Comparison Overview

National Clinician Consultation Center (NCCC)

VS

County of Santa Clara Public Health Department

National Clinician Consultation Center (NCCC)

None
Last Update: 2025-11-28

The National Clinician Consultation Center (NCCC) provides clinicians of all experience levels prompt, evidence-based clinical guidance about the best management of HIV, viral hepatitis, and substance use disorders (SUD), including perinatal HIV and pre-and-post exposure prophylaxis (PrEP and PEP). We provide online and phone-based clinical education that is tailored to the specific needs of providers and patients. Our service is cost-free, confidential, and available to all U.S.-affiliated healthcare providers.

NAICS: 92312
NAICS Definition: Administration of Public Health Programs
Employees: 4
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

County of Santa Clara Public Health Department

150 W Tasman Dr, San Jose, California, 95134, US
Last Update: 2025-11-03
Between 750 and 799

The County of Santa Clara Public Health Department focuses on protecting and improving the health of communities through education, promotion of healthy lifestyles, disease and injury prevention, and the promotion of sound health policy. The Department is comprised of a highly diverse work force that encompasses many professional disciplines and several main areas of focus. The Department includes over 30 programs and services organized across seven divisions and centers. Email: [email protected] Fax: (408) 792-5041 Hearing Impaired Contact: 7-1-1 (California Relay Service)

NAICS: 923
NAICS Definition:
Employees: 261
Subsidiaries: 1
12-month incidents
0
Known data breaches
1
Attack type number
1

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/national-clinician-consultation-center-nccc.jpeg
National Clinician Consultation Center (NCCC)
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/sccublichealth.jpeg
County of Santa Clara Public Health Department
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
National Clinician Consultation Center (NCCC)
100%
Compliance Rate
0/4 Standards Verified
County of Santa Clara Public Health Department
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Public Health Industry Average (This Year)

No incidents recorded for National Clinician Consultation Center (NCCC) in 2025.

Incidents vs Public Health Industry Average (This Year)

No incidents recorded for County of Santa Clara Public Health Department in 2025.

Incident History — National Clinician Consultation Center (NCCC) (X = Date, Y = Severity)

National Clinician Consultation Center (NCCC) cyber incidents detection timeline including parent company and subsidiaries

Incident History — County of Santa Clara Public Health Department (X = Date, Y = Severity)

County of Santa Clara Public Health Department cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/national-clinician-consultation-center-nccc.jpeg
National Clinician Consultation Center (NCCC)
Incidents

No Incident

https://images.rankiteo.com/companyimages/sccublichealth.jpeg
County of Santa Clara Public Health Department
Incidents

Date Detected: 9/2013
Type:Breach
Attack Vector: Theft of Laptop
Blog: Blog

FAQ

National Clinician Consultation Center (NCCC) company demonstrates a stronger AI Cybersecurity Score compared to County of Santa Clara Public Health Department company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

County of Santa Clara Public Health Department company has historically faced a number of disclosed cyber incidents, whereas National Clinician Consultation Center (NCCC) company has not reported any.

In the current year, County of Santa Clara Public Health Department company and National Clinician Consultation Center (NCCC) company have not reported any cyber incidents.

Neither County of Santa Clara Public Health Department company nor National Clinician Consultation Center (NCCC) company has reported experiencing a ransomware attack publicly.

County of Santa Clara Public Health Department company has disclosed at least one data breach, while National Clinician Consultation Center (NCCC) company has not reported such incidents publicly.

Neither County of Santa Clara Public Health Department company nor National Clinician Consultation Center (NCCC) company has reported experiencing targeted cyberattacks publicly.

Neither National Clinician Consultation Center (NCCC) company nor County of Santa Clara Public Health Department company has reported experiencing or disclosing vulnerabilities publicly.

Neither National Clinician Consultation Center (NCCC) nor County of Santa Clara Public Health Department holds any compliance certifications.

Neither company holds any compliance certifications.

County of Santa Clara Public Health Department company has more subsidiaries worldwide compared to National Clinician Consultation Center (NCCC) company.

County of Santa Clara Public Health Department company employs more people globally than National Clinician Consultation Center (NCCC) company, reflecting its scale as a Public Health.

Neither National Clinician Consultation Center (NCCC) nor County of Santa Clara Public Health Department holds SOC 2 Type 1 certification.

Neither National Clinician Consultation Center (NCCC) nor County of Santa Clara Public Health Department holds SOC 2 Type 2 certification.

Neither National Clinician Consultation Center (NCCC) nor County of Santa Clara Public Health Department holds ISO 27001 certification.

Neither National Clinician Consultation Center (NCCC) nor County of Santa Clara Public Health Department holds PCI DSS certification.

Neither National Clinician Consultation Center (NCCC) nor County of Santa Clara Public Health Department holds HIPAA certification.

Neither National Clinician Consultation Center (NCCC) nor County of Santa Clara Public Health Department holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

ThingsBoard in versions prior to v4.2.1 allows an authenticated user to upload malicious SVG images via the "Image Gallery", leading to a Stored Cross-Site Scripting (XSS) vulnerability. The exploit can be triggered when any user accesses the public API endpoint of the malicious SVG images, or if the malicious images are embedded in an `iframe` element, during a widget creation, deployed to any page of the platform (e.g., dashboards), and accessed during normal operations. The vulnerability resides in the `ImageController`, which fails to restrict the execution of JavaScript code when an image is loaded by the user's browser. This vulnerability can lead to the execution of malicious code in the context of other users' sessions, potentially compromising their accounts and allowing unauthorized actions.

Risk Information
cvss4
Base: 6.2
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:N/VA:N/SC:H/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to to verify that the token used during the code exchange originates from the same authentication flow, which allows an authenticated user to perform account takeover via a specially crafted email address used when switching authentication methods and sending a request to the /users/login/sso/code-exchange endpoint. The vulnerability requires ExperimentalEnableAuthenticationTransfer to be enabled (default: enabled) and RequireEmailVerification to be disabled (default: disabled).

Risk Information
cvss3
Base: 9.9
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to sanitize team email addresses to be visible only to Team Admins, which allows any authenticated user to view team email addresses via the GET /api/v4/channels/{channel_id}/common_teams endpoint

Risk Information
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Description

Exposure of email service credentials to users without administrative rights in Devolutions Server.This issue affects Devolutions Server: before 2025.2.21, before 2025.3.9.

Description

Exposure of credentials in unintended requests in Devolutions Server.This issue affects Server: through 2025.2.20, through 2025.3.8.