Comparison Overview

Philip Morris International

VS

Tramontina

Philip Morris International

Avenue de Rhodanie 50, None, Lausanne, None, CH, 1007
Last Update: 2025-12-09
Between 800 and 849

Philip Morris International (PMI) is a leading international consumer goods company working to deliver a smoke-free future and evolving its portfolio for the long term to include products outside of the tobacco and nicotine sector. Since 2008, PMI has invested more than USD 14 billion to develop, scientifically substantiate and commercialize innovative smoke-free products for adults who would otherwise continue to smoke, with the goal of completely ending the sale of cigarettes. In November 2022, PMI acquired Swedish Match – a leader in oral nicotine delivery – creating a global smoke-free champion led by the companies’ IQOS and ZYN brands. As of Q1 2025, PMI's smoke-free products were available for sale in 95 markets and smoke-free products accounted for approximately 42% of net revenues. With a strong foundation and significant expertise in life sciences, PMI announced in February 2021 its ambition to expand into wellness and healthcare areas and aims to enhance life through the delivery of seamless health experiences. For more information, please visit www.pmi.com and www.pmiscience.com. Our priority is to attract, support and keep with us diverse and unique individuals. Our global workforce of more than 69,000 people is one of our greatest strengths and the key to our success as a company. Our employees speak more than 80 languages and come from all corners of the world. PMI has also been certified as a “Global Top Employer” for the seventh consecutive year, in recognition of the high standards of excellence in our working environment and the exceptional development opportunities we offer. If you come into our offices or meet our people, you will quickly realize that at PMI everyone has the opportunity to make a difference and build phenomenal careers.

NAICS: 30
NAICS Definition: Manufacturing
Employees: 63,063
Subsidiaries: 3
12-month incidents
0
Known data breaches
0
Attack type number
0

Tramontina

Av. 25 de Setembro, 1024 Bairro Tri√¢ngulo Carlos Barbosa, Rio Grande do Sul 95185-000, BR
Last Update: 2025-12-09

More than just numbers, what truly defines Tramontina is the constant effort to make people's lives better. The small iron mill founded by Valentin and Elisa Tramontina in 1911 in southern Brazil was the beginning of a group that now encompasses 9 manufacturing units and has kept the century-old tradition of delighting people with simple gestures. The secret for maintaining this essence is believing in people. Tramontina values each one of its over 10,000 employees so they can deliver functional, stylish products to the market, bringing inspiration to people's daily living and creating experiences to generate value and satisfy clients, consumers and communities. All this is apparent in the more than 22,000 items that carry the values of a unique brand. Kitchen utensils and equipment, appliances, tools for agriculture, gardening, industrial and automotive maintenance, construction, electrical hardware, wood and plastic furniture, and a wide range of ride-on equipment is manufactured for the domestic market and exported to over 120 countries. It is by doing beautiful things well that Tramontina and people are brought together. A global player, the company finds the necessary support to deliver solutions that can meet contemporary demands, combining productivity and going over and beyond targets for sustainable development through the environmental management program.

NAICS: 30
NAICS Definition: Manufacturing
Employees: 10,001
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/insidepmi.jpeg
Philip Morris International
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/tramontina.jpeg
Tramontina
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Philip Morris International
100%
Compliance Rate
0/4 Standards Verified
Tramontina
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Manufacturing Industry Average (This Year)

No incidents recorded for Philip Morris International in 2025.

Incidents vs Manufacturing Industry Average (This Year)

No incidents recorded for Tramontina in 2025.

Incident History — Philip Morris International (X = Date, Y = Severity)

Philip Morris International cyber incidents detection timeline including parent company and subsidiaries

Incident History — Tramontina (X = Date, Y = Severity)

Tramontina cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/insidepmi.jpeg
Philip Morris International
Incidents

No Incident

https://images.rankiteo.com/companyimages/tramontina.jpeg
Tramontina
Incidents

No Incident

FAQ

Philip Morris International company demonstrates a stronger AI Cybersecurity Score compared to Tramontina company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, Tramontina company has disclosed a higher number of cyber incidents compared to Philip Morris International company.

In the current year, Tramontina company and Philip Morris International company have not reported any cyber incidents.

Neither Tramontina company nor Philip Morris International company has reported experiencing a ransomware attack publicly.

Neither Tramontina company nor Philip Morris International company has reported experiencing a data breach publicly.

Neither Tramontina company nor Philip Morris International company has reported experiencing targeted cyberattacks publicly.

Neither Philip Morris International company nor Tramontina company has reported experiencing or disclosing vulnerabilities publicly.

Neither Philip Morris International nor Tramontina holds any compliance certifications.

Neither company holds any compliance certifications.

Philip Morris International company has more subsidiaries worldwide compared to Tramontina company.

Philip Morris International company employs more people globally than Tramontina company, reflecting its scale as a Manufacturing.

Neither Philip Morris International nor Tramontina holds SOC 2 Type 1 certification.

Neither Philip Morris International nor Tramontina holds SOC 2 Type 2 certification.

Neither Philip Morris International nor Tramontina holds ISO 27001 certification.

Neither Philip Morris International nor Tramontina holds PCI DSS certification.

Neither Philip Morris International nor Tramontina holds HIPAA certification.

Neither Philip Morris International nor Tramontina holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

NXLog Agent before 6.11 can load a file specified by the OPENSSL_CONF environment variable.

Risk Information
cvss3
Base: 8.1
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Description

uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.

Risk Information
cvss3
Base: 2.9
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Description

A vulnerability was detected in Mayan EDMS up to 4.10.1. The affected element is an unknown function of the file /authentication/. The manipulation results in cross site scripting. The attack may be performed from remote. The exploit is now public and may be used. Upgrading to version 4.10.2 is sufficient to fix this issue. You should upgrade the affected component. The vendor confirms that this is "[f]ixed in version 4.10.2". Furthermore, that "[b]ackports for older versions in process and will be out as soon as their respective CI pipelines complete."

Risk Information
cvss2
Base: 5.0
Severity: LOW
AV:N/AC:L/Au:N/C:N/I:P/A:N
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

MJML through 4.18.0 allows mj-include directory traversal to test file existence and (in the type="css" case) read files. NOTE: this issue exists because of an incomplete fix for CVE-2020-12827.

Risk Information
cvss3
Base: 4.5
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:L
Description

A half-blind Server Side Request Forgery (SSRF) vulnerability exists in kube-controller-manager when using the in-tree Portworx StorageClass. This vulnerability allows authorized users to leak arbitrary information from unprotected endpoints in the control plane’s host network (including link-local or loopback services).

Risk Information
cvss3
Base: 5.8
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N