Comparison Overview

Pfizer

VS

Parexel

Pfizer

New York, New York, 10017, US
Last Update: 2025-12-09

We’re celebrating over 175 years of daring scientific innovation—and we’re not done yet. Let’s outdo yesterday. Protect your health at PfizerForAll.com For additional information on our guidelines, please visit http://www.pfizer.com/community-guidelines

NAICS: 3254
NAICS Definition: Pharmaceutical and Medicine Manufacturing
Employees: 102,145
Subsidiaries: 3
12-month incidents
0
Known data breaches
0
Attack type number
0

Parexel

541 Church at North Hills St, 1000, Raleigh, North Carolina, US, 27609
Last Update: 2025-12-09
Between 750 and 799

Parexel is among the world’s largest clinical research organizations (CROs), providing the full range of Phase I to IV clinical development services to help life-saving treatments reach patients faster. Leveraging the breadth of our clinical, regulatory and therapeutic expertise, our team of more than 21,000 global professionals collaborates with biopharmaceutical leaders, emerging innovators and sites to design and deliver clinical trials with patients in mind, increasing access and participation to make clinical research a care option for anyone, anywhere. Our depth of industry knowledge and strong track record gained over the past 40 years is moving the industry forward and advancing clinical research in healthcare’s most complex areas, while our innovation ecosystem offers the best solutions to make every phase of the clinical trial process more efficient. With the people, insight and focus on operational excellence, we work every day to treat patients with dignity and continuously learn from their experiences, so every trial makes a difference. For more information, visit parexel.com. Community Guidelines Because Parexel’s social media channels are open to the general public and employees, we are not responsible for views expressed other than our own. However, we do not tolerate posts that are: • Abusive, harassing or threatening to others. • Defamatory, offensive, obscene, vulgar or depicting violence. • Hateful targeting by race/ethnicity, age, color, creed, religion, gender, sexual preference or orientation, nationality or political beliefs. • Sexually explicit or pornographic. • Fraudulent, deceptive, libelous, misleading or unlawful. • Referencing criminal or illegal activity. • Spamming. We reserve the right to remove any comments that do not adhere to our guidelines as well as report users who violate the rules of our page.

NAICS: 3254
NAICS Definition: Pharmaceutical and Medicine Manufacturing
Employees: 20,504
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/pfizer.jpeg
Pfizer
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/parexel.jpeg
Parexel
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Pfizer
100%
Compliance Rate
0/4 Standards Verified
Parexel
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Pharmaceutical Manufacturing Industry Average (This Year)

No incidents recorded for Pfizer in 2025.

Incidents vs Pharmaceutical Manufacturing Industry Average (This Year)

No incidents recorded for Parexel in 2025.

Incident History — Pfizer (X = Date, Y = Severity)

Pfizer cyber incidents detection timeline including parent company and subsidiaries

Incident History — Parexel (X = Date, Y = Severity)

Parexel cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/pfizer.jpeg
Pfizer
Incidents

No Incident

https://images.rankiteo.com/companyimages/parexel.jpeg
Parexel
Incidents

No Incident

FAQ

Pfizer company demonstrates a stronger AI Cybersecurity Score compared to Parexel company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, Parexel company has disclosed a higher number of cyber incidents compared to Pfizer company.

In the current year, Parexel company and Pfizer company have not reported any cyber incidents.

Neither Parexel company nor Pfizer company has reported experiencing a ransomware attack publicly.

Neither Parexel company nor Pfizer company has reported experiencing a data breach publicly.

Neither Parexel company nor Pfizer company has reported experiencing targeted cyberattacks publicly.

Neither Pfizer company nor Parexel company has reported experiencing or disclosing vulnerabilities publicly.

Neither Pfizer nor Parexel holds any compliance certifications.

Neither company holds any compliance certifications.

Pfizer company has more subsidiaries worldwide compared to Parexel company.

Pfizer company employs more people globally than Parexel company, reflecting its scale as a Pharmaceutical Manufacturing.

Neither Pfizer nor Parexel holds SOC 2 Type 1 certification.

Neither Pfizer nor Parexel holds SOC 2 Type 2 certification.

Neither Pfizer nor Parexel holds ISO 27001 certification.

Neither Pfizer nor Parexel holds PCI DSS certification.

Neither Pfizer nor Parexel holds HIPAA certification.

Neither Pfizer nor Parexel holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

A weakness has been identified in itsourcecode Online Pet Shop Management System 1.0. This vulnerability affects unknown code of the file /pet1/addcnp.php. This manipulation of the argument cnpname causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could be exploited.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A security flaw has been discovered in Tenda AX9 22.03.01.46. This affects the function image_check of the component httpd. The manipulation results in use of weak hash. It is possible to launch the attack remotely. A high complexity level is associated with this attack. It is indicated that the exploitability is difficult. The exploit has been released to the public and may be exploited.

Risk Information
cvss2
Base: 2.6
Severity: HIGH
AV:N/AC:H/Au:N/C:N/I:P/A:N
cvss3
Base: 3.7
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
cvss4
Base: 6.3
Severity: HIGH
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A weakness has been identified in code-projects Student File Management System 1.0. This issue affects some unknown processing of the file /admin/update_student.php. This manipulation of the argument stud_id causes sql injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A security flaw has been discovered in code-projects Student File Management System 1.0. This vulnerability affects unknown code of the file /admin/save_user.php. The manipulation of the argument firstname results in sql injection. The attack can be executed remotely. The exploit has been released to the public and may be exploited.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability was identified in code-projects Student File Management System 1.0. This affects an unknown part of the file /admin/update_user.php. The manipulation of the argument user_id leads to sql injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X