Comparison Overview

National Bank of Canada

VS

Yapı Kredi

National Bank of Canada

800 Rue Saint-Jacques, Montreal, Quebec, H3C 1A3, CA
Last Update: 2025-12-09
Between 750 and 799

At National Bank, we believe in the potential of each individual, and that even the smallest gestures can make a big difference. When we help others accomplish their projects, we help empower them and the community at large. We try to make a difference through innovation, but above all, by putting people first. By taking the time to listen and letting our actions speak for themselves. By remaining bold and passionate. By developing lasting relationships as partners and allies. Together we can achieve great things and create a positive impact. Want to learn more about us? For advice on your personal finances, visit: nbc.ca/advice For advice on your business, visit: nbc.ca/business For career opportunities, visit: jobs.nbc.ca For all the latest news, visit: nbc.ca/news By clicking "Follow" above, you may receive communications from National Bank, either in your LinkedIn inbox or by other means via LinkedIn, about products and services that could interest you. Learn more at: www.nbc.ca/socialnetworks.

NAICS: 52211
NAICS Definition: Commercial Banking
Employees: 19,281
Subsidiaries: 11
12-month incidents
0
Known data breaches
0
Attack type number
0

Yapı Kredi

Levent, İstanbul, Levent, 34740, TR
Last Update: 2025-12-09
Between 750 and 799

Yapı Kredi has been sustainably strengthening its market positioning in the sector since its establishment in 1944 through a customer-centric approach and focus on innovation. Yapı Kredi is the 3rd largest private bank in Turkey with total assets worth TL 411 billion as of the end of 2019. Constantly seeking to increase its contribution to the financing of the Turkish economy with its customer-centric approach, Yapı Kredi enlarged the volume of its total cash and non-cash loans by 4% in 2019 to TL 319 billion. Thus, Yapı Kredi maintained its position in 2nd place among private banks in this respect. The Bank serves its customers with its 846 branches covering all regions of Turkey and 16,631 employees. Yapı Kredi delivers its products and services via its advanced Alternative Delivery Channels (ADCs) that comprise 4,330 ATMs, innovative internet banking, leading mobile banking, 3 call centers and approximately 709 thousand POS terminals. 94% of the Bank’s transactions went through non-branch channels as at year-end 2019. Yapı Kredi is a fully integrated financial services group supported by its domestic and international subsidiaries. Yapı Kredi serves its customers through retail banking (comprising of individual banking, Small and Medium Size Enterprises (SME) banking and card payment systems, private banking and wealth management), as well as corporate and commercial banking. The Bank’s operations are supported by domestic subsidiaries in asset management, brokerage, leasing and factoring as well as international banking subsidiaries in the Netherlands, Malta and Azerbaijan. Yapı Kredi has a strong shareholding structure which ensures sustainable and profitable growth. 40.95% of the Bank’s shares are owned by Koç Financial Services, 9.02% of the shares are owned by Koç Holding A.Ş. The total direct and indirect shares of Koç Group amount to 49.99%. 20.00% of Bank’s shares are owned by UniCredit S.P.A. The remaining 30.03% is publicly traded on Borsa Istanbul

NAICS: 522
NAICS Definition:
Employees: 14,355
Subsidiaries: 53
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/national-bank-of-canada.jpeg
National Bank of Canada
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/yapikredi.jpeg
Yapı Kredi
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
National Bank of Canada
100%
Compliance Rate
0/4 Standards Verified
Yapı Kredi
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Banking Industry Average (This Year)

No incidents recorded for National Bank of Canada in 2025.

Incidents vs Banking Industry Average (This Year)

No incidents recorded for Yapı Kredi in 2025.

Incident History — National Bank of Canada (X = Date, Y = Severity)

National Bank of Canada cyber incidents detection timeline including parent company and subsidiaries

Incident History — Yapı Kredi (X = Date, Y = Severity)

Yapı Kredi cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/national-bank-of-canada.jpeg
National Bank of Canada
Incidents

No Incident

https://images.rankiteo.com/companyimages/yapikredi.jpeg
Yapı Kredi
Incidents

No Incident

FAQ

National Bank of Canada company demonstrates a stronger AI Cybersecurity Score compared to Yapı Kredi company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, Yapı Kredi company has disclosed a higher number of cyber incidents compared to National Bank of Canada company.

In the current year, Yapı Kredi company and National Bank of Canada company have not reported any cyber incidents.

Neither Yapı Kredi company nor National Bank of Canada company has reported experiencing a ransomware attack publicly.

Neither Yapı Kredi company nor National Bank of Canada company has reported experiencing a data breach publicly.

Neither Yapı Kredi company nor National Bank of Canada company has reported experiencing targeted cyberattacks publicly.

Neither National Bank of Canada company nor Yapı Kredi company has reported experiencing or disclosing vulnerabilities publicly.

Neither National Bank of Canada nor Yapı Kredi holds any compliance certifications.

Neither company holds any compliance certifications.

Yapı Kredi company has more subsidiaries worldwide compared to National Bank of Canada company.

National Bank of Canada company employs more people globally than Yapı Kredi company, reflecting its scale as a Banking.

Neither National Bank of Canada nor Yapı Kredi holds SOC 2 Type 1 certification.

Neither National Bank of Canada nor Yapı Kredi holds SOC 2 Type 2 certification.

Neither National Bank of Canada nor Yapı Kredi holds ISO 27001 certification.

Neither National Bank of Canada nor Yapı Kredi holds PCI DSS certification.

Neither National Bank of Canada nor Yapı Kredi holds HIPAA certification.

Neither National Bank of Canada nor Yapı Kredi holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

NXLog Agent before 6.11 can load a file specified by the OPENSSL_CONF environment variable.

Risk Information
cvss3
Base: 8.1
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Description

uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.

Risk Information
cvss3
Base: 2.9
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Description

A vulnerability was detected in Mayan EDMS up to 4.10.1. The affected element is an unknown function of the file /authentication/. The manipulation results in cross site scripting. The attack may be performed from remote. The exploit is now public and may be used. Upgrading to version 4.10.2 is sufficient to fix this issue. You should upgrade the affected component. The vendor confirms that this is "[f]ixed in version 4.10.2". Furthermore, that "[b]ackports for older versions in process and will be out as soon as their respective CI pipelines complete."

Risk Information
cvss2
Base: 5.0
Severity: LOW
AV:N/AC:L/Au:N/C:N/I:P/A:N
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

MJML through 4.18.0 allows mj-include directory traversal to test file existence and (in the type="css" case) read files. NOTE: this issue exists because of an incomplete fix for CVE-2020-12827.

Risk Information
cvss3
Base: 4.5
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:L
Description

A half-blind Server Side Request Forgery (SSRF) vulnerability exists in kube-controller-manager when using the in-tree Portworx StorageClass. This vulnerability allows authorized users to leak arbitrary information from unprotected endpoints in the control plane’s host network (including link-local or loopback services).

Risk Information
cvss3
Base: 5.8
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N