Company Details
pwc
272,754
7,510,316
54
pwc.com
0
PWC_2959126
In-progress

PwC Company CyberSecurity Posture
pwc.comAt PwC, we help clients drive their companies to the leading edge. We’re a tech-forward, people-empowered network with more than 370,000 people in 149 countries. Across audit and assurance, tax and legal, deals and consulting we help build, accelerate and sustain momentum. Find out more at www.pwc.com. PwC: Audit and assurance, consulting and tax services PwC refers to the PwC network and/or one or more of its member firms, each of which is a separate legal entity. Content on this page has been prepared for general information only and is not intended to be relied upon as accounting, tax or professional advice. Please reach out to your advisors for specific advice.
Company Details
pwc
272,754
7,510,316
54
pwc.com
0
PWC_2959126
In-progress
Between 800 and 849

PwC Global Score (TPRM)XXXX



No incidents recorded for PwC in 2025.
No incidents recorded for PwC in 2025.
No incidents recorded for PwC in 2025.
PwC cyber incidents detection timeline including parent company and subsidiaries

At PwC, we help clients drive their companies to the leading edge. We’re a tech-forward, people-empowered network with more than 370,000 people in 149 countries. Across audit and assurance, tax and legal, deals and consulting we help build, accelerate and sustain momentum. Find out more at www.pwc.com. PwC: Audit and assurance, consulting and tax services PwC refers to the PwC network and/or one or more of its member firms, each of which is a separate legal entity. Content on this page has been prepared for general information only and is not intended to be relied upon as accounting, tax or professional advice. Please reach out to your advisors for specific advice.


About DKSH DKSH’s purpose is to enrich people’s lives. For 160 years, we have been marketing, selling, and distributing high-quality products and brands for multinational and Fortune 500 companies. Through our Business Units Consumer Goods, Healthcare, Performance Materials, and Technology, we deliv
Arcadis is your global sustainable transformation partner. Proven pioneers for a sustainable future, partnering on the most transformative projects of our time. With over 36,000 people active in more than 30 countries, we bring together the best minds from around the world to deliver intelligent p

Our organization is passionately committed to the pursuit of a better world through positive change. We embrace your visions as our own and partner with you to develop better ideas that are smarter, more efficient, and innovative. Our global network of 10,000 professionals work on the world’s toughe
Allied Universal®, a leading security and facility services company, provides proactive security services and cutting-edge smart technology to deliver evolving, tailored solutions that allow clients to focus on their core business. Our excellence starts with our local leadership and local presence.

PwC Acceleration Centers (ACs), formerly Service Delivery Centers, are diverse, global talent hubs focused on delivering value to our clients – working with global client engagement teams across the PwC network. Driving new digital ways of working, ACs help unlock new opportunities for our people, o

SGS is the world’s leading Testing, Inspection and Certification company. We operate a network of over 2,700 laboratories and business facilities across 119 countries, supported by a team of 99,250 dedicated professionals. With over 145 years of service excellence, we combine the precision and accur

Sweco is at the heart of the green transition - planning and designing the sustainable communities and cities of the future. Together with our clients and the collective knowledge of our 22,000 architects, engineers and other specialists, we co-create solutions to address urbanisation, capture the p
A global leader in applied safety science, UL Solutions (NYSE: ULS) transforms safety, security and sustainability challenges into opportunities for customers in more than 110 countries. UL Solutions delivers testing, inspection and certification services, together with software products and advisor

At Mercer, we believe in building brighter futures. Together, our 25,000 employees in over 130 counties are helping redefine the future of work, reshape retirement and investment outcomes, and unlock real health and well-being. For over 75 years, we’ve provided trusted advice and solutions to
.png)
Cybersecurity is now a key geopolitical battleground as nations and cybercriminals vie for control over digital infrastructure and emerging...
PwC warns India must urgently adopt quantum-ready cyber security measures as digital transformation accelerates and threats evolve.
As India accelerates its digital transformation, a new report by PwC has warned that quantum computing is emerging as one of the most...
AI tops the agenda for cybersecurity leaders when it comes to cyber budget allocations, addressing cyber talent shortages, and bolstering...
PwC's Matt Gorham explains how C-suite leaders can collaborate to create a cybersecurity strategy that protects and grows the business.
A new PwC survey underscores how companies face a wider range of cyber risks—and how they can best respond.
High cost of breaches: Over a quarter of businesses report data breaches costing at least US$1 million, underscoring the financial stakes for...
What's ahead for cybersecurity in 2026 ... In 2025, critical infrastructure organizations around the world have faced a wave of cyber threats...
The Network and Information Security Directive 2 (NIS2) is the European directive aimed at strengthening digital resilience in essential and...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of PwC is https://www.pwc.com/gx/en.
According to Rankiteo, PwC’s AI-generated cybersecurity score is 839, reflecting their Good security posture.
According to Rankiteo, PwC currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, PwC is not certified under SOC 2 Type 1.
According to Rankiteo, PwC does not hold a SOC 2 Type 2 certification.
According to Rankiteo, PwC is not listed as GDPR compliant.
According to Rankiteo, PwC does not currently maintain PCI DSS compliance.
According to Rankiteo, PwC is not compliant with HIPAA regulations.
According to Rankiteo,PwC is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
PwC operates primarily in the Professional Services industry.
PwC employs approximately 272,754 people worldwide.
PwC presently has no subsidiaries across any sectors.
PwC’s official LinkedIn profile has approximately 7,510,316 followers.
PwC is classified under the NAICS code 54, which corresponds to Professional, Scientific, and Technical Services.
No, PwC does not have a profile on Crunchbase.
Yes, PwC maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/pwc.
As of November 28, 2025, Rankiteo reports that PwC has not experienced any cybersecurity incidents.
PwC has an estimated 617 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, PwC has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) token to an attacker-controlled domain. Angular's HttpClient has a built-in XSRF protection mechanism that works by checking if a request URL starts with a protocol (http:// or https://) to determine if it is cross-origin. If the URL starts with protocol-relative URL (//), it is incorrectly treated as a same-origin request, and the XSRF token is automatically added to the X-XSRF-TOKEN header. This issue has been patched in versions 19.2.16, 20.3.14, and 21.0.1. A workaround for this issue involves avoiding using protocol-relative URLs (URLs starting with //) in HttpClient requests. All backend communication URLs should be hardcoded as relative paths (starting with a single /) or fully qualified, trusted absolute URLs.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Uncontrolled Recursion vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft deep ASN.1 structures that trigger unbounded recursive parsing. This leads to a Denial-of-Service (DoS) via stack exhaustion when parsing untrusted DER inputs. This issue has been patched in version 1.3.2.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft ASN.1 structures containing OIDs with oversized arcs. These arcs may be decoded as smaller, trusted OIDs due to 32-bit bitwise truncation, enabling the bypass of downstream OID-based security decisions. This issue has been patched in version 1.3.2.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a stack overflow. Users of Lua rules and output scripts may be affected when working with large buffers. This includes a rule passing a large buffer to a Lua script. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves disabling Lua rules and output scripts, or making sure limits, such as stream.depth.reassembly and HTTP response body limits (response-body-limit), are set to less than half the stack size.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword is used in conjunction with base64_data. This issue has been patched in version 8.0.2. A workaround involves disabling rules that use entropy in conjunction with base64_data.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.