Comparison Overview

OH!PEN

VS

League of American Orchestras

OH!PEN

Via Tirso, 26, Roma, RM, 00198, IT
Last Update: 2025-12-10

We create stories! Our commitment is to match creative talent with technical standards of the highest caliber to deliver compelling, innovative products for a global audience. We specialize in executive production services across genres, including feature films, shorts, documentaries, commercials and web-series. OUR SERVICES OH!PEN is comprised of highly accomplished professionals, each with diverse backgrounds and extensive experience in the fields of film, television and commercials. Our professional resources allow us to offer the following services: International Productions. Italy is a beautiful place to make movies and commercials. We offer exceptional production services at competitive prices. Our clients can rely on both the well-established professional relationships of our American associates, and a consistently reliable team of professionals in Italy. Executive Productions. OH!PEN places its expertise, competence and professionalism at the service of clients seeking top-notch executive production services. Realization of commercials, video clips and book trailers. We offer top quality productions, including director selection, for any given budget. Realization of institutional and corporate videos. We are able to identify the most appropriate professionals for each phase of the project, from concept to finished product. Events. We organize and manage any type of event, from large to small, and from start to finish. Consulting services for Italian administrative paperwork. Selection of professional specialists. Whether you are looking for a director, casting specialist or scouting for a location, we guarantee to place you in capable hands. Co-productions. OH!PEN is willing and able to co-produce bold, innovative projects. Social Media Marketing. Profile and campaign management on major social networks. Viral. Design and development of viral videos. Storytelling strategy.

NAICS: 7111
NAICS Definition: Performing Arts Companies
Employees: 5
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

League of American Orchestras

520 8th Avenue, Suite 2005, 20th Floor, New York, NY, 10018, US
Last Update: 2025-12-13

The League of American Orchestras leads, supports, and champions America’s orchestras and the vitality of the music they perform. Its diverse membership of more than 2,000 organizations and individuals across North America runs the gamut from world-renowned orchestras to community groups, from summer festivals to student and youth ensembles, from conservatories to libraries, from businesses serving orchestras to individuals who love symphonic music. The only national organization dedicated solely to the orchestral experience, the League is a nexus of knowledge and innovation, advocacy, and leadership advancement. Its conferences and events, award-winning Symphony magazine, website, and other publications inform people around the world about orchestral activity and developments. Founded in 1942 and chartered by Congress in 1962, the League links a national network of thousands of instrumentalists, conductors, managers and administrators, board members, volunteers, and business partners. Visit americanorchestras.org.

NAICS: 7111
NAICS Definition: Performing Arts Companies
Employees: 78
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/oh-pen.jpeg
OH!PEN
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/american-symphony-orchestra-league.jpeg
League of American Orchestras
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
OH!PEN
100%
Compliance Rate
0/4 Standards Verified
League of American Orchestras
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Performing Arts Industry Average (This Year)

No incidents recorded for OH!PEN in 2025.

Incidents vs Performing Arts Industry Average (This Year)

No incidents recorded for League of American Orchestras in 2025.

Incident History — OH!PEN (X = Date, Y = Severity)

OH!PEN cyber incidents detection timeline including parent company and subsidiaries

Incident History — League of American Orchestras (X = Date, Y = Severity)

League of American Orchestras cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/oh-pen.jpeg
OH!PEN
Incidents

No Incident

https://images.rankiteo.com/companyimages/american-symphony-orchestra-league.jpeg
League of American Orchestras
Incidents

No Incident

FAQ

Both OH!PEN company and League of American Orchestras company demonstrate a comparable AI Cybersecurity Score, with strong governance and monitoring frameworks in place.

Historically, League of American Orchestras company has disclosed a higher number of cyber incidents compared to OH!PEN company.

In the current year, League of American Orchestras company and OH!PEN company have not reported any cyber incidents.

Neither League of American Orchestras company nor OH!PEN company has reported experiencing a ransomware attack publicly.

Neither League of American Orchestras company nor OH!PEN company has reported experiencing a data breach publicly.

Neither League of American Orchestras company nor OH!PEN company has reported experiencing targeted cyberattacks publicly.

Neither OH!PEN company nor League of American Orchestras company has reported experiencing or disclosing vulnerabilities publicly.

Neither OH!PEN nor League of American Orchestras holds any compliance certifications.

Neither company holds any compliance certifications.

Neither OH!PEN company nor League of American Orchestras company has publicly disclosed detailed information about the number of their subsidiaries.

League of American Orchestras company employs more people globally than OH!PEN company, reflecting its scale as a Performing Arts.

Neither OH!PEN nor League of American Orchestras holds SOC 2 Type 1 certification.

Neither OH!PEN nor League of American Orchestras holds SOC 2 Type 2 certification.

Neither OH!PEN nor League of American Orchestras holds ISO 27001 certification.

Neither OH!PEN nor League of American Orchestras holds PCI DSS certification.

Neither OH!PEN nor League of American Orchestras holds HIPAA certification.

Neither OH!PEN nor League of American Orchestras holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

NXLog Agent before 6.11 can load a file specified by the OPENSSL_CONF environment variable.

Risk Information
cvss3
Base: 8.1
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Description

uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.

Risk Information
cvss3
Base: 2.9
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Description

A vulnerability was detected in Mayan EDMS up to 4.10.1. The affected element is an unknown function of the file /authentication/. The manipulation results in cross site scripting. The attack may be performed from remote. The exploit is now public and may be used. Upgrading to version 4.10.2 is sufficient to fix this issue. You should upgrade the affected component. The vendor confirms that this is "[f]ixed in version 4.10.2". Furthermore, that "[b]ackports for older versions in process and will be out as soon as their respective CI pipelines complete."

Risk Information
cvss2
Base: 5.0
Severity: LOW
AV:N/AC:L/Au:N/C:N/I:P/A:N
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

MJML through 4.18.0 allows mj-include directory traversal to test file existence and (in the type="css" case) read files. NOTE: this issue exists because of an incomplete fix for CVE-2020-12827.

Risk Information
cvss3
Base: 4.5
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:L
Description

A half-blind Server Side Request Forgery (SSRF) vulnerability exists in kube-controller-manager when using the in-tree Portworx StorageClass. This vulnerability allows authorized users to leak arbitrary information from unprotected endpoints in the control plane’s host network (including link-local or loopback services).

Risk Information
cvss3
Base: 5.8
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N