Comparison Overview

Newmont Corporation

VS

Glencore

Newmont Corporation

6900 E Layton Avenue, Denver, Colorado, 80237, US
Last Update: 2025-12-09
Between 800 and 849

Newmont is the world’s leading gold company and a producer of copper, silver, zinc and lead. The Company’s world-class portfolio of assets, prospects and talent is anchored in favorable mining jurisdictions in North America, South America, Australia and Africa. Newmont is the only gold producer listed in the S&P 500 Index and is widely recognized for its principled environmental, social and governance practices. The Company is an industry leader in value creation, supported by robust safety standards, superior execution and technical proficiency. Newmont was founded in 1921 and has been publicly traded since 1925.

NAICS: 212
NAICS Definition: Mining (except Oil and Gas)
Employees: 9,797
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Glencore

Baarermattstrasse 3, Baar, ZG, 6340, CH
Last Update: 2025-12-10
Between 800 and 849

Glencore is one of the world’s largest global diversified natural resource companies and a major producer and marketer of more than 60 commodities that advance everyday life. Through a network of assets, customers and suppliers that spans the globe, we produce, process, recycle, source, market and distribute the commodities that support decarbonisation while meeting the energy needs of today.

NAICS: 212
NAICS Definition: Mining (except Oil and Gas)
Employees: 17,483
Subsidiaries: 12
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/newmont.jpeg
Newmont Corporation
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/glencore.jpeg
Glencore
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Newmont Corporation
100%
Compliance Rate
0/4 Standards Verified
Glencore
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Mining Industry Average (This Year)

No incidents recorded for Newmont Corporation in 2025.

Incidents vs Mining Industry Average (This Year)

No incidents recorded for Glencore in 2025.

Incident History — Newmont Corporation (X = Date, Y = Severity)

Newmont Corporation cyber incidents detection timeline including parent company and subsidiaries

Incident History — Glencore (X = Date, Y = Severity)

Glencore cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/newmont.jpeg
Newmont Corporation
Incidents

No Incident

https://images.rankiteo.com/companyimages/glencore.jpeg
Glencore
Incidents

No Incident

FAQ

Newmont Corporation company demonstrates a stronger AI Cybersecurity Score compared to Glencore company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, Glencore company has disclosed a higher number of cyber incidents compared to Newmont Corporation company.

In the current year, Glencore company and Newmont Corporation company have not reported any cyber incidents.

Neither Glencore company nor Newmont Corporation company has reported experiencing a ransomware attack publicly.

Neither Glencore company nor Newmont Corporation company has reported experiencing a data breach publicly.

Neither Glencore company nor Newmont Corporation company has reported experiencing targeted cyberattacks publicly.

Neither Newmont Corporation company nor Glencore company has reported experiencing or disclosing vulnerabilities publicly.

Neither Newmont Corporation nor Glencore holds any compliance certifications.

Neither company holds any compliance certifications.

Glencore company has more subsidiaries worldwide compared to Newmont Corporation company.

Glencore company employs more people globally than Newmont Corporation company, reflecting its scale as a Mining.

Neither Newmont Corporation nor Glencore holds SOC 2 Type 1 certification.

Neither Newmont Corporation nor Glencore holds SOC 2 Type 2 certification.

Neither Newmont Corporation nor Glencore holds ISO 27001 certification.

Neither Newmont Corporation nor Glencore holds PCI DSS certification.

Neither Newmont Corporation nor Glencore holds HIPAA certification.

Neither Newmont Corporation nor Glencore holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

A weakness has been identified in itsourcecode Online Pet Shop Management System 1.0. This vulnerability affects unknown code of the file /pet1/addcnp.php. This manipulation of the argument cnpname causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could be exploited.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A security flaw has been discovered in Tenda AX9 22.03.01.46. This affects the function image_check of the component httpd. The manipulation results in use of weak hash. It is possible to launch the attack remotely. A high complexity level is associated with this attack. It is indicated that the exploitability is difficult. The exploit has been released to the public and may be exploited.

Risk Information
cvss2
Base: 2.6
Severity: HIGH
AV:N/AC:H/Au:N/C:N/I:P/A:N
cvss3
Base: 3.7
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
cvss4
Base: 6.3
Severity: HIGH
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A weakness has been identified in code-projects Student File Management System 1.0. This issue affects some unknown processing of the file /admin/update_student.php. This manipulation of the argument stud_id causes sql injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A security flaw has been discovered in code-projects Student File Management System 1.0. This vulnerability affects unknown code of the file /admin/save_user.php. The manipulation of the argument firstname results in sql injection. The attack can be executed remotely. The exploit has been released to the public and may be exploited.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability was identified in code-projects Student File Management System 1.0. This affects an unknown part of the file /admin/update_user.php. The manipulation of the argument user_id leads to sql injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X