Comparison Overview

KCC Group

VS

YDA Group

KCC Group

Ballymount, Dublin 24, undefined, undefined, IE
Last Update: 2025-05-05 (UTC)
Between 900 and 1000

Excellent

With over 30 years of expertise experience, our purpose is to help make buildings work. We are recognised as a Gold Standard Winner at the Deloitte Best Managed Companies Awards 2016 to 2020 and Awarded Platinum Member of Deloitte Best Managed Companies 2020. With the unity of KCC Group and Elite Doors in 2020, our compatibility has greatly improved and helps us to fully integrate doors and ironmongery from a single source as a group. We have the knowledge and the products to support your innovation. We provide the scale to deliver and support quality, the best-fit, large scale solutions at very competitive prices with this we have our own 2,000 square metre manufacturing facility in Dublin and our very own expert installation team. We offer the capability and commitment to deliver on time and ensure everything works to the highest of standards. To help make buildings work we plan, produce, install, and maintain complete door, access control, specialist glazing and partition solutions all as part of our 360 Service. We assist in helping architects to realise their architectural vision. We are trusted by contractors to successful deliver compliant, on-time, successful solutions and are relied on by building managers to keep their buildings safe, secure and performing as expected.

NAICS: 23
NAICS Definition: Construction
Employees: 619
Subsidiaries: 2
12-month incidents
0
Known data breaches
0
Attack type number
0

YDA Group

Kızılırmak Mahallesi Dumlupınar Bulvarı No:9 YDA Center A Blok Kat:33 Ankara, Çankaya, TR
Last Update: 2025-03-14 (UTC)

Excellent

Between 900 and 1000

Temelleri 1954 yılına dayanan YDA Group; bünyesindeki ilk inşaat & taahhüt firması olan AKSA İnşaat ile 47 yılı; Group’un Onursal Başkanı ve Kurucusu rahmetli Yaşar Dede Arslan’ın adına ithafen kurulan YDA İnşaat ile de 27 yılı geride bırakarak yarım asrı aşan tecrübesiyle istikrarlı büyüme ivmesini sürdürmektedir. Ana faaliyet alanı olan inşaat sektöründe; anahtar teslimi projeler, Yap-İşlet-Devret (Y.İ.D) ve KamuÖzel İşbirliği (KÖİ / PPP) modelleri ile havalimanları ve sağlık kampüsleri yatırım projeleri, yüksek teknolojik binalar, endüstriyel tesisler, çimento fabrikaları, altyapı projeleri, yollar, köprüler, kavşaklar, yüksek katlı binalar, toplu konut projeleri, iş merkezleri, alışveriş merkezleri, hastaneler, okul kompleksleri, apartmanlar, lüks konutlar, villalar, gayrimenkul geliştirme projeleri gerçekleştiren YDA Group; planlı ve istikrarlı büyüme politikasıyla, inşaat sektörünün yanı sıra pazarın gelişen ihtiyaçlarını ve müşterilerinin beklentilerini karşılamak için yan sanayi ve hizmet dalları oluşturarak geniş bir faaliyet yelpazesinde hizmet vermeye devam etmektedir. Bu doğrultuda; İnşaat & Taahhüt, Gayrimenkul Geliştirme, Havacılık, Medikal & Sağlık, Enerji, Destek Hizmetleri (Sağlık, Catering, Tesis Yönetimi), Madencilik, Tarım, Bilgi Teknolojileri (IT) ve Açık Hava Dijital Reklamcılık sektörleri olmak üzere on temel alanda faaliyette bulunan YDA Group; faaliyet gösterdiği her sektörde dünya standartlarında hizmet sunmayı ilke edinmiştir. Şirket, kalitesini ve güvenilirliğini, ISO 9001:2000 Kalite Yönetimi Standardı, ISO 14001:2004 Çevre Standardı ve OHSAS 18001 İşçi Sağlığı ve Kalite Yönetim Sistemleri Standardı ve ISO 15504 (SPICE) gibi uluslararası belgelerle ispatlamaktadır. 2000’li yılların başından itibaren uluslararası pazarlara açılarak, Kazakistan, Ukrayna, Birleşik Arap Emirlikleri, Rusya, Suudi Arabistan, Afganistan ve Moldova gibi pek çok ülkede başarılı projelere imza atmış olan YDA Group; gayrimenkul geliştirme projelerinin yanı sıra

NAICS: 23
NAICS Definition:
Employees: 10,001+
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/kcc-architectural.jpeg
KCC Group
ISO 27001
Not verified
SOC 2
Not verified
GDPR
No public badge
PCI DSS
No public badge
https://images.rankiteo.com/companyimages/yda-group.jpeg
YDA Group
ISO 27001
Not verified
SOC 2
Not verified
GDPR
No public badge
PCI DSS
No public badge
Compliance Summary
KCC Group
100%
Compliance Rate
0/4 Standards Verified
YDA Group
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Construction Industry Average (This Year)

No incidents recorded for KCC Group in 2025.

Incidents vs Construction Industry Average (This Year)

No incidents recorded for YDA Group in 2025.

Incident History — KCC Group (X = Date, Y = Severity)

KCC Group cyber incidents detection timeline including parent company and subsidiaries

Incident History — YDA Group (X = Date, Y = Severity)

YDA Group cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/kcc-architectural.jpeg
KCC Group
Incidents

No Incident

https://images.rankiteo.com/companyimages/yda-group.jpeg
YDA Group
Incidents

No Incident

FAQ

Both KCC Group company and YDA Group company demonstrate a comparable AI risk posture, with strong governance and monitoring frameworks in place.

Historically, YDA Group company has disclosed a higher number of cyber incidents compared to KCC Group company.

In the current year, YDA Group company and KCC Group company have not reported any cyber incidents.

Neither YDA Group company nor KCC Group company has reported experiencing a ransomware attack publicly.

Neither YDA Group company nor KCC Group company has reported experiencing a data breach publicly.

Neither YDA Group company nor KCC Group company has reported experiencing targeted cyberattacks publicly.

Neither KCC Group company nor YDA Group company has reported experiencing or disclosing vulnerabilities publicly.

KCC Group company has more subsidiaries worldwide compared to YDA Group company.

KCC Group company employs more people globally than YDA Group company, reflecting its scale as a Construction.

Latest Global CVEs (Not Company-Specific)

Description

Volto is a ReactJS-based frontend for the Plone Content Management System. Versions 16.34.0 and below, 17.0.0 through 17.22.1, 18.0.0 through 18.27.1, and 19.0.0-alpha.1 through 19.0.0-alpha.5, an anonymous user could cause the NodeJS server part of Volto to quit with an error when visiting a specific URL. This issue is fixed in versions 16.34.1, 17.22.2, 18.27.2 and 19.0.0-alpha.6.

Risk Information
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Traccar is an open source GPS tracking system. Default installs of Traccar on Windows between versions 6.1- 6.8.1 and non default installs between versions 5.8 - 6.0 are vulnerable to unauthenticated local file inclusion attacks which can lead to leakage of passwords or any file on the file system including the Traccar configuration file. Versions 5.8 - 6.0 are only vulnerable if <entry key='web.override'>./override</entry> is set in the configuration file. Versions 6.1 - 6.8.1 are vulnerable by default as the web override is enabled by default. The vulnerable code is removed in version 6.9.0.

Risk Information
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Stalwart is a mail and collaboration server. Versions 0.13.3 and below contain an unbounded memory allocation vulnerability in the IMAP protocol parser which allows remote attackers to exhaust server memory, potentially triggering the system's out-of-memory (OOM) killer and causing a denial of service. The CommandParser implementation enforces size limits on its dynamic buffer in most parsing states, but several state handlers omit these validation checks. This issue is fixed in version 0.13.4. A workaround for this issue is to implement rate limiting and connection monitoring at the network level, however this does not provide complete protection.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Description

WeGIA is an open source web manager with a focus on charitable institutions. Versions 3.4.12 and below contain a Broken Access Control vulnerability, identified in the get_relatorios_socios.php endpoint. This vulnerability allows unauthenticated attackers to directly access sensitive personal and financial information of members without requiring authentication or authorization. This issue is fixed in version 3.5.0.

Risk Information
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

WeGIA is an open source web manager with a focus on charitable institutions. Versions 3.4.12 and below contain an Open Redirect vulnerability, identified in the control.php endpoint, specifically in the nextPage parameter (metodo=listarUmnomeClasse=FuncionarioControle). This vulnerability allows attackers to redirect users to arbitrary external domains, enabling phishing campaigns, malicious payload distribution, or user credential theft. This issue is fixed in version 3.5.0.

Risk Information
cvss4
Base: 4.8
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:A/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X