Comparison Overview

KCC Group

VS

SalfaCorp

KCC Group

Ballymount, Dublin 24, undefined, undefined, IE
Last Update: 2025-05-05 (UTC)
Between 900 and 1000

Excellent

With over 30 years of expertise experience, our purpose is to help make buildings work. We are recognised as a Gold Standard Winner at the Deloitte Best Managed Companies Awards 2016 to 2020 and Awarded Platinum Member of Deloitte Best Managed Companies 2020. With the unity of KCC Group and Elite Doors in 2020, our compatibility has greatly improved and helps us to fully integrate doors and ironmongery from a single source as a group. We have the knowledge and the products to support your innovation. We provide the scale to deliver and support quality, the best-fit, large scale solutions at very competitive prices with this we have our own 2,000 square metre manufacturing facility in Dublin and our very own expert installation team. We offer the capability and commitment to deliver on time and ensure everything works to the highest of standards. To help make buildings work we plan, produce, install, and maintain complete door, access control, specialist glazing and partition solutions all as part of our 360 Service. We assist in helping architects to realise their architectural vision. We are trusted by contractors to successful deliver compliant, on-time, successful solutions and are relied on by building managers to keep their buildings safe, secure and performing as expected.

NAICS: 23
NAICS Definition: Construction
Employees: 619
Subsidiaries: 2
12-month incidents
0
Known data breaches
0
Attack type number
0

SalfaCorp

Av. Presidente Riesco 5335, Piso 11, Las Condes. Santiago, CL
Last Update: 2025-05-06 (UTC)

Excellent

Between 900 and 1000

Con más de 90 años de trayectoria aportando al desarrollo, SalfaCorp está a la vanguardia de la Ingeniería, Construcción e Inmobiliaria en Chile, participando en obras emblemáticas del país gracias a su gran variedad de servicios para la Minería, Energía, Construcción y el Sector Inmobiliario, entre otros. Actualmente exporta toda su experiencia en el desarrollo de proyectos en Latinoamérica y el Caribe, marcando fuerte presencia en Perú, Colombia, Panamá, Estados Unidos y China con oficina comercial. El experimentado equipo técnico y profesional de más de 23.000 colaboradores contribuyen a la creación y gestión de productos y servicios de alta especialización, manteniendo siempre el liderazgo.

NAICS: 23
NAICS Definition: Construction
Employees: 10,001+
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/kcc-architectural.jpeg
KCC Group
ISO 27001
Not verified
SOC 2
Not verified
GDPR
No public badge
PCI DSS
No public badge
https://images.rankiteo.com/companyimages/salfacorp.jpeg
SalfaCorp
ISO 27001
Not verified
SOC 2
Not verified
GDPR
No public badge
PCI DSS
No public badge
Compliance Summary
KCC Group
100%
Compliance Rate
0/4 Standards Verified
SalfaCorp
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Construction Industry Average (This Year)

No incidents recorded for KCC Group in 2025.

Incidents vs Construction Industry Average (This Year)

No incidents recorded for SalfaCorp in 2025.

Incident History — KCC Group (X = Date, Y = Severity)

KCC Group cyber incidents detection timeline including parent company and subsidiaries

Incident History — SalfaCorp (X = Date, Y = Severity)

SalfaCorp cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/kcc-architectural.jpeg
KCC Group
Incidents

No Incident

https://images.rankiteo.com/companyimages/salfacorp.jpeg
SalfaCorp
Incidents

No Incident

FAQ

Both KCC Group company and SalfaCorp company demonstrate a comparable AI risk posture, with strong governance and monitoring frameworks in place.

Historically, SalfaCorp company has disclosed a higher number of cyber incidents compared to KCC Group company.

In the current year, SalfaCorp company and KCC Group company have not reported any cyber incidents.

Neither SalfaCorp company nor KCC Group company has reported experiencing a ransomware attack publicly.

Neither SalfaCorp company nor KCC Group company has reported experiencing a data breach publicly.

Neither SalfaCorp company nor KCC Group company has reported experiencing targeted cyberattacks publicly.

Neither KCC Group company nor SalfaCorp company has reported experiencing or disclosing vulnerabilities publicly.

KCC Group company has more subsidiaries worldwide compared to SalfaCorp company.

KCC Group company employs more people globally than SalfaCorp company, reflecting its scale as a Construction.

Latest Global CVEs (Not Company-Specific)

Description

Volto is a ReactJS-based frontend for the Plone Content Management System. Versions 16.34.0 and below, 17.0.0 through 17.22.1, 18.0.0 through 18.27.1, and 19.0.0-alpha.1 through 19.0.0-alpha.5, an anonymous user could cause the NodeJS server part of Volto to quit with an error when visiting a specific URL. This issue is fixed in versions 16.34.1, 17.22.2, 18.27.2 and 19.0.0-alpha.6.

Risk Information
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Traccar is an open source GPS tracking system. Default installs of Traccar on Windows between versions 6.1- 6.8.1 and non default installs between versions 5.8 - 6.0 are vulnerable to unauthenticated local file inclusion attacks which can lead to leakage of passwords or any file on the file system including the Traccar configuration file. Versions 5.8 - 6.0 are only vulnerable if <entry key='web.override'>./override</entry> is set in the configuration file. Versions 6.1 - 6.8.1 are vulnerable by default as the web override is enabled by default. The vulnerable code is removed in version 6.9.0.

Risk Information
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Stalwart is a mail and collaboration server. Versions 0.13.3 and below contain an unbounded memory allocation vulnerability in the IMAP protocol parser which allows remote attackers to exhaust server memory, potentially triggering the system's out-of-memory (OOM) killer and causing a denial of service. The CommandParser implementation enforces size limits on its dynamic buffer in most parsing states, but several state handlers omit these validation checks. This issue is fixed in version 0.13.4. A workaround for this issue is to implement rate limiting and connection monitoring at the network level, however this does not provide complete protection.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Description

WeGIA is an open source web manager with a focus on charitable institutions. Versions 3.4.12 and below contain a Broken Access Control vulnerability, identified in the get_relatorios_socios.php endpoint. This vulnerability allows unauthenticated attackers to directly access sensitive personal and financial information of members without requiring authentication or authorization. This issue is fixed in version 3.5.0.

Risk Information
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

WeGIA is an open source web manager with a focus on charitable institutions. Versions 3.4.12 and below contain an Open Redirect vulnerability, identified in the control.php endpoint, specifically in the nextPage parameter (metodo=listarUmnomeClasse=FuncionarioControle). This vulnerability allows attackers to redirect users to arbitrary external domains, enabling phishing campaigns, malicious payload distribution, or user credential theft. This issue is fixed in version 3.5.0.

Risk Information
cvss4
Base: 4.8
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:A/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X