Comparison Overview

La Comer

VS

Giant Eagle, Inc.

La Comer

CDMX, MX
Last Update: 2026-03-31
Between 750 and 799

Grupo La Comer es una empresa 100% mexicana. La compañía opera 79 tiendas de autoservicio, con un área de venta total de aproximadamente 329,033 m2, concentrados principalmente en el área metropolitana de la Ciudad de México en donde se ubica el 40% del total de sus tiendas. Cuenta con dos Centros de Distribución, uno en Guadalajara y otro en la Ciudad de México. Su historia se remonta a 1930 cuando Don Antonino González Abascal y sus hijos Antonino, Carlos, Jaime y Guillermo González Nova fundaron su primera tienda de telas en la Ciudad de México. En 1962 con la apertura de la tienda de San José Insurgentes se inicia la historia de Comercial Mexicana. En el 2002 Comercial Mexicana hizo un replanteamiento de su estrategia comercial orientándose hacia la diferenciación. Este nuevo enfoque dio como resultado el lanzamiento de lo que ha sido su mantra publicitario: ¿…Vas al Súper o a La Comer?, así como la apertura en 2006 de un concepto revolucionario que ha sido fuertemente aceptado: City Market. Siguiendo esta misma filosofía introduce su concepto de supermercado en 2009, bajo el nombre de Fresko. La historia se sigue haciendo día con día, con el trabajo, compromiso y valores de nuestros colaboradores.

NAICS: 44511
NAICS Definition: Supermarkets and Other Grocery (except Convenience) Stores
Employees: 3,000
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Giant Eagle, Inc.

700 Cranberry Woods Dr, Cranberry Township, 16066, US
Last Update: 2026-04-01
Between 750 and 799

Giant Eagle strives to be a best place to work in the eyes of the nearly 36,000 individuals who work in our stores, pharmacies, warehouses and in our corporate offices. At Giant Eagle, you'll have the opportunity to develop a real career with countless opportunities for you to grow with us. The way we conduct business and treat one another – our Team Members, customers, community members and valued partners – defines what the Giant Eagle culture is all about. Our Purpose Beyond Profit is "We are one Giant Eagle Family. Together, we provide our communities with life's essentials, so our neighbors have the opportunity to thrive." We do this by staying true to our Core Values: Respect All: We go out of our way to treat our guests and one another with kindness and dignity. Think Team: We value different viewpoints and love working together as family. See It, Own It: We keep our heads up, see opportunity and take action. Work Smart: We find ways to simplify. Live Well: We help everyone live a healthy, balance life. Do Right: We are ethical, giving, and good stewards of the world around us. Founded in 1931, Giant Eagle is one of the 40 largest family-operated companies in the US and operates Giant Eagle, GetGo and Market District stores. As we continue to grow and expand, our commitment to our core values and the well-being of our Team Members, customers, and our communities is as strong as ever. We listen to what you have to say and do everything we can to provide a safe, caring, family-oriented environment. To learn more about the benefits we have to offer, please visit jobs.gianteagle.com.

NAICS: 44511
NAICS Definition: Supermarkets and Other Grocery (except Convenience) Stores
Employees: 14,276
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/la-comer.jpeg
La Comer
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/giant-eagle.jpeg
Giant Eagle, Inc.
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
La Comer
100%
Compliance Rate
0/4 Standards Verified
Giant Eagle, Inc.
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Retail Groceries Industry Average (This Year)

No incidents recorded for La Comer in 2026.

Incidents vs Retail Groceries Industry Average (This Year)

No incidents recorded for Giant Eagle, Inc. in 2026.

Incident History — La Comer (X = Date, Y = Severity)

La Comer cyber incidents detection timeline including parent company and subsidiaries

Incident History — Giant Eagle, Inc. (X = Date, Y = Severity)

Giant Eagle, Inc. cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/la-comer.jpeg
La Comer
Incidents

No Incident

https://images.rankiteo.com/companyimages/giant-eagle.jpeg
Giant Eagle, Inc.
Incidents

No Incident

FAQ

Giant Eagle, Inc. company demonstrates a stronger AI Cybersecurity Score compared to La Comer company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, Giant Eagle, Inc. company has disclosed a higher number of cyber incidents compared to La Comer company.

In the current year, Giant Eagle, Inc. company and La Comer company have not reported any cyber incidents.

Neither Giant Eagle, Inc. company nor La Comer company has reported experiencing a ransomware attack publicly.

Neither Giant Eagle, Inc. company nor La Comer company has reported experiencing a data breach publicly.

Neither Giant Eagle, Inc. company nor La Comer company has reported experiencing targeted cyberattacks publicly.

Neither La Comer company nor Giant Eagle, Inc. company has reported experiencing or disclosing vulnerabilities publicly.

Neither La Comer nor Giant Eagle, Inc. holds any compliance certifications.

Neither company holds any compliance certifications.

Neither La Comer company nor Giant Eagle, Inc. company has publicly disclosed detailed information about the number of their subsidiaries.

Giant Eagle, Inc. company employs more people globally than La Comer company, reflecting its scale as a Retail Groceries.

Neither La Comer nor Giant Eagle, Inc. holds SOC 2 Type 1 certification.

Neither La Comer nor Giant Eagle, Inc. holds SOC 2 Type 2 certification.

Neither La Comer nor Giant Eagle, Inc. holds ISO 27001 certification.

Neither La Comer nor Giant Eagle, Inc. holds PCI DSS certification.

Neither La Comer nor Giant Eagle, Inc. holds HIPAA certification.

Neither La Comer nor Giant Eagle, Inc. holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

Hirschmann EagleSDV version 05.4.01 prior to 05.4.02 contains a denial-of-service vulnerability that causes the device to crash during session establishment when using TLS 1.0 or TLS 1.1. Attackers can trigger a crash by initiating TLS connections with these protocol versions to disrupt service availability.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

The stored API keys in temporary browser client is not marked as protected allowing for JavScript console or other errors to allow for extraction of the encryption credentials.

Description

XSS vulnerability in cveInterface.js allows for inject HTML to be passed to display, as cveInterface trusts input from CVE API services

Description

Multiple reflected cross-site scripting (XSS) vulnerabilities in the login.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda and red_url parameters.

Description

A reflected cross-site scripting (XSS) vulnerability in the login_newpwd.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda parameter.