Company Details
imi-cci
3,685
27,201
None
imiplc.com
0
IMI_2998644
In-progress

IMI CCI Company CyberSecurity Posture
imiplc.comWe are a global specialist engineering company that creates breakthrough solutions. We are curious and like to solve problems, partnering with our customers to solve the demands of today and prepare for the challenges of tomorrow. We embrace innovation and care about outcomes that are good for business, everyday life and making a better world – creating lasting impact for everyone. IMI is a leading provider of critical flow control technologies across the nuclear, power, and oil & gas industries for over five decades. We have the design, manufacturing, commercial, and aftermarket expertise to provide tailored valve solutions for extreme operating environments. We are able to deploy our bespoke engineering expertise to maximize system performance and customer profit. Customers can also benefit from our Valve Doctor® program. Valve Doctors® are our most experienced experts available to help prevent or cure valve problems for customers. IMI Valve Doctors® have decades of practical experience, plus the latest technical training, to help customers minimize downtime and maximize productivity and profitability. Please visit www.imi-critical.com to learn more.
Company Details
imi-cci
3,685
27,201
None
imiplc.com
0
IMI_2998644
In-progress
Between 750 and 799

IMI CCI Global Score (TPRM)XXXX



No incidents recorded for IMI CCI in 2025.
No incidents recorded for IMI CCI in 2025.
No incidents recorded for IMI CCI in 2025.
IMI CCI cyber incidents detection timeline including parent company and subsidiaries

We are a global specialist engineering company that creates breakthrough solutions. We are curious and like to solve problems, partnering with our customers to solve the demands of today and prepare for the challenges of tomorrow. We embrace innovation and care about outcomes that are good for business, everyday life and making a better world – creating lasting impact for everyone. IMI is a leading provider of critical flow control technologies across the nuclear, power, and oil & gas industries for over five decades. We have the design, manufacturing, commercial, and aftermarket expertise to provide tailored valve solutions for extreme operating environments. We are able to deploy our bespoke engineering expertise to maximize system performance and customer profit. Customers can also benefit from our Valve Doctor® program. Valve Doctors® are our most experienced experts available to help prevent or cure valve problems for customers. IMI Valve Doctors® have decades of practical experience, plus the latest technical training, to help customers minimize downtime and maximize productivity and profitability. Please visit www.imi-critical.com to learn more.


Dalkopak specializes in manufacturing of weldments, tube bending and machining. The company was founded in 2012 from a joint venture between Dalkotech and Eco-Pak. They mutually share 50 years of combined industry experience in welded elements manufacturing, sub-assembly preparation and packaging

Helipebs Controls designs, manufactures and supports world class Hydraulic Cylinders, Pneumatic Cylinders, Servo Actuators and Hydraulic Systems. We are award winning, market leaders in the application of hydraulic cylinder and pneumatic cylinder technology, providing products to some of the most

The apt Group provides mechanical and electrical engineering solutions to a broad range of industries throughout Australasia, including Mining & Construction, Energy, Metals, Pulp & Paper, Food & Beverage, Transport, FM and OEM’s. Specialising in machine condition monitoring, our team of experts

History Of TACH: Established in 1987, TACH was started by Mr. A.P. Singhal (BTech, IIT Delhi) as one of the most dependable link between the machine manufacturers and the customer throughout the world. 21st Century TACH: Today, TACH represents a vibrant group of people with exceptional engi

YOUR TEST AND EVALUATION DEPARTMENT. ANYWHERE, ANYTIME. Cetest is a fully accredited independent test laboratory offering services for design verification, model validation, developmental testing and/or answers to help you identify failure root causes. Structural integrity and fatigue testing,
API Heat Transfer has successfully established itself as the market leader in innovative and energy efficient equipment. Our 130-year heritage has been dedicated to designing and delivering world-class heat transfer products for almost every industry. Our reputation is bolstered by our worldwide net
.png)
Top British engineering company IMI has confirmed suffering a cyberattack, filing a new report with the London Stock Exchange.
IMI plc, a renowned engineering company, is currently dealing with a cybersecurity incident involving unauthorized access to its systems.
FTSE 100 firm IMI has isolated certain systems while it deals with the hack and is working with externally-hired cybersecurity specialists.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of IMI CCI is https://processautomation.imiplc.com/about-us/brands/imi-cci.
According to Rankiteo, IMI CCI’s AI-generated cybersecurity score is 765, reflecting their Fair security posture.
According to Rankiteo, IMI CCI currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, IMI CCI is not certified under SOC 2 Type 1.
According to Rankiteo, IMI CCI does not hold a SOC 2 Type 2 certification.
According to Rankiteo, IMI CCI is not listed as GDPR compliant.
According to Rankiteo, IMI CCI does not currently maintain PCI DSS compliance.
According to Rankiteo, IMI CCI is not compliant with HIPAA regulations.
According to Rankiteo,IMI CCI is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
IMI CCI operates primarily in the Mechanical Or Industrial Engineering industry.
IMI CCI employs approximately 3,685 people worldwide.
IMI CCI presently has no subsidiaries across any sectors.
IMI CCI’s official LinkedIn profile has approximately 27,201 followers.
IMI CCI is classified under the NAICS code None, which corresponds to Others.
No, IMI CCI does not have a profile on Crunchbase.
Yes, IMI CCI maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/imi-cci.
As of November 27, 2025, Rankiteo reports that IMI CCI has not experienced any cybersecurity incidents.
IMI CCI has an estimated 2,066 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, IMI CCI has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) token to an attacker-controlled domain. Angular's HttpClient has a built-in XSRF protection mechanism that works by checking if a request URL starts with a protocol (http:// or https://) to determine if it is cross-origin. If the URL starts with protocol-relative URL (//), it is incorrectly treated as a same-origin request, and the XSRF token is automatically added to the X-XSRF-TOKEN header. This issue has been patched in versions 19.2.16, 20.3.14, and 21.0.1. A workaround for this issue involves avoiding using protocol-relative URLs (URLs starting with //) in HttpClient requests. All backend communication URLs should be hardcoded as relative paths (starting with a single /) or fully qualified, trusted absolute URLs.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Uncontrolled Recursion vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft deep ASN.1 structures that trigger unbounded recursive parsing. This leads to a Denial-of-Service (DoS) via stack exhaustion when parsing untrusted DER inputs. This issue has been patched in version 1.3.2.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft ASN.1 structures containing OIDs with oversized arcs. These arcs may be decoded as smaller, trusted OIDs due to 32-bit bitwise truncation, enabling the bypass of downstream OID-based security decisions. This issue has been patched in version 1.3.2.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a stack overflow. Users of Lua rules and output scripts may be affected when working with large buffers. This includes a rule passing a large buffer to a Lua script. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves disabling Lua rules and output scripts, or making sure limits, such as stream.depth.reassembly and HTTP response body limits (response-body-limit), are set to less than half the stack size.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword is used in conjunction with base64_data. This issue has been patched in version 8.0.2. A workaround involves disabling rules that use entropy in conjunction with base64_data.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.