ISO 27001 Certificate
SOC 1 Type I Certificate
SOC 2 Type II Certificate
PCI DSS
HIPAA
RGPD
Internal validation & live display
Multiple badges & continuous verification
Faster underwriting decisions
ISOSOC2 Type 1SOC2 Type 2PCI DSSHIPAAGDPR

We’ve grown a lot since we opened our doors in 1974. Back then it was one man, Greg Johns, working out of his basement with just one truck. Today we have Greg and 50 employees at your service, the largest locally owned plumbing and HVAC service company in the Triad. We offer a wide range of plumbing and heating and air services, so you can get a lot with just one phone call! Our office is staffed between 7am and 5pm Monday thru Friday to give you the convenience of calling before you leave work to scheule an appointment. We also have managers on-call answering emergency service calls live 24/7, with technicians on standby to assist you with any unexpected situation. We have teamed up with some of the industry’s leading manufacturers to give you the most durable and reliable products on the market. We are so confident with these products we back them with a full one year warrantly. Johns Plumbing, Heating and Air Conditioning Inc. has been servicing the Triad area for over 38 years. Greg Johns stsrted the company with only one thing in mind: quality plumbing, heating and air conditioning along with suberb customer service. Greg recently teamed up with Kinetico Inc. to form Dr. Johns H2O, offering the highest level of expertise to improve the quality of your water. Dr. Johns H2O provides all levels of service to the Triad area by offering FREE water testing, 24 hour turnaround time for test results and much more. Why pay dollars a gallon, when you can pay just pennies?

Johns Plumbing Heating & Air Conditioning A.I CyberSecurity Scoring

JPHAC

Company Details

Linkedin ID:

johns-plumbing-heating-&-air-conditioning

Employees number:

36

Number of followers:

151

NAICS:

None

Industry Type:

Mechanical Or Industrial Engineering

Homepage:

gojohns.com

IP Addresses:

0

Company ID:

JOH_4389422

Scan Status:

In-progress

AI scoreJPHAC Risk Score (AI oriented)

Between 750 and 799

https://images.rankiteo.com/companyimages/johns-plumbing-heating-&-air-conditioning.jpeg
JPHAC Mechanical Or Industrial Engineering
Updated:
  • Powered by our proprietary A.I cyber incident model
  • Insurance preferes TPRM score to calculate premium
globalscoreJPHAC Global Score (TPRM)

XXXX

https://images.rankiteo.com/companyimages/johns-plumbing-heating-&-air-conditioning.jpeg
JPHAC Mechanical Or Industrial Engineering
  • Instant access to detailed risk factors
  • Benchmark vs. industry & size peers
  • Vulnerabilities
  • Findings

JPHAC Company CyberSecurity News & History

Past Incidents
0
Attack Types
0
No data available
Ailogo

JPHAC Company Scoring based on AI Models

Cyber Incidents Likelihood 3 - 6 - 9 months

🔒
Incident Predictions locked
Access Monitoring Plan

A.I Risk Score Likelihood 3 - 6 - 9 months

🔒
A.I. Risk Score Predictions locked
Access Monitoring Plan
statics

Underwriter Stats for JPHAC

Incidents vs Mechanical Or Industrial Engineering Industry Average (This Year)

No incidents recorded for Johns Plumbing Heating & Air Conditioning in 2025.

Incidents vs All-Companies Average (This Year)

No incidents recorded for Johns Plumbing Heating & Air Conditioning in 2025.

Incident Types JPHAC vs Mechanical Or Industrial Engineering Industry Avg (This Year)

No incidents recorded for Johns Plumbing Heating & Air Conditioning in 2025.

Incident History — JPHAC (X = Date, Y = Severity)

JPHAC cyber incidents detection timeline including parent company and subsidiaries

JPHAC Company Subsidiaries

SubsidiaryImage

We’ve grown a lot since we opened our doors in 1974. Back then it was one man, Greg Johns, working out of his basement with just one truck. Today we have Greg and 50 employees at your service, the largest locally owned plumbing and HVAC service company in the Triad. We offer a wide range of plumbing and heating and air services, so you can get a lot with just one phone call! Our office is staffed between 7am and 5pm Monday thru Friday to give you the convenience of calling before you leave work to scheule an appointment. We also have managers on-call answering emergency service calls live 24/7, with technicians on standby to assist you with any unexpected situation. We have teamed up with some of the industry’s leading manufacturers to give you the most durable and reliable products on the market. We are so confident with these products we back them with a full one year warrantly. Johns Plumbing, Heating and Air Conditioning Inc. has been servicing the Triad area for over 38 years. Greg Johns stsrted the company with only one thing in mind: quality plumbing, heating and air conditioning along with suberb customer service. Greg recently teamed up with Kinetico Inc. to form Dr. Johns H2O, offering the highest level of expertise to improve the quality of your water. Dr. Johns H2O provides all levels of service to the Triad area by offering FREE water testing, 24 hour turnaround time for test results and much more. Why pay dollars a gallon, when you can pay just pennies?

Loading...
similarCompanies

JPHAC Similar Companies

Wilson Industrial Electric

Wilson Industrial Electric is an original stone processing equipment manufacturer specializing in custom built machines. Wilson also has a UL 508A certified Panel Lab where we build control systems for other businesses as well as our own. Wilson has a fully equipped CNC Machine Shop, Fabrication S

AXI International

At AXI International, we engineer Intelligent Fuel Management Solutions that clean, restore, and maintain fuel wherever it is used or stored. Making engines more reliable and efficient, our systems provide peace of mind, while ensuring a cleaner world for future generations. We use our position as a

fortop UK automation & energy control Ltd.

Fully understand your power quality and optimal safety and reliability of your equipment. That are components that are critical for your business. But what is the best solution for your specific situation? Fortop is specialist in the field of automation and energy control. We watch, think along, an

The apt Group

The apt Group provides mechanical and electrical engineering solutions to a broad range of industries throughout Australasia, including Mining & Construction, Energy, Metals, Pulp & Paper, Food & Beverage, Transport, FM and OEM’s. Specialising in machine condition monitoring, our team of experts h

Roman Global Resources, INC.

Roman Global Resources, Inc. (RGR) is a manufacturer of rubber molded seals that require competitive manufacturing costs, extensive engineering support, quality control and very specific material requirements. We use our engineering and manufacturing experience to work with our customers during

Montex Montagem Industrial Ltda

Uma empresa alicerçada por valores muito fortes, com metas claras e objetivas, ética e cidadania, responsabilidade social e compromisso com os clientes. Certificada ISO 9001 e ISO 14.001 (em certificação) pelo BVQI – Bureau Veritas Quality International, possui um código de qualidade elaborado qu

newsone

JPHAC CyberSecurity News

November 02, 2025 07:00 AM
John Legere Obituary (2025) - Windham, ME - Dolby, Blais & Segee - Windham Chapel

John Legere Obituary John Louis Legere, 83, died peacefully at his home on October 30th, 2025, after a long illness. John was born on...

October 29, 2025 06:00 PM
John J. DiRosato Jr. Obituary (2025) - Trappe, PA - Moore, Snear & Ruggiero Funeral Home - East Norriton

John DiRosato Obituary Obituary of John J. DiRosato, Jr. John J. DiRosato, Jr. John J. DiRosato, Jr., 72, of West Norriton, PA passed away Monday,...

October 12, 2025 07:00 AM
View John Gorham's Obituary and express your condolences

John Gorham passed away on October 12, 2025 in Bedford, Massachusetts. Funeral Home Services for John are being provided by Bedford Funeral...

August 10, 2025 07:00 AM
John Saul Obituary (1953 - 2025) - Roanoke, VA - Roanoke Times

John Abraham Saul, IIIOctober 22, 1953 - July 2, 2025John Abraham Saul, III, known affectionately as Johnny, passed away on July 2, 2025 due...

June 30, 2025 07:00 AM
Omaha Everyday: John Henry’s Plumbing, Heating, Air and Electrical

Join Dave Webber as he talks to John Henry's Plumbing, Heating, Air and Electrical about getting your AC ready for the summer heat and some...

June 27, 2025 07:00 AM
Omaha Everyday: John Henry's Plumbing, Heating, Air and Electrical

Omaha Everyday: John Henry's Plumbing, Heating, Air and Electrical. Published: Jun. 27, 2025 at 5:58 AM PDT. The API failed to deliver the resource.

June 23, 2025 07:00 AM
John R. Grumbach Obituary (2025) - Long Branch, NJ - Damiano Funeral Home

John Grumbach Obituary John Richard Grumbach, 74, passed away on June 21, 2025, in Long Branch, NJ. Born on June 20, 1951, in Hoboken, NJ,...

May 19, 2025 07:00 AM
John P. Dolen Obituary (2025) - Spencer, MA - Morin Funeral Home - Leicester

John P. Dolen, 72, of Cherry Valley, passed away on Friday, May 16, 2025, after battling dementia for nearly a decade.

May 11, 2025 07:00 AM
John Spata Obituary (1946 - 2025) - Legacy Remembers

John Spata Obituary John Spata, Jr. age 78, of Stuart, FL, formerly from Trumbull, CT, passed away on Friday, January 3, 2025.

faq

Frequently Asked Questions

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.

JPHAC CyberSecurity History Information

Official Website of Johns Plumbing Heating & Air Conditioning

The official website of Johns Plumbing Heating & Air Conditioning is http://www.gojohns.com.

Johns Plumbing Heating & Air Conditioning’s AI-Generated Cybersecurity Score

According to Rankiteo, Johns Plumbing Heating & Air Conditioning’s AI-generated cybersecurity score is 756, reflecting their Fair security posture.

How many security badges does Johns Plumbing Heating & Air Conditioning’ have ?

According to Rankiteo, Johns Plumbing Heating & Air Conditioning currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.

Does Johns Plumbing Heating & Air Conditioning have SOC 2 Type 1 certification ?

According to Rankiteo, Johns Plumbing Heating & Air Conditioning is not certified under SOC 2 Type 1.

Does Johns Plumbing Heating & Air Conditioning have SOC 2 Type 2 certification ?

According to Rankiteo, Johns Plumbing Heating & Air Conditioning does not hold a SOC 2 Type 2 certification.

Does Johns Plumbing Heating & Air Conditioning comply with GDPR ?

According to Rankiteo, Johns Plumbing Heating & Air Conditioning is not listed as GDPR compliant.

Does Johns Plumbing Heating & Air Conditioning have PCI DSS certification ?

According to Rankiteo, Johns Plumbing Heating & Air Conditioning does not currently maintain PCI DSS compliance.

Does Johns Plumbing Heating & Air Conditioning comply with HIPAA ?

According to Rankiteo, Johns Plumbing Heating & Air Conditioning is not compliant with HIPAA regulations.

Does Johns Plumbing Heating & Air Conditioning have ISO 27001 certification ?

According to Rankiteo,Johns Plumbing Heating & Air Conditioning is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.

Industry Classification of Johns Plumbing Heating & Air Conditioning

Johns Plumbing Heating & Air Conditioning operates primarily in the Mechanical Or Industrial Engineering industry.

Number of Employees at Johns Plumbing Heating & Air Conditioning

Johns Plumbing Heating & Air Conditioning employs approximately 36 people worldwide.

Subsidiaries Owned by Johns Plumbing Heating & Air Conditioning

Johns Plumbing Heating & Air Conditioning presently has no subsidiaries across any sectors.

Johns Plumbing Heating & Air Conditioning’s LinkedIn Followers

Johns Plumbing Heating & Air Conditioning’s official LinkedIn profile has approximately 151 followers.

Johns Plumbing Heating & Air Conditioning’s Presence on Crunchbase

No, Johns Plumbing Heating & Air Conditioning does not have a profile on Crunchbase.

Johns Plumbing Heating & Air Conditioning’s Presence on LinkedIn

Yes, Johns Plumbing Heating & Air Conditioning maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/johns-plumbing-heating-&-air-conditioning.

Cybersecurity Incidents Involving Johns Plumbing Heating & Air Conditioning

As of November 28, 2025, Rankiteo reports that Johns Plumbing Heating & Air Conditioning has not experienced any cybersecurity incidents.

Number of Peer and Competitor Companies

Johns Plumbing Heating & Air Conditioning has an estimated 2,056 peer or competitor companies worldwide.

Johns Plumbing Heating & Air Conditioning CyberSecurity History Information

How many cyber incidents has Johns Plumbing Heating & Air Conditioning faced ?

Total Incidents: According to Rankiteo, Johns Plumbing Heating & Air Conditioning has faced 0 incidents in the past.

What types of cybersecurity incidents have occurred at Johns Plumbing Heating & Air Conditioning ?

Incident Types: The types of cybersecurity incidents that have occurred include .

Incident Details

What are the most common types of attacks the company has faced ?

Additional Questions

cve

Latest Global CVEs (Not Company-Specific)

Description

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) token to an attacker-controlled domain. Angular's HttpClient has a built-in XSRF protection mechanism that works by checking if a request URL starts with a protocol (http:// or https://) to determine if it is cross-origin. If the URL starts with protocol-relative URL (//), it is incorrectly treated as a same-origin request, and the XSRF token is automatically added to the X-XSRF-TOKEN header. This issue has been patched in versions 19.2.16, 20.3.14, and 21.0.1. A workaround for this issue involves avoiding using protocol-relative URLs (URLs starting with //) in HttpClient requests. All backend communication URLs should be hardcoded as relative paths (starting with a single /) or fully qualified, trusted absolute URLs.

Risk Information
cvss4
Base: 7.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:H/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Uncontrolled Recursion vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft deep ASN.1 structures that trigger unbounded recursive parsing. This leads to a Denial-of-Service (DoS) via stack exhaustion when parsing untrusted DER inputs. This issue has been patched in version 1.3.2.

Risk Information
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft ASN.1 structures containing OIDs with oversized arcs. These arcs may be decoded as smaller, trusted OIDs due to 32-bit bitwise truncation, enabling the bypass of downstream OID-based security decisions. This issue has been patched in version 1.3.2.

Risk Information
cvss4
Base: 6.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a stack overflow. Users of Lua rules and output scripts may be affected when working with large buffers. This includes a rule passing a large buffer to a Lua script. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves disabling Lua rules and output scripts, or making sure limits, such as stream.depth.reassembly and HTTP response body limits (response-body-limit), are set to less than half the stack size.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Description

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword is used in conjunction with base64_data. This issue has been patched in version 8.0.2. A workaround involves disabling rules that use entropy in conjunction with base64_data.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Access Data Using Our API

SubsidiaryImage

Get company history

curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?linkedin_id=johns-plumbing-heating-&-air-conditioning' -H 'apikey: YOUR_API_KEY_HERE'

What Do We Measure ?

revertimgrevertimgrevertimgrevertimg
Incident
revertimgrevertimgrevertimgrevertimg
Finding
revertimgrevertimgrevertimgrevertimg
Grade
revertimgrevertimgrevertimgrevertimg
Digital Assets

Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.

These are some of the factors we use to calculate the overall score:

Network Security

Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.

SBOM (Software Bill of Materials)

Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.

CMDB (Configuration Management Database)

Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.

Threat Intelligence

Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.

Top LeftTop RightBottom LeftBottom Right
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.
Users Love Us Badge