Comparison Overview

Pennsylvania Office of Rural Health

VS

ProEd Regulatory

Pennsylvania Office of Rural Health

Ford Building, 106, State College, Pennsylvania, US, 16803
Last Update: 2025-11-28

The Pennsylvania Office of Rural Health (PORH) partners with federal and state governments and Penn State University to enhance rural health in Pennsylvania. Established in 1991 and funded by the Federal Office of Rural Health Policy and the Pennsylvania Department of Health, PORH provides coordination, technical assistance, and healthcare provider recruitment. Specializing in rural health, agricultural safety, oral health, and community development, PORH ensures access to high-quality, affordable healthcare for rural Pennsylvanians. Our mission is to improve rural health and be recognized as a premier rural health organization in Pennsylvania and one of the most effective in the nation.

NAICS: 92312
NAICS Definition: Administration of Public Health Programs
Employees: 3
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

ProEd Regulatory

25101 Chagrin Boulevard, Beachwood, OH, 44122, US
Last Update: 2025-11-27

ProEd Regulatory is the HCG Regulatory Powerhouse. We help life sciences companies communicate data in ways that matter to healthcare providers, the patients they treat, and the regulators who protect them. Our passion and energy help accelerate product approvals, increase physicians'​ and healthcare providers'​ understanding, and improve patient access to the latest advancements in medicine. We become trusted partners to our clients. Our teams are scientifically rigorous, strategically focused. and creatively inspired - and we have the operational diligence to deliver on our promises. To view all our jobs visit our website at www.proedregulatory.com. To learn more about HCG, visit https://www.hcg-int.com/ HCG Powered by One. Powered for You

NAICS: 92312
NAICS Definition: Administration of Public Health Programs
Employees: 25
Subsidiaries: 91
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/pennsylvania-office-of-rural-health.jpeg
Pennsylvania Office of Rural Health
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/proed-communications.jpeg
ProEd Regulatory
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Pennsylvania Office of Rural Health
100%
Compliance Rate
0/4 Standards Verified
ProEd Regulatory
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Public Health Industry Average (This Year)

No incidents recorded for Pennsylvania Office of Rural Health in 2025.

Incidents vs Public Health Industry Average (This Year)

No incidents recorded for ProEd Regulatory in 2025.

Incident History — Pennsylvania Office of Rural Health (X = Date, Y = Severity)

Pennsylvania Office of Rural Health cyber incidents detection timeline including parent company and subsidiaries

Incident History — ProEd Regulatory (X = Date, Y = Severity)

ProEd Regulatory cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/pennsylvania-office-of-rural-health.jpeg
Pennsylvania Office of Rural Health
Incidents

No Incident

https://images.rankiteo.com/companyimages/proed-communications.jpeg
ProEd Regulatory
Incidents

No Incident

FAQ

Pennsylvania Office of Rural Health company demonstrates a stronger AI Cybersecurity Score compared to ProEd Regulatory company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, ProEd Regulatory company has disclosed a higher number of cyber incidents compared to Pennsylvania Office of Rural Health company.

In the current year, ProEd Regulatory company and Pennsylvania Office of Rural Health company have not reported any cyber incidents.

Neither ProEd Regulatory company nor Pennsylvania Office of Rural Health company has reported experiencing a ransomware attack publicly.

Neither ProEd Regulatory company nor Pennsylvania Office of Rural Health company has reported experiencing a data breach publicly.

Neither ProEd Regulatory company nor Pennsylvania Office of Rural Health company has reported experiencing targeted cyberattacks publicly.

Neither Pennsylvania Office of Rural Health company nor ProEd Regulatory company has reported experiencing or disclosing vulnerabilities publicly.

Neither Pennsylvania Office of Rural Health nor ProEd Regulatory holds any compliance certifications.

Neither company holds any compliance certifications.

ProEd Regulatory company has more subsidiaries worldwide compared to Pennsylvania Office of Rural Health company.

ProEd Regulatory company employs more people globally than Pennsylvania Office of Rural Health company, reflecting its scale as a Public Health.

Neither Pennsylvania Office of Rural Health nor ProEd Regulatory holds SOC 2 Type 1 certification.

Neither Pennsylvania Office of Rural Health nor ProEd Regulatory holds SOC 2 Type 2 certification.

Neither Pennsylvania Office of Rural Health nor ProEd Regulatory holds ISO 27001 certification.

Neither Pennsylvania Office of Rural Health nor ProEd Regulatory holds PCI DSS certification.

Neither Pennsylvania Office of Rural Health nor ProEd Regulatory holds HIPAA certification.

Neither Pennsylvania Office of Rural Health nor ProEd Regulatory holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

ThingsBoard in versions prior to v4.2.1 allows an authenticated user to upload malicious SVG images via the "Image Gallery", leading to a Stored Cross-Site Scripting (XSS) vulnerability. The exploit can be triggered when any user accesses the public API endpoint of the malicious SVG images, or if the malicious images are embedded in an `iframe` element, during a widget creation, deployed to any page of the platform (e.g., dashboards), and accessed during normal operations. The vulnerability resides in the `ImageController`, which fails to restrict the execution of JavaScript code when an image is loaded by the user's browser. This vulnerability can lead to the execution of malicious code in the context of other users' sessions, potentially compromising their accounts and allowing unauthorized actions.

Risk Information
cvss4
Base: 6.2
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:N/VA:N/SC:H/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to to verify that the token used during the code exchange originates from the same authentication flow, which allows an authenticated user to perform account takeover via a specially crafted email address used when switching authentication methods and sending a request to the /users/login/sso/code-exchange endpoint. The vulnerability requires ExperimentalEnableAuthenticationTransfer to be enabled (default: enabled) and RequireEmailVerification to be disabled (default: disabled).

Risk Information
cvss3
Base: 9.9
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to sanitize team email addresses to be visible only to Team Admins, which allows any authenticated user to view team email addresses via the GET /api/v4/channels/{channel_id}/common_teams endpoint

Risk Information
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Description

Exposure of email service credentials to users without administrative rights in Devolutions Server.This issue affects Devolutions Server: before 2025.2.21, before 2025.3.9.

Description

Exposure of credentials in unintended requests in Devolutions Server.This issue affects Server: through 2025.2.20, through 2025.3.8.