sensitive Data.This issue affects TempTool: from n/a through 1.3.1.

Risk Information
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Description

A vulnerability has been found in Tenda FH1201 1.2.0.14(408). Affected is the function sprintf of the file /goform/SetIpBind. Such manipulation of the argument page leads to stack-based buffer overflow. The attack may be performed from remote. The exploit has been disclosed to the public and may be used.

Risk Information
cvss2
Base: 9.0
Severity: LOW
AV:N/AC:L/Au:S/C:C/I:C/A:C
cvss3
Base: 8.8
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
cvss4
Base: 7.4
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X