Comparison Overview

IBM

VS

Conduent

IBM

International Business Machines Corp., New Orchard Road, Armonk, New York, NY, US, 10504
Last Update: 2025-12-09
Between 700 and 749

We don’t just imagine the future — we create it. We collaborate with technologists, developers and engineers to turn bold ideas into real-world impact. We partner with iconic brands like Ferrari and global events like the US Open, Wimbledon and The Masters to bring innovation to the world’s biggest stages and greatest fans. We work side-by-side with our clients, communities and even competitors to harness the power of AI, hybrid cloud and quantum computing — all to build a smarter, more efficient world. If you're fueled by curiosity and driven to make a difference, you'll feel right at home. Let’s create smarter business — together.

NAICS: 5415
NAICS Definition: Computer Systems Design and Related Services
Employees: 332,876
Subsidiaries: 14
12-month incidents
10
Known data breaches
3
Attack type number
3

Conduent

100 Campus Dr, None, Florham Park, New Jersey, US, 07932
Last Update: 2025-12-09
Between 0 and 549

Conduent delivers digital business solutions and services spanning the commercial, government and transportation spectrum – creating valuable outcomes for its clients and the millions of people who count on them. We leverage cloud computing, artificial intelligence, machine learning, automation and advanced analytics to deliver mission-critical solutions. Through a dedicated global team of approximately 55,000 associates, process expertise and advanced technologies, our solutions and services digitally transform our clients’ operations to enhance customer experiences, improve performance, increase efficiencies and reduce costs. We drive progress in every process for our client including disbursing approximately $100 billion in government payments annually, enabling 2.3 billion customer service interactions annually, empowering millions of employees through HR services every year and processing nearly 13 million tolling transactions every day. Learn more at www.conduent.com

NAICS: 5415
NAICS Definition: Computer Systems Design and Related Services
Employees: 36,834
Subsidiaries: 0
12-month incidents
4
Known data breaches
3
Attack type number
3

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/ibm.jpeg
IBM
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/conduent.jpeg
Conduent
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
IBM
100%
Compliance Rate
0/4 Standards Verified
Conduent
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs IT Services and IT Consulting Industry Average (This Year)

IBM has 1685.71% more incidents than the average of same-industry companies with at least one recorded incident.

Incidents vs IT Services and IT Consulting Industry Average (This Year)

Conduent has 614.29% more incidents than the average of same-industry companies with at least one recorded incident.

Incident History — IBM (X = Date, Y = Severity)

IBM cyber incidents detection timeline including parent company and subsidiaries

Incident History — Conduent (X = Date, Y = Severity)

Conduent cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/ibm.jpeg
IBM
Incidents

Date Detected: 11/2025
Type:Vulnerability
Blog: Blog

Date Detected: 10/2025
Type:Vulnerability
Blog: Blog

Date Detected: 9/2025
Type:Breach
Attack Vector: Phishing (Email), Vendor Scams, Credential Theft, Image-Based Phishing, Social Engineering
Blog: Blog
https://images.rankiteo.com/companyimages/conduent.jpeg
Conduent
Incidents

Date Detected: 11/2025
Type:Breach
Blog: Blog

Date Detected: 6/2025
Type:Breach
Motivation: Espionage (F5 source code theft), Financial gain (Conduent breach), Activism (hacktivist attacks on critical infrastructure)
Blog: Blog

Date Detected: 5/2025
Type:Ransomware
Motivation: Financial Gain, Data Theft
Blog: Blog

FAQ

IBM company demonstrates a stronger AI Cybersecurity Score compared to Conduent company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

IBM company has faced a higher number of disclosed cyber incidents historically compared to Conduent company.

In the current year, IBM company has reported more cyber incidents than Conduent company.

Conduent company has confirmed experiencing a ransomware attack, while IBM company has not reported such incidents publicly.

Both Conduent company and IBM company have disclosed experiencing at least one data breach.

Both Conduent company and IBM company have reported experiencing targeted cyberattacks.

IBM company has disclosed at least one vulnerability, while Conduent company has not reported such incidents publicly.

Neither IBM nor Conduent holds any compliance certifications.

Neither company holds any compliance certifications.

IBM company has more subsidiaries worldwide compared to Conduent company.

IBM company employs more people globally than Conduent company, reflecting its scale as a IT Services and IT Consulting.

Neither IBM nor Conduent holds SOC 2 Type 1 certification.

Neither IBM nor Conduent holds SOC 2 Type 2 certification.

Neither IBM nor Conduent holds ISO 27001 certification.

Neither IBM nor Conduent holds PCI DSS certification.

Neither IBM nor Conduent holds HIPAA certification.

Neither IBM nor Conduent holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

Tuleap is a free and open source suite for management of software development and collaboration. Versions of Tuleap Community Edition prior to 17.0.99.1763126988 and Tuleap Enterprise Edition prior to 17.0-3 and 16.13-8 have missing CSRF protections which allow attackers to create or remove tracker triggers. This issue is fixed in Tuleap Community Edition version 17.0.99.1763126988 and Tuleap Enterprise Edition versions 17.0-3 and 16.13-8.

Risk Information
cvss3
Base: 4.6
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:L
Description

Tuleap is a free and open source suite for management of software development and collaboration. Tuleap Community Editon versions prior to 17.0.99.1762456922 and Tuleap Enterprise Edition versions prior to 17.0-2, 16.13-7 and 16.12-10 are vulnerable to CSRF attacks through planning management API. Attackers have access to create, edit or remove plans. This issue is fixed in Tuleap Community Edition version 17.0.99.1762456922 and Tuleap Enterprise Edtion versions 17.0-2, 16.13-7 and 16.12-10.

Risk Information
cvss3
Base: 4.6
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:L
Description

Tuleap is an Open Source Suite for management of software development and collaboration. Tuleap Community Edition versions below 17.0.99.1762444754 and Tuleap Enterprise Edition versions prior to 17.0-2, 16.13-7 and 16.12-10 allow attackers trick victims into changing tracker general settings. This issue is fixed in version Tuleap Community Edition version 17.0.99.1762444754 and Tuleap Enterprise Edition versions 17.0-2, 16.13-7 and 16.12-10.

Risk Information
cvss3
Base: 4.6
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:L
Description

Tuleap is an Open Source Suite for management of software development and collaboration. Versions below 17.0.99.1762431347 of Tuleap Community Edition and Tuleap Enterprise Edition below 17.0-2, 16.13-7 and 16.12-10 allow attackers to access file release system information in projects they do not have access to. This issue is fixed in version 17.0.99.1762431347 of the Tuleap Community Edition and versions 17.0-2, 16.13-7 and 16.12-10 of Tuleap Enterprise Edition.

Risk Information
cvss3
Base: 6.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Description

IBM watsonx.data 2.2 through 2.2.1 could allow an authenticated user to cause a denial of service through ingestion pods due to improper allocation of resources without limits.

Risk Information
cvss3
Base: 6.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H